Vulnerabilities in canonical

160 results
CVE-2026-12391MEDIUMubuntu-pro-client Local Privilege Escalation and Information Disclosure via Symlink Arbitrary File Read in collect-logsEPSS 0.2%CVE-2026-97335HIGHIncorrect authorization in LXD storage volume API allows reading volumes from other projectsEPSS 0.2%CVE-2024-41129MEDIUMThe ops library leaks secrets if `subprocess.CalledProcessError` happens with a `secret-*` CLI commandEPSS 0.2%CVE-2026-77113MEDIUMPath Traversal Vulnerability in apport-unpackEPSS 0.2%CVE-2026-87798MEDIUMLXD client recursive file pull allows directory escape via malicious VM agentEPSS 0.2%CVE-2026-61898HIGHaccountsservice: shell injection via attacker-controlled ~/.pam_environment in Ubuntu language helper scriptsEPSS 0.2%CVE-2013-1053MEDIUMInsecure crypto for storing passwordsEPSS 0.2%CVE-2026-15226HIGHsnapd snap-confine Sandbox Confinement Bypass via Omission of setuid Restriction in Seccomp TemplatesEPSS 0.2%CVE-2026-8933HIGHsnap-confine Local Privilege Escalation via Capabilities Misconfiguration or Flaw in Execution Environment SetupEPSS 0.2%CVE-2026-3888HIGHLocal Privilege Escalation in snapdEPSS 0.2%CVE-2026-10037HIGHSandbox Escape in Ubuntu OpenJDK Packages via xdg-desktop-portalEPSS 0.2%CVE-2025-5467LOWUbuntu Apport Insecure File Permissions VulnerabilityEPSS 0.2%CVE-2026-6369MEDIUMExposed Session Token in canonical-livepatch client snapEPSS 0.2%CVE-2026-47331HIGHUse-after-free in Ubuntu Linux AppArmor notification handlingEPSS 0.2%CVE-2025-24375MEDIUMMySQL K8s charm could leak credentials for root-level user `serverconfig`EPSS 0.2%CVE-2025-5199HIGHLPE on Multipass for macOSEPSS 0.2%CVE-2026-49237HIGHLocal Privilege Escalation in Canonical MultipassEPSS 0.2%CVE-2025-6224MEDIUMKey leakage in juju/utils certificatesEPSS 0.2%CVE-2026-47333HIGHOut-of-bounds read in Ubuntu Linux AppArmor notification handlingEPSS 0.2%CVE-2025-13350HIGHUse-after-free of orphaned AF_UNIX in Ubuntu builds of Linux kernelEPSS 0.2%