Canonical Security Advisories · February 2023 — Canonical Security Advisories
91 advisories 262 CVEs 1 EXPLOITED

Ubuntu Security Notices (USN-NNNN-N) for 2023-02. Mirrored into Vulnetix VDB.

Every advisory below is enriched with the Vulnetix VDB exploit-intelligence chip (hover a CVE ID in the interactive page to see CVSS, EPSS, KEV status, and PoC maturity). 1 is already weaponised in the wild — see the Exploited section.

What would you fix first?

The advisories below are ordered by the Vulnetix risk prioritization strategy: exploitation evidence first, scores second. On the interactive page you can switch to three other lenses.

Advisories

USN-5893-1

USNExploitedCISA KEV listedHIGH2023-02-27

webkit2gtk vulnerabilities

CVEs:CVE-2023-23529

Affected products

ProductStatusVendorPackageEcosystem
webkit2gtk affected Ubuntu:20.04:LTS webkit2gtk
webkit2gtk affected Ubuntu:22.04:LTS webkit2gtk
Upstream advisory

USN-5903-1

USNWeaponized exploitCRITICAL2023-02-28

lighttpd vulnerabilities

CVEs:CVE-2022-22707CVE-2022-41556

Affected products

ProductStatusVendorPackageEcosystem
lighttpd affected Ubuntu:20.04:LTS lighttpd
lighttpd affected Ubuntu:22.04:LTS lighttpd
Upstream advisory

USN-5889-1

USNActive exploitation (sightings)CRITICAL2023-02-27

zoneminder vulnerabilities

CVEs:CVE-2019-6777CVE-2019-6990CVE-2019-6991CVE-2019-6992CVE-2019-7325CVE-2019-7326CVE-2019-7327CVE-2019-7328CVE-2019-7329CVE-2019-7330CVE-2019-7331CVE-2019-7332CVE-2022-29806

Affected products

ProductStatusVendorPackageEcosystem
zoneminder affected Ubuntu:Pro:16.04:LTS zoneminder
zoneminder affected Ubuntu:Pro:20.04:LTS zoneminder
zoneminder affected Ubuntu:Pro:22.04:LTS zoneminder
Upstream advisory

USN-5868-1

USNActive exploitation (sightings)CRITICAL2023-02-14

python-django vulnerability

CVEs:CVE-2023-24580

Affected products

ProductStatusVendorPackageEcosystem
python-django affected Ubuntu:18.04:LTS python-django
python-django affected Ubuntu:20.04:LTS python-django
python-django affected Ubuntu:22.04:LTS python-django
Upstream advisory

USN-5887-1

USNActive exploitation (sightings)CRITICAL2023-02-27

clamav vulnerabilities

CVEs:CVE-2023-20032CVE-2023-20052

Affected products

ProductStatusVendorPackageEcosystem
clamav affected Ubuntu:Pro:14.04:LTS clamav
clamav affected Ubuntu:18.04:LTS clamav
clamav affected Ubuntu:22.04:LTS clamav
clamav affected Ubuntu:20.04:LTS clamav
clamav affected Ubuntu:Pro:16.04:LTS clamav
Upstream advisory

USN-5852-1

USNActive exploitation (sightings)MEDIUM2023-02-09

swift vulnerability

CVEs:CVE-2022-47950

Affected products

ProductStatusVendorPackageEcosystem
swift affected Ubuntu:20.04:LTS swift
swift affected Ubuntu:22.04:LTS swift
Upstream advisory

USN-5872-1

USNActive exploitation (sightings)CRITICAL2023-02-15

nss vulnerabilities

CVEs:CVE-2022-22747CVE-2022-34480

Affected products

ProductStatusVendorPackageEcosystem
nss affected Ubuntu:Pro:16.04:LTS nss
nss affected Ubuntu:Pro:14.04:LTS nss
Upstream advisory

USN-5845-2

USNPoC exploitCRITICAL2023-02-07

openssl vulnerabilities

CVEs:CVE-2023-0215CVE-2023-0286

Affected products

ProductStatusVendorPackageEcosystem
openssl affected Ubuntu:Pro:14.04:LTS openssl
openssl affected Ubuntu:Pro:16.04:LTS openssl
Upstream advisory

