Ubuntu Security Advisories

USN-8900-1: Go Networking vulnerabilities

3 hours 55 minutes ago
It was discovered that Go Networking did not properly handle server errors after sending a GOAWAY frame during HTTP/2 connection shutdown, which could cause the connection to hang. A remote attacker could possibly use this issue to cause a denial of service. (CVE-2022-27664) It was discovered that Go Networking had quadratic complexity when decoding HPACK headers in HTTP/2 streams. A remote attacker could possibly use this issue to cause Go Networking to use excessive resources, leading to a denial of service. (CVE-2022-41723) It was discovered that Go Networking incorrectly rendered text nodes outside of the HTML namespace literally, causing text that should be escaped to not be escaped. A remote attacker could possibly use this issue to perform cross-site scripting attacks. (CVE-2023-3978) Guido Vranken discovered that Go Networking processed certain inputs to the HTML parsing functions non-linearly with respect to their length. A remote attacker could possibly use this issue to cause Go Networking to use excessive resources, leading to a denial of service. (CVE-2024-45338) Sean Ng discovered that Go Networking incorrectly interpreted tags in foreign content with unquoted attribute values ending with a solidus character as self-closing, which could result in content being placed in the wrong scope during DOM construction. A remote attacker could possibly use this issue to perform cross-site scripting attacks. (CVE-2025-22872) It was discovered that Go Networking had quadratic parsing complexity when processing certain HTML inputs. A remote attacker could possibly use this issue to cause Go Networking to use excessive resources, leading to a denial of service. (CVE-2025-47911) It was discovered that Go Networking could enter an infinite loop when parsing certain HTML inputs. A remote attacker could possibly use this issue to cause Go Networking to use excessive resources, leading to a denial of service. (CVE-2025-58190) It was discovered that Go Networking incorrectly accepted Punycode-encoded labels that decoded to ASCII-only labels when processing internationalized domain names. A remote attacker could possibly use this issue to bypass access control restrictions and escalate privileges. (CVE-2026-39821)

USN-8895-1: Sudo vulnerability

9 hours 52 minutes ago
It was discovered that Sudo did not properly handle time-based access restrictions when sudoers rules used NOTBEFORE or NOTAFTER with timestamps omitting the trailing timezone indicator. A local attacker could possibly use this issue to execute commands outside the intended time window by manipulating the TZ environment variable.

USN-8894-1: poppler vulnerabilities

10 hours 4 minutes ago
It was discovered that Poppler had an integer overflow in FoFiTrueType::cvtSfnts. An attacker could possibly use this issue to cause Poppler to crash, resulting in a denial of service, or execute arbitrary code. (CVE-2026-102620) It was discovered that Poppler had an integer overflow in SplashClip::clipToPath. An attacker could possibly use this issue to cause Poppler to crash, resulting in a denial of service, or execute arbitrary code. (CVE-2026-102621) It was discovered that Poppler had a null pointer dereference in JBIG2Stream. An attacker could possibly use this issue to cause Poppler to crash, resulting in a denial of service. (CVE-2026-93312) It was discovered that Poppler had an integer overflow in JBIG2Stream::readCodeTableSeg. An attacker could possibly use this issue to cause Poppler to crash, resulting in a denial of service, or execute arbitrary code. (CVE-2026-93313) It was discovered that Poppler had an integer overflow in FoFiTrueType::mapCodeToGID. An attacker could possibly use this issue to cause Poppler to crash, resulting in a denial of service, or execute arbitrary code. (CVE-2026-93314)

USN-8893-1: Libwebsockets vulnerabilities

12 hours 59 minutes ago
It was discovered that libwebsockets did not properly validate user-supplied data when parsing HTTP/2 HPACK path headers, which could result in a write past the end of an allocated buffer. An attacker could possibly use this issue to execute arbitrary code. (CVE-2026-19773) It was discovered that libwebsockets did not properly handle CBOR recording in the LECP parser, which could result in a write past the end of an allocated buffer. An attacker could possibly use this issue to cause a crash or execute arbitrary code. (CVE-2026-78161)

LSN-0122-1: Kernel Live Patch Security Notice

13 hours 12 minutes ago
In the Linux kernel, the following vulnerability has been resolved: fs: dlm: fix use after free in midcomms commit While working on processing dlm message in softirq context I experienced the following KASAN use-after-free warning: . In the Linux kernel, the following vulnerability has been resolved: wifi: brcmfmac: Fix oops due to NULL pointer dereference in brcmf_sdiod_sglist_rw() This patch fixes a NULL pointer dereference bug in brcmfmac that occurs when a high 'sd_sgentry_align' value applies (e.g. 512) and a lot of queued SKBs are sent from the pkt queue. In the Linux kernel, the following vulnerability has been resolved: padata: fix UAF in padata_reorder A bug was found when run ltp test: BUG: KASAN: slab-use-after-free in padata_find_next+0x29/0x1a0 Read of size 4 at addr ffff88bbfe003524 by task kworker/u113:2/3039206 CPU: 0 PID: 3039206 Comm: kworker/u113:2 Kdump: loaded Not tainted 6.6.0+ Workqueue: pdecrypt_parallel padata_parallel_worker Call Trace: dump_stack_lvl+0x32/0x50 print_address_description.constprop.0+0x6b/0x3d0 print_report+0xdd/0x2c0 kasan_report+0xa5/0xd0 padata_find_next+0x29/0x1a0 padata_reorder+0x131/0x220 padata_parallel_worker+0x3d/0xc0 process_one_work+0x2ec/0x5a0 If 'mdelay(10)' is added before calling 'padata_find_next' in the 'padata_reorder' function, this issue could be reproduced easily with ltp test (pcrypt_aead01). In the Linux kernel, the following vulnerability has been resolved: geneve: Fix use-after-free in geneve_find_dev(). In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix use-after-free in ksmbd_sessions_deregister() In multichannel mode, UAF issue can occur in session_deregister when the second channel sets up a session through the connection of the first channel. In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_tunnel: fix geneve_opt type confusion addition When handling multiple NFTA_TUNNEL_KEY_OPTS_GENEVE attributes, the parsing logic should place every geneve_opt structure one by one compactly. In the Linux kernel, the following vulnerability has been resolved: ext4: ignore xattrs past end Once inside 'ext4_xattr_inode_dec_ref_all' we should ignore xattrs entries past the 'end' entry. In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix use-after-free in __smb2_lease_break_noti() Move tcp_transport free to ksmbd_conn_free. In the Linux kernel, the following vulnerability has been resolved: ksmbd: Fix dangling pointer in krb_authenticate krb_authenticate frees sess->user and does not set the pointer to NULL. In the Linux kernel, the following vulnerability has been resolved: net_sched: hfsc: Fix a potential UAF in hfsc_dequeue() too Similarly to the previous patch, we need to safe guard hfsc_dequeue() too. But for this one, we don't have a reliable reproducer.)(CVE-2025-37823). In the Linux kernel, the following vulnerability has been resolved: jbd2: remove wrong sb->s_sequence check Journal emptiness is not determined by sb->s_sequence . In the Linux kernel, the following vulnerability has been resolved: drm/amdkfd: Fix mode1 reset crash issue If HW scheduler hangs and mode1 reset is used to recover GPU, KFD signal user space to abort the processes. In the Linux kernel, the following vulnerability has been resolved: drm/xe: Use local fence in error path of xe_migrate_clear The intent of the error path in xe_migrate_clear is to wait on locally generated fence and then return. In the Linux kernel, the following vulnerability has been resolved: net_sched: qfq: Fix double list add in class with netem as child qdisc As described in Gerrard's report . In the Linux kernel, the following vulnerability has been resolved: net_sched: ets: Fix double list add in class with netem as child qdisc As described in Gerrard's report . In the Linux kernel, the following vulnerability has been resolved: vxlan: vnifilter: Fix unlocked deletion of default FDB entry When a VNI is deleted from a VXLAN device in 'vnifilter' mode, the FDB entry associated with the default remote (assuming one was configured) is deleted without holding the hash lock. In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: Fix invalid data access in ath12k_dp_rx_h_undecap_nwifi In certain cases, hardware might provide packets with a length greater than the maximum native Wi-Fi header length. This can lead to accessing and modifying fields in the header within the ath12k_dp_rx_h_undecap_nwifi function for DP_RX_DECAP_TYPE_NATIVE_WIFI decap type and potentially resulting in invalid data access and memory corruption. In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: Fix invalid entry fetch in ath12k_dp_mon_srng_process Currently, ath12k_dp_mon_srng_process uses ath12k_hal_srng_src_get_next_entry to fetch the next entry from the destination ring. In the Linux kernel, the following vulnerability has been resolved: ksmbd: Fix UAF in __close_file_table_ids A use-after-free is possible if one thread destroys the file via __ksmbd_close_fd while another thread holds a reference to it. In the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: Fix slab-use-after-free Read in rxe_queue_cleanup bug Call Trace: __dump_stack lib/dump_stack.c:94 . In the Linux kernel, the following vulnerability has been resolved: crypto: algif_hash - fix double free in hash_accept If accept(2) is called on socket type algif_hash with MSG_MORE flag set and crypto_ahash_import fails, sk2 is freed. In the Linux kernel, the following vulnerability has been resolved: net/sched: fix use-after-free in taprio_dev_notifier Since taprio’s taprio_dev_notifier() isn’t protected by an RCU read-side critical section, a race with advance_sched() can lead to a use-after-free. In the Linux kernel, the following vulnerability has been resolved: page_pool: Fix use-after-free in page_pool_recycle_in_ring syzbot reported a uaf in page_pool_recycle_in_ring: BUG: KASAN: slab-use-after- free in lock_release+0x151/0xa30 kernel/locking/lockdep.c:5862 Read of size 8 at addr ffff8880286045a0 by task syz.0.284/6943 CPU: 0 UID: 0 PID: 6943 Comm: syz.0.284 Not tainted 6.13.0-rc3-syzkaller-gdfa94ce54f41 #0 Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 09/13/2024 Call Trace: __dump_stack lib/dump_stack.c:94 . In the Linux kernel, the following vulnerability has been resolved: net: openvswitch: Fix the dead loop of MPLS parse The unexpected MPLS packet may not end with the bottom label stack. In the Linux kernel, the following vulnerability has been resolved: RDMA/iwcm: Fix use-after-free of work objects after cm_id destruction The commit 59c68ac31e15 ('iw_cm: free cm_id resources on the last deref') simplified cm_id resource management by freeing cm_id once all references to the cm_id were removed. In the Linux kernel, the following vulnerability has been resolved: ipc: fix to protect IPCS lookups using RCU syzbot reported that it discovered a use-after-free vulnerability, . In the Linux kernel, the following vulnerability has been resolved: media: vivid: Change the siize of the composing syzkaller found a bug: BUG: KASAN: vmalloc-out-of-bounds in tpg_fill_plane_pattern drivers/media/common/v4l2-tpg/v4l2-tpg-core.c:2608 . In the Linux kernel, the following vulnerability has been resolved: bridge: mcast: Fix use-after-free during router port configuration The bridge maintains a global list of ports behind which a multicast router resides. In the Linux kernel, the following vulnerability has been resolved: s390/pkey: Prevent overflow in size calculation for memdup_user() Number of apqn target list entries contained in 'nr_apqns' variable is determined by userspace via an ioctl call so the result of the product in calculation of size passed to memdup_user() may overflow. In the Linux kernel, the following vulnerability has been resolved: eventpoll: don't decrement ep refcount while still holding the ep mutex Jann Horn points out that epoll is decrementing the ep refcount and then doing a mutex_unlock(&ep->mtx); afterwards. In the Linux kernel, the following vulnerability has been resolved: posix-cpu-timers: fix race between handle_posix_cpu_timers() and posix_cpu_timer_del() If an exiting non-autoreaping task has already passed exit_notify() and calls handle_posix_cpu_timers() from IRQ, it can be reaped by its parent or debugger right after unlock_task_sighand(). In the Linux kernel, the following vulnerability has been resolved: rose: fix dangling neighbour pointers in rose_rt_device_down() There are two bugs in rose_rt_device_down() that can cause use-after-free: 1. In the Linux kernel, the following vulnerability has been resolved: mtk-sd: Prevent memory corruption from DMA map failure If msdc_prepare_data() fails to map the DMA region, the request is not prepared for data receiving, but msdc_start_data() proceeds the DMA with previous setting. In the Linux kernel, the following vulnerability has been resolved: NFC: nci: uart: Set tty->disc_data only in success path Setting tty->disc_data before opening the NCI device means we need to clean it up on error paths. In the Linux kernel, the following vulnerability has been resolved: i2c: tegra: check msg length in SMBUS block read For SMBUS block read, do not continue to read if the message length passed from the device is '0' or greater than the maximum allowed bytes.)(CVE-2025-38425). In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix potential use-after-free in oplock/lease break ack If ksmbd_iov_pin_rsp return error, use-after-free can happen by accessing opinfo->state and opinfo_put and ksmbd_fd_put could called twice.)(CVE-2025-38437). In the Linux kernel, the following vulnerability has been resolved: tipc: Fix use-after-free in tipc_conn_close(). In the Linux kernel, the following vulnerability has been resolved: HID: core: do not bypass hid_hw_raw_request hid_hw_raw_request() is actually useful to ensure the provided buffer and length are valid. Directly calling in the low level transport driver function bypassed those checks and allowed invalid paramto be used.)(CVE-2025-38494). In the Linux kernel, the following vulnerability has been resolved: ipv6: mcast: Delay put pmc->idev in mld_del_delrec() pmc->idev is still used in ip6_mc_clear_src(), so as mld_clear_delrec() does, the reference should be put after ip6_mc_clear_src() return.)(CVE-2025-38550). In the Linux kernel, the following vulnerability has been resolved: net/packet: fix a race in packet_set_ring() and packet_notifier() When packet_set_ring() releases po->bind_lock, another thread can run packet_notifier() and process an NETDEV_UP event. In the Linux kernel, the following vulnerability has been resolved: jfs: upper bound check of tree index in dbAllocAG When computing the tree index in dbAllocAG, we never check if we are out of bounds realative to the size of the stree. In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: Add sanity check for file name The length of the file name should be smaller than the directory entry size.)(CVE-2025-38707). In the Linux kernel, the following vulnerability has been resolved: nfsd: handle get_client_locked() failure in nfsd4_setclientid_confirm() Lei Lu recently reported that nfsd4_setclientid_confirm() did not check the return value from get_client_locked(). In the Linux kernel, the following vulnerability has been resolved: io_uring/net: commit partial buffers on retry Ring provided buffers are potentially only valid within the single execution context in which they were acquired. In the Linux kernel, the following vulnerability has been resolved: NFS: Fix filehandle bounds checking in nfs_fh_to_dentry() The function needs to check the minimal filehandle length before it can access the embedded filehandle.)(CVE-2025-39730). In the Linux kernel, the following vulnerability has been resolved: jfs: fix slab-out-of-bounds read in ea_get() During the 'size_check' label in ea_get(), the code checks if the extended attribute list (xattr) size matches ea_size. In the Linux kernel, the following vulnerability has been resolved: jfs: truncate good inode pages when hard link is 0 The fileset value of the inode copy from the disk by the reproducer is AGGR_RESERVED_I. When executing evict, its hard link number is 0, so its inode pages are not truncated. In the Linux kernel, the following vulnerability has been resolved: bus: mhi: host: Detect events pointing to unexpected TREs When a remote device sends a completion event to the host, it contains a pointer to the consumed TRE. In the Linux kernel, the following vulnerability has been resolved: HID: asus: fix UAF via HID_CLAIMED_INPUT validation After hid_hw_start() is called hidinput_connect() will eventually be called to set up the device with the input layer since the HID_CONNECT_DEFAULT connect mask is used. In the Linux kernel, the following vulnerability has been resolved: scsi: lpfc: Fix buffer free/clear order in deferred receive path Fix a use-after-free window by correcting the buffer release sequence in the deferred receive path. In the Linux kernel, the following vulnerability has been resolved: wifi: cfg80211: sme: cap SSID length in __cfg80211_connect_result() If the ssid->datalen is more than IEEE80211_MAX_SSID_LEN (32) it would lead to memory corruption so add some bounds checking.)(CVE-2025-39849). In the Linux kernel, the following vulnerability has been resolved: Bluetooth: Fix use-after-free in l2cap_sock_cleanup_listen() syzbot reported the splat below without a repro. In the Linux kernel, the following vulnerability has been resolved: wifi: brcmfmac: fix use-after-free when rescheduling brcmf_btcoex_info work The brcmf_btcoex_detach() only shuts down the btcoex timer, if the flag timer_on is false. In the Linux kernel, the following vulnerability has been resolved: wifi: cfg80211: fix use-after-free in cmp_bss() Following bss_free() quirk introduced in commit 776b3580178f ('cfg80211: track hidden SSID networks properly'), adjust cfg80211_update_known_bss() to free the last beacon frame elements only if they're not shared via the corresponding 'hidden_beacon_bss' pointer.)(CVE-2025-39864). In the Linux kernel, the following vulnerability has been resolved: fs: writeback: fix use-after-free in __mark_inode_dirty() An use- after-free issue occurred when __mark_inode_dirty() get the bdi_writeback that was in the progress of switching. In the Linux kernel, the following vulnerability has been resolved: kernfs: Fix UAF in polling when open file is released A use- after-free (UAF) vulnerability was identified in the PSI (Pressure Stall Information) monitoring mechanism: BUG: KASAN: slab-use-after-free in psi_trigger_poll+0x3c/0x140 Read of size 8 at addr ffff3de3d50bd308 by task systemd/1 psi_trigger_poll+0x3c/0x140 cgroup_pressure_poll+0x70/0xa0 cgroup_file_poll+0x8c/0x100 kernfs_fop_poll+0x11c/0x1c0 ep_item_poll.isra.0+0x188/0x2c0 Allocated by task 1: cgroup_file_open+0x88/0x388 kernfs_fop_open+0x73c/0xaf0 do_dentry_open+0x5fc/0x1200 vfs_open+0xa0/0x3f0 do_open+0x7e8/0xd08 path_openat+0x2fc/0x6b0 do_filp_open+0x174/0x368 Freed by task 8462: cgroup_file_release+0x130/0x1f8 kernfs_drain_open_files+0x17c/0x440 kernfs_drain+0x2dc/0x360 kernfs_show+0x1b8/0x288 cgroup_file_show+0x150/0x268 cgroup_pressure_write+0x1dc/0x340 cgroup_file_write+0x274/0x548 Reproduction Steps: 1. In the Linux kernel, the following vulnerability has been resolved: svcrdma: bound check rq_pages index in inline path svc_rdma_copy_inline_range indexed rqstp->rq_pages. In the Linux kernel, the following vulnerability has been resolved: Bluetooth: btusb: revert use of devm_kzalloc in btusb This reverts commit 98921dbd00c4e ('Bluetooth: Use devm_kzalloc in btusb.c file'). In the Linux kernel, the following vulnerability has been resolved: iommu: disable SVA when CONFIG_X86 is set Patch series 'Fix stale IOTLB entries for kernel address space', v7. In the Linux kernel, the following vulnerability has been resolved: dmaengine: tegra-adma: Fix use-after-free A use-after-free bug exists in the Tegra ADMA driver when audio streams are terminated, particularly during XRUN conditions. In the Linux kernel, the following vulnerability has been resolved: mm/page_alloc: prevent pcp corruption with SMP. In the Linux kernel, the following vulnerability has been resolved: net/sched: Enforce that teql can only be used as root qdisc Design intent of teql is that it is only supposed to be used as root qdisc. We need to check for that constraint. In the Linux kernel, the following vulnerability has been resolved: net/sched: qfq: Use cl_is_active to determine whether class is active in qfq_rm_from_ag This is more of a preventive patch to make the code more consistent and to prevent possible exploits that employ child qlen manipulations on qfq. In the Linux kernel, the following vulnerability has been resolved: mptcp: fix race in mptcp_pm_nl_flush_addrs_doit() syzbot and Eulgyu Kim reported crashes in mptcp_pm_nl_get_local_id() and/or mptcp_pm_nl_is_backup() Root cause is list_splice_init() in mptcp_pm_nl_flush_addrs_doit() which is not RCU ready. list_splice_init_rcu() can not be called here while holding pernet->lock spinlock. In the Linux kernel, the following vulnerability has been resolved: macvlan: fix error recovery in macvlan_common_newlink() valis provided a nice repro to crash the kernel: ip link add p1 type veth peer p2 ip link set address 00:00:00:00:00:20 dev p1 ip link set up dev p1 ip link set up dev p2 ip link add mv0 link p2 type macvlan mode source ip link add invalid% link p2 type macvlan mode source macaddr add 00:00:00:00:00:20 ping -c1 -I p1 1.2.3.4 He also gave a very detailed analysis: The issue is triggered when a new macvlan link is created with MACVLAN_MODE_SOURCE mode and MACVLAN_MACADDR_ADD (or MACVLAN_MACADDR_SET) parameter, lower device already has a macvlan port and register_netdevice() called from macvlan_common_newlink() fails (e.g. In the Linux kernel, the following vulnerability has been resolved: scsi: target: iscsi: Fix use-after-free in iscsit_dec_conn_usage_count() In iscsit_dec_conn_usage_count(), the function calls complete() while holding the conn->conn_usage_lock. In the Linux kernel, the following vulnerability has been resolved: crypto: omap - Allocate OMAP_CRYPTO_FORCE_COPY scatterlists correctly The existing allocation of scatterlists in omap_crypto_copy_sg_lists() was allocating an array of scatterlist pointers, not scatterlist objects, resulting in a 4x too small allocation. Use sizeof(*new_sg) to get the correct object size.)