Canonical Security Advisories · June 2023 — Canonical Security Advisories
78 advisories 135 CVEs 10 EXPLOITED

Ubuntu Security Notices (USN-NNNN-N) for 2023-06. Mirrored into Vulnetix VDB.

Every advisory below is enriched with the Vulnetix VDB exploit-intelligence chip (hover a CVE ID in the interactive page to see CVSS, EPSS, KEV status, and PoC maturity). 10 are already weaponised in the wild — see the Exploited section.

What would you fix first?

The advisories below are ordered by the Vulnetix risk prioritization strategy: exploitation evidence first, scores second. On the interactive page you can switch to three other lenses.

Advisories

LSN-0095-1

USNExploitedCISA KEV listed2023-06-21

Kernel Live Patch Security Notice

CVEs:CVE-2023-0386CVE-2023-1380CVE-2023-1872CVE-2023-2612CVE-2023-31436CVE-2023-32233

Affected products

ProductStatusVendorPackageEcosystem
linux affected Ubuntu:Pro:20.04:LTS linux
linux affected Ubuntu:Pro:22.04:LTS linux
linux-aws affected Ubuntu:Pro:22.04:LTS linux-aws
linux-aws affected Ubuntu:Pro:20.04:LTS linux-aws
linux-aws-5.15 affected Ubuntu:Pro:20.04:LTS linux-aws-5.15
linux-aws-5.4 affected Ubuntu:Pro:18.04:LTS linux-aws-5.4
linux-azure affected Ubuntu:Pro:22.04:LTS linux-azure
linux-azure affected Ubuntu:Pro:20.04:LTS linux-azure
linux-azure-5.4 affected Ubuntu:Pro:18.04:LTS linux-azure-5.4
linux-gcp affected Ubuntu:Pro:22.04:LTS linux-gcp
linux-gcp affected Ubuntu:Pro:20.04:LTS linux-gcp
linux-gcp-5.15 affected Ubuntu:Pro:20.04:LTS linux-gcp-5.15
linux-gcp-5.4 affected Ubuntu:Pro:18.04:LTS linux-gcp-5.4
linux-gke affected Ubuntu:Pro:22.04:LTS linux-gke
linux-gke affected Ubuntu:Pro:20.04:LTS linux-gke
linux-gke-5.15 affected Ubuntu:Pro:20.04:LTS linux-gke-5.15
linux-gke-5.4 affected Ubuntu:Pro:18.04:LTS linux-gke-5.4
linux-gkeop affected Ubuntu:Pro:20.04:LTS linux-gkeop
linux-gkeop-5.4 affected Ubuntu:Pro:18.04:LTS linux-gkeop-5.4
linux-hwe-5.4 affected Ubuntu:Pro:18.04:LTS linux-hwe-5.4
linux-ibm affected Ubuntu:Pro:22.04:LTS linux-ibm
linux-ibm affected Ubuntu:Pro:20.04:LTS linux-ibm
linux-ibm-5.4 affected Ubuntu:Pro:18.04:LTS linux-ibm-5.4
linux-lowlatency affected Ubuntu:Pro:22.04:LTS linux-lowlatency
Upstream advisory

USN-6134-1

USNExploitedCISA KEV listedHIGH2023-06-01

linux-intel-iotg-5.15 vulnerabilities

CVEs:CVE-2022-3707CVE-2022-4129CVE-2022-4842CVE-2022-27672CVE-2022-47929CVE-2023-0386CVE-2023-0394CVE-2023-0458CVE-2023-0459CVE-2023-1073CVE-2023-1074CVE-2023-1075CVE-2023-1078CVE-2023-1118CVE-2023-1281CVE-2023-1513CVE-2023-1652CVE-2023-1829CVE-2023-1872CVE-2023-2162CVE-2023-20938CVE-2023-21102CVE-2023-26545CVE-2023-32269

Affected products

ProductStatusVendorPackageEcosystem
linux-intel-iotg-5.15 affected Ubuntu:20.04:LTS linux-intel-iotg-5.15
Upstream advisory

USN-6146-1

USNExploitedVulnCheck KEV listedHIGH2023-06-08

netatalk vulnerabilities

CVEs:CVE-2021-31439CVE-2022-0194CVE-2022-23121CVE-2022-23122CVE-2022-23123CVE-2022-23124CVE-2022-23125CVE-2022-43634CVE-2022-45188

Affected products

ProductStatusVendorPackageEcosystem
netatalk affected Ubuntu:Pro:16.04:LTS netatalk
netatalk affected Ubuntu:Pro:18.04:LTS netatalk
netatalk affected Ubuntu:22.04:LTS netatalk
netatalk affected Ubuntu:20.04:LTS netatalk
netatalk affected Ubuntu:Pro:14.04:LTS netatalk
Upstream advisory

