{"cves":[{"id":"CVE-2018-18456","published":"2018-10-18T06:29:00","updated_at":"2025-07-11T07:40:32.828662+00:00","description":"\nThe function Object::isName() in Object.h (called from\nGfx::opSetFillColorN) in Xpdf 4.00 allows remote attackers to cause a\ndenial of service (stack-based buffer over-read) via a crafted pdf file, as\ndemonstrated by pdftoppm.","ubuntu_description":"","notes":[{"author":"jdstrand","note":"xpdf in koffice is 2.0"},{"author":"mdeslaur","note":"no indication this affects poppler"}],"codename":null,"priority":"negligible","cvss3":5.5,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH","baseScore":5.5,"baseSeverity":"MEDIUM"}}},"status":"active","mitigation":"","references":["https://forum.xpdfreader.com/viewtopic.php?f=3&t=41217","https://github.com/TeamSeri0us/pocs/tree/master/xpdf/2018_10_16/pdftoppm","https://www.cve.org/CVERecord?id=CVE-2018-18456"],"bugs":[""],"patches":{"xpdf":[],"poppler":[],"libextractor":[],"ipe":[]},"tags":{},"packages":[{"name":"xpdf","source":"https://ubuntu.com/security/cve?package=xpdf","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=xpdf","debian":"https://tracker.debian.org/pkg/xpdf","statuses":[{"release_codename":"questing","status":"ignored","description":"end of life, was needed","component":null,"pocket":"security"},{"release_codename":"xenial","status":"needed","description":"","component":null,"pocket":"security"},{"release_codename":"groovy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hirsute","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"kinetic","status":"ignored","description":"end of life, was needed","component":null,"pocket":"security"},{"release_codename":"jammy","status":"needed","description":"","component":null,"pocket":"security"},{"release_codename":"impish","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"bionic","status":"needed","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"disco","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"eoan","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"deferred","description":"no security impact, crash in CLI tool","component":null,"pocket":"security"},{"release_codename":"lunar","status":"ignored","description":"end of life, was needed","component":null,"pocket":"security"},{"release_codename":"noble","status":"needed","description":"","component":null,"pocket":"security"},{"release_codename":"mantic","status":"ignored","description":"end of life, was needed","component":null,"pocket":"security"},{"release_codename":"plucky","status":"ignored","description":"end of life, was needed","component":null,"pocket":"security"},{"release_codename":"oracular","status":"ignored","description":"end of life, was needed","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was needs-triage","component":null,"pocket":"security"},{"release_codename":"resolute","status":"needed","description":"","component":null,"pocket":"security"}]},{"name":"ipe","source":"https://ubuntu.com/security/cve?package=ipe","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=ipe","debian":"https://tracker.debian.org/pkg/ipe","statuses":[{"release_codename":"xenial","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"questing","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"disco","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"eoan","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"groovy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hirsute","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"kinetic","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"jammy","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"impish","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lunar","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"noble","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"mantic","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was needs-triage","component":null,"pocket":"security"},{"release_codename":"plucky","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"oracular","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"resolute","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"libextractor","source":"https://ubuntu.com/security/cve?package=libextractor","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=libextractor","debian":"https://tracker.debian.org/pkg/libextractor","statuses":[{"release_codename":"cosmic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"disco","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"eoan","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"groovy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hirsute","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"does not use xpdf anymore","component":null,"pocket":"security"},{"release_codename":"impish","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"bionic","status":"not-affected","description":"does not use xpdf anymore","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"does not use xpdf anymore","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"does not use xpdf anymore","component":null,"pocket":"security"},{"release_codename":"kinetic","status":"not-affected","description":"does not use xpdf anymore","component":null,"pocket":"security"},{"release_codename":"trusty","status":"not-affected","description":"does not use xpdf anymore","component":null,"pocket":"security"},{"release_codename":"lunar","status":"not-affected","description":"does not use xpdf anymore","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"mantic","status":"not-affected","description":"does not use xpdf anymore","component":null,"pocket":"security"},{"release_codename":"noble","status":"not-affected","description":"does not use xpdf anymore","component":null,"pocket":"security"},{"release_codename":"oracular","status":"not-affected","description":"does not use xpdf anymore","component":null,"pocket":"security"},{"release_codename":"plucky","status":"not-affected","description":"does not use xpdf anymore","component":null,"pocket":"security"},{"release_codename":"resolute","status":"not-affected","description":"does not use xpdf anymore","component":null,"pocket":"security"},{"release_codename":"questing","status":"not-affected","description":"does not use xpdf anymore","component":null,"pocket":"security"}]},{"name":"poppler","source":"https://ubuntu.com/security/cve?package=poppler","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=poppler","debian":"https://tracker.debian.org/pkg/poppler","statuses":[{"release_codename":"groovy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"hirsute","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"kinetic","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"lunar","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"disco","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"eoan","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"impish","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"mantic","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"oracular","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was not-affected","component":null,"pocket":"security"},{"release_codename":"plucky","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"resolute","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"questing","status":"not-affected","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2018-18455","published":"2018-10-18T06:29:00","updated_at":"2025-07-11T07:40:32.828662+00:00","description":"\nThe GfxImageColorMap class in GfxState.cc in Xpdf 4.00 allows remote\nattackers to cause a denial of service (heap-based buffer over-read) via a\ncrafted pdf file, as demonstrated by pdftoppm.","ubuntu_description":"","notes":[{"author":"jdstrand","note":"xpdf in koffice is 2.0"},{"author":"mdeslaur","note":"no indication this affects poppler"}],"codename":null,"priority":"negligible","cvss3":5.5,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH","baseScore":5.5,"baseSeverity":"MEDIUM"}}},"status":"active","mitigation":"","references":["https://forum.xpdfreader.com/viewtopic.php?f=3&t=41217","https://github.com/TeamSeri0us/pocs/tree/master/xpdf/2018_10_16/pdftoppm","https://www.cve.org/CVERecord?id=CVE-2018-18455"],"bugs":[""],"patches":{"xpdf":[],"poppler":[],"libextractor":[],"ipe":[]},"tags":{},"packages":[{"name":"xpdf","source":"https://ubuntu.com/security/cve?package=xpdf","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=xpdf","debian":"https://tracker.debian.org/pkg/xpdf","statuses":[{"release_codename":"questing","status":"ignored","description":"end of life, was needed","component":null,"pocket":"security"},{"release_codename":"xenial","status":"needed","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"needed","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"disco","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"eoan","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"deferred","description":"no security impact, crash in CLI tool","component":null,"pocket":"security"},{"release_codename":"groovy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hirsute","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"jammy","status":"needed","description":"","component":null,"pocket":"security"},{"release_codename":"impish","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"kinetic","status":"ignored","description":"end of life, was needed","component":null,"pocket":"security"},{"release_codename":"lunar","status":"ignored","description":"end of life, was needed","component":null,"pocket":"security"},{"release_codename":"noble","status":"needed","description":"","component":null,"pocket":"security"},{"release_codename":"mantic","status":"ignored","description":"end of life, was needed","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was needs-triage","component":null,"pocket":"security"},{"release_codename":"plucky","status":"ignored","description":"end of life, was needed","component":null,"pocket":"security"},{"release_codename":"oracular","status":"ignored","description":"end of life, was needed","component":null,"pocket":"security"},{"release_codename":"resolute","status":"needed","description":"","component":null,"pocket":"security"}]},{"name":"ipe","source":"https://ubuntu.com/security/cve?package=ipe","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=ipe","debian":"https://tracker.debian.org/pkg/ipe","statuses":[{"release_codename":"xenial","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"questing","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"disco","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"eoan","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"groovy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hirsute","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"jammy","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"impish","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"kinetic","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"lunar","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"noble","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"mantic","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was needs-triage","component":null,"pocket":"security"},{"release_codename":"plucky","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"oracular","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"resolute","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"libextractor","source":"https://ubuntu.com/security/cve?package=libextractor","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=libextractor","debian":"https://tracker.debian.org/pkg/libextractor","statuses":[{"release_codename":"cosmic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"disco","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"eoan","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"trusty","status":"not-affected","description":"does not use xpdf anymore","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"not-affected","description":"does not use xpdf anymore","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"does not use xpdf anymore","component":null,"pocket":"security"},{"release_codename":"groovy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hirsute","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"does not use xpdf anymore","component":null,"pocket":"security"},{"release_codename":"impish","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"does not use xpdf anymore","component":null,"pocket":"security"},{"release_codename":"kinetic","status":"not-affected","description":"does not use xpdf anymore","component":null,"pocket":"security"},{"release_codename":"lunar","status":"not-affected","description":"does not use xpdf anymore","component":null,"pocket":"security"},{"release_codename":"mantic","status":"not-affected","description":"does not use xpdf anymore","component":null,"pocket":"security"},{"release_codename":"noble","status":"not-affected","description":"does not use xpdf anymore","component":null,"pocket":"security"},{"release_codename":"oracular","status":"not-affected","description":"does not use xpdf anymore","component":null,"pocket":"security"},{"release_codename":"plucky","status":"not-affected","description":"does not use xpdf anymore","component":null,"pocket":"security"},{"release_codename":"questing","status":"not-affected","description":"does not use xpdf anymore","component":null,"pocket":"security"},{"release_codename":"resolute","status":"not-affected","description":"does not use xpdf anymore","component":null,"pocket":"security"}]},{"name":"poppler","source":"https://ubuntu.com/security/cve?package=poppler","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=poppler","debian":"https://tracker.debian.org/pkg/poppler","statuses":[{"release_codename":"bionic","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"disco","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"eoan","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"groovy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"hirsute","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"kinetic","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"lunar","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"impish","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"mantic","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"oracular","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"plucky","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was not-affected","component":null,"pocket":"security"},{"release_codename":"questing","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"resolute","status":"not-affected","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2018-18454","published":"2018-10-18T06:29:00","updated_at":"2025-07-11T07:40:29.131634+00:00","description":"\nCCITTFaxStream::readRow() in