UbuntuUpdates.org

Bugs addressed in recent updates

All Launchpad Ubuntu Debian CVE

Origin Bug number Title Packages
CVE CVE-2025-39863 In the Linux kernel, the following vulnerability has been resolved: wifi: brcmfmac: fix use-after-free when rescheduling brcmf_btcoex_info work The linux linux linux-hwe-6.8 linux-lowlatency-hwe-6.8
CVE CVE-2025-39894 In the Linux kernel, the following vulnerability has been resolved: netfilter: br_netfilter: do not check confirmed bit in br_nf_local_in() after co linux linux linux-hwe-6.8 linux-lowlatency-hwe-6.8
CVE CVE-2025-39861 In the Linux kernel, the following vulnerability has been resolved: Bluetooth: vhci: Prevent use-after-free by removing debugfs files early Move th linux linux linux-hwe-6.8 linux-lowlatency-hwe-6.8
CVE CVE-2025-39860 In the Linux kernel, the following vulnerability has been resolved: Bluetooth: Fix use-after-free in l2cap_sock_cleanup_listen() syzbot reported th linux linux linux-hwe-6.8 linux-lowlatency-hwe-6.8
CVE CVE-2025-39857 In the Linux kernel, the following vulnerability has been resolved: net/smc: fix one NULL pointer dereference in smc_ib_is_sg_need_sync() BUG: kern linux linux linux-hwe-6.8 linux-lowlatency-hwe-6.8
CVE CVE-2025-39853 In the Linux kernel, the following vulnerability has been resolved: i40e: Fix potential invalid access when MAC list is empty list_first_entry() ne linux linux linux-hwe-6.8 linux-lowlatency-hwe-6.8
CVE CVE-2025-39849 In the Linux kernel, the following vulnerability has been resolved: wifi: cfg80211: sme: cap SSID length in __cfg80211_connect_result() If the ssid linux linux linux-hwe-6.8 linux-lowlatency-hwe-6.8
CVE CVE-2025-39848 In the Linux kernel, the following vulnerability has been resolved: ax25: properly unshare skbs in ax25_kiss_rcv() Bernard Pidoux reported a regres linux linux linux-hwe-6.8 linux-lowlatency-hwe-6.8
CVE CVE-2025-39847 In the Linux kernel, the following vulnerability has been resolved: ppp: fix memory leak in pad_compress_skb If alloc_skb() fails in pad_compress_s linux linux linux-hwe-6.8 linux-lowlatency-hwe-6.8
CVE CVE-2025-39846 In the Linux kernel, the following vulnerability has been resolved: pcmcia: Fix a NULL pointer dereference in __iodyn_find_io_region() In __iodyn_f linux linux linux-hwe-6.8 linux-lowlatency-hwe-6.8
CVE CVE-2025-39845 In the Linux kernel, the following vulnerability has been resolved: x86/mm/64: define ARCH_PAGE_TABLE_SYNC_MASK and arch_sync_kernel_mappings() Def linux linux linux-hwe-6.8 linux-lowlatency-hwe-6.8
CVE CVE-2025-39844 In the Linux kernel, the following vulnerability has been resolved: mm: move page table sync declarations to linux/pgtable.h During our internal te linux linux linux-hwe-6.8 linux-lowlatency-hwe-6.8
CVE CVE-2025-39895 In the Linux kernel, the following vulnerability has been resolved: sched: Fix sched_numa_find_nth_cpu() if mask offline sched_numa_find_nth_cpu() linux linux linux-hwe-6.8 linux-lowlatency-hwe-6.8
CVE CVE-2025-39842 In the Linux kernel, the following vulnerability has been resolved: ocfs2: prevent release journal inode after journal shutdown Before calling ocfs linux linux linux-hwe-6.8 linux-lowlatency-hwe-6.8
CVE CVE-2025-39891 In the Linux kernel, the following vulnerability has been resolved: wifi: mwifiex: Initialize the chan_stats array to zero The adapter->chan_stats[ linux linux linux-hwe-6.8 linux-lowlatency-hwe-6.8
CVE CVE-2025-39841 In the Linux kernel, the following vulnerability has been resolved: scsi: lpfc: Fix buffer free/clear order in deferred receive path Fix a use-afte linux linux linux-hwe-6.8 linux-lowlatency-hwe-6.8
CVE CVE-2025-39839 In the Linux kernel, the following vulnerability has been resolved: batman-adv: fix OOB read/write in network-coding decode batadv_nc_skb_decode_pa linux linux linux-hwe-6.8 linux-lowlatency-hwe-6.8
CVE CVE-2025-39838 In the Linux kernel, the following vulnerability has been resolved: cifs: prevent NULL pointer dereference in UTF16 conversion There can be a NULL linux linux linux-hwe-6.8 linux-lowlatency-hwe-6.8
CVE CVE-2025-39902 In the Linux kernel, the following vulnerability has been resolved: mm/slub: avoid accessing metadata when pointer is invalid in object_err() objec linux linux linux-hwe-6.8 linux-lowlatency-hwe-6.8
CVE CVE-2025-39920 In the Linux kernel, the following vulnerability has been resolved: pcmcia: Add error handling for add_interval() in do_validate_mem() In the do_va linux linux linux-hwe-6.8 linux-lowlatency-hwe-6.8



About   -   Send Feedback to @ubuntu_updates