Canonical Security Advisories · September 2023 — Canonical Security Advisories
83 advisories 176 CVEs 5 EXPLOITED

Ubuntu Security Notices (USN-NNNN-N) for 2023-09. Mirrored into Vulnetix VDB.

Every advisory below is enriched with the Vulnetix VDB exploit-intelligence chip (hover a CVE ID in the interactive page to see CVSS, EPSS, KEV status, and PoC maturity). 5 are already weaponised in the wild — see the Exploited section.

What would you fix first?

The advisories below are ordered by the Vulnetix risk prioritization strategy: exploitation evidence first, scores second. On the interactive page you can switch to three other lenses.

Advisories

USN-6369-2

USNExploitedCISA KEV listedHIGH2023-09-28

libwebp vulnerability

CVEs:CVE-2023-4863

Affected products

ProductStatusVendorPackageEcosystem
libwebp affected Ubuntu:Pro:18.04:LTS libwebp
Upstream advisory

USN-6369-1

USNExploitedCISA KEV listedHIGH2023-09-14

libwebp vulnerability

CVEs:CVE-2023-4863

Affected products

ProductStatusVendorPackageEcosystem
libwebp affected Ubuntu:22.04:LTS libwebp
libwebp affected Ubuntu:20.04:LTS libwebp
Upstream advisory

USN-6367-1

USNExploitedCISA KEV listedHIGH2023-09-14

firefox vulnerability

CVEs:CVE-2023-4863

Affected products

ProductStatusVendorPackageEcosystem
firefox affected Ubuntu:20.04:LTS firefox
Upstream advisory

LSN-0097-1

USNExploitedVulnCheck KEV listed2023-09-05

Kernel Live Patch Security Notice

CVEs:CVE-2023-3090CVE-2023-3389CVE-2023-3390CVE-2023-31248CVE-2023-32629CVE-2023-35001CVE-2023-35788

Affected products

ProductStatusVendorPackageEcosystem
linux affected Ubuntu:Pro:20.04:LTS linux
linux affected Ubuntu:Pro:22.04:LTS linux
linux affected Ubuntu:Pro:16.04:LTS linux
linux-aws affected Ubuntu:Pro:22.04:LTS linux-aws
linux-aws affected Ubuntu:Pro:20.04:LTS linux-aws
linux-aws affected Ubuntu:Pro:16.04:LTS linux-aws
linux-aws-5.15 affected Ubuntu:Pro:20.04:LTS linux-aws-5.15
linux-aws-5.4 affected Ubuntu:Pro:18.04:LTS linux-aws-5.4
linux-aws-6.2 affected Ubuntu:Pro:22.04:LTS linux-aws-6.2
linux-aws-hwe affected Ubuntu:Pro:16.04:LTS linux-aws-hwe
linux-azure affected Ubuntu:Pro:22.04:LTS linux-azure
linux-azure affected Ubuntu:Pro:20.04:LTS linux-azure
linux-azure-5.4 affected Ubuntu:Pro:18.04:LTS linux-azure-5.4
linux-gcp affected Ubuntu:Pro:20.04:LTS linux-gcp
linux-gcp affected Ubuntu:Pro:22.04:LTS linux-gcp
linux-gcp-5.15 affected Ubuntu:Pro:20.04:LTS linux-gcp-5.15
linux-gcp-5.4 affected Ubuntu:Pro:18.04:LTS linux-gcp-5.4
linux-gke affected Ubuntu:Pro:22.04:LTS linux-gke
linux-gke affected Ubuntu:Pro:20.04:LTS linux-gke
linux-gke-5.15 affected Ubuntu:Pro:20.04:LTS linux-gke-5.15
linux-gke-5.4 affected Ubuntu:Pro:18.04:LTS linux-gke-5.4
linux-gkeop affected Ubuntu:Pro:20.04:LTS linux-gkeop
linux-gkeop-5.4 affected Ubuntu:Pro:18.04:LTS linux-gkeop-5.4
linux-hwe affected Ubuntu:Pro:16.04:LTS linux-hwe
linux-hwe-5.15 affected Ubuntu:Pro:20.04:LTS linux-hwe-5.15
linux-hwe-5.4 affected Ubuntu:Pro:18.04:LTS linux-hwe-5.4
linux-ibm affected Ubuntu:Pro:22.04:LTS linux-ibm
linux-ibm affected Ubuntu:Pro:20.04:LTS linux-ibm
linux-ibm-5.4 affected Ubuntu:Pro:18.04:LTS linux-ibm-5.4
linux-lowlatency-hwe-5.15 affected Ubuntu:Pro:20.04:LTS linux-lowlatency-hwe-5.15
linux-lts-xenial affected Ubuntu:Pro:14.04:LTS linux-lts-xenial
Upstream advisory

USN-6390-1

USNActive exploitation (sightings)HIGH2023-09-20

bind9 vulnerabilities

CVEs:CVE-2023-3341CVE-2023-4236

Affected products

ProductStatusVendorPackageEcosystem
bind9 affected Ubuntu:22.04:LTS bind9
bind9 affected Ubuntu:20.04:LTS bind9
Upstream advisory

USN-6398-1

USNActive exploitation (sightings)HIGH2023-09-27

minidlna vulnerabilities

CVEs:CVE-2022-26505CVE-2023-33476

Affected products

ProductStatusVendorPackageEcosystem
minidlna affected Ubuntu:Pro:18.04:LTS minidlna
minidlna affected Ubuntu:20.04:LTS minidlna
minidlna affected Ubuntu:Pro:16.04:LTS minidlna
minidlna affected Ubuntu:22.04:LTS minidlna
Upstream advisory

USN-6364-1

USNActive exploitation (sightings)CRITICAL2023-09-13

ghostscript vulnerabilities

CVEs:CVE-2020-21710CVE-2020-21890

Affected products

ProductStatusVendorPackageEcosystem
ghostscript affected Ubuntu:Pro:18.04:LTS ghostscript
ghostscript affected Ubuntu:20.04:LTS ghostscript
ghostscript affected Ubuntu:Pro:16.04:LTS ghostscript
Upstream advisory

