Canonical

Ubuntu 24.04 LTS

5749 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.01%
  • Veröffentlicht 01.05.2026 14:15:27
  • Zuletzt bearbeitet 08.05.2026 18:21:45

In the Linux kernel, the following vulnerability has been resolved: netfilter: ctnetlink: zero expect NAT fields when CTA_EXPECT_NAT absent ctnetlink_alloc_expect() allocates expectations from a non-zeroing slab cache via nf_ct_expect_alloc(). Whe...

  • EPSS 0.01%
  • Veröffentlicht 01.05.2026 14:15:26
  • Zuletzt bearbeitet 08.05.2026 18:15:22

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: reject immediate NF_QUEUE verdict nft_queue is always used from userspace nftables to deliver the NF_QUEUE verdict. Immediately emitting an NF_QUEUE verdict i...

  • EPSS 0.01%
  • Veröffentlicht 01.05.2026 14:15:25
  • Zuletzt bearbeitet 08.05.2026 14:53:58

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_sync: hci_cmd_sync_queue_once() return -EEXIST if exists hci_cmd_sync_queue_once() needs to indicate whether a queue item was added, so caller can know if callbacks ...

  • EPSS 0.01%
  • Veröffentlicht 01.05.2026 14:15:25
  • Zuletzt bearbeitet 08.05.2026 14:56:44

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: SCO: fix race conditions in sco_sock_connect() sco_sock_connect() checks sk_state and sk_type without holding the socket lock. Two concurrent connect() syscalls on the s...

  • EPSS 0.01%
  • Veröffentlicht 01.05.2026 14:15:24
  • Zuletzt bearbeitet 08.05.2026 14:50:04

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_sync: fix leaks when hci_cmd_sync_queue_once fails When hci_cmd_sync_queue_once() returns with error, the destroy callback will not be called. Fix leaking reference...

  • EPSS 0.01%
  • Veröffentlicht 01.05.2026 14:15:23
  • Zuletzt bearbeitet 08.05.2026 14:35:10

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_conn: fix potential UAF in set_cig_params_sync hci_conn lookup and field access must be covered by hdev lock in set_cig_params_sync, otherwise it's possible it is fr...

  • EPSS 0.01%
  • Veröffentlicht 01.05.2026 14:15:23
  • Zuletzt bearbeitet 08.05.2026 14:41:09

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: MGMT: validate LTK enc_size on load Load Long Term Keys stores the user-provided enc_size and later uses it to size fixed-size stack operations when replying to LE LTK r...

  • EPSS 0.03%
  • Veröffentlicht 01.05.2026 14:15:22
  • Zuletzt bearbeitet 08.05.2026 14:15:26

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_event: fix potential UAF in hci_le_remote_conn_param_req_evt hci_conn lookup and field access must be covered by hdev lock in hci_le_remote_conn_param_req_evt, other...

  • EPSS 0.01%
  • Veröffentlicht 01.05.2026 14:15:21
  • Zuletzt bearbeitet 08.05.2026 14:13:28

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: MGMT: validate mesh send advertising payload length mesh_send() currently bounds MGMT_OP_MESH_SEND by total command length, but it never verifies that the bytes supplied...

  • EPSS 0.01%
  • Veröffentlicht 01.05.2026 14:15:20
  • Zuletzt bearbeitet 07.05.2026 20:31:01

In the Linux kernel, the following vulnerability has been resolved: net: macb: fix clk handling on PCI glue driver removal platform_device_unregister() may still want to use the registered clks during runtime resume callback. Note that there is a ...