Canonical

Ubuntu 24.04 LTS

10938 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.22%
  • Veröffentlicht 15.08.2026 05:54:44
  • Zuletzt bearbeitet 17.08.2026 06:18:28

In the Linux kernel, the following vulnerability has been resolved: ASoC: qcom: q6apm: fix NULL pointer dereference in graph_callback When q6apm_free_fragments() is called it frees rx_data.buf/tx_data.buf and sets them to NULL under graph->lock. A ...

  • EPSS 0.22%
  • Veröffentlicht 15.08.2026 05:54:43
  • Zuletzt bearbeitet 17.08.2026 06:18:27

In the Linux kernel, the following vulnerability has been resolved: netfilter: xt_cluster: reject template conntracks in hash match xt_cluster_mt() treats any non-NULL nf_ct_get() result as a fully initialized conntrack and passes it to xt_cluster_...

  • EPSS 0.2%
  • Veröffentlicht 15.08.2026 05:54:42
  • Zuletzt bearbeitet 17.08.2026 06:18:27

In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_fib: reject fib expression on the netdev egress hook A fib expression in a netdev egress base chain dereferences nft_in(pkt), NULL on the transmit path, causing a NU...

  • EPSS 0.21%
  • Veröffentlicht 15.08.2026 05:54:42
  • Zuletzt bearbeitet 14.09.2026 12:17:44

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_queue: pin bridge device while NFQUEUE holds fake dst The br_netfilter fake rtable is embedded in struct net_bridge and is attached to bridged packets with skb_dst_se...

  • EPSS 0.2%
  • Veröffentlicht 15.08.2026 05:54:41
  • Zuletzt bearbeitet 23.08.2026 13:16:42

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_conntrack_sip: validate skb_dst() before accessing it tc ingress and openvswitch do not guarantee routing information to be available. These subsystems use the conntr...

  • EPSS 0.2%
  • Veröffentlicht 15.08.2026 05:54:40
  • Zuletzt bearbeitet 23.08.2026 13:16:42

In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_set_pipapo: don't leak bad clone into future transaction On memory allocation failure the cloned nft_pipapo_match can enter a bad state: - some fields can have thei...

  • EPSS 0.21%
  • Veröffentlicht 15.08.2026 05:54:39
  • Zuletzt bearbeitet 17.08.2026 06:18:27

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_conntrack_reasm: guard mac_header adjustment after IPv6 defrag nf_ct_frag6_reasm() slides the packet head forward to drop the IPv6 fragment header and then unconditio...

  • EPSS 0.21%
  • Veröffentlicht 15.08.2026 05:54:39
  • Zuletzt bearbeitet 17.08.2026 06:18:27

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_nat_sip: reload possible stale data pointer quoting sashiko: ------------------------------------------------------------------------ [..] noticed a potential memor...

  • EPSS 0.21%
  • Veröffentlicht 15.08.2026 05:54:35
  • Zuletzt bearbeitet 17.08.2026 06:18:26

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_conncount: fix zone comparison in tuple dedup The "already exists" dedup logic in __nf_conncount_add() decides whether a connection has already been counted and can b...

  • EPSS 0.23%
  • Veröffentlicht 15.08.2026 05:54:32
  • Zuletzt bearbeitet 17.08.2026 06:18:26

In the Linux kernel, the following vulnerability has been resolved: gpu: host1x: Fix device reference leak in host1x_device_parse_dt() error path After device_initialize(), the embedded struct device in struct host1x_device should be released throu...