UbuntuUpdates.org

Bugs addressed in recent updates

All Launchpad Ubuntu Debian CVE

Origin Bug number Title Packages
Launchpad 2110033 Disable strict bootstrapping artifact RID matching dotnet8 dotnet9 dotnet8 dotnet8 dotnet9 dotnet8 dotnet9 dotnet8 dotnet8 dotnet8 dotnet8 dotnet9
CVE CVE-2025-22247 VMware Tools contains an insecure file handling vulnerability. A malicious actor with non-administrative privileges on a guest VM may tamper the loca open-vm-tools open-vm-tools open-vm-tools open-vm-tools open-vm-tools open-vm-tools open-vm-tools open-vm-tools open-vm-tools open-vm-tools open-vm-tools open-vm-tools open-vm-tools open-vm-tools open-vm-tools open-vm-tools open-vm-tools open-vm-tools open-vm-tools open-vm-tools
Launchpad 2110249 [SRU] libreoffice 24.8.7 for oracular libreoffice libreoffice
Launchpad 2109956 [SRU] libreoffice 25.2.3 for plucky libreoffice libreoffice
Launchpad 2109817 [SRU] Add questing as a known Ubuntu distribution lintian lintian lintian lintian lintian lintian lintian lintian
Launchpad 2110309 NVIDIA internal test shows kernel warning during suspend/resume linux-nvidia-tegra-igx
CVE CVE-2025-46727 Rack is a modular Ruby web server interface. Prior to versions 2.2.14, 3.0.16, and 3.1.14, `Rack::QueryParser` parses query strings and `application/ ruby-rack ruby-rack ruby-rack ruby-rack ruby-rack ruby-rack
CVE CVE-2025-32441 Rack is a modular Ruby web server interface. Prior to version 2.2.14, when using the `Rack::Session::Pool` middleware, simultaneous rack requests can ruby-rack ruby-rack ruby-rack ruby-rack ruby-rack ruby-rack
CVE CVE-2025-0838 There exists a heap buffer overflow vulnerable in Abseil-cpp. The sized constructors, reserve(), and rehash() methods of absl::{flat,node}hash{set,ma abseil abseil abseil abseil abseil abseil abseil abseil abseil abseil abseil abseil
Launchpad 2110298 Plucky real-time patchset: 6.14-rt3 linux-realtime
CVE CVE-2025-32873 An issue was discovered in Django 4.2 before 4.2.21, 5.1 before 5.1.9, ... python-django
CVE CVE-2025-2866 Improper Verification of Cryptographic Signature vulnerability in LibreOffice allows PDF Signature Spoofing by Improper Validation. In the affect libreoffice libreoffice libreoffice libreoffice libreoffice libreoffice libreoffice libreoffice libreoffice libreoffice libreoffice libreoffice libreoffice libreoffice libreoffice libreoffice
CVE CVE-2025-43859 h11 is a Python implementation of HTTP/1.1. Prior to version 0.16.0, a leniency in h11's parsing of line terminators in chunked-coding message bodies python-h11 python-h11 python-h11 python-h11 python-h11 python-h11
Launchpad 2109976 Jammy real-time patch set update: v5.15.179-rt84 linux-nvidia-tegra linux-nvidia-tegra linux-nvidia-tegra
Launchpad 2110073 apply NVIDIA patches May 6, 2025 linux-nvidia-tegra linux-nvidia-tegra linux-nvidia-tegra
Launchpad 2109340 Test suite failures: stderr confusion update-manager update-manager
Launchpad 2104572 Booting the daily noble RISC-V installer image fails cd-boot-images-riscv64 cd-boot-images-riscv64
Launchpad 2109830 [SRU] kdeconnect - no SMS messages in Plucky kdeconnect
Launchpad 2109344 [SRU] calf.lv2: incorrect symlinks calf calf
Launchpad 2105678 azure: backport \ linux-azure-6.8 linux-azure-6.8



About   -   Send Feedback to @ubuntu_updates