Canonical Security Advisories · July 2023 — Canonical Security Advisories
90 advisories 202 CVEs 10 EXPLOITED

Ubuntu Security Notices (USN-NNNN-N) for 2023-07. Mirrored into Vulnetix VDB.

Every advisory below is enriched with the Vulnetix VDB exploit-intelligence chip (hover a CVE ID in the interactive page to see CVSS, EPSS, KEV status, and PoC maturity). 10 are already weaponised in the wild — see the Exploited section.

What would you fix first?

The advisories below are ordered by the Vulnetix risk prioritization strategy: exploitation evidence first, scores second. On the interactive page you can switch to three other lenses.

Advisories

USN-6257-1

USNExploitedCISA KEV listedCRITICAL2023-07-27

open-vm-tools vulnerability

CVEs:CVE-2023-20867

Affected products

ProductStatusVendorPackageEcosystem
open-vm-tools affected Ubuntu:Pro:16.04:LTS open-vm-tools
open-vm-tools affected Ubuntu:22.04:LTS open-vm-tools
open-vm-tools affected Ubuntu:20.04:LTS open-vm-tools
open-vm-tools affected Ubuntu:Pro:18.04:LTS open-vm-tools
Upstream advisory

USN-6242-2

USNExploitedVulnCheck KEV listedCRITICAL2023-07-31

openssh vulnerability

CVEs:CVE-2023-38408

Affected products

ProductStatusVendorPackageEcosystem
openssh affected Ubuntu:Pro:14.04:LTS openssh
openssh affected Ubuntu:Pro:18.04:LTS openssh
openssh affected Ubuntu:Pro:16.04:LTS openssh
Upstream advisory

USN-6242-1

USNExploitedVulnCheck KEV listedCRITICAL2023-07-24

openssh vulnerability

CVEs:CVE-2023-38408

Affected products

ProductStatusVendorPackageEcosystem
openssh affected Ubuntu:22.04:LTS openssh
openssh affected Ubuntu:20.04:LTS openssh
Upstream advisory

USN-6256-1

USNExploitedVulnCheck KEV listedHIGH2023-07-27

linux-iot vulnerabilities

CVEs:CVE-2022-3108CVE-2022-3707CVE-2022-3903CVE-2022-4129CVE-2023-0458CVE-2023-0459CVE-2023-1073CVE-2023-1074CVE-2023-1075CVE-2023-1076CVE-2023-1077CVE-2023-1078CVE-2023-1079CVE-2023-1118CVE-2023-1281CVE-2023-1380CVE-2023-1513CVE-2023-1670CVE-2023-1829CVE-2023-1859CVE-2023-1998CVE-2023-2162CVE-2023-2612CVE-2023-2985CVE-2023-3161CVE-2023-25012CVE-2023-26545CVE-2023-30456CVE-2023-31436CVE-2023-32233CVE-2023-32269CVE-2023-35788

Affected products

ProductStatusVendorPackageEcosystem
linux-iot affected Ubuntu:20.04:LTS linux-iot
linux-iot affected Ubuntu
Upstream advisory

USN-6222-1

USNExploitedVulnCheck KEV listedHIGH2023-07-12

linux-xilinx-zynqmp vulnerabilities

CVEs:CVE-2022-3108CVE-2022-3707CVE-2022-3903CVE-2022-4129CVE-2023-0458CVE-2023-0459CVE-2023-1073CVE-2023-1074CVE-2023-1075CVE-2023-1076CVE-2023-1077CVE-2023-1078CVE-2023-1079CVE-2023-1118CVE-2023-1281CVE-2023-1380CVE-2023-1513CVE-2023-1670CVE-2023-1829CVE-2023-1859CVE-2023-1998CVE-2023-2162CVE-2023-2612CVE-2023-2985CVE-2023-3161CVE-2023-25012CVE-2023-26545CVE-2023-30456CVE-2023-31436CVE-2023-32233CVE-2023-32269

Affected products

ProductStatusVendorPackageEcosystem
linux-xilinx-zynqmp affected Ubuntu
linux-xilinx-zynqmp affected Ubuntu:20.04:LTS linux-xilinx-zynqmp
Upstream advisory

USN-6260-1

USNExploitedVulnCheck KEV listedHIGH2023-07-27

linux-aws-5.19, linux-gcp-5.19, linux-hwe-5.19 vulnerabilities

CVEs:CVE-2022-48502CVE-2023-2640CVE-2023-3090CVE-2023-3141CVE-2023-3389CVE-2023-3390CVE-2023-31248CVE-2023-32629CVE-2023-35001

Affected products

ProductStatusVendorPackageEcosystem
linux-aws-5.19 affected Ubuntu:22.04:LTS linux-aws-5.19
linux-gcp-5.19 affected Ubuntu:22.04:LTS linux-gcp-5.19
linux-hwe-5.19 affected Ubuntu:22.04:LTS linux-hwe-5.19
Upstream advisory