(CVE-2026-23222). In the Linux kernel, the following vulnerability has been resolved: media: dvb-core: fix wrong reinitialization of ringbuffer on reopen dvb_dvr_open() calls dvb_ringbuffer_init() when a new reader opens the DVR device. In the Linux kernel, the following vulnerability has been resolved: macvlan: observe an RCU grace period in macvlan_common_newlink() error path valis reported that a race condition still happens after my prior patch. In the Linux kernel, the following vulnerability has been resolved: nfc: rawsock: cancel tx_work before socket teardown In rawsock_release(), cancel any pending tx_work and purge the write queue before orphaning the socket. In the Linux kernel, the following vulnerability has been resolved: netfilter: xt_CT: drop pending enqueued packets on template removal Templates refer to objects that can go away while packets are sitting in nfqueue refer to: - helper, this can be an issue on module removal. In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: release flowtable after rcu grace period on error Call synchronize_rcu() after unregistering the hooks from error path, since a hook that already refers to this flowtable can be already registered, exposing this flowtable to packet path and nfnetlink_hook control plane. In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix use-after-free of share_conf in compound request smb2_get_ksmbd_tcon() reuses work->tcon in compound requests without validating tcon->t_state. In the Linux kernel, the following vulnerability has been resolved: net/smc: fix NULL dereference and UAF in smc_tcp_syn_recv_sock() Syzkaller reported a panic in smc_tcp_syn_recv_sock() . In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_conntrack_h323: check for zero length in DecodeQ931() In DecodeQ931(), the UserUserIE code path reads a 16-bit length from the packet, then decrements it by 1 to skip the protocol discriminator byte before passing it to DecodeH323_UserInformation(). In the Linux kernel, the following vulnerability has been resolved: nfsd: fix heap overflow in NFSv4.0 LOCK replay cache The NFSv4.0 replay cache uses a fixed 112-byte inline buffer (rp_ibuf. In the Linux kernel, the following vulnerability has been resolved: media: dvb-net: fix OOB access in ULE extension header tables The ule_mandatory_ext_handlers. In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_conntrack_expect: use expect->helper Use expect->helper in ctnetlink and /proc to dump the helper name. In the Linux kernel, the following vulnerability has been resolved: net: bonding: fix use-after-free in bond_xmit_broadcast() bond_xmit_broadcast() reuses the original skb for the last slave (determined by bond_is_last_slave()) and clones it for others. In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix potencial OOB in get_file_all_info() for compound requests When a compound request consists of QUERY_DIRECTORY + QUERY_INFO (FILE_ALL_INFORMATION) and the first command consumes nearly the entire max_trans_size, get_file_all_info() would blindly call smbConvertToUTF16() with PATH_MAX, causing out-of-bounds write beyond the response buffer. In the Linux kernel, the following vulnerability has been resolved: dmaengine: idxd: fix possible wrong descriptor completion in llist_abort_desc() At the end of this function, d is the traversal cursor of flist, but the code completes found instead. In the Linux kernel, the following vulnerability has been resolved: ext4: reject mount if bigalloc with s_first_data_block !. In the Linux kernel, the following vulnerability has been resolved: xfs: save ailp before dropping the AIL lock in push callbacks In xfs_inode_item_push() and xfs_qm_dquot_logitem_push(), the AIL lock is dropped to perform buffer IO. In the Linux kernel, the following vulnerability has been resolved: virtio_net: Fix UAF on dst_ops when IFF_XMIT_DST_RELEASE is cleared and napi_tx is false A UAF issue occurs when the virtio_net driver is configured with napi_tx. In the Linux kernel, the following vulnerability has been resolved: media: mc, v4l2: serialize REINIT and REQBUFS with req_queue_mutex MEDIA_REQUEST_IOC_REINIT can run concurrently with VIDIOC_REQBUFS(0) queue teardown paths. In the Linux kernel, the following vulnerability has been resolved: ksmbd: do not expire session on binding failure When a multichannel session binding request fails (e.g. In the Linux kernel, the following vulnerability has been resolved: ksmbd: replace hardcoded hdr2_len with offsetof() in smb2_calc_max_out_buf_len() After this commit (e2b76ab8b5c9 'ksmbd: add support for read compound'), response buffer management was changed to use dynamic iov array. In the Linux kernel, the following vulnerability has been resolved: net: fix fanout UAF in packet_release() via NETDEV_UP race `packet_release()` has a race window where `NETDEV_UP` can re-register a socket into a fanout group's `arr. In the Linux kernel, the following vulnerability has been resolved: can: raw: fix ro->uniq use-after-free in raw_rcv() raw_release() unregisters raw CAN receive filters via can_rx_unregister(), but receiver deletion is deferred with call_rcu(). In the Linux kernel, the following vulnerability has been resolved: mm: blk-cgroup: fix use-after-free in cgwb_release_workfn() cgwb_release_workfn() calls css_put(wb->blkcg_css) and then later accesses wb->blkcg_css again via blkcg_unpin_online(). In the Linux kernel, the following vulnerability has been resolved: i2c: s3c24xx: check the size of the SMBUS message before using it The first byte of an i2c SMBUS message is the size, and it should be verified to ensure that it is in the range of 0..I2C_SMBUS_BLOCK_MAX before processing it. In the Linux kernel, the following vulnerability has been resolved: drm/i915/gt: fix refcount underflow in intel_engine_park_heartbeat A use-after-free / refcount underflow is possible when the heartbeat worker and intel_engine_park_heartbeat() race to release the same engine->heartbeat.systole request. In the Linux kernel, the following vulnerability has been resolved: batman-adv: hold claim backbone gateways by reference batadv_bla_add_claim() can replace claim->backbone_gw and drop the old gateway's last reference while readers still follow the pointer. In the Linux kernel, the following vulnerability has been resolved: af_unix: read UNIX_DIAG_VFS data under unix_state_lock Exact UNIX diag lookups hold a reference to the socket, but not to u->path. In the Linux kernel, the following vulnerability has been resolved: net: ipv6: flowlabel: defer exclusive option free until RCU teardown `ip6fl_seq_show()` walks the global flowlabel hash under the seq- file RCU read-side lock and prints `fl->opt->opt_nflen` when an option block is present. In the Linux kernel, the following vulnerability has been resolved: fuse: reject oversized dirents in page cache fuse_add_dirent_to_cache() computes a serialized dirent size from the server-controlled namelen field and copies the dirent into a single page- cache page. In the Linux kernel, the following vulnerability has been resolved: wifi: virt_wifi: remove SET_NETDEV_DEV to avoid use-after-free Currently we execute `SET_NETDEV_DEV(dev, &priv->lowerdev->dev)` for the virt_wifi net devices. In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix out-of-bounds write in smb2_get_ea() EA alignment smb2_get_ea() applies 4-byte alignment padding via memset() after writing each EA entry. In the Linux kernel, the following vulnerability has been resolved: ksmbd: validate num_aces and harden ACE walk in smb_inherit_dacl() smb_inherit_dacl() trusts the on-disk num_aces value from the parent directory's DACL xattr and uses it to size a heap allocation: aces_base . In the Linux kernel, the following vulnerability has been resolved: smb: client: fix OOB read in smb2_ioctl_query_info QUERY_INFO path smb2_ioctl_query_info() has two response-copy branches: PASSTHRU_FSCTL and the default QUERY_INFO path. In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: validate rec->used in journal-replay file record check check_file_record() validates rec->total against the record size but never validates rec->used. In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_uac1_legacy: validate control request size f_audio_complete() copies req->length bytes into a 4-byte stack variable: u32 data . In the Linux kernel, the following vulnerability has been resolved: usb: typec: ucsi: validate connector number in ucsi_notify_common() The connector number extracted from CCI via UCSI_CCI_CONNECTOR() is a 7-bit field (0-127) that is used to index into the connector array in ucsi_connector_change(). In the Linux kernel, the following vulnerability has been resolved: usb: usbtmc: Flush anchored URBs in usbtmc_release When calling usbtmc_release, pending anchored URBs must be flushed or killed to prevent use-after-free errors (e.g. In the Linux kernel, the following vulnerability has been resolved: usb: ulpi: fix double free in ulpi_register_interface() error path When device_register() fails, ulpi_register() calls put_device() on ulpi->dev. In the Linux kernel, the following vulnerability has been resolved: wifi: wilc1000: fix u8 overflow in SSID scan buffer size calculation The variable valuesize is declared as u8 but accumulates the total length of all SSIDs to scan. In the Linux kernel, the following vulnerability has been resolved: bpf: sockmap: Fix use-after-free of sk->sk_socket in sk_psock_verdict_data_ready(). In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_conn: fix potential UAF in set_cig_params_sync hci_conn lookup and field access must be covered by hdev lock in set_cig_params_sync, otherwise it's possible it is freed concurrently. In the Linux kernel, the following vulnerability has been resolved: Bluetooth: SCO: fix race conditions in sco_sock_connect() sco_sock_connect() checks sk_state and sk_type without holding the socket lock. In the Linux kernel, the following vulnerability has been resolved: bpf: Fix regsafe() for pointers to packet In case rold->reg->range . In the Linux kernel, the following vulnerability has been resolved: ipv6: icmp: clear skb2->cb. In the Linux kernel, the following vulnerability has been resolved: HID: multitouch: Check to ensure report responses match the request It is possible for a malicious (or clumsy) device to respond to a specific report's feature request using a completely different report ID. This can cause confusion in the HID core resulting in nasty side-effects such as OOB writes. In the Linux kernel, the following vulnerability has been resolved: HID: logitech-hidpp: Prevent use-after-free on force feedback initialisation failure Presently, if the force feedback initialisation fails when probing the Logitech G920 Driving Force Racing Wheel for Xbox One, an error number will be returned and propagated before the userspace infrastructure (sysfs and /dev/input) has been torn down. In the Linux kernel, the following vulnerability has been resolved: net: ioam6: fix OOB and missing lock When trace->type.bit6 is set: if (trace->type.bit6) { ... In the Linux kernel, the following vulnerability has been resolved: xfrm: Wait for RCU readers during policy netns exit xfrm_policy_fini() frees the policy_bydst hash tables after flushing the policy work items and deleting all policies, but it does not wait for concurrent RCU readers to leave their read-side critical sections first. The policy_bydst tables are published via rcu_assign_pointer() and are looked up through rcu_dereference_check(), so netns teardown must also wait for an RCU grace period before freeing the table memory. In the Linux kernel, the following vulnerability has been resolved: xsk: tighten UMEM headroom validation to account for tailroom and min frame The current headroom validation in xdp_umem_reg() could leave us with insufficient space dedicated to even receive minimum-sized ethernet frame. In the Linux kernel, the following vulnerability has been resolved: HID: roccat: fix use-after-free in roccat_report_event roccat_report_event() iterates over the device->readers list without holding the readers_lock. In the Linux kernel, the following vulnerability has been resolved: RDMA/irdma: Fix double free related to rereg_user_mr If IB_MR_REREG_TRANS is set during rereg_user_mr, the umem will be released and a new one will be allocated in irdma_rereg_mr_trans. In the Linux kernel, the following vulnerability has been resolved: drm/amdkfd: Fix out-of-bounds write in kfd_event_page_set() The kfd_event_page_set() function writes KFD_SIGNAL_EVENT_LIMIT * 8 bytes via memset without checking the buffer size parameter. In the Linux kernel, the following vulnerability has been resolved: drm/atmel-hlcdc: fix use-after-free of drm_crtc_commit after release The atmel_hlcdc_plane_atomic_duplicate_state() callback was copying the atmel_hlcdc_plane state structure without properly duplicating the drm_plane_state. In the Linux kernel, the following vulnerability has been resolved: dm: clear cloned request bio pointer when last clone bio completes Stale rq->bio values have been observed to cause double- initialization of cloned bios in request-based device-mapper targets, leading to use-after-free and double-free scenarios. In the Linux kernel, the following vulnerability has been resolved: xfs: fix undersized l_iclog_roundoff values If the superblock doesn't list a log stripe unit, we set the incore log roundoff value to 512. In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: Fix use-after-free race in VM acquire Replace non- atomic vm->process_info assignment with cmpxchg() to prevent race when parent/child processes sharing a drm_file both try to acquire the same VM after fork(). In the Linux kernel, the following vulnerability has been resolved: smb: server: fix use-after-free in smb2_open() The opinfo pointer obtained via rcu_dereference(fp->f_opinfo) is dereferenced after rcu_read_unlock(), creating a use-after-free window.)(CVE-2026-43378). In the Linux kernel, the following vulnerability has been resolved: ksmbd: validate inherited ACE SID length smb_inherit_dacl() walks the parent directory DACL loaded from the security descriptor xattr. In the Linux kernel, the following vulnerability has been resolved: crypto: pcrypt - Fix handling of MAY_BACKLOG requests MAY_BACKLOG requests can return EBUSY. In the Linux kernel, the following vulnerability has been resolved: rtmutex: Use waiter::task instead of current in remove_waiter() remove_waiter() is used by the slowlock paths, but it is also used for proxy-lock rollback in rt_mutex_start_proxy_lock() when invoked from futex_requeue(). In the Linux kernel, the following vulnerability has been resolved: net/rds: handle zerocopy send cleanup before the message is queued A zerocopy send can fail after user pages have been pinned but before the message is attached to the sending socket. It was discovered that a logic flaw existed in the XFRM ESP-in-TCP subsystem in the Linux kernel when handling socket buffer fragments. This flaw is known as Fragnesia. A local attacker could use this to escalate privileges, or possibly escape a container.)(CVE-2026-43503) In the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: Fix double free in rxe_srq_from_init In rxe_srq_from_init(), the queue pointer 'q' is assigned to 'srq->rq.queue' before copying the SRQ number to user space. In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: prevent infinite loops caused by the next valid being the same When processing valid within the range . In the Linux kernel, the following vulnerability has been resolved: ext4: drop extent cache when splitting extent fails When the split extent fails, we might leave some extents still being processed and return an error directly, which will result in stale extent entries remaining in the extent status tree. In the Linux kernel, the following vulnerability has been resolved: smb/client: fix out-of-bounds read in symlink_data() Since smb2_check_message() returns success without length validation for the symlink error response, in symlink_data() it is possible for iov->iov_len to be smaller than sizeof(struct smb2_err_rsp). In the Linux kernel, the following vulnerability has been resolved: smb: client: validate dacloffset before building DACL pointers parse_sec_desc(), build_sec_desc(), and the chown path in id_mode_to_cifs_acl() all add the server-supplied dacloffset to pntsd before proving a DACL header fits inside the returned security descriptor. On 32-bit builds a malicious server can return dacloffset near U32_MAX, wrap the derived DACL pointer below end_of_acl, and then slip past the later pointer-based bounds checks. In the Linux kernel, the following vulnerability has been resolved: procfs: fix missing RCU protection when reading real_parent in do_task_stat() When reading /proc/. It was discovered that a logic flaw existed in the XFRM ESP-in-TCP subsystem in the Linux kernel when handling socket buffer fragments. This flaw is known as Fragnesia. A local attacker could use this to escalate privileges, or possibly escape a container.)(CVE-2026-46300) In the Linux kernel, the following vulnerability has been resolved: sctp: purge outqueue on stale COOKIE-ECHO handling sctp_stream_update() is only invoked when the association is moved into COOKIE_WAIT during association setup/reconfiguration. In the Linux kernel, the following vulnerability has been resolved: libceph: Fix potential out-of-bounds access in crush_decode() A message of type CEPH_MSG_OSD_MAP containing a crush map with at least one bucket has two fields holding the bucket algorithm. In the Linux kernel, the following vulnerability has been resolved: libceph: Fix potential out-of-bounds access in osdmap_decode() When decoding osd_state and osd_weight from an incoming osdmap in osdmap_decode(), both are decoded for each osd, i.e., map->max_osd times. The ceph_decode_need() check only accounts for sizeof(*map->osd_weight) once. In the Linux kernel, the following vulnerability has been resolved: nvmet-tcp: propagate nvmet_tcp_build_pdu_iovec() errors to its callers Currently, when nvmet_tcp_build_pdu_iovec() detects an out-of- bounds PDU length or offset, it triggers nvmet_tcp_fatal_error(cmd->queue) and returns early. In the Linux kernel, the following vulnerability has been resolved: tipc: fix double-free in tipc_buf_append() tipc_msg_validate() can potentially reallocate the skb it is validating, freeing the old one. In tipc_buf_append(), it was being called with a pointer to a local variable which was a copy of the caller's skb pointer. In the Linux kernel, the following vulnerability has been resolved: netfilter: conntrack: remove sprintf usage Replace it with scnprintf, the buffer sizes are expected to be large enough to hold the result, no need for snprintf+overflow check. In the Linux kernel, the following vulnerability has been resolved: ipv6: fix possible UAF in icmpv6_rcv() Caching saddr and daddr before pskb_pull() is problematic since skb->head can change. In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix the ACK parser to extract the SACK table for parsing Fix modification of the received skbuff in rxrpc_input_soft_acks() and a potential incorrect access of the buffer in a fragmented UDP packet (the packet would probably have to be deliberately pre-generated as fragmented) when AF_RXRPC tries to extract the contents of the SACK table by copying out the contents of the SACK table into a buffer before attempting to parse AF_RXRPC assumes that it can just call skb_condense() and then validly access the SACK table from skb->data and that it will be a flat buffer - but skb_condense() can silently fail to do anything under some circumstances. In the Linux kernel, the following vulnerability has been resolved: IB/isert: Reject login PDUs shorter than ISER_HEADERS_LEN In drivers/infiniband/ulp/isert/ib_isert.c, isert_login_recv_done() computes the login request payload length as wc->byte_len minus ISER_HEADERS_LEN with no lower bound, and login_req_len is a signed int. In the Linux kernel, the following vulnerability has been resolved: RDMA/srp: bound SRP_RSP sense copy by the received length srp_process_rsp() copies sense data from rsp->data + resp_data_len, where resp_data_len is the full 32-bit value supplied by the SRP target and is never checked against the number of bytes actually received (wc->byte_len). The copy length is bounded to SCSI_SENSE_BUFFERSIZE, so at most 96 bytes are copied, but the source offset is not bounded. In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_tunnel: fix use-after-free on object destroy nft_tunnel_obj_destroy() calls metadata_dst_free() which directly kfree()s the metadata_dst, ignoring the dst_entry refcount. In the Linux kernel, the following vulnerability has been resolved: net: mvpp2: refill RX buffers before XDP or skb use The RX error path returns the current descriptor buffer to the hardware BM pool. In the Linux kernel, the following vulnerability has been resolved: KVM: x86: Fix shadow paging use-after-free due to unexpected role Commit 0cb2af2ea66ad ('KVM: x86: Fix shadow paging use-after-free due to unexpected GFN') fixed a shadow paging mismatch between stored and computed GFNs; the bug could be triggered by changing a PDE mapping from outside the guest, and then deleting a memslot. In the Linux kernel, the following vulnerability has been resolved: net: openvswitch: reject oversized nested action attrs Open vSwitch stores generated flow actions as nlattrs, whose nla_len field is u16.