USN-6149-1

USNExploitedVulnCheck KEV listedHIGH2023-06-08

linux, linux-aws, linux-kvm, linux-lts-xenial vulnerabilities

CVEs:CVE-2023-1073CVE-2023-1380CVE-2023-28328CVE-2023-30456CVE-2023-31436CVE-2023-32233

Affected products

ProductStatusVendorPackageEcosystem
linux affected Ubuntu:Pro:16.04:LTS linux
linux-aws affected Ubuntu:Pro:14.04:LTS linux-aws
linux-aws affected Ubuntu:Pro:16.04:LTS linux-aws
linux-kvm affected Ubuntu:Pro:16.04:LTS linux-kvm
linux-lts-xenial affected Ubuntu:Pro:14.04:LTS linux-lts-xenial
Upstream advisory

USN-6131-1

USNExploitedVulnCheck KEV listedHIGH2023-06-01

linux, linux-aws, linux-azure, linux-azure-5.4, linux-gcp, linux-gcp-5.4, linux-gke, linux-gkeop, linux-hwe-5.4, linux-ibm, linux-ibm-5.4, linux-kvm, linux-oracle, linux-oracle-5.4 vulnerabilities

CVEs:CVE-2023-1380CVE-2023-2612CVE-2023-30456CVE-2023-31436CVE-2023-32233

Affected products

ProductStatusVendorPackageEcosystem
linux affected Ubuntu:20.04:LTS linux
linux-aws affected Ubuntu:20.04:LTS linux-aws
linux-azure affected Ubuntu:20.04:LTS linux-azure
linux-azure-5.4 affected Ubuntu:18.04:LTS linux-azure-5.4
linux-gcp affected Ubuntu:20.04:LTS linux-gcp
linux-gcp-5.4 affected Ubuntu:18.04:LTS linux-gcp-5.4
linux-gke affected Ubuntu:20.04:LTS linux-gke
linux-gkeop affected Ubuntu:20.04:LTS linux-gkeop
linux-hwe-5.4 affected Ubuntu:18.04:LTS linux-hwe-5.4
linux-ibm affected Ubuntu:20.04:LTS linux-ibm
linux-ibm-5.4 affected Ubuntu:18.04:LTS linux-ibm-5.4
linux-kvm affected Ubuntu:20.04:LTS linux-kvm
linux-oracle affected Ubuntu:20.04:LTS linux-oracle
linux-oracle-5.4 affected Ubuntu:18.04:LTS linux-oracle-5.4
Upstream advisory

USN-6130-1

USNExploitedVulnCheck KEV listedHIGH2023-06-01

linux, linux-aws, linux-aws-hwe, linux-azure, linux-azure-4.15, linux-gcp, linux-gcp-4.15, linux-hwe, linux-kvm, linux-oracle, linux-snapdragon vulnerabilities

CVEs:CVE-2023-1380CVE-2023-30456CVE-2023-31436CVE-2023-32233

Affected products

ProductStatusVendorPackageEcosystem
linux affected Ubuntu:18.04:LTS linux
linux-aws affected Ubuntu:18.04:LTS linux-aws
linux-aws-hwe affected Ubuntu:Pro:16.04:LTS linux-aws-hwe
linux-azure affected Ubuntu:Pro:16.04:LTS linux-azure
linux-azure affected Ubuntu:Pro:14.04:LTS linux-azure
linux-azure-4.15 affected Ubuntu:18.04:LTS linux-azure-4.15
linux-gcp affected Ubuntu:Pro:16.04:LTS linux-gcp
linux-gcp-4.15 affected Ubuntu:18.04:LTS linux-gcp-4.15
linux-hwe affected Ubuntu:Pro:16.04:LTS linux-hwe
linux-kvm affected Ubuntu:18.04:LTS linux-kvm
linux-oracle affected Ubuntu:18.04:LTS linux-oracle
linux-oracle affected Ubuntu:Pro:16.04:LTS linux-oracle
linux-snapdragon affected Ubuntu:18.04:LTS linux-snapdragon
Upstream advisory

USN-6185-1

USNWeaponized exploitHIGH2023-06-22

linux-aws, linux-azure, linux-bluefield, linux-gcp, linux-gke, linux-gkeop, linux-ibm, linux-kvm, linux-oracle, linux-raspi vulnerabilities

