Software Detail
Title
CVE
CRITICAL
HIGH
MEDIUM
LOW
CWE
Number of items displayed
Ubuntu Number Of NVD 4093 CRITICAL 341 HIGH 1595 MEDIUM 1941 LOW 216
URL https://ubuntu.com/
Explanation A release without LTS is a normal release and provides support for 9 months after it is released.
LTS (Long Term Support) provides support for five years.
After the end of LTS, we also offer a service that provides extended support (about 5 years) for a fee.
Tag
  • Linux

Add Information URL
No Type Name URL
1 https://ubuntu.com/about/release-cycle
2 https://wiki.ubuntu.com/
3 https://wiki.ubuntu.com/Releases
4 https://ubuntu.com/licensing
5 https://ubuntu.com/security/notices

List Of Product  [ Click to show release history and vulnerability information ]
No Name Latest Version Release date Initial release Normal Support Security Support
Service Pack Support
Extended
for a fee
Critical High Medium Low
361 Ubuntu 24 24.04.3 Aug. 7, 2025 April 25, 2024 0 0 1 0
362 Ubuntu 23.04 23.04 April 24, 2023 April 24, 2023 April 30, 2024 1 5 2 0
363 Ubuntu 22.04 LTS 22.04.5 Sept. 12, 2024 April 21, 2022 April 30, 2027 April 30, 2032 1 25 11 0
364 Ubuntu 21.10 21.10 Oct. 14, 2021 Oct. 14, 2021 June 14, 2022 June 14, 2022 1 18 19 0
365 Ubuntu 21.04 21.04 April 22, 2021 April 22, 2021 Jan. 30, 2022 0 12 11 0
366 Ubuntu 20.10 20.10 Oct. 22, 2020 Oct. 22, 2020 July 30, 2021 0 5 13 1
367 Ubuntu 20.04 LTS 20.04.6 March 23, 2023 April 23, 2020 April 30, 2025 April 30, 2030 21 144 239 32
368 Ubuntu 19.10 Oct. 17, 2019 July 30, 2020 32 133 227 44
369 Ubuntu 19.04 April 18, 2019 Jan. 30, 2020 45 126 184 23
370 Ubuntu 18.10 Oct. 18, 2018 July 31, 2019 66 174 182 5
371 Ubuntu 18.04 LTS 18.04.6 Sept. 17, 2021 April 26, 2018 April 30, 2023 April 30, 2028 202 645 891 80
372 Ubuntu 17.10 Oct. 18, 2017 July 19, 2018 4 18 14 0
373 Ubuntu 17.04 April 13, 2017 July 20, 2017 4 18 14 0
374 Ubuntu 16.10 Oct. 13, 2016 July 28, 2016 6 24 8 0
375 Ubuntu 16.04 LTS 16.04.7 Aug. 13, 2020 April 21, 2016 April 30, 2021 April 30, 2024 239 852 1060 83
376 Ubuntu 15.10 Oct. 22, 2015 Feb. 4, 2016 20 148 162 24
377 Ubuntu 15.04 April 23, 2015 July 23, 2015 5 100 130 29
378 Ubuntu 14.10 Oct. 23, 2014 July 14, 2014 0 3 1 0
379 Ubuntu 14.04 LTS 14.04.6 March 7, 2019 April 17, 2014 April 30, 2019 April 30, 2022 216 844 1015 82
380 Ubuntu 13.10 Oct. 17, 2013 July 14, 2014 15 56 68 15
381 Ubuntu 13.04 April 25, 2013 Jan. 27, 2014 6 16 60 9
382 Ubuntu 12.04 LTS April 26, 2012 April 28, 2017 April 30, 2019 90 577 669 83
383 Ubuntu 11.10 Oct. 13, 2011 May 9, 2013 1 111 108 13
384 Ubuntu 11.04 April 28, 2011 Oct. 28, 2012 1 56 56 8
385 Ubuntu 10.10 Oct. 10, 2010 April 10, 2012 2 47 52 17
386 Ubuntu 9.10 Oct. 29, 2009 April 30, 2011 5 56 56 16
387 Ubuntu 9.04 April 23, 2009 Oct. 23, 2010 3 46 57 8
388 Ubuntu 8.10 Oct. 30, 2008 April 30, 2010 2 49 47 6
389 Ubuntu 8.04 LTS 8.04.4 Jan. 28, 2010 April 24, 2008 May 9, 2013 7 99 119 18
390 Ubuntu 7.10 Oct. 18, 2007 April 18, 2009 3 48 37 5
391 Ubuntu 7.04 April 19, 2007 Oct. 19, 2008 4 46 28 4
392 Ubuntu 6.10 Oct. 26, 2006 April 26, 2008 2 33 32 4
393 Ubuntu 5.10 Oct. 13, 2005 April 13, 2007 0 22 19 1
394 Ubuntu 5.04 April 8, 2005 Oct. 31, 2006 0 14 13 2
395 Ubuntu 4.10 Oct. 20, 2004 April 30, 2006 1 13 8 2
NVD Vulnerability Information
  • CRITICAL
  • HIGH
  • MEDIUM
  • LOW
No CVSS3
CVSS2
Level
Attach Vector
Title CWE CVE cpe23Uri or higher or less more than less than Update date
Published date
Show Affected Exploit
PoC
Search
361 5.5
2.1
MEDIUM
Local
ext/fts3/fts3_snippet.c in SQLite before 3.32.0 has a NULL pointer dereference via a crafted matchinfo() query. CWE-476
 NULL Pointer Dereference
CVE-2020-13632 cpe:2.3:o:canonical:ubuntu_linux:20.04:*
