Bugs fixes in "google-guest-agent"
| Origin | Bug number | Title | Date fixed |
|---|---|---|---|
| CVE | CVE-2026-39831 | The Verify() method for FIDO/U2F security key types (sk-ecdsa-sha2-nistp256@openssh.com, sk-ssh-ed25519@openssh.com) did not check the User Presence | 2026-06-22 |
| CVE | CVE-2026-39830 | A malicious SSH peer could send unsolicited global request responses to fill an internal buffer, blocking the connection's read loop. The blocked gor | 2026-06-22 |
| CVE | CVE-2025-58181 | SSH servers parsing GSSAPI authentication requests do not validate the number of mechanisms specified in the request, allowing an attacker to cause u | 2026-01-13 |
| CVE | CVE-2025-58181 | SSH servers parsing GSSAPI authentication requests do not validate the number of mechanisms specified in the request, allowing an attacker to cause u | 2026-01-13 |
| CVE | CVE-2025-58181 | SSH servers parsing GSSAPI authentication requests do not validate the number of mechanisms specified in the request, allowing an attacker to cause u | 2026-01-13 |
| CVE | CVE-2025-58181 | SSH servers parsing GSSAPI authentication requests do not validate the number of mechanisms specified in the request, allowing an attacker to cause u | 2026-01-13 |
| CVE | CVE-2025-58181 | SSH servers parsing GSSAPI authentication requests do not validate the number of mechanisms specified in the request, allowing an attacker to cause u | 2026-01-13 |
| CVE | CVE-2025-58181 | SSH servers parsing GSSAPI authentication requests do not validate the number of mechanisms specified in the request, allowing an attacker to cause u | 2026-01-13 |
| CVE | CVE-2024-45337 | Applications and libraries which misuse connection.serverAuthenticate (via callback field ServerConfig.PublicKeyCallback) may be susceptible to an au | 2025-11-03 |
| CVE | CVE-2024-45337 | Applications and libraries which misuse connection.serverAuthenticate (via callback field ServerConfig.PublicKeyCallback) may be susceptible to an au | 2025-11-03 |
| CVE | CVE-2024-45337 | Applications and libraries which misuse connection.serverAuthenticate (via callback field ServerConfig.PublicKeyCallback) may be susceptible to an au | 2025-11-03 |
| CVE | CVE-2024-45337 | Applications and libraries which misuse connection.serverAuthenticate (via callback field ServerConfig.PublicKeyCallback) may be susceptible to an au | 2025-11-03 |
| CVE | CVE-2024-45337 | Applications and libraries which misuse connection.serverAuthenticate (via callback field ServerConfig.PublicKeyCallback) may be susceptible to an au | 2025-11-03 |
| CVE | CVE-2024-45337 | Applications and libraries which misuse connection.serverAuthenticate (via callback field ServerConfig.PublicKeyCallback) may be susceptible to an au | 2025-11-03 |
| CVE | CVE-2024-24786 | The protojson.Unmarshal function can enter an infinite loop when unmarshaling certain forms of invalid JSON. This condition can occur when unmarshali | 2024-06-25 |
| CVE | CVE-2024-24786 | The protojson.Unmarshal function can enter an infinite loop when unmarshaling certain forms of invalid JSON. This condition can occur when unmarshali | 2024-06-25 |
| CVE | CVE-2024-24786 | The protojson.Unmarshal function can enter an infinite loop when unmarshaling certain forms of invalid JSON. This condition can occur when unmarshali | 2024-04-23 |
| CVE | CVE-2024-24786 | The protojson.Unmarshal function can enter an infinite loop when unmarshaling certain forms of invalid JSON. This condition can occur when unmarshali | 2024-04-23 |
| Launchpad | 2050956 | [SRU] Update d/control file with dependencies | 2024-01-30 |
| Launchpad | 2050956 | [SRU] Update d/control file with dependencies | 2024-01-30 |
About
-
Send Feedback to @ubuntu_updates