CVEs:CVE-2023-1076CVE-2023-1077CVE-2023-1079CVE-2023-1670CVE-2023-1859CVE-2023-1998CVE-2023-2985CVE-2023-25012

Affected products

ProductStatusVendorPackageEcosystem
linux-aws affected Ubuntu:20.04:LTS linux-aws
linux-azure affected Ubuntu:20.04:LTS linux-azure
linux-bluefield affected Ubuntu:20.04:LTS linux-bluefield
linux-gcp affected Ubuntu:20.04:LTS linux-gcp
linux-gke affected Ubuntu:20.04:LTS linux-gke
linux-gkeop affected Ubuntu:20.04:LTS linux-gkeop
linux-ibm affected Ubuntu:20.04:LTS linux-ibm
linux-kvm affected Ubuntu:20.04:LTS linux-kvm
linux-oracle affected Ubuntu:20.04:LTS linux-oracle
linux-raspi affected Ubuntu:20.04:LTS linux-raspi
Upstream advisory

USN-6172-1

USNWeaponized exploitHIGH2023-06-16

linux, linux-aws, linux-aws-5.15, linux-azure, linux-azure-5.15, linux-azure-fde-5.15, linux-gcp, linux-gcp-5.15, linux-gke, linux-gke-5.15, linux-gkeop, linux-hwe-5.15, linux-ibm, linux-kvm, linux-lowlatency, linux-lowlatency-hwe-5.15, linux-oracle, linux-oracle-5.15, linux-raspi vulnerabilities

CVEs:CVE-2023-1076CVE-2023-1077CVE-2023-1079CVE-2023-1670CVE-2023-1859CVE-2023-1998CVE-2023-2985CVE-2023-25012

Affected products

ProductStatusVendorPackageEcosystem
linux affected Ubuntu:20.04:LTS linux
linux affected Ubuntu:22.04:LTS linux
linux-aws affected Ubuntu:22.04:LTS linux-aws
linux-aws-5.15 affected Ubuntu:20.04:LTS linux-aws-5.15
linux-azure affected Ubuntu:22.04:LTS linux-azure
linux-azure-5.15 affected Ubuntu:20.04:LTS linux-azure-5.15
linux-azure-fde-5.15 affected Ubuntu:20.04:LTS linux-azure-fde-5.15
linux-gcp affected Ubuntu:22.04:LTS linux-gcp
linux-gcp-5.15 affected Ubuntu:20.04:LTS linux-gcp-5.15
linux-gke affected Ubuntu:22.04:LTS linux-gke
linux-gke-5.15 affected Ubuntu:20.04:LTS linux-gke-5.15
linux-gkeop affected Ubuntu:22.04:LTS linux-gkeop
linux-hwe-5.15 affected Ubuntu:20.04:LTS linux-hwe-5.15
linux-ibm affected Ubuntu:22.04:LTS linux-ibm
linux-kvm affected Ubuntu:22.04:LTS linux-kvm
linux-lowlatency affected Ubuntu:22.04:LTS linux-lowlatency
linux-lowlatency-hwe-5.15 affected Ubuntu:20.04:LTS linux-lowlatency-hwe-5.15
linux-oracle affected Ubuntu:22.04:LTS linux-oracle
linux-oracle-5.15 affected Ubuntu:20.04:LTS linux-oracle-5.15
linux-raspi affected Ubuntu:22.04:LTS linux-raspi
Upstream advisory

USN-6138-1

USNWeaponized exploitCRITICAL2023-06-05

libssh vulnerabilities

CVEs:CVE-2023-1667CVE-2023-2283

Affected products

ProductStatusVendorPackageEcosystem
libssh affected Ubuntu:22.04:LTS libssh
libssh affected Ubuntu:20.04:LTS libssh
Upstream advisory

USN-6145-1

USNActive exploitation (sightings)CRITICAL2023-06-07

sysstat vulnerabilities

CVEs:CVE-2022-39377CVE-2023-33204

Affected products

ProductStatusVendorPackageEcosystem
sysstat affected Ubuntu:Pro:16.04:LTS sysstat
sysstat affected Ubuntu:Pro:14.04:LTS sysstat
sysstat affected Ubuntu:20.04:LTS sysstat
sysstat affected Ubuntu:Pro:18.04:LTS sysstat
sysstat affected Ubuntu:22.04:LTS sysstat
Upstream advisory

USN-6157-1

USNActive exploitation (sightings)2023-06-12

glusterfs vulnerability

CVEs:CVE-2023-26253

Affected products

ProductStatusVendorPackageEcosystem
glusterfs affected Ubuntu:22.04:LTS glusterfs
Upstream advisory

UBUNTU-CVE-2020-25720

USNActive exploitation (sightings)2023-06-07

CVEs:CVE-2020-25720

Affected products

ProductStatusVendorPackageEcosystem
samba affected Ubuntu:Pro:16.04:LTS samba
samba affected Ubuntu:Pro:18.04:LTS samba
samba affected Ubuntu:Pro:14.04:LTS samba
samba affected Ubuntu:Pro:20.04:LTS samba
samba affected Ubuntu:22.04:LTS samba
Upstream advisory

