Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

Canonical — Vulnerabilities & Security Advisories 155

Browse all 155 CVE security advisories affecting Canonical. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Canonical Ltd. primarily develops and maintains Ubuntu, a widely deployed Linux distribution, alongside the OpenStack cloud infrastructure platform and the Snap package management system. Security audits reveal a significant volume of recorded vulnerabilities, currently totaling 107 CVEs, reflecting the extensive codebase and third-party dependencies inherent in these large-scale software ecosystems. Historically, the most prevalent vulnerability classes include remote code execution (RCE), cross-site scripting (XSS), and privilege escalation flaws, often stemming from improper input validation or insecure default configurations within associated services. While no single catastrophic incident has defined the company’s security history, the sheer number of disclosed issues highlights the challenges of maintaining rigorous patch cycles across diverse components. These findings underscore the necessity for continuous monitoring and timely updates for organizations relying on Canonical’s open-source technologies to mitigate potential exploitation risks.

CVE ID Title CVSS Severity Published
CVE-2026-9640 LXD Snapshot Import Privilege Escalation Vulnerability — LXD CWE-863 7.2 High 2026-06-26
CVE-2026-9639 Authenticated Denial of Service via Malicious Backup Tarball in LXD — LXD CWE-476 6.5 Medium 2026-06-26
CVE-2026-12411 Broken Access Control in Canonical LXD DevLXD API — lxd CWE-639 8.4 High 2026-06-26
CVE-2026-10720 MicroCeph path traversal issue in the remote-import API — Microceph CWE-23 - - 2026-06-19
CVE-2026-47337 NULL pointer dereference in Ubuntu Linux AppArmor IPv4/IPv6 socket mediation — Ubuntu Linux CWE-476 3.3 Low 2026-05-28
CVE-2026-47336 Use of uninitialized value in Ubuntu Linux AppArmor IPv4/IPv6 socket mediation rules — Ubuntu Linux CWE-457 3.3 Low 2026-05-28
CVE-2026-47335 NULL pointer dereference in Ubuntu Linux AppArmor notification handling — Ubuntu Linux CWE-476 5.5 Medium 2026-05-28
CVE-2026-47334 Deadlock or kernel panic in Ubuntu Linux AppArmor notification handling — Ubuntu Linux CWE-833 5.5 Medium 2026-05-28
CVE-2026-47333 Out-of-bounds read in Ubuntu Linux AppArmor notification handling — Ubuntu Linux CWE-125 7.8 High 2026-05-28
CVE-2026-47332 Out-of-bounds read in Ubuntu Linux AppArmor notification handling — Ubuntu Linux CWE-125 5.5 Medium 2026-05-28
CVE-2026-47331 Use-after-free in Ubuntu Linux AppArmor notification handling — Ubuntu Linux CWE-416 7.8 High 2026-05-28
CVE-2026-47330 Use of uninitialized value in Ubuntu Linux AppArmor notification handling — Ubuntu Linux CWE-457 3.3 Low 2026-05-28
CVE-2026-47329 Incorrect validation of field size in Ubuntu Linux AppArmor notification responses — Ubuntu Linux CWE-1284 3.3 Low 2026-05-28
CVE-2026-47328 Invalid pointer deallocation in Ubuntu Linux AppArmor notification handling — Ubuntu Linux CWE-590 6.1 Medium 2026-05-28
CVE-2026-47327 NULL pointer dereference in Ubuntu Linux AppArmor notification handling — Ubuntu Linux CWE-476 3.3 Low 2026-05-28
CVE-2026-47326 Memory leak in Ubuntu Linux AppArmor large notification response allocation — Ubuntu Linux CWE-401 5.5 Medium 2026-05-28
CVE-2026-49237 Local Privilege Escalation in Canonical Multipass — Multipass CWE-276 7.8 High 2026-05-28
CVE-2026-49238 SFTP Server VM Escape in Canonical Multipass — Multipass CWE-22 8.4 High 2026-05-28
CVE-2026-6970 authd Denial of Service and Local Privilege Escalation — authd CWE-842 7.8AI High AI 2026-04-27
CVE-2026-6369 Exposed Session Token in canonical-livepatch client snap — canonical-livepatch CWE-306 7.8AI High AI 2026-04-20
CVE-2026-5412 Juju CloudSpec API could leak senstive information — Juju CWE-285 9.9 Critical 2026-04-10
CVE-2026-5774 Juju API Server Denial of Service and Authentication Replay via Unsynchronized Token Map — Juju CWE-362 8.8 - 2026-04-10
CVE-2025-14551 Senstive information disclosure was affecting subiquity — Ubuntu CWE-1258 6.2AI Medium AI 2026-04-09
CVE-2025-15480 Senstive information disclosure was affecting ubuntu-desktop-provision — Ubuntu CWE-1258 5.5AI Medium AI 2026-04-09
CVE-2026-34179 Update of type field in restricted TLS certificate allows privilege escalation to cluster admin — lxd CWE-915 9.1 Critical 2026-04-09
CVE-2026-34178 Importing a crafted backup leads to project restriction bypass — lxd CWE-20 9.1 Critical 2026-04-09
CVE-2026-34177 VM lowlevel restriction bypass via raw.apparmor and raw.qemu.conf — lxd CWE-184 9.1 Critical 2026-04-09
CVE-2026-4370 Improper TLS Client/Server authentication and certificate verification on Database Cluster — Juju CWE-295 10.0 Critical 2026-04-01
CVE-2026-32694 Insecure Direct Object Reference attack via predictable secret ID in Juju — Juju CWE-343 6.6 Medium 2026-03-18
CVE-2026-32693 Unauthorized access to Kubernetes secrets in Juju — Juju CWE-863 8.8 High 2026-03-18

This page lists every published CVE security advisory associated with Canonical. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.