Canonical

Ubuntu Pro 20.04 LTS

3682 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.01%
  • Veröffentlicht 01.05.2026 14:16:21
  • Zuletzt bearbeitet 06.05.2026 21:10:23

In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: validate rec->used in journal-replay file record check check_file_record() validates rec->total against the record size but never validates rec->used. The do_action() jo...

  • EPSS 0.05%
  • Veröffentlicht 01.05.2026 14:16:21
  • Zuletzt bearbeitet 06.05.2026 21:08:51

In the Linux kernel, the following vulnerability has been resolved: ksmbd: validate owner of durable handle on reconnect Currently, ksmbd does not verify if the user attempting to reconnect to a durable handle is the same user who originally opened...

  • EPSS 0.06%
  • Veröffentlicht 01.05.2026 14:16:21
  • Zuletzt bearbeitet 06.05.2026 21:07:36

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix use-after-free in __ksmbd_close_fd() via durable scavenger When a durable file handle survives session disconnect (TCP close without SMB2_LOGOFF), session_fd_check() set...

  • EPSS 0.01%
  • Veröffentlicht 01.05.2026 14:16:20
  • Zuletzt bearbeitet 06.05.2026 18:55:49

In the Linux kernel, the following vulnerability has been resolved: ALSA: caiaq: take a reference on the USB device in create_card() The caiaq driver stores a pointer to the parent USB device in cdev->chip.dev but never takes a reference on it. The...

  • EPSS 0.01%
  • Veröffentlicht 01.05.2026 14:16:20
  • Zuletzt bearbeitet 06.05.2026 18:44:52

In the Linux kernel, the following vulnerability has been resolved: f2fs: fix use-after-free of sbi in f2fs_compress_write_end_io() In f2fs_compress_write_end_io(), dec_page_count(sbi, type) can bring the F2FS_WB_CP_DATA counter to zero, unblocking...

  • EPSS 0.01%
  • Veröffentlicht 01.05.2026 14:16:20
  • Zuletzt bearbeitet 06.05.2026 18:42:19

In the Linux kernel, the following vulnerability has been resolved: writeback: Fix use after free in inode_switch_wbs_work_fn() inode_switch_wbs_work_fn() has a loop like: wb_get(new_wb); while (1) { list = llist_del_all(&new_wb->switch_wb...

  • EPSS 0.01%
  • Veröffentlicht 01.05.2026 14:16:20
  • Zuletzt bearbeitet 06.05.2026 20:46:54

In the Linux kernel, the following vulnerability has been resolved: ksmbd: use check_add_overflow() to prevent u16 DACL size overflow set_posix_acl_entries_dacl() and set_ntacl_dacl() accumulate ACE sizes in u16 variables. When a file has many POSI...

  • EPSS 0.06%
  • Veröffentlicht 01.05.2026 14:16:20
  • Zuletzt bearbeitet 06.05.2026 20:45:44

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix out-of-bounds write in smb2_get_ea() EA alignment smb2_get_ea() applies 4-byte alignment padding via memset() after writing each EA entry. The bounds check on buf_free_l...

  • EPSS 0.05%
  • Veröffentlicht 01.05.2026 14:16:20
  • Zuletzt bearbeitet 06.05.2026 20:27:43

In the Linux kernel, the following vulnerability has been resolved: ksmbd: validate num_aces and harden ACE walk in smb_inherit_dacl() smb_inherit_dacl() trusts the on-disk num_aces value from the parent directory's DACL xattr and uses it to size a...

  • EPSS 0.01%
  • Veröffentlicht 01.05.2026 14:16:20
  • Zuletzt bearbeitet 06.05.2026 20:26:38

In the Linux kernel, the following vulnerability has been resolved: ksmbd: validate response sizes in ipc_validate_msg() ipc_validate_msg() computes the expected message size for each response type by adding (or multiplying) attacker-controlled fie...