USN-6251-1

USNExploitedVulnCheck KEV listedHIGH2023-07-26

linux, linux-aws, linux-aws-5.4, linux-azure, linux-azure-5.4, linux-gcp, linux-gcp-5.4, linux-gke, linux-gkeop, linux-hwe-5.4, linux-ibm, linux-ibm-5.4, linux-kvm, linux-oracle, linux-oracle-5.4, linux-raspi, linux-raspi-5.4, linux-xilinx-zynqmp vulnerabilities

CVEs:CVE-2023-3090CVE-2023-3390CVE-2023-32629CVE-2023-35001

Affected products

ProductStatusVendorPackageEcosystem
linux affected Ubuntu:20.04:LTS linux
linux-aws affected Ubuntu:20.04:LTS linux-aws
linux-aws-5.4 affected Ubuntu:Pro:18.04:LTS linux-aws-5.4
linux-azure affected Ubuntu:20.04:LTS linux-azure
linux-azure-5.4 affected Ubuntu:Pro:18.04:LTS linux-azure-5.4
linux-gcp affected Ubuntu:20.04:LTS linux-gcp
linux-gcp-5.4 affected Ubuntu:Pro:18.04:LTS linux-gcp-5.4
linux-gke affected Ubuntu:20.04:LTS linux-gke
linux-gkeop affected Ubuntu:20.04:LTS linux-gkeop
linux-hwe-5.4 affected Ubuntu:Pro:18.04:LTS linux-hwe-5.4
linux-ibm affected Ubuntu:20.04:LTS linux-ibm
linux-ibm-5.4 affected Ubuntu:Pro:18.04:LTS linux-ibm-5.4
linux-kvm affected Ubuntu:20.04:LTS linux-kvm
linux-oracle affected Ubuntu:20.04:LTS linux-oracle
linux-oracle-5.4 affected Ubuntu:Pro:18.04:LTS linux-oracle-5.4
linux-raspi affected Ubuntu:20.04:LTS linux-raspi
linux-raspi-5.4 affected Ubuntu:Pro:18.04:LTS linux-raspi-5.4
linux-xilinx-zynqmp affected Ubuntu:20.04:LTS linux-xilinx-zynqmp
Upstream advisory

USN-6243-1

USNWeaponized exploitHIGH2023-07-25

graphite-web vulnerabilities

CVEs:CVE-2017-18638CVE-2022-4728CVE-2022-4729CVE-2022-4730

Affected products

ProductStatusVendorPackageEcosystem
graphite-web affected Ubuntu:Pro:18.04:LTS graphite-web
graphite-web affected Ubuntu:20.04:LTS graphite-web
graphite-web affected Ubuntu:Pro:16.04:LTS graphite-web
graphite-web affected Ubuntu:22.04:LTS graphite-web
graphite-web affected Ubuntu:Pro:14.04:LTS graphite-web
Upstream advisory

USN-5807-3

USNWeaponized exploitMEDIUM2023-07-26

libxpm vulnerability

CVEs:CVE-2022-46285

Affected products

ProductStatusVendorPackageEcosystem
libxpm affected Ubuntu:Pro:14.04:LTS libxpm
Upstream advisory

USN-6198-1

USNWeaponized exploitMEDIUM2023-07-03

screen vulnerability

CVEs:CVE-2023-24626

Affected products

ProductStatusVendorPackageEcosystem
screen affected Ubuntu:Pro:18.04:LTS screen
screen affected Ubuntu:Pro:16.04:LTS screen
screen affected Ubuntu:Pro:14.04:LTS screen
Upstream advisory

USN-6200-1

USNActive exploitation (sightings)HIGH2023-07-04

imagemagick vulnerabilities

CVEs:CVE-2020-29599CVE-2021-3610CVE-2021-20224CVE-2021-20241CVE-2021-20243CVE-2021-20244CVE-2021-20246CVE-2021-20309CVE-2021-20312CVE-2021-20313CVE-2021-39212CVE-2022-28463CVE-2022-32545CVE-2022-32546CVE-2022-32547CVE-2023-1289CVE-2023-1906CVE-2023-3195CVE-2023-3428CVE-2023-34151

Affected products

ProductStatusVendorPackageEcosystem
imagemagick affected Ubuntu:Pro:18.04:LTS imagemagick
imagemagick affected Ubuntu:Pro:22.04:LTS imagemagick
imagemagick affected Ubuntu:Pro:16.04:LTS imagemagick
imagemagick affected Ubuntu:20.04:LTS imagemagick
Upstream advisory

USN-6246-1

USNActive exploitation (sightings)HIGH2023-07-25

linux, linux-aws, linux-aws-5.15, linux-azure, linux-azure-5.15, linux-azure-fde, linux-azure-fde-5.15, linux-gcp, linux-gcp-5.15, linux-gke, linux-gke-5.15, linux-gkeop, linux-gkeop-5.15, linux-hwe-5.15, linux-ibm, linux-intel-iotg, linux-kvm, linux-lowlatency, linux-lowlatency-hwe-5.15, linux-nvidia, linux-oracle, linux-oracle-5.15, linux-raspi vulnerabilities

