Ubuntu Security Notices
Developers issue an Ubuntu Security Notice when a security issue is fixed in an official Ubuntu package. You can find additional guidance for high-profile vulnerabilities in the Ubuntu Vulnerability Knowledge Base section.
To report a security vulnerability in an Ubuntu package, please contact the Security Team.
The Security Team also produces OVAL files for each Ubuntu release. These are an industry-standard machine-readable format dataset that contain details of all known security vulnerabilities and fixes relevant to the Ubuntu release, and can be used to determine whether a particular patch is appropriate. OVAL files can also be used to audit a system to check whether the latest security fixes have been applied.
Search USNs
USN ID, name, description or CVE ID contains
61 - 70 of 2554 results
19 September 2024
PostgreSQL could execute arbitrary SQL functions as the superuser if it received a specially crafted SQL object.
- Ubuntu 16.04 LTS
CVE ID
19 September 2024
Several security issues were fixed in Python.
- Ubuntu 22.04 LTS,
- 20.04 LTS,
- 18.04 LTS,
- 16.04 LTS
CVE ID
19 September 2024
Several security issues were fixed in Emacs.
- Ubuntu 24.04 LTS,
- 22.04 LTS,
- 20.04 LTS,
- 18.04 LTS,
- 16.04 LTS
CVE ID
CVE-2024-39331, CVE-2024-30205, CVE-2024-30203 + 6 others
19 September 2024
Several security issues were fixed in Git.
- Ubuntu 18.04 LTS,
- 16.04 LTS
CVE ID
CVE-2024-32021, CVE-2023-25815, CVE-2024-32465 + 3 others
18 September 2024
Several security issues were fixed in Apache HTTP Server.
- Ubuntu 18.04 LTS,
- 16.04 LTS
CVE ID
CVE-2024-38475, CVE-2024-38474, CVE-2024-38476 + 1 other
17 September 2024
Several security issues were fixed in ClamAV.
- Ubuntu 18.04 LTS,
- 16.04 LTS
CVE ID
17 September 2024
Several security issues were fixed in DCMTK.
- Ubuntu 24.04 LTS,
- 22.04 LTS,
- 20.04 LTS,
- 18.04 LTS,
- 16.04 LTS
CVE ID
CVE-2021-41688, CVE-2024-34508, CVE-2024-34509 + 6 others
16 September 2024
OpenSSH could be made to crash or run programs as your login if it received a specially crafted input.
- Ubuntu 16.04 LTS
CVE ID
12 September 2024
setuptools could be made to crash or run programs if it received specially crafted network traffic.
- Ubuntu 24.04 LTS,
- 22.04 LTS,
- 20.04 LTS,
- 18.04 LTS,
- 16.04 LTS,
- 14.04 LTS
CVE ID
12 September 2024
Several security issues were fixed in libxmltok.
- Ubuntu 22.04 LTS,
- 20.04 LTS,
- 18.04 LTS,
- 16.04 LTS
CVE ID
Resources
Join the discussion
Canonical is offering
Expanded Security Maintenance
Canonical is offering Ubuntu Expanded Security Maintenance (ESM) for security fixes and essential packages.