VendorsCanonicalubuntu_linux21.04
Vulnerabilities

Canonical Ubuntu Linux 21.04

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

24CVEs
CVE-2020-25719
A flaw was found in the way Samba, as an Active Directory Domain Controller, implemented Kerberos name-based authentication. The Samba AD DC, could become confused about the user a ticket represents if it did not strictly require a Kerberos PAC and always use the SIDs found within. The result could include total domain compromise.
Published 2022-02-18 · Modified
9.0EPSS 0.017
CVE-2020-25722
Multiple flaws were found in the way samba AD DC implemented access and conformance checking of stored data. An attacker could use this flaw to cause total domain compromise.
Published 2022-02-18 · Modified
8.8EPSS 0.016
CVE-2021-3491
Linux kernel io_uring PROVIDE_BUFFERS MAX_RW_COUNT bypass
Published 2021-06-04 · Modified
8.8EPSS 0.006
CVE-2020-25717
A flaw was found in the way Samba maps domain users to local users. An authenticated attacker could use this flaw to cause possible privilege escalation.
Published 2022-02-18 · Modified
8.5EPSS 0.016
CVE-2021-3490
Linux kernel eBPF bitwise ops ALU32 bounds tracking
Published 2021-06-04 · Modified
7.8EPSS 0.275
CVE-2021-3489
Linux kernel eBPF RINGBUF map oversized allocation
Published 2021-06-04 · Modified
7.8EPSS 0.006
CVE-2021-45417
AIDE before 0.17.4 allows local users to obtain root privileges via crafted file metadata (such as XFS extended attributes or tmpfs ACLs), because of a heap-based buffer overflow.
Published 2022-01-20 · Modified
7.8EPSS 0.005
CVE-2021-3939
Free of static data in accountsservice
Published 2021-11-17 · Modified
7.8EPSS 0.004
CVE-2021-3737
A flaw was found in python. An improperly handled HTTP response in the HTTP client code of python may allow a remote attacker, who controls the HTTP server, to make the client script enter an infinite loop, consuming CPU time. The highest threat from this vulnerability is to system availability.
Published 2022-03-04 · Modified
7.5EPSS 0.116
CVE-2020-15078
OpenVPN 2.5.1 and earlier versions allows a remote attackers to bypass authentication and access control channel data on servers configured with deferred authentication, which can be used to potentially trigger further information leaks.
Published 2021-04-26 · Modified
7.5EPSS 0.049
CVE-2022-20698
Clam AntiVirus (ClamAV) Denial of Service Vulnerability
Published 2022-01-14 · Modified
7.5EPSS 0.031
CVE-2021-44420
In Django 2.2 before 2.2.25, 3.1 before 3.1.14, and 3.2 before 3.2.10, HTTP requests for URLs with trailing newlines could bypass upstream access control based on URL paths.
Published 2021-12-07 · Modified
7.5EPSS 0.023
CVE-2021-32553
apport read_file() function could follow maliciously constructed symbolic links
Published 2021-06-12 · Modified
7.3EPSS 0.003
CVE-2021-32547
apport read_file() function could follow maliciously constructed symbolic links
Published 2021-06-12 · Modified
7.3EPSS 0.003
CVE-2021-32554
apport read_file() function could follow maliciously constructed symbolic links
Published 2021-06-12 · Modified
7.3EPSS 0.003
CVE-2021-32555
apport read_file() function could follow maliciously constructed symbolic links
Published 2021-06-12 · Modified
7.3EPSS 0.003
CVE-2021-32552
apport read_file() function could follow maliciously constructed symbolic links
Published 2021-06-12 · Modified
7.3EPSS 0.003
CVE-2021-32551
apport read_file() function could follow maliciously constructed symbolic links
Published 2021-06-12 · Modified
7.3EPSS 0.003
CVE-2021-32550
apport read_file() function could follow maliciously constructed symbolic links
Published 2021-06-12 · Modified
7.3EPSS 0.003
CVE-2021-32549
apport read_file() function could follow maliciously constructed symbolic links
Published 2021-06-12 · Modified
7.3EPSS 0.003
CVE-2021-32548
apport read_file() function could follow maliciously constructed symbolic links
Published 2021-06-12 · Modified
7.3EPSS 0.003
CVE-2021-3710
Apport info disclosure via path traversal bug in read_file
Published 2021-10-01 · Modified
6.5EPSS 0.005
CVE-2021-3709
Apport file permission bypass through emacs byte compilation errors
Published 2021-10-01 · Modified
6.5EPSS 0.005
CVE-2016-2124
A flaw was found in the way samba implemented SMB1 authentication. An attacker could use this flaw to retrieve the plaintext password sent over the wire even if Kerberos authentication was required.
Published 2022-02-18 · Modified
5.9EPSS 0.018