Canonical Security Advisories · March 2024 — Canonical Security Advisories
81 advisories 199 CVEs 18 EXPLOITED

Ubuntu Security Notices (USN-NNNN-N) for 2024-03. Mirrored into Vulnetix VDB.

Every advisory below is enriched with the Vulnetix VDB exploit-intelligence chip (hover a CVE ID in the interactive page to see CVSS, EPSS, KEV status, and PoC maturity). 18 are already weaponised in the wild — see the Exploited section.

What would you fix first?

The advisories below are ordered by the Vulnetix risk prioritization strategy: exploitation evidence first, scores second. On the interactive page you can switch to three other lenses.

Advisories

USN-6688-1

USNExploitedCISA KEV listedHIGH2024-03-11

linux-oem-6.1 vulnerabilities

CVEs:CVE-2023-5633CVE-2023-6610CVE-2023-46838CVE-2023-50431CVE-2023-52436CVE-2023-52438CVE-2023-52439CVE-2023-52443CVE-2023-52444CVE-2023-52445CVE-2023-52447CVE-2023-52448CVE-2023-52449CVE-2023-52451CVE-2023-52454CVE-2023-52456CVE-2023-52457CVE-2023-52458CVE-2023-52462CVE-2023-52463CVE-2023-52464CVE-2023-52467CVE-2023-52469CVE-2023-52470CVE-2023-52583CVE-2023-52584CVE-2023-52587CVE-2023-52588CVE-2023-52589CVE-2023-52593CVE-2023-52594CVE-2023-52595CVE-2023-52597CVE-2023-52598CVE-2023-52599CVE-2023-52600CVE-2023-52601CVE-2023-52602CVE-2023-52603CVE-2023-52604CVE-2023-52605CVE-2023-52606CVE-2023-52607CVE-2024-0340CVE-2024-1085CVE-2024-1086CVE-2024-23849CVE-2024-24860CVE-2024-26581CVE-2024-26588CVE-2024-26589CVE-2024-26591CVE-2024-26592CVE-2024-26594CVE-2024-26597CVE-2024-26598CVE-2024-26599CVE-2024-26600CVE-2024-26601CVE-2024-26624CVE-2024-26625CVE-2024-26627CVE-2024-26628

Affected products

ProductStatusVendorPackageEcosystem
linux-oem-6.1 affected Ubuntu:22.04:LTS linux-oem-6.1
Upstream advisory

USN-6701-3

USNExploitedCISA KEV listedHIGH2024-03-25

linux-aws-hwe, linux-azure, linux-azure-4.15, linux-oracle vulnerabilities

CVEs:CVE-2023-2002CVE-2023-3006CVE-2023-4132CVE-2023-6121CVE-2023-23000CVE-2023-34256CVE-2023-39197CVE-2023-46838CVE-2023-51781CVE-2024-0775CVE-2024-1086CVE-2024-24855

Affected products

ProductStatusVendorPackageEcosystem
linux-aws-hwe affected Ubuntu:Pro:16.04:LTS linux-aws-hwe
linux-azure affected Ubuntu:Pro:16.04:LTS linux-azure
linux-azure-4.15 affected Ubuntu:Pro:18.04:LTS linux-azure-4.15
linux-oracle affected Ubuntu:Pro:16.04:LTS linux-oracle
Upstream advisory

USN-6702-2

USNExploitedCISA KEV listedHIGH2024-03-20

linux-aws, linux-aws-5.4, linux-gcp-5.4, linux-raspi, linux-raspi-5.4, linux-xilinx-zynqmp vulnerabilities

CVEs:CVE-2023-23000CVE-2023-23004CVE-2024-1086CVE-2024-24855

Affected products

ProductStatusVendorPackageEcosystem
linux-aws affected Ubuntu:20.04:LTS linux-aws
linux-aws-5.4 affected Ubuntu:Pro:18.04:LTS linux-aws-5.4
linux-gcp-5.4 affected Ubuntu:Pro:18.04:LTS linux-gcp-5.4
linux-raspi affected Ubuntu:20.04:LTS linux-raspi
linux-raspi-5.4 affected Ubuntu:Pro:18.04:LTS linux-raspi-5.4
linux-xilinx-zynqmp affected Ubuntu:20.04:LTS linux-xilinx-zynqmp
Upstream advisory