USN-8892-1: Ubuntu Pro for WSL vulnerability

1 day 2 hours ago
Darshan U discovered that Ubuntu Pro for WSL exposed the attach token in command-line arguments when enabling a subscription on a WSL instance. An attacker could possibly use this issue to obtain sensitive information and gain unauthorized access to Ubuntu Pro repositories.

USN-8891-1: librsvg vulnerability

1 day 5 hours ago
It was discovered that librsvg incorrectly handled duplicate XML entity declarations while processing SVG documents containing nested XML inclusions. An attacker could possibly use this issue to cause a denial of service or execute arbitrary code.

USN-8890-1: libsoup vulnerabilities

1 day 6 hours ago
It was discovered that libsoup incorrectly handled certain HTTP/2 requests. A remote attacker could possibly use this issue to cause a denial of service. This issue only affected Ubuntu 24.04 LTS and Ubuntu 26.04 LTS. (CVE-2026-4271) It was discovered that libsoup incorrectly handled certain HTTPS proxy connections. A remote attacker could possibly use this issue to obtain sensitive information. This issue only affected Ubuntu 22.04 LTS, Ubuntu 24.04 LTS, and Ubuntu 26.04 LTS. (CVE-2026-5119) It was discovered that libsoup incorrectly parsed certain chunked HTTP requests. A remote attacker could possibly use this issue to bypass security controls. This issue only affected Ubuntu 22.04 LTS, Ubuntu 24.04 LTS, and Ubuntu 26.04 LTS. (CVE-2026-6324) It was discovered that libsoup incorrectly handled proxy authentication credentials. A remote attacker could possibly use this issue to obtain sensitive information. (CVE-2026-66339) It was discovered that libsoup incorrectly handled certain HTTP Range headers. A remote attacker could possibly use this issue to cause a denial of service. (CVE-2026-77014, CVE-2026-77680) It was discovered that libsoup incorrectly handled certain HTTP/2 connections. A remote attacker could possibly use this issue to obtain sensitive information or execute arbitrary code. This issue only affected Ubuntu 22.04 LTS, Ubuntu 24.04 LTS, and Ubuntu 26.04 LTS. (CVE-2026-85197) It was discovered that libsoup incorrectly handled certain HTTP/2 transfers. A remote attacker could possibly use this issue to cause a denial of service. This issue only affected Ubuntu 22.04 LTS, Ubuntu 24.04 LTS, and Ubuntu 26.04 LTS. (CVE-2026-85534)

USN-8884-1: U-Boot vulnerabilities

1 day 6 hours ago
Timo Preißl discovered that U-Boot incorrectly handled certain malformed ZFS file system metadata. An attacker could possibly use this issue to trigger an integer overflow and out-of-bounds memory access, resulting in arbitrary code execution or a denial of service. (CVE-2025-70290) Timo Preißl discovered that U-Boot incorrectly calculated buffer sizes when processing certain ext4 file systems. An attacker could possibly use this issue to trigger an integer overflow and out-of-bounds memory access, resulting in arbitrary code execution or a denial of service. This issue only affected Ubuntu 18.04 LTS, Ubuntu 20.04 LTS, Ubuntu 22.04 LTS, Ubuntu 24.04 LTS, and Ubuntu 26.04 LTS. (CVE-2025-70293) Mateusz Furdyna discovered that U-Boot incorrectly handled certain fragmented IP traffic when IP defragmentation was enabled. An attacker could possibly use this issue to corrupt memory by sending crafted IP fragments, resulting in arbitrary code execution. (CVE-2026-15390) Shahriyar Jalayeri and Mehrun P. Hunter discovered that U-Boot incorrectly handled certain fragmented IP traffic during network boot when IP defragmentation was enabled. An attacker could possibly use this issue to trigger an out-of-bounds write, resulting in a denial of service. (CVE-2026-71971)