USN-5839-1

USNPoC exploitHIGH2023-02-01

apache2 vulnerabilities

CVEs:CVE-2006-20001CVE-2022-36760CVE-2022-37436

Affected products

ProductStatusVendorPackageEcosystem
apache2 affected Ubuntu:22.04:LTS apache2
apache2 affected Ubuntu:18.04:LTS apache2
apache2 affected Ubuntu:20.04:LTS apache2
httpd affected Apache Software Foundation
Upstream advisory

USN-5837-2

USNPoC exploitHIGH2023-02-01

python-django vulnerability

CVEs:CVE-2023-23969

Affected products

ProductStatusVendorPackageEcosystem
python-django affected Ubuntu:Pro:16.04:LTS python-django
Upstream advisory

USN-5837-1

USNPoC exploitHIGH2023-02-01

python-django vulnerability

CVEs:CVE-2023-23969

Affected products

ProductStatusVendorPackageEcosystem
python-django affected Ubuntu:18.04:LTS python-django
python-django affected Ubuntu:20.04:LTS python-django
python-django affected Ubuntu:22.04:LTS python-django
Upstream advisory

USN-5854-1

USNPoC exploitHIGH2023-02-09

linux, linux-aws, linux-gcp-4.15, linux-kvm, linux-oracle, linux-raspi2 vulnerabilities

CVEs:CVE-2022-2663CVE-2022-3646CVE-2022-3649CVE-2022-20369CVE-2022-26373CVE-2022-29900CVE-2022-29901CVE-2022-39842CVE-2022-41849CVE-2022-41850CVE-2022-43750

Affected products

ProductStatusVendorPackageEcosystem
linux affected Ubuntu:18.04:LTS linux
linux-aws affected Ubuntu:18.04:LTS linux-aws
linux-gcp-4.15 affected Ubuntu:18.04:LTS linux-gcp-4.15
linux-kvm affected Ubuntu:18.04:LTS linux-kvm
linux-oracle affected Ubuntu:18.04:LTS linux-oracle
linux-raspi2 affected Ubuntu:18.04:LTS linux-raspi2
Upstream advisory

USN-5877-1

USNPoC exploitHIGH2023-02-15

linux-gke-5.15 vulnerabilities

CVEs:CVE-2022-0171CVE-2022-2663CVE-2022-3061CVE-2022-3303CVE-2022-3543CVE-2022-3586CVE-2022-3619CVE-2022-3623CVE-2022-3628CVE-2022-3640CVE-2022-3643CVE-2022-3646CVE-2022-3649CVE-2022-4095CVE-2022-4378CVE-2022-4662CVE-2022-20421CVE-2022-39188CVE-2022-39842CVE-2022-40307CVE-2022-41849CVE-2022-41850CVE-2022-42895CVE-2022-42896CVE-2022-43750CVE-2022-45934CVE-2022-47940CVE-2023-0590

Affected products

ProductStatusVendorPackageEcosystem
linux-gke-5.15 affected Ubuntu:20.04:LTS linux-gke-5.15
Upstream advisory

USN-5821-3

USNPoC exploitHIGH2023-02-28

python-pip regression

CVEs:CVE-2022-40898

Affected products

ProductStatusVendorPackageEcosystem
python-pip affected Ubuntu:22.04:LTS python-pip
python-pip affected Ubuntu:Pro:14.04:LTS python-pip
python-pip affected Ubuntu:18.04:LTS python-pip
python-pip affected Ubuntu:20.04:LTS python-pip
python-pip affected Ubuntu:Pro:16.04:LTS python-pip
Upstream advisory

USN-5897-1

USNPoC exploitCRITICAL2023-02-28

openjdk-17, openjdk-19, openjdk-lts vulnerabilities

CVEs:CVE-2023-21835CVE-2023-21843

Affected products

ProductStatusVendorPackageEcosystem
openjdk-17 affected Ubuntu:20.04:LTS openjdk-17
openjdk-17 affected Ubuntu:18.04:LTS openjdk-17
openjdk-17 affected Ubuntu:22.04:LTS openjdk-17
openjdk-17 affected Ubuntu:18.04:LTS
openjdk-19 affected Ubuntu:22.04:LTS openjdk-19
openjdk-lts affected Ubuntu:20.04:LTS openjdk-lts
openjdk-lts affected Ubuntu:22.04:LTS openjdk-lts
openjdk-lts affected Ubuntu:18.04:LTS openjdk-lts
Upstream advisory

