USN-6561-1
libssh vulnerability
CVEs:CVE-2023-48795
Affected products
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| libssh | affected | Ubuntu:22.04:LTS | libssh | — |
| libssh | affected | Ubuntu:20.04:LTS | libssh | — |
Every advisory below is enriched with the Vulnetix VDB exploit-intelligence chip (hover a CVE ID in the interactive page to see CVSS, EPSS, KEV status, and PoC maturity). 2 are already weaponised in the wild — see the Exploited section.
The advisories below are ordered by the Vulnetix risk prioritization strategy: exploitation evidence first, scores second. On the interactive page you can switch to three other lenses.
libssh vulnerability
CVEs:CVE-2023-48795
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| libssh | affected | Ubuntu:22.04:LTS | libssh | — |
| libssh | affected | Ubuntu:20.04:LTS | libssh | — |
openssh vulnerabilities
CVEs:CVE-2023-28531CVE-2023-48795
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| openssh | affected | Ubuntu:22.04:LTS | openssh | — |
| openssh | affected | Ubuntu:20.04:LTS | openssh | — |
xorg-server vulnerabilities
CVEs:CVE-2023-6377CVE-2023-6478
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| xorg-server | affected | Ubuntu:Pro:18.04:LTS | xorg-server | — |
| xorg-server | affected | Ubuntu:Pro:16.04:LTS | xorg-server | — |
xorg-server, xwayland vulnerabilities
CVEs:CVE-2023-6377CVE-2023-6478
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| xorg-server | affected | Ubuntu:20.04:LTS | xorg-server | — |
| xorg-server | affected | Ubuntu:22.04:LTS | xorg-server | — |
| xwayland | affected | Ubuntu:22.04:LTS | xwayland | — |
libreoffice vulnerabilities
CVEs:CVE-2023-6185CVE-2023-6186
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| libreoffice | affected | Ubuntu:23.10 | libreoffice | — |
budgie-extras vulnerabilities
CVEs:CVE-2023-49342CVE-2023-49343CVE-2023-49344CVE-2023-49345CVE-2023-49346CVE-2023-49347
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| budgie-extras | affected | Ubuntu:22.04:LTS | budgie-extras | — |
gnome-control-center vulnerability
CVEs:CVE-2023-5616
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| gnome-control-center | affected | Ubuntu:22.04:LTS | gnome-control-center | — |
| gnome-control-center | affected | Ubuntu:20.04:LTS | gnome-control-center | — |
redis vulnerabilities
CVEs:CVE-2022-24834CVE-2022-35977CVE-2022-36021CVE-2023-25155CVE-2023-28856CVE-2023-45145
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| redis | affected | Ubuntu:Pro:20.04:LTS | redis | — |
| redis | affected | Ubuntu:Pro:14.04:LTS | redis | — |
| redis | affected | Ubuntu:Pro:16.04:LTS | redis | — |
| redis | affected | Ubuntu:Pro:18.04:LTS | redis | — |
| redis | affected | Ubuntu:Pro:22.04:LTS | redis | — |
linux-oracle vulnerabilities
CVEs:CVE-2023-3006CVE-2023-5178CVE-2023-5717CVE-2023-6176CVE-2023-37453CVE-2023-39189CVE-2023-39192CVE-2023-39193CVE-2023-39194CVE-2023-42754
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| linux-oracle | affected | Ubuntu:20.04:LTS | linux-oracle | — |
linux-lowlatency, linux-lowlatency-hwe-5.15 vulnerabilities