USN-8889-1: Linux kernel (OEM) vulnerabilities

1 day 7 hours ago
It was discovered that some AMD processors did not properly perform Reverse Map Table (RMP) checks when the IOMMU accessed certain host buffers. A local attacker with hypervisor access could possibly use this to trigger an out-of-bounds condition and compromise the integrity of SEV-SNP guest memory. (CVE-2023-20585) Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - ARM64 architecture; - NVDIMM (Non-Volatile Memory Device) drivers; - Handshake API; - ARM32 architecture; - MIPS architecture; - OpenRISC architecture; - PowerPC architecture; - RISC-V architecture; - S390 architecture; - x86 architecture; - Cryptographic API; - Compute Acceleration Framework; - Intel NPU Driver; - ACPI drivers; - Android drivers; - Serial ATA and Parallel ATA drivers; - Drivers core; - Rados block device (RBD) driver; - Ublk userspace block driver; - Bluetooth drivers; - Cdrom driver; - Character device driver; - TPM device driver; - Data acquisition framework and drivers; - Hardware crypto device drivers; - CXL (Compute Express Link) drivers; - DAX dirext access to differentiated memory framework; - DIBS (Direct Internal Buffer Sharing) drivers; - Buffer Sharing and Synchronization framework; - DMA engine subsystem; - DPLL subsystem; - EDAC drivers; - FireWire subsystem; - Arm Firmware Framework for ARMv8-A(FFA); - ARM SCMI message protocol; - Intel Stratix 10 firmware drivers; - FPGA Framework; - GPIB drivers; - GPIO subsystem; - GPU drivers; - HID subsystem; - Microsoft Hyper-V drivers; - Hardware monitoring drivers; - CoreSight HW tracing drivers; - Intel Trace Hub HW tracing drivers; - I2C subsystem; - I3C subsystem; - IIO subsystem; - IIO ADC drivers; - IIO Magnetometer sensors drivers; - InfiniBand drivers; - Input Device (Miscellaneous) drivers; - IOMMU subsystem; - IRQ chip drivers; - LED subsystem; - Mailbox framework; - Multiple devices driver; - Media drivers; - MemoryStick subsystem; - Multifunction device drivers; - Intel Management Engine Interface driver; - Amazon Nitro Secure Module driver; - MMC subsystem; - MTD block device drivers; - Network drivers; - Ethernet bonding driver; - Mellanox network drivers; - Microsoft Azure Network Adapter (MANA) driver; - Texas Instruments network drivers; - MediaTek network drivers; - NTB driver; - NVME drivers; - Device tree and open firmware driver; - Operating Performance Points (OPP) driver; - PCI subsystem; - Pin controllers subsystem; - x86 platform drivers; - i.MX PM domains; - MediaTek PM domains; - Power supply drivers; - PTP clock framework; - RapidIO drivers; - Voltage and Current Regulator drivers; - Remote Processor subsystem; - MPAM driver; - Reset controller framework; - Real Time Clock drivers; - S/390 drivers; - SCSI subsystem; - Xilinx SoC drivers; - SoundWire subsystem; - SPI subsystem; - Media staging drivers; - Media Oriented Systems Transport (MOST) driver; - NVIDIA Tegra embedded controller (NVEC) staging driver; - Realtek RTL8723BS SDIO drivers; - TTY drivers; - UFS subsystem; - USB DSL drivers; - USB core drivers; - DesignWare USB3 driver; - USB Gadget drivers; - USB Host Controller drivers; - USB Dual Role (OTG-ready) Controller drivers; - USB Serial drivers; - vDPA drivers; - VFIO drivers; - Virtio Host (VHOST) subsystem; - Framebuffer layer; - Virtio drivers; - Watchdog drivers; - Xen hypervisor drivers; - 9P distributed file system; - AFS file system; - File systems infrastructure; - BTRFS file system; - Ceph distributed file system; - Ext4 file system; - F2FS file system; - FUSE (File system in Userspace); - Journaling layer for block devices (JBD2); - Network file systems library; - Network file system (NFS) client; - Network file system (NFS) server daemon; - NTFS3 file system; - OCFS2 file system; - Overlay file system; - Proc file system; - SMB network file system; - BPF subsystem; - File system encryption (fscrypt); - MAC80211 subsystem; - Live Update Orchestrator (LUO); - Mellanox drivers; - Networking core; - Memory Management; - Media input infrastructure; - IPv6 networking; - Bluetooth subsystem; - Wireless networking; - IPv4 networking; - Netfilter; - Network traffic control; - SCTP protocol; - TCP network protocol; - XFRM subsystem; - RDMA verbs API; - User-space API (UAPI); - Audit subsystem; - Control group (cgroup); - Kernel CPU control infrastructure; - Kernel exit() syscall; - Kernel fork() syscall; - Kexec HandOver (KHO); - Scheduler infrastructure; - Signal handling mechanism; - Timer subsystem; - Tracing infrastructure; - Codetag library; - Resizable hashtable library; - Memory management; - 9P file system network protocol; - Asynchronous Transfer Mode (ATM) subsystem; - B.A.T.M.A.N. meshing protocol; - Ethernet bridge; - CAN network layer; - Ceph Core library; - HSR network protocol; - IEEE802154.4 network protocol; - IUCV driver; - KCM (Kernel Connection Multiplexor) sockets driver; - Logical Link layer; - IEEE 802.15.4 subsystem; - MultiProtocol Label Switching driver; - Multipath TCP; - Open vSwitch; - Packet sockets; - Phonet protocol; - Packet sampling (psample); - Qualcomm IPC Router (QRTR); - RDS protocol; - RxRPC session sockets; - Sun RPC protocol; - TIPC protocol; - TLS protocol; - X.25 network layer; - AppArmor security module; - Integrity Measurement Architecture(IMA) framework; - Landlock security; - SELinux security module; - ALSA framework; - HD-audio driver; - AMD SoC Alsa drivers; - Texas InstrumentS Audio (ASoC/HDA) drivers; - SoC Audio for Freescale CPUs drivers; - MediaTek ASoC drivers; - Amlogic Meson SoC drivers; - QCOM ASoC drivers; - SoundWire (SDCA) ASoC drivers; - SoC audio core drivers; - SOF drivers; - NVIDIA Tegra ASoC drivers; - USB sound devices; - Perf tools; - KVM subsystem; (CVE-2026-64349, CVE-2026-64532, CVE-2026-64533, CVE-2026-64537, CVE-2026-64538, CVE-2026-64539, CVE-2026-64540, CVE-2026-64542, CVE-2026-64543, CVE-2026-64544, CVE-2026-64545, CVE-2026-64546, CVE-2026-64547, CVE-2026-64548, CVE-2026-64549, CVE-2026-64550, CVE-2026-64552, CVE-2026-64553, CVE-2026-64554, CVE-2026-64555, CVE-2026-64557, CVE-2026-64558, CVE-2026-64559, CVE-2026-64560, CVE-2026-64561, CVE-2026-64562, CVE-2026-64563, CVE-2026-64564, CVE-2026-64565, CVE-2026-64566, CVE-2026-64567, CVE-2026-64568, CVE-2026-64569, CVE-2026-64570, CVE-2026-64571, CVE-2026-64572, CVE-2026-64573, CVE-2026-64574, CVE-2026-64575, CVE-2026-64576, CVE-2026-64577, CVE-2026-64578, CVE-2026-64579, CVE-2026-64580, CVE-2026-64581, CVE-2026-64582, CVE-2026-64583, CVE-2026-64584, CVE-2026-64585, CVE-2026-64586, CVE-2026-68081, CVE-2026-68082, CVE-2026-68093, CVE-2026-68095, CVE-2026-68096, CVE-2026-68097, CVE-2026-68098, CVE-2026-68099, CVE-2026-68100, CVE-2026-68104, CVE-2026-68105, CVE-2026-68106, CVE-2026-68107, CVE-2026-68108, CVE-2026-68109, CVE-2026-68110, CVE-2026-68111, CVE-2026-68112, CVE-2026-68113, CVE-2026-68114, CVE-2026-68115, CVE-2026-68116, CVE-2026-68117, CVE-2026-68118, CVE-2026-68119, CVE-2026-68120, CVE-2026-68121, CVE-2026-68122, CVE-2026-68123, CVE-2026-68124, CVE-2026-68125, CVE-2026-68126, CVE-2026-68127, CVE-2026-68128, CVE-2026-68129, CVE-2026-68130, CVE-2026-68131, CVE-2026-68132, CVE-2026-68133, CVE-2026-68134, CVE-2026-68135, CVE-2026-68136, CVE-2026-68137, CVE-2026-68138, CVE-2026-68139, CVE-2026-68140, CVE-2026-68141, CVE-2026-68142, CVE-2026-68143, CVE-2026-68144, CVE-2026-68145, CVE-2026-68146, CVE-2026-68147, CVE-2026-68148, CVE-2026-68149, CVE-2026-68150, CVE-2026-68151, CVE-2026-68152, CVE-2026-68153, CVE-2026-68154, CVE-2026-68155, CVE-2026-68156, CVE-2026-68157, CVE-2026-68158, CVE-2026-68159, CVE-2026-68160, CVE-2026-68161, CVE-2026-68162, CVE-2026-68163, CVE-2026-68164, CVE-2026-68165, CVE-2026-68166, CVE-2026-68168, CVE-2026-68169, CVE-2026-68170, CVE-2026-68172, CVE-2026-68173, CVE-2026-68174, CVE-2026-68175, CVE-2026-68176, CVE-2026-68177, CVE-2026-68178, CVE-2026-68179, CVE-2026-68180, CVE-2026-68181, CVE-2026-68182, CVE-2026-68183, CVE-2026-68184, CVE-2026-68186, CVE-2026-68187, CVE-2026-68188, CVE-2026-68189, CVE-2026-68190, CVE-2026-68191, CVE-2026-68192, CVE-2026-68193, CVE-2026-68194, CVE-2026-68195, CVE-2026-68196, CVE-2026-68197, CVE-2026-68198, CVE-2026-68199, CVE-2026-68200, CVE-2026-68201, CVE-2026-68202, CVE-2026-68203, CVE-2026-68204, CVE-2026-68205, CVE-2026-68206, CVE-2026-68207, CVE-2026-68208, CVE-2026-68209, CVE-2026-68210, CVE-2026-68211, CVE-2026-68212, CVE-2026-68213, CVE-2026-68214, CVE-2026-68215, CVE-2026-68216, CVE-2026-68217, CVE-2026-68218, CVE-2026-68219, CVE-2026-68220, CVE-2026-68221, CVE-2026-68222, CVE-2026-68223, CVE-2026-68224, CVE-2026-68225, CVE-2026-68226, CVE-2026-68227, CVE-2026-68228, CVE-2026-68229, CVE-2026-68230, CVE-2026-68231, CVE-2026-68232, CVE-2026-68233, CVE-2026-68234, CVE-2026-68235, CVE-2026-68236, CVE-2026-68237, CVE-2026-68238, CVE-2026-68239, CVE-2026-68240, CVE-2026-68241, CVE-2026-68242, CVE-2026-68243, CVE-2026-68244, CVE-2026-68245, CVE-2026-68246, CVE-2026-68247, CVE-2026-68248, CVE-2026-68249, CVE-2026-68250, CVE-2026-68251, CVE-2026-68252, CVE-2026-68253, CVE-2026-68254, CVE-2026-68255, CVE-2026-68256, CVE-2026-68257, CVE-2026-68258, CVE-2026-68259, CVE-2026-68260, CVE-2026-68261, CVE-2026-68262, CVE-2026-68263, CVE-2026-68264, CVE-2026-68265, CVE-2026-68266, CVE-2026-68267, CVE-2026-68268, CVE-2026-68269, CVE-2026-68270, CVE-2026-68271, CVE-2026-68272, CVE-2026-68273, CVE-2026-68274, CVE-2026-68275, CVE-2026-68276, CVE-2026-68277, CVE-2026-68278, CVE-2026-68279, CVE-2026-68280, CVE-2026-68281, CVE-2026-68282, CVE-2026-68283, CVE-2026-68284, CVE-2026-68286, CVE-2026-68287, CVE-2026-68288, CVE-2026-68289, CVE-2026-68290, CVE-2026-68291, CVE-2026-68292, CVE-2026-68293, CVE-2026-68294, CVE-2026-68296, CVE-2026-68297, CVE-2026-68298, CVE-2026-68299, CVE-2026-68300, CVE-2026-68301, CVE-2026-68302, CVE-2026-68303, CVE-2026-68304, CVE-2026-68306, CVE-2026-68307, CVE-2026-68308, CVE-2026-68309, CVE-2026-68310, CVE-2026-68311, CVE-2026-68312, CVE-2026-68313, CVE-2026-68314, CVE-2026-68315, CVE-2026-68316, CVE-2026-68317, CVE-2026-68318, CVE-2026-68319, CVE-2026-68320, CVE-2026-68321, CVE-2026-68322, CVE-2026-68323, CVE-2026-68324, CVE-2026-68325, CVE-2026-68326, CVE-2026-68327, CVE-2026-68328, CVE-2026-68329, CVE-2026-68330, CVE-2026-68331, CVE-2026-68332, CVE-2026-68333, CVE-2026-68334, CVE-2026-68335, CVE-2026-68336, CVE-2026-68337, CVE-2026-68338, CVE-2026-68339, CVE-2026-68340, CVE-2026-68341, CVE-2026-68342, CVE-2026-68343, CVE-2026-68345, CVE-2026-68346, CVE-2026-68347, CVE-2026-68348, CVE-2026-68349, CVE-2026-68350, CVE-2026-68351, CVE-2026-68352, CVE-2026-68353, CVE-2026-68354, CVE-2026-68355, CVE-2026-68356, CVE-2026-68357, CVE-2026-68358, CVE-2026-68359, CVE-2026-68360, CVE-2026-68361, CVE-2026-68362, CVE-2026-68363, CVE-2026-68364, CVE-2026-68365, CVE-2026-68366, CVE-2026-68367, CVE-2026-68368, CVE-2026-68369, CVE-2026-68370, CVE-2026-68371, CVE-2026-68373, CVE-2026-68374, CVE-2026-68375, CVE-2026-68376, CVE-2026-68377, CVE-2026-68378, CVE-2026-68379, CVE-2026-68380, CVE-2026-68381, CVE-2026-68382, CVE-2026-68383, CVE-2026-68384, CVE-2026-68385, CVE-2026-68386, CVE-2026-68387, CVE-2026-68388, CVE-2026-68389, CVE-2026-68390, CVE-2026-68391, CVE-2026-68392, CVE-2026-68393, CVE-2026-68394, CVE-2026-68395, CVE-2026-68396, CVE-2026-68397, CVE-2026-68398, CVE-2026-68399, CVE-2026-68400, CVE-2026-68401, CVE-2026-68402, CVE-2026-68403, CVE-2026-68404, CVE-2026-68405, CVE-2026-68406, CVE-2026-68407, CVE-2026-68408, CVE-2026-68409, CVE-2026-68410, CVE-2026-68411, CVE-2026-68412, CVE-2026-68413, CVE-2026-68414, CVE-2026-68415, CVE-2026-68416, CVE-2026-68417, CVE-2026-68418, CVE-2026-68419, CVE-2026-68420, CVE-2026-68421, CVE-2026-68422, CVE-2026-68425, CVE-2026-68426, CVE-2026-68427, CVE-2026-68428, CVE-2026-68429, CVE-2026-68430, CVE-2026-68431, CVE-2026-68432, CVE-2026-68433, CVE-2026-68434, CVE-2026-68436, CVE-2026-68437, CVE-2026-68439, CVE-2026-68440, CVE-2026-68441, CVE-2026-68442, CVE-2026-68443, CVE-2026-68444, CVE-2026-68445, CVE-2026-68446, CVE-2026-68447, CVE-2026-68448, CVE-2026-68449, CVE-2026-68450, CVE-2026-68454, CVE-2026-68455, CVE-2026-68456, CVE-2026-68458, CVE-2026-68463, CVE-2026-68464, CVE-2026-68465, CVE-2026-68466, CVE-2026-68467, CVE-2026-68469, CVE-2026-68470, CVE-2026-68471, CVE-2026-68472, CVE-2026-68473, CVE-2026-68474, CVE-2026-68475, CVE-2026-68478, CVE-2026-68479, CVE-2026-68480, CVE-2026-72003, CVE-2026-72004, CVE-2026-72005, CVE-2026-72006, CVE-2026-72007, CVE-2026-72008, CVE-2026-72009, CVE-2026-72010, CVE-2026-72011, CVE-2026-72012, CVE-2026-72013, CVE-2026-72015, CVE-2026-72016, CVE-2026-72017, CVE-2026-72018, CVE-2026-72019, CVE-2026-72021, CVE-2026-72022, CVE-2026-72023, CVE-2026-72024, CVE-2026-72025, CVE-2026-72026, CVE-2026-72027, CVE-2026-72028, CVE-2026-72029, CVE-2026-72030, CVE-2026-72031, CVE-2026-72032, CVE-2026-72034, CVE-2026-72035, CVE-2026-72036, CVE-2026-72037, CVE-2026-72038, CVE-2026-72039, CVE-2026-72040, CVE-2026-72042, CVE-2026-72045, CVE-2026-72047, CVE-2026-72048, CVE-2026-72049, CVE-2026-72050, CVE-2026-72051, CVE-2026-72052, CVE-2026-72053, CVE-2026-72054, CVE-2026-72055, CVE-2026-72056, CVE-2026-72057, CVE-2026-72058, CVE-2026-72059, CVE-2026-72060, CVE-2026-72061, CVE-2026-72062, CVE-2026-72063, CVE-2026-72066, CVE-2026-72067, CVE-2026-72068, CVE-2026-72070, CVE-2026-72071, CVE-2026-72072, CVE-2026-72073, CVE-2026-72074, CVE-2026-72075, CVE-2026-72076, CVE-2026-72077, CVE-2026-72078, CVE-2026-72079, CVE-2026-72080, CVE-2026-72081, CVE-2026-72082, CVE-2026-72086, CVE-2026-72087, CVE-2026-72088, CVE-2026-72089, CVE-2026-72090, CVE-2026-72091, CVE-2026-72092, CVE-2026-72093, CVE-2026-72095, CVE-2026-72096, CVE-2026-72097, CVE-2026-72099, CVE-2026-72100, CVE-2026-72101, CVE-2026-72102, CVE-2026-72103, CVE-2026-72104, CVE-2026-72105, CVE-2026-72106, CVE-2026-72107, CVE-2026-72108, CVE-2026-72109, CVE-2026-72110, CVE-2026-72111, CVE-2026-72113, CVE-2026-72114, CVE-2026-72115, CVE-2026-72116, CVE-2026-72117, CVE-2026-72118, CVE-2026-72119, CVE-2026-72120, CVE-2026-72121, CVE-2026-72122, CVE-2026-72123, CVE-2026-72124, CVE-2026-72125, CVE-2026-72126, CVE-2026-72127, CVE-2026-72128, CVE-2026-72131, CVE-2026-72132, CVE-2026-72133, CVE-2026-72134, CVE-2026-72135, CVE-2026-72136, CVE-2026-72138, CVE-2026-72140, CVE-2026-72141, CVE-2026-72142, CVE-2026-72143, CVE-2026-72144, CVE-2026-72146, CVE-2026-72147, CVE-2026-72148, CVE-2026-72149, CVE-2026-72150, CVE-2026-72151, CVE-2026-72152, CVE-2026-72153, CVE-2026-72154, CVE-2026-72155, CVE-2026-72156, CVE-2026-72157, CVE-2026-72158, CVE-2026-72159, CVE-2026-72160, CVE-2026-72161, CVE-2026-72162, CVE-2026-72163, CVE-2026-72164, CVE-2026-72165, CVE-2026-72166, CVE-2026-72167, CVE-2026-72168, CVE-2026-72169, CVE-2026-72170, CVE-2026-72171, CVE-2026-72172, CVE-2026-72173, CVE-2026-72174, CVE-2026-72175, CVE-2026-72176, CVE-2026-72177, CVE-2026-72178, CVE-2026-72179, CVE-2026-72180, CVE-2026-72181, CVE-2026-72182, CVE-2026-72183, CVE-2026-72193, CVE-2026-72195, CVE-2026-72196, CVE-2026-72197, CVE-2026-72212, CVE-2026-72213, CVE-2026-72214, CVE-2026-72215, CVE-2026-72216, CVE-2026-72218, CVE-2026-72219, CVE-2026-72223, CVE-2026-72224, CVE-2026-72225, CVE-2026-72227, CVE-2026-72228, CVE-2026-72229, CVE-2026-72230, CVE-2026-72231, CVE-2026-72232, CVE-2026-72233, CVE-2026-72235, CVE-2026-72236, CVE-2026-72237, CVE-2026-72238, CVE-2026-72240, CVE-2026-72241, CVE-2026-72242, CVE-2026-72243, CVE-2026-72244, CVE-2026-72245, CVE-2026-72247, CVE-2026-72250, CVE-2026-72252, CVE-2026-72253, CVE-2026-72254, CVE-2026-72255, CVE-2026-72256, CVE-2026-72257, CVE-2026-72258, CVE-2026-72259, CVE-2026-72260, CVE-2026-72261, CVE-2026-72262, CVE-2026-72263, CVE-2026-72264, CVE-2026-72265, CVE-2026-72266, CVE-2026-72267, CVE-2026-72268, CVE-2026-72269, CVE-2026-72270, CVE-2026-72271, CVE-2026-72272, CVE-2026-72273, CVE-2026-72274, CVE-2026-72275, CVE-2026-72276, CVE-2026-72280, CVE-2026-72282, CVE-2026-72283, CVE-2026-72284, CVE-2026-72285, CVE-2026-72286, CVE-2026-72290, CVE-2026-72292, CVE-2026-72293, CVE-2026-72297, CVE-2026-72298, CVE-2026-72300, CVE-2026-72301, CVE-2026-72302, CVE-2026-72303, CVE-2026-72304, CVE-2026-72305, CVE-2026-72306, CVE-2026-72307, CVE-2026-72308, CVE-2026-72310, CVE-2026-72312, CVE-2026-72313, CVE-2026-72314, CVE-2026-72315, CVE-2026-72316, CVE-2026-72321, CVE-2026-72324, CVE-2026-72325, CVE-2026-72326, CVE-2026-72327, CVE-2026-72328, CVE-2026-72330, CVE-2026-72331, CVE-2026-72332, CVE-2026-72333, CVE-2026-72334, CVE-2026-72335, CVE-2026-72336, CVE-2026-72337, CVE-2026-72338, CVE-2026-72340, CVE-2026-72341, CVE-2026-72342, CVE-2026-72343, CVE-2026-72345, CVE-2026-72347, CVE-2026-72349, CVE-2026-72350, CVE-2026-72352, CVE-2026-72356, CVE-2026-72357, CVE-2026-72360, CVE-2026-72361, CVE-2026-72362, CVE-2026-72363, CVE-2026-72364, CVE-2026-72365, CVE-2026-72367, CVE-2026-72368, CVE-2026-72369, CVE-2026-72370, CVE-2026-72371, CVE-2026-72372, CVE-2026-72373, CVE-2026-72374, CVE-2026-72375, CVE-2026-72376, CVE-2026-72377, CVE-2026-72378, CVE-2026-72379, CVE-2026-72380, CVE-2026-72382, CVE-2026-72383, CVE-2026-72384, CVE-2026-72385, CVE-2026-72386, CVE-2026-72387, CVE-2026-72388, CVE-2026-72389, CVE-2026-72390, CVE-2026-72391, CVE-2026-72392, CVE-2026-72394, CVE-2026-72395, CVE-2026-72396, CVE-2026-72397, CVE-2026-72400, CVE-2026-72401, CVE-2026-72402, CVE-2026-72403, CVE-2026-72405, CVE-2026-72406, CVE-2026-72407, CVE-2026-72408, CVE-2026-72409, CVE-2026-72410, CVE-2026-72413, CVE-2026-72414, CVE-2026-72415, CVE-2026-72416, CVE-2026-72418, CVE-2026-72419, CVE-2026-72420, CVE-2026-72421, CVE-2026-72423, CVE-2026-72424, CVE-2026-72425, CVE-2026-72427, CVE-2026-72428, CVE-2026-72430, CVE-2026-72431, CVE-2026-72433, CVE-2026-72434, CVE-2026-72435, CVE-2026-72437, CVE-2026-72438, CVE-2026-72439, CVE-2026-72440, CVE-2026-72441, CVE-2026-72443, CVE-2026-72444, CVE-2026-72445, CVE-2026-72446, CVE-2026-72447, CVE-2026-72448, CVE-2026-72449, CVE-2026-72450, CVE-2026-72452, CVE-2026-72453, CVE-2026-72454, CVE-2026-72455, CVE-2026-72456, CVE-2026-72457, CVE-2026-72458, CVE-2026-72459, CVE-2026-72460, CVE-2026-72461, CVE-2026-72462, CVE-2026-72464, CVE-2026-72465, CVE-2026-72467, CVE-2026-72468, CVE-2026-72469, CVE-2026-72470, CVE-2026-72471, CVE-2026-72474, CVE-2026-72475, CVE-2026-72476, CVE-2026-72478, CVE-2026-72479, CVE-2026-72480, CVE-2026-72481, CVE-2026-72482, CVE-2026-72483, CVE-2026-72484, CVE-2026-72485, CVE-2026-72486, CVE-2026-72487, CVE-2026-72488, CVE-2026-72489, CVE-2026-72492, CVE-2026-72498, CVE-2026-72499, CVE-2026-72500, CVE-2026-72502, CVE-2026-74256, CVE-2026-74257, CVE-2026-74258, CVE-2026-74260, CVE-2026-74261, CVE-2026-74262, CVE-2026-74263, CVE-2026-74264, CVE-2026-74265, CVE-2026-74266, CVE-2026-74270, CVE-2026-74271, CVE-2026-74272, CVE-2026-74273, CVE-2026-74274, CVE-2026-74276, CVE-2026-74277, CVE-2026-74278, CVE-2026-74279, CVE-2026-74280, CVE-2026-74281, CVE-2026-74282, CVE-2026-74283, CVE-2026-74284, CVE-2026-74286, CVE-2026-74288, CVE-2026-74289, CVE-2026-74290, CVE-2026-74291, CVE-2026-74292, CVE-2026-74293, CVE-2026-74294, CVE-2026-74295, CVE-2026-74296, CVE-2026-74297, CVE-2026-74300, CVE-2026-74301, CVE-2026-74302, CVE-2026-74303, CVE-2026-74304, CVE-2026-74305, CVE-2026-74306, CVE-2026-74307, CVE-2026-74308, CVE-2026-74309, CVE-2026-74311, CVE-2026-74312, CVE-2026-74313, CVE-2026-74314, CVE-2026-74316, CVE-2026-74317, CVE-2026-74318, CVE-2026-74320, CVE-2026-74321, CVE-2026-74322, CVE-2026-74323, CVE-2026-74324, CVE-2026-74325, CVE-2026-74327, CVE-2026-74328, CVE-2026-74329, CVE-2026-74330, CVE-2026-74331, CVE-2026-74332, CVE-2026-74333, CVE-2026-74334, CVE-2026-74335, CVE-2026-74336, CVE-2026-74337, CVE-2026-74338, CVE-2026-74339, CVE-2026-74340, CVE-2026-74341, CVE-2026-74344, CVE-2026-74346, CVE-2026-74347, CVE-2026-74348, CVE-2026-74349, CVE-2026-74351, CVE-2026-74352, CVE-2026-74353, CVE-2026-74354, CVE-2026-74355, CVE-2026-74356, CVE-2026-74358, CVE-2026-74359, CVE-2026-74360, CVE-2026-74362, CVE-2026-74363, CVE-2026-74364, CVE-2026-74365, CVE-2026-74366, CVE-2026-74367, CVE-2026-74368, CVE-2026-74370, CVE-2026-74371, CVE-2026-74372, CVE-2026-74373, CVE-2026-74374, CVE-2026-74375, CVE-2026-74377, CVE-2026-74378, CVE-2026-74379, CVE-2026-74380, CVE-2026-74381, CVE-2026-74382, CVE-2026-74383, CVE-2026-74385, CVE-2026-74386, CVE-2026-74387, CVE-2026-74388, CVE-2026-74389, CVE-2026-74390, CVE-2026-74391, CVE-2026-74392, CVE-2026-74393, CVE-2026-74395, CVE-2026-74396, CVE-2026-74397, CVE-2026-74399, CVE-2026-74400, CVE-2026-74402, CVE-2026-74403, CVE-2026-74404, CVE-2026-74405, CVE-2026-74407, CVE-2026-74408, CVE-2026-74409, CVE-2026-74410, CVE-2026-74411, CVE-2026-74412, CVE-2026-74413, CVE-2026-74415, CVE-2026-74416, CVE-2026-74417, CVE-2026-74419, CVE-2026-74420, CVE-2026-74421, CVE-2026-74422, CVE-2026-74423, CVE-2026-74424, CVE-2026-74425, CVE-2026-74426, CVE-2026-74429, CVE-2026-74430, CVE-2026-74431, CVE-2026-74432, CVE-2026-74435, CVE-2026-74437, CVE-2026-74438, CVE-2026-80592, CVE-2026-80593, CVE-2026-80594, CVE-2026-80595, CVE-2026-80596, CVE-2026-80597, CVE-2026-80598, CVE-2026-80599, CVE-2026-80600, CVE-2026-80601, CVE-2026-80602, CVE-2026-80603, CVE-2026-80604, CVE-2026-80605, CVE-2026-80606, CVE-2026-80607, CVE-2026-80609, CVE-2026-80610, CVE-2026-80611, CVE-2026-80612, CVE-2026-80613, CVE-2026-80614, CVE-2026-80615, CVE-2026-80616, CVE-2026-80617, CVE-2026-80618, CVE-2026-80619, CVE-2026-80620, CVE-2026-80621, CVE-2026-80622, CVE-2026-80623, CVE-2026-80624, CVE-2026-80625, CVE-2026-80626, CVE-2026-80627, CVE-2026-80628, CVE-2026-80629, CVE-2026-80630, CVE-2026-80631, CVE-2026-80634, CVE-2026-80635, CVE-2026-80636, CVE-2026-80637, CVE-2026-80638, CVE-2026-80639, CVE-2026-80640, CVE-2026-80641, CVE-2026-80642, CVE-2026-80643, CVE-2026-80644, CVE-2026-80645, CVE-2026-80646, CVE-2026-80647, CVE-2026-80648, CVE-2026-80649, CVE-2026-80650, CVE-2026-80651, CVE-2026-80652, CVE-2026-80653, CVE-2026-80654, CVE-2026-80655, CVE-2026-80657, CVE-2026-80658, CVE-2026-80659, CVE-2026-80660, CVE-2026-80661, CVE-2026-80662, CVE-2026-80663, CVE-2026-80664, CVE-2026-80666, CVE-2026-80667, CVE-2026-80668, CVE-2026-80669, CVE-2026-80670, CVE-2026-80671, CVE-2026-80675, CVE-2026-80676, CVE-2026-80677, CVE-2026-80865, CVE-2026-80866, CVE-2026-80867, CVE-2026-80868, CVE-2026-80870, CVE-2026-80871, CVE-2026-80872, CVE-2026-80873, CVE-2026-80874, CVE-2026-80875, CVE-2026-80876, CVE-2026-80877, CVE-2026-80878, CVE-2026-80879, CVE-2026-80880, CVE-2026-80881, CVE-2026-80882, CVE-2026-80883, CVE-2026-80884, CVE-2026-80885, CVE-2026-80886, CVE-2026-89774, CVE-2026-92502)

