Canonical Security Advisories · May 2015 — Canonical Security Advisories
107 advisories 111 CVEs

Ubuntu Security Notices (USN-NNNN-N) for 2015-05. Mirrored into Vulnetix VDB.

Every advisory below is enriched with the Vulnetix VDB exploit-intelligence chip (hover a CVE ID in the interactive page to see CVSS, EPSS, KEV status, and PoC maturity).

What would you fix first?

The advisories below are ordered by the Vulnetix risk prioritization strategy: exploitation evidence first, scores second. On the interactive page you can switch to three other lenses.

Advisories

UBUNTU-CVE-2015-1265

USNWeaponized exploitMEDIUM2015-05-20

CVEs:CVE-2015-1265

Affected products

ProductStatusVendorPackageEcosystem
chromium-browser affected Ubuntu:14.04:LTS chromium-browser
oxide-qt affected Ubuntu:14.04:LTS oxide-qt
Upstream advisory

UBUNTU-CVE-2015-3165

USNPoC exploitMEDIUM2015-05-22

CVEs:CVE-2015-3165

Affected products

ProductStatusVendorPackageEcosystem
postgresql-9.1 affected Ubuntu:14.04:LTS postgresql-9.1
postgresql-9.3 affected Ubuntu:14.04:LTS postgresql-9.3
Upstream advisory

UBUNTU-CVE-2015-3166

USNPoC exploit2015-05-22

CVEs:CVE-2015-3166

Affected products

ProductStatusVendorPackageEcosystem
postgresql-9.1 affected Ubuntu:14.04:LTS postgresql-9.1
postgresql-9.3 affected Ubuntu:14.04:LTS postgresql-9.3
Upstream advisory

UBUNTU-CVE-2015-3167

USNPoC exploit2015-05-22

CVEs:CVE-2015-3167

Affected products

ProductStatusVendorPackageEcosystem
postgresql-9.1 affected Ubuntu:14.04:LTS postgresql-9.1
postgresql-9.3 affected Ubuntu:14.04:LTS postgresql-9.3
Upstream advisory

UBUNTU-CVE-2015-4036

USNPoC exploitMEDIUM2015-05-21

CVEs:CVE-2015-4036

Affected products

ProductStatusVendorPackageEcosystem
linux affected Ubuntu:14.04:LTS linux
linux-lts-utopic affected Ubuntu:14.04:LTS linux-lts-utopic
linux-lts-vivid affected Ubuntu:14.04:LTS linux-lts-vivid
Upstream advisory

USN-2604-1

USNEPSS <= 49%CRITICAL2015-05-11

libtasn1-3, libtasn1-6 vulnerability

CVEs:CVE-2015-3622

Affected products

ProductStatusVendorPackageEcosystem
libtasn1-6 affected Ubuntu:14.04:LTS libtasn1-6
Upstream advisory

UBUNTU-CVE-2015-1155

USNEPSS <= 49%MEDIUM2015-05-07

CVEs:CVE-2015-1155

Affected products

ProductStatusVendorPackageEcosystem
qtwebkit-opensource-src affected Ubuntu:16.04:LTS qtwebkit-opensource-src
qtwebkit-source affected Ubuntu:16.04:LTS qtwebkit-source
webkitgtk affected Ubuntu:14.04:LTS webkitgtk
webkitgtk affected Ubuntu:16.04:LTS webkitgtk
Upstream advisory

UBUNTU-CVE-2015-1860

USNEPSS <= 49%LOW2015-05-12

CVEs:CVE-2015-1860

Affected products

ProductStatusVendorPackageEcosystem
qt4-x11 affected Ubuntu:14.04:LTS qt4-x11
qtbase-opensource-src affected Ubuntu:14.04:LTS qtbase-opensource-src
Upstream advisory

UBUNTU-CVE-2015-1858

USNEPSS <= 49%LOW2015-05-12

CVEs:CVE-2015-1858

Affected products

ProductStatusVendorPackageEcosystem
qt4-x11 affected Ubuntu:14.04:LTS qt4-x11
qtbase-opensource-src affected Ubuntu:14.04:LTS qtbase-opensource-src
Upstream advisory

