Vulnerabilities > Canonical > Ubuntu Linux > 15.1

DATE CVE VULNERABILITY TITLE RISK
2015-05-12 CVE-2015-2668 Resource Management Errors vulnerability in multiple products
ClamAV before 0.98.7 allows remote attackers to cause a denial of service (infinite loop) via a crafted xz archive file.
network
low complexity
clamav canonical CWE-399
5.0
2015-05-12 CVE-2015-2222 Resource Management Errors vulnerability in multiple products
ClamAV before 0.98.7 allows remote attackers to cause a denial of service (crash) via a crafted petite packed file.
network
low complexity
canonical clamav CWE-399
5.0
2015-05-12 CVE-2015-2221 Resource Management Errors vulnerability in multiple products
ClamAV before 0.98.7 allows remote attackers to cause a denial of service (infinite loop) via a crafted y0da cryptor file.
network
low complexity
clamav canonical CWE-399
5.0
2015-05-01 CVE-2015-3153 Information Exposure vulnerability in multiple products
The default configuration for cURL and libcurl before 7.42.1 sends custom HTTP headers to both the proxy and destination server, which might allow remote proxy servers to obtain sensitive information by reading the header contents.
network
low complexity
oracle haxx canonical apple debian CWE-200
5.0
2015-04-29 CVE-2015-1322 Path Traversal vulnerability in multiple products
Directory traversal vulnerability in the Ubuntu network-manager package for Ubuntu (vivid) before 0.9.10.0-4ubuntu15.1, Ubuntu 14.10 before 0.9.8.8-0ubuntu28.1, and Ubuntu 14.04 LTS before 0.9.8.8-0ubuntu7.1 allows local users to change the modem device configuration or read arbitrary files via a ..
local
low complexity
canonical ubuntu CWE-22
4.6
2015-04-29 CVE-2015-1321 Use After Free Remote Code Execution vulnerability in Ubuntu oxide-qt Package
Use-after-free vulnerability in the file picker implementation in Oxide before 1.6.5 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted webpage.
6.8