Canonical Security Advisories · October 2023 — Canonical Security Advisories
108 advisories 269 CVEs 9 EXPLOITED

Ubuntu Security Notices (USN-NNNN-N) for 2023-10. Mirrored into Vulnetix VDB.

Every advisory below is enriched with the Vulnetix VDB exploit-intelligence chip (hover a CVE ID in the interactive page to see CVSS, EPSS, KEV status, and PoC maturity). 9 are already weaponised in the wild — see the Exploited section.

What would you fix first?

The advisories below are ordered by the Vulnetix risk prioritization strategy: exploitation evidence first, scores second. On the interactive page you can switch to three other lenses.

Advisories

USN-6427-2

USNExploitedCISA KEV listed2023-10-19

dotnet8 vulnerability

CVEs:CVE-2023-44487

Affected products

ProductStatusVendorPackageEcosystem
dotnet8 affected Ubuntu:23.10 dotnet8
Upstream advisory

USN-6427-1

USNExploitedCISA KEV listedHIGH2023-10-10

dotnet6, dotnet7 vulnerability

CVEs:CVE-2023-44487

Affected products

ProductStatusVendorPackageEcosystem
dotnet6 affected Ubuntu:22.04:LTS dotnet6
dotnet7 affected Ubuntu:22.04:LTS dotnet7
Upstream advisory

USN-6403-1

USNExploitedCISA KEV listedCRITICAL2023-10-02

libvpx vulnerabilities

CVEs:CVE-2023-5217CVE-2023-44488

Affected products

ProductStatusVendorPackageEcosystem
libvpx affected Ubuntu:20.04:LTS libvpx
libvpx affected Ubuntu:22.04:LTS libvpx
Upstream advisory

USN-6411-1

USNActive exploitation (sightings)CRITICAL2023-10-04

exim4 vulnerabilities

CVEs:CVE-2023-42114CVE-2023-42115CVE-2023-42116

Affected products

ProductStatusVendorPackageEcosystem
exim4 affected Ubuntu:22.04:LTS exim4
exim4 affected Ubuntu:20.04:LTS exim4
exim4 affected Ubuntu:Pro:16.04:LTS exim4
exim4 affected Ubuntu:Pro:18.04:LTS exim4
exim4 affected Ubuntu:Pro:14.04:LTS exim4
Upstream advisory

USN-6423-2

USNActive exploitation (sightings)2023-10-17

libcue vulnerability

CVEs:CVE-2023-43641

Affected products

ProductStatusVendorPackageEcosystem
libcue affected Ubuntu:23.10 libcue
Upstream advisory

USN-6423-1

USNActive exploitation (sightings)CRITICAL2023-10-09

libcue vulnerability

CVEs:CVE-2023-43641

Affected products

ProductStatusVendorPackageEcosystem
libcue affected Ubuntu:20.04:LTS libcue
libcue affected Ubuntu:22.04:LTS libcue
Upstream advisory

USN-6455-1

USNActive exploitation (sightings)CRITICAL2023-10-26

exim4 vulnerabilities

CVEs:CVE-2023-42117CVE-2023-42119

Affected products

ProductStatusVendorPackageEcosystem
exim4 affected Ubuntu:20.04:LTS exim4
exim4 affected Ubuntu:22.04:LTS exim4
exim4 affected Ubuntu:Pro:16.04:LTS exim4
exim4 affected Ubuntu:Pro:18.04:LTS exim4
exim4 affected Ubuntu:Pro:14.04:LTS exim4
Upstream advisory

USN-6422-1

USNActive exploitation (sightings)HIGH2023-10-09

ring vulnerabilities

CVEs:CVE-2021-37706CVE-2021-43299CVE-2021-43300CVE-2021-43301CVE-2021-43302CVE-2021-43303CVE-2021-43804CVE-2021-43845CVE-2022-21722CVE-2022-21723CVE-2022-23537CVE-2022-23547CVE-2022-23608CVE-2022-24754CVE-2022-24763CVE-2022-24764CVE-2022-24793CVE-2022-31031CVE-2022-39244CVE-2023-27585

Affected products

ProductStatusVendorPackageEcosystem
ring affected Ubuntu:20.04:LTS ring
ring affected Ubuntu:Pro:18.04:LTS ring
Upstream advisory

USN-6431-2

USNActive exploitation (sightings)HIGH2023-10-16

iperf3 vulnerability

CVEs:CVE-2023-38403

Affected products

ProductStatusVendorPackageEcosystem
iperf3 affected Ubuntu:22.04:LTS iperf3
Upstream advisory

USN-6431-1

USNActive exploitation (sightings)HIGH2023-10-16

iperf3 vulnerabilities

CVEs:CVE-2023-38403

Affected products

ProductStatusVendorPackageEcosystem
iperf3 affected Ubuntu:Pro:18.04:LTS iperf3
iperf3 affected Ubuntu:Pro:16.04:LTS iperf3
iperf3 affected Ubuntu:Pro:20.04:LTS iperf3
Upstream advisory

USN-6434-1

USNActive exploitation (sightings)2023-10-17

pmix vulnerability

CVEs:CVE-2023-41915

Affected products

ProductStatusVendorPackageEcosystem
pmix affected Ubuntu:Pro:22.04:LTS pmix
pmix affected Ubuntu:Pro:18.04:LTS pmix
pmix affected Ubuntu:Pro:20.04:LTS pmix
Upstream advisory

