UbuntuUpdates.org

Bugs addressed in recent updates

All Launchpad Ubuntu Debian CVE

Origin Bug number Title Packages
Launchpad 2150664 [SRU] Backport fixes for sssd-kcm memory leak (PR #7823, #7834) in Noble sssd sssd
Launchpad 2154120 [SRU] gpg buggy on RISC-V when vector length /= 128B libgcrypt20 libgcrypt20
CVE CVE-2026-52859 Vim is an open source, command line text editor. Prior to version 9.2.0565, the update_snapshot() function in src/terminal.c copies the visible termi vim vim vim vim vim vim vim vim vim vim vim vim
CVE CVE-2026-52860 Vim is an open source, command line text editor. Prior to version 9.2.0597, Vim's Python omni-completion executes reconstructed function and class de vim vim vim vim vim vim vim vim vim vim vim vim
CVE CVE-2026-52858 Vim is an open source, command line text editor. Prior to version 9.2.0561, the Python omni-completion script in python3complete.vim for Vim with the vim vim vim vim vim vim vim vim vim vim vim vim
CVE CVE-2026-47167 Vim is an open source, command line text editor. Prior to version 9.2.0496, a code injection vulnerability exists in s:stepmatch() in the cucumber fi vim vim vim vim vim vim vim vim vim vim vim vim
CVE CVE-2026-47162 Vim is an open source, command line text editor. Prior to version 9.2.0495, a Vimscript code injection vulnerability exists in s:NetrwBookHistSave() vim vim vim vim vim vim vim vim vim vim vim vim
CVE CVE-2026-45191 Net::CIDR::Lite versions before 0.24 for Perl does not properly consider extraneous zero characters in CIDR mask values, which may allow IP ACL bypas libnet-cidr-lite-perl libnet-cidr-lite-perl libnet-cidr-lite-perl libnet-cidr-lite-perl libnet-cidr-lite-perl libnet-cidr-lite-perl libnet-cidr-lite-perl libnet-cidr-lite-perl
CVE CVE-2026-45190 Net::CIDR::Lite versions before 0.24 for Perl does not properly validate IP address and CIDR mask inputs, which may allow IP ACL bypass. Inputs cont libnet-cidr-lite-perl libnet-cidr-lite-perl libnet-cidr-lite-perl libnet-cidr-lite-perl libnet-cidr-lite-perl libnet-cidr-lite-perl libnet-cidr-lite-perl libnet-cidr-lite-perl
CVE CVE-2026-41071 libheif is a HEIF and AVIF file format decoder and encoder. In versions 1.21.2 and prior, a crafted HEIF sequence file where the saiz box declares mo libheif libheif libheif libheif libheif libheif libheif libheif
CVE CVE-2026-41069 libheif is a HEIF and AVIF file format decoder and encoder. In versions 1.21.2 and prior, a malformed HEIF sequence file can trigger an out-of-bounds libheif libheif libheif libheif libheif libheif libheif libheif
CVE CVE-2026-3950 A vulnerability was identified in strukturag libheif up to 1.21.2. This impacts the function Track::load of the file libheif/sequences/track.cc of th libheif libheif libheif libheif libheif libheif libheif libheif
CVE CVE-2026-32882 libheif is a HEIF and AVIF file format decoder and encoder. Versions 1.21.2 and prior contain a heap buffer over-read in HeifPixelImage::overlay() in libheif libheif libheif libheif libheif libheif libheif libheif libheif libheif libheif libheif
CVE CVE-2026-32814 libheif is a HEIF and AVIF file format decoder and encoder. In versions 1.21.2 and prior, when decoding a HEIF grid image with strict_decoding=false libheif libheif libheif libheif libheif libheif libheif libheif libheif libheif libheif libheif
CVE CVE-2026-32741 libheif is a HEIF and AVIF file format decoder and encoder. Versions 1.21.2 and below contain a heap buffer overflow in MaskImageCodec::decode_mask_i libheif libheif libheif libheif libheif libheif libheif libheif libheif libheif libheif libheif
CVE CVE-2026-32740 libheif is a HEIF and AVIF file format decoder and encoder. Versions 1.21.2 and prior contain a heap-buffer-overflow (write) vulnerability in the gri libheif libheif libheif libheif libheif libheif libheif libheif
CVE CVE-2026-32739 libheif is a HEIF and AVIF file format decoder and encoder. In versions 1.21.2 and below, a crafted 800-byte HEIF sequence file causes an infinite lo libheif libheif libheif libheif libheif libheif libheif libheif
CVE CVE-2026-32738 libheif is a HEIF and AVIF file format decoder and encoder. In versions 1.21.2 and below, a crafted 792-byte HEIF sequence file with samples_per_chun libheif libheif libheif libheif libheif libheif libheif libheif
Launchpad 2153448 [SRU] Layout use of addWidget nullifies defined panel libplasma
Launchpad 2152207 Failed to lock front buffer on /dev/dri/card1: gbm_surface_lock_front_buffer failed | Failed to query buffer age, got error 3003 mesa mesa



About   -   Send Feedback to @ubuntu_updates