UbuntuUpdates.org

Bugs addressed in recent updates

All Launchpad Ubuntu Debian CVE

Origin Bug number Title Packages
CVE CVE-2026-31712 In the Linux kernel, the following vulnerability has been resolved: ksmbd: require minimum ACE size in smb_check_perm_dacl() Both ACE-walk loops in linux linux-hwe-6.8 linux
CVE CVE-2026-31706 In the Linux kernel, the following vulnerability has been resolved: ksmbd: validate num_aces and harden ACE walk in smb_inherit_dacl() smb_inherit_ linux linux-hwe-6.8 linux
CVE CVE-2026-45993 In the Linux kernel, the following vulnerability has been resolved: LoongArch: Add spectre boundry for syscall dispatch table The LoongArch syscall linux linux-hwe-6.8 linux
CVE CVE-2026-46286 In the Linux kernel, the following vulnerability has been resolved: leds: qcom-lpg: Check for array overflow when selecting the high resolution Whe linux linux-hwe-6.8 linux
CVE CVE-2026-46041 In the Linux kernel, the following vulnerability has been resolved: greybus: gb-beagleplay: fix sleep in atomic context in hdlc_tx_frames() hdlc_ap linux linux-hwe-6.8 linux
CVE CVE-2026-23468 In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: Limit BO list entry count to prevent resource exhaustion Userspace linux linux-hwe-6.8 linux
CVE CVE-2026-46089 In the Linux kernel, the following vulnerability has been resolved: zram: do not forget to endio for partial discard requests As reported by Qu Wen linux linux-hwe-6.8 linux
CVE CVE-2026-46092 In the Linux kernel, the following vulnerability has been resolved: wifi: rtw88: check for PCI upstream bridge existence pci_upstream_bridge() retu linux linux-hwe-6.8 linux
CVE CVE-2026-45996 In the Linux kernel, the following vulnerability has been resolved: spi: imx: fix use-after-free on unbind The SPI subsystem frees the controller a linux linux-hwe-6.8 linux
CVE CVE-2026-45989 In the Linux kernel, the following vulnerability has been resolved: of: unittest: fix use-after-free in testdrv_probe() The function testdrv_probe( linux linux-hwe-6.8 linux
CVE CVE-2026-46073 In the Linux kernel, the following vulnerability has been resolved: hwmon: (powerz) Fix missing usb_kill_urb() on signal interrupt wait_for_complet linux linux-hwe-6.8 linux
CVE CVE-2026-46058 In the Linux kernel, the following vulnerability has been resolved: media: amphion: Fix race between m2m job_abort and device_run Fix kernel panic linux linux-hwe-6.8 linux
CVE CVE-2026-46011 In the Linux kernel, the following vulnerability has been resolved: media: mtk-jpeg: fix use-after-free in release path due to uncancelled work The linux linux-hwe-6.8 linux
CVE CVE-2026-46078 In the Linux kernel, the following vulnerability has been resolved: erofs: fix the out-of-bounds nameoff handling for trailing dirents Currently we linux linux-hwe-6.8 linux
CVE CVE-2026-46061 In the Linux kernel, the following vulnerability has been resolved: jbd2: fix deadlock in jbd2_journal_cancel_revoke() Commit f76d4c28a46a ("fs/jbd linux linux-hwe-6.8 linux
CVE CVE-2026-46016 In the Linux kernel, the following vulnerability has been resolved: remoteproc: xlnx: Only access buffer information if IPI is buffered In the rece linux linux-hwe-6.8 linux
CVE CVE-2026-46079 In the Linux kernel, the following vulnerability has been resolved: rbd: fix null-ptr-deref when device_add_disk() fails do_rbd_add() publishes the linux linux-hwe-6.8 linux
CVE CVE-2026-46012 In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix memory leaks in rxkad_verify_response() Fix rxkad_verify_response() linux linux-hwe-6.8 linux
CVE CVE-2026-46038 In the Linux kernel, the following vulnerability has been resolved: net: qrtr: ns: Free the node during ctrl_cmd_bye() A node sends the BYE packet linux linux-hwe-6.8 linux
CVE CVE-2026-46031 In the Linux kernel, the following vulnerability has been resolved: net: ks8851: Reinstate disabling of BHs around IRQ handler If the driver execut linux linux-hwe-6.8 linux



About   -   Send Feedback to @ubuntu_updates