USN-6453-2

USNActive exploitation (sightings)CRITICAL2023-10-31

xorg-server vulnerabilities

CVEs:CVE-2023-5367CVE-2023-5380

Affected products

ProductStatusVendorPackageEcosystem
xorg-server affected Ubuntu:Pro:18.04:LTS xorg-server
xorg-server affected Ubuntu:Pro:14.04:LTS xorg-server
xorg-server affected Ubuntu:Pro:16.04:LTS xorg-server
Upstream advisory

USN-6453-1

USNActive exploitation (sightings)CRITICAL2023-10-25

xorg-server, xwayland vulnerabilities

CVEs:CVE-2023-5367CVE-2023-5380

Affected products

ProductStatusVendorPackageEcosystem
xorg-server affected Ubuntu:22.04:LTS xorg-server
xorg-server affected Ubuntu:20.04:LTS xorg-server
xwayland affected Ubuntu:22.04:LTS xwayland
Upstream advisory

USN-6466-1

USNPoC exploitHIGH2023-10-31

linux-nvidia-6.2 vulnerabilities

CVEs:CVE-2022-45886CVE-2022-45887CVE-2022-45919CVE-2022-48425CVE-2023-1206CVE-2023-2156CVE-2023-3212CVE-2023-3772CVE-2023-3863CVE-2023-3865CVE-2023-3866CVE-2023-3867CVE-2023-4128CVE-2023-4132CVE-2023-4134CVE-2023-4155CVE-2023-4194CVE-2023-4244CVE-2023-4273CVE-2023-4569CVE-2023-4622CVE-2023-4623CVE-2023-4881CVE-2023-4921CVE-2023-5197CVE-2023-20569CVE-2023-20588CVE-2023-21264CVE-2023-31083CVE-2023-34319CVE-2023-38427CVE-2023-38430CVE-2023-38431CVE-2023-38432CVE-2023-40283CVE-2023-42752CVE-2023-42753CVE-2023-42755CVE-2023-42756CVE-2023-44466

Affected products

ProductStatusVendorPackageEcosystem
linux-nvidia-6.2 affected Ubuntu:22.04:LTS linux-nvidia-6.2
Upstream advisory

USN-6464-1

USNPoC exploitHIGH2023-10-31

linux, linux-aws, linux-aws-6.2, linux-azure, linux-azure-6.2, linux-azure-fde-6.2, linux-gcp, linux-gcp-6.2, linux-hwe-6.2, linux-kvm, linux-lowlatency, linux-lowlatency-hwe-6.2, linux-oracle, linux-raspi, linux-starfive vulnerabilities

CVEs:CVE-2023-3772CVE-2023-3863CVE-2023-3865CVE-2023-3866CVE-2023-3867CVE-2023-4132CVE-2023-4134CVE-2023-31083CVE-2023-38430CVE-2023-38432CVE-2023-44466

Affected products

ProductStatusVendorPackageEcosystem
linux-aws-6.2 affected Ubuntu:22.04:LTS linux-aws-6.2
linux-azure-6.2 affected Ubuntu:22.04:LTS linux-azure-6.2
linux-azure-fde-6.2 affected Ubuntu:22.04:LTS linux-azure-fde-6.2
linux-gcp-6.2 affected Ubuntu:22.04:LTS linux-gcp-6.2
linux-hwe-6.2 affected Ubuntu:22.04:LTS linux-hwe-6.2
linux-lowlatency-hwe-6.2 affected Ubuntu:22.04:LTS linux-lowlatency-hwe-6.2
Upstream advisory

USN-6445-2

USNPoC exploitHIGH2023-10-24

linux-intel-iotg-5.15 vulnerabilities

CVEs:CVE-2023-1206CVE-2023-2156CVE-2023-3338CVE-2023-3863CVE-2023-3865CVE-2023-3866CVE-2023-4132CVE-2023-4155CVE-2023-4194CVE-2023-4244CVE-2023-4273CVE-2023-4622CVE-2023-4623CVE-2023-4881CVE-2023-4921CVE-2023-5197CVE-2023-20569CVE-2023-34319CVE-2023-38432CVE-2023-42752CVE-2023-42753CVE-2023-42755CVE-2023-42756CVE-2023-44466

Affected products

ProductStatusVendorPackageEcosystem
linux-intel-iotg-5.15 affected Ubuntu:20.04:LTS linux-intel-iotg-5.15
Upstream advisory

USN-6445-1

USNPoC exploitHIGH2023-10-19

linux-intel-iotg vulnerabilities

CVEs:CVE-2023-1206CVE-2023-2156CVE-2023-3338CVE-2023-3863CVE-2023-3865CVE-2023-3866CVE-2023-4132CVE-2023-4155CVE-2023-4194CVE-2023-4244CVE-2023-4273CVE-2023-4622CVE-2023-4623CVE-2023-4881CVE-2023-4921CVE-2023-5197CVE-2023-20569CVE-2023-34319CVE-2023-38432CVE-2023-42752CVE-2023-42753CVE-2023-42755CVE-2023-42756CVE-2023-44466

Affected products

ProductStatusVendorPackageEcosystem
linux-intel-iotg affected Ubuntu:22.04:LTS linux-intel-iotg
Upstream advisory

USN-6416-1

USNPoC exploitHIGH2023-10-04

linux, linux-aws, linux-aws-5.15, linux-azure, linux-azure-5.15, linux-azure-fde, linux-azure-fde-5.15, linux-gcp, linux-gcp-5.15, linux-gke, linux-gkeop, linux-gkeop-5.15, linux-ibm, linux-ibm-5.15, linux-kvm, linux-lowlatency, linux-lowlatency-hwe-5.15, linux-nvidia, linux-oracle vulnerabilities