CVEs:CVE-2023-3090CVE-2023-3389CVE-2023-3390CVE-2023-3439CVE-2023-31248CVE-2023-35001

Affected products

ProductStatusVendorPackageEcosystem
linux affected Ubuntu:22.04:LTS linux
linux-aws affected Ubuntu:22.04:LTS linux-aws
linux-aws-5.15 affected Ubuntu:20.04:LTS linux-aws-5.15
linux-aws-5.15 affected Ubuntu
linux-azure affected Ubuntu:22.04:LTS linux-azure
linux-azure-5.15 affected Ubuntu:20.04:LTS linux-azure-5.15
linux-azure-fde affected Ubuntu:22.04:LTS linux-azure-fde
linux-azure-fde-5.15 affected Ubuntu:20.04:LTS linux-azure-fde-5.15
linux-gcp affected Ubuntu:22.04:LTS linux-gcp
linux-gcp-5.15 affected Ubuntu:20.04:LTS linux-gcp-5.15
linux-gke affected Ubuntu:22.04:LTS linux-gke
linux-gke-5.15 affected Ubuntu:20.04:LTS linux-gke-5.15
linux-gkeop affected Ubuntu:22.04:LTS linux-gkeop
linux-gkeop-5.15 affected Ubuntu:20.04:LTS linux-gkeop-5.15
linux-hwe-5.15 affected Ubuntu:20.04:LTS linux-hwe-5.15
linux-ibm affected Ubuntu:22.04:LTS linux-ibm
linux-intel-iotg affected Ubuntu:22.04:LTS linux-intel-iotg
linux-kvm affected Ubuntu:22.04:LTS linux-kvm
linux-lowlatency affected Ubuntu:22.04:LTS linux-lowlatency
linux-lowlatency-hwe-5.15 affected Ubuntu:20.04:LTS linux-lowlatency-hwe-5.15
linux-nvidia affected Ubuntu:22.04:LTS linux-nvidia
linux-oracle affected Ubuntu:22.04:LTS linux-oracle
linux-oracle-5.15 affected Ubuntu:20.04:LTS linux-oracle-5.15
linux-raspi affected Ubuntu:22.04:LTS linux-raspi
Upstream advisory

USN-6232-1

USNActive exploitation (sightings)MEDIUM2023-07-20

wkhtmltopdf vulnerability

CVEs:CVE-2020-21365

Affected products

ProductStatusVendorPackageEcosystem
wkhtmltopdf affected Ubuntu:20.04:LTS wkhtmltopdf
wkhtmltopdf affected Ubuntu:Pro:16.04:LTS wkhtmltopdf
wkhtmltopdf affected Ubuntu:Pro:18.04:LTS wkhtmltopdf
wkhtmltopdf affected Ubuntu:Pro:14.04:LTS wkhtmltopdf
Upstream advisory

USN-6218-1

USNActive exploitation (sightings)CRITICAL2023-07-12

firefox vulnerability

CVEs:CVE-2023-3600

Affected products

ProductStatusVendorPackageEcosystem
firefox affected Ubuntu:20.04:LTS firefox
Upstream advisory

USN-6258-1

USNActive exploitation (sightings)MEDIUM2023-07-27

llvm-toolchain-13, llvm-toolchain-14, llvm-toolchain-15 vulnerabilities

CVEs:CVE-2023-29932CVE-2023-29933CVE-2023-29934CVE-2023-29939

Affected products

ProductStatusVendorPackageEcosystem
llvm-toolchain-13 affected Ubuntu:22.04:LTS llvm-toolchain-13
llvm-toolchain-14 affected Ubuntu:22.04:LTS llvm-toolchain-14
llvm-toolchain-15 affected Ubuntu:22.04:LTS llvm-toolchain-15
Upstream advisory

