Software Detail
Title
CVE
CRITICAL
HIGH
MEDIUM
LOW
CWE
Number of items displayed
Ubuntu Number Of NVD 4093 CRITICAL 341 HIGH 1595 MEDIUM 1941 LOW 216
URL https://ubuntu.com/
Explanation A release without LTS is a normal release and provides support for 9 months after it is released.
LTS (Long Term Support) provides support for five years.
After the end of LTS, we also offer a service that provides extended support (about 5 years) for a fee.
Tag
  • Linux

Add Information URL
No Type Name URL
1 https://ubuntu.com/about/release-cycle
2 https://wiki.ubuntu.com/
3 https://wiki.ubuntu.com/Releases
4 https://ubuntu.com/licensing
5 https://ubuntu.com/security/notices

List Of Product  [ Click to show release history and vulnerability information ]
No Name Latest Version Release date Initial release Normal Support Security Support
Service Pack Support
Extended
for a fee
Critical High Medium Low
931 Ubuntu 24 24.04.3 Aug. 7, 2025 April 25, 2024 0 0 1 0
932 Ubuntu 23.04 23.04 April 24, 2023 April 24, 2023 April 30, 2024 1 5 2 0
933 Ubuntu 22.04 LTS 22.04.5 Sept. 12, 2024 April 21, 2022 April 30, 2027 April 30, 2032 1 25 11 0
934 Ubuntu 21.10 21.10 Oct. 14, 2021 Oct. 14, 2021 June 14, 2022 June 14, 2022 1 18 19 0
935 Ubuntu 21.04 21.04 April 22, 2021 April 22, 2021 Jan. 30, 2022 0 12 11 0
936 Ubuntu 20.10 20.10 Oct. 22, 2020 Oct. 22, 2020 July 30, 2021 0 5 13 1
937 Ubuntu 20.04 LTS 20.04.6 March 23, 2023 April 23, 2020 April 30, 2025 April 30, 2030 21 144 239 32
938 Ubuntu 19.10 Oct. 17, 2019 July 30, 2020 32 133 227 44
939 Ubuntu 19.04 April 18, 2019 Jan. 30, 2020 45 126 184 23
940 Ubuntu 18.10 Oct. 18, 2018 July 31, 2019 66 174 182 5
941 Ubuntu 18.04 LTS 18.04.6 Sept. 17, 2021 April 26, 2018 April 30, 2023 April 30, 2028 202 645 891 80
942 Ubuntu 17.10 Oct. 18, 2017 July 19, 2018 4 18 14 0
943 Ubuntu 17.04 April 13, 2017 July 20, 2017 4 18 14 0
944 Ubuntu 16.10 Oct. 13, 2016 July 28, 2016 6 24 8 0
945 Ubuntu 16.04 LTS 16.04.7 Aug. 13, 2020 April 21, 2016 April 30, 2021 April 30, 2024 239 852 1060 83
946 Ubuntu 15.10 Oct. 22, 2015 Feb. 4, 2016 20 148 162 24
947 Ubuntu 15.04 April 23, 2015 July 23, 2015 5 100 130 29
948 Ubuntu 14.10 Oct. 23, 2014 July 14, 2014 0 3 1 0
949 Ubuntu 14.04 LTS 14.04.6 March 7, 2019 April 17, 2014 April 30, 2019 April 30, 2022 216 844 1015 82
950 Ubuntu 13.10 Oct. 17, 2013 July 14, 2014 15 56 68 15
951 Ubuntu 13.04 April 25, 2013 Jan. 27, 2014 6 16 60 9
952 Ubuntu 12.04 LTS April 26, 2012 April 28, 2017 April 30, 2019 90 577 669 83
953 Ubuntu 11.10 Oct. 13, 2011 May 9, 2013 1 111 108 13
954 Ubuntu 11.04 April 28, 2011 Oct. 28, 2012 1 56 56 8
955 Ubuntu 10.10 Oct. 10, 2010 April 10, 2012 2 47 52 17
956 Ubuntu 9.10 Oct. 29, 2009 April 30, 2011 5 56 56 16
957 Ubuntu 9.04 April 23, 2009 Oct. 23, 2010 3 46 57 8
958 Ubuntu 8.10 Oct. 30, 2008 April 30, 2010 2 49 47 6
959 Ubuntu 8.04 LTS 8.04.4 Jan. 28, 2010 April 24, 2008 May 9, 2013 7 99 119 18
960 Ubuntu 7.10 Oct. 18, 2007 April 18, 2009 3 48 37 5
961 Ubuntu 7.04 April 19, 2007 Oct. 19, 2008 4 46 28 4
962 Ubuntu 6.10 Oct. 26, 2006 April 26, 2008 2 33 32 4
963 Ubuntu 5.10 Oct. 13, 2005 April 13, 2007 0 22 19 1
964 Ubuntu 5.04 April 8, 2005 Oct. 31, 2006 0 14 13 2
965 Ubuntu 4.10 Oct. 20, 2004 April 30, 2006 1 13 8 2
NVD Vulnerability Information
  • CRITICAL
  • HIGH
  • MEDIUM
  • LOW
No CVSS3
CVSS2
Level
Attach Vector
Title CWE CVE cpe23Uri or higher or less more than less than Update date
Published date
Show Affected Exploit
PoC
Search
931 5.5
4.3
MEDIUM
Local
In DjVuLibre 3.5.27, the sorting functionality (aka GArrayTemplate<TYPE>::sort) allows attackers to cause a denial-of-service (application crash due to an Uncontrolled Recursion) by crafting a PBM im… CWE-674
 Uncontrolled Recursion
CVE-2019-15144 cpe:2.3:o:canonical:ubuntu_linux:19.10:*
cpe:2.3:o:canonical:ubuntu_linux:19.04:*
cpe:2.3:o:canonical:ubuntu_linu…
2024-11-21 13:28
2019-08-19