USN-5900-1

USNPoC exploitHIGH2023-02-28

tar vulnerability

CVEs:CVE-2022-48303

Affected products

ProductStatusVendorPackageEcosystem
tar affected Ubuntu:Pro:16.04:LTS tar
tar affected Ubuntu:18.04:LTS tar
tar affected Ubuntu:20.04:LTS tar
tar affected Ubuntu:22.04:LTS tar
tar affected Ubuntu:Pro:14.04:LTS tar
Upstream advisory

USN-5870-1

USNPoC exploitCRITICAL2023-02-14

APR-util vulnerability

CVEs:CVE-2022-25147

Affected products

ProductStatusVendorPackageEcosystem
apr-util affected Ubuntu:18.04:LTS apr-util
apr-util affected Ubuntu:20.04:LTS apr-util
apr-util affected Ubuntu:22.04:LTS apr-util
apr-util affected Ubuntu:Pro:16.04:LTS apr-util
apr-util affected Ubuntu:Pro:14.04:LTS apr-util
Upstream advisory

USN-5902-1

USNPoC exploitCRITICAL2023-02-28

php7.2, php7.4, php8.1 vulnerabilities

CVEs:CVE-2023-0567CVE-2023-0568CVE-2023-0662

Affected products

ProductStatusVendorPackageEcosystem
php7.2 affected Ubuntu:18.04:LTS php7.2
php7.4 affected Ubuntu:20.04:LTS php7.4
php8.1 affected Ubuntu:22.04:LTS php8.1
Upstream advisory

USN-5901-1

USNPoC exploitHIGH2023-02-28

gnutls28 vulnerability

CVEs:CVE-2023-0361

Affected products

ProductStatusVendorPackageEcosystem
gnutls28 affected Ubuntu:20.04:LTS gnutls28
gnutls28 affected Ubuntu:22.04:LTS gnutls28
Upstream advisory

USN-5876-1

USNPoC exploitHIGH2023-02-15

linux-aws, linux-aws-5.15, linux-azure-fde, linux-gcp, linux-gcp-5.15, linux-intel-iotg vulnerabilities

CVEs:CVE-2022-3543CVE-2022-3619CVE-2022-3623CVE-2022-3628CVE-2022-3640CVE-2022-41849CVE-2022-41850CVE-2022-42895CVE-2022-47940CVE-2023-0590

Affected products

ProductStatusVendorPackageEcosystem
linux-aws affected Ubuntu:22.04:LTS linux-aws
linux-aws-5.15 affected Ubuntu:20.04:LTS linux-aws-5.15
linux-azure-fde affected Ubuntu:22.04:LTS linux-azure-fde
linux-gcp affected Ubuntu:22.04:LTS linux-gcp
linux-gcp-5.15 affected Ubuntu:20.04:LTS linux-gcp-5.15
linux-intel-iotg affected Ubuntu:22.04:LTS linux-intel-iotg
Upstream advisory

USN-5851-1

USNPoC exploitHIGH2023-02-09

linux, linux-azure, linux-azure-5.15, linux-gkeop, linux-hwe-5.15, linux-ibm, linux-kvm, linux-lowlatency, linux-lowlatency-hwe-5.15, linux-oracle, linux-oracle-5.15, linux-raspi vulnerabilities

CVEs:CVE-2022-3543CVE-2022-3619CVE-2022-3623CVE-2022-3628CVE-2022-3640CVE-2022-41849CVE-2022-41850CVE-2022-42895CVE-2022-47940CVE-2023-0590

Affected products

ProductStatusVendorPackageEcosystem
linux affected Ubuntu:22.04:LTS linux
linux-azure affected Ubuntu:22.04:LTS linux-azure
linux-azure-5.15 affected Ubuntu:20.04:LTS linux-azure-5.15
linux-gkeop affected Ubuntu:22.04:LTS linux-gkeop
linux-hwe-5.15 affected Ubuntu:20.04:LTS linux-hwe-5.15
linux-ibm affected Ubuntu:22.04:LTS linux-ibm
linux-kvm affected Ubuntu:22.04:LTS linux-kvm
linux-lowlatency affected Ubuntu:22.04:LTS linux-lowlatency
linux-lowlatency-hwe-5.15 affected Ubuntu:20.04:LTS linux-lowlatency-hwe-5.15
linux-oracle affected Ubuntu:22.04:LTS linux-oracle
linux-oracle-5.15 affected Ubuntu:20.04:LTS linux-oracle-5.15
linux-raspi affected Ubuntu:22.04:LTS linux-raspi
Upstream advisory