LSN-0096-1

USNPoC exploit2023-07-25

Kernel Live Patch Security Notice

CVEs:CVE-2023-1380CVE-2023-30456CVE-2023-31248CVE-2023-31436CVE-2023-35001

Affected products

ProductStatusVendorPackageEcosystem
linux affected Ubuntu:Pro:22.04:LTS linux
linux affected Ubuntu:Pro:20.04:LTS linux
linux affected Ubuntu:Pro:16.04:LTS linux
linux affected Ubuntu:Pro:18.04:LTS linux
linux-aws affected Ubuntu:Pro:20.04:LTS linux-aws
linux-aws affected Ubuntu:Pro:16.04:LTS linux-aws
linux-aws-hwe affected Ubuntu:Pro:16.04:LTS linux-aws-hwe
linux-azure affected Ubuntu:Pro:20.04:LTS linux-azure
linux-azure affected Ubuntu:Pro:22.04:LTS linux-azure
linux-azure affected Ubuntu:Pro:16.04:LTS linux-azure
linux-azure-5.4 affected Ubuntu:Pro:18.04:LTS linux-azure-5.4
linux-gcp affected Ubuntu:Pro:16.04:LTS linux-gcp
linux-gcp affected Ubuntu:Pro:20.04:LTS linux-gcp
linux-gcp affected Ubuntu:Pro:22.04:LTS linux-gcp
linux-gcp-4.15 affected Ubuntu:Pro:18.04:LTS linux-gcp-4.15
linux-gcp-5.15 affected Ubuntu:Pro:20.04:LTS linux-gcp-5.15
linux-gcp-5.4 affected Ubuntu:Pro:18.04:LTS linux-gcp-5.4
linux-gke affected Ubuntu:Pro:22.04:LTS linux-gke
linux-gke affected Ubuntu:Pro:20.04:LTS linux-gke
linux-gke-5.15 affected Ubuntu:Pro:20.04:LTS linux-gke-5.15
linux-gke-5.4 affected Ubuntu:Pro:18.04:LTS linux-gke-5.4
linux-gkeop affected Ubuntu:Pro:20.04:LTS linux-gkeop
linux-gkeop-5.4 affected Ubuntu:Pro:18.04:LTS linux-gkeop-5.4
linux-hwe affected Ubuntu:Pro:16.04:LTS linux-hwe
linux-hwe-5.15 affected Ubuntu:Pro:20.04:LTS linux-hwe-5.15
linux-hwe-5.4 affected Ubuntu:Pro:18.04:LTS linux-hwe-5.4
linux-ibm affected Ubuntu:Pro:22.04:LTS linux-ibm
linux-ibm affected Ubuntu:Pro:20.04:LTS linux-ibm
linux-ibm-5.4 affected Ubuntu:Pro:18.04:LTS linux-ibm-5.4
linux-lowlatency-hwe-5.15 affected Ubuntu:Pro:20.04:LTS linux-lowlatency-hwe-5.15
linux-lts-xenial affected Ubuntu:Pro:14.04:LTS linux-lts-xenial
Upstream advisory

USN-6244-1

USNPoC exploitMEDIUM2023-07-25

amd64-microcode vulnerability

CVEs:CVE-2023-20593

Affected products

ProductStatusVendorPackageEcosystem
amd64-microcode affected Ubuntu:Pro:16.04:LTS amd64-microcode
amd64-microcode affected Ubuntu:Pro:18.04:LTS amd64-microcode
amd64-microcode affected Ubuntu:22.04:LTS amd64-microcode
amd64-microcode affected Ubuntu:20.04:LTS amd64-microcode
Upstream advisory

USN-6221-1

USNPoC exploitHIGH2023-07-12

linux, linux-aws, linux-kvm, linux-lts-xenial vulnerabilities

CVEs:CVE-2021-3753CVE-2021-20321CVE-2022-1184CVE-2022-26373CVE-2022-29901CVE-2023-1990CVE-2023-3111

Affected products

ProductStatusVendorPackageEcosystem
linux affected Ubuntu:Pro:16.04:LTS linux
linux-aws affected Ubuntu:Pro:14.04:LTS linux-aws
linux-aws affected Ubuntu:Pro:16.04:LTS linux-aws
linux-kvm affected Ubuntu:Pro:16.04:LTS linux-kvm
linux-lts-xenial affected Ubuntu:Pro:14.04:LTS linux-lts-xenial
Upstream advisory

USN-6259-1

USNPoC exploitHIGH2023-07-27

open-iscsi vulnerabilities

CVEs:CVE-2020-13987CVE-2020-13988CVE-2020-17437

Affected products

ProductStatusVendorPackageEcosystem
open-iscsi affected Ubuntu:20.04:LTS open-iscsi
open-iscsi affected Ubuntu:Pro:16.04:LTS open-iscsi
open-iscsi affected Ubuntu:Pro:18.04:LTS open-iscsi
Upstream advisory

USN-6183-2

USNPoC exploitHIGH2023-07-18

bind9 vulnerability

CVEs:CVE-2023-2828

Affected products

ProductStatusVendorPackageEcosystem
bind9 affected Ubuntu:Pro:14.04:LTS bind9
bind9 affected Ubuntu:Pro:18.04:LTS bind9
bind9 affected Ubuntu:Pro:16.04:LTS bind9
Upstream advisory

USN-6213-1

USNPoC exploitHIGH2023-07-10

ghostscript vulnerability

CVEs:CVE-2023-36664

Affected products

ProductStatusVendorPackageEcosystem
ghostscript affected Ubuntu:20.04:LTS ghostscript
ghostscript affected Ubuntu:22.04:LTS ghostscript
Upstream advisory

USN-6203-2

USNPoC exploitCRITICAL2023-07-25

python-django vulnerability

CVEs:CVE-2023-36053

Affected products

ProductStatusVendorPackageEcosystem
python-django affected Ubuntu:Pro:18.04:LTS python-django
Upstream advisory

USN-6203-1

USNPoC exploitCRITICAL2023-07-05

python-django vulnerability

CVEs:CVE-2023-36053

Affected products

ProductStatusVendorPackageEcosystem
python-django affected Ubuntu:20.04:LTS python-django
python-django affected Ubuntu:22.04:LTS python-django
Upstream advisory

USN-6219-1

USNPoC exploitHIGH2023-07-12

ruby2.3, ruby2.5, ruby2.7, ruby3.0, ruby3.1 vulnerabilities

CVEs:CVE-2023-28755CVE-2023-36617

Affected products

ProductStatusVendorPackageEcosystem
ruby2.3 affected Ubuntu:Pro:16.04:LTS ruby2.3
ruby2.5 affected Ubuntu:Pro:18.04:LTS ruby2.5
ruby2.7 affected Ubuntu:20.04:LTS ruby2.7
ruby3.0 affected Ubuntu:22.04:LTS ruby3.0
Upstream advisory