USN-8888-1: Linux kernel (Azure) vulnerabilities

1 day 7 hours ago
It was discovered that some AMD processors did not properly perform Reverse Map Table (RMP) checks when the IOMMU accessed certain host buffers. A local attacker with hypervisor access could possibly use this to trigger an out-of-bounds condition and compromise the integrity of SEV-SNP guest memory. (CVE-2023-20585) Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - ARM64 architecture; - NVDIMM (Non-Volatile Memory Device) drivers; - Handshake API; - ARM32 architecture; - MIPS architecture; - OpenRISC architecture; - PowerPC architecture; - RISC-V architecture; - S390 architecture; - x86 architecture; - Cryptographic API; - Compute Acceleration Framework; - Intel NPU Driver; - ACPI drivers; - Android drivers; - Serial ATA and Parallel ATA drivers; - Drivers core; - DRBD Distributed Replicated Block Device drivers; - Rados block device (RBD) driver; - Ublk userspace block driver; - Bluetooth drivers; - Cdrom driver; - Character device driver; - TPM device driver; - Data acquisition framework and drivers; - Hardware crypto device drivers; - CXL (Compute Express Link) drivers; - DAX dirext access to differentiated memory framework; - DIBS (Direct Internal Buffer Sharing) drivers; - Buffer Sharing and Synchronization framework; - DMA engine subsystem; - DPLL subsystem; - EDAC drivers; - FireWire subsystem; - Arm Firmware Framework for ARMv8-A(FFA); - ARM SCMI message protocol; - Intel Stratix 10 firmware drivers; - FPGA Framework; - GPIB drivers; - GPIO subsystem; - GPU drivers; - HID subsystem; - Microsoft Hyper-V drivers; - Hardware monitoring drivers; - CoreSight HW tracing drivers; - Intel Trace Hub HW tracing drivers; - I2C subsystem; - I3C subsystem; - IIO subsystem; - IIO ADC drivers; - IIO Magnetometer sensors drivers; - InfiniBand drivers; - Input Device (Miscellaneous) drivers; - IOMMU subsystem; - IRQ chip drivers; - LED subsystem; - Mailbox framework; - Multiple devices driver; - Media drivers; - MemoryStick subsystem; - Multifunction device drivers; - Intel Management Engine Interface driver; - Amazon Nitro Secure Module driver; - MMC subsystem; - MTD block device drivers; - Network drivers; - Ethernet bonding driver; - Mellanox network drivers; - Microsoft Azure Network Adapter (MANA) driver; - Texas Instruments network drivers; - MediaTek network drivers; - NTB driver; - NVME drivers; - Device tree and open firmware driver; - Operating Performance Points (OPP) driver; - PCI subsystem; - Pin controllers subsystem; - x86 platform drivers; - i.MX PM domains; - MediaTek PM domains; - Power supply drivers; - PTP clock framework; - RapidIO drivers; - Voltage and Current Regulator drivers; - Remote Processor subsystem; - MPAM driver; - Reset controller framework; - Real Time Clock drivers; - S/390 drivers; - SCSI subsystem; - Xilinx SoC drivers; - SoundWire subsystem; - SPI subsystem; - Media staging drivers; - Media Oriented Systems Transport (MOST) driver; - NVIDIA Tegra embedded controller (NVEC) staging driver; - Realtek RTL8723BS SDIO drivers; - TCM subsystem; - TTY drivers; - UFS subsystem; - USB DSL drivers; - USB core drivers; - DesignWare USB3 driver; - USB Gadget drivers; - USB Host Controller drivers; - USB Dual Role (OTG-ready) Controller drivers; - USB Serial drivers; - vDPA drivers; - VFIO drivers; - Virtio Host (VHOST) subsystem; - Framebuffer layer; - Virtio drivers; - Watchdog drivers; - Xen hypervisor drivers; - 9P distributed file system; - AFS file system; - File systems infrastructure; - BTRFS file system; - Ceph distributed file system; - Ext4 file system; - F2FS file system; - FUSE (File system in Userspace); - Journaling layer for block devices (JBD2); - Network file systems library; - Network file system (NFS) client; - Network file system (NFS) server daemon; - NTFS3 file system; - OCFS2 file system; - OrangeFS file system; - Overlay file system; - Proc file system; - SMB network file system; - BPF subsystem; - File system encryption (fscrypt); - MAC80211 subsystem; - IPv4 networking; - Live Update Orchestrator (LUO); - Mellanox drivers; - Networking core; - Sun RPC protocol; - Memory Management; - Media input infrastructure; - IPv6 networking; - Bluetooth subsystem; - Wireless networking; - IP tunnels definitions; - Netfilter; - Network traffic control; - SCTP protocol; - TCP network protocol; - XFRM subsystem; - RDMA verbs API; - User-space API (UAPI); - Audit subsystem; - Control group (cgroup); - Kernel CPU control infrastructure; - Kernel exit() syscall; - Kernel fork() syscall; - Kexec HandOver (KHO); - Locking primitives; - Scheduler infrastructure; - Signal handling mechanism; - Timer subsystem; - Tracing infrastructure; - Codetag library; - Resizable hashtable library; - Memory management; - 9P file system network protocol; - Asynchronous Transfer Mode (ATM) subsystem; - B.A.T.M.A.N. meshing protocol; - Ethernet bridge; - CAN network layer; - Ceph Core library; - HSR network protocol; - IEEE802154.4 network protocol; - IFE protocol; - IUCV driver; - KCM (Kernel Connection Multiplexor) sockets driver; - Logical Link layer; - IEEE 802.15.4 subsystem; - MultiProtocol Label Switching driver; - Multipath TCP; - Open vSwitch; - Packet sockets; - Phonet protocol; - Packet sampling (psample); - Qualcomm IPC Router (QRTR); - RDS protocol; - RxRPC session sockets; - SMC sockets; - TIPC protocol; - TLS protocol; - X.25 network layer; - AppArmor security module; - Integrity Measurement Architecture(IMA) framework; - Landlock security; - SELinux security module; - ALSA framework; - HD-audio driver; - AMD SoC Alsa drivers; - Texas InstrumentS Audio (ASoC/HDA) drivers; - SoC Audio for Freescale CPUs drivers; - MediaTek ASoC drivers; - Amlogic Meson SoC drivers; - QCOM ASoC drivers; - SoundWire (SDCA) ASoC drivers; - SoC audio core drivers; - SOF drivers; - NVIDIA Tegra ASoC drivers; - USB sound devices; - Perf tools; - KVM subsystem; (CVE-2026-64349, CVE-2026-64530, CVE-2026-64532, CVE-2026-64533, CVE-2026-64534, CVE-2026-64535, CVE-2026-64537, CVE-2026-64538, CVE-2026-64539, CVE-2026-64540, CVE-2026-64541, CVE-2026-64542, CVE-2026-64543, CVE-2026-64544, CVE-2026-64545, CVE-2026-64546, CVE-2026-64547, CVE-2026-64548, CVE-2026-64549, CVE-2026-64550, CVE-2026-64551, CVE-2026-64552, CVE-2026-64553, CVE-2026-64554, CVE-2026-64555, CVE-2026-64557, CVE-2026-64558, CVE-2026-64559, CVE-2026-64560, CVE-2026-64561, CVE-2026-64562, CVE-2026-64563, CVE-2026-64564, CVE-2026-64565, CVE-2026-64566, CVE-2026-64567, CVE-2026-64568, CVE-2026-64569, CVE-2026-64570, CVE-2026-64571, CVE-2026-64572, CVE-2026-64573, CVE-2026-64574, CVE-2026-64575, CVE-2026-64576, CVE-2026-64577, CVE-2026-64578, CVE-2026-64579, CVE-2026-64580, CVE-2026-64581, CVE-2026-64582, CVE-2026-64583, CVE-2026-64584, CVE-2026-64585, CVE-2026-64586, CVE-2026-68081, CVE-2026-68082, CVE-2026-68083, CVE-2026-68093, CVE-2026-68095, CVE-2026-68096, CVE-2026-68097, CVE-2026-68098, CVE-2026-68099, CVE-2026-68100, CVE-2026-68104, CVE-2026-68105, CVE-2026-68106, CVE-2026-68107, CVE-2026-68108, CVE-2026-68109, CVE-2026-68110, CVE-2026-68111, CVE-2026-68112, CVE-2026-68113, CVE-2026-68114, CVE-2026-68115, CVE-2026-68116, CVE-2026-68117, CVE-2026-68118, CVE-2026-68119, CVE-2026-68120, CVE-2026-68121, CVE-2026-68122, CVE-2026-68123, CVE-2026-68124, CVE-2026-68125, CVE-2026-68126, CVE-2026-68127, CVE-2026-68128, CVE-2026-68129, CVE-2026-68130, CVE-2026-68131, CVE-2026-68132, CVE-2026-68133, CVE-2026-68134, CVE-2026-68135, CVE-2026-68136, CVE-2026-68137, CVE-2026-68138, CVE-2026-68139, CVE-2026-68140, CVE-2026-68141, CVE-2026-68142, CVE-2026-68143, CVE-2026-68144, CVE-2026-68145, CVE-2026-68146, CVE-2026-68147, CVE-2026-68148, CVE-2026-68149, CVE-2026-68150, CVE-2026-68151, CVE-2026-68152, CVE-2026-68153, CVE-2026-68154, CVE-2026-68155, CVE-2026-68156, CVE-2026-68157, CVE-2026-68158, CVE-2026-68159, CVE-2026-68160, CVE-2026-68161, CVE-2026-68162, CVE-2026-68163, CVE-2026-68164, CVE-2026-68165, CVE-2026-68166, CVE-2026-68168, CVE-2026-68169, CVE-2026-68170, CVE-2026-68172, CVE-2026-68173, CVE-2026-68174, CVE-2026-68175, CVE-2026-68176, CVE-2026-68177, CVE-2026-68178, CVE-2026-68179, CVE-2026-68180, CVE-2026-68181, CVE-2026-68182, CVE-2026-68183, CVE-2026-68184, CVE-2026-68186, CVE-2026-68187, CVE-2026-68188, CVE-2026-68189, CVE-2026-68190, CVE-2026-68191, CVE-2026-68192, CVE-2026-68193, CVE-2026-68194, CVE-2026-68195, CVE-2026-68196, CVE-2026-68197, CVE-2026-68198, CVE-2026-68199, CVE-2026-68200, CVE-2026-68201, CVE-2026-68202, CVE-2026-68203, CVE-2026-68204, CVE-2026-68205, CVE-2026-68206, CVE-2026-68207, CVE-2026-68208, CVE-2026-68209, CVE-2026-68210, CVE-2026-68211, CVE-2026-68212, CVE-2026-68213, CVE-2026-68214, CVE-2026-68215, CVE-2026-68216, CVE-2026-68217, CVE-2026-68218, CVE-2026-68219, CVE-2026-68220, CVE-2026-68221, CVE-2026-68222, CVE-2026-68223, CVE-2026-68224, CVE-2026-68225, CVE-2026-68226, CVE-2026-68227, CVE-2026-68228, CVE-2026-68229, CVE-2026-68230, CVE-2026-68231, CVE-2026-68232, CVE-2026-68233, CVE-2026-68234, CVE-2026-68235, CVE-2026-68236, CVE-2026-68237, CVE-2026-68238, CVE-2026-68239, CVE-2026-68240, CVE-2026-68241, CVE-2026-68242, CVE-2026-68243, CVE-2026-68244, CVE-2026-68245, CVE-2026-68246, CVE-2026-68247, CVE-2026-68248, CVE-2026-68249, CVE-2026-68250, CVE-2026-68251, CVE-2026-68252, CVE-2026-68253, CVE-2026-68254, CVE-2026-68255, CVE-2026-68256, CVE-2026-68257, CVE-2026-68258, CVE-2026-68259, CVE-2026-68260, CVE-2026-68261, CVE-2026-68262, CVE-2026-68263, CVE-2026-68264, CVE-2026-68265, CVE-2026-68266, CVE-2026-68267, CVE-2026-68268, CVE-2026-68269, CVE-2026-68270, CVE-2026-68271, CVE-2026-68272, CVE-2026-68273, CVE-2026-68274, CVE-2026-68275, CVE-2026-68276, CVE-2026-68277, CVE-2026-68278, CVE-2026-68279, CVE-2026-68280, CVE-2026-68281, CVE-2026-68282, CVE-2026-68283, CVE-2026-68284, CVE-2026-68286, CVE-2026-68287, CVE-2026-68288, CVE-2026-68289, CVE-2026-68290, CVE-2026-68291, CVE-2026-68292, CVE-2026-68293, CVE-2026-68294, CVE-2026-68296, CVE-2026-68297, CVE-2026-68298, CVE-2026-68299, CVE-2026-68300, CVE-2026-68301, CVE-2026-68302, CVE-2026-68303, CVE-2026-68304, CVE-2026-68306, CVE-2026-68307, CVE-2026-68308, CVE-2026-68309, CVE-2026-68310, CVE-2026-68311, CVE-2026-68312, CVE-2026-68313, CVE-2026-68314, CVE-2026-68315, CVE-2026-68316, CVE-2026-68317, CVE-2026-68318, CVE-2026-68319, CVE-2026-68320, CVE-2026-68321, CVE-2026-68322, CVE-2026-68323, CVE-2026-68324, CVE-2026-68325, CVE-2026-68326, CVE-2026-68327, CVE-2026-68328, CVE-2026-68329, CVE-2026-68330, CVE-2026-68331, CVE-2026-68332, CVE-2026-68333, CVE-2026-68334, CVE-2026-68335, CVE-2026-68336, CVE-2026-68337, CVE-2026-68338, CVE-2026-68339, CVE-2026-68340, CVE-2026-68341, CVE-2026-68342, CVE-2026-68343, CVE-2026-68345, CVE-2026-68346, CVE-2026-68347, CVE-2026-68348, CVE-2026-68349, CVE-2026-68350, CVE-2026-68351, CVE-2026-68352, CVE-2026-68353, CVE-2026-68354, CVE-2026-68355, CVE-2026-68356, CVE-2026-68357, CVE-2026-68358, CVE-2026-68359, CVE-2026-68360, CVE-2026-68361, CVE-2026-68362, CVE-2026-68363, CVE-2026-68364, CVE-2026-68365, CVE-2026-68366, CVE-2026-68367, CVE-2026-68368, CVE-2026-68369, CVE-2026-68370, CVE-2026-68371, CVE-2026-68372, CVE-2026-68373, CVE-2026-68374, CVE-2026-68375, CVE-2026-68376, CVE-2026-68377, CVE-2026-68378, CVE-2026-68379, CVE-2026-68380, CVE-2026-68381, CVE-2026-68382, CVE-2026-68383, CVE-2026-68384, CVE-2026-68385, CVE-2026-68386, CVE-2026-68387, CVE-2026-68388, CVE-2026-68389, CVE-2026-68390, CVE-2026-68391, CVE-2026-68392, CVE-2026-68393, CVE-2026-68394, CVE-2026-68395, CVE-2026-68396, CVE-2026-68397, CVE-2026-68398, CVE-2026-68399, CVE-2026-68400, CVE-2026-68401, CVE-2026-68402, CVE-2026-68403, CVE-2026-68404, CVE-2026-68405, CVE-2026-68406, CVE-2026-68407, CVE-2026-68408, CVE-2026-68409, CVE-2026-68410, CVE-2026-68411, CVE-2026-68412, CVE-2026-68413, CVE-2026-68414, CVE-2026-68415, CVE-2026-68416, CVE-2026-68417, CVE-2026-68418, CVE-2026-68419, CVE-2026-68420, CVE-2026-68421, CVE-2026-68422, CVE-2026-68425, CVE-2026-68426, CVE-2026-68427, CVE-2026-68428, CVE-2026-68429, CVE-2026-68430, CVE-2026-68431, CVE-2026-68432, CVE-2026-68433, CVE-2026-68434, CVE-2026-68436, CVE-2026-68437, CVE-2026-68439, CVE-2026-68440, CVE-2026-68441, CVE-2026-68442, CVE-2026-68443, CVE-2026-68444, CVE-2026-68445, CVE-2026-68446, CVE-2026-68447, CVE-2026-68448, CVE-2026-68449, CVE-2026-68450, CVE-2026-68454, CVE-2026-68455, CVE-2026-68456, CVE-2026-68457, CVE-2026-68458, CVE-2026-68463, CVE-2026-68464, CVE-2026-68465, CVE-2026-68466, CVE-2026-68467, CVE-2026-68469, CVE-2026-68470, CVE-2026-68471, CVE-2026-68472, CVE-2026-68473, CVE-2026-68474, CVE-2026-68475, CVE-2026-68476, CVE-2026-68477, CVE-2026-68478, CVE-2026-68479, CVE-2026-68480, CVE-2026-72003, CVE-2026-72004, CVE-2026-72005, CVE-2026-72006, CVE-2026-72007, CVE-2026-72008, CVE-2026-72009, CVE-2026-72010, CVE-2026-72011, CVE-2026-72012, CVE-2026-72013, CVE-2026-72014, CVE-2026-72015, CVE-2026-72016, CVE-2026-72017, CVE-2026-72018, CVE-2026-72019, CVE-2026-72020, CVE-2026-72021, CVE-2026-72022, CVE-2026-72023, CVE-2026-72024, CVE-2026-72025, CVE-2026-72026, CVE-2026-72027, CVE-2026-72028, CVE-2026-72029, CVE-2026-72030, CVE-2026-72031, CVE-2026-72032, CVE-2026-72033, CVE-2026-72034, CVE-2026-72035, CVE-2026-72036, CVE-2026-72037, CVE-2026-72038, CVE-2026-72039, CVE-2026-72040, CVE-2026-72041, CVE-2026-72042, CVE-2026-72045, CVE-2026-72046, CVE-2026-72047, CVE-2026-72048, CVE-2026-72049, CVE-2026-72050, CVE-2026-72051, CVE-2026-72052, CVE-2026-72053, CVE-2026-72054, CVE-2026-72055, CVE-2026-72056, CVE-2026-72057, CVE-2026-72058, CVE-2026-72059, CVE-2026-72060, CVE-2026-72061, CVE-2026-72062, CVE-2026-72063, CVE-2026-72064, CVE-2026-72065, CVE-2026-72066, CVE-2026-72067, CVE-2026-72068, CVE-2026-72069, CVE-2026-72070, CVE-2026-72071, CVE-2026-72072, CVE-2026-72073, CVE-2026-72074, CVE-2026-72075, CVE-2026-72076, CVE-2026-72077, CVE-2026-72078, CVE-2026-72079, CVE-2026-72080, CVE-2026-72081, CVE-2026-72082, CVE-2026-72083, CVE-2026-72084, CVE-2026-72085, CVE-2026-72086, CVE-2026-72087, CVE-2026-72088, CVE-2026-72089, CVE-2026-72090, CVE-2026-72091, CVE-2026-72092, CVE-2026-72093, CVE-2026-72095, CVE-2026-72096, CVE-2026-72097, CVE-2026-72098, CVE-2026-72099, CVE-2026-72100, CVE-2026-72101, CVE-2026-72102, CVE-2026-72103, CVE-2026-72104, CVE-2026-72105, CVE-2026-72106, CVE-2026-72107, CVE-2026-72108, CVE-2026-72109, CVE-2026-72110, CVE-2026-72111, CVE-2026-72113, CVE-2026-72114, CVE-2026-72115, CVE-2026-72116, CVE-2026-72117, CVE-2026-72118, CVE-2026-72119, CVE-2026-72120, CVE-2026-72121, CVE-2026-72122, CVE-2026-72123, CVE-2026-72124, CVE-2026-72125, CVE-2026-72126, CVE-2026-72127, CVE-2026-72128, CVE-2026-72129, CVE-2026-72130, CVE-2026-72131, CVE-2026-72132, CVE-2026-72133, CVE-2026-72134, CVE-2026-72135, CVE-2026-72136, CVE-2026-72137, CVE-2026-72138, CVE-2026-72139, CVE-2026-72140, CVE-2026-72141, CVE-2026-72142, CVE-2026-72143, CVE-2026-72144, CVE-2026-72146, CVE-2026-72147, CVE-2026-72148, CVE-2026-72149, CVE-2026-72150, CVE-2026-72151, CVE-2026-72152, CVE-2026-72153, CVE-2026-72154, CVE-2026-72155, CVE-2026-72156, CVE-2026-72157, CVE-2026-72158, CVE-2026-72159, CVE-2026-72160, CVE-2026-72161, CVE-2026-72162, CVE-2026-72163, CVE-2026-72164, CVE-2026-72165, CVE-2026-72166, CVE-2026-72167, CVE-2026-72168, CVE-2026-72169, CVE-2026-72170, CVE-2026-72171, CVE-2026-72172, CVE-2026-72173, CVE-2026-72174, CVE-2026-72175, CVE-2026-72176, CVE-2026-72177, CVE-2026-72178, CVE-2026-72179, CVE-2026-72180, CVE-2026-72181, CVE-2026-72182, CVE-2026-72183, CVE-2026-72191, CVE-2026-72192, CVE-2026-72193, CVE-2026-72194, CVE-2026-72195, CVE-2026-72196, CVE-2026-72197, CVE-2026-72212, CVE-2026-72213, CVE-2026-72214, CVE-2026-72215, CVE-2026-72216, CVE-2026-72217, CVE-2026-72218, CVE-2026-72219, CVE-2026-72220, CVE-2026-72221, CVE-2026-72222, CVE-2026-72223, CVE-2026-72224, CVE-2026-72225, CVE-2026-72226, CVE-2026-72227, CVE-2026-72228, CVE-2026-72229, CVE-2026-72230, CVE-2026-72231, CVE-2026-72232, CVE-2026-72233, CVE-2026-72234, CVE-2026-72235, CVE-2026-72236, CVE-2026-72237, CVE-2026-72238, CVE-2026-72240, CVE-2026-72241, CVE-2026-72242, CVE-2026-72243, CVE-2026-72244, CVE-2026-72245, CVE-2026-72247, CVE-2026-72248, CVE-2026-72249, CVE-2026-72250, CVE-2026-72251, CVE-2026-72252, CVE-2026-72253, CVE-2026-72254, CVE-2026-72255, CVE-2026-72256, CVE-2026-72257, CVE-2026-72258, CVE-2026-72259, CVE-2026-72260, CVE-2026-72261, CVE-2026-72262, CVE-2026-72263, CVE-2026-72264, CVE-2026-72265, CVE-2026-72266, CVE-2026-72267, CVE-2026-72268, CVE-2026-72269, CVE-2026-72270, CVE-2026-72271, CVE-2026-72272, CVE-2026-72273, CVE-2026-72274, CVE-2026-72275, CVE-2026-72276, CVE-2026-72277, CVE-2026-72278, CVE-2026-72279, CVE-2026-72280, CVE-2026-72282, CVE-2026-72283, CVE-2026-72284, CVE-2026-72285, CVE-2026-72286, CVE-2026-72287, CVE-2026-72288, CVE-2026-72289, CVE-2026-72290, CVE-2026-72292, CVE-2026-72293, CVE-2026-72296, CVE-2026-72297, CVE-2026-72298, CVE-2026-72299, CVE-2026-72300, CVE-2026-72301, CVE-2026-72302, CVE-2026-72303, CVE-2026-72304, CVE-2026-72305, CVE-2026-72306, CVE-2026-72307, CVE-2026-72308, CVE-2026-72310, CVE-2026-72312, CVE-2026-72313, CVE-2026-72314, CVE-2026-72315, CVE-2026-72316, CVE-2026-72317, CVE-2026-72318, CVE-2026-72319, CVE-2026-72320, CVE-2026-72321, CVE-2026-72322, CVE-2026-72323, CVE-2026-72324, CVE-2026-72325, CVE-2026-72326, CVE-2026-72327, CVE-2026-72328, CVE-2026-72329, CVE-2026-72330, CVE-2026-72331, CVE-2026-72332, CVE-2026-72333, CVE-2026-72334, CVE-2026-72335, CVE-2026-72336, CVE-2026-72337, CVE-2026-72338, CVE-2026-72339, CVE-2026-72340, CVE-2026-72341, CVE-2026-72342, CVE-2026-72343, CVE-2026-72345, CVE-2026-72347, CVE-2026-72348, CVE-2026-72349, CVE-2026-72350, CVE-2026-72351, CVE-2026-72352, CVE-2026-72355, CVE-2026-72356, CVE-2026-72357, CVE-2026-72360, CVE-2026-72361, CVE-2026-72362, CVE-2026-72363, CVE-2026-72364, CVE-2026-72365, CVE-2026-72366, CVE-2026-72367, CVE-2026-72368, CVE-2026-72369, CVE-2026-72370, CVE-2026-72371, CVE-2026-72372, CVE-2026-72373, CVE-2026-72374, CVE-2026-72375, CVE-2026-72376, CVE-2026-72377, CVE-2026-72378, CVE-2026-72379, CVE-2026-72380, CVE-2026-72381, CVE-2026-72382, CVE-2026-72383, CVE-2026-72384, CVE-2026-72385, CVE-2026-72386, CVE-2026-72387, CVE-2026-72388, CVE-2026-72389, CVE-2026-72390, CVE-2026-72391, CVE-2026-72392, CVE-2026-72393, CVE-2026-72394, CVE-2026-72395, CVE-2026-72396, CVE-2026-72397, CVE-2026-72398, CVE-2026-72399, CVE-2026-72400, CVE-2026-72401, CVE-2026-72402, CVE-2026-72403, CVE-2026-72405, CVE-2026-72406, CVE-2026-72407, CVE-2026-72408, CVE-2026-72409, CVE-2026-72410, CVE-2026-72412, CVE-2026-72413, CVE-2026-72414, CVE-2026-72415, CVE-2026-72416, CVE-2026-72417, CVE-2026-72418, CVE-2026-72419, CVE-2026-72420, CVE-2026-72421, CVE-2026-72422, CVE-2026-72423, CVE-2026-72424, CVE-2026-72425, CVE-2026-72427, CVE-2026-72428, CVE-2026-72429, CVE-2026-72430, CVE-2026-72431, CVE-2026-72433, CVE-2026-72434, CVE-2026-72435, CVE-2026-72436, CVE-2026-72437, CVE-2026-72438, CVE-2026-72439, CVE-2026-72440, CVE-2026-72441, CVE-2026-72442, CVE-2026-72443, CVE-2026-72444, CVE-2026-72445, CVE-2026-72446, CVE-2026-72447, CVE-2026-72448, CVE-2026-72449, CVE-2026-72450, CVE-2026-72451, CVE-2026-72452, CVE-2026-72453, CVE-2026-72454, CVE-2026-72455, CVE-2026-72456, CVE-2026-72457, CVE-2026-72458, CVE-2026-72459, CVE-2026-72460, CVE-2026-72461, CVE-2026-72462, CVE-2026-72463, CVE-2026-72464, CVE-2026-72465, CVE-2026-72466, CVE-2026-72467, CVE-2026-72468, CVE-2026-72469, CVE-2026-72470, CVE-2026-72471, CVE-2026-72472, CVE-2026-72473, CVE-2026-72474, CVE-2026-72475, CVE-2026-72476, CVE-2026-72477, CVE-2026-72478, CVE-2026-72479, CVE-2026-72480, CVE-2026-72481, CVE-2026-72482, CVE-2026-72483, CVE-2026-72484, CVE-2026-72485, CVE-2026-72486, CVE-2026-72487, CVE-2026-72488, CVE-2026-72489, CVE-2026-72491, CVE-2026-72492, CVE-2026-72493, CVE-2026-72494, CVE-2026-72495, CVE-2026-72496, CVE-2026-72498, CVE-2026-72499, CVE-2026-72500, CVE-2026-72501, CVE-2026-72502, CVE-2026-74255, CVE-2026-74256, CVE-2026-74257, CVE-2026-74258, CVE-2026-74260, CVE-2026-74261, CVE-2026-74262, CVE-2026-74263, CVE-2026-74264, CVE-2026-74265, CVE-2026-74266, CVE-2026-74267, CVE-2026-74268, CVE-2026-74269, CVE-2026-74270, CVE-2026-74271, CVE-2026-74272, CVE-2026-74273, CVE-2026-74274, CVE-2026-74276, CVE-2026-74277, CVE-2026-74278, CVE-2026-74279, CVE-2026-74280, CVE-2026-74281, CVE-2026-74282, CVE-2026-74283, CVE-2026-74284, CVE-2026-74286, CVE-2026-74287, CVE-2026-74288, CVE-2026-74289, CVE-2026-74290, CVE-2026-74291, CVE-2026-74292, CVE-2026-74293, CVE-2026-74294, CVE-2026-74295, CVE-2026-74296, CVE-2026-74297, CVE-2026-74300, CVE-2026-74301, CVE-2026-74302, CVE-2026-74303, CVE-2026-74304, CVE-2026-74305, CVE-2026-74306, CVE-2026-74307, CVE-2026-74308, CVE-2026-74309, CVE-2026-74310, CVE-2026-74311, CVE-2026-74312, CVE-2026-74313, CVE-2026-74314, CVE-2026-74316, CVE-2026-74317, CVE-2026-74318, CVE-2026-74320, CVE-2026-74321, CVE-2026-74322, CVE-2026-74323, CVE-2026-74324, CVE-2026-74325, CVE-2026-74327, CVE-2026-74328, CVE-2026-74329, CVE-2026-74330, CVE-2026-74331, CVE-2026-74332, CVE-2026-74333, CVE-2026-74334, CVE-2026-74335, CVE-2026-74336, CVE-2026-74337, CVE-2026-74338, CVE-2026-74339, CVE-2026-74340, CVE-2026-74341, CVE-2026-74344, CVE-2026-74345, CVE-2026-74346, CVE-2026-74347, CVE-2026-74348, CVE-2026-74349, CVE-2026-74350, CVE-2026-74351, CVE-2026-74352, CVE-2026-74353, CVE-2026-74354, CVE-2026-74355, CVE-2026-74356, CVE-2026-74358, CVE-2026-74359, CVE-2026-74360, CVE-2026-74361, CVE-2026-74362, CVE-2026-74363, CVE-2026-74364, CVE-2026-74365, CVE-2026-74366, CVE-2026-74367, CVE-2026-74368, CVE-2026-74370, CVE-2026-74371, CVE-2026-74372, CVE-2026-74373, CVE-2026-74374, CVE-2026-74375, CVE-2026-74376, CVE-2026-74377, CVE-2026-74378, CVE-2026-74379, CVE-2026-74380, CVE-2026-74381, CVE-2026-74382, CVE-2026-74383, CVE-2026-74384, CVE-2026-74385, CVE-2026-74386, CVE-2026-74387, CVE-2026-74388, CVE-2026-74389, CVE-2026-74390, CVE-2026-74391, CVE-2026-74392, CVE-2026-74393, CVE-2026-74394, CVE-2026-74395, CVE-2026-74396, CVE-2026-74397, CVE-2026-74398, CVE-2026-74399, CVE-2026-74400, CVE-2026-74401, CVE-2026-74402, CVE-2026-74403, CVE-2026-74404, CVE-2026-74405, CVE-2026-74406, CVE-2026-74407, CVE-2026-74408, CVE-2026-74409, CVE-2026-74410, CVE-2026-74411, CVE-2026-74412, CVE-2026-74413, CVE-2026-74415, CVE-2026-74416, CVE-2026-74417, CVE-2026-74419, CVE-2026-74420, CVE-2026-74421, CVE-2026-74422, CVE-2026-74423, CVE-2026-74424, CVE-2026-74425, CVE-2026-74426, CVE-2026-74427, CVE-2026-74428, CVE-2026-74429, CVE-2026-74430, CVE-2026-74431, CVE-2026-74432, CVE-2026-74433, CVE-2026-74434, CVE-2026-74435, CVE-2026-74436, CVE-2026-74437, CVE-2026-74438, CVE-2026-74439, CVE-2026-80592, CVE-2026-80593, CVE-2026-80594, CVE-2026-80595, CVE-2026-80596, CVE-2026-80597, CVE-2026-80598, CVE-2026-80599, CVE-2026-80600, CVE-2026-80601, CVE-2026-80602, CVE-2026-80603, CVE-2026-80604, CVE-2026-80605, CVE-2026-80606, CVE-2026-80607, CVE-2026-80609, CVE-2026-80610, CVE-2026-80611, CVE-2026-80612, CVE-2026-80613, CVE-2026-80614, CVE-2026-80615, CVE-2026-80616, CVE-2026-80617, CVE-2026-80618, CVE-2026-80619, CVE-2026-80620, CVE-2026-80621, CVE-2026-80622, CVE-2026-80623, CVE-2026-80624, CVE-2026-80625, CVE-2026-80626, CVE-2026-80627, CVE-2026-80628, CVE-2026-80629, CVE-2026-80630, CVE-2026-80631, CVE-2026-80634, CVE-2026-80635, CVE-2026-80636, CVE-2026-80637, CVE-2026-80638, CVE-2026-80639, CVE-2026-80640, CVE-2026-80641, CVE-2026-80642, CVE-2026-80643, CVE-2026-80644, CVE-2026-80645, CVE-2026-80646, CVE-2026-80647, CVE-2026-80648, CVE-2026-80649, CVE-2026-80650, CVE-2026-80651, CVE-2026-80652, CVE-2026-80653, CVE-2026-80654, CVE-2026-80655, CVE-2026-80657, CVE-2026-80658, CVE-2026-80659, CVE-2026-80660, CVE-2026-80661, CVE-2026-80662, CVE-2026-80663, CVE-2026-80664, CVE-2026-80665, CVE-2026-80666, CVE-2026-80667, CVE-2026-80668, CVE-2026-80669, CVE-2026-80670, CVE-2026-80671, CVE-2026-80675, CVE-2026-80676, CVE-2026-80677, CVE-2026-80865, CVE-2026-80866, CVE-2026-80867, CVE-2026-80868, CVE-2026-80870, CVE-2026-80871, CVE-2026-80872, CVE-2026-80873, CVE-2026-80874, CVE-2026-80875, CVE-2026-80876, CVE-2026-80877, CVE-2026-80878, CVE-2026-80879, CVE-2026-80880, CVE-2026-80881, CVE-2026-80882, CVE-2026-80883, CVE-2026-80884, CVE-2026-80885, CVE-2026-80886, CVE-2026-89774, CVE-2026-92502)

