UbuntuUpdates.org

Bugs addressed in recent updates

All Launchpad Ubuntu Debian CVE

Origin Bug number Title Packages
CVE CVE-2026-57966 A path traversal vulnerability was found in spice-vdagent. This flaw allows a malicious or compromised SPICE host to write arbitrary files to any loc spice-vdagent spice-vdagent spice-vdagent spice-vdagent spice-vdagent spice-vdagent
CVE CVE-2026-57965 A flaw was found in spice-vdagent. A malicious or compromised SPICE host can trigger an integer overflow by sending a specially crafted message. This spice-vdagent spice-vdagent spice-vdagent spice-vdagent spice-vdagent spice-vdagent
CVE CVE-2026-66035 libssh2 through 1.11.1, fixed in commit 42e33d8, contains a pre-authentication heap buffer overflow vulnerability that allows a malicious SSH server libssh2 libssh2 libssh2 libssh2
CVE CVE-2026-66033 libssh2 through 1.11.1, fixed in commit a2ed82d, contains a pre-authentication integer underflow vulnerability in the ssh2_cipher_crypt() function in libssh2 libssh2 libssh2 libssh2
CVE CVE-2026-66032 libssh2 through 1.11.1, fixed in commit 5e47761, contains a double-free vulnerability in the sftp_open() function in src/sftp.c that allows a malicio libssh2 libssh2 libssh2 libssh2
CVE CVE-2026-73283 In sshd in OpenSSH before 10.5, the restrict keyword (in authorized_keys) was supposed to be applicable to tunnel forwarding but was not. openssh openssh openssh openssh openssh openssh openssh openssh openssh openssh openssh openssh
CVE CVE-2026-73282 In ssh in OpenSSH before 10.5, a use-after-free for realloc data can occur if a certain pair of remote-forwarding operations are concurrent. openssh openssh openssh openssh openssh openssh openssh openssh openssh openssh openssh openssh
CVE CVE-2026-73281 In ssh-agent in OpenSSH before 10.5, some operations can occur remotely but were intended to occur only locally, including operations that add tokens openssh openssh openssh openssh openssh openssh openssh openssh openssh openssh openssh openssh
CVE CVE-2026-57062 CMS (Cryptographic Message Syntax) parsing in gpgsm in GnuPG through 2.5.20 mishandles the CMS format for AES-GCM because aes-ICVlen is supposed to b gnupg2 gnupg2 gnupg2 gnupg2 gnupg2 gnupg2 gnupg2 gnupg2
CVE CVE-2026-34502 Heap-based Buffer Overflow vulnerability in Apache Portable Runtime Utility memcached client This issue affects Apache Portable Runtime Utility: fro apr-util apr-util apr-util apr-util apr-util apr-util apr-util apr-util apr-util apr-util apr-util apr-util
CVE CVE-2026-34501 Heap-based Buffer Overflow vulnerability in Apache Portable Runtime Utility redis client. This issue affects Apache Portable Runtime Utility: from 1 apr-util apr-util apr-util apr-util apr-util apr-util apr-util apr-util apr-util apr-util apr-util apr-util
CVE CVE-2026-32327 A bug in APR-util version 1.6.3 (and earlier) allows a stack recursion attack against any library consumer which parses XML from untrusted sources an apr-util apr-util apr-util apr-util apr-util apr-util apr-util apr-util apr-util apr-util apr-util apr-util
CVE CVE-2025-49506 APR-util versions 1.6.3 (and earlier) function apr_password_validate() was not constant-time with regards to hashes or passwords comparisons, potenti apr-util apr-util apr-util apr-util apr-util apr-util apr-util apr-util apr-util apr-util apr-util apr-util
CVE CVE-2026-68743 A flaw was found in SSSD. The extract_authtok_v1() function in the PAM responder does not validate the auth_token_length field against the remaining sssd sssd sssd sssd sssd sssd sssd sssd sssd sssd sssd sssd
Launchpad 2160622 Local password entry may not appear after successful device authentication gnome-shell gnome-shell
Launchpad 2104373 [Bug] Failed 'netplan set' operation doesn't return non-0 error (Netplan 1.1.1 in Ubuntu 24.04) netplan.io netplan.io netplan.io
Launchpad 2154809 [ubuntu 26.04]ras-mc-ctl fails with \ rasdaemon
Launchpad 2151790 Failed to start cpupower-gui.service - Apply cpupower-gui config at boot. cpupower-gui
Launchpad 2164685 src cloud-init 26.2:noble, resolute cloud-init cloud-init cloud-init
Launchpad 2163182 [SRU] [UBUNTU 22.04] zkey: Fix CCA host version detection for newer CCA versions (s390-tools) s390-tools-signed s390-tools



About   -   Send Feedback to @ubuntu_updates