USN-6197-1

USNPoC exploitHIGH2023-07-03

openldap vulnerability

CVEs:CVE-2023-2953

Affected products

ProductStatusVendorPackageEcosystem
openldap affected Ubuntu:Pro:14.04:LTS openldap
openldap affected Ubuntu:Pro:16.04:LTS openldap
openldap affected Ubuntu:Pro:18.04:LTS openldap
Upstream advisory

USN-6254-1

USNPoC exploitHIGH2023-07-26

linux, linux-aws, linux-kvm, linux-lts-xenial vulnerabilities

CVEs:CVE-2023-0458CVE-2023-1611CVE-2023-2124CVE-2023-2162CVE-2023-2513CVE-2023-3090CVE-2023-3141CVE-2023-3159CVE-2023-3161CVE-2023-3268CVE-2023-3390CVE-2023-35001

Affected products

ProductStatusVendorPackageEcosystem
linux affected Ubuntu:Pro:16.04:LTS linux
linux-aws affected Ubuntu:Pro:14.04:LTS linux-aws
linux-aws affected Ubuntu:Pro:16.04:LTS linux-aws
linux-aws affected Ubuntu:Pro:14.04:LTS
linux-kvm affected Ubuntu:Pro:16.04:LTS linux-kvm
linux-lts-xenial affected Ubuntu:Pro:14.04:LTS linux-lts-xenial
Upstream advisory

USN-6252-1

USNPoC exploitHIGH2023-07-26

linux, linux-aws, linux-aws-hwe, linux-azure, linux-azure-4.15, linux-dell300x, linux-gcp, linux-gcp-4.15, linux-hwe, linux-kvm, linux-oracle, linux-snapdragon vulnerabilities

CVEs:CVE-2022-1184CVE-2022-3303CVE-2023-1611CVE-2023-1670CVE-2023-1859CVE-2023-1990CVE-2023-2124CVE-2023-3090CVE-2023-3111CVE-2023-3141CVE-2023-3268CVE-2023-3390CVE-2023-35001

Affected products

ProductStatusVendorPackageEcosystem
linux affected Ubuntu:Pro:18.04:LTS linux
linux-aws affected Ubuntu:Pro:18.04:LTS linux-aws
linux-aws-hwe affected Ubuntu:Pro:16.04:LTS linux-aws-hwe
linux-azure affected Ubuntu:Pro:14.04:LTS linux-azure
linux-azure affected Ubuntu:Pro:16.04:LTS linux-azure
linux-azure-4.15 affected Ubuntu:Pro:18.04:LTS linux-azure-4.15
linux-dell300x affected Ubuntu:Pro:18.04:LTS linux-dell300x
linux-gcp affected Ubuntu:Pro:16.04:LTS linux-gcp
linux-gcp-4.15 affected Ubuntu:Pro:18.04:LTS linux-gcp-4.15
linux-hwe affected Ubuntu:Pro:16.04:LTS linux-hwe
linux-kvm affected Ubuntu:Pro:18.04:LTS linux-kvm
linux-oracle affected Ubuntu:Pro:18.04:LTS linux-oracle
linux-oracle affected Ubuntu:Pro:16.04:LTS linux-oracle
linux-snapdragon affected Ubuntu:Pro:18.04:LTS linux-snapdragon
Upstream advisory

USN-6184-2

USNPoC exploitHIGH2023-07-17

cups vulnerability

CVEs:CVE-2023-34241

Affected products

ProductStatusVendorPackageEcosystem
cups affected Ubuntu:Pro:18.04:LTS cups
cups affected Ubuntu:Pro:16.04:LTS cups
Upstream advisory

USN-6230-1

USNPoC exploitHIGH2023-07-13

postgresql-9.5 vulnerability

CVEs:CVE-2023-2454

Affected products

ProductStatusVendorPackageEcosystem
postgresql-9.5 affected Ubuntu:Pro:16.04:LTS postgresql-9.5
Upstream advisory

USN-6078-2

USNPoC exploitHIGH2023-07-18

libwebp vulnerability

CVEs:CVE-2023-1999

Affected products

ProductStatusVendorPackageEcosystem
libwebp affected Ubuntu:Pro:16.04:LTS libwebp
Upstream advisory

USN-6199-1

USNPoC exploitHIGH2023-07-03

php7.4, php8.1 vulnerability

CVEs:CVE-2023-3247

Affected products

ProductStatusVendorPackageEcosystem
php7.4 affected Ubuntu:20.04:LTS php7.4
php8.1 affected Ubuntu:22.04:LTS php8.1
Upstream advisory

USN-6215-1

USNPoC exploitCRITICAL2023-07-11

dwarves-dfsg vulnerabilities

CVEs:CVE-2022-3534CVE-2022-3606

Affected products

ProductStatusVendorPackageEcosystem
dwarves-dfsg affected Ubuntu:Pro:18.04:LTS dwarves-dfsg
dwarves-dfsg affected Ubuntu:20.04:LTS dwarves-dfsg
Upstream advisory