Stream.cc in Xpdf 4.00 allows remote attackers\nto cause a denial of service (heap-based buffer over-read) via a crafted\npdf file, as demonstrated by pdftoppm.","ubuntu_description":"","notes":[{"author":"jdstrand","note":"xpdf in koffice is 2.0"},{"author":"mdeslaur","note":"no indication this affects poppler"}],"codename":null,"priority":"negligible","cvss3":5.5,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH","baseScore":5.5,"baseSeverity":"MEDIUM"}}},"status":"active","mitigation":"","references":["https://forum.xpdfreader.com/viewtopic.php?f=3&t=41217","https://github.com/TeamSeri0us/pocs/tree/master/xpdf/2018_10_16/pdftoppm","https://www.cve.org/CVERecord?id=CVE-2018-18454"],"bugs":[""],"patches":{"xpdf":[],"poppler":[],"libextractor":[],"ipe":[]},"tags":{},"packages":[{"name":"xpdf","source":"https://ubuntu.com/security/cve?package=xpdf","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=xpdf","debian":"https://tracker.debian.org/pkg/xpdf","statuses":[{"release_codename":"xenial","status":"needed","description":"","component":null,"pocket":"security"},{"release_codename":"questing","status":"ignored","description":"end of life, was needed","component":null,"pocket":"security"},{"release_codename":"groovy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hirsute","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"kinetic","status":"ignored","description":"end of life, was needed","component":null,"pocket":"security"},{"release_codename":"jammy","status":"needed","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"needed","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"disco","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"eoan","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"impish","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"upstream","status":"deferred","description":"no security impact, crash in CLI tool","component":null,"pocket":"security"},{"release_codename":"mantic","status":"ignored","description":"end of life, was needed","component":null,"pocket":"security"},{"release_codename":"lunar","status":"ignored","description":"end of life, was needed","component":null,"pocket":"security"},{"release_codename":"noble","status":"needed","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was needs-triage","component":null,"pocket":"security"},{"release_codename":"plucky","status":"ignored","description":"end of life, was needed","component":null,"pocket":"security"},{"release_codename":"oracular","status":"ignored","description":"end of life, was needed","component":null,"pocket":"security"},{"release_codename":"resolute","status":"needed","description":"","component":null,"pocket":"security"}]},{"name":"ipe","source":"https://ubuntu.com/security/cve?package=ipe","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=ipe","debian":"https://tracker.debian.org/pkg/ipe","statuses":[{"release_codename":"xenial","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"questing","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"disco","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"eoan","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"hirsute","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"kinetic","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"jammy","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"groovy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"impish","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"mantic","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"lunar","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"noble","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was needs-triage","component":null,"pocket":"security"},{"release_codename":"plucky","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"oracular","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"bionic","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"resolute","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"libextractor","source":"https://ubuntu.com/security/cve?package=libextractor","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=libextractor","debian":"https://tracker.debian.org/pkg/libextractor","statuses":[{"release_codename":"bionic","status":"not-affected","description":"does not use xpdf anymore","component":null,"pocket":"security"},{"release_codename":"hirsute","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"does not use xpdf anymore","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"does not use xpdf anymore","component":null,"pocket":"security"},{"release_codename":"kinetic","status":"not-affected","description":"does not use xpdf anymore","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"disco","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"eoan","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"does not use xpdf anymore","component":null,"pocket":"security"},{"release_codename":"groovy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"impish","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lunar","status":"not-affected","description":"does not use xpdf anymore","component":null,"pocket":"security"},{"release_codename":"trusty","status":"not-affected","description":"does not use xpdf anymore","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"mantic","status":"not-affected","description":"does not use xpdf anymore","component":null,"pocket":"security"},{"release_codename":"noble","status":"not-affected","description":"does not use xpdf anymore","component":null,"pocket":"security"},{"release_codename":"oracular","status":"not-affected","description":"does not use xpdf anymore","component":null,"pocket":"security"},{"release_codename":"plucky","status":"not-affected","description":"does not use xpdf anymore","component":null,"pocket":"security"},{"release_codename":"questing","status":"not-affected","description":"does not use xpdf anymore","component":null,"pocket":"security"},{"release_codename":"resolute","status":"not-affected","description":"does not use xpdf anymore","component":null,"pocket":"security"}]},{"name":"poppler","source":"https://ubuntu.com/security/cve?package=poppler","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=poppler","debian":"https://tracker.debian.org/pkg/poppler","statuses":[{"release_codename":"hirsute","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"disco","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"eoan","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"groovy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"impish","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"kinetic","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"lunar","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"mantic","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"oracular","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"plucky","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was not-affected","component":null,"pocket":"security"},{"release_codename":"questing","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"resolute","status":"not-affected","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2018-6559","published":"2018-10-18T00:00:00","updated_at":"2025-08-25T22:58:26.813833+00:00","description":"\nThe Linux kernel, as used in Ubuntu 18.04 LTS and Ubuntu 18.10, allows\nlocal users to obtain names of files in which they would not normally be\nable to access via an overlayfs mount inside of a user namespace.","ubuntu_description":"\nPhilipp Wendler discovered that the overlayfs implementation in the Linux\nkernel did not properly verify the directory contents permissions from\nwithin a unprivileged user namespace. A local attacker could use this to\nexpose sensitive information (protected file names).","notes":[{"author":"tyhicks","note":"This CVE is specific to Ubuntu since Ubuntu allows overlayfs mounts\ninside of user namespaces\nThis flaw was previously discovered and fixed as part of\nCVE-2015-1328. The fix for CVE-2015-1328 was incorrectly dropped from the\nUbuntu kernel during a merge with related changes in the upstream Linux\nkernel. CVE-2018-6559 represents the portion of CVE-2015-1328 that was\nincorrectly reintroduced into the Ubuntu kernel."}],"codename":null,"priority":"low","cvss3":3.3,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"LOW","integrityImpact":"NONE","availabilityImpact":"NONE","baseScore":3.3,"baseSeverity":"LOW"}}},"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-3832-1","https://ubuntu.com/security/notices/USN-3833-1","https://ubuntu.com/security/notices/USN-3836-1","https://ubuntu.com/security/notices/USN-3835-1","https://ubuntu.com/security/notices/USN-3836-2","https://www.cve.org/CVERecord?id=CVE-2018-6559"],"bugs":["https://launchpad.net/bugs/1793458"],"patches":{"linux":["break-fix: local-2018-6559-break local-2015-1328-fix|local-2018-6559-fix"],"linux-lts-trusty":[],"linux-goldfish":[],"linux-grouper":[],"linux-maguro":[],"linux-mako":[],"linux-manta":[],"linux-flo":[],"linux-raspi2":[],"linux-lts-utopic":[],"linux-lts-vivid":[],"linux-lts-wily":[],"linux-lts-xenial":[],"linux-snapdragon":[],"linux-aws":[],"linux-hwe":[],"linux-hwe-edge":[],"linux-gke":[],"linux-azure":[],"linux-azure-edge":[],"linux-gcp":[],"linux-kvm":[],"linux-euclid":[],"linux-oem":[],"linux-gcp-edge":[],"linux-aws-hwe":[],"linux-oracle":[]},"tags":{},"packages":[{"name":"linux","source":"https://ubuntu.com/security/cve?package=linux","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=linux","debian":"https://tracker.debian.org/pkg/linux","statuses":[{"release_codename":"upstream","status":"not-affected","description":"Ubuntu specific","component":null,"pocket":"security"},{"release_codename":"bionic","status":"released","description":"4.15.0-42.45","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"released","description":"4.18.0-12.13","component":null,"pocket":"security"},{"release_codename":"trusty","status":"not-affected","description":"3.11.0-12.19","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"4.2.0-16.19","component":null,"pocket":"security"}]},{"name":"linux-aws","source":"https://ubuntu.com/security/cve?package=linux-aws","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=linux-aws","debian":"https://tracker.debian.org/pkg/linux-aws","statuses":[{"release_codename":"bionic","status":"released","description":"4.15.0-1029.30","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"released","description":"4.18.0-1006.7","component":null,"pocket":"security"},{"release_codename":"trusty","status":"not-affected","description":"4.4.0-1002.2","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.6.12~rc2","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"4.4.0-1001.10","component":null,"pocket":"security"}]},{"name":"linux-aws-hwe","source":"https://ubuntu.com/security/cve?package=linux-aws-hwe","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=linux-aws-hwe","debian":"https://tracker.debian.org/pkg/linux-aws-hwe","statuses":[{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.6.12~rc2","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"4.15.0-1030.31~16.04.1","component":null,"pocket":"security"}]},{"name":"linux-azure","source":"https://ubuntu.com/security/cve?package=linux-azure","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=linux-azure","debian":"https://tracker.debian.org/pkg/linux-azure","statuses":[{"release_codename":"bionic","status":"released","description":"4.15.0-1035.36","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"released","description":"4.18.0-1006.6","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"4.15.0-1035.36~14.04.2","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.6.12~rc2","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"4.15.0-1035.36~16.04.1","component":null,"pocket":"security"}]},{"name":"linux-azure-edge","source":"https://ubuntu.com/security/cve?package=linux-azure-edge","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=linux-azure-edge","debian":"https://tracker.debian.org/pkg/linux-azure-edge","statuses":[{"release_codename":"bionic","status":"released","description":"4.15.0-1035.36","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.6.12~rc2","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"4.15.0-1035.36~16.04.1","component":null,"pocket":"security"}]},{"name":"linux-euclid","source":"https://ubuntu.com/security/cve?package=linux-euclid","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=linux-euclid","debian":"https://tracker.debian.org/pkg/linux-euclid","statuses":[{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.6.12~rc2","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-flo","source":"https://ubuntu.com/security/cve?package=linux-flo","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=linux-flo","debian":"https://tracker.debian.org/pkg/linux-flo","statuses":[{"release_codename":"upstream","status":"released","description":"2.6.12~rc2","component":null,"pocket":"security"},{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was ignored [abandoned]","component":null,"pocket":"security"}]},{"name":"linux-gcp","source":"https://ubuntu.com/security/cve?package=linux-gcp","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=linux-gcp","debian":"https://tracker.debian.org/pkg/linux-gcp","statuses":[{"release_codename":"bionic","status":"released","description":"4.15.0-1025.26","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"released","description":"4.18.0-1004.5","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.6.12~rc2","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"4.15.0-1025.26~16.04.1","component":null,"pocket":"security"}]},{"name":"linux-gcp-edge","source":"https://ubuntu.com/security/cve?package=linux-gcp-edge","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=linux-gcp-edge","debian":"https://tracker.debian.org/pkg/linux-gcp-edge","statuses":[{"release_codename":"bionic","status":"not-affected","description":"4.18.0-1004.5~18.04.1","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.6.12~rc2","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-gke","source":"https://ubuntu.com/security/cve?package=linux-gke","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=linux-gke","debian":"https://tracker.debian.org/pkg/linux-gke","statuses":[{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.6.12~rc2","component":null,"pocket":"security"},{"release_codename":"xenial","status":"ignored","description":"end of standard support","component":null,"pocket":"security"}]},{"name":"linux-goldfish","source":"https://ubuntu.com/security/cve?package=linux-goldfish","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=linux-goldfish","debian":"https://tracker.debian.org/pkg/linux-goldfish","statuses":[{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.6.12~rc2","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was