Aggregator

docker-buildx-0.38.0-1.fc43

4 hours 17 minutes ago
FEDORA-2026-60dcacbb4f Packages in this update:
  • docker-buildx-0.38.0-1.fc43
Update description:
  • Update to release v0.38.0
  • Resolves: rhbz#2544412
  • Update to release v0.37.2
  • Resolves: rhbz#2544198
  • Resolves CVE-2026-56855: rhbz#2530594
  • resolves CVE-2026-78662: rhbz#2530802
  • Upstream fix

USN-8910-1: libxml2 vulnerabilities

5 hours 53 minutes ago
Yirou Yang discovered that libxml2 incorrectly handled certain XML catalogs. If a user or automated system was tricked into processing a specially crafted XML catalog, an attacker could possibly use this issue to cause libxml2 to crash, resulting in a denial of service. (CVE-2026-76781) It was discovered that libxml2 incorrectly handled certain large qualified names, leading to a heap-based buffer overflow. An attacker could possibly use this issue to cause libxml2 to crash, resulting in a denial of service, or possibly execute arbitrary code. (CVE-2026-86138) It was discovered that libxml2 incorrectly handled escaping certain large URI strings. An attacker could possibly use this issue to cause libxml2 to use excessive resources, leading to a denial of service. This issue only affected Ubuntu 26.04 LTS. (CVE-2026-86139) Xudong Cao and Meng Xu discovered that libxml2 incorrectly handled certain large XPointer expressions, leading to a heap-based buffer overflow. An attacker could possibly use this issue to cause libxml2 to crash, resulting in a denial of service, or possibly execute arbitrary code. (CVE-2026-86142) Xudong Cao and Meng Xu discovered that libxml2 did not check for integer overflows before passing output lengths to write callbacks. An attacker could possibly use this issue to cause an application using libxml2 to crash, resulting in a denial of service. (CVE-2026-86143) It was discovered that libxml2 did not apply parser options, such as disabling network access, when processing XInclude directives under certain circumstances. An attacker could possibly use this issue to perform XML external entity injection or server-side request forgery attacks, or cause a denial of service. (CVE-2026-86144)

docker-buildx-0.38.0-1.fc45

6 hours 44 minutes ago
FEDORA-2026-61b59254db Packages in this update:
  • docker-buildx-0.38.0-1.fc45
Update description:
  • Update to release v0.38.0
  • Resolves: rhbz#2544412
  • Update to release v0.37.2
  • Resolves: rhbz#2544198
  • Resolves CVE-2026-56855: rhbz#2530594
  • resolves CVE-2026-78662: rhbz#2530802
  • Upstream fix

USN-8909-1: libde265 vulnerability

8 hours 46 minutes ago
It was discovered that libde265 did not properly validate certain crafted H.265 bitstreams, leading to a NULL pointer dereference. An attacker could possibly use this issue to cause libde265 to crash, resulting in a denial of service.

hamlib-4.5.5-2.el8

12 hours 1 minute ago
FEDORA-EPEL-2026-9219ea595c Packages in this update:
  • hamlib-4.5.5-2.el8
Update description:

This is an update fixing stack out-of-bounds write and uninitialized memory disclosure (CVE-2026-54634).

hamlib-4.5.5-2.el9

12 hours 3 minutes ago
FEDORA-EPEL-2026-fe6a64f63f Packages in this update:
  • hamlib-4.5.5-2.el9
Update description:

This is an update fixing stack out-of-bounds write and uninitialized memory disclosure (CVE-2026-54634).

USN-8907-1: libgit2 vulnerability

12 hours 17 minutes ago
It was discovered that libgit2 incorrectly handled IP address SubjectAltName verification in TLS certificate validation. A remote attacker with a CA-trusted certificate could possibly use this issue to perform a machine-in-the-middle attack, leading to the exposure of sensitive information.

USN-8902-1: libarchive vulnerability

12 hours 44 minutes ago
It was discovered that libarchive had a signed integer overflow in its ZIP writer when handling encrypted entries with sizes near the maximum value. An attacker could possibly use this issue to cause libarchive to crash or execute arbitrary code.

python-django5-5.2.18-1.fc44

12 hours 51 minutes ago
FEDORA-2026-8a0e918188 Packages in this update:
  • python-django5-5.2.18-1.fc44
Update description:

Update Django 5 to version 5.2.18

  • Fixes CVE-2026-77050 [low]: Potential denial-of-service vulnerability in get_supported_language_variant()
  • Fixes CVE-2026-84429 [moderate]: Potential denial-of-service vulnerability in HTTP header parsing
  • Fixes CVE-2026-87890 [moderate]: Potential request forgery via spatial lookup byte values
  • Fixes CVE-2026-87975 [moderate]: Privilege abuse in model formsets with editable primary keys

See https://docs.djangoproject.com/en/dev/releases/5.2.18/ for more details

python-django5-5.2.18-1.fc45

12 hours 51 minutes ago
FEDORA-2026-36373ca634 Packages in this update:
  • python-django5-5.2.18-1.fc45
Update description:

Update Django 5 to version 5.2.18

  • Fixes CVE-2026-77050 [low]: Potential denial-of-service vulnerability in get_supported_language_variant()
  • Fixes CVE-2026-84429 [moderate]: Potential denial-of-service vulnerability in HTTP header parsing
  • Fixes CVE-2026-87890 [moderate]: Potential request forgery via spatial lookup byte values
  • Fixes CVE-2026-87975 [moderate]: Privilege abuse in model formsets with editable primary keys