USN-6202-1

USNPoC exploitHIGH2023-07-05

containerd vulnerabilities

CVEs:CVE-2023-25153CVE-2023-25173

Affected products

ProductStatusVendorPackageEcosystem
containerd affected Ubuntu:Pro:16.04:LTS containerd
containerd affected Ubuntu:22.04:LTS containerd
containerd affected Ubuntu:Pro:18.04:LTS containerd
containerd affected Ubuntu:20.04:LTS containerd
Upstream advisory

USN-6234-1

USNPoC exploitCRITICAL2023-07-18

linux-xilinx-zynqmp vulnerability

CVEs:CVE-2023-35788

Affected products

ProductStatusVendorPackageEcosystem
linux-xilinx-zynqmp affected Ubuntu:20.04:LTS linux-xilinx-zynqmp
Upstream advisory

USN-6212-1

USNPoC exploitCRITICAL2023-07-07

linux-intel-iotg, linux-intel-iotg-5.15 vulnerabilities

CVEs:CVE-2023-35788

Affected products

ProductStatusVendorPackageEcosystem
linux-intel-iotg affected Ubuntu:22.04:LTS linux-intel-iotg
linux-intel-iotg-5.15 affected Ubuntu:20.04:LTS linux-intel-iotg-5.15
linux-intel-iotg-5.15 affected Ubuntu
Upstream advisory

USN-6205-1

USNPoC exploitCRITICAL2023-07-06

linux-gke vulnerabilities

CVEs:CVE-2023-35788

Affected products

ProductStatusVendorPackageEcosystem
linux-gke affected Ubuntu:20.04:LTS linux-gke
Upstream advisory

USN-6129-2

USNPoC exploitMEDIUM2023-07-25

avahi vulnerability

CVEs:CVE-2023-1981

Affected products

ProductStatusVendorPackageEcosystem
avahi affected Ubuntu:Pro:18.04:LTS avahi
avahi affected Ubuntu:Pro:16.04:LTS avahi
avahi affected Ubuntu:Pro:14.04:LTS avahi
Upstream advisory

UBUNTU-CVE-2021-33294

USNPoC exploit2023-07-18

CVEs:CVE-2021-33294

Affected products

ProductStatusVendorPackageEcosystem
elfutils affected Ubuntu:20.04:LTS elfutils
elfutils affected Ubuntu:Pro:16.04:LTS elfutils
elfutils affected Ubuntu:Pro:18.04:LTS elfutils
elfutils affected Ubuntu:Pro:14.04:LTS elfutils
Upstream advisory

USN-6225-1

USNCoalition ESS < 30%HIGH2023-07-13

knot-resolver vulnerability

CVEs:CVE-2022-40188

Affected products

ProductStatusVendorPackageEcosystem
knot-resolver affected Ubuntu:Pro:18.04:LTS knot-resolver
knot-resolver affected Ubuntu:Pro:22.04:LTS knot-resolver
knot-resolver affected Ubuntu:Pro:16.04:LTS knot-resolver
knot-resolver affected Ubuntu:20.04:LTS knot-resolver
Upstream advisory

USN-6204-1

USNCoalition ESS < 30%CRITICAL2023-07-05

cpdb-libs vulnerability

CVEs:CVE-2023-34095

Affected products

ProductStatusVendorPackageEcosystem
cpdb-libs affected Ubuntu:22.04:LTS cpdb-libs
cpdb-libs affected Ubuntu:20.04:LTS cpdb-libs
Upstream advisory

UBUNTU-CVE-2021-31294

USNCoalition ESS < 30%2023-07-15

CVEs:CVE-2021-31294

Affected products

ProductStatusVendorPackageEcosystem
redis affected Ubuntu:Pro:14.04:LTS redis
redis affected Ubuntu:22.04:LTS redis
redis affected Ubuntu:Pro:20.04:LTS redis
redis affected Ubuntu:Pro:16.04:LTS redis
redis affected Ubuntu:Pro:18.04:LTS redis
Upstream advisory

USN-6239-1

USNCoalition ESS < 30%2023-07-20

ecdsautils vulnerability

CVEs:CVE-2022-24884

Affected products

ProductStatusVendorPackageEcosystem
ecdsautils affected Ubuntu:Pro:16.04:LTS ecdsautils
ecdsautils affected Ubuntu:Pro:18.04:LTS ecdsautils
ecdsautils affected Ubuntu:20.04:LTS ecdsautils
ecdsautils affected Ubuntu:22.04:LTS ecdsautils
Upstream advisory

UBUNTU-CVE-2021-32494

USNCoalition ESS < 30%2023-07-07

CVEs:CVE-2021-32494

Affected products

ProductStatusVendorPackageEcosystem
radare2 affected Ubuntu:Pro:20.04:LTS radare2
radare2 affected Ubuntu:Pro:18.04:LTS radare2
radare2 affected Ubuntu:16.04:LTS radare2
Upstream advisory

