Vulnerabilities in Canonical Ltd.

51 results
Vexday analysis

O portfólio de vulnerabilidades da Canonical Ltd. apresenta um perfil de risco relativamente contido no momento: das 51 CVEs catalogadas, nenhuma figura no catálogo de exploração ativa da CISA (KEV), taxa que se mantém abaixo da média geral do catálogo. A ausência de provas de conceito públicas e de novas vulnerabilidades nos últimos 90 dias reforça um cenário de pressão ofensiva reduzida. Ainda assim, as 4 falhas de severidade crítica merecem atenção contínua, incluindo CVE-2023-1523, atualmente a mais perigosa do conjunto, com EPSS de 0,0145. O tipo de falha mais recorrente é CWE-276 (permissões padrão incorretas), o que sugere que revisões de configuração e controles de privilégio mínimo devem integrar as práticas de hardening para os produtos deste vendor.

CVE-2023-5182MEDIUMSensitive data could be exposed in logs of subiquity version 23.09.1 and earlier. An attacker in the adm group could use this information toEPSS 0.2%CVE-2022-28655HIGHis_closing_session() allows users to create arbitrary tcp dbus connectionsEPSS 0.2%CVE-2022-28658MEDIUMApport argument parsing mishandles filename splitting on older kernels resulting in argument spoofingEPSS 0.2%CVE-2024-3250MEDIUMIt was discovered that Canonical's Pebble service manager read-file API and the associated pebble pull command, before v1.10.2, allowed unprEPSS 0.2%CVE-2022-28652MEDIUM~/.config/apport/settings parsing is vulnerable to "billion laughs" attackEPSS 0.2%CVE-2022-28656MEDIUMis_closing_session() allows users to consume RAM in the Apport processEPSS 0.2%CVE-2024-8037MEDIUMVulnerable juju hook tool abstract UNIX domain socket. When combined with an attack of JUJU_CONTEXT_ID, any user on the local system with acEPSS 0.2%CVE-2024-8287HIGHAnbox Management Service, in versions 1.17.0 through 1.23.0, does not validate the TLS certificate provided to it by the Anbox Stream Agent.EPSS 0.2%CVE-2024-6156LOWMark Laing discovered that LXD's PKI mode, until version 5.21.2, could be bypassed if the client's certificate was present in the trust storEPSS 0.2%CVE-2024-6219LOWMark Laing discovered in LXD's PKI mode, until version 5.21.1, that a restricted certificate could be added to the trust store with its restEPSS 0.2%CVE-2024-6388MEDIUMMarco Trevisan discovered that the Ubuntu Advantage Desktop Daemon, before version 1.12, leaks the Pro token to unprivileged users by passinEPSS 0.1%