Bugs fixes in "linux-hwe-6.8"
| Origin | Bug number | Title | Date fixed |
|---|---|---|---|
| CVE | CVE-2026-53131 | In the Linux kernel, the following vulnerability has been resolved: netfilter: require Ethernet MAC header before using eth_hdr() `ip6t_eui64`, `xt | 2026-09-08 |
| CVE | CVE-2026-53221 | In the Linux kernel, the following vulnerability has been resolved: ip6_vti: fix incorrect tunnel matching in vti6_tnl_lookup() In vti6_tnl_lookup( | 2026-09-08 |
| CVE | CVE-2026-64007 | In the Linux kernel, the following vulnerability has been resolved: netfilter: synproxy: refresh tcphdr after skb_ensure_writable synproxy_tstamp_a | 2026-09-08 |
| CVE | CVE-2026-64000 | In the Linux kernel, the following vulnerability has been resolved: net: hsr: fix potential OOB access in supervision frame handling Ensure the ent | 2026-09-08 |
| CVE | CVE-2026-63994 | In the Linux kernel, the following vulnerability has been resolved: tunnels: load network headers after skb_cow() in iptunnel_pmtud_build_icmp[v6]() | 2026-09-08 |
| CVE | CVE-2026-63993 | In the Linux kernel, the following vulnerability has been resolved: vxlan: do not reuse cached ip_hdr() value after skb_tunnel_check_pmtu() skb_tun | 2026-09-08 |
| CVE | CVE-2026-63992 | In the Linux kernel, the following vulnerability has been resolved: tunnels: do not assume transport header in iptunnel_pmtud_check_icmp() In some | 2026-09-08 |
| CVE | CVE-2026-63984 | In the Linux kernel, the following vulnerability has been resolved: ipv6: rpl: fix hdrlen overflow in ipv6_rpl_srh_decompress() ipv6_rpl_srh_decomp | 2026-09-08 |
| CVE | CVE-2026-64091 | In the Linux kernel, the following vulnerability has been resolved: batman-adv: tt: fix TOCTOU race for reported vlans The local TT based TVLV is g | 2026-09-08 |
| CVE | CVE-2026-63924 | In the Linux kernel, the following vulnerability has been resolved: ipv6: exthdrs: refresh nh pointer after ipv6_hop_jumbo() ipv6_hop_jumbo() calls | 2026-09-08 |
| CVE | CVE-2026-63922 | In the Linux kernel, the following vulnerability has been resolved: ipv6: exthdrs: refresh nh after handling HAO option ip6_parse_tlv() caches skb_ | 2026-09-08 |
| CVE | CVE-2026-63912 | In the Linux kernel, the following vulnerability has been resolved: xfrm: esp: restore combined single-frag length gate The ESP out-of-place fast p | 2026-09-08 |
| CVE | CVE-2026-63887 | In the Linux kernel, the following vulnerability has been resolved: scsi: target: iscsi: Bound iscsi_encode_text_output() appends to rsp_buf iscsi_ | 2026-09-08 |
| CVE | CVE-2026-63886 | In the Linux kernel, the following vulnerability has been resolved: scsi: target: iscsi: Validate CHAP_R length before base64 decode chap_server_co | 2026-09-08 |
| CVE | CVE-2026-63888 | In the Linux kernel, the following vulnerability has been resolved: scsi: target: iscsi: Fix CRC overread and double-free in iscsit_handle_text_cmd( | 2026-09-08 |
| CVE | CVE-2026-53216 | In the Linux kernel, the following vulnerability has been resolved: net: mvpp2: limit XDP frame size to the RX buffer mvpp2 has short and long BM p | 2026-09-08 |
| CVE | CVE-2026-53186 | In the Linux kernel, the following vulnerability has been resolved: RDMA/srp: bound SRP_RSP sense copy by the received length srp_process_rsp() cop | 2026-09-08 |
| CVE | CVE-2026-53355 | In the Linux kernel, the following vulnerability has been resolved: net: rds: clear i_sends on setup unwind The RDS IB connection teardown path is | 2026-09-08 |
| CVE | CVE-2026-53354 | In the Linux kernel, the following vulnerability has been resolved: arm64: errata: Mitigate TLBI errata on various Arm CPUs A number of CPUs develo | 2026-09-08 |
| CVE | CVE-2026-53080 | In the Linux kernel, the following vulnerability has been resolved: net/sched: cls_fw: fix NULL dereference of "old" filters before change() Like p | 2026-09-08 |
About
-
Send Feedback to @ubuntu_updates