UBUNTU-CVE-2021-32495

USNCoalition ESS < 30%2023-07-07

CVEs:CVE-2021-32495

Affected products

ProductStatusVendorPackageEcosystem
radare2 affected Ubuntu:Pro:20.04:LTS radare2
radare2 affected Ubuntu:Pro:18.04:LTS radare2
radare2 affected Ubuntu:16.04:LTS radare2
Upstream advisory

UBUNTU-CVE-2021-32256

USNCoalition ESS < 30%2023-07-18

CVEs:CVE-2021-32256

Affected products

ProductStatusVendorPackageEcosystem
libiberty affected Ubuntu:16.04:LTS libiberty
libiberty affected Ubuntu:18.04:LTS libiberty
libiberty affected Ubuntu:22.04:LTS libiberty
libiberty affected Ubuntu:20.04:LTS libiberty
libiberty affected Ubuntu:24.04:LTS libiberty
libiberty affected Ubuntu:25.10 libiberty
Upstream advisory

USN-6210-1

USNCoalition ESS < 30%HIGH2023-07-07

ruby-doorkeeper vulnerability

CVEs:CVE-2023-34246

Affected products

ProductStatusVendorPackageEcosystem
ruby-doorkeeper affected Ubuntu:22.04:LTS ruby-doorkeeper
ruby-doorkeeper affected Ubuntu:Pro:18.04:LTS ruby-doorkeeper
ruby-doorkeeper affected Ubuntu:20.04:LTS ruby-doorkeeper
ruby-doorkeeper affected Ubuntu:Pro:16.04:LTS ruby-doorkeeper
Upstream advisory

UBUNTU-CVE-2021-33798

USNCoalition ESS < 30%2023-07-07

CVEs:CVE-2021-33798

Affected products

ProductStatusVendorPackageEcosystem
libpano13 affected Ubuntu:Pro:18.04:LTS libpano13
libpano13 affected Ubuntu:20.04:LTS libpano13
libpano13 affected Ubuntu:25.10 libpano13
libpano13 affected Ubuntu:Pro:16.04:LTS libpano13
libpano13 affected Ubuntu:Pro:22.04:LTS libpano13
libpano13 affected Ubuntu:24.04:LTS libpano13
Upstream advisory

UBUNTU-CVE-2021-34119

USNCoalition ESS < 30%2023-07-18

CVEs:CVE-2021-34119

Affected products

ProductStatusVendorPackageEcosystem
htmldoc affected Ubuntu:Pro:20.04:LTS htmldoc
htmldoc affected Ubuntu:Pro:14.04:LTS htmldoc
htmldoc affected Ubuntu:Pro:16.04:LTS htmldoc
htmldoc affected Ubuntu:Pro:18.04:LTS htmldoc
Upstream advisory

UBUNTU-CVE-2021-34121

USNCoalition ESS < 30%2023-07-18

CVEs:CVE-2021-34121

Affected products

ProductStatusVendorPackageEcosystem
htmldoc affected Ubuntu:Pro:16.04:LTS htmldoc
htmldoc affected Ubuntu:Pro:20.04:LTS htmldoc
htmldoc affected Ubuntu:Pro:14.04:LTS htmldoc
htmldoc affected Ubuntu:Pro:18.04:LTS htmldoc
Upstream advisory

USN-6208-1

USNEPSS <= 49%HIGH2023-07-06

golang-websocket vulnerability

CVEs:CVE-2020-27813

Affected products

ProductStatusVendorPackageEcosystem
golang-websocket affected Ubuntu:Pro:18.04:LTS golang-websocket
golang-websocket affected Ubuntu:Pro:16.04:LTS golang-websocket
Upstream advisory

UBUNTU-CVE-2020-22336

USNEPSS <= 49%2023-07-06

CVEs:CVE-2020-22336

Affected products

ProductStatusVendorPackageEcosystem
pdfcrack affected Ubuntu:20.04:LTS pdfcrack
pdfcrack affected Ubuntu:25.10 pdfcrack
pdfcrack affected Ubuntu:24.04:LTS pdfcrack
pdfcrack affected Ubuntu:16.04:LTS pdfcrack
pdfcrack affected Ubuntu:18.04:LTS pdfcrack
pdfcrack affected Ubuntu:22.04:LTS pdfcrack
Upstream advisory

UBUNTU-CVE-2020-25969

USNEPSS <= 49%2023-07-05

CVEs:CVE-2020-25969

Affected products

ProductStatusVendorPackageEcosystem
gnuplot affected Ubuntu:Pro:14.04:LTS gnuplot
gnuplot affected Ubuntu:Pro:18.04:LTS gnuplot
gnuplot affected Ubuntu:Pro:16.04:LTS gnuplot
gnuplot affected Ubuntu:Pro:20.04:LTS gnuplot
Upstream advisory

UBUNTU-CVE-2020-23452

USNEPSS <= 49%2023-07-05

CVEs:CVE-2020-23452

Affected products

ProductStatusVendorPackageEcosystem
python-selenium affected Ubuntu:22.04:LTS python-selenium
python-selenium affected Ubuntu:24.04:LTS python-selenium
python-selenium affected Ubuntu:16.04:LTS python-selenium
python-selenium affected Ubuntu:18.04:LTS python-selenium
python-selenium affected Ubuntu:25.10 python-selenium
python-selenium affected Ubuntu:20.04:LTS python-selenium
Upstream advisory