USN-6190-1

USNActive exploitation (sightings)HIGH2023-06-28

accountsservice vulnerability

CVEs:CVE-2023-3297

Affected products

ProductStatusVendorPackageEcosystem
accountsservice affected Ubuntu:20.04:LTS accountsservice
accountsservice affected Ubuntu:22.04:LTS accountsservice
Upstream advisory

USN-6188-1

USNPoC exploitCRITICAL2023-06-22

openssl vulnerability

CVEs:CVE-2023-2650

Affected products

ProductStatusVendorPackageEcosystem
openssl affected Ubuntu:Pro:16.04:LTS openssl
openssl affected Ubuntu:Pro:14.04:LTS openssl
Upstream advisory

USN-6139-1

USNPoC exploit2023-06-05

python2.7, python3.10, python3.11, python3.5, python3.6, python3.8 vulnerability

CVEs:CVE-2023-24329

Affected products

ProductStatusVendorPackageEcosystem
python2.7 affected Ubuntu:Pro:14.04:LTS python2.7
python2.7 affected Ubuntu:Pro:16.04:LTS python2.7
python2.7 affected Ubuntu:Pro:18.04:LTS python2.7
python3.10 affected Ubuntu:22.04:LTS python3.10
python3.5 affected Ubuntu:Pro:16.04:LTS python3.5
python3.6 affected Ubuntu:Pro:18.04:LTS python3.6
python3.8 affected Ubuntu:20.04:LTS python3.8
Upstream advisory

USN-6155-2

USNPoC exploitHIGH2023-06-15

requests vulnerability

CVEs:CVE-2023-32681

Affected products

ProductStatusVendorPackageEcosystem
requests affected Ubuntu:Pro:16.04:LTS requests
requests affected Ubuntu:Pro:18.04:LTS requests
Upstream advisory

USN-6144-1

USNPoC exploitHIGH2023-06-07

libreoffice vulnerabilities

CVEs:CVE-2023-0950CVE-2023-2255

Affected products

ProductStatusVendorPackageEcosystem
libreoffice affected Ubuntu:22.04:LTS libreoffice
libreoffice affected Ubuntu:20.04:LTS libreoffice
Upstream advisory

USN-6168-2

USNPoC exploitMEDIUM2023-06-20

libx11 vulnerability

CVEs:CVE-2023-3138

Affected products

ProductStatusVendorPackageEcosystem
libx11 affected Ubuntu:Pro:16.04:LTS libx11
libx11 affected Ubuntu:Pro:18.04:LTS libx11
libx11 affected Ubuntu:Pro:14.04:LTS libx11
Upstream advisory

USN-6168-1

USNPoC exploitMEDIUM2023-06-15

libx11 vulnerability

CVEs:CVE-2023-3138

Affected products

ProductStatusVendorPackageEcosystem
libx11 affected Ubuntu:22.04:LTS libx11
libx11 affected Ubuntu:20.04:LTS libx11
Upstream advisory

USN-6189-1

USNPoC exploitCRITICAL2023-06-28

etcd vulnerability

CVEs:CVE-2021-28235

Affected products

ProductStatusVendorPackageEcosystem
etcd affected Ubuntu:Pro:18.04:LTS etcd
etcd affected Ubuntu:Pro:20.04:LTS etcd
etcd affected Ubuntu:Pro:22.04:LTS etcd
Upstream advisory

USN-6112-2

USNPoC exploitCRITICAL2023-06-05

perl vulnerability

CVEs:CVE-2023-31484

Affected products

ProductStatusVendorPackageEcosystem
perl affected Ubuntu
perl affected Ubuntu:20.04:LTS perl
perl affected Ubuntu:22.04:LTS perl
Upstream advisory

USN-6128-1

USNPoC exploitCRITICAL2023-06-01

cups vulnerability

CVEs:CVE-2023-32324

Affected products

ProductStatusVendorPackageEcosystem
cups affected Ubuntu:20.04:LTS cups
cups affected Ubuntu:18.04:LTS cups
cups affected Ubuntu:22.04:LTS cups
Upstream advisory

USN-6177-1

USNPoC exploitMEDIUM2023-06-19

libjettison-java vulnerabilities

CVEs:CVE-2022-40149CVE-2022-40150CVE-2022-45685CVE-2022-45693

Affected products

ProductStatusVendorPackageEcosystem
libjettison-java affected Ubuntu:20.04:LTS libjettison-java
libjettison-java affected Ubuntu:Pro:18.04:LTS libjettison-java
libjettison-java affected Ubuntu:22.04:LTS libjettison-java
libjettison-java affected Ubuntu:Pro:16.04:LTS libjettison-java
Upstream advisory

USN-6184-1

USNPoC exploitHIGH2023-06-22

cups vulnerability

CVEs:CVE-2023-34241

Affected products

ProductStatusVendorPackageEcosystem
cups affected Ubuntu:20.04:LTS cups
cups affected Ubuntu:22.04:LTS cups
Upstream advisory

