Bugs addressed in recent updates
| Origin | Bug number | Title | Packages |
|---|---|---|---|
| CVE | CVE-2026-53043 | In the Linux kernel, the following vulnerability has been resolved: ocfs2/dlm: validate qr_numregions in dlm_match_regions() Patch series "ocfs2/dl | linux-hwe-6.17 |
| CVE | CVE-2026-53046 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix use-after-free from async crypto on Qualcomm crypto engine ksmbd_cry | linux-hwe-6.17 |
| CVE | CVE-2026-53045 | In the Linux kernel, the following vulnerability has been resolved: memory: tegra124-emc: Fix dll_change check The code checking whether the specif | linux-hwe-6.17 |
| CVE | CVE-2026-53055 | In the Linux kernel, the following vulnerability has been resolved: crypto: hisilicon/sec2 - prevent req used-after-free for sec During packet tran | linux-hwe-6.17 |
| CVE | CVE-2026-53215 | In the Linux kernel, the following vulnerability has been resolved: net: mvpp2: refill RX buffers before XDP or skb use The RX error path returns t | linux-hwe-6.17 linux linux linux |
| CVE | CVE-2026-53247 | In the Linux kernel, the following vulnerability has been resolved: net: ethernet: mtk_eth_soc: Fix use-after-free in metadata dst teardown mtk_fre | linux-hwe-6.17 linux linux |
| CVE | CVE-2026-53260 | In the Linux kernel, the following vulnerability has been resolved: tcp: Add preempt_{disable,enable}_nested() in reqsk_queue_hash_req(). syzbot re | linux-hwe-6.17 linux |
| CVE | CVE-2026-52955 | In the Linux kernel, the following vulnerability has been resolved: libceph: Fix potential out-of-bounds access in crush_decode() A message of type | linux-hwe-6.17 |
| CVE | CVE-2026-52914 | In the Linux kernel, the following vulnerability has been resolved: batman-adv: fix fragment reassembly length accounting batman-adv keeps a runnin | linux-hwe-6.17 linux |
| CVE | CVE-2026-52986 | In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_conntrack_sip: don't use simple_strtoul Replace unsafe port parsi | linux-hwe-6.17 |
| CVE | CVE-2026-52993 | In the Linux kernel, the following vulnerability has been resolved: tipc: fix double-free in tipc_buf_append() tipc_msg_validate() can potentially | linux-hwe-6.17 |
| CVE | CVE-2026-53006 | In the Linux kernel, the following vulnerability has been resolved: ipv6: fix possible UAF in icmpv6_rcv() Caching saddr and daddr before pskb_pull | linux-hwe-6.17 |
| CVE | CVE-2026-53175 | In the Linux kernel, the following vulnerability has been resolved: inet: frags: fix use-after-free caused by the fqdir_pre_exit() flush On netns t | linux-hwe-6.17 linux |
| CVE | CVE-2026-53049 | In the Linux kernel, the following vulnerability has been resolved: gfs2: add some missing log locking Function gfs2_logd() calls the log flushing | linux-hwe-6.17 |
| CVE | CVE-2026-53216 | In the Linux kernel, the following vulnerability has been resolved: net: mvpp2: limit XDP frame size to the RX buffer mvpp2 has short and long BM p | linux-hwe-6.17 linux |
| CVE | CVE-2026-64531 | In the Linux kernel, the following vulnerability has been resolved: net: openvswitch: reject oversized nested action attrs Open vSwitch stores gene | linux-hwe-6.17 linux linux linux |
| CVE | CVE-2026-52999 | In the Linux kernel, the following vulnerability has been resolved: netfilter: nfnetlink_osf: fix out-of-bounds read on option matching In nf_osf_m | linux-hwe-6.17 |
| CVE | CVE-2026-52982 | In the Linux kernel, the following vulnerability has been resolved: net: usb: rtl8150: fix use-after-free in rtl8150_start_xmit() syzbot reported a | linux-hwe-6.17 |
| CVE | CVE-2026-56003 | A heap buffer overflow due to missing size checking in the property buffer when parsing PCF files in libXfont2 ComputeScaledProperties() before libXf | libxfont libxfont libxfont |
| CVE | CVE-2026-56002 | A heap bufferflow in pcfReadFont() due to missing glyph bounds checking in libXfont2 before 2.0.8 allows attackers authenticated as X client to exec | libxfont libxfont libxfont |
About
-
Send Feedback to @ubuntu_updates