USN-6707-1

USNExploitedCISA KEV listedHIGH2024-03-20

linux, linux-azure, linux-gcp, linux-gcp-6.5, linux-hwe-6.5, linux-lowlatency, linux-lowlatency-hwe-6.5, linux-oem-6.5, linux-oracle, linux-oracle-6.5, linux-raspi, linux-starfive, linux-starfive-6.5 vulnerabilities

CVEs:CVE-2024-1085CVE-2024-1086CVE-2024-26597CVE-2024-26599

Affected products

ProductStatusVendorPackageEcosystem
linux-gcp-6.5 affected Ubuntu:22.04:LTS linux-gcp-6.5
linux-hwe-6.5 affected Ubuntu:22.04:LTS linux-hwe-6.5
linux-lowlatency-hwe-6.5 affected Ubuntu:22.04:LTS linux-lowlatency-hwe-6.5
linux-oem-6.5 affected Ubuntu:22.04:LTS linux-oem-6.5
linux-oracle-6.5 affected Ubuntu:22.04:LTS linux-oracle-6.5
linux-starfive-6.5 affected Ubuntu:22.04:LTS linux-starfive-6.5
Upstream advisory

USN-6704-1

USNExploitedCISA KEV listedHIGH2024-03-20

linux, linux-azure, linux-azure-5.15, linux-azure-fde, linux-azure-fde-5.15, linux-gcp, linux-gcp-5.15, linux-gke, linux-gkeop, linux-gkeop-5.15, linux-hwe-5.15, linux-ibm, linux-ibm-5.15, linux-kvm, linux-lowlatency, linux-lowlatency-hwe-5.15, linux-nvidia vulnerabilities

CVEs:CVE-2023-23000CVE-2023-32247CVE-2024-1085CVE-2024-1086CVE-2024-24855

Affected products

ProductStatusVendorPackageEcosystem
linux affected Ubuntu:22.04:LTS linux
linux-azure affected Ubuntu:22.04:LTS linux-azure
linux-azure-5.15 affected Ubuntu:20.04:LTS linux-azure-5.15
linux-azure-fde affected Ubuntu:22.04:LTS linux-azure-fde
linux-azure-fde-5.15 affected Ubuntu:20.04:LTS linux-azure-fde-5.15
linux-gcp affected Ubuntu:22.04:LTS linux-gcp
linux-gcp-5.15 affected Ubuntu:20.04:LTS linux-gcp-5.15
linux-gke affected Ubuntu:22.04:LTS linux-gke
linux-gkeop affected Ubuntu:22.04:LTS linux-gkeop
linux-gkeop-5.15 affected Ubuntu:20.04:LTS linux-gkeop-5.15
linux-hwe-5.15 affected Ubuntu:20.04:LTS linux-hwe-5.15
linux-ibm affected Ubuntu:22.04:LTS linux-ibm
linux-ibm-5.15 affected Ubuntu:20.04:LTS linux-ibm-5.15
linux-kvm affected Ubuntu:22.04:LTS linux-kvm
linux-lowlatency affected Ubuntu:22.04:LTS linux-lowlatency
linux-lowlatency-hwe-5.15 affected Ubuntu:20.04:LTS linux-lowlatency-hwe-5.15
linux-nvidia affected Ubuntu:22.04:LTS linux-nvidia
Upstream advisory

USN-6702-1

USNExploitedCISA KEV listedHIGH2024-03-19

linux, linux-bluefield, linux-gcp, linux-gkeop, linux-hwe-5.4, linux-ibm, linux-ibm-5.4, linux-iot, linux-kvm, linux-oracle, linux-oracle-5.4 vulnerabilities

