Canonical

Ubuntu 22.04 LTS

12742 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Medienbericht
  • EPSS 0.2%
  • Veröffentlicht 04.09.2026 15:13:05
  • Zuletzt bearbeitet 04.09.2026 16:18:05

In the Linux kernel, the following vulnerability has been resolved: ipv4: reject undersized MTUs in ip_do_fragment() ip_do_fragment() subtracts the IPv4 header length from the effective MTU and passes the resulting payload MTU to ip_frag_next(). I...

Medienbericht
  • EPSS 0.2%
  • Veröffentlicht 04.09.2026 15:13:04
  • Zuletzt bearbeitet 04.09.2026 16:18:05

In the Linux kernel, the following vulnerability has been resolved: ipv6: fix use-after-free in ip6_finish_output2() ip6_finish_output2() caches a pointer to the IPv6 destination address (daddr) before invoking lwtunnel_xmit(). The LWT-BPF transmi...

Medienbericht
  • EPSS 0.21%
  • Veröffentlicht 04.09.2026 15:13:03
  • Zuletzt bearbeitet 04.09.2026 16:18:05

In the Linux kernel, the following vulnerability has been resolved: nvmet-auth: zero the AUTH_RECEIVE response buffer nvmet_execute_auth_receive() allocates the response buffer with kmalloc() sized by the host-supplied AUTH_RECEIVE allocation lengt...

Medienbericht
  • EPSS 0.2%
  • Veröffentlicht 04.09.2026 15:13:02
  • Zuletzt bearbeitet 04.09.2026 16:18:05

In the Linux kernel, the following vulnerability has been resolved: nvmet-fc: fix invalid free in LS IOD error path nvmet_fc_alloc_ls_iodlist() advances iod while initializing the LS IOD array. If an rqstbuf allocation or response buffer DMA mappin...

Medienbericht
  • EPSS 0.23%
  • Veröffentlicht 04.09.2026 15:13:01
  • Zuletzt bearbeitet 04.09.2026 16:18:05

In the Linux kernel, the following vulnerability has been resolved: nvmet-tcp: bound SGL data length before allocating command buffers nvmet_tcp_map_data() reads the host-controlled 32-bit sgl->length and, for the in-capsule offset descriptor (type...

Medienbericht
  • EPSS 0.2%
  • Veröffentlicht 04.09.2026 15:12:59
  • Zuletzt bearbeitet 07.09.2026 15:17:32

In the Linux kernel, the following vulnerability has been resolved: nvmet-tcp: Do not WARN on remotely-controlled oversized SGL allocations When fuzzing the nvme target code, I tripped a kernel warning in nvmet_tcp_map_data() because the length pas...

  • EPSS 0.17%
  • Veröffentlicht 04.09.2026 15:12:58
  • Zuletzt bearbeitet 04.09.2026 16:18:04

In the Linux kernel, the following vulnerability has been resolved: nvmet: pci-epf: fix use-after-free in nvmet_pci_epf_exec_iod_work() nvmet_pci_epf_exec_iod_work() submits an I/O command with req->execute() and then waits for the command to compl...

Medienbericht
  • EPSS 0.16%
  • Veröffentlicht 04.09.2026 15:12:57
  • Zuletzt bearbeitet 07.09.2026 15:17:32

In the Linux kernel, the following vulnerability has been resolved: fbdev: serialize mode sysfs access with lock_fb_info() show_mode(), show_modes(), and store_mode() access fb_info->modelist and fb_info->mode without holding lock_fb_info(). store_...

  • EPSS 0.16%
  • Veröffentlicht 04.09.2026 15:12:57
  • Zuletzt bearbeitet 07.09.2026 15:17:32

In the Linux kernel, the following vulnerability has been resolved: fbdev: Wrap user-invoked calls to fb_set_var() in helper Handle fbcon during display updates in fb_set_var_from_user(). Check with fbcon if the mode change is possible, update hard...

Medienbericht
  • EPSS 0.17%
  • Veröffentlicht 04.09.2026 15:12:56
  • Zuletzt bearbeitet 04.09.2026 16:18:04

In the Linux kernel, the following vulnerability has been resolved: mptcp: pm: fix memory leak from alloc-during-teardown race mptcp_pm_destroy() empties msk->pm.anno_list and msk->pm.userspace_pm_local_addr_list under msk->pm.lock during socket te...