USN-6265-1

USNEPSS <= 49%HIGH2023-07-31

rabbitmq-server vulnerability

CVEs:CVE-2017-4966

Affected products

ProductStatusVendorPackageEcosystem
rabbitmq-server affected Ubuntu:Pro:16.04:LTS rabbitmq-server
Upstream advisory

UBUNTU-CVE-2020-23909

USNEPSS <= 49%2023-07-18

CVEs:CVE-2020-23909

Affected products

ProductStatusVendorPackageEcosystem
advancecomp affected Ubuntu:25.10 advancecomp
advancecomp affected Ubuntu:22.04:LTS advancecomp
advancecomp affected Ubuntu:Pro:16.04:LTS advancecomp
advancecomp affected Ubuntu:24.04:LTS advancecomp
advancecomp affected Ubuntu:18.04:LTS advancecomp
advancecomp affected Ubuntu:20.04:LTS advancecomp
cloop affected Ubuntu:18.04:LTS cloop
cloop affected Ubuntu:20.04:LTS cloop
cloop affected Ubuntu:24.04:LTS cloop
cloop affected Ubuntu:22.04:LTS cloop
cloop affected Ubuntu:16.04:LTS cloop
cloop affected Ubuntu:25.10 cloop
Upstream advisory

UBUNTU-CVE-2020-23910

USNEPSS <= 49%2023-07-18

CVEs:CVE-2020-23910

Affected products

ProductStatusVendorPackageEcosystem
asn1c affected Ubuntu:25.10 asn1c
asn1c affected Ubuntu:24.04:LTS asn1c
asn1c affected Ubuntu:20.04:LTS asn1c
asn1c affected Ubuntu:22.04:LTS asn1c
asn1c affected Ubuntu:18.04:LTS asn1c
asn1c affected Ubuntu:16.04:LTS asn1c
Upstream advisory

UBUNTU-CVE-2020-23911

USNEPSS <= 49%2023-07-18

CVEs:CVE-2020-23911

Affected products

ProductStatusVendorPackageEcosystem
asn1c affected Ubuntu:18.04:LTS asn1c
asn1c affected Ubuntu:16.04:LTS asn1c
asn1c affected Ubuntu:25.10 asn1c
asn1c affected Ubuntu:24.04:LTS asn1c
asn1c affected Ubuntu:20.04:LTS asn1c
asn1c affected Ubuntu:22.04:LTS asn1c
Upstream advisory

USN-6245-1

USNAll remaining2023-07-25

openstack-trove vulnerabilities

Affected products

ProductStatusVendorPackageEcosystem
openstack-trove affected Ubuntu:22.04:LTS openstack-trove
Upstream advisory

USN-6241-1

USNAll remaining2023-07-24

cinder, ironic, nova, python-glance-store, python-os-brick vulnerability

Affected products

ProductStatusVendorPackageEcosystem
cinder affected Ubuntu:22.04:LTS cinder
ironic affected Ubuntu:22.04:LTS ironic
nova affected Ubuntu:22.04:LTS nova
python-glance-store affected Ubuntu:22.04:LTS python-glance-store
python-os-brick affected Ubuntu:22.04:LTS python-os-brick
Upstream advisory

USN-6237-2

USNAll remainingHIGH2023-07-19

curl regression

Affected products

ProductStatusVendorPackageEcosystem
curl affected Ubuntu:22.04:LTS curl
Upstream advisory

USN-6226-1

USNAll remaining2023-07-13

scipy vulnerabilities

Affected products

ProductStatusVendorPackageEcosystem
scipy affected Ubuntu:Pro:20.04:LTS scipy
scipy affected Ubuntu:Pro:22.04:LTS scipy
Upstream advisory

USN-6217-1

USNAll remaining2023-07-11

dotnet6, dotnet7 vulnerability

Affected products

ProductStatusVendorPackageEcosystem
dotnet6 affected Ubuntu:22.04:LTS dotnet6
dotnet7 affected Ubuntu:22.04:LTS dotnet7
Upstream advisory

USN-6211-1

USNAll remaining2023-07-07

linux-azure regression

Affected products

ProductStatusVendorPackageEcosystem
linux-azure affected Ubuntu:Pro:14.04:LTS linux-azure
Upstream advisory

USN-6196-1

USNAll remaining2023-07-03

python-reportlab vulnerability

Affected products

ProductStatusVendorPackageEcosystem
python-reportlab affected Ubuntu:20.04:LTS python-reportlab
python-reportlab affected Ubuntu:22.04:LTS python-reportlab
Upstream advisory

USN-6195-1

USNAll remaining2023-07-03

vim vulnerabilities

Affected products

ProductStatusVendorPackageEcosystem
vim affected Ubuntu:22.04:LTS vim
Upstream advisory

Need live exploit intelligence?

Every CVE above is indexed in the Vulnetix VDB with KEV, EPSS, and PoC maturity. The interactive page surfaces that on hover.