CVEs:CVE-2023-23000CVE-2023-23004CVE-2024-1086CVE-2024-24855

Affected products

ProductStatusVendorPackageEcosystem
linux affected Ubuntu:20.04:LTS linux
linux-bluefield affected Ubuntu:20.04:LTS linux-bluefield
linux-gcp affected Ubuntu:20.04:LTS linux-gcp
linux-gkeop affected Ubuntu:20.04:LTS linux-gkeop
linux-hwe-5.4 affected Ubuntu:Pro:18.04:LTS linux-hwe-5.4
linux-ibm affected Ubuntu:20.04:LTS linux-ibm
linux-ibm-5.4 affected Ubuntu:Pro:18.04:LTS linux-ibm-5.4
linux-iot affected Ubuntu:20.04:LTS linux-iot
linux-kvm affected Ubuntu:20.04:LTS linux-kvm
linux-oracle affected Ubuntu:20.04:LTS linux-oracle
linux-oracle-5.4 affected Ubuntu:Pro:18.04:LTS linux-oracle-5.4
Upstream advisory

USN-6700-1

USNExploitedCISA KEV listedHIGH2024-03-18

linux, linux-aws, linux-kvm, linux-lts-xenial vulnerabilities

CVEs:CVE-2022-20567CVE-2023-34256CVE-2023-39197CVE-2023-51781CVE-2024-0775CVE-2024-1086CVE-2024-24855

Affected products

ProductStatusVendorPackageEcosystem
linux affected Ubuntu:Pro:16.04:LTS linux
linux-aws affected Ubuntu:Pro:14.04:LTS linux-aws
linux-kvm affected Ubuntu:Pro:16.04:LTS linux-kvm
linux-lts-xenial affected Ubuntu:Pro:14.04:LTS linux-lts-xenial
Upstream advisory

USN-6701-1

USNExploitedCISA KEV listedHIGH2024-03-18

linux, linux-aws, linux-hwe, linux-kvm, linux-oracle vulnerabilities

CVEs:CVE-2023-2002CVE-2023-3006CVE-2023-4132CVE-2023-6121CVE-2023-23000CVE-2023-34256CVE-2023-39197CVE-2023-46838CVE-2023-51781CVE-2024-0775CVE-2024-1086CVE-2024-24855

Affected products

ProductStatusVendorPackageEcosystem
linux affected Ubuntu:Pro:18.04:LTS linux
linux-aws affected Ubuntu:Pro:18.04:LTS linux-aws
linux-hwe affected Ubuntu:Pro:16.04:LTS linux-hwe
Linux kernel affected Linux
linux-kvm affected Ubuntu:Pro:18.04:LTS linux-kvm
linux-oracle affected Ubuntu:Pro:18.04:LTS linux-oracle
Upstream advisory

USN-6680-1

USNWeaponized exploitHIGH2024-03-06

linux, linux-gcp, linux-gcp-6.5, linux-laptop, linux-lowlatency, linux-lowlatency-hwe-6.5, linux-oem-6.5, linux-oracle, linux-raspi, linux-starfive, linux-starfive-6.5 vulnerabilities

CVEs:CVE-2023-6121CVE-2023-6560CVE-2023-46343CVE-2023-51779CVE-2023-51782CVE-2024-0607CVE-2024-25744

Affected products

ProductStatusVendorPackageEcosystem
linux-gcp-6.5 affected Ubuntu:22.04:LTS linux-gcp-6.5
Linux kernel affected Linux
linux-lowlatency-hwe-6.5 affected Ubuntu:22.04:LTS linux-lowlatency-hwe-6.5
linux-oem-6.5 affected Ubuntu:22.04:LTS linux-oem-6.5
linux-starfive-6.5 affected Ubuntu:22.04:LTS linux-starfive-6.5
Upstream advisory

USN-6685-1

USNActive exploitation (sightings)CRITICAL2024-03-07

mqtt-client vulnerability

CVEs:CVE-2019-0222

Affected products

ProductStatusVendorPackageEcosystem
mqtt-client affected Ubuntu:Pro:16.04:LTS mqtt-client
mqtt-client affected Ubuntu:20.04:LTS mqtt-client
mqtt-client affected Ubuntu:Pro:18.04:LTS mqtt-client
Upstream advisory