CVEs:CVE-2023-1206CVE-2023-2156CVE-2023-3338CVE-2023-3863CVE-2023-3865CVE-2023-3866CVE-2023-4132CVE-2023-4155CVE-2023-4194CVE-2023-4273CVE-2023-20569CVE-2023-38432CVE-2023-44466

Affected products

ProductStatusVendorPackageEcosystem
linux affected Ubuntu:22.04:LTS linux
linux-aws affected Ubuntu:22.04:LTS linux-aws
linux-aws-5.15 affected Ubuntu:20.04:LTS linux-aws-5.15
linux-azure affected Ubuntu:22.04:LTS linux-azure
linux-azure-5.15 affected Ubuntu:20.04:LTS linux-azure-5.15
linux-azure-fde affected Ubuntu:22.04:LTS linux-azure-fde
linux-azure-fde-5.15 affected Ubuntu:20.04:LTS linux-azure-fde-5.15
linux-gcp affected Ubuntu:22.04:LTS linux-gcp
linux-gcp-5.15 affected Ubuntu:20.04:LTS linux-gcp-5.15
linux-gke affected Ubuntu:22.04:LTS linux-gke
linux-gkeop affected Ubuntu:22.04:LTS linux-gkeop
linux-gkeop-5.15 affected Ubuntu:20.04:LTS linux-gkeop-5.15
linux-ibm affected Ubuntu:22.04:LTS linux-ibm
linux-ibm-5.15 affected Ubuntu:20.04:LTS linux-ibm-5.15
linux-kvm affected Ubuntu:22.04:LTS linux-kvm
linux-lowlatency affected Ubuntu:22.04:LTS linux-lowlatency
linux-lowlatency-hwe-5.15 affected Ubuntu:20.04:LTS linux-lowlatency-hwe-5.15
linux-nvidia affected Ubuntu:22.04:LTS linux-nvidia
linux-oracle affected Ubuntu:22.04:LTS linux-oracle
Upstream advisory

USN-6386-3

USNPoC exploitHIGH2023-10-03

linux-intel-iotg, linux-intel-iotg-5.15, linux-oracle, linux-oracle-5.15 vulnerabilities

CVEs:CVE-2023-4128CVE-2023-4569CVE-2023-20588CVE-2023-40283

Affected products

ProductStatusVendorPackageEcosystem
linux-intel-iotg affected Ubuntu:22.04:LTS linux-intel-iotg
linux-intel-iotg-5.15 affected Ubuntu:20.04:LTS linux-intel-iotg-5.15
linux-oracle affected Ubuntu:22.04:LTS linux-oracle
linux-oracle-5.15 affected Ubuntu:20.04:LTS linux-oracle-5.15
Upstream advisory

USN-6417-1

USNPoC exploitHIGH2023-10-04

linux, linux-aws, linux-aws-5.4, linux-azure, linux-azure-5.4, linux-bluefield, linux-gcp, linux-gcp-5.4, linux-gkeop, linux-hwe-5.4, linux-ibm, linux-ibm-5.4, linux-iot, linux-kvm, linux-oracle, linux-oracle-5.4, linux-raspi, linux-raspi-5.4, linux-xilinx-zynqmp vulnerabilities

CVEs:CVE-2021-4001CVE-2023-1206CVE-2023-3212CVE-2023-3338CVE-2023-3863CVE-2023-4194

Affected products

ProductStatusVendorPackageEcosystem
linux affected Ubuntu:20.04:LTS linux
linux-aws affected Ubuntu:20.04:LTS linux-aws
linux-aws-5.4 affected Ubuntu:Pro:18.04:LTS linux-aws-5.4
linux-azure affected Ubuntu:20.04:LTS linux-azure
linux-azure-5.4 affected Ubuntu:Pro:18.04:LTS linux-azure-5.4
linux-bluefield affected Ubuntu:20.04:LTS linux-bluefield
linux-gcp affected Ubuntu:20.04:LTS linux-gcp
linux-gcp-5.4 affected Ubuntu:Pro:18.04:LTS linux-gcp-5.4
linux-gkeop affected Ubuntu:20.04:LTS linux-gkeop
linux-hwe-5.4 affected Ubuntu:Pro:18.04:LTS linux-hwe-5.4
linux-ibm affected Ubuntu:20.04:LTS linux-ibm
linux-ibm-5.4 affected Ubuntu:Pro:18.04:LTS linux-ibm-5.4
linux-iot affected Ubuntu:20.04:LTS linux-iot
linux-kvm affected Ubuntu:20.04:LTS linux-kvm
linux-oracle affected Ubuntu:20.04:LTS linux-oracle
linux-oracle-5.4 affected Ubuntu:Pro:18.04:LTS linux-oracle-5.4
linux-raspi affected Ubuntu:20.04:LTS linux-raspi
linux-raspi-5.4 affected Ubuntu:Pro:18.04:LTS linux-raspi-5.4
linux-xilinx-zynqmp affected Ubuntu:20.04:LTS linux-xilinx-zynqmp
Upstream advisory

USN-6412-1

USNPoC exploitHIGH2023-10-05

linux, linux-aws, linux-aws-6.2, linux-azure, linux-azure-6.2, linux-azure-fde-6.2, linux-gcp, linux-gcp-6.2, linux-hwe-6.2, linux-kvm, linux-lowlatency, linux-lowlatency-hwe-6.2, linux-oracle, linux-raspi, linux-starfive vulnerabilities

