On January 22, Canonical published, in a security notice, details about an AppArmor update for its Ubuntu 12.04 LTS (Precise Pangolin) operating system.
According to Canonical, PHP could be made to expose sensitive information over the network.
It was discovered that PHP incorrectly handled the openssl_encrypt function when used with an empty string.
On November 8, Canonical published in a security notice details about a Qt vulnerability for its Ubuntu 12.10 (Quantal Quetzal), Ubuntu 11.10 (Oneiric Ocelot) and Ubuntu 10.04 LTS (Lucid Lynx) operating systems. According to Canonical, Qt applications could be made to expose sensitive information over the network.
In a security notice, Canonical has published details about a Remote Login Service vulnerability for its Ubuntu 12.10 (Quantal Quetzal) operating system.
According to Canonical, the Remote Login Service could have been made to expose sensitive information.
It was discovered that Remote Login Service incorrectly purged account information when switching users.
On December 6, Canonical published in a security notice details about a libxml2 vulnerability for its Ubuntu 12.10 (Quantal Quetzal), Ubuntu 12.04 LTS (Precise Pangolin), Ubuntu 11.10 (Oneiric Ocelot), Ubuntu 10.04 LTS (Lucid Lynx), and Ubuntu 8.04 LTS (Hardy Heron) operating systems.
On September 26th, in a security notice Canonical published details about a Transmission vulnerability for its Ubuntu 12.04 LTS (Precise Pangolin) operating system.
According to Canonical, Transmission could be made to expose sensitive information over the network.
On March 14, Canonical published in a security notice details about a NSS vulnerability for its Ubuntu 12.10, Ubuntu 12.04 LTS, Ubuntu 11.10, and Ubuntu 10.04 LTS operating systems. According to Canonical, NSS could be made to expose sensitive information over the network.
On December 6, Canonical published in a security notice details about a Bind vulnerability for its Ubuntu 12.10 (Quantal Quetzal) and Ubuntu 12.04 LTS (Precise Pangolin) operating systems.
According to Canonical, Bind could have been made to crash if it received specially-crafted network traffic.
It was discovered that Bind incorrectly handled certain crafted queries when DNS64 was enabled.
On December 13, Canonical published in a security notice details about a unity-firefox-extension vulnerability for its Ubuntu 12.10 (Quantal Quetzal) operating system.
According to Canonical, unity-firefox-extension (Firefox extension for Unity Integration) could have been made to expose sensitive information over the network.
It was discovered that unity-firefox-extension bypassed the same orig
On December 5, Canonical published in a security notice details about a CUPS vulnerability for its Ubuntu 12.04 LTS (Precise Pangolin), Ubuntu 11.10 (Oneiric Ocelot), Ubuntu 10.04 LTS (Lucid Lynx), and Ubuntu 8.04 LTS (Hardy Heron) operating systems. According to Canonical, programs that used LibTIFF could have been made to crash or to run programs, if they opened a specially-crafted file.