USN-5898-1

USNPoC exploitNONE2023-02-28

openjdk-8 vulnerabilities

CVEs:CVE-2023-21830CVE-2023-21843

Affected products

ProductStatusVendorPackageEcosystem
openjdk-8 affected Ubuntu:18.04:LTS openjdk-8
openjdk-8 affected Ubuntu:22.04:LTS openjdk-8
openjdk-8 affected Ubuntu:20.04:LTS openjdk-8
openjdk-8 affected Ubuntu:Pro:16.04:LTS openjdk-8
Upstream advisory

USN-5825-2

USNPoC exploitCRITICAL2023-02-06

pam regressions

CVEs:CVE-2022-28321

Affected products

ProductStatusVendorPackageEcosystem
pam affected Ubuntu:20.04:LTS pam
pam affected Ubuntu:22.04:LTS pam
pam affected Ubuntu:18.04:LTS pam
pam affected Ubuntu:Pro:14.04:LTS pam
pam affected Ubuntu:Pro:16.04:LTS pam
Upstream advisory

LSN-0091-1

USNPoC exploit2023-02-14

Kernel Live Patch Security Notice

CVEs:CVE-2022-41222CVE-2022-42719

Affected products

ProductStatusVendorPackageEcosystem
linux affected Ubuntu:Pro:22.04:LTS linux
linux affected Ubuntu:Pro:20.04:LTS linux
linux-aws affected Ubuntu:Pro:22.04:LTS linux-aws
linux-aws affected Ubuntu:Pro:20.04:LTS linux-aws
linux-aws-5.4 affected Ubuntu:Pro:18.04:LTS linux-aws-5.4
linux-azure affected Ubuntu:Pro:22.04:LTS linux-azure
linux-azure affected Ubuntu:Pro:20.04:LTS linux-azure
linux-azure-5.4 affected Ubuntu:Pro:18.04:LTS linux-azure-5.4
linux-gcp affected Ubuntu:Pro:22.04:LTS linux-gcp
linux-gcp affected Ubuntu:Pro:20.04:LTS linux-gcp
linux-gcp-5.4 affected Ubuntu:Pro:18.04:LTS linux-gcp-5.4
linux-gke affected Ubuntu:Pro:22.04:LTS linux-gke
linux-gke affected Ubuntu:Pro:20.04:LTS linux-gke
linux-gke-5.4 affected Ubuntu:Pro:18.04:LTS linux-gke-5.4
linux-gkeop affected Ubuntu:Pro:20.04:LTS linux-gkeop
linux-gkeop-5.4 affected Ubuntu:Pro:18.04:LTS linux-gkeop-5.4
linux-hwe-5.4 affected Ubuntu:Pro:18.04:LTS linux-hwe-5.4
linux-ibm affected Ubuntu:Pro:20.04:LTS linux-ibm
linux-ibm affected Ubuntu:Pro:22.04:LTS linux-ibm
linux-ibm-5.4 affected Ubuntu:Pro:18.04:LTS linux-ibm-5.4
Upstream advisory

USN-5871-1

USNPoC exploit2023-02-14

git vulnerabilities

CVEs:CVE-2023-22490CVE-2023-23946

Affected products

ProductStatusVendorPackageEcosystem
git affected Ubuntu:22.04:LTS git
git affected Ubuntu:Pro:16.04:LTS git
git affected Ubuntu:20.04:LTS git
git affected Ubuntu:18.04:LTS git
Upstream advisory

USN-5874-1

USNPoC exploitHIGH2023-02-15

linux-aws-5.4, linux-gcp, linux-gcp-5.4, linux-hwe-5.4, linux-ibm, linux-ibm-5.4, linux-oracle-5.4 vulnerabilities

CVEs:CVE-2022-3628CVE-2022-3640CVE-2022-3649CVE-2022-41849CVE-2022-41850CVE-2022-42895CVE-2023-20928

Affected products

ProductStatusVendorPackageEcosystem
linux-aws-5.4 affected Ubuntu:18.04:LTS linux-aws-5.4
linux-gcp affected Ubuntu:20.04:LTS linux-gcp
linux-gcp-5.4 affected Ubuntu:18.04:LTS linux-gcp-5.4
linux-hwe-5.4 affected Ubuntu:18.04:LTS linux-hwe-5.4
linux-ibm affected Ubuntu:20.04:LTS linux-ibm
linux-ibm-5.4 affected Ubuntu:18.04:LTS linux-ibm-5.4
linux-oracle-5.4 affected Ubuntu:18.04:LTS linux-oracle-5.4
Upstream advisory