ignored [abandoned]","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-grouper","source":"https://ubuntu.com/security/cve?package=linux-grouper","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=linux-grouper","debian":"https://tracker.debian.org/pkg/linux-grouper","statuses":[{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.6.12~rc2","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was ignored [abandoned]","component":null,"pocket":"security"}]},{"name":"linux-hwe","source":"https://ubuntu.com/security/cve?package=linux-hwe","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=linux-hwe","debian":"https://tracker.debian.org/pkg/linux-hwe","statuses":[{"release_codename":"bionic","status":"not-affected","description":"4.18.0-13.14~18.04.1","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.6.12~rc2","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"4.15.0-42.45~16.04.1","component":null,"pocket":"security"}]},{"name":"linux-hwe-edge","source":"https://ubuntu.com/security/cve?package=linux-hwe-edge","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=linux-hwe-edge","debian":"https://tracker.debian.org/pkg/linux-hwe-edge","statuses":[{"release_codename":"bionic","status":"not-affected","description":"4.18.0-12.13~18.04.1","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.6.12~rc2","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"4.15.0-42.45~16.04.1","component":null,"pocket":"security"}]},{"name":"linux-kvm","source":"https://ubuntu.com/security/cve?package=linux-kvm","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=linux-kvm","debian":"https://tracker.debian.org/pkg/linux-kvm","statuses":[{"release_codename":"bionic","status":"released","description":"4.15.0-1027.27","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"released","description":"4.18.0-1005.5","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.6.12~rc2","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"4.4.0-1004.9","component":null,"pocket":"security"}]},{"name":"linux-lts-trusty","source":"https://ubuntu.com/security/cve?package=linux-lts-trusty","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=linux-lts-trusty","debian":"https://tracker.debian.org/pkg/linux-lts-trusty","statuses":[{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.6.12~rc2","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-lts-utopic","source":"https://ubuntu.com/security/cve?package=linux-lts-utopic","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=linux-lts-utopic","debian":"https://tracker.debian.org/pkg/linux-lts-utopic","statuses":[{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.6.12~rc2","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was ignored [end of standard support]","component":null,"pocket":"security"}]},{"name":"linux-lts-vivid","source":"https://ubuntu.com/security/cve?package=linux-lts-vivid","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=linux-lts-vivid","debian":"https://tracker.debian.org/pkg/linux-lts-vivid","statuses":[{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.6.12~rc2","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was ignored [end of standard support]","component":null,"pocket":"security"}]},{"name":"linux-lts-wily","source":"https://ubuntu.com/security/cve?package=linux-lts-wily","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=linux-lts-wily","debian":"https://tracker.debian.org/pkg/linux-lts-wily","statuses":[{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.6.12~rc2","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was ignored [end of standard support]","component":null,"pocket":"security"}]},{"name":"linux-lts-xenial","source":"https://ubuntu.com/security/cve?package=linux-lts-xenial","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=linux-lts-xenial","debian":"https://tracker.debian.org/pkg/linux-lts-xenial","statuses":[{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"not-affected","description":"4.4.0-13.29~14.04.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.6.12~rc2","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-maguro","source":"https://ubuntu.com/security/cve?package=linux-maguro","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=linux-maguro","debian":"https://tracker.debian.org/pkg/linux-maguro","statuses":[{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.6.12~rc2","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was ignored [abandoned]","component":null,"pocket":"security"}]},{"name":"linux-mako","source":"https://ubuntu.com/security/cve?package=linux-mako","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=linux-mako","debian":"https://tracker.debian.org/pkg/linux-mako","statuses":[{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.6.12~rc2","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was ignored [abandoned]","component":null,"pocket":"security"}]},{"name":"linux-manta","source":"https://ubuntu.com/security/cve?package=linux-manta","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=linux-manta","debian":"https://tracker.debian.org/pkg/linux-manta","statuses":[{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.6.12~rc2","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was ignored [abandoned]","component":null,"pocket":"security"}]},{"name":"linux-oem","source":"https://ubuntu.com/security/cve?package=linux-oem","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=linux-oem","debian":"https://tracker.debian.org/pkg/linux-oem","statuses":[{"release_codename":"bionic","status":"released","description":"4.15.0-1028.33","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"released","description":"4.15.0-1028.33","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.6.12~rc2","component":null,"pocket":"security"},{"release_codename":"xenial","status":"ignored","description":"end of standard support, was needs-triage","component":null,"pocket":"security"}]},{"name":"linux-oracle","source":"https://ubuntu.com/security/cve?package=linux-oracle","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=linux-oracle","debian":"https://tracker.debian.org/pkg/linux-oracle","statuses":[{"release_codename":"bionic","status":"not-affected","description":"4.15.0-1007.9","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.6.12~rc2","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"4.15.0-1007.9~16.04.1","component":null,"pocket":"security"}]},{"name":"linux-raspi2","source":"https://ubuntu.com/security/cve?package=linux-raspi2","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=linux-raspi2","debian":"https://tracker.debian.org/pkg/linux-raspi2","statuses":[{"release_codename":"bionic","status":"released","description":"4.15.0-1029.31","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"released","description":"4.18.0-1007.9","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.6.12~rc2","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"4.2.0-1013.19","component":null,"pocket":"security"}]},{"name":"linux-snapdragon","source":"https://ubuntu.com/security/cve?package=linux-snapdragon","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=linux-snapdragon","debian":"https://tracker.debian.org/pkg/linux-snapdragon","statuses":[{"release_codename":"bionic","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.6.12~rc2","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"4.4.0-1012.12","component":null,"pocket":"security"}]}],"notices_ids":["USN-3835-1","USN-3833-1","USN-3836-1","USN-3836-2","USN-3832-1"],"notices":[{"id":"USN-3835-1","title":"Linux kernel vulnerabilities","summary":"Several security issues were fixed in the Linux kernel.\n","instructions":"After a standard system update you need to reboot your computer to make\nall the necessary changes.\n\nATTENTION: Due to an unavoidable ABI change the kernel updates have\nbeen given a new version number, which requires you to recompile and\nreinstall all third party kernel modules you might have installed.\nUnless you manually uninstalled the standard kernel metapackages\n(e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual,\nlinux-powerpc), a standard system upgrade will automatically perform\nthis as well.\n","references":[],"published":"2018-12-03T19:15:30.244363","description":"Jann Horn discovered that the procfs file system implementation in the\nLinux kernel did not properly restrict the ability to inspect the kernel\nstack of an arbitrary task. A local attacker could use this to expose\nsensitive information. (CVE-2018-17972)\n\nJann Horn discovered that the mremap() system call in the Linux kernel did\nnot properly flush the TLB when completing, potentially leaving access to a\nphysical page after it has been released to the page allocator. A local\nattacker could use this to cause a denial of service (system crash), expose\nsensitive information, or possibly execute arbitrary code. (CVE-2018-18281)\n\nIt was discovered that the BPF verifier in the Linux kernel did not\ncorrectly compute numeric bounds in some situations. A local attacker could\nuse this to cause a denial of service (system crash) or possibly execute\narbitrary code. (CVE-2018-18445)\n\nDaniel Dadap discovered that the module loading implementation in the Linux\nkernel did not properly enforce signed module loading when booted with UEFI\nSecure Boot in some situations. A local privileged attacker could use this\nto execute untrusted code in the kernel. (CVE-2018-18653)\n\nJann Horn discovered that the Linux kernel mishandles mapping UID or GID\nranges inside nested user namespaces in some situations. A local attacker\ncould use this to bypass access controls on resources outside the\nnamespace. (CVE-2018-18955)\n\nPhilipp Wendler discovered that the overlayfs implementation in the Linux\nkernel did not properly verify the directory contents permissions from\nwithin a unprivileged user namespace. A local attacker could use this to\nexpose sensitive information (protected file names). (CVE-2018-6559)\n","is_hidden":false,"release_packages":{"cosmic":[{"name":"linux-raspi2","version":"4.18.0-1007.9","description":"Linux kernel for Raspberry Pi 2","is_source":true},{"name":"linux-gcp","version":"4.18.0-1004.5","description":"Linux kernel for Google Cloud Platform (GCP) systems","is_source":true},{"name":"linux-kvm","version":"4.18.0-1005.5","description":"Linux kernel for cloud environments","is_source":true},{"name":"linux","version":"4.18.0-12.13","description":"Linux kernel","is_source":true},{"name":"linux-image-gke","version":"4.18.0.1004.4","is_source":false,"source_link":null,"version_link":null},{"name":"linux-image-generic","version":"4.18.0.12.13","is_source":false,"source_link":null,"version_link":null},{"name":"linux-image-4.18.0-12-generic","version":"4.18.0-12.13","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/4.18.0-12.13"},{"name":"linux-image-4.18.0-12-snapdragon","version":"4.18.0-12.13","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/4.18.0-12.13"},{"name":"linux-image-4.18.0-1007-raspi2","version":"4.18.0-1007.9","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-raspi2","version_link":"https://launchpad.net/ubuntu/+source/linux-raspi2/4.18.0-1007.9"},{"name":"linux-image-gcp","version":"4.18.0.1004.4","is_source":false,"source_link":null,"version_link":null},{"name":"linux-image-4.18.0-12-generic-lpae","version":"4.18.0-12.13","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/4.18.0-12.13"},{"name":"linux-image-4.18.0-1004-gcp","version":"4.18.0-1004.5","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-gcp","version_link":"https://launchpad.net/ubuntu/+source/linux-gcp/4.18.0-1004.5"},{"name":"linux-image-4.18.0-12-lowlatency","version":"4.18.0-12.13","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/4.18.0-12.13"},{"name":"linux-image-generic-lpae","version":"4.18.0.12.13","is_source":false,"source_link":null,"version_link":null},{"name":"linux-image-4.18.0-1005-kvm","version":"4.18.0-1005.5","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-kvm","version_link":"https://launchpad.net/ubuntu/+source/linux-kvm/4.18.0-1005.5"},{"name":"linux-image-snapdragon","version":"4.18.0.12.13","is_source":false,"source_link":null,"version_link":null},{"name":"linux-image-kvm","version":"4.18.0.1005.5","is_source":false,"source_link":null,"version_link":null},{"name":"linux-image-lowlatency","version":"4.18.0.12.13","is_source":false,"source_link":null,"version_link":null},{"name":"linux-image-raspi2","version":"4.18.0.1007.4","is_source":false,"source_link":null,"version_link":null}]},"type":"USN","cves_ids":["CVE-2018-17972","CVE-2018-18281","CVE-2018-18445","CVE-2018-18653","CVE-2018-18955","CVE-2018-6559"]},{"id":"USN-3833-1","title":"Linux kernel (AWS) vulnerabilities","summary":"Several security issues were fixed in the Linux kernel.\n","instructions":"After a standard system update you need to reboot your computer to make\nall the necessary changes.\n\nATTENTION: Due to an unavoidable ABI change the kernel updates have\nbeen given a new version number, which requires you to recompile and\nreinstall all third party kernel modules you might have installed.\nUnless you manually uninstalled the standard kernel metapackages\n(e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual,\nlinux-powerpc), a standard system upgrade will automatically perform\nthis as well.\n","references":[],"published":"2018-11-30T06:31:39.339781","description":"Jann Horn discovered that the Linux kernel mishandles mapping UID or GID\nranges inside nested user namespaces in some situations. A local attacker\ncould use this to bypass access controls on resources outside the\nnamespace. (CVE-2018-18955)\n\nPhilipp Wendler discovered that the overlayfs implementation in the Linux\nkernel did not properly verify the directory contents permissions from\nwithin a unprivileged user namespace. A local attacker could use this to\nexpose sensitive information (protected file names). (CVE-2018-6559)\n","is_hidden":false,"release_packages":{"bionic":[{"name":"linux-aws","version":"4.15.0-1029.30","description":"Linux kernel for Amazon Web Services (AWS) systems","is_source":true},{"name":"linux-image-4.15.0-1029-aws","version":"4.15.0-1029.30","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-aws","version_link":"https://launchpad.net/ubuntu/+source/linux-aws/4.15.0-1029.30","pocket":"security"}]},"type":"USN","cves_ids":["CVE-2018-18955","CVE-2018-6559"]},{"id":"USN-3836-1","title":"Linux kernel vulnerabilities","summary":"Several security issues were fixed in the Linux kernel.\n","instructions":"After a standard system update you need to reboot your computer to make\nall the necessary changes.