USN-6669-1

USNActive exploitation (sightings)HIGH2024-03-04

thunderbird vulnerabilities

CVEs:CVE-2024-0741CVE-2024-0742CVE-2024-0746CVE-2024-0747CVE-2024-0749CVE-2024-0750CVE-2024-0751CVE-2024-0753CVE-2024-0755CVE-2024-1546CVE-2024-1547CVE-2024-1548CVE-2024-1549CVE-2024-1550CVE-2024-1551CVE-2024-1552CVE-2024-1553CVE-2024-1936

Affected products

ProductStatusVendorPackageEcosystem
thunderbird affected Ubuntu:22.04:LTS thunderbird
thunderbird affected Ubuntu:20.04:LTS thunderbird
Upstream advisory

USN-6690-1

USNActive exploitation (sightings)HIGH2024-03-12

openvswitch vulnerabilities

CVEs:CVE-2023-3966CVE-2023-5366

Affected products

ProductStatusVendorPackageEcosystem
openvswitch affected Ubuntu:20.04:LTS openvswitch
openvswitch affected Ubuntu:22.04:LTS openvswitch
Upstream advisory

USN-6718-2

USNPoC exploitCRITICAL2024-03-27

curl vulnerability

CVEs:CVE-2024-2398

Affected products

ProductStatusVendorPackageEcosystem
curl affected Ubuntu:Pro:16.04:LTS curl
curl affected Ubuntu:Pro:18.04:LTS curl
Upstream advisory

USN-6692-1

USNPoC exploitMEDIUM2024-03-12

libgoogle-gson-java vulnerability

CVEs:CVE-2022-25647

Affected products

ProductStatusVendorPackageEcosystem
libgoogle-gson-java affected Ubuntu:Pro:18.04:LTS libgoogle-gson-java
libgoogle-gson-java affected Ubuntu:20.04:LTS libgoogle-gson-java
libgoogle-gson-java affected Ubuntu:Pro:16.04:LTS libgoogle-gson-java
libgoogle-gson-java affected Ubuntu:22.04:LTS libgoogle-gson-java
Upstream advisory

USN-6719-1

USNPoC exploitMEDIUM2024-03-27

util-linux vulnerability

CVEs:CVE-2024-28085

Affected products

ProductStatusVendorPackageEcosystem
util-linux affected Ubuntu:22.04:LTS util-linux
util-linux affected Ubuntu:20.04:LTS util-linux
Upstream advisory

USN-6674-2

USNPoC exploitCRITICAL2024-03-04

python-django vulnerability

CVEs:CVE-2024-27351

Affected products

ProductStatusVendorPackageEcosystem
python-django affected Ubuntu:Pro:18.04:LTS python-django
python-django affected Ubuntu
Upstream advisory

USN-6674-1

USNPoC exploitCRITICAL2024-03-04

python-django vulnerability

CVEs:CVE-2024-27351

Affected products

ProductStatusVendorPackageEcosystem
python-django affected
python-django affected Ubuntu:20.04:LTS python-django
python-django affected Ubuntu:22.04:LTS python-django
Upstream advisory

USN-6656-2

USNPoC exploitHIGH2024-03-12

postgresql-9.5 vulnerability

CVEs:CVE-2024-0985

Affected products

ProductStatusVendorPackageEcosystem
postgresql-9.5 affected Ubuntu:Pro:16.04:LTS postgresql-9.5
Upstream advisory

USN-6681-3

USNPoC exploitHIGH2024-03-13

linux-ibm, linux-ibm-5.4, linux-oracle, linux-oracle-5.4 vulnerabilities

CVEs:CVE-2021-44879CVE-2023-4244CVE-2023-6121CVE-2023-22995CVE-2023-51779CVE-2023-51780CVE-2023-51782CVE-2024-0340

Affected products

ProductStatusVendorPackageEcosystem
linux-ibm affected Ubuntu:20.04:LTS linux-ibm
linux-ibm-5.4 affected Ubuntu:Pro:18.04:LTS linux-ibm-5.4
linux-oracle affected Ubuntu:20.04:LTS linux-oracle
linux-oracle-5.4 affected Ubuntu:Pro:18.04:LTS linux-oracle-5.4
Upstream advisory