CVEs:CVE-2022-45886CVE-2022-45887CVE-2022-45919CVE-2022-48425CVE-2023-1206CVE-2023-2156CVE-2023-3212CVE-2023-4155CVE-2023-4194CVE-2023-4273CVE-2023-20569CVE-2023-38427CVE-2023-38431

Affected products

ProductStatusVendorPackageEcosystem
linux-aws-6.2 affected Ubuntu:22.04:LTS linux-aws-6.2
linux-aws-6.2 affected Ubuntu
linux-azure-6.2 affected Ubuntu:22.04:LTS linux-azure-6.2
linux-azure-fde-6.2 affected Ubuntu:22.04:LTS linux-azure-fde-6.2
linux-gcp-6.2 affected Ubuntu:22.04:LTS linux-gcp-6.2
linux-hwe-6.2 affected Ubuntu:22.04:LTS linux-hwe-6.2
linux-lowlatency-hwe-6.2 affected Ubuntu:22.04:LTS linux-lowlatency-hwe-6.2
Upstream advisory

USN-6435-1

USNPoC exploitHIGH2023-10-18

openssl vulnerabilities

CVEs:CVE-2023-3446CVE-2023-3817

Affected products

ProductStatusVendorPackageEcosystem
openssl affected Ubuntu:Pro:16.04:LTS openssl
openssl affected Ubuntu:Pro:18.04:LTS openssl
Upstream advisory

USN-6429-2

USNPoC exploitNONE2023-10-11

curl vulnerability

CVEs:CVE-2023-38546

Affected products

ProductStatusVendorPackageEcosystem
curl affected Ubuntu:Pro:14.04:LTS curl
curl affected Ubuntu:Pro:16.04:LTS curl
curl affected Ubuntu:Pro:18.04:LTS curl
Upstream advisory

USN-6433-1

USNPoC exploitHIGH2023-10-17

ghostscript vulnerability

CVEs:CVE-2023-43115

Affected products

ProductStatusVendorPackageEcosystem
ghostscript affected Ubuntu:20.04:LTS ghostscript
ghostscript affected Ubuntu:22.04:LTS ghostscript
Upstream advisory

USN-6451-1

USNPoC exploitHIGH2023-10-24

ncurses vulnerability

CVEs:CVE-2020-19189

Affected products

ProductStatusVendorPackageEcosystem
ncurses affected Ubuntu:Pro:16.04:LTS ncurses
ncurses affected Ubuntu:Pro:18.04:LTS ncurses
ncurses affected Ubuntu:Pro:14.04:LTS ncurses
Upstream advisory

USN-6394-2

USNPoC exploitCRITICAL2023-10-17

python2.7 vulnerability

CVEs:CVE-2022-48560

Affected products

ProductStatusVendorPackageEcosystem
python2.7 affected Ubuntu:Pro:18.04:LTS python2.7
python2.7 affected Ubuntu:Pro:16.04:LTS python2.7
python2.7 affected Ubuntu:Pro:14.04:LTS python2.7
Upstream advisory

USN-6414-1

USNPoC exploitCRITICAL2023-10-04

python-django vulnerability

CVEs:CVE-2023-43665

Affected products

ProductStatusVendorPackageEcosystem
python-django affected Ubuntu:20.04:LTS python-django
python-django affected Ubuntu
python-django affected Ubuntu:22.04:LTS python-django
Upstream advisory

USN-6452-1

USNPoC exploitCRITICAL2023-10-25

vim vulnerabilities

CVEs:CVE-2023-3896CVE-2023-4733CVE-2023-4734CVE-2023-4735CVE-2023-4738CVE-2023-4750CVE-2023-4751CVE-2023-4752CVE-2023-4781CVE-2023-5344CVE-2023-5441CVE-2023-5535

Affected products

ProductStatusVendorPackageEcosystem
vim affected Ubuntu:Pro:14.04:LTS vim
vim affected Ubuntu:Pro:18.04:LTS vim
vim affected Ubuntu:20.04:LTS vim
vim affected Ubuntu:Pro:16.04:LTS vim
vim affected Ubuntu:22.04:LTS vim
Upstream advisory

LSN-0098-1

USNPoC exploit2023-10-10

Kernel Live Patch Security Notice

CVEs:CVE-2023-3090CVE-2023-3567CVE-2023-3609CVE-2023-3776CVE-2023-3777CVE-2023-3995CVE-2023-4004CVE-2023-4128CVE-2023-21400CVE-2023-40283

