On October 26, in a security notice Canonical published details about an Exim vulnerability for its Ubuntu 12.10, Ubuntu 12.04 LTS, Ubuntu 11.10, Ubuntu 11.04, and Ubuntu 10.04 LTS operating systems.
According to Canonical, Exim could have been made to run programs if it received specially crafted network traffic.
It was discovered that Exim incorrectly handled DKIM DNS decoding.
On December 10, Canonical published in a security notice details about a GIMP vulnerability for its Ubuntu 12.10 Ubuntu 12.04, Ubuntu 11.10, and Ubuntu 10.04 LTS operating systems.According to Canonical, GIMP could have been made to crash or run programs as the users login, if it opened a specially crafted file.It was discovered that GIMP incorrectly handled malformed XWD files.
On December 17, Canonical published in a security notice details about a bogofilter vulnerability for its Ubuntu 10.04 LTS (Lucid Lynx) operating systems.
According to Canonical, bogofilter could have been made to crash or run programs, if it processed a specially crafted email.
It was discovered that bogofilter incorrectly handled certain invalid base64 code.
On December 5, Canonical published in a security notice details about a CUPS vulnerability for its Ubuntu 12.04 LTS (Precise Pangolin), Ubuntu 11.10 (Oneiric Ocelot), Ubuntu 10.04 LTS (Lucid Lynx), and Ubuntu 8.04 LTS (Hardy Heron) operating systems. According to Canonical, programs that used LibTIFF could have been made to crash or to run programs, if they opened a specially-crafted file.
On June 13, Canonical published in a security notice details about a DBus vulnerability for its Ubuntu 13.04, Ubuntu 12.10, and Ubuntu 12.04 LTS operating systems.According to Canonical, DBus could have been made to crash, if it received specially crafted input.It was discovered that DBus incorrectly handled certain messages.
In a security notice, Canonical has published details about a Mesa vulnerability for its Ubuntu 12.04 LTS (Precise Pangolin) operating system.
According to Canonical, Mesa could have been made to crash or run programs, if it processed specially crafted data.
It was discovered that Mesa incorrectly handled certain arrays.
On December 6, Canonical published in a security notice details about a Bind vulnerability for its Ubuntu 12.10 (Quantal Quetzal) and Ubuntu 12.04 LTS (Precise Pangolin) operating systems.
According to Canonical, Bind could have been made to crash if it received specially-crafted network traffic.
It was discovered that Bind incorrectly handled certain crafted queries when DNS64 was enabled.
On April 2, Canonical published in a security notice details about a libxslt vulnerability for its Ubuntu 12.10, Ubuntu 12.04 LTS, Ubuntu 11.10, Ubuntu 11.04, Ubuntu 10.04 LTS, and Ubuntu 8.04 LTS operating systems. According to Canonical, applications using libxslt could be made to crash, if they processed a specially crafted file.
On February 25, in a security notice Canonical published details about Transmission vulnerabilities for its Ubuntu 12.10, Ubuntu 12.04 LTS, and Ubuntu 11.10 operating systems.
According to Canonical, Transmission could be made to crash or run programs if it received specially crafted network traffic.
It was discovered that Transmission incorrectly handled certain micro transport protocol packets