\n\nATTENTION: Due to an unavoidable ABI change the kernel updates have\nbeen given a new version number, which requires you to recompile and\nreinstall all third party kernel modules you might have installed.\nUnless you manually uninstalled the standard kernel metapackages\n(e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual,\nlinux-powerpc), a standard system upgrade will automatically perform\nthis as well.\n","references":[],"published":"2018-12-03T19:40:09.309814","description":"Jann Horn discovered that the Linux kernel mishandles mapping UID or GID\nranges inside nested user namespaces in some situations. A local attacker\ncould use this to bypass access controls on resources outside the\nnamespace. (CVE-2018-18955)\n\nPhilipp Wendler discovered that the overlayfs implementation in the Linux\nkernel did not properly verify the directory contents permissions from\nwithin a unprivileged user namespace. A local attacker could use this to\nexpose sensitive information (protected file names). (CVE-2018-6559)\n","is_hidden":false,"release_packages":{"bionic":[{"name":"linux","version":"4.15.0-42.45","description":"Linux kernel","is_source":true},{"name":"linux-gcp","version":"4.15.0-1025.26","description":"Linux kernel for Google Cloud Platform (GCP) systems","is_source":true},{"name":"linux-kvm","version":"4.15.0-1027.27","description":"Linux kernel for cloud environments","is_source":true},{"name":"linux-raspi2","version":"4.15.0-1029.31","description":"Linux kernel for Raspberry Pi 2","is_source":true},{"name":"linux-image-4.15.0-1027-kvm","version":"4.15.0-1027.27","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-kvm","version_link":"https://launchpad.net/ubuntu/+source/linux-kvm/4.15.0-1027.27","pocket":"security"},{"name":"linux-image-4.15.0-1029-raspi2","version":"4.15.0-1029.31","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-raspi2","version_link":"https://launchpad.net/ubuntu/+source/linux-raspi2/4.15.0-1029.31","pocket":"security"},{"name":"linux-image-4.15.0-42-generic","version":"4.15.0-42.45","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/4.15.0-42.45","pocket":"security"},{"name":"linux-image-4.15.0-42-generic-lpae","version":"4.15.0-42.45","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/4.15.0-42.45","pocket":"security"},{"name":"linux-image-4.15.0-42-lowlatency","version":"4.15.0-42.45","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/4.15.0-42.45","pocket":"security"},{"name":"linux-image-4.15.0-42-snapdragon","version":"4.15.0-42.45","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/4.15.0-42.45","pocket":"security"},{"name":"linux-image-unsigned-4.15.0-1025-gcp","version":"4.15.0-1025.26","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-gcp","version_link":"https://launchpad.net/ubuntu/+source/linux-gcp/4.15.0-1025.26","pocket":"security"},{"name":"linux-image-unsigned-4.15.0-42-generic","version":"4.15.0-42.45","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/4.15.0-42.45","pocket":"security"},{"name":"linux-image-unsigned-4.15.0-42-lowlatency","version":"4.15.0-42.45","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/4.15.0-42.45","pocket":"security"}]},"type":"USN","cves_ids":["CVE-2018-18955","CVE-2018-6559"]},{"id":"USN-3836-2","title":"Linux kernel (HWE) vulnerabilities","summary":"Several security issues were fixed in the Linux kernel.\n","instructions":"After a standard system update you need to reboot your computer to make\nall the necessary changes.\n\nATTENTION: Due to an unavoidable ABI change the kernel updates have\nbeen given a new version number, which requires you to recompile and\nreinstall all third party kernel modules you might have installed.\nUnless you manually uninstalled the standard kernel metapackages\n(e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual,\nlinux-powerpc), a standard system upgrade will automatically perform\nthis as well.\n","references":[],"published":"2018-12-04T04:49:26.078666","description":"USN-3836-1 fixed vulnerabilities in the Linux kernel for Ubuntu 18.04\nLTS. This update provides the corresponding updates for the Linux\nHardware Enablement (HWE) kernel from Ubuntu 18.04 LTS for Ubuntu\n16.04 LTS.\n\nJann Horn discovered that the Linux kernel mishandles mapping UID or GID\nranges inside nested user namespaces in some situations. A local attacker\ncould use this to bypass access controls on resources outside the\nnamespace. (CVE-2018-18955)\n\nPhilipp Wendler discovered that the overlayfs implementation in the Linux\nkernel did not properly verify the directory contents permissions from\nwithin a unprivileged user namespace. A local attacker could use this to\nexpose sensitive information (protected file names). (CVE-2018-6559)\n","is_hidden":false,"release_packages":{"xenial":[{"name":"linux-gcp","version":"4.15.0-1025.26~16.04.1","description":"Linux kernel for Google Cloud Platform (GCP) systems","is_source":true},{"name":"linux-hwe","version":"4.15.0-42.45~16.04.1","description":"Linux hardware enablement (HWE) kernel","is_source":true},{"name":"linux-image-4.15.0-42-generic","version":"4.15.0-42.45~16.04.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-hwe","version_link":"https://launchpad.net/ubuntu/+source/linux-hwe/4.15.0-42.45~16.04.1","pocket":"security"},{"name":"linux-image-4.15.0-42-generic-lpae","version":"4.15.0-42.45~16.04.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-hwe","version_link":"https://launchpad.net/ubuntu/+source/linux-hwe/4.15.0-42.45~16.04.1","pocket":"security"},{"name":"linux-image-4.15.0-42-lowlatency","version":"4.15.0-42.45~16.04.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-hwe","version_link":"https://launchpad.net/ubuntu/+source/linux-hwe/4.15.0-42.45~16.04.1","pocket":"security"},{"name":"linux-image-unsigned-4.15.0-1025-gcp","version":"4.15.0-1025.26~16.04.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-gcp","version_link":"https://launchpad.net/ubuntu/+source/linux-gcp/4.15.0-1025.26~16.04.1","pocket":"security"},{"name":"linux-image-unsigned-4.15.0-42-generic","version":"4.15.0-42.45~16.04.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-hwe","version_link":"https://launchpad.net/ubuntu/+source/linux-hwe/4.15.0-42.45~16.04.1","pocket":"security"},{"name":"linux-image-unsigned-4.15.0-42-lowlatency","version":"4.15.0-42.45~16.04.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-hwe","version_link":"https://launchpad.net/ubuntu/+source/linux-hwe/4.15.0-42.45~16.04.1","pocket":"security"}]},"type":"USN","cves_ids":["CVE-2018-18955","CVE-2018-6559"]},{"id":"USN-3832-1","title":"Linux kernel (AWS) vulnerabilities","summary":"Several security issues were fixed in the Linux kernel.\n","instructions":"After a standard system update you need to reboot your computer to make\nall the necessary changes.\nXXX MAYBE WITH XXX\nATTENTION: Due to an unavoidable ABI change the kernel updates have\nbeen given a new version number, which requires you to recompile and\nreinstall all third party kernel modules you might have installed.\nUnless you manually uninstalled the standard kernel metapackages\n(e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual,\nlinux-powerpc), a standard system upgrade will automatically perform\nthis as well.\n","references":[],"published":"2018-11-30T06:19:57.353382","description":"Jann Horn discovered that the procfs file system implementation in the\nLinux kernel did not properly restrict the ability to inspect the kernel\nstack of an arbitrary task. A local attacker could use this to expose\nsensitive information. (CVE-2018-17972)\n\nJann Horn discovered that the mremap() system call in the Linux kernel did\nnot properly flush the TLB when completing, potentially leaving access to a\nphysical page after it has been released to the page allocator. A local\nattacker could use this to cause a denial of service (system crash), expose\nsensitive information, or possibly execute arbitrary code. (CVE-2018-18281)\n\nIt was discovered that the BPF verifier in the Linux kernel did not\ncorrectly compute numeric bounds in some situations. A local attacker could\nuse this to cause a denial of service (system crash) or possibly execute\narbitrary code. (CVE-2018-18445)\n\nDaniel Dadap discovered that the module loading implementation in the Linux\nkernel did not properly enforce signed module loading when booted with UEFI\nSecure Boot in some situations. A local privileged attacker could use this\nto execute untrusted code in the kernel. (CVE-2018-18653)\n\nJann Horn discovered that the Linux kernel mishandles mapping UID or GID\nranges inside nested user namespaces in some situations. A local attacker\ncould use this to bypass access controls on resources outside the\nnamespace. (CVE-2018-18955)\n\nPhilipp Wendler discovered that the overlayfs implementation in the Linux\nkernel did not properly verify the directory contents permissions from\nwithin a unprivileged user namespace. A local attacker could use this to\nexpose sensitive information (protected file names). (CVE-2018-6559)\n\n","is_hidden":false,"release_packages":{"cosmic":[{"name":"linux-aws","version":"4.18.0-1006.7","description":"Linux kernel for Amazon Web Services (AWS) systems","is_source":true},{"name":"linux-image-aws","version":"4.18.0.1006.6","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-aws","version_link":"https://launchpad.net/ubuntu/+source/linux-aws/4.18.0-1006.7"},{"name":"linux-image-4.18.0-1006-aws","version":"4.18.0-1006.7","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-aws","version_link":"https://launchpad.net/ubuntu/+source/linux-aws/4.18.0-1006.7"}]},"type":"USN","cves_ids":["CVE-2018-17972","CVE-2018-18281","CVE-2018-18445","CVE-2018-18653","CVE-2018-18955","CVE-2018-6559"]}]},{"id":"CVE-2018-18444","published":"2018-10-17T19:29:00","updated_at":"2025-08-25T22:50:56.118252+00:00","description":"\nmakeMultiView.cpp in exrmultiview in OpenEXR 2.3.0 has an out-of-bounds\nwrite, leading to an assertion failure or possibly unspecified other\nimpact.","ubuntu_description":"","notes":[{"author":"mdeslaur","note":"proposed patch in bug\n\nThe patch for this issue was dropped during the focal\ndevelopment cycle by mistake."}],"codename":null,"priority":"low","cvss3":8.8,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":8.8,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-4148-1","https://ubuntu.com/security/notices/USN-4339-1","https://www.cve.org/CVERecord?id=CVE-2018-18444"],"bugs":["https://github.com/openexr/openexr/issues/351"],"patches":{"openexr":["upstream: https://github.com/openexr/openexr/commit/4aa6a4e0fcd52b220c71807307b9139966c3644c","upstream: https://github.com/openexr/openexr/commit/6a41400b47d574a5fc6133b9a7139bcd7b59d585","upstream: https://github.com/openexr/openexr/commit/119eb2d4672e5c77a79929758f7e4c566f47c794","upstream: https://github.com/openexr/openexr/commit/45f9912e6cfa0617ec2054d96d1e1e73fad4a62a","upstream: https://github.com/openexr/openexr/commit/a7eec54765e9122b78a6c34bb9d5bf744631bea2","upstream: https://github.com/openexr/openexr/commit/ec64836c2312b13034149acab499c112bd289cd9"]},"tags":{},"packages":[{"name":"openexr","source":"https://ubuntu.com/security/cve?package=openexr","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=openexr","debian":"https://tracker.debian.org/pkg/openexr","statuses":[{"release_codename":"bionic","status":"released","description":"2.2.0-11.1ubuntu1.1","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"disco","status":"released","description":"2.2.1-4.1ubuntu0.1","component":null,"pocket":"security"},{"release_codename":"eoan","status":"released","description":"2.2.1-4.1ubuntu0.1","component":null,"pocket":"security"},{"release_codename":"focal","status":"released","description":"2.3.0-6ubuntu0.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"2.2.0-10ubuntu2.1","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was deferred [2019-06-27]","component":null,"pocket":"security"}]}],"notices_ids":["USN-4148-1","USN-4339-1"],"notices":[{"id":"USN-4148-1","title":"OpenEXR vulnerabilities","summary":"Several security issues were fixed in OpenEXR.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2019-10-07T11:22:21.076255","description":"It was discovered that OpenEXR incorrectly handled certain malformed EXR\nimage files. If a user were tricked into opening a crafted EXR image file,\na remote attacker could cause a denial of service, or possibly execute\narbitrary code. This issue only affected Ubuntu 16.04 LTS. (CVE-2017-12596)\n\nBrandon Perry discovered that OpenEXR incorrectly handled certain malformed\nEXR image files. If a user were tricked into opening a crafted EXR image\nfile, a remote attacker could cause a denial of service, or possibly\nexecute arbitrary code. This issue only affected Ubuntu 16.04 LTS.\n(CVE-2017-9110, CVE-2017-9112, CVE-2017-9116)\n\nBrandon Perry discovered that OpenEXR incorrectly handled certain malformed\nEXR image files. If a user were tricked into opening a crafted EXR image\nfile, a remote attacker could cause a denial of service, or possibly\nexecute arbitrary code. (CVE-2017-9111, CVE-2017-9113, CVE-2017-9115)\n\nTan Jie discovered that OpenEXR incorrectly handled certain malformed EXR\nimage files. If a user were tricked into opening a crafted EXR image file,\na remote attacker could cause a denial of service, or possibly execute\narbitrary code. (CVE-2018-18444)\n","is_hidden":false,"release_packages":{"bionic":[{"name":"openexr","version":"2.2.0-11.1ubuntu1.1","description":"command-line tools for the OpenEXR image format","is_source":true},{"name":"libopenexr-dev","version":"2.2.0-11.1ubuntu1.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openexr","version_link":"https://launchpad.net/ubuntu/+source/openexr/2.2.0-11.1ubuntu1.1","pocket":"security"},{"name":"libopenexr22","version":"2.2.0-11.1ubuntu1.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openexr","version_link":"https://launchpad.net/ubuntu/+source/openexr/2.2.0-11.1ubuntu1.1","pocket":"security"},{"name":"openexr","version":"2.2.0-11.1ubuntu1.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openexr","version_link":"https://launchpad.net/ubuntu/+source/openexr/2.2.0-11.1ubuntu1.1","pocket":"security"},{"name":"openexr-doc","version":"2.2.0-11.1ubuntu1.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openexr","version_link":"https://launchpad.net/ubuntu/+source/openexr/2.2.0-11.1ubuntu1.1","pocket":"security"}],"disco":[{"name":"openexr","version":"2.2.1-4.1ubuntu0.1","description":"command-line tools for the OpenEXR image format","is_source":true},{"name":"libopenexr-dev","version":"2.2.1-4.1ubuntu0.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openexr","version_link":"https://launchpad.net/ubuntu/+source/openexr/2.2.1-4.1ubuntu0.1"},{"name":"libopenexr23","version":"2.2.1-4.1ubuntu0.