Affected products

ProductStatusVendorPackageEcosystem
linux affected Ubuntu:Pro:22.04:LTS linux
linux affected Ubuntu:Pro:20.04:LTS linux
linux affected Ubuntu:Pro:16.04:LTS linux
linux affected Ubuntu:Pro:18.04:LTS linux
linux-aws affected Ubuntu:Pro:20.04:LTS linux-aws
linux-aws affected Ubuntu:Pro:22.04:LTS linux-aws
linux-aws affected Ubuntu:Pro:18.04:LTS linux-aws
linux-aws affected Ubuntu:Pro:16.04:LTS linux-aws
linux-aws-5.15 affected Ubuntu:Pro:20.04:LTS linux-aws-5.15
linux-aws-6.2 affected Ubuntu:Pro:22.04:LTS linux-aws-6.2
linux-azure affected Ubuntu:Pro:16.04:LTS linux-azure
linux-azure affected Ubuntu:Pro:20.04:LTS linux-azure
linux-azure affected Ubuntu:Pro:22.04:LTS linux-azure
linux-azure-4.15 affected Ubuntu:Pro:18.04:LTS linux-azure-4.15
linux-azure-6.2 affected Ubuntu:Pro:22.04:LTS linux-azure-6.2
linux-gcp affected Ubuntu:Pro:20.04:LTS linux-gcp
linux-gcp affected Ubuntu:Pro:16.04:LTS linux-gcp
linux-gcp affected Ubuntu:Pro:22.04:LTS linux-gcp
linux-gcp-4.15 affected Ubuntu:Pro:18.04:LTS linux-gcp-4.15
linux-gcp-5.15 affected Ubuntu:Pro:20.04:LTS linux-gcp-5.15
linux-gcp-6.2 affected Ubuntu:Pro:22.04:LTS linux-gcp-6.2
linux-gke affected Ubuntu:Pro:20.04:LTS linux-gke
linux-gke affected Ubuntu:Pro:22.04:LTS linux-gke
linux-gke-5.15 affected Ubuntu:Pro:20.04:LTS linux-gke-5.15
linux-gkeop affected Ubuntu:Pro:20.04:LTS linux-gkeop
linux-hwe-5.15 affected Ubuntu:Pro:20.04:LTS linux-hwe-5.15
linux-hwe-6.2 affected Ubuntu:Pro:22.04:LTS linux-hwe-6.2
linux-ibm affected Ubuntu:Pro:20.04:LTS linux-ibm
linux-ibm affected Ubuntu:Pro:22.04:LTS linux-ibm
linux-lowlatency-hwe-5.15 affected Ubuntu:Pro:20.04:LTS linux-lowlatency-hwe-5.15
linux-lts-xenial affected Ubuntu:Pro:14.04:LTS linux-lts-xenial
Upstream advisory

USN-6199-2

USNPoC exploitHIGH2023-10-23

php7.0, php7.2 vulnerability

CVEs:CVE-2023-3247

Affected products

ProductStatusVendorPackageEcosystem
php7.0 affected Ubuntu:Pro:16.04:LTS php7.0
php7.2 affected Ubuntu:Pro:18.04:LTS php7.2
Upstream advisory

USN-6446-1

USNPoC exploitHIGH2023-10-20

linux, linux-aws, linux-aws-5.15, linux-azure, linux-azure-5.15, linux-azure-fde, linux-azure-fde-5.15, linux-gcp, linux-gke, linux-gkeop, linux-hwe-5.15, linux-ibm, linux-ibm-5.15, linux-kvm, linux-lowlatency, linux-lowlatency-hwe-5.15,linux-nvidia, linux-oracle, linux-raspi vulnerabilities

CVEs:CVE-2023-4244CVE-2023-4622CVE-2023-4623CVE-2023-4881CVE-2023-4921CVE-2023-5197CVE-2023-34319CVE-2023-42752CVE-2023-42753CVE-2023-42755CVE-2023-42756

Affected products

ProductStatusVendorPackageEcosystem
linux affected Ubuntu:22.04:LTS linux
linux-aws affected Ubuntu:22.04:LTS linux-aws
linux-aws-5.15 affected Ubuntu:20.04:LTS linux-aws-5.15
linux-azure affected Ubuntu:22.04:LTS linux-azure
linux-azure-5.15 affected Ubuntu:20.04:LTS linux-azure-5.15
linux-azure-fde affected Ubuntu:22.04:LTS linux-azure-fde
linux-azure-fde-5.15 affected Ubuntu:20.04:LTS linux-azure-fde-5.15
linux-gcp affected Ubuntu:22.04:LTS linux-gcp
linux-gke affected Ubuntu:22.04:LTS linux-gke
linux-gkeop affected Ubuntu:22.04:LTS linux-gkeop
linux-hwe-5.15 affected Ubuntu:20.04:LTS linux-hwe-5.15
linux-ibm affected Ubuntu:22.04:LTS linux-ibm
linux-ibm-5.15 affected Ubuntu:20.04:LTS linux-ibm-5.15
linux-kvm affected Ubuntu:22.04:LTS linux-kvm
linux-lowlatency affected Ubuntu:22.04:LTS linux-lowlatency
linux-lowlatency-hwe-5.15 affected Ubuntu:20.04:LTS linux-lowlatency-hwe-5.15
linux-nvidia affected Ubuntu:22.04:LTS linux-nvidia
linux-oracle affected Ubuntu:22.04:LTS linux-oracle
linux-raspi affected Ubuntu:22.04:LTS linux-raspi
Upstream advisory

USN-6444-1

USNPoC exploitHIGH2023-10-19

linux, linux-aws, linux-aws-6.2, linux-azure, linux-azure-6.2, linux-azure-fde-6.2, linux-gcp, linux-gcp-6.2, linux-hwe-6.2, linux-kvm, linux-lowlatency, linux-lowlatency-hwe-6.2, linux-oracle, linux-raspi, linux-starfive vulnerabilities

CVEs:CVE-2023-4244CVE-2023-4622CVE-2023-4623CVE-2023-4881CVE-2023-4921CVE-2023-5197CVE-2023-34319CVE-2023-42752CVE-2023-42753CVE-2023-42755CVE-2023-42756