USN-6190-2

USNActive exploitation (sightings)HIGH2023-09-25

accountsservice vulnerability

CVEs:CVE-2023-3297

Affected products

ProductStatusVendorPackageEcosystem
accountsservice affected Ubuntu:Pro:18.04:LTS accountsservice
accountsservice affected Ubuntu:Pro:16.04:LTS accountsservice
accountsservice affected Ubuntu:Pro:14.04:LTS accountsservice
Upstream advisory

USN-6345-1

USNActive exploitation (sightings)NONE2023-09-06

sox vulnerability

CVEs:CVE-2023-32627

Affected products

ProductStatusVendorPackageEcosystem
sox affected Ubuntu:20.04:LTS sox
sox affected Ubuntu:22.04:LTS sox
sox affected Ubuntu:Pro:14.04:LTS sox
sox affected Ubuntu:Pro:16.04:LTS sox
sox affected Ubuntu:Pro:18.04:LTS sox
Upstream advisory

UBUNTU-CVE-2020-36766

USNActive exploitation (sightings)LOW2023-09-18

CVEs:CVE-2020-36766

Affected products

ProductStatusVendorPackageEcosystem
linux affected Ubuntu:18.04:LTS linux
linux affected Ubuntu:20.04:LTS linux
linux-allwinner-5.19 affected Ubuntu:22.04:LTS linux-allwinner-5.19
linux-aws affected Ubuntu:18.04:LTS linux-aws
linux-aws affected Ubuntu:20.04:LTS linux-aws
linux-aws-5.0 affected Ubuntu:18.04:LTS linux-aws-5.0
linux-aws-5.11 affected Ubuntu:20.04:LTS linux-aws-5.11
linux-aws-5.13 affected Ubuntu:20.04:LTS linux-aws-5.13
linux-aws-5.19 affected Ubuntu:22.04:LTS linux-aws-5.19
linux-aws-5.3 affected Ubuntu:18.04:LTS linux-aws-5.3
linux-aws-5.4 affected Ubuntu:18.04:LTS linux-aws-5.4
linux-aws-5.8 affected Ubuntu:20.04:LTS linux-aws-5.8
linux-aws-6.2 affected Ubuntu:22.04:LTS linux-aws-6.2
linux-aws-fips affected Ubuntu:Pro:FIPS:20.04:LTS linux-aws-fips
linux-aws-fips affected Ubuntu:Pro:FIPS:18.04:LTS linux-aws-fips
linux-aws-fips affected Ubuntu:Pro:FIPS-updates:20.04:LTS linux-aws-fips
linux-aws-fips affected Ubuntu:Pro:FIPS-updates:18.04:LTS linux-aws-fips
linux-aws-hwe affected Ubuntu:16.04:LTS linux-aws-hwe
linux-azure affected Ubuntu:20.04:LTS linux-azure
linux-azure affected Ubuntu:Pro:14.04:LTS linux-azure
linux-azure affected Ubuntu:18.04:LTS linux-azure
linux-azure affected Ubuntu:16.04:LTS linux-azure
linux-azure-4.15 affected Ubuntu:18.04:LTS linux-azure-4.15
linux-azure-5.11 affected Ubuntu:20.04:LTS linux-azure-5.11
linux-azure-5.13 affected Ubuntu:20.04:LTS linux-azure-5.13
linux-azure-5.19 affected Ubuntu:22.04:LTS linux-azure-5.19
linux-azure-5.3 affected Ubuntu:18.04:LTS linux-azure-5.3
linux-azure-5.4 affected Ubuntu:18.04:LTS linux-azure-5.4
linux-azure-5.8 affected Ubuntu:20.04:LTS linux-azure-5.8
linux-azure-6.2 affected Ubuntu:22.04:LTS linux-azure-6.2
linux-azure-edge affected Ubuntu:18.04:LTS linux-azure-edge
linux-azure-fde affected Ubuntu:20.04:LTS linux-azure-fde
linux-azure-fde-5.19 affected Ubuntu:22.04:LTS linux-azure-fde-5.19
linux-azure-fde-6.2 affected Ubuntu:22.04:LTS linux-azure-fde-6.2
linux-azure-fips affected Ubuntu:Pro:FIPS:18.04:LTS linux-azure-fips
linux-azure-fips affected Ubuntu:Pro:FIPS:20.04:LTS linux-azure-fips
linux-azure-fips affected Ubuntu:Pro:FIPS-updates:18.04:LTS linux-azure-fips
linux-azure-fips affected Ubuntu:Pro:FIPS-updates:20.04:LTS linux-azure-fips
linux-fips affected Ubuntu:Pro:FIPS:18.04:LTS linux-fips
linux-fips affected Ubuntu:Pro:FIPS-updates:18.04:LTS linux-fips
linux-gcp affected Ubuntu:20.04:LTS linux-gcp
linux-gcp affected Ubuntu:16.04:LTS linux-gcp
linux-gcp affected Ubuntu:18.04:LTS linux-gcp
linux-gcp-4.15 affected Ubuntu:18.04:LTS linux-gcp-4.15