CVEs:CVE-2023-3773CVE-2023-5158CVE-2023-5178CVE-2023-5717CVE-2023-37453CVE-2023-39189CVE-2023-39192CVE-2023-39193CVE-2023-39194CVE-2023-39198CVE-2023-42754
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| linux-lowlatency | affected | Ubuntu:22.04:LTS | linux-lowlatency | — |
| linux-lowlatency-hwe-5.15 | affected | Ubuntu:20.04:LTS | linux-lowlatency-hwe-5.15 | — |
linux-hwe-6.2, linux-lowlatency-hwe-6.2, linux-nvidia-6.2 vulnerabilities
CVEs:CVE-2023-3773CVE-2023-5158CVE-2023-5178CVE-2023-5717CVE-2023-6039CVE-2023-37453CVE-2023-39189CVE-2023-39192CVE-2023-39193CVE-2023-39194CVE-2023-39198CVE-2023-42754
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| linux-hwe-6.2 | affected | Ubuntu:22.04:LTS | linux-hwe-6.2 | — |
| linux-lowlatency-hwe-6.2 | affected | Ubuntu:22.04:LTS | linux-lowlatency-hwe-6.2 | — |
| linux-nvidia-6.2 | affected | Ubuntu:22.04:LTS | linux-nvidia-6.2 | — |
linux-oracle-5.4, linux-raspi, linux-raspi-5.4 vulnerabilities
CVEs:CVE-2023-3006CVE-2023-5178CVE-2023-5717CVE-2023-6176CVE-2023-37453CVE-2023-39189CVE-2023-39192CVE-2023-39193CVE-2023-39194CVE-2023-42754
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| linux-oracle-5.4 | affected | Ubuntu:Pro:18.04:LTS | linux-oracle-5.4 | — |
| linux-raspi | affected | Ubuntu:20.04:LTS | linux-raspi | — |
| linux-raspi-5.4 | affected | Ubuntu:Pro:18.04:LTS | linux-raspi-5.4 | — |
linux-gkeop, linux-gkeop-5.15 vulnerabilities
CVEs:CVE-2023-3773CVE-2023-5158CVE-2023-5178CVE-2023-5717CVE-2023-37453CVE-2023-39189CVE-2023-39192CVE-2023-39193CVE-2023-39194CVE-2023-39198CVE-2023-42754
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| linux-gkeop | affected | Ubuntu:22.04:LTS | linux-gkeop | — |
| linux-gkeop-5.15 | affected | Ubuntu:20.04:LTS | linux-gkeop-5.15 | — |
linux, linux-aws, linux-aws-5.4, linux-azure, linux-azure-5.4, linux-bluefield, linux-gcp, linux-gcp-5.4, linux-hwe-5.4, linux-ibm, linux-ibm-5.4, linux-kvm, linux-xilinx-zynqmp vulnerabilities
CVEs:CVE-2023-3006CVE-2023-5178CVE-2023-5717CVE-2023-6176CVE-2023-37453CVE-2023-39189CVE-2023-39192CVE-2023-39193CVE-2023-39194CVE-2023-42754
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| linux | affected | Ubuntu:20.04:LTS | linux | — |
| linux-aws | affected | Ubuntu:20.04:LTS | linux-aws | — |
| linux-aws-5.4 | affected | Ubuntu:Pro:18.04:LTS | linux-aws-5.4 | — |
| linux-azure | affected | Ubuntu:20.04:LTS | linux-azure | — |
| linux-azure-5.4 | affected | Ubuntu:Pro:18.04:LTS | linux-azure-5.4 | — |
| linux-bluefield | affected | Ubuntu:20.04:LTS | linux-bluefield | — |
| linux-gcp | affected | Ubuntu:20.04:LTS | linux-gcp | — |
| linux-gcp-5.4 | affected | Ubuntu:Pro:18.04:LTS | linux-gcp-5.4 | — |
| linux-hwe-5.4 | affected | Ubuntu:Pro:18.04:LTS | linux-hwe-5.4 | — |
| linux-ibm | affected | Ubuntu:20.04:LTS | linux-ibm | — |
| linux-ibm-5.4 | affected | Ubuntu:Pro:18.04:LTS | linux-ibm-5.4 | — |
| linux-kvm | affected | Ubuntu:20.04:LTS | linux-kvm | — |
| linux-xilinx-zynqmp | affected | Ubuntu:20.04:LTS | linux-xilinx-zynqmp | — |
linux, linux-aws, linux-aws-5.15, linux-azure, linux-azure-5.15, linux-azure-fde, linux-azure-fde-5.15, linux-gcp, linux-gke, linux-hwe-5.15, linux-ibm, linux-ibm-5.15, linux-kvm, linux-nvidia, linux-oracle, linux-oracle-5.15, linux-raspi vulnerabilities