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openexr","version_link":"https://launchpad.net/ubuntu/+source/openexr/2.2.1-4.1ubuntu0.1"},{"name":"openexr","version":"2.2.1-4.1ubuntu0.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openexr","version_link":"https://launchpad.net/ubuntu/+source/openexr/2.2.1-4.1ubuntu0.1"},{"name":"openexr-doc","version":"2.2.1-4.1ubuntu0.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openexr","version_link":"https://launchpad.net/ubuntu/+source/openexr/2.2.1-4.1ubuntu0.1"}],"xenial":[{"name":"openexr","version":"2.2.0-10ubuntu2.1","description":"command-line tools for the OpenEXR image format","is_source":true},{"name":"libopenexr-dev","version":"2.2.0-10ubuntu2.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openexr","version_link":"https://launchpad.net/ubuntu/+source/openexr/2.2.0-10ubuntu2.1","pocket":"security"},{"name":"libopenexr22","version":"2.2.0-10ubuntu2.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openexr","version_link":"https://launchpad.net/ubuntu/+source/openexr/2.2.0-10ubuntu2.1","pocket":"security"},{"name":"openexr","version":"2.2.0-10ubuntu2.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openexr","version_link":"https://launchpad.net/ubuntu/+source/openexr/2.2.0-10ubuntu2.1","pocket":"security"},{"name":"openexr-doc","version":"2.2.0-10ubuntu2.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openexr","version_link":"https://launchpad.net/ubuntu/+source/openexr/2.2.0-10ubuntu2.1","pocket":"security"}]},"type":"USN","cves_ids":["CVE-2017-12596","CVE-2017-9110","CVE-2017-9111","CVE-2017-9112","CVE-2017-9113","CVE-2017-9115","CVE-2017-9116","CVE-2018-18444"]},{"id":"USN-4339-1","title":"OpenEXR vulnerabilities","summary":"Several security issues were fixed in OpenEXR.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2020-04-27T12:16:59.787907","description":"Brandon Perry discovered that OpenEXR incorrectly handled certain malformed\nEXR image files. If a user were tricked into opening a crafted EXR image\nfile, a remote attacker could cause a denial of service, or possibly\nexecute arbitrary code. This issue only applied to Ubuntu 20.04 LTS.\n(CVE-2017-9111, CVE-2017-9113, CVE-2017-9115)\n\nTan Jie discovered that OpenEXR incorrectly handled certain malformed EXR\nimage files. If a user were tricked into opening a crafted EXR image file,\na remote attacker could cause a denial of service, or possibly execute\narbitrary code. This issue only applied to Ubuntu 20.04 LTS.\n(CVE-2018-18444)\n\nSamuel Groß discovered that OpenEXR incorrectly handled certain malformed\nEXR image files. If a user were tricked into opening a crafted EXR image\nfile, a remote attacker could cause a denial of service, or possibly\nexecute arbitrary code. (CVE-2020-11758, CVE-2020-11759, CVE-2020-11760,\nCVE-2020-11761, CVE-2020-11762, CVE-2020-11763, CVE-2020-11764)\n\nIt was discovered that OpenEXR incorrectly handled certain malformed EXR\nimage files. If a user were tricked into opening a crafted EXR image\nfile, a remote attacker could cause a denial of service. (CVE-2020-11765)\n","is_hidden":false,"release_packages":{"bionic":[{"name":"openexr","version":"2.2.0-11.1ubuntu1.2","description":"tools for the OpenEXR image format","is_source":true},{"name":"libopenexr-dev","version":"2.2.0-11.1ubuntu1.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openexr","version_link":"https://launchpad.net/ubuntu/+source/openexr/2.2.0-11.1ubuntu1.2","pocket":"security"},{"name":"libopenexr22","version":"2.2.0-11.1ubuntu1.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openexr","version_link":"https://launchpad.net/ubuntu/+source/openexr/2.2.0-11.1ubuntu1.2","pocket":"security"},{"name":"openexr","version":"2.2.0-11.1ubuntu1.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openexr","version_link":"https://launchpad.net/ubuntu/+source/openexr/2.2.0-11.1ubuntu1.2","pocket":"security"},{"name":"openexr-doc","version":"2.2.0-11.1ubuntu1.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openexr","version_link":"https://launchpad.net/ubuntu/+source/openexr/2.2.0-11.1ubuntu1.2","pocket":"security"}],"eoan":[{"name":"openexr","version":"2.2.1-4.1ubuntu1.1","description":"tools for the OpenEXR image format","is_source":true},{"name":"libopenexr-dev","version":"2.2.1-4.1ubuntu1.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openexr","version_link":"https://launchpad.net/ubuntu/+source/openexr/2.2.1-4.1ubuntu1.1"},{"name":"libopenexr23","version":"2.2.1-4.1ubuntu1.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openexr","version_link":"https://launchpad.net/ubuntu/+source/openexr/2.2.1-4.1ubuntu1.1"},{"name":"openexr","version":"2.2.1-4.1ubuntu1.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openexr","version_link":"https://launchpad.net/ubuntu/+source/openexr/2.2.1-4.1ubuntu1.1"},{"name":"openexr-doc","version":"2.2.1-4.1ubuntu1.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openexr","version_link":"https://launchpad.net/ubuntu/+source/openexr/2.2.1-4.1ubuntu1.1"}],"focal":[{"name":"openexr","version":"2.3.0-6ubuntu0.1","description":"tools for the OpenEXR image format","is_source":true},{"name":"libopenexr-dev","version":"2.3.0-6ubuntu0.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openexr","version_link":"https://launchpad.net/ubuntu/+source/openexr/2.3.0-6ubuntu0.1","pocket":"security"},{"name":"libopenexr24","version":"2.3.0-6ubuntu0.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openexr","version_link":"https://launchpad.net/ubuntu/+source/openexr/2.3.0-6ubuntu0.1","pocket":"security"},{"name":"openexr","version":"2.3.0-6ubuntu0.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openexr","version_link":"https://launchpad.net/ubuntu/+source/openexr/2.3.0-6ubuntu0.1","pocket":"security"},{"name":"openexr-doc","version":"2.3.0-6ubuntu0.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openexr","version_link":"https://launchpad.net/ubuntu/+source/openexr/2.3.0-6ubuntu0.1","pocket":"security"}],"xenial":[{"name":"openexr","version":"2.2.0-10ubuntu2.2","description":"tools for the OpenEXR image format","is_source":true},{"name":"libopenexr-dev","version":"2.2.0-10ubuntu2.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openexr","version_link":"https://launchpad.net/ubuntu/+source/openexr/2.2.0-10ubuntu2.2","pocket":"security"},{"name":"libopenexr22","version":"2.2.0-10ubuntu2.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openexr","version_link":"https://launchpad.net/ubuntu/+source/openexr/2.2.0-10ubuntu2.2","pocket":"security"},{"name":"openexr","version":"2.2.0-10ubuntu2.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openexr","version_link":"https://launchpad.net/ubuntu/+source/openexr/2.2.0-10ubuntu2.2","pocket":"security"},{"name":"openexr-doc","version":"2.2.0-10ubuntu2.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openexr","version_link":"https://launchpad.net/ubuntu/+source/openexr/2.2.0-10ubuntu2.2","pocket":"security"}]},"type":"USN","cves_ids":["CVE-2017-9111","CVE-2017-9113","CVE-2017-9115","CVE-2018-18444","CVE-2020-11758","CVE-2020-11759","CVE-2020-11760","CVE-2020-11761","CVE-2020-11762","CVE-2020-11763","CVE-2020-11764","CVE-2020-11765"]}]},{"id":"CVE-2018-18443","published":"2018-10-17T19:29:00","updated_at":"2025-08-25T22:50:56.118252+00:00","description":"\nOpenEXR 2.3.0 has a memory leak in ThreadPool in\nIlmBase/IlmThread/IlmThreadPool.cpp, as demonstrated by exrmultiview.","ubuntu_description":"","notes":[],"codename":null,"priority":"negligible","cvss3":4.3,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"LOW","baseScore":4.3,"baseSeverity":"MEDIUM"}}},"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2018-18443"],"bugs":["https://github.com/openexr/openexr/issues/350"],"patches":{"openexr":["upstream: https://github.com/openexr/openexr/commit/adbc1900cb9d25fcc4df008d4008b781cf2fa4f8"]},"tags":{},"packages":[{"name":"openexr","source":"https://ubuntu.com/security/cve?package=openexr","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=openexr","debian":"https://tracker.debian.org/pkg/openexr","statuses":[{"release_codename":"bionic","status":"not-affected","description":"code not present","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"disco","status":"not-affected","description":"code not present","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"code not present","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was deferred [2019-05-27]","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2018-18408","published":"2018-10-17T04:29:00","updated_at":"2025-08-25T22:50:56.118252+00:00","description":"\nA use-after-free was discovered in the tcpbridge binary of Tcpreplay 4.3.0\nbeta1. The issue gets triggered in the function post_args() at tcpbridge.c,\ncausing a denial of service or possibly unspecified other impact.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":9.8,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":9.8,"baseSeverity":"CRITICAL"}}},"status":"active","mitigation":"","references":["https://github.com/appneta/tcpreplay/issues/489","https://github.com/SegfaultMasters/covering360/blob/master/tcpreplay/README.md#use-after-free-in-post_args","https://ubuntu.com/security/notices/USN-5205-1","https://www.cve.org/CVERecord?id=CVE-2018-18408"],"bugs":[""],"patches":{"tcpreplay":["upstream: https://github.com/appneta/tcpreplay/pull/497/commits/59dc76a1d641b1a6b22fd7cd409bee6e0a015616"]},"tags":{},"packages":[{"name":"tcpreplay","source":"https://ubuntu.com/security/cve?package=tcpreplay","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=tcpreplay","debian":"https://tracker.debian.org/pkg/tcpreplay","statuses":[{"release_codename":"cosmic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"4.3.2-1build1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.3.0","component":null,"pocket":"security"},{"release_codename":"groovy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hirsute","status":"not-affected","description":"4.3.3-2","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"disco","status":"not-affected","description":"4.3.1-2","component":null,"pocket":"security"},{"release_codename":"eoan","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"impish","status":"not-affected","description":"4.3.3-2","component":null,"pocket":"security"},{"release_codename":"kinetic","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"lunar","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"3.4.4-2+deb8u1ubuntu0.1~esm2","component":null,"pocket":"esm-apps"},{"release_codename":"bionic","status":"released","description":"4.2.6-1ubuntu0.1~esm2","component":null,"pocket":"esm-apps"},{"release_codename":"trusty","status":"DNE","description":"trusty was needed","component":null,"pocket":"security"}]}],"notices_ids":["USN-5205-1"],"notices":[{"id":"USN-5205-1","title":"Tcpreplay vulnerabilities","summary":"Several security issues were fixed in Tcpreplay.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2022-10-04T11:15:02.361843","description":"It was discovered that Tcpreplay incorrectly handled certain specially crafted\npacket capture input when processed by tcpprep. An attacker could possibly use\nthis issue to cause a denial of service. This issue only affected\nUbuntu 18.04 ESM. (CVE-2018-13112)\n\nIt was discovered that Tcpreplay incorrectly handled certain specially crafted\npacket capture input. An attacker could possibly use this issue to cause a denial\nof service or expose sensitive information. This issue only affected\nUbuntu 16.04 ESM and Ubuntu 18.04 ESM. (CVE-2018-17580, CVE-2018-17582)\n\nIt was discovered that Tcpreplay incorrectly handled certain specially crafted\npacket capture input. An attacker could possibly use this issue to cause a denial\nof service. This issue only affected Ubuntu 16.04 ESM and Ubuntu 18.04 ESM.\n(CVE-2018-17974, CVE-2018-18407)\n\nIt was discovered that a use-after-free existed in Tcpreplay in the tcpbridge\nbinary. An attacker could possibly use this issue to cause a denial of service.\nThis issue only affected Ubuntu 16.04 ESM and Ubuntu 18.04 ESM. (CVE-2018-18408)\n\nIt was discovered that Tcpreplay incorrectly handled certain specially crafted\npacket capture input. An attacker could possibly use this issue to cause a\ndenial of service. This issue only affected Ubuntu 16.04 ESM, Ubuntu 18.04 ESM\nand Ubuntu 20.04 ESM. (CVE-2018-20552, CVE-2018-20553)\n\nIt was discovered that a heap-based buffer over-read that existed in Tcpreplay\ncaused an application crash when tcprewrite or tcpreplay-edit received specially\ncrafted packet capture input. An attacker could possibly use this to cause a\ndenial of service or to expose sensitive information. This issue only affected\nUbuntu 18.04 ESM and Ubuntu 20.04 ESM. (CVE-2020-12740)\n\nIt was discovered that Tcpreplay incorrectly handled certain specially crafted\npacket capture input when processed by tcpprep. An attacker could possibly use\nthis issue to cause a denial of service. This issue only affected\nUbuntu 18.04 ESM and Ubuntu 20.04 ESM. (CVE-2020-24265, CVE-2020-24266)\n\nIt was discovered that Tcpreplay incorrectly handled certain specially crafted\npacket capture input when processed by tcprewrite. An attacker could possibly\nuse this issue to cause a denial of service. This issue only affected Ubuntu\n22.04 ESM. (CVE-2022-27416)\n\nIt was discovered that Tcpreplay did not properly manage memory under certain\ncircumstances. If a user were tricked into opening a specially crafted packet\ncapture file, a remote attacker could possibly use this issue to cause\nTcpreplay crash, resulting in a denial of service, or possibly read sensitive\ndata. This issue only affected Ubuntu 18.04 ESM, Ubuntu 20.04 ESM and Ubuntu\n22.04 ESM. (CVE-2022-28487)\n","is_hidden":false,"release_packages":{"jammy":[{"name":"tcpreplay","version":"4.3.4-1ubuntu0.1~esm1","description":"Tool to replay saved tcpdump files at arbitrary speeds","is_source":true},{"name":"tcpreplay","version":"4.3.4-1ubuntu0.1~esm1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/tcpreplay","version_link":null,"pocket":"esm-apps"}],"focal":[{"name":"tcpreplay","version":"4.3.2-1ubuntu0.1~esm2","description":"Tool to replay saved tcpdump files at arbitrary speeds","is_source":true},{"name":"tcpreplay","version":"4.3.2-1ubuntu0.1~esm2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/tcpreplay","version_link":null,"pocket":"esm-apps"}],"bionic":[{"name":"tcpreplay","version":"4.2.6-1ubuntu0.1~esm4","description":"Tool to replay saved tcpdump files at arbitrary speeds","is_source":true},{"name":"tcpreplay","version":"4.2.6-1ubuntu0.1~esm4","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/tcpreplay","version_link":null,"pocket":"esm-apps"}],"xenial":[{"name":"tcpreplay","version":"3.4.4-2+deb8u1ubuntu0.1~esm2","description":"Tool to replay saved tcpdump files at arbitrary speeds","is_source":true},{"name":"tcpreplay","version":"3.4.4-2+deb8u1ubuntu0.1~esm2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/tcpreplay","version_link":null,"pocket":"esm-apps"}]},"type":"USN","cves_ids":["CVE-2022-27416","CVE-2022-28487","CVE-2018-17580","CVE-2018-17974","CVE-2020-24266","CVE-2020-12740","CVE-2018-18407","CVE-2018-20553","CVE-2018-18408","CVE-2018-13112","CVE-2020-24265","CVE-2018-17582","CVE-2018-20552"]}]},{"id":"CVE-2018-18407","published":"2018-10-17T04:29:00","updated_at":"2025-08-25T22:50:51.182431+00:00","description":"\nA heap-based buffer over-read was discovered in the tcpreplay-edit binary\nof Tcpreplay 4.3.0 beta1, during the incremental checksum operation. The\nissue gets triggered in the function csum_replace4() in\nincremental_checksum.h, causing a denial of service.