CVE reports

The Common Vulnerabilities and Exposures (CVE) system is used to identify, define, and catalog publicly disclosed cybersecurity vulnerabilities. Canonical keeps track of all CVEs affecting Ubuntu, and releases a security notice when an issue is fixed. You can find additional guidance for high-profile vulnerabilities in the Ubuntu Vulnerability Knowledge Base section


Search CVEs


Recent CVEs

CVE-2026-53130

High priority
Vulnerable

In the Linux kernel, the following vulnerability has been resolved: fs/omfs: reject s_sys_blocksize smaller than OMFS_DIR_START omfs_fill_super() rejects oversized s_sys_blocksize values (> PAGE_SIZE), but it does not reject...

160 affected packages

linux, linux-hwe, linux-hwe-5.4, linux-hwe-5.8, linux-hwe-5.11...


CVE-2026-53492

High priority
Fixed

[Unknown description]

3 affected packages

containerd, containerd-app, containerd-stable


CVE-2026-53489

High priority
Fixed

[Unknown description]

3 affected packages

containerd, containerd-app, containerd-stable


CVE-2026-53488

High priority

Some fixes available 12 of 13

[Unknown description]

3 affected packages

containerd, containerd-app, containerd-stable


CVE-2026-50195

High priority
Fixed

[Unknown description]

3 affected packages

containerd, containerd-app, containerd-stable