UbuntuUpdates.org

Bugs addressed in recent updates

All Launchpad Ubuntu Debian CVE

Origin Bug number Title Packages
CVE CVE-2024-8927 cgi.force_redirect configuration is byppassible due to the environment variable collision php7.4 php8.3 php8.3 php8.1 php8.1 php7.4 php8.3 php8.3 php8.1 php8.1 php7.4 php7.4
CVE CVE-2024-8925 Erroneous parsing of multipart form data php7.4 php8.3 php8.3 php8.1 php8.1 php7.4 php8.3 php8.3 php8.1 php8.1 php7.4 php7.4
CVE CVE-2024-43802 Vim is an improved version of the unix vi text editor. When flushing the typeahead buffer, Vim moves the current position in the typeahead buffer but vim vim vim vim vim vim vim vim vim vim vim vim
CVE CVE-2024-42472 Flatpak is a Linux application sandboxing and distribution framework. Prior to versions 1.14.0 and 1.15.10, a malicious or compromised Flatpak app us flatpak flatpak bubblewrap flatpak bubblewrap bubblewrap flatpak bubblewrap flatpak bubblewrap flatpak bubblewrap
Launchpad 2077087 CVE-2024-42472: Access to files outside sandbox for apps using persistent= (--persist) flatpak flatpak flatpak flatpak flatpak flatpak
Launchpad 2073430 Automatic Time Zone not working on 24.04 gnome-control-center
Launchpad 2076164 List of \ gnome-control-center
Launchpad 2080611 [SRU] Backport gnome-control-center 46.4 to Noble gnome-control-center
Launchpad 2081700 Can't boot from encrypted volume after initramfs-tools=0.142ubuntu25.3 update initramfs-tools initramfs-tools
Launchpad 2080518 /usr/bin/w:11:print_host:print_from:showinfo:main procps procps
Launchpad 2065294 Diagnostics settings flips to Never without any user action gnome-control-center gnome-control-center
Launchpad 2077105 cloud-images do not produce sboms livecd-rootfs livecd-rootfs livecd-rootfs livecd-rootfs livecd-rootfs livecd-rootfs
Launchpad 2065848 An ocf:heartbeat:nfsserver resource's stop operation succeeded despite the /var/lib/nfs filesystem failing to unmount. resource-agents resource-agents resource-agents resource-agents
Launchpad 2069417 Soundwire support for the Intel LNL Gen platforms firmware-sof
Launchpad 2069760 Soundwire support for CS42L43 and CS35L56 on Intel MTL firmware-sof alsa-ucm-conf
Launchpad 2073389 SRU: backport GCC 13 to 24.04 LTS gcc-13 gcc-13
CVE CVE-2022-36402 An integer overflow vulnerability was found in vmwgfx driver in drivers/gpu/vmxgfx/vmxgfx_execbuf.c in GPU component of Linux kernel with device file linux-xilinx-zynqmp linux linux linux-bluefield linux-xilinx-zynqmp linux-bluefield linux-xilinx-zynqmp linux linux-bluefield linux linux-xilinx-zynqmp linux-bluefield
CVE CVE-2023-52531 In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: mvm: Fix a memory corruption issue A few lines above, space is k linux-xilinx-zynqmp linux linux linux-bluefield linux-xilinx-zynqmp linux-bluefield linux-xilinx-zynqmp linux linux-bluefield linux linux-xilinx-zynqmp linux-bluefield
CVE CVE-2023-52614 In the Linux kernel, the following vulnerability has been resolved: PM / devfreq: Fix buffer overflow in trans_stat_show Fix buffer overflow in tra linux-xilinx-zynqmp linux linux linux-bluefield linux-xilinx-zynqmp linux-bluefield linux-xilinx-zynqmp linux linux-bluefield linux linux-xilinx-zynqmp linux-bluefield
CVE CVE-2024-26640 In the Linux kernel, the following vulnerability has been resolved: tcp: add sanity checks to rx zerocopy TCP rx zerocopy intent is to map pages in linux-xilinx-zynqmp linux linux linux-bluefield linux-xilinx-zynqmp linux-bluefield linux-xilinx-zynqmp linux linux-bluefield linux linux-xilinx-zynqmp linux-bluefield



About   -   Send Feedback to @ubuntu_updates