USN-6182-1

USNPoC exploitMEDIUM2023-06-21

pngcheck vulnerabilities

CVEs:CVE-2020-27818CVE-2020-35511

Affected products

ProductStatusVendorPackageEcosystem
pngcheck affected Ubuntu:Pro:16.04:LTS pngcheck
pngcheck affected Ubuntu:20.04:LTS pngcheck
pngcheck affected Ubuntu:Pro:18.04:LTS pngcheck
Upstream advisory

USN-6159-1

USNPoC exploitNONE2023-06-13

python-tornado vulnerability

CVEs:CVE-2023-28370

Affected products

ProductStatusVendorPackageEcosystem
python-tornado affected Ubuntu:Pro:16.04:LTS python-tornado
Upstream advisory

USN-6166-2

USNPoC exploitCRITICAL2023-06-19

libcap2 vulnerability

CVEs:CVE-2023-2603

Affected products

ProductStatusVendorPackageEcosystem
libcap2 affected Ubuntu:Pro:14.04:LTS libcap2
libcap2 affected Ubuntu:Pro:16.04:LTS libcap2
libcap2 affected Ubuntu:Pro:18.04:LTS libcap2
Upstream advisory

USN-6166-1

USNPoC exploitCRITICAL2023-06-14

libcap2 vulnerabilities

CVEs:CVE-2023-2602CVE-2023-2603

Affected products

ProductStatusVendorPackageEcosystem
libcap2 affected Ubuntu:22.04:LTS libcap2
libcap2 affected Ubuntu:20.04:LTS libcap2
Upstream advisory

USN-6154-1

USNPoC exploitCRITICAL2023-06-12

vim vulnerabilities

CVEs:CVE-2023-2426CVE-2023-2609CVE-2023-2610

Affected products

ProductStatusVendorPackageEcosystem
vim affected Ubuntu:Pro:18.04:LTS vim
vim affected Ubuntu:Pro:14.04:LTS vim
vim affected Ubuntu:20.04:LTS vim
vim affected Ubuntu:Pro:16.04:LTS vim
vim affected Ubuntu:22.04:LTS vim
Upstream advisory

USN-6129-1

USNPoC exploitMEDIUM2023-06-01

avahi vulnerability

CVEs:CVE-2023-1981

Affected products

ProductStatusVendorPackageEcosystem
avahi affected Ubuntu:22.04:LTS avahi
avahi affected Ubuntu:20.04:LTS avahi
Upstream advisory

UBUNTU-CVE-2020-23064

USNPoC exploit2023-06-26

CVEs:CVE-2020-23064

Affected products

ProductStatusVendorPackageEcosystem
jquery affected Ubuntu:Pro:20.04:LTS jquery
jquery affected Ubuntu:Pro:14.04:LTS jquery
jquery affected Ubuntu:Pro:16.04:LTS jquery
jquery affected Ubuntu:Pro:18.04:LTS jquery
Upstream advisory

USN-6163-1

USNCoalition ESS < 30%CRITICAL2023-06-14

pano13 vulnerabilities

CVEs:CVE-2021-20307CVE-2021-33293

Affected products

ProductStatusVendorPackageEcosystem
libpano13 affected Ubuntu:Pro:14.04:LTS libpano13
libpano13 affected Ubuntu:20.04:LTS libpano13
libpano13 affected Ubuntu:Pro:18.04:LTS libpano13
libpano13 affected Ubuntu:Pro:16.04:LTS libpano13
libpano13 affected Ubuntu:Pro:22.04:LTS libpano13
Upstream advisory

USN-6178-1

USNCoalition ESS < 30%HIGH2023-06-19

Several security issues were fixed in SVG++ library

CVEs:CVE-2019-6246CVE-2021-44960

Affected products

ProductStatusVendorPackageEcosystem
svgpp affected Ubuntu:Pro:18.04:LTS svgpp
svgpp affected Ubuntu:22.04:LTS svgpp
Upstream advisory

USN-6169-1

USNCoalition ESS < 30%HIGH2023-06-15

gsasl vulnerability

CVEs:CVE-2022-2469

Affected products

ProductStatusVendorPackageEcosystem
gsasl affected Ubuntu:Pro:22.04:LTS gsasl
gsasl affected Ubuntu:Pro:20.04:LTS gsasl
gsasl affected Ubuntu:Pro:18.04:LTS gsasl
gsasl affected Ubuntu:Pro:14.04:LTS gsasl
gsasl affected Ubuntu:Pro:16.04:LTS gsasl
Upstream advisory