Affected products

ProductStatusVendorPackageEcosystem
linux-aws-6.2 affected Ubuntu:22.04:LTS linux-aws-6.2
linux-azure-6.2 affected Ubuntu:22.04:LTS linux-azure-6.2
linux-azure-fde-6.2 affected Ubuntu:22.04:LTS linux-azure-fde-6.2
linux-gcp-6.2 affected Ubuntu:22.04:LTS linux-gcp-6.2
linux-hwe-6.2 affected Ubuntu:22.04:LTS linux-hwe-6.2
linux-lowlatency-hwe-6.2 affected Ubuntu:22.04:LTS linux-lowlatency-hwe-6.2
Upstream advisory

USN-6441-1

USNPoC exploitHIGH2023-10-19

linux, linux-aws, linux-aws-5.4, linux-azure, linux-azure-5.4, linux-gcp, linux-gkeop, linux-hwe-5.4, linux-ibm, linux-ibm-5.4, linux-kvm, linux-oracle, linux-oracle-5.4, linux-xilinx-zynqmp vulnerabilities

CVEs:CVE-2023-4622CVE-2023-4623CVE-2023-4881CVE-2023-4921CVE-2023-34319CVE-2023-42752CVE-2023-42753CVE-2023-42755CVE-2023-42756

Affected products

ProductStatusVendorPackageEcosystem
linux affected Ubuntu:20.04:LTS linux
linux-aws affected Ubuntu:20.04:LTS linux-aws
linux-aws-5.4 affected Ubuntu
linux-aws-5.4 affected Ubuntu:Pro:18.04:LTS linux-aws-5.4
linux-azure affected Ubuntu:20.04:LTS linux-azure
linux-azure-5.4 affected Ubuntu:Pro:18.04:LTS linux-azure-5.4
linux-gcp affected Ubuntu:20.04:LTS linux-gcp
linux-gkeop affected Ubuntu:20.04:LTS linux-gkeop
linux-hwe-5.4 affected Ubuntu:Pro:18.04:LTS linux-hwe-5.4
linux-ibm affected Ubuntu:20.04:LTS linux-ibm
linux-ibm-5.4 affected Ubuntu:Pro:18.04:LTS linux-ibm-5.4
linux-kvm affected Ubuntu:20.04:LTS linux-kvm
linux-oracle affected Ubuntu:20.04:LTS linux-oracle
linux-oracle-5.4 affected Ubuntu:Pro:18.04:LTS linux-oracle-5.4
linux-xilinx-zynqmp affected Ubuntu:20.04:LTS linux-xilinx-zynqmp
Upstream advisory

USN-6440-1

USNPoC exploitHIGH2023-10-19

linux, linux-aws, linux-azure, linux-azure-4.15, linux-gcp, linux-gcp-4.15, linux-hwe, linux-kvm, linux-oracle vulnerabilities

CVEs:CVE-2023-0597CVE-2023-1206CVE-2023-3772CVE-2023-4622CVE-2023-4623CVE-2023-4881CVE-2023-4921CVE-2023-31083CVE-2023-34319CVE-2023-42752CVE-2023-42753CVE-2023-42755

Affected products

ProductStatusVendorPackageEcosystem
linux affected Ubuntu:Pro:18.04:LTS linux
linux-aws affected Ubuntu:Pro:18.04:LTS linux-aws
linux-azure affected Ubuntu:Pro:16.04:LTS linux-azure
linux-azure affected Ubuntu
linux-azure-4.15 affected Ubuntu:Pro:18.04:LTS linux-azure-4.15
linux-gcp affected Ubuntu:Pro:16.04:LTS linux-gcp
linux-gcp-4.15 affected Ubuntu:Pro:18.04:LTS linux-gcp-4.15
linux-hwe affected Ubuntu:Pro:16.04:LTS linux-hwe
linux-kvm affected Ubuntu:Pro:18.04:LTS linux-kvm
linux-oracle affected Ubuntu:Pro:16.04:LTS linux-oracle
linux-oracle affected Ubuntu:Pro:18.04:LTS linux-oracle
Upstream advisory

USN-6439-1

USNPoC exploitHIGH2023-10-19

linux, linux-aws, linux-kvm, linux-lts-xenial vulnerabilities

CVEs:CVE-2023-1206CVE-2023-3772CVE-2023-4622CVE-2023-4623CVE-2023-4881CVE-2023-4921CVE-2023-31083CVE-2023-34319CVE-2023-42752CVE-2023-42753CVE-2023-42755

Affected products

ProductStatusVendorPackageEcosystem
linux affected Ubuntu:Pro:16.04:LTS linux
linux-aws affected Ubuntu:Pro:16.04:LTS linux-aws
linux-kvm affected Ubuntu:Pro:16.04:LTS linux-kvm
linux-lts-xenial affected Ubuntu:Pro:14.04:LTS linux-lts-xenial
Upstream advisory

USN-6465-1

USNPoC exploitMEDIUM2023-10-31

linux, linux-aws, linux-aws-5.15, linux-azure, linux-azure-5.15, linux-azure-fde, linux-azure-fde-5.15, linux-gcp, linux-gcp-5.15, linux-gkeop, linux-gkeop-5.15, linux-hwe-5.15, linux-ibm, linux-ibm-5.15, linux-kvm, linux-lowlatency, linux-lowlatency-hwe-5.15, linux-nvidia, linux-oracle, linux-oracle-5.15 vulnerabilities