USN-8885-1: FluidSynth vulnerabilities

1 day 7 hours ago
It was discovered that FluidSynth did not properly validate the channel argument of the pitch_bend_range command. A remote attacker could possibly use this issue to cause FluidSynth to crash, resulting in a denial of service, or execute arbitrary code. (CVE-2026-58264) It was discovered that FluidSynth incorrectly handled configurations with more than 16 MIDI channels in its MIDI player, leading to a heap buffer overflow. An attacker could possibly use this issue to cause FluidSynth to crash, resulting in a denial of service, or execute arbitrary code. This issue only affected Ubuntu 22.04 LTS, Ubuntu 24.04 LTS, and Ubuntu 26.04 LTS. (CVE-2026-61714)

USN-8887-1: Linux kernel vulnerabilities

1 day 7 hours ago
It was discovered that some AMD processors did not properly perform Reverse Map Table (RMP) checks when the IOMMU accessed certain host buffers. A local attacker with hypervisor access could possibly use this to trigger an out-of-bounds condition and compromise the integrity of SEV-SNP guest memory. (CVE-2023-20585) Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - ARM64 architecture; - NVDIMM (Non-Volatile Memory Device) drivers; - Handshake API; - ARM32 architecture; - MIPS architecture; - OpenRISC architecture; - PowerPC architecture; - RISC-V architecture; - S390 architecture; - x86 architecture; - Cryptographic API; - Compute Acceleration Framework; - Intel NPU Driver; - ACPI drivers; - Android drivers; - Serial ATA and Parallel ATA drivers; - Drivers core; - Rados block device (RBD) driver; - Ublk userspace block driver; - Bluetooth drivers; - Cdrom driver; - Character device driver; - TPM device driver; - Data acquisition framework and drivers; - Hardware crypto device drivers; - CXL (Compute Express Link) drivers; - DAX dirext access to differentiated memory framework; - DIBS (Direct Internal Buffer Sharing) drivers; - Buffer Sharing and Synchronization framework; - DMA engine subsystem; - DPLL subsystem; - EDAC drivers; - FireWire subsystem; - Arm Firmware Framework for ARMv8-A(FFA); - ARM SCMI message protocol; - Intel Stratix 10 firmware drivers; - FPGA Framework; - GPIB drivers; - GPIO subsystem; - GPU drivers; - HID subsystem; - Microsoft Hyper-V drivers; - Hardware monitoring drivers; - CoreSight HW tracing drivers; - Intel Trace Hub HW tracing drivers; - I2C subsystem; - I3C subsystem; - IIO subsystem; - IIO ADC drivers; - IIO Magnetometer sensors drivers; - InfiniBand drivers; - Input Device (Miscellaneous) drivers; - IOMMU subsystem; - IRQ chip drivers; - LED subsystem; - Mailbox framework; - Multiple devices driver; - Media drivers; - MemoryStick subsystem; - Multifunction device drivers; - Intel Management Engine Interface driver; - Amazon Nitro Secure Module driver; - MMC subsystem; - MTD block device drivers; - Network drivers; - Ethernet bonding driver; - Mellanox network drivers; - Microsoft Azure Network Adapter (MANA) driver; - Texas Instruments network drivers; - MediaTek network drivers; - NTB driver; - NVME drivers; - Device tree and open firmware driver; - Operating Performance Points (OPP) driver; - PCI subsystem; - Pin controllers subsystem; - x86 platform drivers; - i.MX PM domains; - MediaTek PM domains; - Power supply drivers; - PTP clock framework; - RapidIO drivers; - Voltage and Current Regulator drivers; - Remote Processor subsystem; - MPAM driver; - Reset controller framework; - Real Time Clock drivers; - S/390 drivers; - SCSI subsystem; - Xilinx SoC drivers; - SoundWire subsystem; - SPI subsystem; - Media staging drivers; - Media Oriented Systems Transport (MOST) driver; - NVIDIA Tegra embedded controller (NVEC) staging driver; - Realtek RTL8723BS SDIO drivers; - TTY drivers; - UFS subsystem; - USB DSL drivers; - USB core drivers; - DesignWare USB3 driver; - USB Gadget drivers; - USB Host Controller drivers; - USB Dual Role (OTG-ready) Controller drivers; - USB Serial drivers; - vDPA drivers; - VFIO drivers; - Virtio Host (VHOST) subsystem; - Framebuffer layer; - Virtio drivers; - Watchdog drivers; - Xen hypervisor drivers; - 9P distributed file system; - AFS file system; - File systems infrastructure; - BTRFS file system; - Ceph distributed file system; - Ext4 file system; - F2FS file system; - FUSE (File system in Userspace); - Journaling layer for block devices (JBD2); - Network file systems library; - Network file system (NFS) client; - Network file system (NFS) server daemon; - NTFS3 file system; - OCFS2 file system; - Overlay file system; - Proc file system; - SMB network file system; - BPF subsystem; - File system encryption (fscrypt); - MAC80211 subsystem; - Live Update Orchestrator (LUO); - Mellanox drivers; - Networking core; - Memory Management; - Media input infrastructure; - IPv6 networking; - Bluetooth subsystem; - Wireless networking; - IPv4 networking; - Netfilter; - Network traffic control; - SCTP protocol; - TCP network protocol; - XFRM subsystem; - RDMA verbs API; - User-space API (UAPI); - Audit subsystem; - Control group (cgroup); - Kernel CPU control infrastructure; - Kernel exit() syscall; - Kernel fork() syscall; - Kexec HandOver (KHO); - Scheduler infrastructure; - Signal handling mechanism; - Timer subsystem; - Tracing infrastructure; - Codetag library; - Resizable hashtable library; - Memory management; - 9P file system network protocol; - Asynchronous Transfer Mode (ATM) subsystem; - B.A.T.M.A.N. meshing protocol; - Ethernet bridge; - CAN network layer; - Ceph Core library; - HSR network protocol; - IEEE802154.4 network protocol; - IUCV driver; - KCM (Kernel Connection Multiplexor) sockets driver; - Logical Link layer; - IEEE 802.15.4 subsystem; - MultiProtocol Label Switching driver; - Multipath TCP; - Open vSwitch; - Packet sockets; - Phonet protocol; - Packet sampling (psample); - Qualcomm IPC Router (QRTR); - RDS protocol; - RxRPC session sockets; - Sun RPC protocol; - TIPC protocol; - TLS protocol; - X.25 network layer; - AppArmor security module; - Integrity Measurement Architecture(IMA) framework; - Landlock security; - SELinux security module; - ALSA framework; - HD-audio driver; - AMD SoC Alsa drivers; - Texas InstrumentS Audio (ASoC/HDA) drivers; - SoC Audio for Freescale CPUs drivers; - MediaTek ASoC drivers; - Amlogic Meson SoC drivers; - QCOM ASoC drivers; - SoundWire (SDCA) ASoC drivers; - SoC audio core drivers; - SOF drivers; - NVIDIA Tegra ASoC drivers; - USB sound devices; - Perf tools; - KVM subsystem; (CVE-2026-64349, CVE-2026-64532, CVE-2026-64533, CVE-2026-64537, CVE-2026-64538, CVE-2026-64539, CVE-2026-64540, CVE-2026-64542, CVE-2026-64543, CVE-2026-64544, CVE-2026-64545, CVE-2026-64546, CVE-2026-64547, CVE-2026-64548, CVE-2026-64549, CVE-2026-64550, CVE-2026-64552, CVE-2026-64553, CVE-2026-64554, CVE-2026-64555, CVE-2026-64557, CVE-2026-64558, CVE-2026-64559, CVE-2026-64560, CVE-2026-64561, CVE-2026-64562, CVE-2026-64563, CVE-2026-64564, CVE-2026-64565, CVE-2026-64566, CVE-2026-64567, CVE-2026-64568, CVE-2026-64569, CVE-2026-64570, CVE-2026-64571, CVE-2026-64572, CVE-2026-64573, CVE-2026-64574, CVE-2026-64575, CVE-2026-64576, CVE-2026-64577, CVE-2026-64578, CVE-2026-64579, CVE-2026-64580, CVE-2026-64581, CVE-2026-64582, CVE-2026-64583, CVE-2026-64584, CVE-2026-64585, CVE-2026-64586, CVE-2026-68081, CVE-2026-68082, CVE-2026-68093, CVE-2026-68095, CVE-2026-68096, CVE-2026-68097, CVE-2026-68098, CVE-2026-68099, CVE-2026-68100, CVE-2026-68104, CVE-2026-68105, CVE-2026-68106, CVE-2026-68107, CVE-2026-68108, CVE-2026-68109, CVE-2026-68110, CVE-2026-68111, CVE-2026-68112, CVE-2026-68113, CVE-2026-68114, CVE-2026-68115, CVE-2026-68116, CVE-2026-68117, CVE-2026-68118, CVE-2026-68119, CVE-2026-68120, CVE-2026-68121, CVE-2026-68122, CVE-2026-68123, CVE-2026-68124, CVE-2026-68125, CVE-2026-68126, CVE-2026-68127, CVE-2026-68128, CVE-2026-68129, CVE-2026-68130, CVE-2026-68131, CVE-2026-68132, CVE-2026-68133, CVE-2026-68134, CVE-2026-68135, CVE-2026-68136, CVE-2026-68137, CVE-2026-68138, CVE-2026-68139, CVE-2026-68140, CVE-2026-68141, CVE-2026-68142, CVE-2026-68143, CVE-2026-68144, CVE-2026-68145, CVE-2026-68146, CVE-2026-68147, CVE-2026-68148, CVE-2026-68149, CVE-2026-68150, CVE-2026-68151, CVE-2026-68152, CVE-2026-68153, CVE-2026-68154, CVE-2026-68155, CVE-2026-68156, CVE-2026-68157, CVE-2026-68158, CVE-2026-68159, CVE-2026-68160, CVE-2026-68161, CVE-2026-68162, CVE-2026-68163, CVE-2026-68164, CVE-2026-68165, CVE-2026-68166, CVE-2026-68168, CVE-2026-68169, CVE-2026-68170, CVE-2026-68172, CVE-2026-68173, CVE-2026-68174, CVE-2026-68175, CVE-2026-68176, CVE-2026-68177, CVE-2026-68178, CVE-2026-68179, CVE-2026-68180, CVE-2026-68181, CVE-2026-68182, CVE-2026-68183, CVE-2026-68184, CVE-2026-68186, CVE-2026-68187, CVE-2026-68188, CVE-2026-68189, CVE-2026-68190, CVE-2026-68191, CVE-2026-68192, CVE-2026-68193, CVE-2026-68194, CVE-2026-68195, CVE-2026-68196, CVE-2026-68197, CVE-2026-68198, CVE-2026-68199, CVE-2026-68200, CVE-2026-68201, CVE-2026-68202, CVE-2026-68203, CVE-2026-68204, CVE-2026-68205, CVE-2026-68206, CVE-2026-68207, CVE-2026-68208, CVE-2026-68209, CVE-2026-68210, CVE-2026-68211, CVE-2026-68212, CVE-2026-68213, CVE-2026-68214, CVE-2026-68215, CVE-2026-68216, CVE-2026-68217, CVE-2026-68218, CVE-2026-68219, CVE-2026-68220, CVE-2026-68221, CVE-2026-68222, CVE-2026-68223, CVE-2026-68224, CVE-2026-68225, CVE-2026-68226, CVE-2026-68227, CVE-2026-68228, CVE-2026-68229, CVE-2026-68230, CVE-2026-68231, CVE-2026-68232, CVE-2026-68233, CVE-2026-68234, CVE-2026-68235, CVE-2026-68236, CVE-2026-68237, CVE-2026-68238, CVE-2026-68239, CVE-2026-68240, CVE-2026-68241, CVE-2026-68242, CVE-2026-68243, CVE-2026-68244, CVE-2026-68245, CVE-2026-68246, CVE-2026-68247, CVE-2026-68248, CVE-2026-68249, CVE-2026-68250, CVE-2026-68251, CVE-2026-68252, CVE-2026-68253, CVE-2026-68254, CVE-2026-68255, CVE-2026-68256, CVE-2026-68257, CVE-2026-68258, CVE-2026-68259, CVE-2026-68260, CVE-2026-68261, CVE-2026-68262, CVE-2026-68263, CVE-2026-68264, CVE-2026-68265, CVE-2026-68266, CVE-2026-68267, CVE-2026-68268, CVE-2026-68269, CVE-2026-68270, CVE-2026-68271, CVE-2026-68272, CVE-2026-68273, CVE-2026-68274, CVE-2026-68275, CVE-2026-68276, CVE-2026-68277, CVE-2026-68278, CVE-2026-68279, CVE-2026-68280, CVE-2026-68281, CVE-2026-68282, CVE-2026-68283, CVE-2026-68284, CVE-2026-68286, CVE-2026-68287, CVE-2026-68288, CVE-2026-68289, CVE-2026-68290, CVE-2026-68291, CVE-2026-68292, CVE-2026-68293, CVE-2026-68294, CVE-2026-68296, CVE-2026-68297, CVE-2026-68298, CVE-2026-68299, CVE-2026-68300, CVE-2026-68301, CVE-2026-68302, CVE-2026-68303, CVE-2026-68304, CVE-2026-68306, CVE-2026-68307, CVE-2026-68308, CVE-2026-68309, CVE-2026-68310, CVE-2026-68311, CVE-2026-68312, CVE-2026-68313, CVE-2026-68314, CVE-2026-68315, CVE-2026-68316, CVE-2026-68317, CVE-2026-68318, CVE-2026-68319, CVE-2026-68320, CVE-2026-68321, CVE-2026-68322, CVE-2026-68323, CVE-2026-68324, CVE-2026-68325, CVE-2026-68326, CVE-2026-68327, CVE-2026-68328, CVE-2026-68329, CVE-2026-68330, CVE-2026-68331, CVE-2026-68332, CVE-2026-68333, CVE-2026-68334, CVE-2026-68335, CVE-2026-68336, CVE-2026-68337, CVE-2026-68338, CVE-2026-68339, CVE-2026-68340, CVE-2026-68341, CVE-2026-68342, CVE-2026-68343, CVE-2026-68345, CVE-2026-68346, CVE-2026-68347, CVE-2026-68348, CVE-2026-68349, CVE-2026-68350, CVE-2026-68351, CVE-2026-68352, CVE-2026-68353, CVE-2026-68354, CVE-2026-68355, CVE-2026-68356, CVE-2026-68357, CVE-2026-68358, CVE-2026-68359, CVE-2026-68360, CVE-2026-68361, CVE-2026-68362, CVE-2026-68363, CVE-2026-68364, CVE-2026-68365, CVE-2026-68366, CVE-2026-68367, CVE-2026-68368, CVE-2026-68369, CVE-2026-68370, CVE-2026-68371, CVE-2026-68372, CVE-2026-68373, CVE-2026-68374, CVE-2026-68375, CVE-2026-68376, CVE-2026-68377, CVE-2026-68378, CVE-2026-68379, CVE-2026-68380, CVE-2026-68381, CVE-2026-68382, CVE-2026-68383, CVE-2026-68384, CVE-2026-68385, CVE-2026-68386, CVE-2026-68387, CVE-2026-68388, CVE-2026-68389, CVE-2026-68390, CVE-2026-68391, CVE-2026-68392, CVE-2026-68393, CVE-2026-68394, CVE-2026-68395, CVE-2026-68396, CVE-2026-68397, CVE-2026-68398, CVE-2026-68399, CVE-2026-68400, CVE-2026-68401, CVE-2026-68402, CVE-2026-68403, CVE-2026-68404, CVE-2026-68405, CVE-2026-68406, CVE-2026-68407, CVE-2026-68408, CVE-2026-68409, CVE-2026-68410, CVE-2026-68411, CVE-2026-68412, CVE-2026-68413, CVE-2026-68414, CVE-2026-68415, CVE-2026-68416, CVE-2026-68417, CVE-2026-68418, CVE-2026-68419, CVE-2026-68420, CVE-2026-68421, CVE-2026-68422, CVE-2026-68425, CVE-2026-68426, CVE-2026-68427, CVE-2026-68428, CVE-2026-68429, CVE-2026-68430, CVE-2026-68431, CVE-2026-68432, CVE-2026-68433, CVE-2026-68434, CVE-2026-68436, CVE-2026-68437, CVE-2026-68439, CVE-2026-68440, CVE-2026-68441, CVE-2026-68442, CVE-2026-68443, CVE-2026-68444, CVE-2026-68445, CVE-2026-68446, CVE-2026-68447, CVE-2026-68448, CVE-2026-68449, CVE-2026-68450, CVE-2026-68454, CVE-2026-68455, CVE-2026-68456, CVE-2026-68458, CVE-2026-68463, CVE-2026-68464, CVE-2026-68465, CVE-2026-68466, CVE-2026-68467, CVE-2026-68469, CVE-2026-68470, CVE-2026-68471, CVE-2026-68472, CVE-2026-68473, CVE-2026-68474, CVE-2026-68475, CVE-2026-68478, CVE-2026-68479, CVE-2026-68480, CVE-2026-72003, CVE-2026-72004, CVE-2026-72005, CVE-2026-72006, CVE-2026-72007, CVE-2026-72008, CVE-2026-72009, CVE-2026-72010, CVE-2026-72011, CVE-2026-72012, CVE-2026-72013, CVE-2026-72015, CVE-2026-72016, CVE-2026-72017, CVE-2026-72018, CVE-2026-72019, CVE-2026-72021, CVE-2026-72022, CVE-2026-72023, CVE-2026-72024, CVE-2026-72025, CVE-2026-72026, CVE-2026-72027, CVE-2026-72028, CVE-2026-72029, CVE-2026-72030, CVE-2026-72031, CVE-2026-72032, CVE-2026-72034, CVE-2026-72035, CVE-2026-72036, CVE-2026-72037, CVE-2026-72038, CVE-2026-72039, CVE-2026-72040, CVE-2026-72042, CVE-2026-72045, CVE-2026-72047, CVE-2026-72048, CVE-2026-72049, CVE-2026-72050, CVE-2026-72051, CVE-2026-72052, CVE-2026-72053, CVE-2026-72054, CVE-2026-72055, CVE-2026-72056, CVE-2026-72057, CVE-2026-72058, CVE-2026-72059, CVE-2026-72060, CVE-2026-72061, CVE-2026-72062, CVE-2026-72063, CVE-2026-72066, CVE-2026-72067, CVE-2026-72068, CVE-2026-72070, CVE-2026-72071, CVE-2026-72072, CVE-2026-72073, CVE-2026-72074, CVE-2026-72075, CVE-2026-72076, CVE-2026-72077, CVE-2026-72078, CVE-2026-72079, CVE-2026-72080, CVE-2026-72081, CVE-2026-72082, CVE-2026-72086, CVE-2026-72087, CVE-2026-72088, CVE-2026-72089, CVE-2026-72090, CVE-2026-72091, CVE-2026-72092, CVE-2026-72093, CVE-2026-72095, CVE-2026-72096, CVE-2026-72097, CVE-2026-72099, CVE-2026-72100, CVE-2026-72101, CVE-2026-72102, CVE-2026-72103, CVE-2026-72104, CVE-2026-72105, CVE-2026-72106, CVE-2026-72107, CVE-2026-72108, CVE-2026-72109, CVE-2026-72110, CVE-2026-72111, CVE-2026-72113, CVE-2026-72114, CVE-2026-72115, CVE-2026-72116, CVE-2026-72117, CVE-2026-72118, CVE-2026-72119, CVE-2026-72120, CVE-2026-72121, CVE-2026-72122, CVE-2026-72123, CVE-2026-72124, CVE-2026-72125, CVE-2026-72126, CVE-2026-72127, CVE-2026-72128, CVE-2026-72131, CVE-2026-72132, CVE-2026-72133, CVE-2026-72134, CVE-2026-72135, CVE-2026-72136, CVE-2026-72138, CVE-2026-72140, CVE-2026-72141, CVE-2026-72142, CVE-2026-72143, CVE-2026-72144, CVE-2026-72146, CVE-2026-72147, CVE-2026-72148, CVE-2026-72149, CVE-2026-72150, CVE-2026-72151, CVE-2026-72152, CVE-2026-72153, CVE-2026-72154, CVE-2026-72155, CVE-2026-72156, CVE-2026-72157, CVE-2026-72158, CVE-2026-72159, CVE-2026-72160, CVE-2026-72161, CVE-2026-72162, CVE-2026-72163, CVE-2026-72164, CVE-2026-72165, CVE-2026-72166, CVE-2026-72167, CVE-2026-72168, CVE-2026-72169, CVE-2026-72170, CVE-2026-72171, CVE-2026-72172, CVE-2026-72173, CVE-2026-72174, CVE-2026-72175, CVE-2026-72176, CVE-2026-72177, CVE-2026-72178, CVE-2026-72179, CVE-2026-72180, CVE-2026-72181, CVE-2026-72182, CVE-2026-72183, CVE-2026-72193, CVE-2026-72195, CVE-2026-72196, CVE-2026-72197, CVE-2026-72212, CVE-2026-72213, CVE-2026-72214, CVE-2026-72215, CVE-2026-72216, CVE-2026-72218, CVE-2026-72219, CVE-2026-72223, CVE-2026-72224, CVE-2026-72225, CVE-2026-72227, CVE-2026-72228, CVE-2026-72229, CVE-2026-72230, CVE-2026-72231, CVE-2026-72232, CVE-2026-72233, CVE-2026-72235, CVE-2026-72236, CVE-2026-72237, CVE-2026-72238, CVE-2026-72240, CVE-2026-72241, CVE-2026-72242, CVE-2026-72243, CVE-2026-72244, CVE-2026-72245, CVE-2026-72247, CVE-2026-72250, CVE-2026-72252, CVE-2026-72253, CVE-2026-72254, CVE-2026-72255, CVE-2026-72256, CVE-2026-72257, CVE-2026-72258, CVE-2026-72259, CVE-2026-72260, CVE-2026-72261, CVE-2026-72262, CVE-2026-72263, CVE-2026-72264, CVE-2026-72265, CVE-2026-72266, CVE-2026-72267, CVE-2026-72268, CVE-2026-72269, CVE-2026-72270, CVE-2026-72271, CVE-2026-72272, CVE-2026-72273, CVE-2026-72274, CVE-2026-72275, CVE-2026-72276, CVE-2026-72280, CVE-2026-72282, CVE-2026-72283, CVE-2026-72284, CVE-2026-72285, CVE-2026-72286, CVE-2026-72290, CVE-2026-72292, CVE-2026-72293, CVE-2026-72297, CVE-2026-72298, CVE-2026-72300, CVE-2026-72301, CVE-2026-72302, CVE-2026-72303, CVE-2026-72304, CVE-2026-72305, CVE-2026-72306, CVE-2026-72307, CVE-2026-72308, CVE-2026-72310, CVE-2026-72312, CVE-2026-72313, CVE-2026-72314, CVE-2026-72315, CVE-2026-72316, CVE-2026-72321, CVE-2026-72324, CVE-2026-72325, CVE-2026-72326, CVE-2026-72327, CVE-2026-72328, CVE-2026-72330, CVE-2026-72331, CVE-2026-72332, CVE-2026-72333, CVE-2026-72334, CVE-2026-72335, CVE-2026-72336, CVE-2026-72337, CVE-2026-72338, CVE-2026-72340, CVE-2026-72341, CVE-2026-72342, CVE-2026-72343, CVE-2026-72345, CVE-2026-72347, CVE-2026-72349, CVE-2026-72350, CVE-2026-72352, CVE-2026-72356, CVE-2026-72357, CVE-2026-72360, CVE-2026-72361, CVE-2026-72362, CVE-2026-72363, CVE-2026-72364, CVE-2026-72365, CVE-2026-72367, CVE-2026-72368, CVE-2026-72369, CVE-2026-72370, CVE-2026-72371, CVE-2026-72372, CVE-2026-72373, CVE-2026-72374, CVE-2026-72375, CVE-2026-72376, CVE-2026-72377, CVE-2026-72378, CVE-2026-72379, CVE-2026-72380, CVE-2026-72382, CVE-2026-72383, CVE-2026-72384, CVE-2026-72385, CVE-2026-72386, CVE-2026-72387, CVE-2026-72388, CVE-2026-72389, CVE-2026-72390, CVE-2026-72391, CVE-2026-72392, CVE-2026-72394, CVE-2026-72395, CVE-2026-72396, CVE-2026-72397, CVE-2026-72400, CVE-2026-72401, CVE-2026-72402, CVE-2026-72403, CVE-2026-72405, CVE-2026-72406, CVE-2026-72407, CVE-2026-72408, CVE-2026-72409, CVE-2026-72410, CVE-2026-72413, CVE-2026-72414, CVE-2026-72415, CVE-2026-72416, CVE-2026-72418, CVE-2026-72419, CVE-2026-72420, CVE-2026-72421, CVE-2026-72423, CVE-2026-72424, CVE-2026-72425, CVE-2026-72427, CVE-2026-72428, CVE-2026-72430, CVE-2026-72431, CVE-2026-72433, CVE-2026-72434, CVE-2026-72435, CVE-2026-72437, CVE-2026-72438, CVE-2026-72439, CVE-2026-72440, CVE-2026-72441, CVE-2026-72443, CVE-2026-72444, CVE-2026-72445, CVE-2026-72446, CVE-2026-72447, CVE-2026-72448, CVE-2026-72449, CVE-2026-72450, CVE-2026-72452, CVE-2026-72453, CVE-2026-72454, CVE-2026-72455, CVE-2026-72456, CVE-2026-72457, CVE-2026-72458, CVE-2026-72459, CVE-2026-72460, CVE-2026-72461, CVE-2026-72462, CVE-2026-72464, CVE-2026-72465, CVE-2026-72467, CVE-2026-72468, CVE-2026-72469, CVE-2026-72470, CVE-2026-72471, CVE-2026-72474, CVE-2026-72475, CVE-2026-72476, CVE-2026-72478, CVE-2026-72479, CVE-2026-72480, CVE-2026-72481, CVE-2026-72482, CVE-2026-72483, CVE-2026-72484, CVE-2026-72485, CVE-2026-72486, CVE-2026-72487, CVE-2026-72488, CVE-2026-72489, CVE-2026-72492, CVE-2026-72498, CVE-2026-72499, CVE-2026-72500, CVE-2026-72502, CVE-2026-74256, CVE-2026-74257, CVE-2026-74258, CVE-2026-74260, CVE-2026-74261, CVE-2026-74262, CVE-2026-74263, CVE-2026-74264, CVE-2026-74265, CVE-2026-74266, CVE-2026-74270, CVE-2026-74271, CVE-2026-74272, CVE-2026-74273, CVE-2026-74274, CVE-2026-74276, CVE-2026-74277, CVE-2026-74278, CVE-2026-74279, CVE-2026-74280, CVE-2026-74281, CVE-2026-74282, CVE-2026-74283, CVE-2026-74284, CVE-2026-74286, CVE-2026-74288, CVE-2026-74289, CVE-2026-74290, CVE-2026-74291, CVE-2026-74292, CVE-2026-74293, CVE-2026-74294, CVE-2026-74295, CVE-2026-74296, CVE-2026-74297, CVE-2026-74300, CVE-2026-74301, CVE-2026-74302, CVE-2026-74303, CVE-2026-74304, CVE-2026-74305, CVE-2026-74306, CVE-2026-74307, CVE-2026-74308, CVE-2026-74309, CVE-2026-74311, CVE-2026-74312, CVE-2026-74313, CVE-2026-74314, CVE-2026-74316, CVE-2026-74317, CVE-2026-74318, CVE-2026-74320, CVE-2026-74321, CVE-2026-74322, CVE-2026-74323, CVE-2026-74324, CVE-2026-74325, CVE-2026-74327, CVE-2026-74328, CVE-2026-74329, CVE-2026-74330, CVE-2026-74331, CVE-2026-74332, CVE-2026-74333, CVE-2026-74334, CVE-2026-74335, CVE-2026-74336, CVE-2026-74337, CVE-2026-74338, CVE-2026-74339, CVE-2026-74340, CVE-2026-74341, CVE-2026-74344, CVE-2026-74346, CVE-2026-74347, CVE-2026-74348, CVE-2026-74349, CVE-2026-74351, CVE-2026-74352, CVE-2026-74353, CVE-2026-74354, CVE-2026-74355, CVE-2026-74356, CVE-2026-74358, CVE-2026-74359, CVE-2026-74360, CVE-2026-74362, CVE-2026-74363, CVE-2026-74364, CVE-2026-74365, CVE-2026-74366, CVE-2026-74367, CVE-2026-74368, CVE-2026-74370, CVE-2026-74371, CVE-2026-74372, CVE-2026-74373, CVE-2026-74374, CVE-2026-74375, CVE-2026-74377, CVE-2026-74378, CVE-2026-74379, CVE-2026-74380, CVE-2026-74381, CVE-2026-74382, CVE-2026-74383, CVE-2026-74385, CVE-2026-74386, CVE-2026-74387, CVE-2026-74388, CVE-2026-74389, CVE-2026-74390, CVE-2026-74391, CVE-2026-74392, CVE-2026-74393, CVE-2026-74395, CVE-2026-74396, CVE-2026-74397, CVE-2026-74399, CVE-2026-74400, CVE-2026-74402, CVE-2026-74403, CVE-2026-74404, CVE-2026-74405, CVE-2026-74407, CVE-2026-74408, CVE-2026-74409, CVE-2026-74410, CVE-2026-74411, CVE-2026-74412, CVE-2026-74413, CVE-2026-74415, CVE-2026-74416, CVE-2026-74417, CVE-2026-74419, CVE-2026-74420, CVE-2026-74421, CVE-2026-74422, CVE-2026-74423, CVE-2026-74424, CVE-2026-74425, CVE-2026-74426, CVE-2026-74429, CVE-2026-74430, CVE-2026-74431, CVE-2026-74432, CVE-2026-74435, CVE-2026-74437, CVE-2026-74438, CVE-2026-80592, CVE-2026-80593, CVE-2026-80594, CVE-2026-80595, CVE-2026-80596, CVE-2026-80597, CVE-2026-80598, CVE-2026-80599, CVE-2026-80600, CVE-2026-80601, CVE-2026-80602, CVE-2026-80603, CVE-2026-80604, CVE-2026-80605, CVE-2026-80606, CVE-2026-80607, CVE-2026-80609, CVE-2026-80610, CVE-2026-80611, CVE-2026-80612, CVE-2026-80613, CVE-2026-80614, CVE-2026-80615, CVE-2026-80616, CVE-2026-80617, CVE-2026-80618, CVE-2026-80619, CVE-2026-80620, CVE-2026-80621, CVE-2026-80622, CVE-2026-80623, CVE-2026-80624, CVE-2026-80625, CVE-2026-80626, CVE-2026-80627, CVE-2026-80628, CVE-2026-80629, CVE-2026-80630, CVE-2026-80631, CVE-2026-80634, CVE-2026-80635, CVE-2026-80636, CVE-2026-80637, CVE-2026-80638, CVE-2026-80639, CVE-2026-80640, CVE-2026-80641, CVE-2026-80642, CVE-2026-80643, CVE-2026-80644, CVE-2026-80645, CVE-2026-80646, CVE-2026-80647, CVE-2026-80648, CVE-2026-80649, CVE-2026-80650, CVE-2026-80651, CVE-2026-80652, CVE-2026-80653, CVE-2026-80654, CVE-2026-80655, CVE-2026-80657, CVE-2026-80658, CVE-2026-80659, CVE-2026-80660, CVE-2026-80661, CVE-2026-80662, CVE-2026-80663, CVE-2026-80664, CVE-2026-80666, CVE-2026-80667, CVE-2026-80668, CVE-2026-80669, CVE-2026-80670, CVE-2026-80671, CVE-2026-80675, CVE-2026-80676, CVE-2026-80677, CVE-2026-80865, CVE-2026-80866, CVE-2026-80867, CVE-2026-80868, CVE-2026-80870, CVE-2026-80871, CVE-2026-80872, CVE-2026-80873, CVE-2026-80874, CVE-2026-80875, CVE-2026-80876, CVE-2026-80877, CVE-2026-80878, CVE-2026-80879, CVE-2026-80880, CVE-2026-80881, CVE-2026-80882, CVE-2026-80883, CVE-2026-80884, CVE-2026-80885, CVE-2026-80886, CVE-2026-89774, CVE-2026-92502)