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":5.5,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH","baseScore":5.5,"baseSeverity":"MEDIUM"}}},"status":"active","mitigation":"","references":["https://github.com/appneta/tcpreplay/issues/488","https://github.com/SegfaultMasters/covering360/blob/master/tcpreplay/README.md#user-content-heap-overflow-in-csum_replace4","https://ubuntu.com/security/notices/USN-5205-1","https://www.cve.org/CVERecord?id=CVE-2018-18407"],"bugs":[""],"patches":{"tcpreplay":["upstream: https://github.com/appneta/tcpreplay/pull/496/commits/1d7561a4d542842a1aeabf55bfd4aaf88b3a1071"]},"tags":{},"packages":[{"name":"tcpreplay","source":"https://ubuntu.com/security/cve?package=tcpreplay","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=tcpreplay","debian":"https://tracker.debian.org/pkg/tcpreplay","statuses":[{"release_codename":"cosmic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"disco","status":"not-affected","description":"4.3.1-2","component":null,"pocket":"security"},{"release_codename":"eoan","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"4.3.2-1build1","component":null,"pocket":"security"},{"release_codename":"hirsute","status":"not-affected","description":"4.3.3-2","component":null,"pocket":"security"},{"release_codename":"impish","status":"not-affected","description":"4.3.3-2","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.3.0","component":null,"pocket":"security"},{"release_codename":"groovy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"kinetic","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"lunar","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"3.4.4-2+deb8u1ubuntu0.1~esm1","component":null,"pocket":"esm-apps"},{"release_codename":"bionic","status":"released","description":"4.2.6-1ubuntu0.1~esm1","component":null,"pocket":"esm-apps"},{"release_codename":"trusty","status":"DNE","description":"trusty was needed","component":null,"pocket":"security"}]}],"notices_ids":["USN-5205-1"],"notices":[{"id":"USN-5205-1","title":"Tcpreplay vulnerabilities","summary":"Several security issues were fixed in Tcpreplay.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2022-10-04T11:15:02.361843","description":"It was discovered that Tcpreplay incorrectly handled certain specially crafted\npacket capture input when processed by tcpprep. An attacker could possibly use\nthis issue to cause a denial of service. This issue only affected\nUbuntu 18.04 ESM. (CVE-2018-13112)\n\nIt was discovered that Tcpreplay incorrectly handled certain specially crafted\npacket capture input. An attacker could possibly use this issue to cause a denial\nof service or expose sensitive information. This issue only affected\nUbuntu 16.04 ESM and Ubuntu 18.04 ESM. (CVE-2018-17580, CVE-2018-17582)\n\nIt was discovered that Tcpreplay incorrectly handled certain specially crafted\npacket capture input. An attacker could possibly use this issue to cause a denial\nof service. This issue only affected Ubuntu 16.04 ESM and Ubuntu 18.04 ESM.\n(CVE-2018-17974, CVE-2018-18407)\n\nIt was discovered that a use-after-free existed in Tcpreplay in the tcpbridge\nbinary. An attacker could possibly use this issue to cause a denial of service.\nThis issue only affected Ubuntu 16.04 ESM and Ubuntu 18.04 ESM. (CVE-2018-18408)\n\nIt was discovered that Tcpreplay incorrectly handled certain specially crafted\npacket capture input. An attacker could possibly use this issue to cause a\ndenial of service. This issue only affected Ubuntu 16.04 ESM, Ubuntu 18.04 ESM\nand Ubuntu 20.04 ESM. (CVE-2018-20552, CVE-2018-20553)\n\nIt was discovered that a heap-based buffer over-read that existed in Tcpreplay\ncaused an application crash when tcprewrite or tcpreplay-edit received specially\ncrafted packet capture input. An attacker could possibly use this to cause a\ndenial of service or to expose sensitive information. This issue only affected\nUbuntu 18.04 ESM and Ubuntu 20.04 ESM. (CVE-2020-12740)\n\nIt was discovered that Tcpreplay incorrectly handled certain specially crafted\npacket capture input when processed by tcpprep. An attacker could possibly use\nthis issue to cause a denial of service. This issue only affected\nUbuntu 18.04 ESM and Ubuntu 20.04 ESM. (CVE-2020-24265, CVE-2020-24266)\n\nIt was discovered that Tcpreplay incorrectly handled certain specially crafted\npacket capture input when processed by tcprewrite. An attacker could possibly\nuse this issue to cause a denial of service. This issue only affected Ubuntu\n22.04 ESM. (CVE-2022-27416)\n\nIt was discovered that Tcpreplay did not properly manage memory under certain\ncircumstances. If a user were tricked into opening a specially crafted packet\ncapture file, a remote attacker could possibly use this issue to cause\nTcpreplay crash, resulting in a denial of service, or possibly read sensitive\ndata. This issue only affected Ubuntu 18.04 ESM, Ubuntu 20.04 ESM and Ubuntu\n22.04 ESM. (CVE-2022-28487)\n","is_hidden":false,"release_packages":{"jammy":[{"name":"tcpreplay","version":"4.3.4-1ubuntu0.1~esm1","description":"Tool to replay saved tcpdump files at arbitrary speeds","is_source":true},{"name":"tcpreplay","version":"4.3.4-1ubuntu0.1~esm1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/tcpreplay","version_link":null,"pocket":"esm-apps"}],"focal":[{"name":"tcpreplay","version":"4.3.2-1ubuntu0.1~esm2","description":"Tool to replay saved tcpdump files at arbitrary speeds","is_source":true},{"name":"tcpreplay","version":"4.3.2-1ubuntu0.1~esm2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/tcpreplay","version_link":null,"pocket":"esm-apps"}],"bionic":[{"name":"tcpreplay","version":"4.2.6-1ubuntu0.1~esm4","description":"Tool to replay saved tcpdump files at arbitrary speeds","is_source":true},{"name":"tcpreplay","version":"4.2.6-1ubuntu0.1~esm4","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/tcpreplay","version_link":null,"pocket":"esm-apps"}],"xenial":[{"name":"tcpreplay","version":"3.4.4-2+deb8u1ubuntu0.1~esm2","description":"Tool to replay saved tcpdump files at arbitrary speeds","is_source":true},{"name":"tcpreplay","version":"3.4.4-2+deb8u1ubuntu0.1~esm2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/tcpreplay","version_link":null,"pocket":"esm-apps"}]},"type":"USN","cves_ids":["CVE-2022-27416","CVE-2022-28487","CVE-2018-17580","CVE-2018-17974","CVE-2020-24266","CVE-2020-12740","CVE-2018-18407","CVE-2018-20553","CVE-2018-18408","CVE-2018-13112","CVE-2020-24265","CVE-2018-17582","CVE-2018-20552"]}]},{"id":"CVE-2018-3298","published":"2018-10-17T01:31:00","updated_at":"2025-08-26T12:09:19.592330+00:00","description":"\nVulnerability in the Oracle VM VirtualBox component of Oracle\nVirtualization (subcomponent: Core). The supported version that is affected\nis Prior to 5.2.20. Easily exploitable vulnerability allows unauthenticated\nattacker with logon to the infrastructure where Oracle VM VirtualBox\nexecutes to compromise Oracle VM VirtualBox. Successful attacks require\nhuman interaction from a person other than the attacker and while the\nvulnerability is in Oracle VM VirtualBox, attacks may significantly impact\nadditional products. Successful attacks of this vulnerability can result in\ntakeover of Oracle VM VirtualBox. CVSS 3.0 Base Score 8.6 (Confidentiality,\nIntegrity and Availability impacts). CVSS Vector:\n(CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H).","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":8.6,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"CHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":8.6,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["http://www.oracle.com/technetwork/security-advisory/cpuoct2018-4428296.html","http://www.securitytracker.com/id/1041887","https://www.cve.org/CVERecord?id=CVE-2018-3298"],"bugs":[""],"patches":{"virtualbox":[]},"tags":{},"packages":[{"name":"virtualbox","source":"https://ubuntu.com/security/cve?package=virtualbox","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=virtualbox","debian":"https://tracker.debian.org/pkg/virtualbox","statuses":[{"release_codename":"xenial","status":"needed","description":"","component":null,"pocket":"security"},{"release_codename":"impish","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"groovy","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"lunar","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"bionic","status":"needed","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"disco","status":"not-affected","description":"6.0.6-dfsg-1","component":null,"pocket":"security"},{"release_codename":"eoan","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"hirsute","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"kinetic","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"5.2.20-dfsg-1","component":null,"pocket":"security"},{"release_codename":"mantic","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"noble","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"oracular","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"plucky","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was needs-triage","component":null,"pocket":"security"},{"release_codename":"resolute","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"questing","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2018-3297","published":"2018-10-17T01:31:00","updated_at":"2025-08-26T12:09:19.592330+00:00","description":"\nVulnerability in the Oracle VM VirtualBox component of Oracle\nVirtualization (subcomponent: Core). The supported version that is affected\nis Prior to 5.2.20. Easily exploitable vulnerability allows unauthenticated\nattacker with logon to the infrastructure where Oracle VM VirtualBox\nexecutes to compromise Oracle VM VirtualBox. Successful attacks require\nhuman interaction from a person other than the attacker and while the\nvulnerability is in Oracle VM VirtualBox, attacks may significantly impact\nadditional products. Successful attacks of this vulnerability can result in\ntakeover of Oracle VM VirtualBox. CVSS 3.0 Base Score 8.6 (Confidentiality,\nIntegrity and Availability impacts). CVSS Vector:\n(CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H).","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":8.6,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"CHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":8.6,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["http://www.oracle.com/technetwork/security-advisory/cpuoct2018-4428296.html","http://www.securitytracker.com/id/1041887","https://www.cve.org/CVERecord?id=CVE-2018-3297"],"bugs":[""],"patches":{"virtualbox":[]},"tags":{},"packages":[{"name":"virtualbox","source":"https://ubuntu.com/security/cve?package=virtualbox","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=virtualbox","debian":"https://tracker.debian.org/pkg/virtualbox","statuses":[{"release_codename":"xenial","status":"needed","description":"","component":null,"pocket":"security"},{"release_codename":"impish","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"groovy","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"hirsute","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"lunar","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"bionic","status":"needed","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"disco","status":"not-affected","description":"6.0.6-dfsg-1","component":null,"pocket":"security"},{"release_codename":"eoan","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"kinetic","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"5.2.20-dfsg-1","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was needs-triage","component":null,"pocket":"security"},{"release_codename":"mantic","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"noble","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"oracular","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"plucky","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"questing","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"resolute","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2018-3296","published":"2018-10-17T01:31:00","updated_at":"2025-08-26T12:09:19.592330+00:00","description":"\nVulnerability in the Oracle VM VirtualBox component of Oracle\nVirtualization (subcomponent: Core). The supported version that is affected\nis Prior to 5.2.20. Easily exploitable vulnerability allows unauthenticated\nattacker with logon to the infrastructure where Oracle VM VirtualBox\nexecutes to compromise Oracle VM VirtualBox. Successful attacks require\nhuman interaction from a person other than the attacker and while the\nvulnerability is in Oracle VM VirtualBox, attacks may significantly impact\nadditional products. Successful attacks of this vulnerability can result in\ntakeover of Oracle VM VirtualBox. CVSS 3.0 Base Score 8.6 (Confidentiality,\nIntegrity and Availability impacts). CVSS Vector:\n(CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H).","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":8.6,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"CHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":8.6,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["http://www.oracle.com/technetwork/security-advisory/cpuoct2018-4428296.html","http://www.securitytracker.com/id/1041887","https://www.cve.org/CVERecord?id=CVE-2018-3296"],"bugs":[""],"patches":{"virtualbox":[]},"tags":{},"packages":[{"name":"virtualbox","source":"https://ubuntu.com/security/cve?package=virtualbox","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=virtualbox","debian":"https://tracker.debian.org/pkg/virtualbox","statuses":[{"release_codename":"xenial","status":"needed","description":"","component":null,"pocket":"security"},{"release_codename":"impish","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"groovy","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"hirsute","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"lunar","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"bionic","status":"needed","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"disco","status":"not-affected","description":"6.0.6-dfsg-1","component":null,"pocket":"security"},{"release_codename":"eoan","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"kinetic","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"5.2.20-dfsg-1","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was