Bugs addressed in recent updates
| Origin | Bug number | Title | Packages |
|---|---|---|---|
| Launchpad | 2007394 | [MIR][jammy] oem-stella-maria-meta | oem-stella-maria-meta |
| Launchpad | 1999966 | [MIR][jammy] oem-stella-slowpoke-rpl-meta | oem-stella-slowpoke-rpl-meta |
| CVE | CVE-2026-18297 | GStreamer OGG File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arb | gst-plugins-base1.0 gst-plugins-base1.0 gst-plugins-base1.0 |
| CVE | CVE-2026-18299 | GStreamer rtpsbcdepay Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on aff | gst-plugins-good1.0 gst-plugins-good1.0 gst-plugins-good1.0 gst-plugins-good1.0 gst-plugins-good1.0 gst-plugins-good1.0 |
| CVE | CVE-2026-18298 | GStreamer PNG File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbi | gst-plugins-good1.0 gst-plugins-good1.0 gst-plugins-good1.0 gst-plugins-good1.0 gst-plugins-good1.0 gst-plugins-good1.0 |
| CVE | CVE-2026-18296 | GStreamer MRF File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbi | gst-plugins-good1.0 gst-plugins-good1.0 gst-plugins-good1.0 gst-plugins-good1.0 gst-plugins-good1.0 gst-plugins-good1.0 |
| CVE | CVE-2026-18295 | GStreamer MRF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary c | gst-plugins-good1.0 gst-plugins-good1.0 gst-plugins-good1.0 gst-plugins-good1.0 gst-plugins-good1.0 gst-plugins-good1.0 |
| CVE | CVE-2026-1829 | The Content Visibility for Divi Builder plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 4.02 via th | gst-plugins-good1.0 gst-plugins-good1.0 gst-plugins-good1.0 gst-plugins-good1.0 gst-plugins-good1.0 gst-plugins-good1.0 |
| CVE | CVE-2026-16118 | A flaw was found in xdgmime. A heap-based buffer overflow can be triggered in _xdg_mime_magic_parse_magic_line() in the xdgmimemagic.c file on little | glib2.0 glib2.0 glib2.0 glib2.0 glib2.0 glib2.0 |
| CVE | CVE-2026-15588 | A denial-of-service and resource exhaustion vulnerability exists within the `GDBus` component of GLib. The `gdbusauth` authentication mechanism fails | glib2.0 glib2.0 glib2.0 glib2.0 glib2.0 glib2.0 |
| CVE | CVE-2026-58016 | A flaw was found in GLib. A state confusion issue exists in g_dbus_node_info_new_for_xml() in the gio/gdbusintrospection.c file when processing malfo | glib2.0 glib2.0 glib2.0 glib2.0 glib2.0 glib2.0 |
| CVE | CVE-2026-58015 | A flaw was found in GLib. The D-Bus client-side implementation of the DBUS_COOKIE_SHA1 SASL authentication mechanism does not validate the cookie_con | glib2.0 glib2.0 glib2.0 glib2.0 glib2.0 glib2.0 |
| CVE | CVE-2026-58014 | A flaw was found in GLib. An off-by-one error can occur in the g_key_file_get_locale_string_list function in the gkeyfile.c file when loading a key f | glib2.0 glib2.0 glib2.0 glib2.0 glib2.0 glib2.0 |
| CVE | CVE-2026-58013 | A flaw was found in GLib. A buffer over-read can occur in g_io_channel_read_line_backend() in the giochannel.c file when a custom line terminator wit | glib2.0 glib2.0 glib2.0 glib2.0 glib2.0 glib2.0 |
| CVE | CVE-2026-58012 | A flaw was found in GLib. A buffer over-read can occur in the g_regex_replace function when used with the `G_REGEX_RAW` compile flag and case-change | glib2.0 glib2.0 glib2.0 glib2.0 glib2.0 glib2.0 |
| CVE | CVE-2026-58011 | A flaw was found in GLib. An out-of-bounds read of only 2 bytes can occur in the g_date_time_get_ymd function in the glib/gdatetime.c file when an in | glib2.0 glib2.0 glib2.0 glib2.0 glib2.0 glib2.0 |
| CVE | CVE-2026-58010 | A flaw was found in GLib. An off-by-one error can occur in the gvs_tuple_is_normal function in the glib/gvariant-serialiser.c file when doing an alig | glib2.0 glib2.0 glib2.0 glib2.0 glib2.0 glib2.0 |
| Launchpad | 2007396 | [MIR][jammy] oem-stella-wangdora-meta | oem-stella-wangdora-meta |
| Launchpad | 2149957 | [SRU] release notes goes to wrong source | ubuntu-release-upgrader ubuntu-release-upgrader |
| Launchpad | 2154822 | [SRU] Upgrades to resolute with armhf foreign arch fail | ubuntu-release-upgrader ubuntu-release-upgrader |
About
-
Send Feedback to @ubuntu_updates