USN-6681-2

USNPoC exploitHIGH2024-03-11

linux-bluefield, linux-raspi-5.4, linux-xilinx-zynqmp vulnerabilities

CVEs:CVE-2021-44879CVE-2023-4244CVE-2023-6121CVE-2023-22995CVE-2023-51779CVE-2023-51780CVE-2023-51782CVE-2024-0340

Affected products

ProductStatusVendorPackageEcosystem
linux-bluefield affected Ubuntu:20.04:LTS linux-bluefield
linux-raspi-5.4 affected Ubuntu
linux-raspi-5.4 affected Ubuntu:Pro:18.04:LTS linux-raspi-5.4
linux-xilinx-zynqmp affected Ubuntu:20.04:LTS linux-xilinx-zynqmp
Upstream advisory

USN-6686-1

USNPoC exploitHIGH2024-03-08

linux, linux-azure, linux-azure-5.15, linux-azure-fde, linux-azure-fde-5.15, linux-gcp, linux-gcp-5.15, linux-gke, linux-gkeop, linux-gkeop-5.15, linux-hwe-5.15, linux-ibm, linux-ibm-5.15, linux-lowlatency-hwe-5.15, linux-nvidia vulnerabilities

CVEs:CVE-2023-4134CVE-2023-6121CVE-2023-22995CVE-2023-46343CVE-2023-46862CVE-2023-51779CVE-2023-51782CVE-2024-0340CVE-2024-0607

Affected products

ProductStatusVendorPackageEcosystem
linux affected Ubuntu:22.04:LTS linux
linux-azure affected Ubuntu:22.04:LTS linux-azure
linux-azure-5.15 affected Ubuntu:20.04:LTS linux-azure-5.15
linux-azure-5.15 affected Ubuntu
linux-azure-fde affected Ubuntu:22.04:LTS linux-azure-fde
linux-azure-fde-5.15 affected Ubuntu:20.04:LTS linux-azure-fde-5.15
linux-gcp affected Ubuntu:22.04:LTS linux-gcp
linux-gcp-5.15 affected Ubuntu:20.04:LTS linux-gcp-5.15
linux-gke affected Ubuntu:22.04:LTS linux-gke
linux-gkeop affected Ubuntu:22.04:LTS linux-gkeop
linux-gkeop-5.15 affected Ubuntu:20.04:LTS linux-gkeop-5.15
linux-hwe-5.15 affected Ubuntu:20.04:LTS linux-hwe-5.15
linux-ibm affected Ubuntu:22.04:LTS linux-ibm
linux-ibm-5.15 affected Ubuntu:20.04:LTS linux-ibm-5.15
linux-lowlatency-hwe-5.15 affected Ubuntu:20.04:LTS linux-lowlatency-hwe-5.15
linux-nvidia affected Ubuntu:22.04:LTS linux-nvidia
Upstream advisory

USN-6681-1

USNPoC exploitHIGH2024-03-06

linux, linux-gcp, linux-gcp-5.4, linux-gkeop, linux-hwe-5.4, linux-iot, linux-kvm, linux-raspi vulnerabilities

CVEs:CVE-2021-44879CVE-2023-4244CVE-2023-6121CVE-2023-22995CVE-2023-51779CVE-2023-51780CVE-2023-51782CVE-2024-0340

Affected products

ProductStatusVendorPackageEcosystem
linux affected Ubuntu:20.04:LTS linux
linux-gcp affected Ubuntu:20.04:LTS linux-gcp
linux-gcp-5.4 affected Ubuntu:Pro:18.04:LTS linux-gcp-5.4
linux-gkeop affected Ubuntu:20.04:LTS linux-gkeop
linux-hwe-5.4 affected Ubuntu:Pro:18.04:LTS linux-hwe-5.4
linux-iot affected Ubuntu:20.04:LTS linux-iot
linux-kvm affected Ubuntu:20.04:LTS linux-kvm
linux-raspi affected Ubuntu:20.04:LTS linux-raspi
Upstream advisory