CVEs:CVE-2023-3773CVE-2023-5158CVE-2023-5178CVE-2023-5717CVE-2023-37453CVE-2023-39189CVE-2023-39192CVE-2023-39193CVE-2023-39194CVE-2023-39198CVE-2023-42754
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| linux | affected | Ubuntu:22.04:LTS | linux | — |
| linux-aws | affected | Ubuntu:22.04:LTS | linux-aws | — |
| linux-aws-5.15 | affected | Ubuntu:20.04:LTS | linux-aws-5.15 | — |
| linux-azure | affected | Ubuntu:22.04:LTS | linux-azure | — |
| linux-azure-5.15 | affected | Ubuntu:20.04:LTS | linux-azure-5.15 | — |
| linux-azure-fde | affected | Ubuntu:22.04:LTS | linux-azure-fde | — |
| linux-azure-fde-5.15 | affected | Ubuntu:20.04:LTS | linux-azure-fde-5.15 | — |
| linux-gcp | affected | Ubuntu:22.04:LTS | linux-gcp | — |
| linux-gke | affected | Ubuntu:22.04:LTS | linux-gke | — |
| linux-hwe-5.15 | affected | Ubuntu:20.04:LTS | linux-hwe-5.15 | — |
| linux-ibm | affected | Ubuntu:22.04:LTS | linux-ibm | — |
| linux-ibm-5.15 | affected | Ubuntu:20.04:LTS | linux-ibm-5.15 | — |
| linux-kvm | affected | Ubuntu:22.04:LTS | linux-kvm | — |
| linux-nvidia | affected | Ubuntu:22.04:LTS | linux-nvidia | — |
| linux-oracle | affected | Ubuntu:22.04:LTS | linux-oracle | — |
| linux-oracle-5.15 | affected | Ubuntu:20.04:LTS | linux-oracle-5.15 | — |
| linux-raspi | affected | Ubuntu:22.04:LTS | linux-raspi | — |
linux-gcp vulnerabilities
CVEs:CVE-2023-4244CVE-2023-5090CVE-2023-5158CVE-2023-5178CVE-2023-5345CVE-2023-5633CVE-2023-5717CVE-2023-31085CVE-2023-39189CVE-2023-42754CVE-2023-45898
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| linux-gcp | affected | Ubuntu:23.10 | linux-gcp | — |
linux, linux-aws, linux-laptop, linux-lowlatency, linux-oem-6.5, linux-oracle, linux-raspi, linux-starfive vulnerabilities
CVEs:CVE-2023-5158CVE-2023-5178CVE-2023-5717CVE-2023-39189CVE-2023-42754CVE-2023-45898
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| linux-oem-6.5 | affected | Ubuntu:22.04:LTS | linux-oem-6.5 | — |
linux, linux-aws, linux-aws-6.2, linux-azure, linux-azure-6.2, linux-azure-fde-6.2, linux-lowlatency, linux-oracle, linux-raspi, linux-starfive vulnerabilities
CVEs:CVE-2023-3773CVE-2023-5158CVE-2023-5178CVE-2023-5717CVE-2023-6039CVE-2023-37453CVE-2023-39189CVE-2023-39192CVE-2023-39193CVE-2023-39194CVE-2023-39198CVE-2023-42754
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| linux-aws-6.2 | affected | Ubuntu:22.04:LTS | linux-aws-6.2 | — |
| linux-azure-6.2 | affected | Ubuntu:22.04:LTS | linux-azure-6.2 | — |
| linux-azure-fde-6.2 | affected | Ubuntu:22.04:LTS | linux-azure-fde-6.2 | — |
linux, linux-aws, linux-kvm, linux-lts-xenial vulnerabilities
CVEs:CVE-2023-5717CVE-2023-20593CVE-2023-31085CVE-2023-39189CVE-2023-39192CVE-2023-39193CVE-2023-39194CVE-2023-42754CVE-2023-45862CVE-2023-45871
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| linux | affected | Ubuntu:Pro:16.04:LTS | linux | — |
| linux-aws | affected | Ubuntu:Pro:14.04:LTS | linux-aws | — |
| linux-aws | affected | Ubuntu:Pro:16.04:LTS | linux-aws | — |
| linux-kvm | affected | Ubuntu:Pro:16.04:LTS | linux-kvm | — |