USN-5853-1

USNPoC exploitHIGH2023-02-09

linux, linux-aws, linux-azure, linux-azure-5.4, linux-gkeop, linux-kvm, linux-oracle, linux-raspi, linux-raspi-5.4 vulnerabilities

CVEs:CVE-2022-3628CVE-2022-3640CVE-2022-3649CVE-2022-41849CVE-2022-41850CVE-2022-42895CVE-2023-20928

Affected products

ProductStatusVendorPackageEcosystem
linux affected Ubuntu:20.04:LTS linux
linux-aws affected Ubuntu:20.04:LTS linux-aws
linux-azure affected Ubuntu:20.04:LTS linux-azure
linux-azure-5.4 affected Ubuntu:18.04:LTS linux-azure-5.4
linux-gkeop affected Ubuntu:20.04:LTS linux-gkeop
linux-kvm affected Ubuntu:20.04:LTS linux-kvm
linux-oracle affected Ubuntu:20.04:LTS linux-oracle
linux-raspi affected Ubuntu:20.04:LTS linux-raspi
linux-raspi-5.4 affected Ubuntu:18.04:LTS linux-raspi-5.4
Upstream advisory

USN-5824-1

USNPoC exploitHIGH2023-02-06

thunderbird vulnerabilities

CVEs:CVE-2022-45403CVE-2022-45404CVE-2022-45405CVE-2022-45406CVE-2022-45408CVE-2022-45409CVE-2022-45410CVE-2022-45411CVE-2022-45412CVE-2022-45414CVE-2022-45416CVE-2022-45418CVE-2022-45420CVE-2022-45421CVE-2022-46871CVE-2022-46872CVE-2022-46874CVE-2022-46877CVE-2022-46878CVE-2022-46880CVE-2022-46881CVE-2022-46882CVE-2023-0430CVE-2023-23598CVE-2023-23599CVE-2023-23601CVE-2023-23602CVE-2023-23603CVE-2023-23605

Affected products

ProductStatusVendorPackageEcosystem
thunderbird affected Ubuntu:22.04:LTS thunderbird
thunderbird affected Ubuntu:20.04:LTS thunderbird
thunderbird affected Ubuntu:18.04:LTS thunderbird
Upstream advisory

USN-5842-1

USNPoC exploitCRITICAL2023-02-06

editorconfig-core vulnerability

CVEs:CVE-2023-0341

Affected products

ProductStatusVendorPackageEcosystem
editorconfig-core affected Ubuntu:Pro:18.04:LTS editorconfig-core
editorconfig-core affected Ubuntu:Pro:20.04:LTS editorconfig-core
editorconfig-core affected Ubuntu:Pro:16.04:LTS editorconfig-core
editorconfig-core affected Ubuntu:Pro:22.04:LTS editorconfig-core
Upstream advisory

USN-5892-1

USNPoC exploitCRITICAL2023-02-27

nss vulnerabilities

CVEs:CVE-2022-3479CVE-2023-0767

Affected products

ProductStatusVendorPackageEcosystem
nss affected Ubuntu:18.04:LTS nss
nss affected Ubuntu:20.04:LTS nss
nss affected Ubuntu:22.04:LTS nss
Upstream advisory

USN-5886-1

USNPoC exploitHIGH2023-02-27

intel-microcode vulnerabilities

CVEs:CVE-2022-21216CVE-2022-33196CVE-2022-33972CVE-2022-38090

Affected products

ProductStatusVendorPackageEcosystem
intel-microcode affected Ubuntu:18.04:LTS intel-microcode
intel-microcode affected Ubuntu:22.04:LTS intel-microcode
intel-microcode affected Ubuntu:20.04:LTS intel-microcode
intel-microcode affected Ubuntu:Pro:16.04:LTS intel-microcode
Upstream advisory

USN-5839-2

USNEPSS 49-79%2023-02-02

apache2 vulnerability

CVEs:CVE-2022-37436

Affected products

ProductStatusVendorPackageEcosystem
apache2 affected Ubuntu:Pro:16.04:LTS apache2
apache2 affected Apache Software Foundation
Upstream advisory