linux-gcp-5.11 affected Ubuntu:20.04:LTS linux-gcp-5.11
linux-gcp-5.13 affected Ubuntu:20.04:LTS linux-gcp-5.13
linux-gcp-5.19 affected Ubuntu:22.04:LTS linux-gcp-5.19
linux-gcp-5.3 affected Ubuntu:18.04:LTS linux-gcp-5.3
linux-gcp-5.4 affected Ubuntu:18.04:LTS linux-gcp-5.4
linux-gcp-5.8 affected Ubuntu:20.04:LTS linux-gcp-5.8
linux-gcp-6.2 affected Ubuntu:22.04:LTS linux-gcp-6.2
linux-gcp-fips affected Ubuntu:Pro:FIPS:20.04:LTS linux-gcp-fips
linux-gcp-fips affected Ubuntu:Pro:FIPS-updates:20.04:LTS linux-gcp-fips
linux-gcp-fips affected Ubuntu:Pro:FIPS:18.04:LTS linux-gcp-fips
linux-gke affected Ubuntu:20.04:LTS linux-gke
linux-gke-4.15 affected Ubuntu:18.04:LTS linux-gke-4.15
linux-gke-5.15 affected Ubuntu:20.04:LTS linux-gke-5.15
linux-gke-5.4 affected Ubuntu:18.04:LTS linux-gke-5.4
linux-gkeop-5.4 affected Ubuntu:18.04:LTS linux-gkeop-5.4
linux-hwe affected Ubuntu:16.04:LTS linux-hwe
linux-hwe affected Ubuntu:18.04:LTS linux-hwe
linux-hwe-5.11 affected Ubuntu:20.04:LTS linux-hwe-5.11
linux-hwe-5.13 affected Ubuntu:20.04:LTS linux-hwe-5.13
linux-hwe-5.19 affected Ubuntu:22.04:LTS linux-hwe-5.19
linux-hwe-5.4 affected Ubuntu:18.04:LTS linux-hwe-5.4
linux-hwe-5.8 affected Ubuntu:20.04:LTS linux-hwe-5.8
linux-hwe-6.2 affected Ubuntu:22.04:LTS linux-hwe-6.2
linux-hwe-edge affected Ubuntu:18.04:LTS linux-hwe-edge
linux-hwe-edge affected Ubuntu:16.04:LTS linux-hwe-edge
linux-intel-5.13 affected Ubuntu:20.04:LTS linux-intel-5.13
linux-intel-iot-realtime affected Ubuntu:22.04:LTS linux-intel-iot-realtime
linux-kvm affected Ubuntu:20.04:LTS linux-kvm
linux-kvm affected Ubuntu:18.04:LTS linux-kvm
linux-lowlatency-hwe-5.19 affected Ubuntu:22.04:LTS linux-lowlatency-hwe-5.19
linux-lowlatency-hwe-6.2 affected Ubuntu:22.04:LTS linux-lowlatency-hwe-6.2
linux-nvidia-6.2 affected Ubuntu:22.04:LTS linux-nvidia-6.2
linux-oem affected Ubuntu:18.04:LTS linux-oem
linux-oem-5.10 affected Ubuntu:20.04:LTS linux-oem-5.10
linux-oem-5.13 affected Ubuntu:20.04:LTS linux-oem-5.13
linux-oem-5.14 affected Ubuntu:20.04:LTS linux-oem-5.14
linux-oem-5.17 affected Ubuntu:22.04:LTS linux-oem-5.17
linux-oem-5.6 affected Ubuntu:20.04:LTS linux-oem-5.6
linux-oem-6.0 affected Ubuntu:22.04:LTS linux-oem-6.0
linux-oracle affected Ubuntu:18.04:LTS linux-oracle
linux-oracle affected Ubuntu:16.04:LTS linux-oracle
linux-oracle affected Ubuntu:20.04:LTS linux-oracle
linux-oracle-5.0 affected Ubuntu:18.04:LTS linux-oracle-5.0
linux-oracle-5.11 affected Ubuntu:20.04:LTS linux-oracle-5.11
linux-oracle-5.13 affected Ubuntu:20.04:LTS linux-oracle-5.13
linux-oracle-5.3 affected Ubuntu:18.04:LTS linux-oracle-5.3
linux-oracle-5.4 affected Ubuntu:18.04:LTS linux-oracle-5.4
linux-oracle-5.8 affected Ubuntu:20.04:LTS linux-oracle-5.8
linux-raspi affected Ubuntu:20.04:LTS linux-raspi
linux-raspi2 affected Ubuntu:20.04:LTS linux-raspi2
linux-raspi-5.4 affected Ubuntu:18.04:LTS linux-raspi-5.4
linux-raspi-realtime affected Ubuntu:24.04:LTS linux-raspi-realtime
linux-realtime affected Ubuntu:22.04:LTS linux-realtime
linux-riscv affected Ubuntu:20.04:LTS linux-riscv
linux-riscv affected Ubuntu:22.04:LTS linux-riscv
linux-riscv-5.11 affected Ubuntu:20.04:LTS linux-riscv-5.11
linux-riscv-5.19 affected Ubuntu:22.04:LTS linux-riscv-5.19
linux-riscv-5.8 affected Ubuntu:20.04:LTS linux-riscv-5.8
linux-starfive-5.19 affected Ubuntu:22.04:LTS linux-starfive-5.19
linux-starfive-6.2 affected Ubuntu:22.04:LTS linux-starfive-6.2
Upstream advisory