USN-6658-2

USNPoC exploitCRITICAL2024-03-11

libxml2 vulnerability

CVEs:CVE-2024-25062

Affected products

ProductStatusVendorPackageEcosystem
libxml2 affected Ubuntu:Pro:18.04:LTS libxml2
libxml2 affected Ubuntu:Pro:16.04:LTS libxml2
libxml2 affected Ubuntu:Pro:14.04:LTS libxml2
Upstream advisory

USN-6673-2

USNPoC exploitHIGH2024-03-14

python-cryptography vulnerability

CVEs:CVE-2023-50782

Affected products

ProductStatusVendorPackageEcosystem
python-cryptography affected Ubuntu:Pro:16.04:LTS python-cryptography
Upstream advisory

LSN-0101-1

USNPoC exploit2024-03-12

Kernel Live Patch Security Notice

CVEs:CVE-2023-6817CVE-2023-6932CVE-2023-7192CVE-2024-0193CVE-2024-0646

Affected products

ProductStatusVendorPackageEcosystem
linux affected Ubuntu:Pro:20.04:LTS linux
linux affected Ubuntu:Pro:18.04:LTS linux
linux affected Ubuntu:Pro:22.04:LTS linux
linux affected Ubuntu:Pro:16.04:LTS linux
linux-aws affected Ubuntu:Pro:22.04:LTS linux-aws
linux-aws affected Ubuntu:Pro:20.04:LTS linux-aws
linux-aws affected Ubuntu:Pro:16.04:LTS linux-aws
linux-aws affected Ubuntu:Pro:18.04:LTS linux-aws
linux-aws-5.15 affected Ubuntu:Pro:20.04:LTS linux-aws-5.15
linux-aws-5.4 affected Ubuntu:Pro:18.04:LTS linux-aws-5.4
linux-aws-6.5 affected Ubuntu:Pro:22.04:LTS linux-aws-6.5
linux-aws-hwe affected Ubuntu:Pro:16.04:LTS linux-aws-hwe
linux-azure affected Ubuntu:Pro:16.04:LTS linux-azure
linux-azure affected Ubuntu:Pro:20.04:LTS linux-azure
linux-azure affected Ubuntu:Pro:22.04:LTS linux-azure
linux-azure-4.15 affected Ubuntu:Pro:18.04:LTS linux-azure-4.15
linux-azure-5.4 affected Ubuntu:Pro:18.04:LTS linux-azure-5.4
linux-azure-6.5 affected Ubuntu:Pro:22.04:LTS linux-azure-6.5
linux-gcp affected Ubuntu:Pro:16.04:LTS linux-gcp
linux-gcp affected Ubuntu:Pro:20.04:LTS linux-gcp
linux-gcp affected Ubuntu:Pro:22.04:LTS linux-gcp
linux-gcp-4.15 affected Ubuntu:Pro:18.04:LTS linux-gcp-4.15
linux-gcp-5.15 affected Ubuntu:Pro:20.04:LTS linux-gcp-5.15
linux-gcp-5.4 affected Ubuntu:Pro:18.04:LTS linux-gcp-5.4
linux-gcp-6.5 affected Ubuntu:Pro:22.04:LTS linux-gcp-6.5
linux-gke affected Ubuntu:Pro:22.04:LTS linux-gke
linux-gke-5.15 affected Ubuntu:Pro:20.04:LTS linux-gke-5.15
linux-gkeop affected Ubuntu:Pro:20.04:LTS linux-gkeop
linux-hwe affected Ubuntu:Pro:16.04:LTS linux-hwe
linux-hwe-5.15 affected Ubuntu:Pro:20.04:LTS linux-hwe-5.15
linux-hwe-5.4 affected Ubuntu:Pro:18.04:LTS linux-hwe-5.4
linux-hwe-6.5 affected Ubuntu:Pro:22.04:LTS linux-hwe-6.5
linux-ibm affected Ubuntu:Pro:20.04:LTS linux-ibm
linux-ibm affected Ubuntu:Pro:22.04:LTS linux-ibm
linux-ibm-5.15 affected Ubuntu:Pro:20.04:LTS linux-ibm-5.15
linux-lowlatency-hwe-5.15 affected Ubuntu:Pro:20.04:LTS linux-lowlatency-hwe-5.15
linux-lts-xenial affected Ubuntu:Pro:14.04:LTS linux-lts-xenial
Upstream advisory