CVEs:CVE-2023-3772CVE-2023-31083

Affected products

ProductStatusVendorPackageEcosystem
linux affected Ubuntu:22.04:LTS linux
linux-aws affected Ubuntu:22.04:LTS linux-aws
linux-aws-5.15 affected Ubuntu:20.04:LTS linux-aws-5.15
linux-azure affected Ubuntu:22.04:LTS linux-azure
linux-azure-5.15 affected Ubuntu:20.04:LTS linux-azure-5.15
linux-azure-fde affected Ubuntu:22.04:LTS linux-azure-fde
linux-azure-fde-5.15 affected Ubuntu:20.04:LTS linux-azure-fde-5.15
linux-gcp affected Ubuntu:22.04:LTS linux-gcp
linux-gcp-5.15 affected Ubuntu:20.04:LTS linux-gcp-5.15
linux-gkeop affected Ubuntu:22.04:LTS linux-gkeop
linux-gkeop-5.15 affected Ubuntu:20.04:LTS linux-gkeop-5.15
linux-hwe-5.15 affected Ubuntu:20.04:LTS linux-hwe-5.15
linux-ibm affected Ubuntu:22.04:LTS linux-ibm
linux-ibm-5.15 affected Ubuntu:20.04:LTS linux-ibm-5.15
linux-kvm affected Ubuntu:22.04:LTS linux-kvm
linux-lowlatency affected Ubuntu:22.04:LTS linux-lowlatency
linux-lowlatency-hwe-5.15 affected Ubuntu:20.04:LTS linux-lowlatency-hwe-5.15
linux-nvidia affected Ubuntu:22.04:LTS linux-nvidia
linux-oracle affected Ubuntu:22.04:LTS linux-oracle
linux-oracle-5.15 affected Ubuntu:20.04:LTS linux-oracle-5.15
Upstream advisory

USN-6462-1

USNPoC exploitHIGH2023-10-31

linux, linux-aws, linux-aws-5.4, linux-azure, linux-azure-5.4, linux-bluefield, linux-gcp, linux-gcp-5.4, linux-gkeop, linux-hwe-5.4, linux-ibm, linux-ibm-5.4, linux-kvm, linux-oracle, linux-oracle-5.4, linux-raspi, linux-raspi-5.4, linux-xilinx-zynqmp vulnerabilities

CVEs:CVE-2023-0597CVE-2023-3772CVE-2023-4132CVE-2023-31083

Affected products

ProductStatusVendorPackageEcosystem
linux affected Ubuntu:20.04:LTS linux
linux-aws affected Ubuntu:20.04:LTS linux-aws
linux-aws-5.4 affected Ubuntu:Pro:18.04:LTS linux-aws-5.4
linux-azure affected Ubuntu:20.04:LTS linux-azure
linux-azure-5.4 affected Ubuntu:Pro:18.04:LTS linux-azure-5.4
linux-bluefield affected Ubuntu:20.04:LTS linux-bluefield
linux-gcp affected Ubuntu:20.04:LTS linux-gcp
linux-gcp-5.4 affected Ubuntu:Pro:18.04:LTS linux-gcp-5.4
linux-gkeop affected Ubuntu:20.04:LTS linux-gkeop
linux-hwe-5.4 affected Ubuntu:Pro:18.04:LTS linux-hwe-5.4
linux-ibm affected Ubuntu:20.04:LTS linux-ibm
linux-ibm-5.4 affected Ubuntu:Pro:18.04:LTS linux-ibm-5.4
linux-kvm affected Ubuntu:20.04:LTS linux-kvm
linux-oracle affected Ubuntu:20.04:LTS linux-oracle
linux-oracle-5.4 affected Ubuntu:Pro:18.04:LTS linux-oracle-5.4
linux-raspi affected Ubuntu:20.04:LTS linux-raspi
linux-raspi-5.4 affected Ubuntu:Pro:18.04:LTS linux-raspi-5.4
linux-xilinx-zynqmp affected Ubuntu:20.04:LTS linux-xilinx-zynqmp
Upstream advisory

USN-6454-2

USNPoC exploit2023-10-30

linux-aws, linux-azure, linux-gcp, linux-oracle, linux-raspi vulnerabilities

CVEs:CVE-2023-4921CVE-2023-5197CVE-2023-42756

Affected products

ProductStatusVendorPackageEcosystem
linux-aws affected Ubuntu:23.10 linux-aws
linux-azure affected Ubuntu:23.10 linux-azure
linux-gcp affected Ubuntu:23.10 linux-gcp
linux-oracle affected Ubuntu:23.10 linux-oracle
linux-raspi affected Ubuntu:23.10 linux-raspi
Upstream advisory

USN-6428-1

USNPoC exploitMEDIUM2023-10-11

tiff vulnerability

CVEs:CVE-2023-1916

Affected products

ProductStatusVendorPackageEcosystem
tiff affected Ubuntu:Pro:18.04:LTS tiff
tiff affected Ubuntu:Pro:14.04:LTS tiff
tiff affected Ubuntu:Pro:16.04:LTS tiff
tiff affected Ubuntu:22.04:LTS tiff
tiff affected Ubuntu:20.04:LTS tiff
Upstream advisory

USN-6438-2

USNCoalition ESS < 30%2023-10-25

.Net regressions

CVEs:CVE-2023-36799

Affected products

ProductStatusVendorPackageEcosystem
dotnet6 affected Ubuntu:23.10 dotnet6
dotnet7 affected Ubuntu:23.10 dotnet7
Upstream advisory