USN-6385-1

USNCoalition ESS > 63%HIGH2023-09-19

linux-oem-6.0 vulnerabilities

CVEs:CVE-2022-4269CVE-2022-27672CVE-2023-0458CVE-2023-1075CVE-2023-1076CVE-2023-1206CVE-2023-1380CVE-2023-1611CVE-2023-2002CVE-2023-2162CVE-2023-2163CVE-2023-2235CVE-2023-2269CVE-2023-2898CVE-2023-3090CVE-2023-3141CVE-2023-3220CVE-2023-3390CVE-2023-3609CVE-2023-3610CVE-2023-3611CVE-2023-3776CVE-2023-3777CVE-2023-3863CVE-2023-3995CVE-2023-4004CVE-2023-4015CVE-2023-4128CVE-2023-4194CVE-2023-4273CVE-2023-4569CVE-2023-20593CVE-2023-28328CVE-2023-28466CVE-2023-31436CVE-2023-32269CVE-2023-40283

Affected products

ProductStatusVendorPackageEcosystem
linux-oem-6.0 affected Ubuntu
linux-oem-6.0 affected Ubuntu:22.04:LTS linux-oem-6.0
Upstream advisory

USN-6347-1

USNCoalition ESS > 63%HIGH2023-09-06

linux-azure-fde-5.15 vulnerabilities

CVEs:CVE-2022-4269CVE-2022-48502CVE-2023-0597CVE-2023-1611CVE-2023-1855CVE-2023-1990CVE-2023-2002CVE-2023-2124CVE-2023-2163CVE-2023-2194CVE-2023-2235CVE-2023-2269CVE-2023-3141CVE-2023-3268CVE-2023-23004CVE-2023-28466CVE-2023-30772CVE-2023-32248CVE-2023-33203CVE-2023-33288CVE-2023-35823CVE-2023-35824CVE-2023-35828CVE-2023-35829

Affected products

ProductStatusVendorPackageEcosystem
linux-azure-fde-5.15 affected Ubuntu:20.04:LTS linux-azure-fde-5.15
Upstream advisory

USN-6340-2

USNCoalition ESS > 63%HIGH2023-09-08

linux-azure-5.4, linux-gcp-5.4, linux-gkeop, linux-raspi, linux-raspi-5.4, linux-xilinx-zynqmp vulnerabilities

CVEs:CVE-2023-2002CVE-2023-2163CVE-2023-2269CVE-2023-3268CVE-2023-21255CVE-2023-31084CVE-2023-35823CVE-2023-35824CVE-2023-35828

Affected products

ProductStatusVendorPackageEcosystem
linux-azure-5.4 affected Ubuntu:Pro:18.04:LTS linux-azure-5.4
linux-azure-5.4 affected Linux
linux-gcp-5.4 affected Ubuntu:Pro:18.04:LTS linux-gcp-5.4
linux-gkeop affected Ubuntu:20.04:LTS linux-gkeop
linux-raspi affected Ubuntu:20.04:LTS linux-raspi
linux-raspi-5.4 affected Ubuntu:Pro:18.04:LTS linux-raspi-5.4
linux-xilinx-zynqmp affected Ubuntu:20.04:LTS linux-xilinx-zynqmp
Upstream advisory

USN-6340-1

USNCoalition ESS > 63%HIGH2023-09-05

linux, linux-aws, linux-aws-5.4, linux-gcp, linux-hwe-5.4, linux-iot, linux-kvm, linux-oracle, linux-oracle-5.4 vulnerabilities

CVEs:CVE-2023-2002CVE-2023-2163CVE-2023-2269CVE-2023-3268CVE-2023-21255CVE-2023-31084CVE-2023-35823CVE-2023-35824CVE-2023-35828

Affected products

ProductStatusVendorPackageEcosystem
linux affected Ubuntu:20.04:LTS linux
linux-aws affected Ubuntu:20.04:LTS linux-aws
linux-aws-5.4 affected Ubuntu
linux-aws-5.4 affected Ubuntu:Pro:18.04:LTS linux-aws-5.4
linux-gcp affected Ubuntu:20.04:LTS linux-gcp
linux-hwe-5.4 affected Ubuntu:Pro:18.04:LTS linux-hwe-5.4
linux-iot affected Ubuntu:20.04:LTS linux-iot
linux-kvm affected Ubuntu:20.04:LTS linux-kvm
linux-oracle affected Ubuntu:20.04:LTS linux-oracle
linux-oracle-5.4 affected Ubuntu:Pro:18.04:LTS linux-oracle-5.4
Upstream advisory

USN-6387-2

USNPoC exploitHIGH2023-09-26

linux-bluefield, linux-raspi, linux-raspi-5.4 vulnerabilities

CVEs:CVE-2023-4128CVE-2023-20588CVE-2023-40283

Affected products

ProductStatusVendorPackageEcosystem
linux-bluefield affected Ubuntu:20.04:LTS linux-bluefield
linux-raspi affected Ubuntu:20.04:LTS linux-raspi
linux-raspi-5.4 affected Ubuntu:Pro:18.04:LTS linux-raspi-5.4
Upstream advisory

USN-6387-1

USNPoC exploitHIGH2023-09-19

linux, linux-aws, linux-aws-5.4, linux-azure, linux-azure-5.4, linux-gcp, linux-gcp-5.4, linux-gkeop, linux-hwe-5.4, linux-ibm, linux-ibm-5.4, linux-iot, linux-kvm, linux-oracle, linux-oracle-5.4, linux-xilinx-zynqmp vulnerabilities

CVEs:CVE-2023-4128CVE-2023-20588CVE-2023-40283

Affected products

ProductStatusVendorPackageEcosystem
linux affected Ubuntu:20.04:LTS linux
linux-aws affected Ubuntu:20.04:LTS linux-aws
linux-aws-5.4 affected Ubuntu:Pro:18.04:LTS linux-aws-5.4
linux-azure affected Ubuntu:20.04:LTS linux-azure
linux-azure-5.4 affected Ubuntu:Pro:18.04:LTS linux-azure-5.4
linux-gcp affected Ubuntu:20.04:LTS linux-gcp
linux-gcp-5.4 affected Ubuntu:Pro:18.04:LTS linux-gcp-5.4
linux-gkeop affected Ubuntu:20.04:LTS linux-gkeop
linux-hwe-5.4 affected Ubuntu:Pro:18.04:LTS linux-hwe-5.4
linux-ibm affected Ubuntu:20.04:LTS linux-ibm
linux-ibm-5.4 affected Ubuntu:Pro:18.04:LTS linux-ibm-5.4
linux-iot affected Ubuntu:20.04:LTS linux-iot
linux-kvm affected Ubuntu:20.04:LTS linux-kvm
linux-oracle affected Ubuntu:20.04:LTS linux-oracle
linux-oracle-5.4 affected Ubuntu:Pro:18.04:LTS linux-oracle-5.4
linux-xilinx-zynqmp affected Ubuntu:20.04:LTS linux-xilinx-zynqmp
Upstream advisory

USN-6386-1

USNPoC exploitHIGH2023-09-19

linux, linux-aws, linux-aws-5.15, linux-azure, linux-azure-5.15, linux-azure-fde, linux-azure-fde-5.15, linux-gcp, linux-gcp-5.15, linux-gke, linux-gkeop, linux-gkeop-5.15, linux-hwe-5.15, linux-ibm, linux-ibm-5.15, linux-kvm, linux-lowlatency, linux-lowlatency-hwe-5.15, linux-nvidia vulnerabilities

