Bugs fixes in "linux-hwe-7.0"
| Origin | Bug number | Title | Date fixed |
|---|---|---|---|
| CVE | CVE-2026-72191 | In the Linux kernel, the following vulnerability has been resolved: ntfs3: validate split-point offset in indx_insert_into_buffer indx_insert_into_ | 2026-09-10 |
| CVE | CVE-2026-72139 | In the Linux kernel, the following vulnerability has been resolved: tcp: defer md5sig_info kfree past RCU grace period in tcp_connect The md5+ao re | 2026-09-10 |
| CVE | CVE-2026-72137 | In the Linux kernel, the following vulnerability has been resolved: xfrm: nat_keepalive: avoid double free on send error nat_keepalive_send() frees | 2026-09-10 |
| CVE | CVE-2026-64551 | In the Linux kernel, the following vulnerability has been resolved: sctp: validate STALE_COOKIE cause length before reading staleness When an ERROR | 2026-09-10 |
| CVE | CVE-2026-72130 | In the Linux kernel, the following vulnerability has been resolved: nvmet-auth: reject short AUTH_RECEIVE buffers nvmet_execute_auth_receive() trus | 2026-09-10 |
| CVE | CVE-2026-72129 | In the Linux kernel, the following vulnerability has been resolved: nvmet-rdma: handle inline data with a nonzero offset nvmet_rdma_use_inline_sg() | 2026-09-10 |
| CVE | CVE-2026-72085 | In the Linux kernel, the following vulnerability has been resolved: scsi: xen: scsiback: Free unsubmitted command instead of double-putting it scsi | 2026-09-10 |
| CVE | CVE-2026-72084 | In the Linux kernel, the following vulnerability has been resolved: scsi: target: Bound PR-OUT TransportID parsing to the received buffer core_scsi | 2026-09-10 |
| CVE | CVE-2026-72083 | In the Linux kernel, the following vulnerability has been resolved: scsi: target: core: Fix iSCSI ISID use-after-free in REGISTER AND MOVE core_scs | 2026-09-10 |
| CVE | CVE-2026-72069 | In the Linux kernel, the following vulnerability has been resolved: locking/rt: Fix the incorrect RCU protection in rt_spin_unlock() rt_spin_unlock | 2026-09-10 |
| CVE | CVE-2026-72046 | In the Linux kernel, the following vulnerability has been resolved: gve: fix header buffer corruption with header-split and HW-GRO The DQO RX datap | 2026-09-10 |
| CVE | CVE-2026-72041 | In the Linux kernel, the following vulnerability has been resolved: espintcp: use sk_msg_free_partial to fix partial send sk_msg_free_partial() ens | 2026-09-10 |
| CVE | CVE-2026-72033 | In the Linux kernel, the following vulnerability has been resolved: orangefs: keep the readdir entry size 64-bit in fill_from_part() fill_from_part | 2026-09-10 |
| CVE | CVE-2026-72020 | In the Linux kernel, the following vulnerability has been resolved: ipvs: reset full ip_vs_seq structs in ip_vs_conn_new Commit 9a05475cebdd ("ipvs | 2026-09-10 |
| CVE | CVE-2026-72014 | In the Linux kernel, the following vulnerability has been resolved: drbd: reject data replies with an out-of-range payload size recv_dless_read() r | 2026-09-10 |
| CVE | CVE-2026-68477 | In the Linux kernel, the following vulnerability has been resolved: ipvs: fix more places with wrong ipv6 transport offsets Sashiko reports for mor | 2026-09-10 |
| CVE | CVE-2026-68476 | In the Linux kernel, the following vulnerability has been resolved: ipvs: reload ip header after head reallocation __ip_vs_get_out_rt() calls skb_e | 2026-09-10 |
| CVE | CVE-2026-68457 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: use opener credentials for FSCTL mutations SET_SPARSE, SET_ZERO_DATA and | 2026-09-10 |
| CVE | CVE-2026-68083 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix path resolution in ksmbd_vfs_kern_path_create The SMB2 open lookup i | 2026-09-10 |
| CVE | CVE-2026-72278 | In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: nv: Re-translate VNCR before injecting abort KVM faults in the VNCR | 2026-09-10 |
About
-
Send Feedback to @ubuntu_updates