See https://docs.djangoproject.com/en/dev/releases/5.2.18/ for more details

python-django5-5.2.18-1.fc43

12 hours 51 minutes ago
FEDORA-2026-a7b8ff851a Packages in this update:
  • python-django5-5.2.18-1.fc43
Update description:

Update Django 5 to version 5.2.18

  • Fixes CVE-2026-77050 [low]: Potential denial-of-service vulnerability in get_supported_language_variant()
  • Fixes CVE-2026-84429 [moderate]: Potential denial-of-service vulnerability in HTTP header parsing
  • Fixes CVE-2026-87890 [moderate]: Potential request forgery via spatial lookup byte values
  • Fixes CVE-2026-87975 [moderate]: Privilege abuse in model formsets with editable primary keys

See https://docs.djangoproject.com/en/dev/releases/5.2.18/ for more details

USN-8906-1: Linux kernel (IBM) vulnerabilities

13 hours 1 minute ago
It was discovered that some Arm processors could complete a broadcast translation lookaside buffer (TLB) invalidation before memory writes made through the invalidated translation were globally observed. A local attacker could possibly use this to write to memory after permission to do so had been revoked, bypassing memory protections or escalating privileges. (CVE-2025-10263) Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - ARM64 architecture; - ARM32 architecture; - MIPS architecture; - PowerPC architecture; - x86 architecture; - Intel NPU Driver; - Compute Acceleration Framework; - Auxiliary display drivers; - Drivers core; - Compressed RAM block device driver; - Bluetooth drivers; - Arm Firmware Framework for ARMv8-A(FFA); - EFI core; - GPIO subsystem; - GPU drivers; - HID subsystem; - Hardware monitoring drivers; - I2C subsystem; - IIO subsystem; - InfiniBand drivers; - Input Device core drivers; - Input Device (Mouse) drivers; - Multiple devices driver; - Media drivers; - Fastrpc Driver; - Ethernet bonding driver; - Network drivers; - Mellanox network drivers; - Microsoft Azure Network Adapter (MANA) driver; - Texas Instruments network drivers; - NVMEM (Non Volatile Memory) drivers; - Parport drivers; - SCSI subsystem; - SLIMbus drivers; - NVIDIA Tegra SoC drivers; - SPI subsystem; - TCM subsystem; - Trusted Execution Environment drivers; - Thunderbolt and USB4 drivers; - TTY drivers; - USB Device Class drivers; - DesignWare USB2 driver; - USB Gadget drivers; - USB Dual Role (OTG-ready) Controller drivers; - USB Serial drivers; - USB Type-C support driver; - USB Type-C Port Controller Manager driver; - USB Type-C Connector System Software Interface driver; - USB over IP driver; - Framebuffer layer; - Ext4 file system; - FUSE (File system in Userspace); - File systems infrastructure; - Network file systems library; - NTFS3 file system; - SMB network file system; - Software nodes and device properties; - Mellanox drivers; - Network traffic control; - Bluetooth subsystem; - IPv4 networking; - Netfilter; - IPv6 networking; - Network sockets; - XFRM subsystem; - Tracing infrastructure; - io_uring subsystem; - IPC subsystem; - IRQ subsystem; - Signal handling mechanism; - KProbes tracing; - Memory management; - 6LoWPAN network protocol; - IEEE 802 network protocols; - B.A.T.M.A.N. meshing protocol; - Ethernet bridge; - Networking core; - Devlink API; - Ethtool driver; - Handshake API; - HSR network protocol; - IEEE802154.4 network protocol; - IUCV driver; - L2TP protocol; - MAC80211 subsystem; - Management Component Transport Protocol (MCTP); - Multipath TCP; - NetLabel subsystem; - NFC subsystem; - Open vSwitch; - Phonet protocol; - Qualcomm IPC Router (QRTR); - RDS protocol; - RxRPC session sockets; - SCTP protocol; - SMC sockets; - TLS protocol; - Unix domain sockets; - VMware vSockets driver; - Wireless networking; - Key management; - Linux Security Modules (LSM) Framework; - ALSA framework; - AudioScience HPI driver; - Simple audio multiplexer codec driver; - Wolfson Microelectronics audio codecs; - KVM subsystem; (CVE-2025-68296, CVE-2025-68768, CVE-2025-71289, CVE-2026-23346, CVE-2026-23469, CVE-2026-31420, CVE-2026-31486, CVE-2026-31560, CVE-2026-31663, CVE-2026-43116, CVE-2026-43219, CVE-2026-43240, CVE-2026-43303, CVE-2026-43311, CVE-2026-43331, CVE-2026-45850, CVE-2026-45930, CVE-2026-46158, CVE-2026-46170, CVE-2026-46203, CVE-2026-46275, CVE-2026-46315, CVE-2026-46320, CVE-2026-46321, CVE-2026-46322, CVE-2026-52908, CVE-2026-52910, CVE-2026-52912, CVE-2026-52913, CVE-2026-52915, CVE-2026-52916, CVE-2026-52917, CVE-2026-52918, CVE-2026-52919, CVE-2026-52921, CVE-2026-52922, CVE-2026-52923, CVE-2026-52926, CVE-2026-52927, CVE-2026-52929, CVE-2026-52930, CVE-2026-52934, CVE-2026-52935, CVE-2026-52939, CVE-2026-52941, CVE-2026-52942, CVE-2026-52943, CVE-2026-52944, CVE-2026-52947, CVE-2026-52948, CVE-2026-53080, CVE-2026-53131, CVE-2026-53132, CVE-2026-53133, CVE-2026-53134, CVE-2026-53135, CVE-2026-53136, CVE-2026-53137, CVE-2026-53138, CVE-2026-53140, CVE-2026-53143, CVE-2026-53144, CVE-2026-53146, CVE-2026-53147, CVE-2026-53148, CVE-2026-53149, CVE-2026-53150, CVE-2026-53154, CVE-2026-53156, CVE-2026-53158, CVE-2026-53159, CVE-2026-53160, CVE-2026-53161, CVE-2026-53168, CVE-2026-53177, CVE-2026-53181, CVE-2026-53182, CVE-2026-53183, CVE-2026-53184, CVE-2026-53185, CVE-2026-53186, CVE-2026-53190, CVE-2026-53194, CVE-2026-53195, CVE-2026-53196, CVE-2026-53198, CVE-2026-53199, CVE-2026-53202, CVE-2026-53205, CVE-2026-53208, CVE-2026-53209, CVE-2026-53210, CVE-2026-53213, CVE-2026-53214, CVE-2026-53216, CVE-2026-53217, CVE-2026-53218, CVE-2026-53219, CVE-2026-53220, CVE-2026-53221, CVE-2026-53223, CVE-2026-53227, CVE-2026-53229, CVE-2026-53230, CVE-2026-53232, CVE-2026-53236, CVE-2026-53237, CVE-2026-53238, CVE-2026-53239, CVE-2026-53242, CVE-2026-53245, CVE-2026-53249, CVE-2026-53251, CVE-2026-53252, CVE-2026-53253, CVE-2026-53254, CVE-2026-53255, CVE-2026-53256, CVE-2026-53261, CVE-2026-53262, CVE-2026-53263, CVE-2026-53264, CVE-2026-53265, CVE-2026-53266, CVE-2026-53267, CVE-2026-53268, CVE-2026-53269, CVE-2026-53270, CVE-2026-53273, CVE-2026-53274, CVE-2026-53275, CVE-2026-53329, CVE-2026-53331, CVE-2026-53332, CVE-2026-53336, CVE-2026-53337, CVE-2026-53339, CVE-2026-53343, CVE-2026-53345, CVE-2026-53347, CVE-2026-53349, CVE-2026-53350, CVE-2026-53352, CVE-2026-53353, CVE-2026-53354, CVE-2026-53355, CVE-2026-53356, CVE-2026-53357, CVE-2026-53358, CVE-2026-63867, CVE-2026-63868, CVE-2026-63869, CVE-2026-63870, CVE-2026-63871, CVE-2026-63875, CVE-2026-63876, CVE-2026-63877, CVE-2026-63881, CVE-2026-63882, CVE-2026-63883, CVE-2026-63884, CVE-2026-63886, CVE-2026-63887, CVE-2026-63888, CVE-2026-63889, CVE-2026-63890, CVE-2026-63891, CVE-2026-63892, CVE-2026-63893, CVE-2026-63895, CVE-2026-63896, CVE-2026-63897, CVE-2026-63898, CVE-2026-63899, CVE-2026-63900, CVE-2026-63901, CVE-2026-63902, CVE-2026-63903, CVE-2026-63904, CVE-2026-63905, CVE-2026-63906, CVE-2026-63908, CVE-2026-63909, CVE-2026-63912, CVE-2026-63913, CVE-2026-63914, CVE-2026-63915, CVE-2026-63916, CVE-2026-63917, CVE-2026-63919, CVE-2026-63920, CVE-2026-63921, CVE-2026-63922, CVE-2026-63924, CVE-2026-63925, CVE-2026-63926, CVE-2026-63927, CVE-2026-63928, CVE-2026-63930, CVE-2026-63931, CVE-2026-63933, CVE-2026-63934, CVE-2026-63942, CVE-2026-63943, CVE-2026-63944, CVE-2026-63945, CVE-2026-63946, CVE-2026-63947, CVE-2026-63948, CVE-2026-63949, CVE-2026-63952, CVE-2026-63954, CVE-2026-63956, CVE-2026-63957, CVE-2026-63958, CVE-2026-63959, CVE-2026-63960, CVE-2026-63961, CVE-2026-63964, CVE-2026-63967, CVE-2026-63968, CVE-2026-63969, CVE-2026-63971, CVE-2026-63973, CVE-2026-63974, CVE-2026-63975, CVE-2026-63976, CVE-2026-63980, CVE-2026-63984, CVE-2026-63985, CVE-2026-63990, CVE-2026-63991, CVE-2026-63992, CVE-2026-63993, CVE-2026-63994, CVE-2026-64000, CVE-2026-64001, CVE-2026-64002, CVE-2026-64003, CVE-2026-64004, CVE-2026-64005, CVE-2026-64006, CVE-2026-64007, CVE-2026-64009, CVE-2026-64010, CVE-2026-64011, CVE-2026-64012, CVE-2026-64014, CVE-2026-64015, CVE-2026-64018, CVE-2026-64025, CVE-2026-64026, CVE-2026-64029, CVE-2026-64032, CVE-2026-64033, CVE-2026-64034, CVE-2026-64039, CVE-2026-64046, CVE-2026-64047, CVE-2026-64048, CVE-2026-64051, CVE-2026-64055, CVE-2026-64056, CVE-2026-64064, CVE-2026-64073, CVE-2026-64083, CVE-2026-64084, CVE-2026-64085, CVE-2026-64086, CVE-2026-64087, CVE-2026-64088, CVE-2026-64089, CVE-2026-64090, CVE-2026-64091, CVE-2026-64092, CVE-2026-64093, CVE-2026-64094, CVE-2026-64095, CVE-2026-64096, CVE-2026-64097, CVE-2026-64098, CVE-2026-64099, CVE-2026-64102, CVE-2026-64103, CVE-2026-64106, CVE-2026-64108, CVE-2026-64109, CVE-2026-64111, CVE-2026-64113, CVE-2026-64114, CVE-2026-64115, CVE-2026-64116, CVE-2026-64118, CVE-2026-64121, CVE-2026-64123, CVE-2026-64125, CVE-2026-64126, CVE-2026-64127, CVE-2026-64128, CVE-2026-64131, CVE-2026-64133, CVE-2026-64134, CVE-2026-64135, CVE-2026-64136, CVE-2026-64137, CVE-2026-64138, CVE-2026-64144, CVE-2026-64147, CVE-2026-64148, CVE-2026-64153, CVE-2026-64155, CVE-2026-64163, CVE-2026-64165, CVE-2026-64166, CVE-2026-64168, CVE-2026-64170, CVE-2026-64173, CVE-2026-64174, CVE-2026-64177, CVE-2026-64178, CVE-2026-64179, CVE-2026-64180, CVE-2026-64182, CVE-2026-64183, CVE-2026-64184, CVE-2026-64185, CVE-2026-64214, CVE-2026-64217, CVE-2026-64218, CVE-2026-64219, CVE-2026-64220, CVE-2026-64221, CVE-2026-64222, CVE-2026-64225, CVE-2026-64231, CVE-2026-64233, CVE-2026-64234, CVE-2026-64237, CVE-2026-64239, CVE-2026-64240, CVE-2026-64242, CVE-2026-64243, CVE-2026-64518, CVE-2026-64524, CVE-2026-64525, CVE-2026-64527, CVE-2026-64528, CVE-2026-92502)