UBUNTU-CVE-2015-1859

USNEPSS <= 49%LOW2015-05-12

CVEs:CVE-2015-1859

Affected products

ProductStatusVendorPackageEcosystem
qt4-x11 affected Ubuntu:14.04:LTS qt4-x11
qtbase-opensource-src affected Ubuntu:14.04:LTS qtbase-opensource-src
Upstream advisory

UBUNTU-CVE-2015-3885

USNEPSS <= 49%2015-05-19

CVEs:CVE-2015-3885

Affected products

ProductStatusVendorPackageEcosystem
dcraw affected Ubuntu:16.04:LTS dcraw
freeimage affected Ubuntu:Pro:14.04:LTS freeimage
kodi affected Ubuntu:24.04:LTS kodi
kodi affected Ubuntu:16.04:LTS kodi
libraw affected Ubuntu:14.04:LTS libraw
Upstream advisory

USN-2592-1

USNEPSS <= 49%2015-05-04

libxml-libxml-perl vulnerability

CVEs:CVE-2015-3451

Affected products

ProductStatusVendorPackageEcosystem
libxml-libxml-perl affected Ubuntu:14.04:LTS libxml-libxml-perl
Upstream advisory

UBUNTU-CVE-2015-1153

USNEPSS <= 49%MEDIUM2015-05-07

CVEs:CVE-2015-1153

Affected products

ProductStatusVendorPackageEcosystem
qtwebkit-opensource-src affected Ubuntu:16.04:LTS qtwebkit-opensource-src
qtwebkit-source affected Ubuntu:16.04:LTS qtwebkit-source
webkitgtk affected Ubuntu:14.04:LTS webkitgtk
webkitgtk affected Ubuntu:16.04:LTS webkitgtk
Upstream advisory

UBUNTU-CVE-2015-1152

USNEPSS <= 49%MEDIUM2015-05-07

CVEs:CVE-2015-1152

Affected products

ProductStatusVendorPackageEcosystem
qtwebkit-opensource-src affected Ubuntu:16.04:LTS qtwebkit-opensource-src
qtwebkit-source affected Ubuntu:16.04:LTS qtwebkit-source
webkitgtk affected Ubuntu:16.04:LTS webkitgtk
Upstream advisory

UBUNTU-CVE-2015-3809

USNEPSS <= 49%LOW2015-05-13

CVEs:CVE-2015-3809

Affected products

ProductStatusVendorPackageEcosystem
wireshark affected Ubuntu:14.04:LTS wireshark
wireshark affected Ubuntu:18.04:LTS wireshark
wireshark affected Ubuntu:16.04:LTS wireshark
Upstream advisory

UBUNTU-CVE-2015-3808

USNEPSS <= 49%LOW2015-05-13

CVEs:CVE-2015-3808

Affected products

ProductStatusVendorPackageEcosystem
wireshark affected Ubuntu:16.04:LTS wireshark
wireshark affected Ubuntu:14.04:LTS wireshark
wireshark affected Ubuntu:18.04:LTS wireshark
Upstream advisory

UBUNTU-CVE-2015-1258

USNEPSS <= 49%LOW2015-05-20

CVEs:CVE-2015-1258

Affected products

ProductStatusVendorPackageEcosystem
chromium-browser affected Ubuntu:14.04:LTS chromium-browser
oxide-qt affected Ubuntu:14.04:LTS oxide-qt
Upstream advisory

UBUNTU-CVE-2015-1154

USNEPSS <= 49%MEDIUM2015-05-07

CVEs:CVE-2015-1154

Affected products

ProductStatusVendorPackageEcosystem
qtwebkit-opensource-src affected Ubuntu:16.04:LTS qtwebkit-opensource-src
qtwebkit-source affected Ubuntu:16.04:LTS qtwebkit-source
webkitgtk affected Ubuntu:16.04:LTS webkitgtk
Upstream advisory

USN-2618-1

USNEPSS <= 49%2015-05-21

python-dbusmock vulnerability

CVEs:CVE-2015-1326

Affected products

ProductStatusVendorPackageEcosystem
python-dbusmock affected Ubuntu:14.04:LTS python-dbusmock
Upstream advisory

UBUNTU-CVE-2015-1254

USNEPSS <= 49%MEDIUM2015-05-20

CVEs:CVE-2015-1254

Affected products

ProductStatusVendorPackageEcosystem
chromium-browser affected Ubuntu:14.04:LTS chromium-browser
oxide-qt affected Ubuntu:14.04:LTS oxide-qt
Upstream advisory

