Your submission was sent successfully! Close

Thank you for contacting us. A member of our team will be in touch shortly. Close

You have successfully unsubscribed! Close

Thank you for signing up for our newsletter!
In these regular emails you will find the latest updates about Ubuntu and upcoming events where you can meet our team.Close

Search CVE reports


Toggle filters

11 – 13 of 13 results


CVE-2017-11671

Low priority

Some fixes available 2 of 167

Under certain circumstances, the ix86_expand_builtin function in i386.c in GNU Compiler Collection (GCC) version 4.6, 4.7, 4.8, 4.9, 5 before 5.5, and 6 before 6.4 will generate instruction sequences that clobber the status flag...

52 affected packages

gcc-3.3, gcc-4.4, gcc-4.4-armel-cross, gcc-4.4-armhf-cross, gcc-4.5...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
gcc-3.3 Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
gcc-4.4 Not in release Not in release Not in release Not in release Not in release
gcc-4.4-armel-cross Not in release Not in release Not in release Not in release Not in release
gcc-4.4-armhf-cross Not in release Not in release Not in release Not in release Not in release
gcc-4.5 Not in release Not in release Not in release Not in release Not in release
gcc-4.5-armel-cross Not in release Not in release Not in release Not in release Not in release
gcc-4.5-armhf-cross Not in release Not in release Not in release Not in release Not in release
gcc-4.6 Not in release Not in release Not in release Not in release Not in release
gcc-4.6-armel-cross Not in release Not in release Not in release Not in release Not in release
gcc-4.6-armhf-cross Not in release Not in release Not in release Not in release Not in release
gcc-4.7 Not in release Not in release Not in release Not in release Needs evaluation
gcc-4.7-arm64-cross Not in release Not in release Not in release Not in release Not in release
gcc-4.7-armel-cross Not in release Not in release Not in release Not in release Needs evaluation
gcc-4.7-armhf-cross Not in release Not in release Not in release Not in release Needs evaluation
gcc-4.7-powerpc-cross Not in release Not in release Not in release Not in release Not in release
gcc-4.8 Not in release Not in release Not in release Needs evaluation Needs evaluation
gcc-4.8-arm64-cross Not in release Not in release Not in release Not in release Needs evaluation
gcc-4.8-armhf-cross Not in release Not in release Not in release Not in release Needs evaluation
gcc-4.8-powerpc-cross Not in release Not in release Not in release Not in release Needs evaluation
gcc-4.8-ppc64el-cross Not in release Not in release Not in release Not in release Needs evaluation
gcc-4.9 Not in release Not in release Not in release Not in release Needs evaluation
gcc-4.9-arm64-cross Not in release Not in release Not in release Not in release Not in release
gcc-4.9-armhf-cross Not in release Not in release Not in release Not in release Not in release
gcc-4.9-powerpc-cross Not in release Not in release Not in release Not in release Not in release
gcc-4.9-ppc64el-cross Not in release Not in release Not in release Not in release Not in release
gcc-5 Not in release Not in release Not in release Not affected Fixed
gcc-5-cross Not in release Not in release Not in release Not affected Needs evaluation
gcc-6 Not in release Not in release Not in release Not affected Not in release
gcc-6-cross Not in release Not in release Not in release Not affected Not in release
gcc-6-cross-ports Not in release Not in release Not in release Not affected Not in release
gcc-7 Not in release Not in release Not affected Not affected Not in release
gcc-7-cross Not in release Not in release Not in release Not affected Not in release
gcc-7-cross-ports Not in release Not in release Not in release Not affected Not in release
gcc-arm-linux-androideabi Not in release Not in release Not in release Not in release Needs evaluation
gcc-arm-none-eabi Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
gcc-avr Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
gcc-defaults Not affected Not affected Not affected Not affected Not affected
gcc-defaults-arm64-cross Not in release Not in release Not in release Not in release Not in release
gcc-defaults-armel-cross Not in release Not in release Not in release Not in release Not in release
gcc-defaults-armhf-cross Not in release Not in release Not in release Not in release Not in release
gcc-defaults-powerpc-cross Not in release Not in release Not in release Not in release Not in release
gcc-defaults-ppc64el-cross Not in release Not in release Not in release Not in release Not in release
gcc-h8300-hms Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
gcc-i686-linux-android Not in release Not in release Not in release Not in release Needs evaluation
gcc-m68hc1x Not in release Needs evaluation Needs evaluation Needs evaluation Needs evaluation
gcc-mingw-w64 Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
gcc-msp430 Not in release Needs evaluation Needs evaluation Needs evaluation Needs evaluation
gcc-opt Not affected Not affected Not affected Not affected Not affected
gcc-snapshot Not affected Not affected Not affected Not affected Needs evaluation
gccgo-4.7 Not in release Not in release Not in release Not in release Not in release
gccgo-4.9 Not in release Not in release Not in release Not in release Not in release
gccgo-6 Not in release Not in release Not in release Not in release Fixed
Show all 52 packages Show less packages

CVE-2016-4973

Low priority
Needs evaluation

Binaries compiled against targets that use the libssp library in GCC for stack smashing protection (SSP) might allow local users to perform buffer overflow attacks by leveraging lack of the Object Size Checking feature.