needs-triage","component":null,"pocket":"security"},{"release_codename":"mantic","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"noble","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"oracular","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"plucky","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"questing","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"resolute","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2018-3295","published":"2018-10-17T01:31:00","updated_at":"2025-08-26T12:09:19.592330+00:00","description":"\nVulnerability in the Oracle VM VirtualBox component of Oracle\nVirtualization (subcomponent: Core). The supported version that is affected\nis Prior to 5.2.20. Easily exploitable vulnerability allows unauthenticated\nattacker with logon to the infrastructure where Oracle VM VirtualBox\nexecutes to compromise Oracle VM VirtualBox. Successful attacks require\nhuman interaction from a person other than the attacker and while the\nvulnerability is in Oracle VM VirtualBox, attacks may significantly impact\nadditional products. Successful attacks of this vulnerability can result in\ntakeover of Oracle VM VirtualBox. CVSS 3.0 Base Score 8.6 (Confidentiality,\nIntegrity and Availability impacts). CVSS Vector:\n(CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H).","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":8.6,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"CHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":8.6,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["http://www.oracle.com/technetwork/security-advisory/cpuoct2018-4428296.html","http://www.securitytracker.com/id/1041887","https://www.cve.org/CVERecord?id=CVE-2018-3295"],"bugs":[""],"patches":{"virtualbox":[]},"tags":{},"packages":[{"name":"virtualbox","source":"https://ubuntu.com/security/cve?package=virtualbox","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=virtualbox","debian":"https://tracker.debian.org/pkg/virtualbox","statuses":[{"release_codename":"xenial","status":"needed","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"needed","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"disco","status":"not-affected","description":"6.0.6-dfsg-1","component":null,"pocket":"security"},{"release_codename":"eoan","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"5.2.20-dfsg-1","component":null,"pocket":"security"},{"release_codename":"impish","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"groovy","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"hirsute","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"kinetic","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"lunar","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"mantic","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"noble","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"oracular","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"plucky","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was needs-triage","component":null,"pocket":"security"},{"release_codename":"resolute","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"questing","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2018-3294","published":"2018-10-17T01:31:00","updated_at":"2025-08-26T12:09:19.592330+00:00","description":"\nVulnerability in the Oracle VM VirtualBox component of Oracle\nVirtualization (subcomponent: Core). The supported version that is affected\nis Prior to 5.2.20. Easily exploitable vulnerability allows low privileged\nattacker with network access via VRDP to compromise Oracle VM VirtualBox.\nSuccessful attacks require human interaction from a person other than the\nattacker and while the vulnerability is in Oracle VM VirtualBox, attacks\nmay significantly impact additional products. Successful attacks of this\nvulnerability can result in takeover of Oracle VM VirtualBox. CVSS 3.0 Base\nScore 9.0 (Confidentiality, Integrity and Availability impacts). CVSS\nVector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:H).","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":9.0,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:H","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"REQUIRED","scope":"CHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":9.0,"baseSeverity":"CRITICAL"}}},"status":"active","mitigation":"","references":["http://www.oracle.com/technetwork/security-advisory/cpuoct2018-4428296.html","http://www.securitytracker.com/id/1041887","https://www.cve.org/CVERecord?id=CVE-2018-3294"],"bugs":[""],"patches":{"virtualbox":[]},"tags":{},"packages":[{"name":"virtualbox","source":"https://ubuntu.com/security/cve?package=virtualbox","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=virtualbox","debian":"https://tracker.debian.org/pkg/virtualbox","statuses":[{"release_codename":"xenial","status":"needed","description":"","component":null,"pocket":"security"},{"release_codename":"disco","status":"not-affected","description":"6.0.6-dfsg-1","component":null,"pocket":"security"},{"release_codename":"eoan","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"impish","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"kinetic","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"lunar","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"bionic","status":"needed","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"groovy","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"hirsute","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"5.2.20-dfsg-1","component":null,"pocket":"security"},{"release_codename":"mantic","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"noble","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"oracular","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"resolute","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"plucky","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was needs-triage","component":null,"pocket":"security"},{"release_codename":"questing","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2018-3293","published":"2018-10-17T01:31:00","updated_at":"2025-08-26T12:09:19.592330+00:00","description":"\nVulnerability in the Oracle VM VirtualBox component of Oracle\nVirtualization (subcomponent: Core). The supported version that is affected\nis Prior to 5.2.20. Easily exploitable vulnerability allows unauthenticated\nattacker with logon to the infrastructure where Oracle VM VirtualBox\nexecutes to compromise Oracle VM VirtualBox. Successful attacks require\nhuman interaction from a person other than the attacker and while the\nvulnerability is in Oracle VM VirtualBox, attacks may significantly impact\nadditional products. Successful attacks of this vulnerability can result in\ntakeover of Oracle VM VirtualBox. CVSS 3.0 Base Score 8.6 (Confidentiality,\nIntegrity and Availability impacts). CVSS Vector:\n(CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H).","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":8.6,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"CHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":8.6,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["http://www.oracle.com/technetwork/security-advisory/cpuoct2018-4428296.html","http://www.securitytracker.com/id/1041887","https://www.cve.org/CVERecord?id=CVE-2018-3293"],"bugs":[""],"patches":{"virtualbox":[]},"tags":{},"packages":[{"name":"virtualbox","source":"https://ubuntu.com/security/cve?package=virtualbox","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=virtualbox","debian":"https://tracker.debian.org/pkg/virtualbox","statuses":[{"release_codename":"xenial","status":"needed","description":"","component":null,"pocket":"security"},{"release_codename":"impish","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"kinetic","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"lunar","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"bionic","status":"needed","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"disco","status":"not-affected","description":"6.0.6-dfsg-1","component":null,"pocket":"security"},{"release_codename":"eoan","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"groovy","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"hirsute","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"5.2.20-dfsg-1","component":null,"pocket":"security"},{"release_codename":"mantic","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"noble","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"oracular","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"plucky","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was needs-triage","component":null,"pocket":"security"},{"release_codename":"resolute","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"questing","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2018-3292","published":"2018-10-17T01:31:00","updated_at":"2025-08-26T12:09:19.592330+00:00","description":"\nVulnerability in the Oracle VM VirtualBox component of Oracle\nVirtualization (subcomponent: Core). The supported version that is affected\nis Prior to 5.2.20. Easily exploitable vulnerability allows unauthenticated\nattacker with logon to the infrastructure where Oracle VM VirtualBox\nexecutes to compromise Oracle VM VirtualBox. Successful attacks require\nhuman interaction from a person other than the attacker and while the\nvulnerability is in Oracle VM VirtualBox, attacks may significantly impact\nadditional products. Successful attacks of this vulnerability can result in\ntakeover of Oracle VM VirtualBox. CVSS 3.0 Base Score 8.6 (Confidentiality,\nIntegrity and Availability impacts). CVSS Vector:\n(CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H).","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":8.6,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"CHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":8.6,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["http://www.oracle.com/technetwork/security-advisory/cpuoct2018-4428296.html","http://www.securitytracker.com/id/1041887","https://www.cve.org/CVERecord?id=CVE-2018-3292"],"bugs":[""],"patches":{"virtualbox":[]},"tags":{},"packages":[{"name":"virtualbox","source":"https://ubuntu.com/security/cve?package=virtualbox","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=virtualbox","debian":"https://tracker.debian.org/pkg/virtualbox","statuses":[{"release_codename":"xenial","status":"needed","description":"","component":null,"pocket":"security"},{"release_codename":"impish","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"kinetic","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"lunar","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"bionic","status":"needed","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"disco","status":"not-affected","description":"6.0.6-dfsg-1","component":null,"pocket":"security"},{"release_codename":"eoan","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"groovy","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"hirsute","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"5.2.20-dfsg-1","component":null,"pocket":"security"},{"release_codename":"mantic","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"noble","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"oracular","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"plucky","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was needs-triage","component":null,"pocket":"security"},{"release_codename":"questing","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"},{"release_codename":"resolute","status":"not-affected","description":"6.0.8-dfsg-7","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2018-3291","published":"2018-10-17T01:31:00","updated_at":"2025-08-26T12:09:19.592330+00:00","description":"\nVulnerability in the Oracle VM VirtualBox component of Oracle\nVirtualization (subcomponent: Core). The supported version that is affected\nis Prior to 5.2.20. Easily exploitable vulnerability allows unauthenticated\nattacker with logon to the infrastructure where Oracle VM VirtualBox\nexecutes to compromise Oracle VM VirtualBox. Successful attacks require\nhuman interaction from a person other than the attacker and while the\nvulnerability is in Oracle VM VirtualBox, attacks may significantly impact\nadditional products. Successful attacks of this vulnerability can result in\ntakeover of Oracle VM VirtualBox. CVSS 3.0 Base Score 8.6 (Confidentiality,\nIntegrity and Availability impacts). CVSS Vector:\n(CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H).","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":8.6,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"CHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":8.6,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["http://www.oracle.com/technetwork/security-advisory/cpuoct2018-4428296.html","http://www.securitytracker.com/id/1041887","https://www.cve.org/CVERecord?id=CVE-2018-3291"],"bugs":[""],"patches":{"virtualbox":[]},"tags":{},"packages":[{"name":"virtualbox","source":"https://ubuntu.com/security/cve?package=virtualbox","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=virtualbox","debian":"https://tracker.debian.org/pkg/virtualbox","statuses":[{"release_codename":"xenial","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"impish","status":"not-affected","description":"6.1.18-dfsg-5","component":null,"pocket":"security"},{"release_codename":"focal","status":"released","description":"6.1.16-dfsg-6~ubuntu1.20.04.1","component":null,"pocket":"security"},{"release_codename":"groovy","status":"released","description":"6.1.16-dfsg-6~ubuntu1.20.10.1","component":null,"pocket":"security"},{"release_codename":"hirsute","status":"not-affected","description":"6.1.18-dfsg-5","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"6.1.18-dfsg-5","component":null,"pocket":"security"},{"release_codename":"kinetic","status":"not-affected","description":"6.1.18-dfsg-5","component":null,"pocket":"security"},{"release_codename":"lunar","status":"not-affected","description":"6.1.18-dfsg-5","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"disco","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"eoan","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"5.2.20-dfsg-1","component":null,"pocket":"security"},{"release_codename":"mantic","status":"not-affected","description":"6.1.18-dfsg-5","component":null,"pocket":"security"},{"release_codename":"noble","status":"not-affected","description":"6.1.18-dfsg-5","component":null,"pocket":"security"},{"release_codename":"resolute","status":"not-affected","description":"6.1.18-dfsg-5","component":null,"pocket":"security"},{"release_codename":"oracular","status":"not-affected","description":"6.1.18-dfsg-5","component":null,"pocket":"security"},{"release_codename":"plucky","status":"not-affected","description":"6.1.18-dfsg-5","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was