USN-8905-1: Linux kernel (GCP) vulnerabilities

13 hours 1 minute ago
Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - ARM32 architecture; - ARM64 architecture; - MIPS architecture; - x86 architecture; - Intel NPU Driver; - Auxiliary display drivers; - Compressed RAM block device driver; - GPIO subsystem; - GPU drivers; - HID subsystem; - I2C subsystem; - IIO subsystem; - InfiniBand drivers; - Input Device core drivers; - Input Device (Mouse) drivers; - Multiple devices driver; - Media drivers; - Fastrpc Driver; - Ethernet bonding driver; - Network drivers; - Mellanox network drivers; - Microsoft Azure Network Adapter (MANA) driver; - Texas Instruments network drivers; - NVMEM (Non Volatile Memory) drivers; - Parport drivers; - SCSI subsystem; - SLIMbus drivers; - NVIDIA Tegra SoC drivers; - SPI subsystem; - Trusted Execution Environment drivers; - Thunderbolt and USB4 drivers; - TTY drivers; - USB Device Class drivers; - DesignWare USB2 driver; - USB Gadget drivers; - USB Dual Role (OTG-ready) Controller drivers; - USB Serial drivers; - USB Type-C support driver; - USB Type-C Port Controller Manager driver; - USB Type-C Connector System Software Interface driver; - USB over IP driver; - Framebuffer layer; - Ext4 file system; - FUSE (File system in Userspace); - File systems infrastructure; - SMB network file system; - Mellanox drivers; - Network traffic control; - Bluetooth subsystem; - IPv4 networking; - Netfilter; - IPv6 networking; - Network sockets; - XFRM subsystem; - IPC subsystem; - Signal handling mechanism; - Memory management; - 6LoWPAN network protocol; - IEEE 802 network protocols; - B.A.T.M.A.N. meshing protocol; - Ethernet bridge; - Networking core; - Devlink API; - Ethtool driver; - Handshake API; - HSR network protocol; - IEEE802154.4 network protocol; - IUCV driver; - L2TP protocol; - MAC80211 subsystem; - Management Component Transport Protocol (MCTP); - Multipath TCP; - NetLabel subsystem; - NFC subsystem; - Open vSwitch; - Qualcomm IPC Router (QRTR); - RDS protocol; - RxRPC session sockets; - SCTP protocol; - SMC sockets; - VMware vSockets driver; - Wireless networking; - ALSA framework; - Simple audio multiplexer codec driver; - Wolfson Microelectronics audio codecs; - KVM subsystem; (CVE-2025-68296, CVE-2025-68768, CVE-2026-23346, CVE-2026-31663, CVE-2026-43116, CVE-2026-43219, CVE-2026-43240, CVE-2026-43303, CVE-2026-43311, CVE-2026-43331, CVE-2026-45850, CVE-2026-45930, CVE-2026-46203, CVE-2026-46320, CVE-2026-46321, CVE-2026-46322, CVE-2026-52908, CVE-2026-52910, CVE-2026-52913, CVE-2026-52917, CVE-2026-52923, CVE-2026-52927, CVE-2026-52929, CVE-2026-52930, CVE-2026-52934, CVE-2026-52935, CVE-2026-52939, CVE-2026-52942, CVE-2026-52943, CVE-2026-52944, CVE-2026-52947, CVE-2026-52948, CVE-2026-53080, CVE-2026-53132, CVE-2026-53133, CVE-2026-53134, CVE-2026-53135, CVE-2026-53136, CVE-2026-53137, CVE-2026-53138, CVE-2026-53140, CVE-2026-53143, CVE-2026-53144, CVE-2026-53146, CVE-2026-53147, CVE-2026-53148, CVE-2026-53149, CVE-2026-53150, CVE-2026-53154, CVE-2026-53156, CVE-2026-53158, CVE-2026-53159, CVE-2026-53160, CVE-2026-53161, CVE-2026-53168, CVE-2026-53177, CVE-2026-53181, CVE-2026-53182, CVE-2026-53183, CVE-2026-53184, CVE-2026-53185, CVE-2026-53190, CVE-2026-53194, CVE-2026-53195, CVE-2026-53196, CVE-2026-53198, CVE-2026-53199, CVE-2026-53202, CVE-2026-53205, CVE-2026-53208, CVE-2026-53209, CVE-2026-53210, CVE-2026-53213, CVE-2026-53214, CVE-2026-53217, CVE-2026-53218, CVE-2026-53219, CVE-2026-53220, CVE-2026-53223, CVE-2026-53227, CVE-2026-53229, CVE-2026-53230, CVE-2026-53232, CVE-2026-53236, CVE-2026-53237, CVE-2026-53238, CVE-2026-53239, CVE-2026-53242, CVE-2026-53245, CVE-2026-53249, CVE-2026-53251, CVE-2026-53252, CVE-2026-53253, CVE-2026-53254, CVE-2026-53255, CVE-2026-53256, CVE-2026-53261, CVE-2026-53262, CVE-2026-53263, CVE-2026-53264, CVE-2026-53265, CVE-2026-53266, CVE-2026-53267, CVE-2026-53268, CVE-2026-53269, CVE-2026-53270, CVE-2026-53273, CVE-2026-53274, CVE-2026-53275, CVE-2026-53329, CVE-2026-53331, CVE-2026-53332, CVE-2026-53336, CVE-2026-53337, CVE-2026-53339, CVE-2026-53343, CVE-2026-53345, CVE-2026-53347, CVE-2026-53349, CVE-2026-53350, CVE-2026-53352, CVE-2026-53353, CVE-2026-53356, CVE-2026-53358, CVE-2026-63867, CVE-2026-63868, CVE-2026-63869, CVE-2026-63870, CVE-2026-63871, CVE-2026-63875, CVE-2026-63876, CVE-2026-63877, CVE-2026-63881, CVE-2026-63882, CVE-2026-63883, CVE-2026-63884, CVE-2026-63889, CVE-2026-63890, CVE-2026-63891, CVE-2026-63892, CVE-2026-63893, CVE-2026-63895, CVE-2026-63896, CVE-2026-63897, CVE-2026-63898, CVE-2026-63899, CVE-2026-63900, CVE-2026-63901, CVE-2026-63902, CVE-2026-63903, CVE-2026-63904, CVE-2026-63905, CVE-2026-63906, CVE-2026-63908, CVE-2026-63909, CVE-2026-63913, CVE-2026-63914, CVE-2026-63915, CVE-2026-63916, CVE-2026-63917, CVE-2026-63919, CVE-2026-63920, CVE-2026-63921, CVE-2026-63925, CVE-2026-63926, CVE-2026-63927, CVE-2026-63928, CVE-2026-63930, CVE-2026-63931, CVE-2026-63933, CVE-2026-63934, CVE-2026-63942, CVE-2026-63943, CVE-2026-63944, CVE-2026-63945, CVE-2026-63946, CVE-2026-63947, CVE-2026-63948, CVE-2026-63949, CVE-2026-63952, CVE-2026-63954, CVE-2026-63956, CVE-2026-63957, CVE-2026-63958, CVE-2026-63959, CVE-2026-63960, CVE-2026-63961, CVE-2026-63964, CVE-2026-63967, CVE-2026-63968, CVE-2026-63969, CVE-2026-63971, CVE-2026-63973, CVE-2026-63974, CVE-2026-63975, CVE-2026-63976, CVE-2026-63980, CVE-2026-63985, CVE-2026-63990, CVE-2026-63991, CVE-2026-64001, CVE-2026-64002, CVE-2026-64003, CVE-2026-64004, CVE-2026-64005, CVE-2026-64006, CVE-2026-64009, CVE-2026-64010, CVE-2026-64011, CVE-2026-64012, CVE-2026-64014, CVE-2026-64026, CVE-2026-64090, CVE-2026-64093, CVE-2026-64094, CVE-2026-64095, CVE-2026-64099, CVE-2026-64123, CVE-2026-64131, CVE-2026-64222, CVE-2026-64233, CVE-2026-64234, CVE-2026-64237, CVE-2026-64239, CVE-2026-64240, CVE-2026-64242, CVE-2026-64243, CVE-2026-64524, CVE-2026-64525, CVE-2026-64527, CVE-2026-64528, CVE-2026-72046, CVE-2026-92502)

