Ubuntu Security Notices
Developers issue an Ubuntu Security Notice when a security issue is fixed in an official Ubuntu package. You can find additional guidance for high-profile vulnerabilities in the Ubuntu Vulnerability Knowledge Base section.
To report a security vulnerability in an Ubuntu package, please contact the Security Team.
The Security Team also produces OVAL files for each Ubuntu release. These are an industry-standard machine-readable format dataset that contain details of all known security vulnerabilities and fixes relevant to the Ubuntu release, and can be used to determine whether a particular patch is appropriate. OVAL files can also be used to audit a system to check whether the latest security fixes have been applied.
Search USNs
USN ID, name, description or CVE ID contains
15 - 24 of 193 results
30 June 2015
Several security issues were fixed in Oxide.
- Ubuntu 15.04 ,
- 14.10 ,
- 14.04 LTS
CVE ID
CVE-2015-1266, CVE-2015-1267, CVE-2015-1268 + 1 other
29 June 2015
An attacker could trick unattended-upgrades into installing altered packages.
- Ubuntu 15.04 ,
- 14.10 ,
- 14.04 LTS,
- 12.04
CVE ID
25 June 2015
Several security issues were fixed in Tomcat.
- Ubuntu 15.04 ,
- 14.10 ,
- 14.04 LTS
CVE ID
CVE-2014-0119, CVE-2014-0227, CVE-2014-0230 + 1 other
25 June 2015
Several security issues were fixed in Python.
- Ubuntu 14.10 ,
- 14.04 LTS,
- 12.04
CVE ID
CVE-2013-1752, CVE-2013-1753, CVE-2014-4616 + 2 others
22 June 2015
Several security issues were fixed in GNU patch.
- Ubuntu 14.10 ,
- 14.04 LTS,
- 12.04
CVE ID
CVE-2010-4651, CVE-2014-9637, CVE-2015-1196 + 2 others
21 June 2015
The system could be made to crash under certain conditions.
- Ubuntu 14.10
16 June 2015
wpa_supplicant and hostapd could be made to crash if they received specially crafted network traffic.
- Ubuntu 15.04 ,
- 14.10 ,
- 14.04 LTS,
- 12.04
CVE ID
CVE-2015-4141, CVE-2015-4142, CVE-2015-4143 + 3 others
16 June 2015
devscripts could be made to overwrite files.
- Ubuntu 14.10 ,
- 14.04 LTS,
- 12.04
CVE ID
16 June 2015
Aptdaemon could be made to expose sensitive information, or allow file access as the administrator.
- Ubuntu 15.04 ,
- 14.10 ,
- 14.04 LTS,
- 12.04
CVE ID
15 June 2015
The system could be made to run programs as an administrator.
- Ubuntu 14.10
CVE ID
Resources
Join the discussion
Get up to 15 years of security
maintenance for your new or established systems
Get up to 15 years of security maintenance for your entire Ubuntu Archive. Keep your systems stable with security backporting and avoid forced upgrades.