UbuntuUpdates.org

Bugs addressed in recent updates

All Launchpad Ubuntu Debian CVE

Origin Bug number Title Packages
Launchpad 2122640 When switching between the audio profiles of a bluetooth device, a sound glitch can be heard on another device wireplumber wireplumber wireplumber wireplumber
CVE CVE-2025-59682 An issue was discovered in Django 4.2 before 4.2.25, 5.1 before 5.1.13, and 5.2 before 5.2.7. The django.utils.archive.extract() function, used by th python-django python-django python-django python-django python-django python-django
CVE CVE-2025-59681 An issue was discovered in Django 4.2 before 4.2.25, 5.1 before 5.1.13, and 5.2 before 5.2.7. QuerySet.annotate(), QuerySet.alias(), QuerySet.aggrega python-django python-django python-django python-django python-django python-django
Launchpad 2071891 tcpdump segv if -Z and -w is specified tcpdump tcpdump tcpdump tcpdump
Launchpad 2126468 Add Dell DW5826e WWAN modem to autosuspend systemd-hwe systemd-hwe systemd-hwe systemd-hwe
Launchpad 2126434 [Regression Updates] System hangs when loading audit rules (5.15.0-156.166) linux linux linux-nvidia-tegra linux-xilinx-zynqmp linux-xilinx-zynqmp linux-nvidia-tegra-igx linux linux-xilinx-zynqmp
Launchpad 2121647 [KD240] Kernel error found `zynqmp-display fd4a0000.display: no PHY found` linux-xilinx-zynqmp linux-xilinx-zynqmp
Launchpad 2122564 [KR260] Kernel error found 'OF: graph: no port node found in /axi/display@fd4a0000' linux-xilinx-zynqmp linux-xilinx-zynqmp
CVE CVE-2025-9232 Out-of-bounds read in HTTP client no_proxy handling openssl openssl
CVE CVE-2025-9231 Timing side-channel in SM2 algorithm on 64 bit ARM openssl openssl
CVE CVE-2025-9230 Out-of-bounds read & write in RFC 3211 KEK Unwrap openssl openssl openssl openssl openssl openssl
Launchpad 2116751 openscap probe_file process consumes excessive resources during CIS scan openscap
Launchpad 2100570 [SRU] upload euslisp/jskeus to Ubuntu/Noble euslisp
Launchpad 2122609 Hardcoded MAX_RESTART_COUNT in unbound 1.13.1 blocks dns resolution of long cname chains unbound unbound unbound unbound
CVE CVE-2025-41244 VMware Aria Operations and VMware Tools contain a local privilege esca ... open-vm-tools open-vm-tools open-vm-tools open-vm-tools open-vm-tools open-vm-tools open-vm-tools open-vm-tools open-vm-tools open-vm-tools open-vm-tools open-vm-tools
CVE CVE-2025-59830 Rack is a modular Ruby web server interface. Prior to version 2.2.18, Rack::QueryParser enforces its params_limit only for parameters separated by &, ruby-rack ruby-rack ruby-rack ruby-rack
Launchpad 2125904 [SRU] borgbackup in jammy might loose backup in some corner cases borgbackup borgbackup
CVE CVE-2025-9900 A flaw was found in Libtiff. This vulnerability is a "write-what-where" condition, triggered when the library processes a specially crafted TIFF imag tiff tiff tiff tiff tiff tiff tiff tiff tiff tiff tiff tiff
CVE CVE-2025-9165 A flaw has been found in LibTIFF 4.7.0. This affects the function _TIFFmallocExt/_TIFFCheckRealloc/TIFFHashSetNew/InitCCITTFax3 of the file tools/tif tiff tiff tiff tiff tiff tiff tiff tiff tiff tiff tiff tiff
CVE CVE-2025-8961 A weakness has been identified in LibTIFF 4.7.0. This affects the function main of the file tiffcrop.c of the component tiffcrop. Executing manipulat tiff tiff tiff tiff tiff tiff tiff tiff tiff tiff tiff tiff



About   -   Send Feedback to @ubuntu_updates