USN-8904-1: Linux kernel (Azure) vulnerabilities

13 hours 2 minutes ago
Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - ARM32 architecture; - ARM64 architecture; - MIPS architecture; - x86 architecture; - Intel NPU Driver; - Auxiliary display drivers; - Compressed RAM block device driver; - GPIO subsystem; - GPU drivers; - HID subsystem; - I2C subsystem; - IIO subsystem; - InfiniBand drivers; - Input Device core drivers; - Input Device (Mouse) drivers; - Multiple devices driver; - Media drivers; - Fastrpc Driver; - Ethernet bonding driver; - Network drivers; - Mellanox network drivers; - Microsoft Azure Network Adapter (MANA) driver; - Texas Instruments network drivers; - NVMEM (Non Volatile Memory) drivers; - Parport drivers; - SCSI subsystem; - SLIMbus drivers; - NVIDIA Tegra SoC drivers; - SPI subsystem; - Trusted Execution Environment drivers; - Thunderbolt and USB4 drivers; - TTY drivers; - USB Device Class drivers; - DesignWare USB2 driver; - USB Gadget drivers; - USB Dual Role (OTG-ready) Controller drivers; - USB Serial drivers; - USB Type-C support driver; - USB Type-C Port Controller Manager driver; - USB Type-C Connector System Software Interface driver; - USB over IP driver; - Framebuffer layer; - Ext4 file system; - FUSE (File system in Userspace); - File systems infrastructure; - SMB network file system; - Mellanox drivers; - Network traffic control; - Bluetooth subsystem; - IPv4 networking; - Netfilter; - IPv6 networking; - Network sockets; - XFRM subsystem; - IPC subsystem; - Signal handling mechanism; - Memory management; - 6LoWPAN network protocol; - IEEE 802 network protocols; - B.A.T.M.A.N. meshing protocol; - Ethernet bridge; - Networking core; - Devlink API; - Ethtool driver; - Handshake API; - HSR network protocol; - IEEE802154.4 network protocol; - IUCV driver; - L2TP protocol; - MAC80211 subsystem; - Management Component Transport Protocol (MCTP); - Multipath TCP; - NetLabel subsystem; - NFC subsystem; - Open vSwitch; - Qualcomm IPC Router (QRTR); - RDS protocol; - RxRPC session sockets; - SCTP protocol; - SMC sockets; - VMware vSockets driver; - Wireless networking; - ALSA framework; - Simple audio multiplexer codec driver; - Wolfson Microelectronics audio codecs; - KVM subsystem; (CVE-2025-68296, CVE-2025-68768, CVE-2026-23346, CVE-2026-31663, CVE-2026-43116, CVE-2026-43219, CVE-2026-43240, CVE-2026-43303, CVE-2026-43311, CVE-2026-43331, CVE-2026-45850, CVE-2026-45930, CVE-2026-46203, CVE-2026-46320, CVE-2026-46321, CVE-2026-46322, CVE-2026-52908, CVE-2026-52910, CVE-2026-52913, CVE-2026-52917, CVE-2026-52923, CVE-2026-52927, CVE-2026-52929, CVE-2026-52930, CVE-2026-52934, CVE-2026-52935, CVE-2026-52939, CVE-2026-52942, CVE-2026-52943, CVE-2026-52944, CVE-2026-52947, CVE-2026-52948, CVE-2026-53080, CVE-2026-53132, CVE-2026-53133, CVE-2026-53134, CVE-2026-53135, CVE-2026-53136, CVE-2026-53137, CVE-2026-53138, CVE-2026-53140, CVE-2026-53143, CVE-2026-53144, CVE-2026-53146, CVE-2026-53147, CVE-2026-53148, CVE-2026-