CVEs:CVE-2023-4128CVE-2023-4569CVE-2023-20588CVE-2023-40283

Affected products

ProductStatusVendorPackageEcosystem
linux affected Ubuntu:22.04:LTS linux
linux-aws affected Ubuntu:22.04:LTS linux-aws
linux-aws-5.15 affected Ubuntu:20.04:LTS linux-aws-5.15
linux-aws-5.15 affected Ubuntu
linux-azure affected Ubuntu:22.04:LTS linux-azure
linux-azure-5.15 affected Ubuntu:20.04:LTS linux-azure-5.15
linux-azure-fde affected Ubuntu:22.04:LTS linux-azure-fde
linux-azure-fde-5.15 affected Ubuntu:20.04:LTS linux-azure-fde-5.15
linux-gcp affected Ubuntu:22.04:LTS linux-gcp
linux-gcp-5.15 affected Ubuntu:20.04:LTS linux-gcp-5.15
linux-gke affected Ubuntu:22.04:LTS linux-gke
linux-gkeop affected Ubuntu:22.04:LTS linux-gkeop
linux-gkeop-5.15 affected Ubuntu:20.04:LTS linux-gkeop-5.15
linux-hwe-5.15 affected Ubuntu:20.04:LTS linux-hwe-5.15
linux-ibm affected Ubuntu:22.04:LTS linux-ibm
linux-ibm-5.15 affected Ubuntu:20.04:LTS linux-ibm-5.15
linux-kvm affected Ubuntu:22.04:LTS linux-kvm
linux-lowlatency affected Ubuntu:22.04:LTS linux-lowlatency
linux-lowlatency-hwe-5.15 affected Ubuntu:20.04:LTS linux-lowlatency-hwe-5.15
linux-nvidia affected Ubuntu:22.04:LTS linux-nvidia
Upstream advisory

USN-6383-1

USNPoC exploitHIGH2023-09-19

linux, linux-aws, linux-aws-6.2, linux-azure, linux-azure-6.2, linux-azure-fde-6.2, linux-gcp, linux-gcp-6.2, linux-hwe-6.2, linux-ibm, linux-kvm, linux-lowlatency, linux-lowlatency-hwe-6.2, linux-oracle, linux-raspi, linux-starfive vulnerabilities

CVEs:CVE-2023-4128CVE-2023-4569CVE-2023-20588CVE-2023-21264CVE-2023-40283

Affected products

ProductStatusVendorPackageEcosystem
linux-aws-6.2 affected Ubuntu:22.04:LTS linux-aws-6.2
linux-azure-6.2 affected Ubuntu:22.04:LTS linux-azure-6.2
linux-azure-fde-6.2 affected Ubuntu:22.04:LTS linux-azure-fde-6.2
linux-gcp-6.2 affected Ubuntu:22.04:LTS linux-gcp-6.2
linux-hwe-6.2 affected Ubuntu:22.04:LTS linux-hwe-6.2
linux-lowlatency-hwe-6.2 affected Ubuntu:22.04:LTS linux-lowlatency-hwe-6.2
Upstream advisory

USN-6342-1

USNPoC exploitHIGH2023-09-06

linux, linux-aws, linux-aws-hwe, linux-gcp, linux-gcp-4.15, linux-hwe, linux-kvm, linux-oracle vulnerabilities

CVEs:CVE-2023-2269CVE-2023-2985CVE-2023-3611CVE-2023-3776CVE-2023-20593CVE-2023-31084

Affected products

ProductStatusVendorPackageEcosystem
linux affected Ubuntu:Pro:18.04:LTS linux
linux-aws affected Ubuntu:Pro:18.04:LTS linux-aws
linux-aws-hwe affected Ubuntu:Pro:16.04:LTS linux-aws-hwe
linux-gcp affected Ubuntu:Pro:16.04:LTS linux-gcp
linux-gcp-4.15 affected Ubuntu:Pro:18.04:LTS linux-gcp-4.15
linux-hwe affected Ubuntu:Pro:16.04:LTS linux-hwe
linux-kvm affected Ubuntu:Pro:18.04:LTS linux-kvm
linux-oracle affected Ubuntu:Pro:18.04:LTS linux-oracle
linux-oracle affected Ubuntu:Pro:16.04:LTS linux-oracle
Upstream advisory

USN-6354-1

USNPoC exploitHIGH2023-09-07

python2.7, python3.5 vulnerability

CVEs:CVE-2022-48565

Affected products

ProductStatusVendorPackageEcosystem
python2.7 affected Ubuntu:Pro:16.04:LTS python2.7
python2.7 affected Ubuntu:Pro:14.04:LTS python2.7
python2.7 affected Ubuntu:Pro:18.04:LTS python2.7
python3.5 affected Ubuntu:Pro:16.04:LTS python3.5
Upstream advisory

USN-6338-1

USNPoC exploitHIGH2023-09-05

linux, linux-aws, linux-aws-6.2, linux-hwe-6.2, linux-kvm, linux-lowlatency, linux-lowlatency-hwe-6.2, linux-raspi vulnerabilities

CVEs:CVE-2023-2898CVE-2023-21255CVE-2023-31084CVE-2023-32247CVE-2023-32250CVE-2023-32252CVE-2023-32257CVE-2023-32258CVE-2023-38426CVE-2023-38428CVE-2023-38429

Affected products

ProductStatusVendorPackageEcosystem
linux-aws-6.2 affected Ubuntu:22.04:LTS linux-aws-6.2
linux-hwe-6.2 affected Ubuntu:22.04:LTS linux-hwe-6.2
linux-lowlatency-hwe-6.2 affected Ubuntu:22.04:LTS linux-lowlatency-hwe-6.2
Upstream advisory

USN-6336-1

USNPoC exploitNONE2023-09-05

docker-registry vulnerabilities

CVEs:CVE-2017-11468CVE-2023-2253

Affected products

ProductStatusVendorPackageEcosystem
docker-registry affected Ubuntu:Pro:16.04:LTS docker-registry
docker-registry affected Ubuntu:Pro:18.04:LTS docker-registry
docker-registry affected Ubuntu:Pro:22.04:LTS docker-registry
docker-registry affected Ubuntu:20.04:LTS docker-registry
Upstream advisory