| linux-lts-xenial | affected | Ubuntu:Pro:14.04:LTS | linux-lts-xenial | — |
postfixadmin vulnerabilities
CVEs:CVE-2022-29221CVE-2022-31129CVE-2023-28447
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| postfixadmin | affected | Ubuntu:Pro:20.04:LTS | postfixadmin | — |
| postfixadmin | affected | Ubuntu:Pro:22.04:LTS | postfixadmin | — |
| postfixadmin | affected | Ubuntu:Pro:18.04:LTS | postfixadmin | — |
audiofile vulnerabilities
CVEs:CVE-2018-13440CVE-2018-17095CVE-2019-13147CVE-2022-24599
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| audiofile | affected | Ubuntu:22.04:LTS | audiofile | — |
| audiofile | affected | Ubuntu:20.04:LTS | audiofile | — |
| audiofile | affected | Ubuntu:Pro:18.04:LTS | audiofile | — |
| audiofile | affected | Ubuntu:Pro:14.04:LTS | audiofile | — |
| audiofile | affected | Ubuntu:Pro:16.04:LTS | audiofile | — |
postgresql-12, postgresql-14, postgresql-15 vulnerabilities
CVEs:CVE-2023-5868CVE-2023-5869CVE-2023-5870
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| postgresql-12 | affected | Ubuntu:20.04:LTS | postgresql-12 | — |
| postgresql-14 | affected | Ubuntu:22.04:LTS | postgresql-14 | — |
yajl vulnerabilities
CVEs:CVE-2017-16516CVE-2022-24795CVE-2023-33460
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| yajl | affected | Ubuntu:22.04:LTS | yajl | — |
| yajl | affected | Ubuntu:20.04:LTS | yajl | — |
glibc vulnerabilities
CVEs:CVE-2023-4806CVE-2023-4813CVE-2023-5156
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| glibc | affected | Ubuntu:Pro:18.04:LTS | glibc | — |
| glibc | affected | Ubuntu:Pro:16.04:LTS | glibc | — |
| glibc | affected | Ubuntu:20.04:LTS | glibc | — |
| glibc | affected | Ubuntu:22.04:LTS | glibc | — |
python-cryptography vulnerabilities
CVEs:CVE-2023-23931CVE-2023-49083
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| python-cryptography | affected | Ubuntu:22.04:LTS | python-cryptography | — |
| python-cryptography | affected | Ubuntu:20.04:LTS | python-cryptography | — |
linux-oem-6.1 vulnerabilities
CVEs:CVE-2023-46813CVE-2023-46862
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| linux-oem-6.1 | affected | Ubuntu:22.04:LTS | linux-oem-6.1 | — |
request-tracker4 vulnerabilities
CVEs:CVE-2021-38562CVE-2022-25802CVE-2023-41259CVE-2023-41260
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| request-tracker4 | affected | Ubuntu:Pro:18.04:LTS | request-tracker4 | — |
| request-tracker4 | affected | Ubuntu:20.04:LTS | request-tracker4 | — |
| request-tracker4 | affected | Ubuntu:22.04:LTS | request-tracker4 | — |
binutils vulnerabilities
CVEs:CVE-2020-19726CVE-2021-46174CVE-2022-4285CVE-2022-35205CVE-2022-38533
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| binutils | affected | Ubuntu:Pro:14.04:LTS | binutils | — |
| binutils | affected | Ubuntu:20.04:LTS | binutils | — |
| binutils | affected | Ubuntu:22.04:LTS | binutils | — |
strongswan vulnerability
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| strongswan | affected | Ubuntu:Pro:18.04:LTS | strongswan | — |
| strongswan | affected | Ubuntu:Pro:16.04:LTS | strongswan | — |
vim vulnerabilities