USN-6712-1

USNPoC exploitNONE2024-03-25

libnet-cidr-lite-perl vulnerability

CVEs:CVE-2021-47154

Affected products

ProductStatusVendorPackageEcosystem
libnet-cidr-lite-perl affected Ubuntu
libnet-cidr-lite-perl affected Ubuntu:20.04:LTS libnet-cidr-lite-perl
Upstream advisory

USN-6588-2

USNPoC exploitMEDIUM2024-03-26

pam vulnerability

CVEs:CVE-2024-22365

Affected products

ProductStatusVendorPackageEcosystem
pam affected Ubuntu:Pro:18.04:LTS pam
pam affected Ubuntu
pam affected Ubuntu:Pro:14.04:LTS pam
pam affected Ubuntu:Pro:16.04:LTS pam
Upstream advisory

USN-6684-1

USNCoalition ESS < 30%MEDIUM2024-03-07

ncurses vulnerability

CVEs:CVE-2023-50495

Affected products

ProductStatusVendorPackageEcosystem
ncurses affected Ubuntu:Pro:16.04:LTS ncurses
ncurses affected Ubuntu:Pro:18.04:LTS ncurses
ncurses affected Ubuntu:Pro:14.04:LTS ncurses
Upstream advisory

USN-6708-1

USNCoalition ESS < 30%HIGH2024-03-21

graphviz vulnerability

CVEs:CVE-2023-46045

Affected products

ProductStatusVendorPackageEcosystem
graphviz affected Ubuntu:Pro:16.04:LTS graphviz
graphviz affected Ubuntu:Pro:20.04:LTS graphviz
graphviz affected Ubuntu:Pro:14.04:LTS graphviz
graphviz affected Ubuntu:Pro:18.04:LTS graphviz
graphviz affected Ubuntu:Pro:22.04:LTS graphviz
Upstream advisory

USN-6698-1

USNCoalition ESS < 30%HIGH2024-03-18

vim vulnerability

CVEs:CVE-2024-22667

Affected products

ProductStatusVendorPackageEcosystem
vim affected Ubuntu:Pro:18.04:LTS vim
vim affected Ubuntu:Pro:14.04:LTS vim
vim affected Ubuntu:20.04:LTS vim
vim affected Ubuntu:Pro:16.04:LTS vim
vim affected Ubuntu:22.04:LTS vim
Upstream advisory

USN-6676-1

USNCoalition ESS < 30%HIGH2024-03-06

c-ares vulnerability

CVEs:CVE-2024-25629

Affected products

ProductStatusVendorPackageEcosystem
c-ares affected Ubuntu:Pro:18.04:LTS c-ares
c-ares affected Ubuntu:Pro:16.04:LTS c-ares
c-ares affected Ubuntu:22.04:LTS c-ares
c-ares affected Ubuntu:20.04:LTS c-ares
Upstream advisory

USN-6715-1

USNCoalition ESS < 30%CRITICAL2024-03-27

unixodbc vulnerability

CVEs:CVE-2024-1013

Affected products

ProductStatusVendorPackageEcosystem
unixodbc affected Ubuntu:20.04:LTS unixodbc
unixodbc affected Ubuntu:Pro:16.04:LTS unixodbc
unixodbc affected Ubuntu:22.04:LTS unixodbc
unixodbc affected Ubuntu:Pro:18.04:LTS unixodbc
Upstream advisory

USN-6706-1

USNCoalition ESS < 30%HIGH2024-03-20

linux-oem-6.1 vulnerability

CVEs:CVE-2023-6039

Affected products

ProductStatusVendorPackageEcosystem
linux-oem-6.1 affected Ubuntu:22.04:LTS linux-oem-6.1
Upstream advisory