53149, CVE-2026-53150, CVE-2026-53154, CVE-2026-53156, CVE-2026-53158, CVE-2026-53159, CVE-2026-53160, CVE-2026-53161, CVE-2026-53168, CVE-2026-53177, CVE-2026-53181, CVE-2026-53182, CVE-2026-53183, CVE-2026-53184, CVE-2026-53185, CVE-2026-53190, CVE-2026-53194, CVE-2026-53195, CVE-2026-53196, CVE-2026-53198, CVE-2026-53199, CVE-2026-53202, CVE-2026-53205, CVE-2026-53208, CVE-2026-53209, CVE-2026-53210, CVE-2026-53213, CVE-2026-53214, CVE-2026-53217, CVE-2026-53218, CVE-2026-53219, CVE-2026-53220, CVE-2026-53223, CVE-2026-53227, CVE-2026-53229, CVE-2026-53230, CVE-2026-53232, CVE-2026-53236, CVE-2026-53237, CVE-2026-53238, CVE-2026-53239, CVE-2026-53242, CVE-2026-53245, CVE-2026-53249, CVE-2026-53251, CVE-2026-53252, CVE-2026-53253, CVE-2026-53254, CVE-2026-53255, CVE-2026-53256, CVE-2026-53261, CVE-2026-53262, CVE-2026-53263, CVE-2026-53264, CVE-2026-53265, CVE-2026-53266, CVE-2026-53267, CVE-2026-53268, CVE-2026-53269, CVE-2026-53270, CVE-2026-53273, CVE-2026-53274, CVE-2026-53275, CVE-2026-53329, CVE-2026-53331, CVE-2026-53332, CVE-2026-53336, CVE-2026-53337, CVE-2026-53339, CVE-2026-53343, CVE-2026-53345, CVE-2026-53347, CVE-2026-53349, CVE-2026-53350, CVE-2026-53352, CVE-2026-53353, CVE-2026-53356, CVE-2026-53358, CVE-2026-63867, CVE-2026-63868, CVE-2026-63869, CVE-2026-63870, CVE-2026-63871, CVE-2026-63875, CVE-2026-63876, CVE-2026-63877, CVE-2026-63881, CVE-2026-63882, CVE-2026-63883, CVE-2026-63884, CVE-2026-63889, CVE-2026-63890, CVE-2026-63891, CVE-2026-63892, CVE-2026-63893, CVE-2026-63895, CVE-2026-63896, CVE-2026-63897, CVE-2026-63898, CVE-2026-63899, CVE-2026-63900, CVE-2026-63901, CVE-2026-63902, CVE-2026-63903, CVE-2026-63904, CVE-2026-63905, CVE-2026-63906, CVE-2026-63908, CVE-2026-63909, CVE-2026-63913, CVE-2026-63914, CVE-2026-63915, CVE-2026-63916, CVE-2026-63917, CVE-2026-63919, CVE-2026-63920, CVE-2026-63921, CVE-2026-63925, CVE-2026-63926, CVE-2026-63927, CVE-2026-63928, CVE-2026-63930, CVE-2026-63931, CVE-2026-63933, CVE-2026-63934, CVE-2026-63942, CVE-2026-63943, CVE-2026-63944, CVE-2026-63945, CVE-2026-63946, CVE-2026-63947, CVE-2026-63948, CVE-2026-63949, CVE-2026-63952, CVE-2026-63954, CVE-2026-63956, CVE-2026-63957, CVE-2026-63958, CVE-2026-63959, CVE-2026-63960, CVE-2026-63961, CVE-2026-63964, CVE-2026-63967, CVE-2026-63968, CVE-2026-63969, CVE-2026-63971, CVE-2026-63973, CVE-2026-63974, CVE-2026-63975, CVE-2026-63976, CVE-2026-63980, CVE-2026-63985, CVE-2026-63990, CVE-2026-63991, CVE-2026-64001, CVE-2026-64002, CVE-2026-64003, CVE-2026-64004, CVE-2026-64005, CVE-2026-64006, CVE-2026-64009, CVE-2026-64010, CVE-2026-64011, CVE-2026-64012, CVE-2026-64014, CVE-2026-64026, CVE-2026-64090, CVE-2026-64093, CVE-2026-64094, CVE-2026-64095, CVE-2026-64099, CVE-2026-64123, CVE-2026-64131, CVE-2026-64222, CVE-2026-64233, CVE-2026-64234, CVE-2026-64237, CVE-2026-64239, CVE-2026-64240, CVE-2026-64242, CVE-2026-64243, CVE-2026-64524, CVE-2026-64525, CVE-2026-64527, CVE-2026-64528, CVE-2026-72064, CVE-2026-72065, CVE-2026-92502)