USN-6176-1

USNCoalition ESS < 30%HIGH2023-06-19

pypdf2 vulnerability

CVEs:CVE-2022-24859

Affected products

ProductStatusVendorPackageEcosystem
pypdf2 affected Ubuntu:20.04:LTS pypdf2
pypdf2 affected Ubuntu:Pro:18.04:LTS pypdf2
pypdf2 affected Ubuntu:Pro:16.04:LTS pypdf2
pypdf2 affected Ubuntu:22.04:LTS pypdf2
Upstream advisory

USN-6160-1

USNCoalition ESS < 30%CRITICAL2023-06-13

binutils vulnerability

CVEs:CVE-2021-45078

Affected products

ProductStatusVendorPackageEcosystem
binutils affected Ubuntu:20.04:LTS binutils
Upstream advisory

USN-6153-1

USNCoalition ESS < 30%CRITICAL2023-06-12

jupyter-core vulnerability

CVEs:CVE-2022-39286

Affected products

ProductStatusVendorPackageEcosystem
jupyter-core affected Ubuntu:Pro:20.04:LTS jupyter-core
jupyter-core affected Ubuntu:Pro:18.04:LTS jupyter-core
jupyter-core affected Ubuntu:Pro:22.04:LTS jupyter-core
Upstream advisory

USN-6179-1

USNCoalition ESS < 30%MEDIUM2023-06-20

libjettison-java vulnerability

CVEs:CVE-2023-1436

Affected products

ProductStatusVendorPackageEcosystem
libjettison-java affected Ubuntu:Pro:22.04:LTS libjettison-java
libjettison-java affected Ubuntu:Pro:18.04:LTS libjettison-java
libjettison-java affected Ubuntu:Pro:16.04:LTS libjettison-java
libjettison-java affected Ubuntu:Pro:20.04:LTS libjettison-java
Upstream advisory

USN-6156-1

USNCoalition ESS < 30%CRITICAL2023-06-12

sssd vulnerability

CVEs:CVE-2022-4254

Affected products

ProductStatusVendorPackageEcosystem
sssd affected Ubuntu:20.04:LTS sssd
Upstream advisory

USN-6147-1

USNCoalition ESS < 30%HIGH2023-06-08

mozjs102 vulnerability

CVEs:CVE-2023-34416

Affected products

ProductStatusVendorPackageEcosystem
mozjs102 affected Ubuntu:22.04:LTS mozjs102
Upstream advisory

USN-6193-1

USNCoalition ESS < 30%CRITICAL2023-06-29

linux, linux-aws, linux-aws-5.15, linux-aws-5.4, linux-azure, linux-azure-5.15, linux-azure-5.4, linux-azure-fde-5.15, linux-bluefield, linux-gcp, linux-gcp-5.15, linux-gcp-5.4, linux-gke, linux-gke-5.15, linux-gkeop, linux-gkeop-5.15, linux-hwe-5.15, linux-hwe-5.4, linux-ibm, linux-ibm-5.4, linux-kvm, linux-lowlatency, linux-lowlatency-hwe-5.15, linux-nvidia, linux-oracle, linux-oracle-5.15, linux-oracle-5.4, linux-raspi, linux-raspi-5.4 vulnerabilities

CVEs:CVE-2023-35788

Affected products

ProductStatusVendorPackageEcosystem
linux affected Ubuntu:20.04:LTS linux
linux affected Ubuntu:22.04:LTS linux
linux-aws affected Ubuntu:22.04:LTS linux-aws
linux-aws affected Ubuntu:20.04:LTS linux-aws
linux-aws-5.15 affected Ubuntu:20.04:LTS linux-aws-5.15
linux-aws-5.4 affected Ubuntu:Pro:18.04:LTS linux-aws-5.4
linux-azure affected Ubuntu:20.04:LTS linux-azure
linux-azure affected Ubuntu:22.04:LTS linux-azure
linux-azure-5.15 affected Ubuntu:20.04:LTS linux-azure-5.15
linux-azure-5.4 affected Ubuntu:Pro:18.04:LTS linux-azure-5.4
linux-azure-fde-5.15 affected Ubuntu:20.04:LTS linux-azure-fde-5.15
linux-bluefield affected Ubuntu:20.04:LTS linux-bluefield
linux-gcp affected Ubuntu:20.04:LTS linux-gcp
linux-gcp affected Ubuntu:22.04:LTS linux-gcp
linux-gcp-5.15 affected Ubuntu:20.04:LTS linux-gcp-5.15
linux-gcp-5.4 affected Ubuntu:Pro:18.04:LTS linux-gcp-5.4
linux-gke affected Ubuntu:22.04:LTS linux-gke
linux-gke-5.15 affected Ubuntu:20.04:LTS linux-gke-5.15
linux-gkeop affected Ubuntu:22.04:LTS linux-gkeop
linux-gkeop affected Ubuntu:20.04:LTS linux-gkeop
linux-gkeop-5.15 affected Ubuntu:20.04:LTS linux-gkeop-5.15
linux-hwe-5.15 affected Ubuntu:20.04:LTS linux-hwe-5.15
linux-hwe-5.4 affected Ubuntu:Pro:18.04:LTS linux-hwe-5.4
linux-ibm affected Ubuntu:20.04:LTS linux-ibm
linux-ibm affected Ubuntu:22.04:LTS linux-ibm
linux-ibm-5.4 affected Ubuntu:Pro:18.04:LTS linux-ibm-5.4
linux-kvm affected Ubuntu:22.04:LTS linux-kvm
linux-kvm affected Ubuntu:20.04:LTS linux-kvm
linux-lowlatency affected Ubuntu:22.04:LTS linux-lowlatency
linux-lowlatency-hwe-5.15 affected Ubuntu:20.04:LTS linux-lowlatency-hwe-5.15
linux-nvidia affected Ubuntu:22.04:LTS linux-nvidia
linux-oracle affected Ubuntu:20.04:LTS linux-oracle
linux-oracle affected Ubuntu:22.04:LTS linux-oracle
linux-oracle-5.15 affected Ubuntu:20.04:LTS linux-oracle-5.15
linux-oracle-5.4 affected Ubuntu:Pro:18.04:LTS linux-oracle-5.4
linux-raspi affected Ubuntu:20.04:LTS linux-raspi
linux-raspi affected Ubuntu:22.04:LTS linux-raspi
linux-raspi-5.4 affected Ubuntu:Pro:18.04:LTS linux-raspi-5.4
Upstream advisory