Show GitHub Exploit DB Packet Storm
932 5.5
4.3
MEDIUM
Local
In DjVuLibre 3.5.27, the bitmap reader component allows attackers to cause a denial-of-service error (resource exhaustion caused by a GBitmap::read_rle_raw infinite loop) by crafting a corrupted imag… CWE-835
 Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2019-15143 cpe:2.3:o:canonical:ubuntu_linux:19.10:*
cpe:2.3:o:canonical:ubuntu_linux:19.04:*
cpe:2.3:o:canonical:ubuntu_linu…
2024-11-21 13:28
2019-08-19
Show GitHub Exploit DB Packet Storm
933 5.5
4.3
MEDIUM
Local
In DjVuLibre 3.5.27, DjVmDir.cpp in the DJVU reader component allows attackers to cause a denial-of-service (application crash in GStringRep::strdup in libdjvu/GString.cpp caused by a heap-based buff… CWE-125
Out-of-bounds Read
CVE-2019-15142 cpe:2.3:o:canonical:ubuntu_linux:19.10:*
cpe:2.3:o:canonical:ubuntu_linux:19.04:*
cpe:2.3:o:canonical:ubuntu_linu…
2024-11-21 13:28
2019-08-19
Show GitHub Exploit DB Packet Storm
934 6.5
4.3
MEDIUM
Network
In GIFLIB before 2019-02-16, a malformed GIF file triggers a divide-by-zero exception in the decoder function DGifSlurp in dgif_lib.c if the height field of the ImageSize data structure is equal to z… CWE-369
 Divide By Zero
CVE-2019-15133 cpe:2.3:o:canonical:ubuntu_linux:19.04:*
cpe:2.3:o:canonical:ubuntu_linux:18.04:*
cpe:2.3:o:canonical:ubuntu_linu…
2024-11-21 13:28
2019-08-18
Show GitHub Exploit DB Packet Storm
935 9.8
7.5
CRITICAL
Network
A command injection vulnerability in Nokogiri v1.10.3 and earlier allows commands to be executed in a subprocess via Ruby's `Kernel.open` method. Processes are vulnerable only if the undocumented met… CWE-78
OS Command 
CVE-2019-5477 cpe:2.3:o:canonical:ubuntu_linux:19.10:*
cpe:2.3:o:canonical:ubuntu_linux:19.04:*
cpe:2.3:o:canonical:ubuntu_linu…
2024-11-21 13:45
2019-08-17
Show GitHub Exploit DB Packet Storm
936 5.5
4.9
MEDIUM
Local
check_input_term in sound/usb/mixer.c in the Linux kernel through 5.2.9 mishandles recursion, leading to kernel stack exhaustion. CWE-674
 Uncontrolled Recursion
CVE-2019-15118 cpe:2.3:o:canonical:ubuntu_linux:19.04:*
cpe:2.3:o:canonical:ubuntu_linux:18.04:*
cpe:2.3:o:canonical:ubuntu_linu…
2024-11-21 13:28
2019-08-16
Show GitHub Exploit DB Packet Storm
937 7.5
7.8
HIGH
Network
drivers/net/wireless/ath/ath10k/usb.c in the Linux kernel through 5.2.8 has a NULL pointer dereference via an incomplete address in an endpoint descriptor. CWE-476
 NULL Pointer Dereference
CVE-2019-15099 cpe:2.3:o:canonical:ubuntu_linux:19.10:*
cpe:2.3:o:canonical:ubuntu_linux:18.04:*
cpe:2.3:o:canonical:ubuntu_linu…
2024-11-21 13:28
2019-08-16
Show GitHub Exploit DB Packet Storm
938 4.6
4.9
MEDIUM
Physics
drivers/net/wireless/ath/ath6kl/usb.c in the Linux kernel through 5.2.9 has a NULL pointer dereference via an incomplete address in an endpoint descriptor. CWE-476
 NULL Pointer Dereference
CVE-2019-15098 cpe:2.3:o:canonical:ubuntu_linux:19.04:*
cpe:2.3:o:canonical:ubuntu_linux:18.04:*
cpe:2.3:o:canonical:ubuntu_linu…
2024-11-21 13:28
2019-08-16
Show GitHub Exploit DB Packet Storm
939 6.7
4.6
MEDIUM
Local
An issue was discovered in drivers/scsi/qedi/qedi_dbg.c in the Linux kernel before 5.1.12. In the qedi_dbg_* family of functions, there is an out-of-bounds read. CWE-125
Out-of-bounds Read
CVE-2019-15090 cpe:2.3:o:canonical:ubuntu_linux:19.10:*
cpe:2.3:o:canonical:ubuntu_linux:18.04:*
cpe:2.3:o:canonical:ubuntu_linu…
2024-11-21 13:28
2019-08-16
Show GitHub Exploit DB Packet Storm
940 7.8
6.8
HIGH
Local
LibreOffice has a feature where documents can specify that pre-installed macros can be executed on various script events such as mouse-over, document-open etc. Access is intended to be restricted to … CWE-22
Path Traversal
CVE-2019-9852 cpe:2.3:o:canonical:ubuntu_linux:19.04:*
cpe:2.3:o:canonical:ubuntu_linux:18.04:*
cpe:2.3:o:canonical:ubuntu_linu…
2024-11-21 13:52
2019-08-16
Show GitHub Exploit DB Packet Storm