USN-5890-1

USNCoalition ESS < 30%CRITICAL2023-02-27

openvswitch vulnerabilities

CVEs:CVE-2022-4337CVE-2022-4338

Affected products

ProductStatusVendorPackageEcosystem
openvswitch affected Ubuntu:20.04:LTS openvswitch
openvswitch affected Ubuntu:22.04:LTS openvswitch
openvswitch affected Ubuntu:18.04:LTS openvswitch
Upstream advisory

UBUNTU-CVE-2021-33391

USNCoalition ESS < 30%CRITICAL2023-02-17

CVEs:CVE-2021-33391

Affected products

ProductStatusVendorPackageEcosystem
tidy-html5 affected Ubuntu:22.04:LTS tidy-html5
tidy-html5 affected Ubuntu:20.04:LTS tidy-html5
tidy-html5 affected Ubuntu:24.04:LTS tidy-html5
tidy-html5 affected Ubuntu:18.04:LTS tidy-html5
Upstream advisory

USN-5835-4

USNCoalition ESS < 30%NONE2023-02-09

cinder vulnerability

CVEs:CVE-2022-47951

Affected products

ProductStatusVendorPackageEcosystem
cinder affected Ubuntu:18.04:LTS cinder
cinder affected Ubuntu:20.04:LTS cinder
Upstream advisory

USN-5846-1

USNCoalition ESS < 30%CRITICAL2023-02-07

xorg-server, xorg-server-hwe-18.04, xwayland vulnerability

CVEs:CVE-2023-0494

Affected products

ProductStatusVendorPackageEcosystem
xorg-server affected Ubuntu:22.04:LTS xorg-server
xorg-server affected Ubuntu:18.04:LTS xorg-server
xorg-server affected Ubuntu:20.04:LTS xorg-server
xorg-server-hwe-18.04 affected Ubuntu:18.04:LTS xorg-server-hwe-18.04
xwayland affected Ubuntu:22.04:LTS xwayland
Upstream advisory

UBUNTU-CVE-2021-34182

USNCoalition ESS < 30%CRITICAL2023-02-17

CVEs:CVE-2021-34182

Affected products

ProductStatusVendorPackageEcosystem
ttyd affected Ubuntu:25.10 ttyd
ttyd affected Ubuntu:24.04:LTS ttyd
ttyd affected Ubuntu:22.04:LTS ttyd
Upstream advisory

UBUNTU-CVE-2021-32850

USNCoalition ESS < 30%MEDIUM2023-02-20

CVEs:CVE-2021-32850

Affected products

ProductStatusVendorPackageEcosystem
jquery-minicolors affected Ubuntu:22.04:LTS jquery-minicolors
jquery-minicolors affected Ubuntu:18.04:LTS jquery-minicolors
jquery-minicolors affected Ubuntu:20.04:LTS jquery-minicolors
jquery-minicolors affected Ubuntu:25.10 jquery-minicolors
jquery-minicolors affected Ubuntu:16.04:LTS jquery-minicolors
jquery-minicolors affected Ubuntu:24.04:LTS jquery-minicolors
Upstream advisory

USN-5899-1

USNCoalition ESS < 30%CRITICAL2023-02-28

awstats vulnerability

CVEs:CVE-2022-46391

Affected products

ProductStatusVendorPackageEcosystem
awstats affected Ubuntu:Pro:16.04:LTS awstats
awstats affected Ubuntu:20.04:LTS awstats
awstats affected Ubuntu:18.04:LTS awstats
awstats affected Ubuntu:22.04:LTS awstats
Upstream advisory

UBUNTU-CVE-2021-32419

USNCoalition ESS < 30%MEDIUM2023-02-17

CVEs:CVE-2021-32419

Affected products

ProductStatusVendorPackageEcosystem
schism affected Ubuntu:18.04:LTS schism
schism affected Ubuntu:25.10 schism
schism affected Ubuntu:24.04:LTS schism
schism affected Ubuntu:22.04:LTS schism
schism affected Ubuntu:16.04:LTS schism
schism affected Ubuntu:20.04:LTS schism
Upstream advisory

USN-5849-1

USNCoalition ESS < 30%HIGH2023-02-08

heimdal vulnerabilities

CVEs:CVE-2022-45142

Affected products

ProductStatusVendorPackageEcosystem
heimdal affected Ubuntu:20.04:LTS heimdal
heimdal affected Ubuntu:Pro:16.04:LTS heimdal
heimdal affected Ubuntu:18.04:LTS heimdal
heimdal affected Ubuntu:Pro:14.04:LTS heimdal
Upstream advisory