USN-6192-1

USNCoalition ESS < 30%HIGH2023-06-29

linux, linux-allwinner, linux-allwinner-5.19, linux-aws, linux-aws-5.19, linux-azure, linux-gcp, linux-gcp-5.19, linux-hwe-5.19, linux-ibm, linux-kvm, linux-lowlatency, linux-oracle, linux-raspi, linux-starfive, linux-starfive-5.19 vulnerabilities

CVEs:CVE-2023-2430CVE-2023-35788

Affected products

ProductStatusVendorPackageEcosystem
linux-allwinner-5.19 affected Ubuntu:22.04:LTS linux-allwinner-5.19
linux-aws-5.19 affected Ubuntu:22.04:LTS linux-aws-5.19
linux-gcp-5.19 affected Ubuntu:22.04:LTS linux-gcp-5.19
linux-hwe-5.19 affected Ubuntu:22.04:LTS linux-hwe-5.19
linux-starfive-5.19 affected Ubuntu:22.04:LTS linux-starfive-5.19
Upstream advisory

USN-6167-1

USNCoalition ESS < 30%CRITICAL2023-06-19

qemu vulnerabilities

CVEs:CVE-2022-1050CVE-2022-4144CVE-2022-4172CVE-2023-0330

Affected products

ProductStatusVendorPackageEcosystem
qemu affected Ubuntu:22.04:LTS qemu
qemu affected Ubuntu:Pro:16.04:LTS qemu
qemu affected Ubuntu:Pro:18.04:LTS qemu
qemu affected Ubuntu:Pro:14.04:LTS qemu
qemu affected Ubuntu:20.04:LTS qemu
Upstream advisory

USN-6142-1

USNEPSS <= 49%MEDIUM2023-06-06

nghttp2 vulnerability

CVEs:CVE-2020-11080

Affected products

ProductStatusVendorPackageEcosystem
nghttp2 affected Ubuntu:20.04:LTS nghttp2
nghttp2 affected Ubuntu:Pro:16.04:LTS nghttp2
nghttp2 affected Ubuntu:Pro:18.04:LTS nghttp2
Upstream advisory

USN-6083-2

USNEPSS <= 49%CRITICAL2023-06-19

cups-filters vulnerability

CVEs:CVE-2023-24805

Affected products

ProductStatusVendorPackageEcosystem
cups-filters affected Ubuntu:Pro:16.04:LTS cups-filters
Upstream advisory

UBUNTU-CVE-2020-22402

USNEPSS <= 49%2023-06-14

CVEs:CVE-2020-22402

Affected products

ProductStatusVendorPackageEcosystem
sogo affected Ubuntu:18.04:LTS sogo
sogo affected Ubuntu:20.04:LTS sogo
sogo affected Ubuntu:16.04:LTS sogo
Upstream advisory

UBUNTU-CVE-2020-23066

USNEPSS <= 49%2023-06-26

CVEs:CVE-2020-23066

Affected products

ProductStatusVendorPackageEcosystem
tinymce affected Ubuntu:Pro:16.04:LTS tinymce
tinymce affected Ubuntu:Pro:20.04:LTS tinymce
tinymce affected Ubuntu:Pro:18.04:LTS tinymce
Upstream advisory

