Canonical

Ubuntu Pro 20.04 LTS

8177 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.22%
  • Veröffentlicht 15.08.2026 05:57:09
  • Zuletzt bearbeitet 17.08.2026 06:19:14

In the Linux kernel, the following vulnerability has been resolved: xprtrdma: Fix bcall rep leak and unbounded peek rpcrdma_is_bcall() decodes a reply's first words to decide whether the frame is a backchannel call. Two issues in that decode path l...

  • EPSS 0.22%
  • Veröffentlicht 15.08.2026 05:57:08
  • Zuletzt bearbeitet 17.08.2026 06:19:14

In the Linux kernel, the following vulnerability has been resolved: xprtrdma: Repost Receive buffers for malformed replies rpcrdma_wc_receive() decrements the transport's Receive count for every completion before it dispatches a successful Receive ...

  • EPSS 0.18%
  • Veröffentlicht 15.08.2026 05:57:05
  • Zuletzt bearbeitet 17.08.2026 06:19:13

In the Linux kernel, the following vulnerability has been resolved: apparmor: check label build before no_new_privs test aa_change_profile() builds a replacement label with fn_label_build_in_scope() before the no_new_privs subset check. The build h...

  • EPSS 0.18%
  • Veröffentlicht 15.08.2026 05:57:04
  • Zuletzt bearbeitet 17.08.2026 06:19:13

In the Linux kernel, the following vulnerability has been resolved: apparmor: aa_label_alloc use aa_label_free on alloc failure aa_label_alloc() allocates a secid before allocating or taking the label proxy. If the later proxy step fails, the error...

  • EPSS 0.22%
  • Veröffentlicht 15.08.2026 05:56:58
  • Zuletzt bearbeitet 17.08.2026 06:19:12

In the Linux kernel, the following vulnerability has been resolved: xfrm: validate selector family and prefixlen during match syzbot reported a shift-out-of-bounds in xfrm_selector_match() due to AF_UNSPEC selector with large prefixlen (e.g. 128) m...

  • EPSS 0.22%
  • Veröffentlicht 15.08.2026 05:56:57
  • Zuletzt bearbeitet 17.08.2026 06:19:12

In the Linux kernel, the following vulnerability has been resolved: sctp: hold socket lock when dumping endpoints in sctp_diag SCTP_DIAG endpoint dumping was traversing endpoint address lists without holding lock_sock(), while those lists could cha...

  • EPSS 0.18%
  • Veröffentlicht 15.08.2026 05:56:55
  • Zuletzt bearbeitet 17.08.2026 06:19:11

In the Linux kernel, the following vulnerability has been resolved: flow_dissector: check device type before reading ETH_ADDRS __skb_flow_dissect() unconditionally reads 12 bytes from eth_hdr(skb) when FLOW_DISSECTOR_KEY_ETH_ADDRS is requested. Thi...

  • EPSS 0.24%
  • Veröffentlicht 15.08.2026 05:56:53
  • Zuletzt bearbeitet 17.08.2026 06:19:11

In the Linux kernel, the following vulnerability has been resolved: ieee802154: fix kernel-infoleak in dgram_recvmsg() KMSAN reported a kernel-infoleak in move_addr_to_user(): BUG: KMSAN: kernel-infoleak in instrument_copy_to_user include/linux/in...

  • EPSS 0.22%
  • Veröffentlicht 15.08.2026 05:56:50
  • Zuletzt bearbeitet 17.08.2026 06:19:10

In the Linux kernel, the following vulnerability has been resolved: netfilter: ipset: Don't use test_bit() in lockless RCU readers in hash types Sashiko pointed out that there are a few lockless RCU readers using test_bit() which is a relaxed atomi...

  • EPSS 0.21%
  • Veröffentlicht 15.08.2026 05:56:49
  • Zuletzt bearbeitet 17.08.2026 06:19:10

In the Linux kernel, the following vulnerability has been resolved: netfilter: ipset: fix order of kfree_rcu() and rcu_assign_pointer() Sashiko pointed out that kfree_rcu() was called before rcu_assign_pointer() in handling the comment extension. F...