UbuntuUpdates.org

Bugs addressed in recent updates

All Launchpad Ubuntu Debian CVE

Origin Bug number Title Packages
Launchpad 2083258 [SRU] xdg-dbus-proxy memory leak xdg-dbus-proxy xdg-dbus-proxy
Launchpad 2085157 mkinitramfs fails with copy_file binary '/libgcc_s.so.[1-9]' not found initramfs-tools
Launchpad 2077979 [SRU] Audacity 3.6.1: Waveform screen goes blank when zooming audacity
Launchpad 2081163 fix fsck.xfs run by different shells when fsck.mode=force is set xfsprogs xfsprogs xfsprogs
Launchpad 2087882 [SRU] New upstream microrelease .NET 8.0.111/8.0.11 dotnet8 dotnet8 dotnet8
Launchpad 2062535 zip fails when filenames contain unicode characters zip zip
Launchpad 2085848 db5.3: FTBFS in oracular !amd64 because of implicit-int db5.3
Launchpad 2081110 FTBFS for oracular 2:4.35-1.1ubuntu1 nspr
Launchpad 2081728 Startup crash (meta_seat_impl_run_input_task) with a wayland session and mouse keys mutter mutter
Launchpad 2085901 Background color doesn't change ptyxis
Launchpad 2085896 [SRU] disable floating point again on armhf speex speex speex speex
Launchpad 2078638 coredumps with Xymon on 24.04 xymon xymon xymon
Launchpad 2083240 buildd system user lacks homedir leading to issues with snaps[and more] livecd-rootfs livecd-rootfs
Launchpad 2081762 [SRU] lxc-excecute NULL pointer dereference causes segfault when sharing rootfs with host lxc lxc
Debian 1060450 apache2: Upgrade of libapache2-mod-phpX.Y does not reload apache2 apache2 apache2
Launchpad 2038912 Upgrade of libapache2-mod-php8.1 does not reload apache2 apache2 apache2 apache2 apache2
CVE CVE-2021-40812 The GD Graphics Library (aka LibGD) through 2.3.2 has an out-of-bounds read because of the lack of certain gdGetBuf and gdPutBuf return value checks. libgd2 libgd2 libgd2 libgd2 libgd2 libgd2 libgd2 libgd2
CVE CVE-2023-24536 Multipart form parsing can consume large amounts of CPU and memory when processing form inputs containing very large numbers of parts. This stems fro golang-1.18 golang-1.18 golang-1.18 golang-1.18 golang-1.17 golang-1.17 golang-1.17 golang-1.17
CVE CVE-2022-41725 A denial of service is possible from excessive resource consumption in net/http and mime/multipart. Multipart form parsing with mime/multipart.Reader golang-1.18 golang-1.18 golang-1.18 golang-1.18 golang-1.17 golang-1.17 golang-1.17 golang-1.17
CVE CVE-2022-41724 Large handshake records may cause panics in crypto/tls. Both clients and servers may send large TLS handshake records which cause servers and clients golang-1.18 golang-1.18 golang-1.18 golang-1.18 golang-1.17 golang-1.17 golang-1.17 golang-1.17



About   -   Send Feedback to @ubuntu_updates