USN-6191-1

USNAll remaining2023-06-29

linux, linux-aws, linux-aws-hwe, linux-azure, linux-azure-4.15, linux-dell300x, linux-gcp, linux-gcp-4.15, linux-hwe, linux-kvm, linux-oracle, linux-raspi2, linux-snapdragon regression

Affected products

ProductStatusVendorPackageEcosystem
linux affected Ubuntu:18.04:LTS linux
linux-aws affected Ubuntu:18.04:LTS linux-aws
linux-aws-hwe affected Ubuntu:Pro:16.04:LTS linux-aws-hwe
linux-azure affected Ubuntu:Pro:16.04:LTS linux-azure
linux-azure-4.15 affected Ubuntu:18.04:LTS linux-azure-4.15
linux-dell300x affected Ubuntu:18.04:LTS linux-dell300x
linux-gcp affected Ubuntu:Pro:16.04:LTS linux-gcp
linux-gcp-4.15 affected Ubuntu:18.04:LTS linux-gcp-4.15
linux-hwe affected Ubuntu:Pro:16.04:LTS linux-hwe
linux-kvm affected Ubuntu:18.04:LTS linux-kvm
linux-oracle affected Ubuntu:Pro:16.04:LTS linux-oracle
linux-oracle affected Ubuntu:18.04:LTS linux-oracle
linux-raspi2 affected Ubuntu:18.04:LTS linux-raspi2
linux-snapdragon affected Ubuntu:18.04:LTS linux-snapdragon
Upstream advisory

USN-6161-2

USNAll remaining2023-06-23

dotnet6, dotnet7 regression

Affected products

ProductStatusVendorPackageEcosystem
dotnet6 affected Ubuntu:22.04:LTS dotnet6
dotnet7 affected Ubuntu:22.04:LTS dotnet7
Upstream advisory

USN-6143-3

USNAll remainingHIGH2023-06-21

firefox regressions

Affected products

ProductStatusVendorPackageEcosystem
firefox affected Ubuntu:20.04:LTS firefox
Upstream advisory

USN-6170-1

USNAll remaining2023-06-16

libpod vulnerabilities

Affected products

ProductStatusVendorPackageEcosystem
libpod affected Ubuntu:22.04:LTS libpod
Upstream advisory

USN-6156-2

USNAll remainingCRITICAL2023-06-16

sssd regression

Affected products

ProductStatusVendorPackageEcosystem
sssd affected Ubuntu:20.04:LTS sssd
Upstream advisory

USN-6161-1

USNAll remaining2023-06-13

dotnet6, dotnet7 vulnerabilities

Affected products

ProductStatusVendorPackageEcosystem
dotnet6 affected Ubuntu:22.04:LTS dotnet6
dotnet7 affected Ubuntu:22.04:LTS dotnet7
Upstream advisory

USN-6158-1

USNAll remaining2023-06-13

node-fetch vulnerability

Affected products

ProductStatusVendorPackageEcosystem
node-fetch affected Ubuntu:Pro:18.04:LTS node-fetch
node-fetch affected Ubuntu:20.04:LTS node-fetch
Upstream advisory

USN-6143-2

USNAll remainingHIGH2023-06-13

firefox regressions

Affected products

ProductStatusVendorPackageEcosystem
firefox affected Ubuntu:20.04:LTS firefox
Upstream advisory

USN-6148-1

USNAll remaining2023-06-12

sniproxy vulnerability

Affected products

ProductStatusVendorPackageEcosystem
sniproxy affected Ubuntu:Pro:18.04:LTS sniproxy
sniproxy affected Ubuntu:20.04:LTS sniproxy
sniproxy affected Ubuntu:22.04:LTS sniproxy
Upstream advisory

USN-6155-1

USNAll remaining2023-06-12

requests vulnerability

Affected products

ProductStatusVendorPackageEcosystem
requests affected Ubuntu:22.04:LTS requests
requests affected Ubuntu:20.04:LTS requests
Upstream advisory

USN-6152-1

USNAll remaining2023-06-08

linux-gke regression

Affected products

ProductStatusVendorPackageEcosystem
linux-gke affected Ubuntu:22.04:LTS linux-gke
linux-gke affected Ubuntu:20.04:LTS linux-gke
Upstream advisory

USN-6141-1

USNAll remaining2023-06-06

xfce4-settings vulnerability

Affected products

ProductStatusVendorPackageEcosystem
xfce4-settings affected Ubuntu:22.04:LTS xfce4-settings
Upstream advisory

USN-6136-1

USNAll remaining2023-06-05

frr vulnerabilities

Affected products

ProductStatusVendorPackageEcosystem
frr affected Ubuntu:22.04:LTS frr
Upstream advisory

Need live exploit intelligence?

Every CVE above is indexed in the Vulnetix VDB with KEV, EPSS, and PoC maturity. The interactive page surfaces that on hover.