4 affected packages

gcc-4.9, gcc-5, gcc-6, mingw-w64

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
gcc-4.9 Not in release Not in release Not in release Not in release Not affected
gcc-5 Not in release Not in release Not in release Not affected Not affected
gcc-6 Not in release Not in release Not in release Not affected Not in release
mingw-w64 Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2015-5276

Low priority
Vulnerable

The std::random_device class in libstdc++ in the GNU Compiler Collection (aka GCC) before 4.9.4 does not properly handle short reads from blocking sources, which makes it easier for context-dependent attackers to predict the...

46 affected packages

gcc-3.3, gcc-4.4, gcc-4.4-armel-cross, gcc-4.4-armhf-cross, gcc-4.5...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
gcc-3.3 Not affected Not affected Not affected Not affected Not affected
gcc-4.4 Not in release Not in release Not in release Not in release Not in release
gcc-4.4-armel-cross Not in release Not in release Not in release Not in release Not in release
gcc-4.4-armhf-cross Not in release Not in release Not in release Not in release Not in release
gcc-4.5 Not in release Not in release Not in release Not in release Not in release
gcc-4.5-armel-cross Not in release Not in release Not in release Not in release Not in release
gcc-4.5-armhf-cross Not in release Not in release Not in release Not in release Not in release
gcc-4.6 Not in release Not in release Not in release Not in release Not in release
gcc-4.6-armel-cross Not in release Not in release Not in release Not in release Not in release
gcc-4.6-armhf-cross Not in release Not in release Not in release Not in release Not in release
gcc-4.7 Not in release Not in release Not in release Not in release Vulnerable
gcc-4.7-arm64-cross Not in release Not in release Not in release Not in release Not in release
gcc-4.7-armel-cross Not in release Not in release Not in release Not in release Vulnerable
gcc-4.7-armhf-cross Not in release Not in release Not in release Not in release Vulnerable
gcc-4.7-powerpc-cross Not in release Not in release Not in release Not in release Not in release
gcc-4.8 Not in release Not in release Not in release Vulnerable Vulnerable
gcc-4.8-arm64-cross Not in release Not in release Not in release Not in release Vulnerable
gcc-4.8-armhf-cross Not in release Not in release Not in release Not in release Vulnerable
gcc-4.8-powerpc-cross Not in release Not in release Not in release Not in release Vulnerable
gcc-4.8-ppc64el-cross Not in release Not in release Not in release Not in release Vulnerable
gcc-4.9 Not in release Not in release Not in release Not in release Not affected
gcc-4.9-arm64-cross Not in release Not in release Not in release Not in release Not in release
gcc-4.9-armhf-cross Not in release Not in release Not in release Not in release Not in release
gcc-4.9-powerpc-cross Not in release Not in release Not in release Not in release Not in release
gcc-4.9-ppc64el-cross Not in release Not in release Not in release Not in release Not in release
gcc-5 Not in release Not in release Not in release Not affected Not affected
gcc-arm-linux-androideabi Not in release Not in release Not in release Not in release Vulnerable
gcc-arm-none-eabi Not affected Not affected Not affected Not affected Vulnerable
gcc-avr Not affected Not affected Not affected Not affected Vulnerable
gcc-defaults Not affected Not affected Not affected Not affected Not affected
gcc-defaults-arm64-cross Not in release Not in release Not in release Not in release Not in release
gcc-defaults-armel-cross Not in release Not in release Not in release Not in release Not in release
gcc-defaults-armhf-cross Not in release Not in release Not in release Not in release Not in release
gcc-defaults-powerpc-cross Not in release Not in release Not in release Not in release Not in release
gcc-defaults-ppc64el-cross Not in release Not in release Not in release Not in release Not in release
gcc-h8300-hms Not affected Not affected Not affected Not affected Not affected
gcc-i686-linux-android Not in release Not in release Not in release Not in release Vulnerable
gcc-m68hc1x Not in release Not affected Not affected Not affected Not affected
gcc-mingw-w64 Not affected Not affected Not affected Not affected Not affected
gcc-msp430 Not in release Vulnerable Vulnerable Vulnerable Vulnerable
gcc-opt Not affected Not affected Not affected Not affected Not affected
gcc-snapshot Not affected Not affected Not affected Not affected Not affected
gccgo-4.7 Not in release Not in release Not in release Not in release Not in release
gccgo-4.9 Not in release Not in release Not in release Not in release Not in release
gccgo-5 Not in release Not in release Not in release Not in release Not in release
gccgo-go Not in release Not in release Not in release Not in release Not in release
Show all 46 packages Show less packages