VendorsCanonicalubuntu_linux22.10
Vulnerabilities

Canonical Ubuntu Linux 22.10

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

9CVEs
CVE-2023-1523
Using the TIOCLINUX ioctl request, a malicious snap could inject contents into the input of the controlling terminal which could allow it to cause arbitrary commands to be executed outside of the snap sandbox after the snap exits. Graphical terminal emulators like xterm, gnome-terminal and others are not affected - this can only be exploited when snaps are run on a virtual console.
Published 2023-09-01 · Modified
10.0EPSS 0.014
CVE-2024-6387
Openssh: regresshion - race condition in ssh allows rce/dos
Published 2024-07-01 · Modified
8.11 PoCEPSS 0.995
CVE-2023-3297
In Ubuntu's accountsservice an unprivileged local attacker can trigger a use-after-free vulnerability in accountsservice by sending a D-Bus message to the accounts-daemon process.
Published 2023-09-01 · Modified
8.1EPSS 0.003
CVE-2023-1326
local privilege escalation in apport-cli
Published 2023-04-13 · Modified
7.8EPSS 0.009
CVE-2022-3328
Race condition in snap-confine's must_mkdir_and_open_with_perms()
Published 2024-01-08 · Modified
7.8EPSS 0.004
CVE-2022-2602
io_uring UAF, Unix SCM garbage collection
Published 2024-01-08 · Modified
7.0EPSS 0.014
CVE-2023-1032
The Linux kernel io_uring IORING_OP_SOCKET operation contained a double free in function __sys_socket_file() in file net/socket.c. This issue was introduced in da214a475f8bd1d3e9e7a19ddfeb4d1617551bab and fixed in 649c15c7691e9b13cbe9bf6c65c365350e056067.
Published 2024-01-08 · Modified
5.5EPSS 0.003
CVE-2023-1786
sensitive data exposure in cloud-init logs
Published 2023-04-26 · Modified
5.5EPSS 0.003
CVE-2023-2612
shiftfs lock unbalance in Ubuntu-specific kernels
Published 2023-05-30 · Modified
4.7EPSS 0.003