UBUNTU-CVE-2015-1260

USNEPSS <= 49%MEDIUM2015-05-20

CVEs:CVE-2015-1260

Affected products

ProductStatusVendorPackageEcosystem
chromium-browser affected Ubuntu:14.04:LTS chromium-browser
oxide-qt affected Ubuntu:14.04:LTS oxide-qt
Upstream advisory

UBUNTU-CVE-2015-1253

USNEPSS <= 49%MEDIUM2015-05-20

CVEs:CVE-2015-1253

Affected products

ProductStatusVendorPackageEcosystem
chromium-browser affected Ubuntu:14.04:LTS chromium-browser
oxide-qt affected Ubuntu:14.04:LTS oxide-qt
Upstream advisory

UBUNTU-CVE-2015-1156

USNEPSS <= 49%MEDIUM2015-05-07

CVEs:CVE-2015-1156

Affected products

ProductStatusVendorPackageEcosystem
qtwebkit-opensource-src affected Ubuntu:16.04:LTS qtwebkit-opensource-src
qtwebkit-source affected Ubuntu:16.04:LTS qtwebkit-source
webkitgtk affected Ubuntu:16.04:LTS webkitgtk
Upstream advisory

UBUNTU-CVE-2015-1256

USNEPSS <= 49%MEDIUM2015-05-20

CVEs:CVE-2015-1256

Affected products

ProductStatusVendorPackageEcosystem
chromium-browser affected Ubuntu:14.04:LTS chromium-browser
oxide-qt affected Ubuntu:14.04:LTS oxide-qt
Upstream advisory

UBUNTU-CVE-2015-1257

USNEPSS <= 49%MEDIUM2015-05-20

CVEs:CVE-2015-1257

Affected products

ProductStatusVendorPackageEcosystem
chromium-browser affected Ubuntu:14.04:LTS chromium-browser
oxide-qt affected Ubuntu:14.04:LTS oxide-qt
Upstream advisory

UBUNTU-CVE-2015-1262

USNEPSS <= 49%MEDIUM2015-05-20

CVEs:CVE-2015-1262

Affected products

ProductStatusVendorPackageEcosystem
chromium-browser affected Ubuntu:14.04:LTS chromium-browser
oxide-qt affected Ubuntu:14.04:LTS oxide-qt
Upstream advisory

UBUNTU-CVE-2015-1255

USNEPSS <= 49%MEDIUM2015-05-20

CVEs:CVE-2015-1255

Affected products

ProductStatusVendorPackageEcosystem
chromium-browser affected Ubuntu:14.04:LTS chromium-browser
oxide-qt affected Ubuntu:14.04:LTS oxide-qt
Upstream advisory

UBUNTU-CVE-2015-3910

USNEPSS <= 49%MEDIUM2015-05-20

CVEs:CVE-2015-3910

Affected products

ProductStatusVendorPackageEcosystem
chromium-browser affected Ubuntu:14.04:LTS chromium-browser
libv8-3.14 affected Ubuntu:18.04:LTS libv8-3.14
libv8-3.14 affected Ubuntu:16.04:LTS libv8-3.14
oxide-qt affected Ubuntu:14.04:LTS oxide-qt
Upstream advisory

USN-2599-1

USNEPSS <= 49%2015-05-05

linux-lts-utopic vulnerability

CVEs:CVE-2015-3339

Affected products

ProductStatusVendorPackageEcosystem
linux-lts-utopic affected Ubuntu:14.04:LTS linux-lts-utopic
Upstream advisory

USN-2599-2

USNAll remaining2015-05-09

linux-lts-utopic vulnerability

Affected products

ProductStatusVendorPackageEcosystem
linux-lts-utopic affected Ubuntu:14.04:LTS linux-lts-utopic
Upstream advisory

USN-2598-2

USNAll remainingHIGH2015-05-09

linux vulnerability

Affected products

ProductStatusVendorPackageEcosystem
linux affected Ubuntu:14.04:LTS linux
Upstream advisory

Need live exploit intelligence?

Every CVE above is indexed in the Vulnetix VDB with KEV, EPSS, and PoC maturity. The interactive page surfaces that on hover.