USN-8886-1: Linux kernel (NVIDIA Tegra) vulnerabilities

1 day 7 hours ago
Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - NVDIMM (Non-Volatile Memory Device) drivers; - Handshake API; - ARM32 architecture; - ARM64 architecture; - MIPS architecture; - OpenRISC architecture; - PowerPC architecture; - S390 architecture; - x86 architecture; - Block layer subsystem; - Cryptographic API; - Intel NPU Driver; - Android drivers; - Rados block device (RBD) driver; - Bluetooth drivers; - Hardware random number generator core; - TPM device driver; - CPU frequency scaling framework; - Hardware crypto device drivers; - DMA engine subsystem; - FireWire subsystem; - Arm Firmware Framework for ARMv8-A(FFA); - GPIO subsystem; - GPU drivers; - HID subsystem; - Hardware monitoring drivers; - CoreSight HW tracing drivers; - I2C subsystem; - IIO ADC drivers; - IIO subsystem; - InfiniBand drivers; - Input Device core drivers; - Input Device (Mouse) drivers; - IOMMU subsystem; - Multiple devices driver; - Media drivers; - Multifunction device drivers; - Fastrpc Driver; - Amazon Nitro Secure Module driver; - MMC subsystem; - MTD block device drivers; - Ethernet bonding driver; - Network drivers; - Mellanox network drivers; - Texas Instruments network drivers; - NTB driver; - NVME drivers; - NVMEM (Non Volatile Memory) drivers; - Parport drivers; - Pin controllers subsystem; - x86 platform drivers; - i.MX PM domains; - System reset/shutdown drivers; - PTP clock framework; - Voltage and Current Regulator drivers; - S/390 drivers; - SCSI subsystem; - SPI subsystem; - Realtek RTL8723BS SDIO drivers; - VME bus staging drivers; - Thermal drivers; - Thunderbolt and USB4 drivers; - TTY drivers; - DesignWare USB2 driver; - USB Gadget drivers; - USB Host Controller drivers; - USB Dual Role (OTG-ready) Controller drivers; - USB Serial drivers; - USB Type-C Port Controller Manager driver; - vDPA drivers; - Virtio Host (VHOST) subsystem; - Framebuffer layer; - Watchdog drivers; - 9P distributed file system; - AFS file system; - File systems infrastructure; - BTRFS file system; - Ceph distributed file system; - EROFS file system; - exFAT file system; - F2FS file system; - FUSE (File system in Userspace); - Journaling layer for block devices (JBD2); - Network file system (NFS) client; - Network file system (NFS) server daemon; - NTFS3 file system; - OCFS2 file system; - Proc file system; - SMB network file system; - Tracing file system; - UDF file system; - XFS file system; - Key management; - BPF subsystem; - Control group (cgroup); - Glob pattern matching library; - MAC80211 subsystem; - Mellanox drivers; - Networking core; - Network sockets; - IPv6 networking; - Bluetooth subsystem; - Wireless networking; - IPv4 networking; - Netfilter; - Network traffic control; - SCTP protocol; - TCP network protocol; - XFRM subsystem; - RDMA verbs API; - io_uring subsystem; - IPC subsystem; - Audit subsystem; - Kernel CPU control infrastructure; - Perf events; - Kernel exit() syscall; - Kernel fork() syscall; - Scheduler infrastructure; - Signal handling mechanism; - Timer subsystem; - Tracing infrastructure; - Resizable hashtable library; - Memory management; - 6LoWPAN network protocol; - Asynchronous Transfer Mode (ATM) subsystem; - B.A.T.M.A.N. meshing protocol; - Ethernet bridge; - CAN network layer; - Ceph Core library; - Ethtool driver; - HSR network protocol; - IEEE802154.4 network protocol; - IUCV driver; - KCM (Kernel Connection Multiplexor) sockets driver; - IEEE 802.15.4 subsystem; - Multipath TCP; - Open vSwitch; - Packet sockets; - Phonet protocol; - Qualcomm IPC Router (QRTR); - RDS protocol; - RxRPC session sockets; - SMC sockets; - Sun RPC protocol; - TIPC protocol; - TLS protocol; - Unix domain sockets; - VMware vSockets driver; - X.25 network layer; - eXpress Data Path; - AppArmor security module; - Integrity Measurement Architecture(IMA) framework; - SELinux security module; - ALSA framework; - HD-audio driver; - QCOM ASoC drivers; - Simple audio multiplexer codec driver; - Texas InstrumentS Audio (ASoC/HDA) drivers; - SoC Audio for Freescale CPUs drivers; - Amlogic Meson SoC drivers; - SOF drivers; - NVIDIA Tegra ASoC drivers; - USB sound devices; - Perf tools; - KVM subsystem; (CVE-2025-37807, CVE-2026-23265, CVE-2026-43022, CVE-2026-46321, CVE-2026-46322, CVE-2026-52917, CVE-2026-52923, CVE-2026-52927, CVE-2026-52929, CVE-2026-52935, CVE-2026-52942, CVE-2026-52943, CVE-2026-52947, CVE-2026-52994, CVE-2026-53136, CVE-2026-53137, CVE-2026-53138, CVE-2026-53143, CVE-2026-53146, CVE-2026-53147, CVE-2026-53149, CVE-2026-53156, CVE-2026-53157, CVE-2026-53160, CVE-2026-53161, CVE-2026-53184, CVE-2026-53189, CVE-2026-53194, CVE-2026-53195, CVE-2026-53199, CVE-2026-53202, CVE-2026-53205, CVE-2026-53209, CVE-2026-53223, CVE-2026-53229, CVE-2026-53253, CVE-2026-53255, CVE-2026-53267, CVE-2026-53268, CVE-2026-53272, CVE-2026-53329, CVE-2026-53330, CVE-2026-53356, CVE-2026-53362, CVE-2026-53365, CVE-2026-53366, CVE-2026-53381, CVE-2026-53383, CVE-2026-53387, CVE-2026-53388, CVE-2026-53389, CVE-2026-53390, CVE-2026-53391, CVE-2026-53392, CVE-2026-53397, CVE-2026-53400, CVE-2026-53401, CVE-2026-53402, CVE-2026-63794, CVE-2026-63802, CVE-2026-63803, CVE-2026-63805, CVE-2026-63806, CVE-2026-63809, CVE-2026-63812, CVE-2026-63814, CVE-2026-63816, CVE-2026-63817, CVE-2026-63819, CVE-2026-63823, CVE-2026-63824, CVE-2026-63827, CVE-2026-63833, CVE-2026-63867, CVE-2026-63869, CVE-2026-63870, CVE-2026-63875, CVE-2026-63879, CVE-2026-63881, CVE-2026-63884, CVE-2026-63889, CVE-2026-63909, CVE-2026-63913, CVE-2026-63920, CVE-2026-63925, CVE-2026-63927, CVE-2026-63930, CVE-2026-63942, CVE-2026-63954, CVE-2026-63968, CVE-2026-63970, CVE-2026-63971, CVE-2026-63985, CVE-2026-64002, CVE-2026-64003, CVE-2026-64004, CVE-2026-64005, CVE-2026-64009, CVE-2026-64017, CVE-2026-64023, CVE-2026-64026, CVE-2026-64036, CVE-2026-64095, CVE-2026-64123, CVE-2026-64188, CVE-2026-64189, CVE-2026-64210, CVE-2026-64222, CVE-2026-64239, CVE-2026-64242, CVE-2026-64243, CVE-2026-64245, CVE-2026-64246, CVE-2026-64266, CVE-2026-64270, CVE-2026-64271, CVE-2026-64272, CVE-2026-64273, CVE-2026-64274, CVE-2026-64276, CVE-2026-64277, CVE-2026-64279, CVE-2026-64283, CVE-2026-64286, CVE-2026-64287, CVE-2026-64296, CVE-2026-64298, CVE-2026-64299, CVE-2026-64304, CVE-2026-64312, CVE-2026-64317, CVE-2026-64318, CVE-2026-64322, CVE-2026-64323, CVE-2026-64324, CVE-2026-64333, CVE-2026-64368, CVE-2026-64372, CVE-2026-64374, CVE-2026-64375, CVE-2026-64378, CVE-2026-64379, CVE-2026-64380, CVE-2026-64388, CVE-2026-64389, CVE-2026-64395, CVE-2026-64398, CVE-2026-64401, CVE-2026-64402, CVE-2026-64403, CVE-2026-64411, CVE-2026-64412, CVE-2026-64413, CVE-2026-64418, CVE-2026-64420, CVE-2026-64422, CVE-2026-64423, CVE-2026-64430, CVE-2026-64432, CVE-2026-64435, CVE-2026-64436, CVE-2026-64440, CVE-2026-64442, CVE-2026-64443, CVE-2026-64444, CVE-2026-64448, CVE-2026-64449, CVE-2026-64452, CVE-2026-64456, CVE-2026-64463, CVE-2026-64468, CVE-2026-64469, CVE-2026-64481, CVE-2026-64496, CVE-2026-64524, CVE-2026-64532, CVE-2026-64533, CVE-2026-64536, CVE-2026-64539, CVE-2026-64540, CVE-2026-64543, CVE-2026-64545, CVE-2026-64546, CVE-2026-64547, CVE-2026-64550, CVE-2026-64556, CVE-2026-64560, CVE-2026-64563, CVE-2026-64567, CVE-2026-64568, CVE-2026-64570, CVE-2026-64574, CVE-2026-64576, CVE-2026-64577, CVE-2026-64578, CVE-2026-64580, CVE-2026-64581, CVE-2026-64582, CVE-2026-64583, CVE-2026-64584, CVE-2026-64585, CVE-2026-64599, CVE-2026-64600, CVE-2026-68091, CVE-2026-68096, CVE-2026-68097, CVE-2026-68098, CVE-2026-68100, CVE-2026-68104, CVE-2026-68106, CVE-2026-68107, CVE-2026-68108, CVE-2026-68116, CVE-2026-68118, CVE-2026-68119, CVE-2026-68121, CVE-2026-68125, CVE-2026-68129, CVE-2026-68131, CVE-2026-68140, CVE-2026-68141, CVE-2026-68142, CVE-2026-68143, CVE-2026-68145, CVE-2026-68148, CVE-2026-68149, CVE-2026-68153, CVE-2026-68155, CVE-2026-68157, CVE-2026-68178, CVE-2026-68179, CVE-2026-68189, CVE-2026-68192, CVE-2026-68196, CVE-2026-68199, CVE-2026-68202, CVE-2026-68204, CVE-2026-68216, CVE-2026-68219, CVE-2026-68222, CVE-2026-68236, CVE-2026-68245, CVE-2026-68253, CVE-2026-68255, CVE-2026-68258, CVE-2026-68260, CVE-2026-68262, CVE-2026-68263, CVE-2026-68266, CVE-2026-68273, CVE-2026-68284, CVE-2026-68287, CVE-2026-68290, CVE-2026-68293, CVE-2026-68294, CVE-2026-68297, CVE-2026-68299, CVE-2026-68314, CVE-2026-68315, CVE-2026-68320, CVE-2026-68322, CVE-2026-68323, CVE-2026-68326, CVE-2026-68329, CVE-2026-68335, CVE-2026-68338, CVE-2026-68340, CVE-2026-68348, CVE-2026-68352, CVE-2026-68353, CVE-2026-68354, CVE-2026-68370, CVE-2026-68371, CVE-2026-68373, CVE-2026-68376, CVE-2026-68377, CVE-2026-68383, CVE-2026-68389, CVE-2026-68391, CVE-2026-68392, CVE-2026-68397, CVE-2026-68398, CVE-2026-68399, CVE-2026-68400, CVE-2026-68401, CVE-2026-68402, CVE-2026-68404, CVE-2026-68408, CVE-2026-68409, CVE-2026-68414, CVE-2026-68417, CVE-2026-68419, CVE-2026-68425, CVE-2026-68432, CVE-2026-68433, CVE-2026-68442, CVE-2026-68445, CVE-2026-68446, CVE-2026-68447, CVE-2026-68451, CVE-2026-68452, CVE-2026-68453, CVE-2026-68454, CVE-2026-68466, CVE-2026-68467, CVE-2026-68471, CVE-2026-68474, CVE-2026-68479, CVE-2026-72005, CVE-2026-72009, CVE-2026-72012, CVE-2026-72019, CVE-2026-72021, CVE-2026-72024, CVE-2026-72029, CVE-2026-72035, CVE-2026-72036, CVE-2026-72045, CVE-2026-72049, CVE-2026-72051, CVE-2026-72052, CVE-2026-72053, CVE-2026-72054, CVE-2026-72055, CVE-2026-72057, CVE-2026-72061, CVE-2026-72066, CVE-2026-72067, CVE-2026-72072, CVE-2026-72089, CVE-2026-72099, CVE-2026-72102, CVE-2026-72105, CVE-2026-72107, CVE-2026-72108, CVE-2026-72109, CVE-2026-72110, CVE-2026-72113, CVE-2026-72114, CVE-2026-72115, CVE-2026-72116, CVE-2026-72117, CVE-2026-72118, CVE-2026-72119, CVE-2026-72120, CVE-2026-72121, CVE-2026-72122, CVE-2026-72123, CVE-2026-72133, CVE-2026-72135, CVE-2026-72136, CVE-2026-72144, CVE-2026-72146, CVE-2026-72148, CVE-2026-72149, CVE-2026-72157, CVE-2026-72160, CVE-2026-72162, CVE-2026-72164, CVE-2026-72165, CVE-2026-72170, CVE-2026-72171, CVE-2026-72172, CVE-2026-72175, CVE-2026-72181, CVE-2026-72195, CVE-2026-72196, CVE-2026-72197, CVE-2026-72213, CVE-2026-72225, CVE-2026-72227, CVE-2026-72231, CVE-2026-72232, CVE-2026-72233, CVE-2026-72235, CVE-2026-72242, CVE-2026-72243, CVE-2026-72244, CVE-2026-72247, CVE-2026-72250, CVE-2026-72252, CVE-2026-72253, CVE-2026-72254, CVE-2026-72261, CVE-2026-72262, CVE-2026-72282, CVE-2026-72284, CVE-2026-72297, CVE-2026-72298, CVE-2026-72301, CVE-2026-72302, CVE-2026-72304, CVE-2026-72310, CVE-2026-72312, CVE-2026-72314, CVE-2026-72330, CVE-2026-72334, CVE-2026-72335, CVE-2026-72338, CVE-2026-72340, CVE-2026-72342, CVE-2026-72343, CVE-2026-72347, CVE-2026-72350, CVE-2026-72352, CVE-2026-72369, CVE-2026-72371, CVE-2026-72373, CVE-2026-72374, CVE-2026-72375, CVE-2026-72378, CVE-2026-72382, CVE-2026-72389, CVE-2026-72390, CVE-2026-72397, CVE-2026-72400, CVE-2026-72404, CVE-2026-72405, CVE-2026-72406, CVE-2026-72409, CVE-2026-72410, CVE-2026-72416, CVE-2026-72418, CVE-2026-72419, CVE-2026-72420, CVE-2026-72423, CVE-2026-72425, CVE-2026-72427, CVE-2026-72435, CVE-2026-72438, CVE-2026-72440, CVE-2026-72444, CVE-2026-72449, CVE-2026-72450, CVE-2026-72459, CVE-2026-72460, CVE-2026-72464, CVE-2026-72469, CVE-2026-72470, CVE-2026-72476, CVE-2026-72478, CVE-2026-72480, CVE-2026-72483, CVE-2026-72485, CVE-2026-72492, CVE-2026-72502, CVE-2026-74256, CVE-2026-74257, CVE-2026-74258, CVE-2026-74262, CVE-2026-74270, CVE-2026-74281, CVE-2026-74282, CVE-2026-74283, CVE-2026-74288, CVE-2026-74289, CVE-2026-74292, CVE-2026-74293, CVE-2026-74294, CVE-2026-74295, CVE-2026-74296, CVE-2026-74297, CVE-2026-74300, CVE-2026-74312, CVE-2026-74313, CVE-2026-74314, CVE-2026-74317, CVE-2026-74321, CVE-2026-74330, CVE-2026-74334, CVE-2026-74338, CVE-2026-74340, CVE-2026-74341, CVE-2026-74344, CVE-2026-74347, CVE-2026-74349, CVE-2026-74356, CVE-2026-74359, CVE-2026-74363, CVE-2026-74365, CVE-2026-74374, CVE-2026-74375, CVE-2026-74377, CVE-2026-74378, CVE-2026-74380, CVE-2026-74385, CVE-2026-74387, CVE-2026-74388, CVE-2026-74390, CVE-2026-74397, CVE-2026-74438, CVE-2026-74443, CVE-2026-74444, CVE-2026-74446, CVE-2026-74450, CVE-2026-74453, CVE-2026-74454, CVE-2026-74456, CVE-2026-74461, CVE-2026-74465, CVE-2026-74467, CVE-2026-74469, CVE-2026-74470, CVE-2026-74471, CVE-2026-74479, CVE-2026-74481, CVE-2026-74482, CVE-2026-74485, CVE-2026-74488, CVE-2026-74490, CVE-2026-74492, CVE-2026-74496, CVE-2026-74497, CVE-2026-74507, CVE-2026-74508, CVE-2026-74509, CVE-2026-74510, CVE-2026-74512, CVE-2026-74515, CVE-2026-74516, CVE-2026-74518, CVE-2026-74519, CVE-2026-74522, CVE-2026-74523, CVE-2026-74527, CVE-2026-74530, CVE-2026-74531, CVE-2026-74533, CVE-2026-74534, CVE-2026-74535, CVE-2026-74536, CVE-2026-74537, CVE-2026-74540, CVE-2026-74544, CVE-2026-74548, CVE-2026-74549, CVE-2026-74550, CVE-2026-74551, CVE-2026-74557, CVE-2026-74563, CVE-2026-74564, CVE-2026-74565, CVE-2026-74567, CVE-2026-74572, CVE-2026-74574, CVE-2026-74575, CVE-2026-74578, CVE-2026-74579, CVE-2026-74580, CVE-2026-74581, CVE-2026-74582, CVE-2026-74583, CVE-2026-74584, CVE-2026-74586, CVE-2026-74587, CVE-2026-74588, CVE-2026-74589, CVE-2026-74590, CVE-2026-74592, CVE-2026-74594, CVE-2026-74595, CVE-2026-74597, CVE-2026-74598, CVE-2026-74601, CVE-2026-74603, CVE-2026-74604, CVE-2026-74605, CVE-2026-74606, CVE-2026-74607, CVE-2026-74608, CVE-2026-74609, CVE-2026-74610, CVE-2026-74611, CVE-2026-74612, CVE-2026-74613, CVE-2026-74614, CVE-2026-74615, CVE-2026-74616, CVE-2026-74621, CVE-2026-74624, CVE-2026-74625, CVE-2026-74626, CVE-2026-74628, CVE-2026-74630, CVE-2026-74631, CVE-2026-74632, CVE-2026-74634, CVE-2026-74635, CVE-2026-74637, CVE-2026-74641, CVE-2026-74646, CVE-2026-74647, CVE-2026-74648, CVE-2026-74649, CVE-2026-74651, CVE-2026-74656, CVE-2026-74660, CVE-2026-74661, CVE-2026-74662, CVE-2026-74663, CVE-2026-74666, CVE-2026-74667, CVE-2026-74668, CVE-2026-74669, CVE-2026-74670, CVE-2026-74675, CVE-2026-74678, CVE-2026-74684, CVE-2026-74687, CVE-2026-74688, CVE-2026-74689, CVE-2026-74690, CVE-2026-74691, CVE-2026-74692, CVE-2026-74695, CVE-2026-74696, CVE-2026-74697, CVE-2026-74700, CVE-2026-74701, CVE-2026-74704, CVE-2026-74705, CVE-2026-74710, CVE-2026-74711, CVE-2026-74713, CVE-2026-74714, CVE-2026-74715, CVE-2026-74717, CVE-2026-74720, CVE-2026-74723, CVE-2026-74724, CVE-2026-74725, CVE-2026-74726, CVE-2026-74730, CVE-2026-74733, CVE-2026-74736, CVE-2026-74737, CVE-2026-74739, CVE-2026-74743, CVE-2026-74744, CVE-2026-74746, CVE-2026-74747, CVE-2026-74748, CVE-2026-74752, CVE-2026-80521, CVE-2026-80526, CVE-2026-80527, CVE-2026-80528, CVE-2026-80536, CVE-2026-80540, CVE-2026-80541, CVE-2026-80547, CVE-2026-80548, CVE-2026-80549, CVE-2026-80550, CVE-2026-80551, CVE-2026-80552, CVE-2026-80553, CVE-2026-80554, CVE-2026-80555, CVE-2026-80556, CVE-2026-80557, CVE-2026-80558, CVE-2026-80559, CVE-2026-80560, CVE-2026-80561, CVE-2026-80565, CVE-2026-80568, CVE-2026-80569, CVE-2026-80570, CVE-2026-80572, CVE-2026-80574, CVE-2026-80576, CVE-2026-80578, CVE-2026-80579, CVE-2026-80580, CVE-2026-80583, CVE-2026-80584, CVE-2026-80585, CVE-2026-80586, CVE-2026-80587, CVE-2026-80589, CVE-2026-80721, CVE-2026-80901, CVE-2026-97509)

USN-8883-1: Go vulnerability

1 day 8 hours ago
It was discovered that the Go x/net/idna package incorrectly handled certain Punycode-encoded labels that decoded to ASCII-only labels. An attacker could possibly use this issue to bypass hostname-based access controls and escalate privileges.

USN-8882-1: Tesseract vulnerabilities

1 day 10 hours ago
It was discovered that Tesseract incorrectly handled crafted .traineddata models. An attacker could possibly use this issue to cause Tesseract to crash, resulting in a denial of service. (CVE-2026-73067) It was discovered that Tesseract did not properly validate dimensions in crafted .traineddata models. An attacker could possibly use this issue to execute arbitrary code. (CVE-2026-73066) It was discovered that Tesseract did not properly limit token lengths in crafted .traineddata models. An attacker could possibly use this issue to execute arbitrary code. (CVE-2026-88047) It was discovered that Tesseract did not properly validate layer dimensions in crafted .traineddata models. An attacker could possibly use this issue to execute arbitrary code. (CVE-2026-88048) It was discovered that Tesseract did not properly validate layer sizes in crafted .traineddata models. An attacker could possibly use this issue to execute arbitrary code. (CVE-2026-88049) It was discovered that Tesseract incorrectly handled negative character codes in crafted .traineddata models. An attacker could possibly use this issue to cause Tesseract to crash, resulting in a denial of service. (CVE-2026-88050) It was discovered that Tesseract did not properly validate vector sizes in crafted .traineddata models. An attacker could possibly use this issue to execute arbitrary code. (CVE-2026-88051) It was discovered that Tesseract did not properly validate character IDs in crafted .traineddata models. An attacker could possibly use this issue to execute arbitrary code. (CVE-2026-88052) It was discovered that Tesseract did not properly validate classifier counts in crafted .traineddata models. An attacker could possibly use this issue to execute arbitrary code. (CVE-2026-88053) It was discovered that Tesseract incorrectly handled empty network layers in crafted .traineddata models. An attacker could possibly use this issue to cause Tesseract to crash, resulting in a denial of service. (CVE-2026-88054)

USN-8880-1: FreeRDP vulnerabilities

1 day 11 hours ago
It was discovered that FreeRDP contained multiple security issues. An attacker could possibly use these issues to obtain sensitive information, cause FreeRDP to crash, resulting in a denial of service, or execute arbitrary code.