USN-8903-1: Linux kernel vulnerabilities

13 hours 3 minutes ago
Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - ARM32 architecture; - ARM64 architecture; - MIPS architecture; - x86 architecture; - Intel NPU Driver; - Auxiliary display drivers; - Compressed RAM block device driver; - GPIO subsystem; - GPU drivers; - HID subsystem; - I2C subsystem; - IIO subsystem; - InfiniBand drivers; - Input Device core drivers; - Input Device (Mouse) drivers; - Multiple devices driver; - Media drivers; - Fastrpc Driver; - Ethernet bonding driver; - Network drivers; - Mellanox network drivers; - Microsoft Azure Network Adapter (MANA) driver; - Texas Instruments network drivers; - NVMEM (Non Volatile Memory) drivers; - Parport drivers; - SCSI subsystem; - SLIMbus drivers; - NVIDIA Tegra SoC drivers; - SPI subsystem; - Trusted Execution Environment drivers; - Thunderbolt and USB4 drivers; - TTY drivers; - USB Device Class drivers; - DesignWare USB2 driver; - USB Gadget drivers; - USB Dual Role (OTG-ready) Controller drivers; - USB Serial drivers; - USB Type-C support driver; - USB Type-C Port Controller Manager driver; - USB Type-C Connector System Software Interface driver; - USB over IP driver; - Framebuffer layer; - Ext4 file system; - FUSE (File system in Userspace); - File systems infrastructure; - SMB network file system; - Mellanox drivers; - Network traffic control; - Bluetooth subsystem; - IPv4 networking; - Netfilter; - IPv6 networking; - Network sockets; - XFRM subsystem; - IPC subsystem; - Signal handling mechanism; - Memory management; - 6LoWPAN network protocol; - IEEE 802 network protocols; - B.A.T.M.A.N. meshing protocol; - Ethernet bridge; - Networking core; - Devlink API; - Ethtool driver; - Handshake API; - HSR network protocol; - IEEE802154.4 network protocol; - IUCV driver; - L2TP protocol; - MAC80211 subsystem; - Management Component Transport Protocol (MCTP); - Multipath TCP; - NetLabel subsystem; - NFC subsystem; - Open vSwitch; - Qualcomm IPC Router (QRTR); - RDS protocol; - RxRPC session sockets; - SCTP protocol; - SMC sockets; - VMware vSockets driver; - Wireless networking; - ALSA framework; - Simple audio multiplexer codec driver; - Wolfson Microelectronics audio codecs; - KVM subsystem; (CVE-2025-68296, CVE-2025-68768, CVE-2026-23346, CVE-2026-31663, CVE-2026-43116, CVE-2026-43219, CVE-2026-43240, CVE-2026-43303, CVE-2026-43311, CVE-2026-43331, CVE-2026-45850, CVE-2026-45930, CVE-2026-46203, CVE-2026-46320, CVE-2026-46321, CVE-2026-46322, CVE-2026-52908, CVE-2026-52910, CVE-2026-52913, CVE-2026-52917, CVE-2026-52923, CVE-2026-52927, CVE-2026-52929, CVE-2026-52930, CVE-2026-52934, CVE-2026-52935, CVE-2026-52939, CVE-2026-52942, CVE-2026-52943, CVE-2026-52944, CVE-2026-52947, CVE-2026-52948, CVE-2026-53080, CVE-2026-53132, CVE-2026-53133, CVE-2026-53134, CVE-2026-53135, CVE-2026-53136, CVE-2026-53137, CVE-2026-53138, CVE-2026-53140, CVE-2026-53143, CVE-2026-53144, CVE-2026-53146, CVE-2026-53147, CVE-2026-53148, CVE-2026-53149, CVE-2026-53150, CVE-2026-53154, CVE-2026-53156, CVE-2026-53158, CVE-2026-53159, CVE-2026-53160, CVE-2026-53161, CVE-2026-53168, CVE-2026-53177, CVE-2026-53181, CVE-2026-53182, CVE-2026-53183, CVE-2026-53184, CVE-2026-53185, CVE-2026-53190, CVE-2026-53194, CVE-2026-53195, CVE-2026-53196, CVE-2026-53198, CVE-2026-53199, CVE-2026-53202, CVE-2026-53205, CVE-2026-53208, CVE-2026-53209, CVE-2026-53210, CVE-2026-53213, CVE-2026-53214, CVE-2026-53217, CVE-2026-53218, CVE-2026-53219, CVE-2026-53220, CVE-2026-53223, CVE-2026-53227, CVE-2026-53229, CVE-2026-53230, CVE-2026-53232, CVE-2026-53236, CVE-2026-53237, CVE-2026-53238, CVE-2026-53239, CVE-2026-53242, CVE-2026-53245, CVE-2026-53249, CVE-2026-53251, CVE-2026-53252, CVE-2026-53253, CVE-2026-53254, CVE-2026-53255, CVE-2026-53256, CVE-2026-53261, CVE-2026-53262, CVE-2026-53263, CVE-2026-53264, CVE-2026-53265, CVE-2026-53266, CVE-2026-53267, CVE-2026-53268, CVE-2026-53269, CVE-2026-53270, CVE-2026-53273, CVE-2026-53274, CVE-2026-53275, CVE-2026-53329, CVE-2026-53331, CVE-2026-53332, CVE-2026-53336, CVE-2026-53337, CVE-2026-53339, CVE-2026-53343, CVE-2026-53345, CVE-2026-53347, CVE-2026-53349, CVE-2026-53350, CVE-2026-53352, CVE-2026-53353, CVE-2026-53356, CVE-2026-53358, CVE-2026-63867, CVE-2026-63868, CVE-2026-63869, CVE-2026-63870, CVE-2026-63871, CVE-2026-63875, CVE-2026-63876, CVE-2026-63877, CVE-2026-63881, CVE-2026-63882, CVE-2026-63883, CVE-2026-63884, CVE-2026-63889, CVE-2026-63890, CVE-2026-63891, CVE-2026-63892, CVE-2026-63893, CVE-2026-63895, CVE-2026-63896, CVE-2026-63897, CVE-2026-63898, CVE-2026-63899, CVE-2026-63900, CVE-2026-63901, CVE-2026-63902, CVE-2026-63903, CVE-2026-63904, CVE-2026-63905, CVE-2026-63906, CVE-2026-63908, CVE-2026-63909, CVE-2026-63913, CVE-2026-63914, CVE-2026-63915, CVE-2026-63916, CVE-2026-63917, CVE-2026-63919, CVE-2026-63920, CVE-2026-63921, CVE-2026-63925, CVE-2026-63926, CVE-2026-63927, CVE-2026-63928, CVE-2026-63930, CVE-2026-63931, CVE-2026-63933, CVE-2026-63934, CVE-2026-63942, CVE-2026-63943, CVE-2026-63944, CVE-2026-63945, CVE-2026-63946, CVE-2026-63947, CVE-2026-63948, CVE-2026-63949, CVE-2026-63952, CVE-2026-63954, CVE-2026-63956, CVE-2026-63957, CVE-2026-63958, CVE-2026-63959, CVE-2026-63960, CVE-2026-63961, CVE-2026-63964, CVE-2026-63967, CVE-2026-63968, CVE-2026-63969, CVE-2026-63971, CVE-2026-63973, CVE-2026-63974, CVE-2026-63975, CVE-2026-63976, CVE-2026-63980, CVE-2026-63985, CVE-2026-63990, CVE-2026-63991, CVE-2026-64001, CVE-2026-64002, CVE-2026-64003, CVE-2026-64004, CVE-2026-64005, CVE-2026-64006, CVE-2026-64009, CVE-2026-64010, CVE-2026-64011, CVE-2026-64012, CVE-2026-64014, CVE-2026-64026, CVE-2026-64090, CVE-2026-64093, CVE-2026-64094, CVE-2026-64095, CVE-2026-64099, CVE-2026-64123, CVE-2026-64131, CVE-2026-64222, CVE-2026-64233, CVE-2026-64234, CVE-2026-64237, CVE-2026-64239, CVE-2026-64240, CVE-2026-64242, CVE-2026-64243, CVE-2026-64524, CVE-2026-64525, CVE-2026-64527, CVE-2026-64528, CVE-2026-92502)