UBUNTU-CVE-2021-32142

USNCoalition ESS < 30%HIGH2023-02-17

CVEs:CVE-2021-32142

Affected products

ProductStatusVendorPackageEcosystem
darktable affected Ubuntu:25.10 darktable
darktable affected Ubuntu:24.04:LTS darktable
darktable affected Ubuntu:20.04:LTS darktable
darktable affected Ubuntu:18.04:LTS darktable
darktable affected Ubuntu:22.04:LTS darktable
darktable affected Ubuntu:16.04:LTS darktable
dcraw affected Ubuntu:18.04:LTS dcraw
dcraw affected Ubuntu:20.04:LTS dcraw
dcraw affected Ubuntu:22.04:LTS dcraw
dcraw affected Ubuntu:24.04:LTS dcraw
dcraw affected Ubuntu:25.10 dcraw
dcraw affected Ubuntu:16.04:LTS dcraw
digikam affected Ubuntu:Pro:20.04:LTS digikam
exactimage affected Ubuntu:18.04:LTS exactimage
exactimage affected Ubuntu:24.04:LTS exactimage
exactimage affected Ubuntu:16.04:LTS exactimage
exactimage affected Ubuntu:20.04:LTS exactimage
exactimage affected Ubuntu:25.10 exactimage
exactimage affected Ubuntu:22.04:LTS exactimage
kodi affected Ubuntu:25.10 kodi
kodi affected Ubuntu:24.04:LTS kodi
kodi affected Ubuntu:18.04:LTS kodi
kodi affected Ubuntu:16.04:LTS kodi
kodi affected Ubuntu:20.04:LTS kodi
kodi affected Ubuntu:22.04:LTS kodi
libraw affected Ubuntu:Pro:16.04:LTS libraw
libraw affected Ubuntu:22.04:LTS libraw
libraw affected Ubuntu:20.04:LTS libraw
libraw affected Ubuntu:Pro:18.04:LTS libraw
rawtherapee affected Ubuntu:24.04:LTS rawtherapee
rawtherapee affected Ubuntu:16.04:LTS rawtherapee
rawtherapee affected Ubuntu:22.04:LTS rawtherapee
rawtherapee affected Ubuntu:18.04:LTS rawtherapee
rawtherapee affected Ubuntu:20.04:LTS rawtherapee
rawtherapee affected Ubuntu:25.10 rawtherapee
ufraw affected Ubuntu:18.04:LTS ufraw
ufraw affected Ubuntu:16.04:LTS ufraw
Upstream advisory

UBUNTU-CVE-2021-33367

USNCoalition ESS < 30%MEDIUM2023-02-22

CVEs:CVE-2021-33367

Affected products

ProductStatusVendorPackageEcosystem
freeimage affected Ubuntu:Pro:18.04:LTS freeimage
freeimage affected Ubuntu:24.04:LTS freeimage
freeimage affected Ubuntu:20.04:LTS freeimage
freeimage affected Ubuntu:Pro:14.04:LTS freeimage
freeimage affected Ubuntu:Pro:16.04:LTS freeimage
freeimage affected Ubuntu:25.10 freeimage
freeimage affected Ubuntu:22.04:LTS freeimage
Upstream advisory

USN-4781-2

USNEPSS <= 49%HIGH2023-02-01

slurm-llnl vulnerabilities

CVEs:CVE-2016-10030CVE-2018-10995

Affected products

ProductStatusVendorPackageEcosystem
slurm-llnl affected Ubuntu:Pro:14.04:LTS slurm-llnl
slurm-llnl affected Ubuntu:Pro:16.04:LTS slurm-llnl
Upstream advisory

UBUNTU-CVE-2014-125087

USNEPSS <= 49%CRITICAL2023-02-19

CVEs:CVE-2014-125087

Affected products

ProductStatusVendorPackageEcosystem
java-xmlbuilder affected Ubuntu:24.04:LTS java-xmlbuilder
java-xmlbuilder affected Ubuntu:22.04:LTS java-xmlbuilder
java-xmlbuilder affected Ubuntu:20.04:LTS java-xmlbuilder
java-xmlbuilder affected Ubuntu:18.04:LTS java-xmlbuilder
java-xmlbuilder affected Ubuntu:25.10 java-xmlbuilder
java-xmlbuilder affected Ubuntu:16.04:LTS java-xmlbuilder
Upstream advisory