USN-6335-1

USNPoC exploitHIGH2023-09-04

busybox vulnerabilities

CVEs:CVE-2021-28831CVE-2022-48174

Affected products

ProductStatusVendorPackageEcosystem
busybox affected Ubuntu:Pro:14.04:LTS busybox
busybox affected Ubuntu:Pro:16.04:LTS busybox
busybox affected Ubuntu:Pro:18.04:LTS busybox
Upstream advisory

USN-6339-3

USNPoC exploitHIGH2023-09-11

linux-azure, linux-azure-5.15, linux-azure-fde, linux-azure-fde-5.15, linux-raspi vulnerabilities

CVEs:CVE-2022-48425CVE-2023-2898CVE-2023-3212CVE-2023-21255CVE-2023-31084CVE-2023-38426CVE-2023-38428CVE-2023-38429

Affected products

ProductStatusVendorPackageEcosystem
linux-azure affected Ubuntu:22.04:LTS linux-azure
linux-azure-5.15 affected Ubuntu:20.04:LTS linux-azure-5.15
linux-azure-fde affected Ubuntu:22.04:LTS linux-azure-fde
linux-azure-fde-5.15 affected Ubuntu:20.04:LTS linux-azure-fde-5.15
linux-raspi affected Ubuntu:22.04:LTS linux-raspi
Upstream advisory

USN-6350-1

USNPoC exploitHIGH2023-09-06

linux-aws, linux-aws-5.15, linux-ibm-5.15, linux-oracle, linux-oracle-5.15 vulnerabilities

CVEs:CVE-2022-48425CVE-2023-2898CVE-2023-3212CVE-2023-21255CVE-2023-31084CVE-2023-38426CVE-2023-38428CVE-2023-38429

Affected products

ProductStatusVendorPackageEcosystem
linux-aws affected Ubuntu:22.04:LTS linux-aws
linux-aws-5.15 affected Ubuntu:20.04:LTS linux-aws-5.15
linux-ibm-5.15 affected Ubuntu:20.04:LTS linux-ibm-5.15
linux-oracle affected Ubuntu:22.04:LTS linux-oracle
linux-oracle-5.15 affected Ubuntu:20.04:LTS linux-oracle-5.15
Upstream advisory

USN-6339-1

USNPoC exploitHIGH2023-09-05

linux, linux-gcp, linux-hwe-5.15, linux-ibm, linux-kvm, linux-lowlatency, linux-lowlatency-hwe-5.15, linux-nvidia vulnerabilities

CVEs:CVE-2022-48425CVE-2023-2898CVE-2023-3212CVE-2023-21255CVE-2023-31084CVE-2023-38426CVE-2023-38428CVE-2023-38429

Affected products

ProductStatusVendorPackageEcosystem
linux affected Ubuntu:22.04:LTS linux
linux-gcp affected Ubuntu:22.04:LTS linux-gcp
linux-hwe-5.15 affected Ubuntu:20.04:LTS linux-hwe-5.15
linux-ibm affected Ubuntu:22.04:LTS linux-ibm
linux-kvm affected Ubuntu:22.04:LTS linux-kvm
linux-lowlatency affected Ubuntu:22.04:LTS linux-lowlatency
linux-lowlatency-hwe-5.15 affected Ubuntu:20.04:LTS linux-lowlatency-hwe-5.15
linux-nvidia affected Ubuntu:22.04:LTS linux-nvidia
Upstream advisory

USN-6370-1

USNPoC exploitCRITICAL2023-09-14

modsecurity-apache vulnerabilities

CVEs:CVE-2021-42717CVE-2022-48279CVE-2023-24021

Affected products

ProductStatusVendorPackageEcosystem
modsecurity-apache affected Ubuntu:Pro:14.04:LTS modsecurity-apache
modsecurity-apache affected Ubuntu:20.04:LTS modsecurity-apache
modsecurity-apache affected Ubuntu:Pro:18.04:LTS modsecurity-apache
modsecurity-apache affected Ubuntu:Pro:16.04:LTS modsecurity-apache
modsecurity-apache affected Ubuntu:Pro:22.04:LTS modsecurity-apache
Upstream advisory

USN-6396-1

USNPoC exploitHIGH2023-09-26

linux, linux-aws, linux-aws-hwe, linux-azure, linux-azure-4.15, linux-gcp, linux-gcp-4.15, linux-hwe, linux-oracle vulnerabilities

CVEs:CVE-2022-27672CVE-2022-40982CVE-2023-3212CVE-2023-3863CVE-2023-4128CVE-2023-40283

Affected products

ProductStatusVendorPackageEcosystem
linux affected Ubuntu:Pro:18.04:LTS linux
linux-aws affected Ubuntu:Pro:18.04:LTS linux-aws
linux-aws-hwe affected Ubuntu:Pro:16.04:LTS linux-aws-hwe
linux-azure affected Ubuntu:Pro:16.04:LTS linux-azure
linux-azure-4.15 affected Ubuntu:Pro:18.04:LTS linux-azure-4.15
linux-gcp affected Ubuntu:Pro:16.04:LTS linux-gcp
linux-gcp-4.15 affected Ubuntu:Pro:18.04:LTS linux-gcp-4.15
linux-hwe affected Ubuntu:Pro:16.04:LTS linux-hwe
linux-oracle affected Ubuntu:Pro:18.04:LTS linux-oracle
linux-oracle affected Ubuntu:Pro:16.04:LTS linux-oracle
Upstream advisory

USN-6388-1

USNPoC exploitHIGH2023-09-19

linux, linux-aws, linux-kvm, linux-lts-xenial vulnerabilities

CVEs:CVE-2022-40982CVE-2023-3212CVE-2023-3863CVE-2023-4128CVE-2023-4385CVE-2023-4387CVE-2023-4459CVE-2023-32269CVE-2023-40283