cpe:2.3:o:canonical:ubuntu_linux:19.10:*
cpe:2.3:o:canonical:ubuntu_linu…
2024-11-21 14:01
2020-05-28
Show GitHub Exploit DB Packet Storm
362 5.5
2.1
MEDIUM
Local
sd_wp_addr in hw/sd/sd.c in QEMU 4.2.0 uses an unvalidated address, which leads to an out-of-bounds read during sdhci_write() operations. A guest OS user can crash the QEMU process. CWE-125
Out-of-bounds Read
CVE-2020-13253 cpe:2.3:o:canonical:ubuntu_linux:20.04:*
cpe:2.3:o:canonical:ubuntu_linux:18.04:*
cpe:2.3:o:canonical:ubuntu_linu…
2024-11-21 14:00
2020-05-28
Show GitHub Exploit DB Packet Storm
363 5.5
2.1
MEDIUM
Local
SQLite before 3.32.0 allows a virtual table to be renamed to the name of one of its shadow tables, related to alter.c and build.c. NVD-CWE-noinfo
CVE-2020-13631 cpe:2.3:o:canonical:ubuntu_linux:20.04:*
cpe:2.3:o:canonical:ubuntu_linux:19.10:*
cpe:2.3:o:canonical:ubuntu_linu…
2024-11-21 14:01
2020-05-28
Show GitHub Exploit DB Packet Storm
364 7.0
4.4
HIGH
Local
ext/fts3/fts3.c in SQLite before 3.32.0 has a use-after-free in fts3EvalNextRow, related to the snippet feature. CWE-416
 Use After Free
CVE-2020-13630 cpe:2.3:o:canonical:ubuntu_linux:20.04:*
cpe:2.3:o:canonical:ubuntu_linux:19.10:*
cpe:2.3:o:canonical:ubuntu_linu…
2024-11-21 14:01
2020-05-28
Show GitHub Exploit DB Packet Storm
365 9.8
7.5
CRITICAL
Network
A buffer overflow could occur when parsing and validating SCTP chunks in WebRTC. This could have led to memory corruption and a potentially exploitable crash. This vulnerability affects Firefox ESR <… CWE-787
 Out-of-bounds Write
CVE-2020-6831 cpe:2.3:o:canonical:ubuntu_linux:20.04:*
cpe:2.3:o:canonical:ubuntu_linux:19.10:*
cpe:2.3:o:canonical:ubuntu_linu…
2024-11-21 14:36
2020-05-27
Show GitHub Exploit DB Packet Storm
366 5.5
2.1
MEDIUM
Local
The 'Copy as cURL' feature of Devtools' network tab did not properly escape the HTTP POST data of a request, which can be controlled by the website. If a user used the 'Copy as cURL' feature and past… CWE-22
Path Traversal
CVE-2020-12392 cpe:2.3:o:canonical:ubuntu_linux:20.04:*
cpe:2.3:o:canonical:ubuntu_linux:19.10:*
cpe:2.3:o:canonical:ubuntu_linu…
2024-11-21 13:59
2020-05-27
Show GitHub Exploit DB Packet Storm
367 9.8
10.0
CRITICAL
Network
Mozilla developers and community members reported memory safety bugs present in Firefox 75 and Firefox ESR 68.7. Some of these bugs showed evidence of memory corruption and we presume that with enoug… CWE-787
 Out-of-bounds Write
CVE-2020-12395 cpe:2.3:o:canonical:ubuntu_linux:20.04:*
cpe:2.3:o:canonical:ubuntu_linux:19.10:*
cpe:2.3:o:canonical:ubuntu_linu…
2024-11-21 13:59
2020-05-27
Show GitHub Exploit DB Packet Storm
368 5.5
2.1
MEDIUM
Local
qmail-verify as used in netqmail 1.06 is prone to an information disclosure vulnerability. A local attacker can test for the existence of files and directories anywhere in the filesystem because qmai… CWE-269
 Improper Privilege Management
CVE-2020-3812 cpe:2.3:o:canonical:ubuntu_linux:20.04:* 2024-11-21 14:31
2020-05-26
Show GitHub Exploit DB Packet Storm
369 7.5
5.0
HIGH
Network
qmail-verify as used in netqmail 1.06 is prone to a mail-address verification bypass vulnerability. CWE-665
CWE-863
 Improper Initialization
 Incorrect Authorization
CVE-2020-3811 cpe:2.3:o:canonical:ubuntu_linux:20.04:* 2024-11-21 14:31
2020-05-26
Show GitHub Exploit DB Packet Storm
370 5.5
2.1
MEDIUM
Local
SQLite through 3.32.0 has an integer overflow in sqlite3_str_vappendf in printf.c. CWE-190
 Integer Overflow or Wraparound
CVE-2020-13434 cpe:2.3:o:canonical:ubuntu_linux:20.04:*
cpe:2.3:o:canonical:ubuntu_linux:19.10:*
cpe:2.3:o:canonical:ubuntu_linu…
2024-11-21 14:01
2020-05-25
Show GitHub Exploit DB Packet Storm