USN-5504-1: Firefox vulnerabilities ›
5 July 2022
Firefox could be made to crash or run programs as your login if it opened a malicious website.
CVE-2022-34471, CVE-2022-34475, CVE-2022-34470, and 14 others
Developers issue an Ubuntu Security Notice when a security issue is fixed in an official Ubuntu package.
To report a security vulnerability in an Ubuntu package, please contact the Security Team.
The Security Team also produces OVAL files for each Ubuntu release. These are an industry-standard machine-readable format dataset that contain details of all known security vulnerabilities and fixes relevant to the Ubuntu release, and can be used to determine whether a particular patch is appropriate. OVAL files can also be used to audit a system to check whether the latest security fixes have been applied.
5 July 2022
Firefox could be made to crash or run programs as your login if it opened a malicious website.
CVE-2022-34471, CVE-2022-34475, CVE-2022-34470, and 14 others
5 July 2022
GnuPG could allow forged signatures.
5 July 2022
OpenSSL could be made to expose sensitive information over the network.
4 July 2022
Several security issues were fixed in PHP.
4 July 2022
Django could be made to expose sensitive information if it received a specially crafted input.
1 July 2022
Several security issues were fixed in the Linux kernel.
CVE-2022-1652, CVE-2022-1353, CVE-2022-28356, and 5 others
1 July 2022
The system could be made to crash under certain conditions.
1 July 2022
Several security issues were mitigated in the Linux kernel.
1 July 2022
Several security issues were fixed in curl.
30 June 2022
Several security issues were fixed in Vim.
CVE-2022-1733, CVE-2022-0413, CVE-2022-1785, and 5 others