Affected products

ProductStatusVendorPackageEcosystem
linux affected Ubuntu:Pro:16.04:LTS linux
linux-aws affected Ubuntu:Pro:14.04:LTS linux-aws
linux-aws affected Ubuntu:Pro:16.04:LTS linux-aws
linux-kvm affected Ubuntu:Pro:16.04:LTS linux-kvm
linux-lts-xenial affected Ubuntu:Pro:14.04:LTS linux-lts-xenial
Upstream advisory

USN-6237-3

USNPoC exploitHIGH2023-09-11

curl vulnerabilities

CVEs:CVE-2023-28321CVE-2023-28322

Affected products

ProductStatusVendorPackageEcosystem
curl affected Ubuntu:Pro:14.04:LTS curl
curl affected Ubuntu:Pro:16.04:LTS curl
curl affected Ubuntu:Pro:18.04:LTS curl
Upstream advisory

USN-6394-1

USNPoC exploitCRITICAL2023-09-21

python3.5 vulnerability

CVEs:CVE-2022-48560

Affected products

ProductStatusVendorPackageEcosystem
python3.5 affected Ubuntu:Pro:16.04:LTS python3.5
Upstream advisory

USN-6366-1

USNPoC exploitCRITICAL2023-09-13

postgresql-9.5 vulnerability

CVEs:CVE-2023-39417

Affected products

ProductStatusVendorPackageEcosystem
postgresql-9.5 affected Ubuntu:Pro:16.04:LTS postgresql-9.5
Upstream advisory

USN-6358-1

USNPoC exploitHIGH2023-09-12

ruby-redcloth vulnerability

CVEs:CVE-2023-31606

Affected products

ProductStatusVendorPackageEcosystem
ruby-redcloth affected Ubuntu:Pro:18.04:LTS ruby-redcloth
ruby-redcloth affected Ubuntu:22.04:LTS ruby-redcloth
ruby-redcloth affected Ubuntu:Pro:16.04:LTS ruby-redcloth
ruby-redcloth affected Ubuntu:20.04:LTS ruby-redcloth
Upstream advisory

USN-6400-1

USNPoC exploitHIGH2023-09-27

python2.7, python3.5 vulnerability

CVEs:CVE-2022-48566

Affected products

ProductStatusVendorPackageEcosystem
python2.7 affected Ubuntu:Pro:16.04:LTS python2.7
python2.7 affected Ubuntu:Pro:18.04:LTS python2.7
python3.5 affected Ubuntu:Pro:16.04:LTS python3.5
Upstream advisory

USN-6378-1

USNPoC exploitCRITICAL2023-09-18

python-django vulnerability

CVEs:CVE-2023-41164

Affected products

ProductStatusVendorPackageEcosystem
python-django affected Ubuntu:20.04:LTS python-django
python-django affected Ubuntu:22.04:LTS python-django
Upstream advisory

USN-6355-1

USNPoC exploitHIGH2023-09-08

grub2-signed, grub2-unsigned, shim, and shim-signed vulnerability

CVEs:CVE-2021-3695CVE-2021-3696CVE-2021-3697CVE-2021-3981CVE-2022-3775CVE-2022-28733CVE-2022-28734CVE-2022-28735CVE-2022-28736CVE-2022-28737

Affected products

ProductStatusVendorPackageEcosystem
grub2-signed affected Ubuntu:20.04:LTS grub2-signed
grub2-signed affected Ubuntu:22.04:LTS grub2-signed
grub2-unsigned affected Ubuntu:20.04:LTS grub2-unsigned
grub2-unsigned affected Ubuntu:22.04:LTS grub2-unsigned
shim affected Ubuntu:22.04:LTS shim
shim affected Ubuntu:20.04:LTS shim
shim-signed affected Ubuntu:22.04:LTS shim-signed
shim-signed affected Ubuntu:20.04:LTS shim-signed
Upstream advisory

USN-6371-1

USNPoC exploitHIGH2023-09-14

libssh2 vulnerability

CVEs:CVE-2020-22218

Affected products

ProductStatusVendorPackageEcosystem
libssh2 affected Ubuntu:Pro:16.04:LTS libssh2
libssh2 affected Ubuntu:20.04:LTS libssh2
libssh2 affected Ubuntu:Pro:14.04:LTS libssh2
libssh2 affected Ubuntu:18.04:LTS libssh2
Upstream advisory

USN-6391-2

USNPoC exploitHIGH2023-09-21

cups vulnerability

CVEs:CVE-2023-4504

Affected products

ProductStatusVendorPackageEcosystem
cups affected Ubuntu:Pro:18.04:LTS cups
cups affected Ubuntu:Pro:16.04:LTS cups
Upstream advisory

USN-6391-1

USNPoC exploitHIGH2023-09-20

cups vulnerability

CVEs:CVE-2023-4504

Affected products

ProductStatusVendorPackageEcosystem
cups affected Ubuntu:20.04:LTS cups
cups affected Ubuntu:22.04:LTS cups
Upstream advisory

USN-6361-2

USNPoC exploitNONE2023-09-26

cups vulnerability

CVEs:CVE-2023-32360

Affected products

ProductStatusVendorPackageEcosystem
cups affected Ubuntu:Pro:18.04:LTS cups
cups affected Ubuntu:Pro:16.04:LTS cups
Upstream advisory

USN-6361-1

USNPoC exploitNONE2023-09-12

cups vulnerability

CVEs:CVE-2023-32360

Affected products

ProductStatusVendorPackageEcosystem
cups affected Ubuntu:22.04:LTS cups
cups affected Ubuntu:20.04:LTS cups
Upstream advisory

USN-6353-1

USNCoalition ESS < 30%HIGH2023-09-07

plib vulnerability

CVEs:CVE-2021-38714

Affected products

ProductStatusVendorPackageEcosystem
plib affected Ubuntu:Pro:16.04:LTS plib
plib affected Ubuntu:20.04:LTS plib
plib affected Ubuntu:Pro:18.04:LTS plib
Upstream advisory