USN-6421-1

USNCoalition ESS < 30%HIGH2023-10-09

bind9 vulnerability

CVEs:CVE-2023-3341

Affected products

ProductStatusVendorPackageEcosystem
bind9 affected Ubuntu:Pro:18.04:LTS bind9
bind9 affected Ubuntu:Pro:14.04:LTS bind9
bind9 affected Ubuntu:Pro:16.04:LTS bind9
Upstream advisory

USN-6402-1

USNCoalition ESS < 30%CRITICAL2023-10-02

libtommath vulnerability

CVEs:CVE-2023-36328

Affected products

ProductStatusVendorPackageEcosystem
libtommath affected Ubuntu:20.04:LTS libtommath
libtommath affected Ubuntu:Pro:18.04:LTS libtommath
libtommath affected Ubuntu:Pro:16.04:LTS libtommath
libtommath affected Ubuntu:22.04:LTS libtommath
Upstream advisory

USN-6432-1

USNCoalition ESS < 30%HIGH2023-10-17

quagga vulnerabilities

CVEs:CVE-2023-41358CVE-2023-41360

Affected products

ProductStatusVendorPackageEcosystem
quagga affected Ubuntu:20.04:LTS quagga
quagga affected Ubuntu:Pro:18.04:LTS quagga
quagga affected Ubuntu:Pro:16.04:LTS quagga
Upstream advisory

USN-6406-1

USNCoalition ESS < 30%HIGH2023-10-03

mozjs102 vulnerabilities

CVEs:CVE-2023-4046

Affected products

ProductStatusVendorPackageEcosystem
mozjs102 affected Ubuntu:22.04:LTS mozjs102
Upstream advisory

USN-6448-1

USNCoalition ESS < 30%CRITICAL2023-10-24

sofia-sip vulnerability

CVEs:CVE-2023-32307

Affected products

ProductStatusVendorPackageEcosystem
sofia-sip affected Ubuntu:20.04:LTS sofia-sip
sofia-sip affected Ubuntu:22.04:LTS sofia-sip
sofia-sip affected Ubuntu:Pro:18.04:LTS sofia-sip
sofia-sip affected Ubuntu:Pro:16.04:LTS sofia-sip
Upstream advisory

USN-6463-1

USNCoalition ESS < 30%HIGH2023-10-31

open-vm-tools vulnerabilities

CVEs:CVE-2023-34058CVE-2023-34059

Affected products

ProductStatusVendorPackageEcosystem
open-vm-tools affected Ubuntu:22.04:LTS open-vm-tools
open-vm-tools affected Ubuntu:20.04:LTS open-vm-tools
Upstream advisory

USN-6410-1

USNCoalition ESS < 30%HIGH2023-10-04

grub2-signed, grub2-unsigned vulnerabilities

CVEs:CVE-2023-4692CVE-2023-4693

Affected products

ProductStatusVendorPackageEcosystem
grub2-signed affected Ubuntu:22.04:LTS grub2-signed
grub2-signed affected Ubuntu:20.04:LTS grub2-signed
grub2-unsigned affected Ubuntu:22.04:LTS grub2-unsigned
Upstream advisory

UBUNTU-CVE-2018-25091

USNEPSS <= 49%MEDIUM2023-10-15

CVEs:CVE-2018-25091

Affected products

ProductStatusVendorPackageEcosystem
python-pip affected Ubuntu:Pro:18.04:LTS python-pip
python-pip affected Ubuntu:Pro:14.04:LTS python-pip
python-pip affected Ubuntu:Pro:16.04:LTS python-pip
python-urllib3 affected Ubuntu:Pro:18.04:LTS python-urllib3
python-urllib3 affected Ubuntu:Pro:16.04:LTS python-urllib3
python-urllib3 affected Ubuntu:Pro:14.04:LTS python-urllib3
Upstream advisory

USN-6362-2

USNAll remaining2023-10-25

.Net regressions

Affected products

ProductStatusVendorPackageEcosystem
dotnet6 affected Ubuntu:22.04:LTS dotnet6
dotnet7 affected Ubuntu:22.04:LTS dotnet7
Upstream advisory

USN-6436-1

USNAll remaining2023-10-18

frr vulnerabilities

Affected products

ProductStatusVendorPackageEcosystem
frr affected Ubuntu:22.04:LTS frr
frr affected Ubuntu:Pro:20.04:LTS frr
Upstream advisory

USN-6431-3

USNAll remainingHIGH2023-10-16

iperf3 vulnerability

Affected products

ProductStatusVendorPackageEcosystem
iperf3 affected Ubuntu:Pro:22.04:LTS iperf3
Upstream advisory

USN-6425-2

USNAll remainingHIGH2023-10-11

samba regression

Affected products

ProductStatusVendorPackageEcosystem
samba affected Ubuntu:20.04:LTS samba
samba affected Ubuntu
Upstream advisory

USN-6404-2

USNAll remainingHIGH2023-10-11

firefox regressions

Affected products

ProductStatusVendorPackageEcosystem
firefox affected Ubuntu:20.04:LTS firefox
Upstream advisory

USN-6424-1

USNAll remaining2023-10-10

ruby-kramdown vulnerability

Affected products

ProductStatusVendorPackageEcosystem
ruby-kramdown affected Ubuntu:20.04:LTS ruby-kramdown
Upstream advisory

Need live exploit intelligence?

Every CVE above is indexed in the Vulnetix VDB with KEV, EPSS, and PoC maturity. The interactive page surfaces that on hover.