Canonical

Ubuntu Pro 20.04 LTS

8177 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.15%
  • Veröffentlicht 04.09.2026 16:48:27
  • Zuletzt bearbeitet 04.09.2026 17:16:58

In the Linux kernel, the following vulnerability has been resolved: ntfs: bound the attribute-list entry in ntfs_read_inode_mount() The $MFT attribute-list walk in ntfs_read_inode_mount() validates each entry only with "(u8 *)al_entry + 6 > al_end"...

  • EPSS 0.15%
  • Veröffentlicht 04.09.2026 16:48:23
  • Zuletzt bearbeitet 04.09.2026 17:16:58

In the Linux kernel, the following vulnerability has been resolved: ntfs3: Allocate iomap inline_data using alloc_page This fixes a BUG reported in iomap_write_end_inline: iomap_inline_data_valid checks that the inline_data fits within a page. If t...

  • EPSS 0.16%
  • Veröffentlicht 04.09.2026 16:48:15
  • Zuletzt bearbeitet 04.09.2026 17:16:58

In the Linux kernel, the following vulnerability has been resolved: alpha/PCI: Add security_locked_down() check to pci_mmap_resource() Currently, Alpha's pci_mmap_resource() does not check security_locked_down(LOCKDOWN_PCI_ACCESS) before allowing u...

Medienbericht
  • EPSS 0.15%
  • Veröffentlicht 04.09.2026 16:48:11
  • Zuletzt bearbeitet 04.09.2026 17:16:58

In the Linux kernel, the following vulnerability has been resolved: tipc: avoid busy looping in tipc_exit_net() Blamed commit introduced a busy-wait loop in tipc_exit_net() to wait for pending UDP bearer cleanup works to complete: while (at...

  • EPSS 0.16%
  • Veröffentlicht 04.09.2026 16:48:08
  • Zuletzt bearbeitet 04.09.2026 17:16:58

In the Linux kernel, the following vulnerability has been resolved: bpf: Add missing access_ok call to copy_user_syms As reported by sashiko we use __get_user without prior access_ok call on the user space pointer. Adding the missing call for the w...

Medienbericht
  • EPSS 0.16%
  • Veröffentlicht 04.09.2026 15:55:18
  • Zuletzt bearbeitet 04.09.2026 16:18:15

In the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: Fix responder UAF on IB_QP_MAX_DEST_RD_ATOMIC modify_qp rxe_qp_from_attr() handles IB_QP_MAX_DEST_RD_ATOMIC outside the IB_QP_STATE path, so it holds no state_lock and ru...

Medienbericht
  • EPSS 0.18%
  • Veröffentlicht 04.09.2026 15:55:17
  • Zuletzt bearbeitet 04.09.2026 16:18:15

In the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: Fix OOB in free_rd_atomic_resources() free_rd_atomic_resources() iterates using qp->attr.max_dest_rd_atomic. Updating max_dest_rd_atomic before freeing the old array can ...

  • EPSS 0.16%
  • Veröffentlicht 04.09.2026 15:55:16
  • Zuletzt bearbeitet 04.09.2026 16:18:15

In the Linux kernel, the following vulnerability has been resolved: nvme-tcp: fix usage of page_frag_cache nvme uses page_frag_cache to preallocate PDU for each preallocated request of block device. Block devices are created in parallel threads, co...

Medienbericht
  • EPSS 0.16%
  • Veröffentlicht 04.09.2026 15:55:15
  • Zuletzt bearbeitet 03.10.2026 11:17:40

In the Linux kernel, the following vulnerability has been resolved: usb: xhci: bail out of setup if the controller is inaccessible xhci_gen_setup() locates the operational registers using the capability length read from the very first register: x...

  • EPSS 0.15%
  • Veröffentlicht 04.09.2026 15:55:14
  • Zuletzt bearbeitet 21.09.2026 14:17:21

In the Linux kernel, the following vulnerability has been resolved: fuse: fix race between interrupt and resend After commit f8fce75fedf7 ("fuse: clear intr_entry in fuse_resend and fuse_remove_pending_req") the WARN_ON(!list_empty(&req->intr_entry...