USN-6393-1

USNCoalition ESS < 30%HIGH2023-09-21

imagemagick vulnerability

CVEs:CVE-2022-48541

Affected products

ProductStatusVendorPackageEcosystem
imagemagick affected Ubuntu:Pro:16.04:LTS imagemagick
imagemagick affected Ubuntu:Pro:20.04:LTS imagemagick
imagemagick affected Ubuntu:Pro:18.04:LTS imagemagick
imagemagick affected Ubuntu:Pro:14.04:LTS imagemagick
Upstream advisory

USN-6365-2

USNCoalition ESS < 30%NONE2023-09-25

open-vm-tools vulnerability

CVEs:CVE-2023-20900

Affected products

ProductStatusVendorPackageEcosystem
open-vm-tools affected Ubuntu:Pro:16.04:LTS open-vm-tools
open-vm-tools affected Ubuntu:Pro:18.04:LTS open-vm-tools
Upstream advisory

USN-6365-1

USNCoalition ESS < 30%NONE2023-09-13

open-vm-tools vulnerability

CVEs:CVE-2023-20900

Affected products

ProductStatusVendorPackageEcosystem
open-vm-tools affected Ubuntu:22.04:LTS open-vm-tools
open-vm-tools affected Ubuntu:20.04:LTS open-vm-tools
Upstream advisory

USN-6382-1

USNCoalition ESS < 30%HIGH2023-09-19

memcached vulnerability

CVEs:CVE-2022-48571

Affected products

ProductStatusVendorPackageEcosystem
memcached affected Ubuntu:Pro:18.04:LTS memcached
memcached affected Ubuntu:20.04:LTS memcached
memcached affected Ubuntu:Pro:16.04:LTS memcached
Upstream advisory

USN-6376-1

USNCoalition ESS < 30%HIGH2023-09-18

c-ares vulnerability

CVEs:CVE-2020-22217

Affected products

ProductStatusVendorPackageEcosystem
c-ares affected Ubuntu:20.04:LTS c-ares
Upstream advisory

USN-6360-2

USNCoalition ESS < 30%CRITICAL2023-09-22

flac vulnerability

CVEs:CVE-2020-22219

Affected products

ProductStatusVendorPackageEcosystem
flac affected Ubuntu:Pro:18.04:LTS flac
flac affected Ubuntu:Pro:16.04:LTS flac
flac affected Ubuntu:Pro:14.04:LTS flac
Upstream advisory

USN-6360-1

USNCoalition ESS < 30%CRITICAL2023-09-12

flac vulnerability

CVEs:CVE-2020-22219

Affected products

ProductStatusVendorPackageEcosystem
flac affected Ubuntu:22.04:LTS flac
flac affected Ubuntu:20.04:LTS flac
Upstream advisory

USN-6377-1

USNCoalition ESS < 30%MEDIUM2023-09-18

libraw vulnerability

CVEs:CVE-2020-22628

Affected products

ProductStatusVendorPackageEcosystem
libraw affected Ubuntu:20.04:LTS libraw
Upstream advisory

USN-6374-1

USNCoalition ESS < 30%NONE2023-09-14

mutt vulnerabilities

CVEs:CVE-2023-4874CVE-2023-4875

Affected products

ProductStatusVendorPackageEcosystem
mutt affected Ubuntu:22.04:LTS mutt
mutt affected Ubuntu:20.04:LTS mutt
mutt affected Ubuntu:Pro:16.04:LTS mutt
mutt affected Ubuntu:Pro:18.04:LTS mutt
Upstream advisory

USN-6389-1

USNCoalition ESS < 30%HIGH2023-09-20

indent vulnerability

CVEs:CVE-2023-40305

Affected products

ProductStatusVendorPackageEcosystem
indent affected Ubuntu:22.04:LTS indent
indent affected Ubuntu:20.04:LTS indent
Upstream advisory

USN-6373-1

USNCoalition ESS < 30%MEDIUM2023-09-14

gawk vulnerability

CVEs:CVE-2023-4156

Affected products

ProductStatusVendorPackageEcosystem
gawk affected Ubuntu:22.04:LTS gawk
gawk affected Ubuntu:Pro:14.04:LTS gawk
gawk affected Ubuntu:Pro:16.04:LTS gawk
gawk affected Ubuntu:Pro:18.04:LTS gawk
gawk affected Ubuntu:20.04:LTS gawk
Upstream advisory

UBUNTU-CVE-2019-19450

USNEPSS <= 49%CRITICAL2023-09-20

CVEs:CVE-2019-19450

Affected products

ProductStatusVendorPackageEcosystem
python-reportlab affected Ubuntu:16.04:LTS python-reportlab
python-reportlab affected Ubuntu:18.04:LTS python-reportlab
Upstream advisory

USN-6356-1

USNEPSS <= 49%MEDIUM2023-09-11

opendmarc vulnerabilities

CVEs:CVE-2020-12272CVE-2020-12460

Affected products

ProductStatusVendorPackageEcosystem
opendmarc affected Ubuntu:20.04:LTS opendmarc
opendmarc affected Ubuntu:18.04:LTS opendmarc
opendmarc affected Ubuntu:Pro:16.04:LTS opendmarc
Upstream advisory

USN-6375-1

USNAll remaining2023-09-15

atftp vulnerability

Affected products

ProductStatusVendorPackageEcosystem
atftp affected Ubuntu:22.04:LTS atftp
Upstream advisory

USN-6362-1

USNAll remaining2023-09-12

dotnet6, dotnet7 vulnerability

Affected products

ProductStatusVendorPackageEcosystem
dotnet6 affected Ubuntu:22.04:LTS dotnet6
dotnet7 affected Ubuntu:22.04:LTS dotnet7
Upstream advisory

USN-6352-1

USNAll remaining2023-09-07

shiro vulnerabilities

Affected products

ProductStatusVendorPackageEcosystem
shiro affected Ubuntu:Pro:18.04:LTS shiro
shiro affected Ubuntu:20.04:LTS shiro
Upstream advisory

Need live exploit intelligence?

Every CVE above is indexed in the Vulnetix VDB with KEV, EPSS, and PoC maturity. The interactive page surfaces that on hover.