Vulnerabilities > Canonical > Ubuntu Linux > 18.04

DATE CVE VULNERABILITY TITLE RISK
2018-07-26 CVE-2018-10876 A flaw was found in Linux kernel in the ext4 filesystem code.
local
low complexity
linux canonical debian
5.5
2018-07-25 CVE-2018-13988 Out-of-bounds Read vulnerability in multiple products
Poppler through 0.62 contains an out of bounds read vulnerability due to an incorrect memory access that is not mapped in its memory space, as demonstrated by pdfunite.
network
low complexity
freedesktop canonical debian redhat CWE-125
6.5
2018-07-25 CVE-2018-10880 Linux kernel is vulnerable to a stack-out-of-bounds write in the ext4 filesystem code when mounting and writing to a crafted ext4 image in ext4_update_inline_data().
local
low complexity
debian linux redhat canonical
5.5
2018-07-23 CVE-2018-14551 Use of Uninitialized Resource vulnerability in multiple products
The ReadMATImageV4 function in coders/mat.c in ImageMagick 7.0.8-7 uses an uninitialized variable, leading to memory corruption.
network
low complexity
imagemagick canonical CWE-908
critical
9.8
2018-07-20 CVE-2018-14437 Missing Release of Resource after Effective Lifetime vulnerability in multiple products
ImageMagick 7.0.8-4 has a memory leak in parse8BIM in coders/meta.c.
network
low complexity
imagemagick canonical CWE-772
6.5
2018-07-20 CVE-2018-14436 Missing Release of Resource after Effective Lifetime vulnerability in multiple products
ImageMagick 7.0.8-4 has a memory leak in ReadMIFFImage in coders/miff.c.
network
low complexity
imagemagick canonical CWE-772
6.5
2018-07-20 CVE-2018-14435 Missing Release of Resource after Effective Lifetime vulnerability in multiple products
ImageMagick 7.0.8-4 has a memory leak in DecodeImage in coders/pcd.c.
network
low complexity
imagemagick canonical CWE-772
6.5
2018-07-20 CVE-2018-14434 Missing Release of Resource after Effective Lifetime vulnerability in multiple products
ImageMagick 7.0.8-4 has a memory leak for a colormap in WriteMPCImage in coders/mpc.c.
network
low complexity
imagemagick canonical CWE-772
6.5
2018-07-19 CVE-2018-14404 NULL Pointer Dereference vulnerability in multiple products
A NULL pointer dereference vulnerability exists in the xpath.c:xmlXPathCompOpEval() function of libxml2 through 2.9.8 when parsing an invalid XPath expression in the XPATH_OP_AND or XPATH_OP_OR case.
network
low complexity
canonical debian xmlsoft CWE-476
7.5
2018-07-19 CVE-2018-12911 Out-of-bounds Write vulnerability in multiple products
WebKitGTK+ 2.20.3 has an off-by-one error, with a resultant out-of-bounds write, in the get_simple_globs functions in ThirdParty/xdgmime/src/xdgmimecache.c and ThirdParty/xdgmime/src/xdgmimeglob.c.
network
low complexity
webkitgtk canonical CWE-787
critical
9.8