UBUNTU-CVE-2018-25100

USNEPSS <= 49%MEDIUM2024-03-24

CVEs:CVE-2018-25100

Affected products

ProductStatusVendorPackageEcosystem
libmojolicious-perl affected Ubuntu:18.04:LTS libmojolicious-perl
libmojolicious-perl affected Ubuntu:16.04:LTS libmojolicious-perl
Upstream advisory

USN-6687-1

USNEPSS <= 49%MEDIUM2024-03-11

accountsservice vulnerability

CVEs:CVE-2012-6655

Affected products

ProductStatusVendorPackageEcosystem
accountsservice affected Ubuntu:20.04:LTS accountsservice
accountsservice affected Ubuntu:22.04:LTS accountsservice
Upstream advisory

USN-6714-1

USNAll remaining2024-03-25

debian-goodies vulnerability

Affected products

ProductStatusVendorPackageEcosystem
debian-goodies affected Ubuntu:22.04:LTS debian-goodies
debian-goodies affected Ubuntu:20.04:LTS debian-goodies
Upstream advisory

USN-6697-1

USNAll remaining2024-03-18

bash vulnerability

Affected products

ProductStatusVendorPackageEcosystem
bash affected Ubuntu:22.04:LTS bash
Upstream advisory

USN-6663-2

USNAll remaining2024-03-13

openssl update

Affected products

ProductStatusVendorPackageEcosystem
openssl affected Ubuntu:Pro:16.04:LTS openssl
Upstream advisory

USN-6693-1

USNAll remaining2024-03-12

dotnet7, dotnet8 vulnerability

Affected products

ProductStatusVendorPackageEcosystem
dotnet7 affected Ubuntu:22.04:LTS dotnet7
dotnet8 affected Ubuntu:22.04:LTS dotnet8
Upstream advisory

USN-6691-1

USNAll remaining2024-03-12

ovn vulnerability

Affected products

ProductStatusVendorPackageEcosystem
ovn affected Ubuntu:22.04:LTS ovn
ovn affected Ubuntu:20.04:LTS ovn
Upstream advisory

USN-6683-1

USNAll remaining2024-03-07

libhtmlcleaner-java vulnerability

Affected products

ProductStatusVendorPackageEcosystem
libhtmlcleaner-java affected Ubuntu:Pro:18.04:LTS libhtmlcleaner-java
libhtmlcleaner-java affected Ubuntu:Pro:20.04:LTS libhtmlcleaner-java
libhtmlcleaner-java affected Ubuntu:22.04:LTS libhtmlcleaner-java
Upstream advisory

USN-6679-1

USNAll remaining2024-03-06

frr vulnerability

Affected products

ProductStatusVendorPackageEcosystem
frr affected Ubuntu:22.04:LTS frr
Upstream advisory

USN-6649-2

USNAll remainingHIGH2024-03-06

firefox regressions

Affected products

ProductStatusVendorPackageEcosystem
firefox affected Ubuntu:20.04:LTS firefox
Upstream advisory

USN-6675-1

USNAll remaining2024-03-05

ruby-image-processing vulnerability

Affected products

ProductStatusVendorPackageEcosystem
ruby-image-processing affected Ubuntu:22.04:LTS ruby-image-processing
ruby-image-processing affected Ubuntu:20.04:LTS ruby-image-processing
Upstream advisory

USN-6673-1

USNAll remaining2024-03-04

python-cryptography vulnerabilities

Affected products

ProductStatusVendorPackageEcosystem
python-cryptography affected Ubuntu:Pro:18.04:LTS python-cryptography
python-cryptography affected Ubuntu:22.04:LTS python-cryptography
python-cryptography affected Ubuntu:20.04:LTS python-cryptography
Upstream advisory

Need live exploit intelligence?

Every CVE above is indexed in the Vulnetix VDB with KEV, EPSS, and PoC maturity. The interactive page surfaces that on hover.