Bugs addressed in recent updates
| Origin | Bug number | Title | Packages |
|---|---|---|---|
| CVE | CVE-2026-64247 | In the Linux kernel, the following vulnerability has been resolved: KVM: x86: hyper-v: Bound the bank index when querying sparse banks When checkin | linux linux-hwe-6.8 |
| CVE | CVE-2026-63794 | In the Linux kernel, the following vulnerability has been resolved: KVM: SVM: Fix page overflow in sev_dbg_crypt() for ENCRYPT path In sev_dbg_cryp | linux linux-hwe-6.8 |
| CVE | CVE-2026-64246 | In the Linux kernel, the following vulnerability has been resolved: power: reset: linkstation-poweroff: fix use-after-free in the linkstation_powero | linux linux-hwe-6.8 |
| CVE | CVE-2026-53403 | In the Linux kernel, the following vulnerability has been resolved: fbdev: Fix fb_new_modelist to prevent null-ptr-deref in fb_videomode_to_var inf | linux linux-hwe-6.8 |
| CVE | CVE-2026-64245 | In the Linux kernel, the following vulnerability has been resolved: fbdev: modedb: fix a possible UAF in fb_find_mode() If mode_option is NULL, it | linux linux-hwe-6.8 |
| CVE | CVE-2026-53397 | In the Linux kernel, the following vulnerability has been resolved: nfsd: fix posix_acl leak on SETACL decode failure nfsaclsvc_decode_setaclargs() | linux linux-hwe-6.8 |
| CVE | CVE-2026-53391 | In the Linux kernel, the following vulnerability has been resolved: NFSv4/pNFS: reject zero-length r_addr in nfs4_decode_mp_ds_addr nfs4_decode_mp_ | linux linux-hwe-6.8 |
| CVE | CVE-2026-53390 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix out-of-bounds read in smb_check_perm_dacl() The permission-check ACE | linux linux-hwe-6.8 |
| CVE | CVE-2026-53384 | In the Linux kernel, the following vulnerability has been resolved: serial: 8250_dw: unregister 8250 port if clk_notifier_register() fails dw8250_p | linux linux-hwe-6.8 |
| CVE | CVE-2026-64244 | In the Linux kernel, the following vulnerability has been resolved: drivers/base/memory: set mem->altmap after successful device registration If __ | linux linux-hwe-6.8 |
| CVE | CVE-2026-53387 | In the Linux kernel, the following vulnerability has been resolved: iio: light: veml6075: add bounds check to veml6075_it_ms index veml6075_it_ms h | linux linux-hwe-6.8 |
| CVE | CVE-2026-63940 | In the Linux kernel, the following vulnerability has been resolved: KVM: SEV: Ignore Port I/O requests of length '0' Explicitly ignore Port I/O req | linux linux-hwe-6.8 |
| CVE | CVE-2026-53389 | In the Linux kernel, the following vulnerability has been resolved: net/tcp-ao: fix use-after-free of key in del_async path In tcp_ao_delete_key(), | linux linux-hwe-6.8 |
| CVE | CVE-2026-53365 | In the Linux kernel, the following vulnerability has been resolved: vsock/virtio: fix zerocopy completion for multi-skb sends When a large message | linux linux-hwe-6.8 |
| CVE | CVE-2025-40014 | In the Linux kernel, the following vulnerability has been resolved: objtool, spi: amd: Fix out-of-bounds stack access in amd_set_spi_freq() If spee | linux linux-hwe-6.8 |
| CVE | CVE-2025-38187 | In the Linux kernel, the following vulnerability has been resolved: drm/nouveau: fix a use-after-free in r535_gsp_rpc_push() The RPC container is r | linux linux-hwe-6.8 |
| CVE | CVE-2025-38565 | In the Linux kernel, the following vulnerability has been resolved: perf/core: Exit early on perf_mmap() fail When perf_mmap() fails to allocate a | linux linux-hwe-6.8 |
| CVE | CVE-2025-38563 | In the Linux kernel, the following vulnerability has been resolved: perf/core: Prevent VMA split of buffer mappings The perf mmap code is careful a | linux linux-hwe-6.8 |
| CVE | CVE-2026-64280 | In the Linux kernel, the following vulnerability has been resolved: fpga: dfl-afu: validate DMA mapping length in afu_dma_map_region() afu_ioctl_dm | linux linux-hwe-6.8 |
| CVE | CVE-2026-64205 | In the Linux kernel, the following vulnerability has been resolved: i2c: i801: fix hardware state machine corruption in error path A severe liveloc | linux linux-hwe-6.8 |
About
-
Send Feedback to @ubuntu_updates