USN-8875-1: Linux kernel vulnerabilities

1 day 12 hours ago
It was discovered that the i.MX clock driver in the Linux kernel did not properly handle certain memory allocation failure conditions, leading to a null pointer dereference vulnerability. A local attacker could possibly use this to cause a denial of service (system crash). (CVE-2022-3114) Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - User-space API (UAPI); - ARM32 architecture; - ARM64 architecture; - MIPS architecture; - PowerPC architecture; - RISC-V architecture; - User-Mode Linux (UML); - x86 architecture; - Block layer subsystem; - Cryptographic API; - ACPI drivers; - Android drivers; - Serial ATA and Parallel ATA drivers; - Drivers core; - DRBD Distributed Replicated Block Device drivers; - Rados block device (RBD) driver; - Bluetooth drivers; - Cdrom driver; - Character device driver; - Hardware random number generator core; - TPM device driver; - Data acquisition framework and drivers; - CPU frequency scaling framework; - Hardware crypto device drivers; - DAX dirext access to differentiated memory framework; - DMA engine subsystem; - FireWire subsystem; - Arm Firmware Framework for ARMv8-A(FFA); - ARM SCMI message protocol; - Intel Stratix 10 firmware drivers; - FPGA Framework; - GPIO subsystem; - GPU drivers; - HID subsystem; - Hardware monitoring drivers; - Intel Trace Hub HW tracing drivers; - I2C subsystem; - IIO subsystem; - IIO ADC drivers; - IIO Magnetometer sensors drivers; - InfiniBand drivers; - Input Device core drivers; - Input Device (Miscellaneous) drivers; - Input Device (Mouse) drivers; - IOMMU subsystem; - IRQ chip drivers; - LED subsystem; - Multiple devices driver; - Media drivers; - MemoryStick subsystem; - Multifunction device drivers; - Fastrpc Driver; - MMC subsystem; - MTD block device drivers; - Ethernet bonding driver; - Network drivers; - Mellanox network drivers; - Microsoft Azure Network Adapter (MANA) driver; - Texas Instruments network drivers; - MediaTek network drivers; - NTB driver; - NVDIMM (Non-Volatile Memory Device) drivers; - NVME drivers; - Parport drivers; - PCI subsystem; - Pin controllers subsystem; - Generic PM domains; - System reset/shutdown drivers; - Power supply drivers; - RapidIO drivers; - Voltage and Current Regulator drivers; - Reset controller framework; - S/390 drivers; - SCSI subsystem; - SLIMbus drivers; - SPI subsystem; - Media staging drivers; - Media Oriented Systems Transport (MOST) driver; - NVIDIA Tegra embedded controller (NVEC) staging driver; - Realtek RTL8723BS SDIO drivers; - TCM subsystem; - Trusted Execution Environment drivers; - Thermal drivers; - Thunderbolt and USB4 drivers; - TTY drivers; - USB DSL drivers; - Cadence USB3 driver; - USB Device Class drivers; - ULPI bus; - DesignWare USB2 driver; - DesignWare USB3 driver; - USB Gadget drivers; - USB Host Controller drivers; - USB ChaosKey driver; - Siemens ID Mouse USB driver; - IOWarrior USB driver; - LD Didactic USB driver; - LEGO USB Tower driver; - USS720 USB parallel port adapter driver; - MediaTek USB3 DRD driver; - USB Serial drivers; - USB Type-C support driver; - USB Type-C Port Controller Manager driver; - USB Type-C Connector System Software Interface driver; - USB over IP driver; - vDPA drivers; - VFIO drivers; - Virtio Host (VHOST) subsystem; - Framebuffer layer; - Watchdog drivers; - Xen hypervisor drivers; - AFS file system; - File systems infrastructure; - BTRFS file system; - Ceph distributed file system; - EROFS file system; - exFAT file system; - Ext4 file system; - F2FS file system; - FUSE (File system in Userspace); - HFS file system; - HFS+ file system; - Journaling layer for block devices (JBD2); - Network file system (NFS) client; - Network file system (NFS) server daemon; - NILFS2 file system; - NTFS3 file system; - OCFS2 file system; - OrangeFS file system; - Proc file system; - SMB network file system; - UDF file system; - XFS file system; - Key management; - Software nodes and device properties; - Glob pattern matching library; - KVM subsystem; - Networking core; - Netfilter; - Socket messages infrastructure; - Network sockets; - Memory Management; - Network traffic control; - IPv6 networking; - Bluetooth subsystem; - IP tunnels definitions; - IPv4 networking; - SCTP protocol; - XFRM subsystem; - io_uring subsystem; - IPC subsystem; - Audit subsystem; - BPF subsystem; - Control group (cgroup); - Kernel CPU control infrastructure; - Kernel exit() syscall; - Kernel futex primitives; - Locking primitives; - Scheduler infrastructure; - Signal handling mechanism; - Timer subsystem; - Tracing infrastructure; - Cryptographic library; - Debug objects infrastructure; - Resizable hashtable library; - Memory management; - 6LoWPAN network protocol; - IEEE 802 network protocols; - 9P file system network protocol; - Asynchronous Transfer Mode (ATM) subsystem; - B.A.T.M.A.N. meshing protocol; - Ethernet bridge; - CAN network layer; - Ceph Core library; - Ethtool driver; - HSR network protocol; - IEEE802154.4 network protocol; - IFE protocol; - IUCV driver; - KCM (Kernel Connection Multiplexor) sockets driver; - Logical Link layer; - MAC80211 subsystem; - IEEE 802.15.4 subsystem; - Management Component Transport Protocol (MCTP); - MultiProtocol Label Switching driver; - Multipath TCP; - NCSI (Network Controller Sideband Interface) driver; - NetLabel subsystem; - NFC subsystem; - Open vSwitch; - Packet sockets; - Phonet protocol; - Packet sampling (psample); - Qualcomm IPC Router (QRTR); - RDS protocol; - SMC sockets; - Sun RPC protocol; - TIPC protocol; - TLS protocol; - Unix domain sockets; - VMware vSockets driver; - Wireless networking; - X.25 network layer; - AppArmor security module; - Integrity Measurement Architecture(IMA) framework; - Apple Onboard Audio ALSA driver; - ALSA framework; - Generic PCM loopback sound driver; - FireWire sound drivers; - ESS Solo-1 ALSA driver; - HD-audio driver; - Simple audio multiplexer codec driver; - SoC Audio for Freescale CPUs drivers; - NVIDIA Tegra ASoC drivers; - USB sound devices; - Perf tools; (CVE-2023-54125, CVE-2023-54271, CVE-2025-22026, CVE-2025-23131, CVE-2025-39863, CVE-2025-39929, CVE-2025-39931, CVE-2026-23364, CVE-2026-31449, CVE-2026-31451, CVE-2026-31610, CVE-2026-31700, CVE-2026-31708, CVE-2026-31709, CVE-2026-31711, CVE-2026-31712, CVE-2026-31715, CVE-2026-43064, CVE-2026-43216, CVE-2026-43219, CVE-2026-43350, CVE-2026-43355, CVE-2026-43491, CVE-2026-43492, CVE-2026-45850, CVE-2026-45930, CVE-2026-45991, CVE-2026-45999, CVE-2026-46003, CVE-2026-46021, CVE-2026-46026, CVE-2026-46038, CVE-2026-46052, CVE-2026-46056, CVE-2026-46065, CVE-2026-46069, CVE-2026-46078, CVE-2026-46086, CVE-2026-46090, CVE-2026-46091, CVE-2026-46092, CVE-2026-46103, CVE-2026-46116, CVE-2026-46159, CVE-2026-46160, CVE-2026-46169, CVE-2026-46180, CVE-2026-46191, CVE-2026-46193, CVE-2026-46196, CVE-2026-46208, CVE-2026-46252, CVE-2026-46291, CVE-2026-46292, CVE-2026-46299, CVE-2026-46320, CVE-2026-46321, CVE-2026-46322, CVE-2026-52909, CVE-2026-52910, CVE-2026-52913, CVE-2026-52917, CVE-2026-52918, CVE-2026-52923, CVE-2026-52927, CVE-2026-52928, CVE-2026-52929, CVE-2026-52930, CVE-2026-52933, CVE-2026-52934, CVE-2026-52935, CVE-2026-52939, CVE-2026-52942, CVE-2026-52943, CVE-2026-52947, CVE-2026-52948, CVE-2026-52977, CVE-2026-53080, CVE-2026-53090, CVE-2026-53133, CVE-2026-53134, CVE-2026-53135, CVE-2026-53136, CVE-2026-53137, CVE-2026-53138, CVE-2026-53139, CVE-2026-53146, CVE-2026-53148, CVE-2026-53149, CVE-2026-53150, CVE-2026-53157, CVE-2026-53158, CVE-2026-53159, CVE-2026-53161, CVE-2026-53163, CVE-2026-53167, CVE-2026-53168, CVE-2026-53177, CVE-2026-53181, CVE-2026-53189, CVE-2026-53194, CVE-2026-53195, CVE-2026-53196, CVE-2026-53199, CVE-2026-53208, CVE-2026-53213, CVE-2026-53217, CVE-2026-53218, CVE-2026-53219, CVE-2026-53223, CVE-2026-53227, CVE-2026-53238, CVE-2026-53239, CVE-2026-53245, CVE-2026-53249, CVE-2026-53252, CVE-2026-53253, CVE-2026-53254, CVE-2026-53255, CVE-2026-53256, CVE-2026-53263, CVE-2026-53264, CVE-2026-53265, CVE-2026-53266, CVE-2026-53268, CVE-2026-53269, CVE-2026-53270, CVE-2026-53273, CVE-2026-53275, CVE-2026-53325, CVE-2026-53329, CVE-2026-53331, CVE-2026-53332, CVE-2026-53337, CVE-2026-53339, CVE-2026-53352, CVE-2026-53356, CVE-2026-53357, CVE-2026-53358, CVE-2026-53381, CVE-2026-53382, CVE-2026-53383, CVE-2026-53385, CVE-2026-53388, CVE-2026-53391, CVE-2026-53392, CVE-2026-53393, CVE-2026-53397, CVE-2026-53399, CVE-2026-53400, CVE-2026-53402, CVE-2026-53403, CVE-2026-63794, CVE-2026-63796, CVE-2026-63798, CVE-2026-63801, CVE-2026-63803, CVE-2026-63806, CVE-2026-63807, CVE-2026-63809, CVE-2026-63810, CVE-2026-63814, CVE-2026-63815, CVE-2026-63817, CVE-2026-63818, CVE-2026-63822, CVE-2026-63823, CVE-2026-63824, CVE-2026-63827, CVE-2026-63828, CVE-2026-63829, CVE-2026-63830, CVE-2026-63831, CVE-2026-63833, CVE-2026-63834, CVE-2026-63835, CVE-2026-63836, CVE-2026-63867, CVE-2026-63868, CVE-2026-63870, CVE-2026-63875, CVE-2026-63889, CVE-2026-63890, CVE-2026-63891, CVE-2026-63892, CVE-2026-63893, CVE-2026-63895, CVE-2026-63897, CVE-2026-63898, CVE-2026-63899, CVE-2026-63900, CVE-2026-63901, CVE-2026-63902, CVE-2026-63903, CVE-2026-63904, CVE-2026-63905, CVE-2026-63908, CVE-2026-63913, CVE-2026-63914, CVE-2026-63915, CVE-2026-63916, CVE-2026-63917, CVE-2026-63919, CVE-2026-63920, CVE-2026-63921, CVE-2026-63925, CVE-2026-63926, CVE-2026-63927, CVE-2026-63928, CVE-2026-63930, CVE-2026-63931, CVE-2026-63933, CVE-2026-63934, CVE-2026-63942, CVE-2026-63947, CVE-2026-63948, CVE-2026-63954, CVE-2026-63956, CVE-2026-63957, CVE-2026-63960, CVE-2026-63961, CVE-2026-63964, CVE-2026-63967, CVE-2026-63971, CVE-2026-63975, CVE-2026-63976, CVE-2026-63985, CVE-2026-63990, CVE-2026-63991, CVE-2026-64002, CVE-2026-64004, CVE-2026-64005, CVE-2026-64009, CVE-2026-64010, CVE-2026-64011, CVE-2026-64012, CVE-2026-64014, CVE-2026-64090, CVE-2026-64093, CVE-2026-64094, CVE-2026-64095, CVE-2026-64116, CVE-2026-64118, CVE-2026-64123, CVE-2026-64126, CVE-2026-64137, CVE-2026-64170, CVE-2026-64187, CVE-2026-64188, CVE-2026-64189, CVE-2026-64191, CVE-2026-64206, CVE-2026-64222, CVE-2026-64225, CVE-2026-64234, CVE-2026-64237, CVE-2026-64242, CVE-2026-64243, CVE-2026-64246, CVE-2026-64249, CVE-2026-64266, CVE-2026-64268, CVE-2026-64269, CVE-2026-64271, CVE-2026-64273, CVE-2026-64274, CVE-2026-64275, CVE-2026-64276, CVE-2026-64277, CVE-2026-64279, CVE-2026-64296, CVE-2026-64298, CVE-2026-64299, CVE-2026-64301, CVE-2026-64303, CVE-2026-64304, CVE-2026-64306, CVE-2026-64312, CVE-2026-64313, CVE-2026-64315, CVE-2026-64316, CVE-2026-64317, CVE-2026-64318, CVE-2026-64322, CVE-2026-64323, CVE-2026-64324, CVE-2026-64329, CVE-2026-64330, CVE-2026-64331, CVE-2026-64332, CVE-2026-64333, CVE-2026-64334, CVE-2026-64335, CVE-2026-64336, CVE-2026-64337, CVE-2026-64338, CVE-2026-64340, CVE-2026-64342, CVE-2026-64343, CVE-2026-64344, CVE-2026-64346, CVE-2026-64347, CVE-2026-64350, CVE-2026-64351, CVE-2026-64352, CVE-2026-64355, CVE-2026-64359, CVE-2026-64360, CVE-2026-64361, CVE-2026-64362, CVE-2026-64363, CVE-2026-64364, CVE-2026-64370, CVE-2026-64371, CVE-2026-64372, CVE-2026-64373, CVE-2026-64374, CVE-2026-64375, CVE-2026-64379, CVE-2026-64380, CVE-2026-64381, CVE-2026-64390, CVE-2026-64401, CVE-2026-64403, CVE-2026-64408, CVE-2026-64411, CVE-2026-64412, CVE-2026-64413, CVE-2026-64420, CVE-2026-64422, CVE-2026-64423, CVE-2026-64425, CVE-2026-64428, CVE-2026-64429, CVE-2026-64430, CVE-2026-64432, CVE-2026-64435, CVE-2026-64436, CVE-2026-64438, CVE-2026-64440, CVE-2026-64441, CVE-2026-64442, CVE-2026-64443, CVE-2026-64444, CVE-2026-64445, CVE-2026-64446, CVE-2026-64448, CVE-2026-64450, CVE-2026-64452, CVE-2026-64454, CVE-2026-64455, CVE-2026-64456, CVE-2026-64461, CVE-2026-64462, CVE-2026-64465, CVE-2026-64468, CVE-2026-64469, CVE-2026-64470, CVE-2026-64471, CVE-2026-64475, CVE-2026-64478, CVE-2026-64483, CVE-2026-64484, CVE-2026-64487, CVE-2026-64488, CVE-2026-64494, CVE-2026-64495, CVE-2026-64496, CVE-2026-64497, CVE-2026-64500, CVE-2026-64503, CVE-2026-64504, CVE-2026-64505, CVE-2026-64510, CVE-2026-64512, CVE-2026-64514, CVE-2026-64524, CVE-2026-64527, CVE-2026-64528, CVE-2026-64529, CVE-2026-64530, CVE-2026-64532, CVE-2026-64533, CVE-2026-64534, CVE-2026-64535, CVE-2026-64536, CVE-2026-64537, CVE-2026-64538, CVE-2026-64540, CVE-2026-64541, CVE-2026-64543, CVE-2026-64544, CVE-2026-64545, CVE-2026-64546, CVE-2026-64547, CVE-2026-64548, CVE-2026-64549, CVE-2026-64550, CVE-2026-64551, CVE-2026-64553, CVE-2026-64554, CVE-2026-64560, CVE-2026-64562, CVE-2026-64563, CVE-2026-64564, CVE-2026-64565, CVE-2026-64567, CVE-2026-64569, CVE-2026-64571, CVE-2026-64572, CVE-2026-64573, CVE-2026-64576, CVE-2026-64578, CVE-2026-64579, CVE-2026-64582, CVE-2026-64583, CVE-2026-64584, CVE-2026-64593, CVE-2026-64594, CVE-2026-64599, CVE-2026-64600, CVE-2026-64602, CVE-2026-64604, CVE-2026-68088, CVE-2026-68090, CVE-2026-68091, CVE-2026-68104, CVE-2026-68106, CVE-2026-68111, CVE-2026-68115, CVE-2026-68117, CVE-2026-68121, CVE-2026-68123, CVE-2026-68125, CVE-2026-68127, CVE-2026-68129, CVE-2026-68131, CVE-2026-68135, CVE-2026-68137, CVE-2026-68140, CVE-2026-68141, CVE-2026-68142, CVE-2026-68143, CVE-2026-68144, CVE-2026-68151, CVE-2026-68153, CVE-2026-68154, CVE-2026-68155, CVE-2026-68156, CVE-2026-68157, CVE-2026-68158, CVE-2026-68160, CVE-2026-68175, CVE-2026-68176, CVE-2026-68180, CVE-2026-68182, CVE-2026-68183, CVE-2026-68184, CVE-2026-68186, CVE-2026-68187, CVE-2026-68188, CVE-2026-68190, CVE-2026-68192, CVE-2026-68195, CVE-2026-68196, CVE-2026-68197, CVE-2026-68199, CVE-2026-68204, CVE-2026-68209, CVE-2026-68212, CVE-2026-68213, CVE-2026-68214, CVE-2026-68215, CVE-2026-68216, CVE-2026-68217, CVE-2026-68218, CVE-2026-68222, CVE-2026-68223, CVE-2026-68226, CVE-2026-68227, CVE-2026-68229, CVE-2026-68231, CVE-2026-68234, CVE-2026-68243, CVE-2026-68244, CVE-2026-68248, CVE-2026-68249, CVE-2026-68250, CVE-2026-68284, CVE-2026-68294, CVE-2026-68297, CVE-2026-68299, CVE-2026-68300, CVE-2026-68301, CVE-2026-68304, CVE-2026-68309, CVE-2026-68313, CVE-2026-68315, CVE-2026-68320, CVE-2026-68322, CVE-2026-68324, CVE-2026-68325, CVE-2026-68326, CVE-2026-68327, CVE-2026-68328, CVE-2026-68331, CVE-2026-68333, CVE-2026-68335, CVE-2026-68338, CVE-2026-68340, CVE-2026-68349, CVE-2026-68350, CVE-2026-68351, CVE-2026-68352, CVE-2026-68353, CVE-2026-68354, CVE-2026-68355, CVE-2026-68357, CVE-2026-68360, CVE-2026-68361, CVE-2026-68363, CVE-2026-68365, CVE-2026-68366, CVE-2026-68368, CVE-2026-68369, CVE-2026-68370, CVE-2026-68373, CVE-2026-68376, CVE-2026-68377, CVE-2026-68388, CVE-2026-68395, CVE-2026-68397, CVE-2026-68398, CVE-2026-68402, CVE-2026-68403, CVE-2026-68405, CVE-2026-68406, CVE-2026-68410, CVE-2026-68411, CVE-2026-68413, CVE-2026-68414, CVE-2026-68417, CVE-2026-68422, CVE-2026-68425, CVE-2026-68428, CVE-2026-68430, CVE-2026-68432, CVE-2026-68433, CVE-2026-68444, CVE-2026-68446, CVE-2026-68449, CVE-2026-68450, CVE-2026-68451, CVE-2026-68452, CVE-2026-68456, CVE-2026-68459, CVE-2026-68460, CVE-2026-68461, CVE-2026-68466, CVE-2026-68467, CVE-2026-68469, CVE-2026-68474, CVE-2026-68475, CVE-2026-68477, CVE-2026-68478, CVE-2026-68479, CVE-2026-68480, CVE-2026-72004, CVE-2026-72005, CVE-2026-72010, CVE-2026-72013, CVE-2026-72014, CVE-2026-72019, CVE-2026-72020, CVE-2026-72021, CVE-2026-72022, CVE-2026-72024, CVE-2026-72025, CVE-2026-72033, CVE-2026-72036, CVE-2026-72038, CVE-2026-72039, CVE-2026-72047, CVE-2026-72048, CVE-2026-72049, CVE-2026-72052, CVE-2026-72054, CVE-2026-72055, CVE-2026-72056, CVE-2026-72061, CVE-2026-72066, CVE-2026-72067, CVE-2026-72068, CVE-2026-72074, CVE-2026-72076, CVE-2026-72078, CVE-2026-72079, CVE-2026-72081, CVE-2026-72082, CVE-2026-72083, CVE-2026-72084, CVE-2026-72085, CVE-2026-72086, CVE-2026-72088, CVE-2026-72102, CVE-2026-72105, CVE-2026-72107, CVE-2026-72108, CVE-2026-72109, CVE-2026-72113, CVE-2026-72114, CVE-2026-72115, CVE-2026-72116, CVE-2026-72117, CVE-2026-72118, CVE-2026-72119, CVE-2026-72120, CVE-2026-72121, CVE-2026-72122, CVE-2026-72123, CVE-2026-72124, CVE-2026-72125, CVE-2026-72126, CVE-2026-72129, CVE-2026-72133, CVE-2026-72135, CVE-2026-72136, CVE-2026-72138, CVE-2026-72140, CVE-2026-72146, CVE-2026-72153, CVE-2026-72159, CVE-2026-72160, CVE-2026-72163, CVE-2026-72164, CVE-2026-72165, CVE-2026-72166, CVE-2026-72167, CVE-2026-72171, CVE-2026-72181, CVE-2026-72182, CVE-2026-72192, CVE-2026-72193, CVE-2026-72194, CVE-2026-72195, CVE-2026-72197, CVE-2026-72215, CVE-2026-72218, CVE-2026-72219, CVE-2026-72223, CVE-2026-72224, CVE-2026-72225, CVE-2026-72226, CVE-2026-72228, CVE-2026-72229, CVE-2026-72230, CVE-2026-72231, CVE-2026-72232, CVE-2026-72233, CVE-2026-72234, CVE-2026-72235, CVE-2026-72238, CVE-2026-72240, CVE-2026-72241, CVE-2026-72245, CVE-2026-72247, CVE-2026-72250, CVE-2026-72251, CVE-2026-72256, CVE-2026-72264, CVE-2026-72265, CVE-2026-72267, CVE-2026-72268, CVE-2026-72269, CVE-2026-72270, CVE-2026-72271, CVE-2026-72272, CVE-2026-72274, CVE-2026-72275, CVE-2026-72276, CVE-2026-72282, CVE-2026-72289, CVE-2026-72296, CVE-2026-72297, CVE-2026-72298, CVE-2026-72306, CVE-2026-72307, CVE-2026-72310, CVE-2026-72314, CVE-2026-72316, CVE-2026-72319, CVE-2026-72322, CVE-2026-72326, CVE-2026-72339, CVE-2026-72347, CVE-2026-72348, CVE-2026-72349, CVE-2026-72350, CVE-2026-72351, CVE-2026-72371, CVE-2026-72374, CVE-2026-72378, CVE-2026-72389, CVE-2026-72392, CVE-2026-72396, CVE-2026-72400, CVE-2026-72406, CVE-2026-72409, CVE-2026-72414, CVE-2026-72418, CVE-2026-72421, CVE-2026-72422, CVE-2026-72428, CVE-2026-72433, CVE-2026-72435, CVE-2026-72441, CVE-2026-72447, CVE-2026-72448, CVE-2026-72450, CVE-2026-72459, CVE-2026-72460, CVE-2026-72466, CVE-2026-72476, CVE-2026-72479, CVE-2026-72481, CVE-2026-72483, CVE-2026-72484, CVE-2026-72489, CVE-2026-72491, CVE-2026-72492, CVE-2026-72502, CVE-2026-74255, CVE-2026-74256, CVE-2026-74262, CVE-2026-74265, CVE-2026-74267, CVE-2026-74276, CVE-2026-74279, CVE-2026-74280, CVE-2026-74281, CVE-2026-74282, CVE-2026-74283, CVE-2026-74284, CVE-2026-74287, CVE-2026-74288, CVE-2026-74292, CVE-2026-74293, CVE-2026-74295, CVE-2026-74297, CVE-2026-74305, CVE-2026-74312, CVE-2026-74313, CVE-2026-74320, CVE-2026-74321, CVE-2026-74327, CVE-2026-74329, CVE-2026-74330, CVE-2026-74331, CVE-2026-74339, CVE-2026-74340, CVE-2026-74346, CVE-2026-74348, CVE-2026-74349, CVE-2026-74351, CVE-2026-74359, CVE-2026-74363, CVE-2026-74376, CVE-2026-74379, CVE-2026-74382, CVE-2026-74384, CVE-2026-74390, CVE-2026-74394, CVE-2026-74395, CVE-2026-74398, CVE-2026-74399, CVE-2026-74402, CVE-2026-74408, CVE-2026-74410, CVE-2026-74416, CVE-2026-74424, CVE-2026-74426, CVE-2026-74427, CVE-2026-74438, CVE-2026-74443, CVE-2026-74444, CVE-2026-74453, CVE-2026-74455, CVE-2026-74456, CVE-2026-74457, CVE-2026-74458, CVE-2026-74459, CVE-2026-74460, CVE-2026-74461, CVE-2026-74463, CVE-2026-74464, CVE-2026-74465, CVE-2026-74467, CVE-2026-74468, CVE-2026-74469, CVE-2026-74471, CVE-2026-74473, CVE-2026-74475, CVE-2026-74478, CVE-2026-74480, CVE-2026-74481, CVE-2026-74482, CVE-2026-74485, CVE-2026-74488, CVE-2026-74490, CVE-2026-74492, CVE-2026-74493, CVE-2026-74495, CVE-2026-74497, CVE-2026-74498, CVE-2026-74499, CVE-2026-74505, CVE-2026-74507, CVE-2026-74508, CVE-2026-74512, CVE-2026-74518, CVE-2026-74519, CVE-2026-74523, CVE-2026-74525, CVE-2026-74540, CVE-2026-74546, CVE-2026-74547, CVE-2026-74548, CVE-2026-74549, CVE-2026-74556, CVE-2026-74557, CVE-2026-74563, CVE-2026-74564, CVE-2026-74566, CVE-2026-74567, CVE-2026-74569, CVE-2026-74577, CVE-2026-74578, CVE-2026-74579, CVE-2026-74580, CVE-2026-74581, CVE-2026-74583, CVE-2026-74584, CVE-2026-74585, CVE-2026-74586, CVE-2026-74587, CVE-2026-74588, CVE-2026-74589, CVE-2026-74597, CVE-2026-74598, CVE-2026-74604, CVE-2026-74609, CVE-2026-74613, CVE-2026-74614, CVE-2026-74615, CVE-2026-74616, CVE-2026-74620, CVE-2026-74622, CVE-2026-74625, CVE-2026-74630, CVE-2026-74635, CVE-2026-74636, CVE-2026-74641, CVE-2026-74648, CVE-2026-74649, CVE-2026-74650, CVE-2026-74651, CVE-2026-74654, CVE-2026-74656, CVE-2026-74657, CVE-2026-74658, CVE-2026-74659, CVE-2026-74660, CVE-2026-74664, CVE-2026-74667, CVE-2026-74669, CVE-2026-74671, CVE-2026-74673, CVE-2026-74675, CVE-2026-74676, CVE-2026-74679, CVE-2026-74680, CVE-2026-74682, CVE-2026-74683, CVE-2026-74688, CVE-2026-74691, CVE-2026-74692, CVE-2026-74693, CVE-2026-74694, CVE-2026-74696, CVE-2026-74697, CVE-2026-74701, CVE-2026-74704, CVE-2026-74705, CVE-2026-74717, CVE-2026-74719, CVE-2026-74720, CVE-2026-74726, CVE-2026-74730, CVE-2026-80591, CVE-2026-80593, CVE-2026-80594, CVE-2026-80595, CVE-2026-80597, CVE-2026-80598, CVE-2026-80599, CVE-2026-80600, CVE-2026-80601, CVE-2026-80603, CVE-2026-80605, CVE-2026-80609, CVE-2026-80613, CVE-2026-80619, CVE-2026-80622, CVE-2026-80626, CVE-2026-80627, CVE-2026-80630, CVE-2026-80644, CVE-2026-80645, CVE-2026-80646, CVE-2026-80647, CVE-2026-80649, CVE-2026-80652, CVE-2026-80659, CVE-2026-80664, CVE-2026-80677, CVE-2026-80679, CVE-2026-80680, CVE-2026-80681, CVE-2026-80706, CVE-2026-80707, CVE-2026-80708, CVE-2026-80714, CVE-2026-80716, CVE-2026-80717, CVE-2026-80718, CVE-2026-80722, CVE-2026-80731, CVE-2026-80732, CVE-2026-80733, CVE-2026-80867, CVE-2026-80875, CVE-2026-80876, CVE-2026-80877, CVE-2026-80879, CVE-2026-80880, CVE-2026-80881, CVE-2026-80886, CVE-2026-80890, CVE-2026-80902, CVE-2026-89774)
Checked
19 minutes 27 seconds ago