Bugs addressed in recent updates
| Origin | Bug number | Title | Packages |
|---|---|---|---|
| CVE | CVE-2026-57966 | A path traversal vulnerability was found in spice-vdagent. This flaw allows a malicious or compromised SPICE host to write arbitrary files to any loc | spice-vdagent spice-vdagent spice-vdagent spice-vdagent spice-vdagent spice-vdagent |
| CVE | CVE-2026-57965 | A flaw was found in spice-vdagent. A malicious or compromised SPICE host can trigger an integer overflow by sending a specially crafted message. This | spice-vdagent spice-vdagent spice-vdagent spice-vdagent spice-vdagent spice-vdagent |
| CVE | CVE-2026-66035 | libssh2 through 1.11.1, fixed in commit 42e33d8, contains a pre-authentication heap buffer overflow vulnerability that allows a malicious SSH server | libssh2 libssh2 libssh2 libssh2 |
| CVE | CVE-2026-66033 | libssh2 through 1.11.1, fixed in commit a2ed82d, contains a pre-authentication integer underflow vulnerability in the ssh2_cipher_crypt() function in | libssh2 libssh2 libssh2 libssh2 |
| CVE | CVE-2026-66032 | libssh2 through 1.11.1, fixed in commit 5e47761, contains a double-free vulnerability in the sftp_open() function in src/sftp.c that allows a malicio | libssh2 libssh2 libssh2 libssh2 |
| CVE | CVE-2026-73283 | In sshd in OpenSSH before 10.5, the restrict keyword (in authorized_keys) was supposed to be applicable to tunnel forwarding but was not. | openssh openssh openssh openssh openssh openssh openssh openssh openssh openssh openssh openssh |
| CVE | CVE-2026-73282 | In ssh in OpenSSH before 10.5, a use-after-free for realloc data can occur if a certain pair of remote-forwarding operations are concurrent. | openssh openssh openssh openssh openssh openssh openssh openssh openssh openssh openssh openssh |
| CVE | CVE-2026-73281 | In ssh-agent in OpenSSH before 10.5, some operations can occur remotely but were intended to occur only locally, including operations that add tokens | openssh openssh openssh openssh openssh openssh openssh openssh openssh openssh openssh openssh |
| CVE | CVE-2026-57062 | CMS (Cryptographic Message Syntax) parsing in gpgsm in GnuPG through 2.5.20 mishandles the CMS format for AES-GCM because aes-ICVlen is supposed to b | gnupg2 gnupg2 gnupg2 gnupg2 gnupg2 gnupg2 gnupg2 gnupg2 |
| CVE | CVE-2026-34502 | Heap-based Buffer Overflow vulnerability in Apache Portable Runtime Utility memcached client This issue affects Apache Portable Runtime Utility: fro | apr-util apr-util apr-util apr-util apr-util apr-util apr-util apr-util apr-util apr-util apr-util apr-util |
| CVE | CVE-2026-34501 | Heap-based Buffer Overflow vulnerability in Apache Portable Runtime Utility redis client. This issue affects Apache Portable Runtime Utility: from 1 | apr-util apr-util apr-util apr-util apr-util apr-util apr-util apr-util apr-util apr-util apr-util apr-util |
| CVE | CVE-2026-32327 | A bug in APR-util version 1.6.3 (and earlier) allows a stack recursion attack against any library consumer which parses XML from untrusted sources an | apr-util apr-util apr-util apr-util apr-util apr-util apr-util apr-util apr-util apr-util apr-util apr-util |
| CVE | CVE-2025-49506 | APR-util versions 1.6.3 (and earlier) function apr_password_validate() was not constant-time with regards to hashes or passwords comparisons, potenti | apr-util apr-util apr-util apr-util apr-util apr-util apr-util apr-util apr-util apr-util apr-util apr-util |
| CVE | CVE-2026-68743 | A flaw was found in SSSD. The extract_authtok_v1() function in the PAM responder does not validate the auth_token_length field against the remaining | sssd sssd sssd sssd sssd sssd sssd sssd sssd sssd sssd sssd |
| Launchpad | 2160622 | Local password entry may not appear after successful device authentication | gnome-shell gnome-shell |
| Launchpad | 2104373 | [Bug] Failed 'netplan set' operation doesn't return non-0 error (Netplan 1.1.1 in Ubuntu 24.04) | netplan.io netplan.io netplan.io |
| Launchpad | 2154809 | [ubuntu 26.04]ras-mc-ctl fails with \ | rasdaemon |
| Launchpad | 2151790 | Failed to start cpupower-gui.service - Apply cpupower-gui config at boot. | cpupower-gui |
| Launchpad | 2164685 | src cloud-init 26.2:noble, resolute | cloud-init cloud-init cloud-init |
| Launchpad | 2163182 | [SRU] [UBUNTU 22.04] zkey: Fix CCA host version detection for newer CCA versions (s390-tools) | s390-tools-signed s390-tools |
About
-
Send Feedback to @ubuntu_updates