Vulnerabilities in canonical
160 resultsCVE-2026-5412CRITICALJuju CloudSpec API could leak senstive informationEPSS 0.5%CVE-2020-11937MEDIUMResource exhaustion vulnerability in whoopsieEPSS 0.5%CVE-2021-3710MEDIUMApport info disclosure via path traversal bug in read_fileEPSS 0.5%CVE-2021-3709MEDIUMApport file permission bypass through emacs byte compilation errorsEPSS 0.5%CVE-2021-25682HIGHapport improperly parses /proc/pid/statusEPSS 0.5%CVE-2019-11481LOWApport reads arbitrary files if ~/.config/apport/settings is a symlinkEPSS 0.5%CVE-2019-15795MEDIUMpython-apt uses MD5 for validationEPSS 0.5%CVE-2026-49238HIGHSFTP Server VM Escape in Canonical MultipassEPSS 0.4%CVE-2026-63296CRITICALProject restriction bypass via instance migration config overrideEPSS 0.4%CVE-2019-11484MEDIUMInteger overflow in bson_ensure_spaceEPSS 0.4%CVE-2026-32693HIGHUnauthorized access to Kubernetes secrets in JujuEPSS 0.4%CVE-2021-25683HIGHapport improperly parses /proc/pid/statEPSS 0.4%CVE-2020-15701MEDIUMUnhandled exception in apportEPSS 0.4%CVE-2020-16119MEDIUMDCCP CCID structure use-after-freeEPSS 0.4%CVE-2026-34179CRITICALUpdate of type field in restricted TLS certificate allows privilege escalation to cluster adminEPSS 0.4%CVE-2026-4370CRITICALImproper TLS Client/Server authentication and certificate verification on Database ClusterEPSS 0.4%CVE-2026-87799CRITICALArbitrary file write on LXD host via symlink in migration streamEPSS 0.4%CVE-2019-11483HIGHSander Bos discovered Apport mishandled crash dumps originating from containers. This could be used by a local attacker to generate a crash EPSS 0.4%CVE-2020-27351LOWVarious memory and file descriptor leaks in apt-pythonEPSS 0.4%CVE-2021-32557MEDIUMapport process_report() arbitrary file writeEPSS 0.4%