Canonical

Ubuntu 24.04 LTS

10938 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.17%
  • Veröffentlicht 17.09.2026 16:11:27
  • Zuletzt bearbeitet 18.09.2026 18:18:21

In the Linux kernel, the following vulnerability has been resolved: usb: gadget: uac: validate rate list length before storing UAC1 and UAC2 configfs rate-list attributes parse a comma-separated list of sampling rates and store each parsed value in...

  • EPSS 0.21%
  • Veröffentlicht 17.09.2026 16:11:26
  • Zuletzt bearbeitet 17.09.2026 17:18:06

In the Linux kernel, the following vulnerability has been resolved: usb: gadget: configfs: fix out-of-bounds read of qw_sign os_desc_qw_sign_show() passes OS_STRING_QW_SIGN_LEN as the input length to utf16s_to_utf8s(), but that argument counts UTF-...

  • EPSS 0.17%
  • Veröffentlicht 17.09.2026 16:11:25
  • Zuletzt bearbeitet 17.09.2026 17:18:06

In the Linux kernel, the following vulnerability has been resolved: usb: gadget: aspeed_udc: check endpoint DMA allocation ast_udc_probe() allocates a coherent DMA buffer used as the backing store for endpoint buffers. ast_udc_init_ep() derives per...

  • EPSS 0.2%
  • Veröffentlicht 17.09.2026 16:11:25
  • Zuletzt bearbeitet 17.09.2026 17:18:06

In the Linux kernel, the following vulnerability has been resolved: usb: ljca: bound bank_num in ljca_enumerate_gpio() ljca_enumerate_gpio() reads desc->bank_num from the device and loops valid_pin[i] = get_unaligned_le32(...) for i < bank_num. val...

  • EPSS 0.21%
  • Veröffentlicht 17.09.2026 16:11:24
  • Zuletzt bearbeitet 17.09.2026 17:18:06

In the Linux kernel, the following vulnerability has been resolved: usb: fix UAF when probe runs concurrent to dyn ID removal Dynamic IDs are only guaranteed to be valid when usb_dynids_lock is held, as remove_id_store can free the node. Thus, make...

  • EPSS 0.21%
  • Veröffentlicht 17.09.2026 16:11:23
  • Zuletzt bearbeitet 17.09.2026 17:18:06

In the Linux kernel, the following vulnerability has been resolved: platform/mellanox: mlxbf-pmc: Check ACPI_COMPANION() against NULL Every platform driver can be forced to match a device that doesn't match its list of device IDs because of device_...

  • EPSS 0.12%
  • Veröffentlicht 17.09.2026 16:11:23
  • Zuletzt bearbeitet 18.09.2026 18:18:21

In the Linux kernel, the following vulnerability has been resolved: platform/x86: asus-wmi: fix resource leaks on probe failure During driver initialization in asus_wmi_add(), various subsystems are registered sequentially. However, the error path ...

  • EPSS 0.17%
  • Veröffentlicht 17.09.2026 16:11:22
  • Zuletzt bearbeitet 17.09.2026 17:18:05

In the Linux kernel, the following vulnerability has been resolved: platform/surface: acpi-notify: Check ACPI companion before use Since every platform driver can be forced to match a device that doesn't match its list of device IDs because of devi...

  • EPSS 0.12%
  • Veröffentlicht 17.09.2026 16:11:21
  • Zuletzt bearbeitet 18.09.2026 18:18:21

In the Linux kernel, the following vulnerability has been resolved: bpf: Require a BPF cpumask for bpf_cpumask_populate() bpf_cpumask_populate() writes to its destination with bitmap_copy(), but the destination is typed as struct cpumask *. That al...

  • EPSS 0.17%
  • Veröffentlicht 17.09.2026 16:11:21
  • Zuletzt bearbeitet 17.09.2026 17:18:05

In the Linux kernel, the following vulnerability has been resolved: clk: qcom: camcc-sc8280xp: unregister CAMCC_GDSC_CLK With the introduction of sync_state support in the clk and pmdomain subsystems, the following warning happens when the unused c...