needs-triage","component":null,"pocket":"security"},{"release_codename":"questing","status":"not-affected","description":"6.1.18-dfsg-5","component":null,"pocket":"security"},{"release_codename":"bionic","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2018-3290","published":"2018-10-17T01:31:00","updated_at":"2025-08-26T12:09:19.592330+00:00","description":"\nVulnerability in the Oracle VM VirtualBox component of Oracle\nVirtualization (subcomponent: Core). The supported version that is affected\nis Prior to 5.2.20. Easily exploitable vulnerability allows unauthenticated\nattacker with logon to the infrastructure where Oracle VM VirtualBox\nexecutes to compromise Oracle VM VirtualBox. Successful attacks require\nhuman interaction from a person other than the attacker and while the\nvulnerability is in Oracle VM VirtualBox, attacks may significantly impact\nadditional products. Successful attacks of this vulnerability can result in\ntakeover of Oracle VM VirtualBox. CVSS 3.0 Base Score 8.6 (Confidentiality,\nIntegrity and Availability impacts). CVSS Vector:\n(CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H).","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":8.6,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"CHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":8.6,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["http://www.oracle.com/technetwork/security-advisory/cpuoct2018-4428296.html","http://www.securitytracker.com/id/1041887","https://www.cve.org/CVERecord?id=CVE-2018-3290"],"bugs":[""],"patches":{"virtualbox":[]},"tags":{},"packages":[{"name":"virtualbox","source":"https://ubuntu.com/security/cve?package=virtualbox","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=virtualbox","debian":"https://tracker.debian.org/pkg/virtualbox","statuses":[{"release_codename":"xenial","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"released","description":"6.1.16-dfsg-6~ubuntu1.20.04.1","component":null,"pocket":"security"},{"release_codename":"groovy","status":"released","description":"6.1.16-dfsg-6~ubuntu1.20.10.1","component":null,"pocket":"security"},{"release_codename":"hirsute","status":"not-affected","description":"6.1.18-dfsg-5","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"6.1.18-dfsg-5","component":null,"pocket":"security"},{"release_codename":"kinetic","status":"not-affected","description":"6.1.18-dfsg-5","component":null,"pocket":"security"},{"release_codename":"lunar","status":"not-affected","description":"6.1.18-dfsg-5","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"disco","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"eoan","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"impish","status":"not-affected","description":"6.1.18-dfsg-5","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"5.2.20-dfsg-1","component":null,"pocket":"security"},{"release_codename":"bionic","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"mantic","status":"not-affected","description":"6.1.18-dfsg-5","component":null,"pocket":"security"},{"release_codename":"noble","status":"not-affected","description":"6.1.18-dfsg-5","component":null,"pocket":"security"},{"release_codename":"oracular","status":"not-affected","description":"6.1.18-dfsg-5","component":null,"pocket":"security"},{"release_codename":"plucky","status":"not-affected","description":"6.1.18-dfsg-5","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was needs-triage","component":null,"pocket":"security"},{"release_codename":"resolute","status":"not-affected","description":"6.1.18-dfsg-5","component":null,"pocket":"security"},{"release_codename":"questing","status":"not-affected","description":"6.1.18-dfsg-5","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2018-3289","published":"2018-10-17T01:31:00","updated_at":"2025-08-26T12:09:19.592330+00:00","description":"\nVulnerability in the Oracle VM VirtualBox component of Oracle\nVirtualization (subcomponent: Core). The supported version that is affected\nis Prior to 5.2.20. Easily exploitable vulnerability allows unauthenticated\nattacker with logon to the infrastructure where Oracle VM VirtualBox\nexecutes to compromise Oracle VM VirtualBox. Successful attacks require\nhuman interaction from a person other than the attacker and while the\nvulnerability is in Oracle VM VirtualBox, attacks may significantly impact\nadditional products. Successful attacks of this vulnerability can result in\ntakeover of Oracle VM VirtualBox. CVSS 3.0 Base Score 8.6 (Confidentiality,\nIntegrity and Availability impacts). CVSS Vector:\n(CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H).","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":8.6,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"CHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":8.6,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["http://www.oracle.com/technetwork/security-advisory/cpuoct2018-4428296.html","http://www.securitytracker.com/id/1041887","https://www.cve.org/CVERecord?id=CVE-2018-3289"],"bugs":[""],"patches":{"virtualbox":[]},"tags":{},"packages":[{"name":"virtualbox","source":"https://ubuntu.com/security/cve?package=virtualbox","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=virtualbox","debian":"https://tracker.debian.org/pkg/virtualbox","statuses":[{"release_codename":"xenial","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"released","description":"6.1.16-dfsg-6~ubuntu1.20.04.1","component":null,"pocket":"security"},{"release_codename":"groovy","status":"released","description":"6.1.16-dfsg-6~ubuntu1.20.10.1","component":null,"pocket":"security"},{"release_codename":"hirsute","status":"not-affected","description":"6.1.18-dfsg-5","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"6.1.18-dfsg-5","component":null,"pocket":"security"},{"release_codename":"kinetic","status":"not-affected","description":"6.1.18-dfsg-5","component":null,"pocket":"security"},{"release_codename":"lunar","status":"not-affected","description":"6.1.18-dfsg-5","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"disco","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"eoan","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"impish","status":"not-affected","description":"6.1.18-dfsg-5","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"5.2.20-dfsg-1","component":null,"pocket":"security"},{"release_codename":"bionic","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"mantic","status":"not-affected","description":"6.1.18-dfsg-5","component":null,"pocket":"security"},{"release_codename":"noble","status":"not-affected","description":"6.1.18-dfsg-5","component":null,"pocket":"security"},{"release_codename":"oracular","status":"not-affected","description":"6.1.18-dfsg-5","component":null,"pocket":"security"},{"release_codename":"plucky","status":"not-affected","description":"6.1.18-dfsg-5","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was needs-triage","component":null,"pocket":"security"},{"release_codename":"questing","status":"not-affected","description":"6.1.18-dfsg-5","component":null,"pocket":"security"},{"release_codename":"resolute","status":"not-affected","description":"6.1.18-dfsg-5","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2018-3288","published":"2018-10-17T01:31:00","updated_at":"2025-08-26T12:09:19.592330+00:00","description":"\nVulnerability in the Oracle VM VirtualBox component of Oracle\nVirtualization (subcomponent: Core). The supported version that is affected\nis Prior to 5.2.20. Easily exploitable vulnerability allows unauthenticated\nattacker with logon to the infrastructure where Oracle VM VirtualBox\nexecutes to compromise Oracle VM VirtualBox. Successful attacks require\nhuman interaction from a person other than the attacker and while the\nvulnerability is in Oracle VM VirtualBox, attacks may significantly impact\nadditional products. Successful attacks of this vulnerability can result in\ntakeover of Oracle VM VirtualBox. CVSS 3.0 Base Score 8.6 (Confidentiality,\nIntegrity and Availability impacts). CVSS Vector:\n(CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H).","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":8.6,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"CHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":8.6,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["http://www.oracle.com/technetwork/security-advisory/cpuoct2018-4428296.html","http://www.securitytracker.com/id/1041887","https://www.cve.org/CVERecord?id=CVE-2018-3288"],"bugs":[""],"patches":{"virtualbox":[]},"tags":{},"packages":[{"name":"virtualbox","source":"https://ubuntu.com/security/cve?package=virtualbox","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=virtualbox","debian":"https://tracker.debian.org/pkg/virtualbox","statuses":[{"release_codename":"xenial","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"disco","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"eoan","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"focal","status":"released","description":"6.1.16-dfsg-6~ubuntu1.20.04.1","component":null,"pocket":"security"},{"release_codename":"groovy","status":"released","description":"6.1.16-dfsg-6~ubuntu1.20.10.1","component":null,"pocket":"security"},{"release_codename":"hirsute","status":"not-affected","description":"6.1.18-dfsg-5","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"6.1.18-dfsg-5","component":null,"pocket":"security"},{"release_codename":"kinetic","status":"not-affected","description":"6.1.18-dfsg-5","component":null,"pocket":"security"},{"release_codename":"lunar","status":"not-affected","description":"6.1.18-dfsg-5","component":null,"pocket":"security"},{"release_codename":"impish","status":"not-affected","description":"6.1.18-dfsg-5","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"5.2.20-dfsg-1","component":null,"pocket":"security"},{"release_codename":"mantic","status":"not-affected","description":"6.1.18-dfsg-5","component":null,"pocket":"security"},{"release_codename":"noble","status":"not-affected","description":"6.1.18-dfsg-5","component":null,"pocket":"security"},{"release_codename":"oracular","status":"not-affected","description":"6.1.18-dfsg-5","component":null,"pocket":"security"},{"release_codename":"plucky","status":"not-affected","description":"6.1.18-dfsg-5","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was needs-triage","component":null,"pocket":"security"},{"release_codename":"resolute","status":"not-affected","description":"6.1.18-dfsg-5","component":null,"pocket":"security"},{"release_codename":"questing","status":"not-affected","description":"6.1.18-dfsg-5","component":null,"pocket":"security"},{"release_codename":"bionic","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2018-3287","published":"2018-10-17T01:31:00","updated_at":"2025-08-26T12:09:19.592330+00:00","description":"\nVulnerability in the Oracle VM VirtualBox component of Oracle\nVirtualization (subcomponent: Core). The supported version that is affected\nis Prior to 5.2.20. Easily exploitable vulnerability allows unauthenticated\nattacker with logon to the infrastructure where Oracle VM VirtualBox\nexecutes to compromise Oracle VM VirtualBox. Successful attacks require\nhuman interaction from a person other than the attacker and while the\nvulnerability is in Oracle VM VirtualBox, attacks may significantly impact\nadditional products. Successful attacks of this vulnerability can result in\ntakeover of Oracle VM VirtualBox. CVSS 3.0 Base Score 8.6 (Confidentiality,\nIntegrity and Availability impacts). CVSS Vector:\n(CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H).","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":8.6,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"CHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":8.6,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["http://www.oracle.com/technetwork/security-advisory/cpuoct2018-4428296.html","http://www.securitytracker.com/id/1041887","https://www.cve.org/CVERecord?id=CVE-2018-3287"],"bugs":[""],"patches":{"virtualbox":[]},"tags":{},"packages":[{"name":"virtualbox","source":"https://ubuntu.com/security/cve?package=virtualbox","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=virtualbox","debian":"https://tracker.debian.org/pkg/virtualbox","statuses":[{"release_codename":"xenial","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"disco","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"eoan","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"5.2.20-dfsg-1","component":null,"pocket":"security"},{"release_codename":"bionic","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"released","description":"6.1.16-dfsg-6~ubuntu1.20.04.1","component":null,"pocket":"security"},{"release_codename":"groovy","status":"released","description":"6.1.16-dfsg-6~ubuntu1.20.10.1","component":null,"pocket":"security"},{"release_codename":"hirsute","status":"not-affected","description":"6.1.18-dfsg-5","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"6.1.18-dfsg-5","component":null,"pocket":"security"},{"release_codename":"kinetic","status":"not-affected","description":"6.1.18-dfsg-5","component":null,"pocket":"security"},{"release_codename":"lunar","status":"not-affected","description":"6.1.18-dfsg-5","component":null,"pocket":"security"},{"release_codename":"impish","status":"not-affected","description":"6.1.18-dfsg-5","component":null,"pocket":"security"},{"release_codename":"mantic","status":"not-affected","description":"6.1.18-dfsg-5","component":null,"pocket":"security"},{"release_codename":"noble","status":"not-affected","description":"6.1.18-dfsg-5","component":null,"pocket":"security"},{"release_codename":"oracular","status":"not-affected","description":"6.1.18-dfsg-5","component":null,"pocket":"security"},{"release_codename":"plucky","status":"not-affected","description":"6.1.18-dfsg-5","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was needs-triage","component":null,"pocket":"security"},{"release_codename":"questing","status":"not-affected","description":"6.1.18-dfsg-5","component":null,"pocket":"security"},{"release_codename":"resolute","status":"not-affected","description":"6.1.18-dfsg-5","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]}],"offset":51400,"limit":20,"total_results":79316}