UBUNTU-CVE-2019-25104

USNEPSS <= 49%HIGH2023-02-20

CVEs:CVE-2019-25104

Affected products

ProductStatusVendorPackageEcosystem
iortcw affected Ubuntu:22.04:LTS iortcw
iortcw affected Ubuntu:24.04:LTS iortcw
iortcw affected Ubuntu:20.04:LTS iortcw
iortcw affected Ubuntu:25.10 iortcw
iortcw affected Ubuntu:18.04:LTS iortcw
Upstream advisory

USN-5843-1

USNEPSS <= 49%HIGH2023-02-06

tmux vulnerability

CVEs:CVE-2022-47016

Affected products

ProductStatusVendorPackageEcosystem
tmux affected Ubuntu:Pro:16.04:LTS tmux
tmux affected Ubuntu:20.04:LTS tmux
tmux affected Ubuntu:22.04:LTS tmux
tmux affected Ubuntu:Pro:14.04:LTS tmux
tmux affected Ubuntu:18.04:LTS tmux
Upstream advisory

UBUNTU-CVE-2020-19824

USNEPSS <= 49%HIGH2023-02-17

CVEs:CVE-2020-19824

Affected products

ProductStatusVendorPackageEcosystem
mpv affected Ubuntu:22.04:LTS mpv
mpv affected Ubuntu:20.04:LTS mpv
mpv affected Ubuntu:24.04:LTS mpv
mpv affected Ubuntu:25.10 mpv
mpv affected Ubuntu:18.04:LTS mpv
mpv affected Ubuntu:16.04:LTS mpv
Upstream advisory

UBUNTU-CVE-2019-14560

USNAll remainingLOW2023-02-28

CVEs:CVE-2019-14560

Affected products

ProductStatusVendorPackageEcosystem
edk2 affected Ubuntu:Pro:16.04:LTS edk2
edk2 affected Ubuntu:22.04:LTS edk2
edk2 affected Ubuntu:Pro:20.04:LTS edk2
edk2 affected Ubuntu:Pro:18.04:LTS edk2
Upstream advisory

USN-5896-1

USNAll remaining2023-02-27

ruby-rack vulnerabilities

Affected products

ProductStatusVendorPackageEcosystem
ruby-rack affected Ubuntu:Pro:20.04:LTS ruby-rack
ruby-rack affected Ubuntu:Pro:22.04:LTS ruby-rack
ruby-rack affected Ubuntu:Pro:18.04:LTS ruby-rack
Upstream advisory

USN-5739-2

USNAll remaining2023-02-22

mariadb-10.3, mariadb-10.6 regression

Affected products

ProductStatusVendorPackageEcosystem
mariadb-10.3 affected Ubuntu:20.04:LTS mariadb-10.3
mariadb-10.6 affected Ubuntu:22.04:LTS mariadb-10.6
Upstream advisory

USN-5881-1

USNAll remaining2023-02-21

chromium-browser vulnerabilities

Affected products

ProductStatusVendorPackageEcosystem
chromium-browser affected Ubuntu:18.04:LTS chromium-browser
Upstream advisory

USN-5869-1

USNAll remaining2023-02-14

haproxy vulnerability

Affected products

ProductStatusVendorPackageEcosystem
haproxy affected Ubuntu:20.04:LTS haproxy
haproxy affected Ubuntu:22.04:LTS haproxy
haproxy affected Ubuntu:18.04:LTS haproxy
Upstream advisory

USN-5857-1

USNAll remaining2023-02-09

linux-oem-6.0 vulnerability

Affected products

ProductStatusVendorPackageEcosystem
linux-oem-6.0 affected Ubuntu:22.04:LTS linux-oem-6.0
Upstream advisory

USN-5848-1

USNAll remaining2023-02-09

less vulnerability

Affected products

ProductStatusVendorPackageEcosystem
less affected Ubuntu:22.04:LTS less
Upstream advisory

USN-5816-2

USNAll remainingHIGH2023-02-06

firefox regressions

Affected products

ProductStatusVendorPackageEcosystem
firefox affected Ubuntu:18.04:LTS firefox
firefox affected Ubuntu:20.04:LTS firefox
Upstream advisory

Need live exploit intelligence?

Every CVE above is indexed in the Vulnetix VDB with KEV, EPSS, and PoC maturity. The interactive page surfaces that on hover.