Ubuntu Developers' vulnerability profile centers on a small set of utility and library components including language-selector and obby, with observed exposure clustering around improper input validation weaknesses. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Ubuntu Developers over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2011-4092MEDIUM obby (aka libobby) does not verify SSL server certificates, which allows remote attackers to spoof servers via an arbitrary certificate. | Feb 10, 2014 | 5.8 | 20 | NO | NO |
CVE-2013-1066MEDIUM language-selector 0.110.x before 0.110.1, 0.90.x before 0.90.1, and 0.79.x before 0.79.4 does not properly use D-Bus for communication with a polkit authority, which allows local u | Oct 3, 2013 | 4.6 | 14 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Ubuntu Developers.
Media articles that mention a CVE ID that affects a product developed by Ubuntu Developers — matched by CVE ID, not by vendor name.