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| vim | affected | Ubuntu:Pro:16.04:LTS | vim | — |
| vim | affected | Ubuntu:Pro:18.04:LTS | vim | — |
| vim | affected | Ubuntu:Pro:14.04:LTS | vim | — |
| vim | affected | Ubuntu:20.04:LTS | vim | — |
| vim | affected | Ubuntu:22.04:LTS | vim | — |
libreoffice vulnerabilities
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| libreoffice | affected | Ubuntu:22.04:LTS | libreoffice | — |
| libreoffice | affected | Ubuntu:20.04:LTS | libreoffice | — |
pydantic vulnerability
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| pydantic | affected | Ubuntu:Pro:20.04:LTS | pydantic | — |
netatalk vulnerability
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| netatalk | affected | Ubuntu:22.04:LTS | netatalk | — |
| netatalk | affected | Ubuntu:20.04:LTS | netatalk | — |
ghostscript vulnerability
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| ghostscript | affected | Ubuntu:22.04:LTS | ghostscript | — |
webkit2gtk vulnerabilities
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| webkit2gtk | affected | Ubuntu:22.04:LTS | webkit2gtk | — |
squid3 vulnerabilities
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| squid3 | affected | Ubuntu:Pro:18.04:LTS | squid3 | — |
| squid3 | affected | Ubuntu:Pro:16.04:LTS | squid3 | — |
tar vulnerability
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| tar | affected | Ubuntu:Pro:14.04:LTS | tar | — |
| tar | affected | Ubuntu:Pro:16.04:LTS | tar | — |
| tar | affected | Ubuntu:20.04:LTS | tar | — |
| tar | affected | Ubuntu:22.04:LTS | tar | — |
| tar | affected | Ubuntu:Pro:18.04:LTS | tar | — |
tinyxml vulnerability
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| tinyxml | affected | Ubuntu:Pro:16.04:LTS | tinyxml | — |
| tinyxml | affected | Ubuntu:Pro:18.04:LTS | tinyxml | — |
| tinyxml | affected | Ubuntu:20.04:LTS | tinyxml | — |
freerdp2 vulnerabilities
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| freerdp2 | affected | Ubuntu:Pro:18.04:LTS | freerdp2 | — |
bluez vulnerability
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| bluez | affected | Ubuntu:22.04:LTS | bluez | — |
| bluez | affected | Ubuntu:Pro:16.04:LTS | bluez | — |
| bluez | affected | Ubuntu:Pro:18.04:LTS | bluez | — |
| bluez | affected | Ubuntu:20.04:LTS | bluez | — |
curl vulnerabilities
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| curl | affected | Ubuntu:20.04:LTS | curl | — |
| curl | affected | Ubuntu:22.04:LTS | curl | — |
open-vm-tools vulnerabilities
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| open-vm-tools | affected | Ubuntu:Pro:16.04:LTS | open-vm-tools | — |
| open-vm-tools | affected | Ubuntu:Pro:18.04:LTS | open-vm-tools | — |
haproxy vulnerability
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| haproxy | affected | Ubuntu:20.04:LTS | haproxy | — |
| haproxy | affected | Ubuntu:22.04:LTS | haproxy | — |
firefox regressions
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| firefox | affected | Ubuntu:20.04:LTS | firefox | — |
Every CVE above is indexed in the Vulnetix VDB with KEV, EPSS, and PoC maturity. The interactive page surfaces that on hover.