Key Updates:
1. jQuery Vulnerabilities (USN-7622-1): Security issues were identified in jQuery affecting Ubuntu LTS versions (14.04, 16.04, 18.04). The vulnerabilities could lead to XSS attacks due to improper handling of HTML tags and unsanitized objects. Updates are available through Ubuntu Pro.2. DCMTK Regression (USN-7010-2): An update to DCMTK introduced a regression that affected multiple LTS versions. This fix resolves issues discovered that could lead to denial of service if exploited.
3. Linux Kernel Vulnerabilities: A series of updates (USN-7627-2, USN-7608-5, USN-7609-4, USN-7607-3) addressed vulnerabilities in various Linux kernel subsystems across different Ubuntu versions. These updates rectify critical issues that could compromise system security, including flaws related to memory management, network traffic control, and specific architecture vulnerabilities.
4. Git Vulnerabilities (USN-7626-1): Several critical security issues were fixed in Git, impacting multiple Ubuntu versions. These vulnerabilities could allow an attacker to execute arbitrary commands or create unauthorized file modifications.
5. OnionShare Vulnerabilities (USN-7625-1): Issues were identified that could allow denial of service or access to sensitive information. Users are encouraged to update their installations through Ubuntu Pro.
6. FreeRDP Vulnerability (USN-7624-1): A denial of service vulnerability was fixed, which could cause FreeRDP to crash when receiving malformed packets.
7. Ghostscript Vulnerabilities (USN-7623-1): Multiple vulnerabilities were identified, including potential denial of service and arbitrary code execution risks. Users are advised to update their Ghostscript installations.
General Update Instructions:
For all affected users, it is recommended to perform a standard system update to apply these critical updates. Users should reboot their systems post-update to ensure all changes take effect. Additionally, due to ABI changes in some kernel updates, it may be necessary to recompile and reinstall any third-party kernel modules.Conclusion
These updates highlight the ongoing commitment of Ubuntu to maintain system security and integrity. Users are urged to promptly apply these updates to protect against potential vulnerabilities and enhance their systems' overall security posturejQuery, DCMTK, FIPS, and more updates for Ubuntu
Ubuntu Linux has received updates addressing multiple security vulnerabilities, including issues related to jQuery, DCMTK regression, FIPS, KVM, and Ghostscript, along with vulnerabilities in Git, OnionShare, FreeRDP, and Ghostscript:
[USN-7622-1] jQuery vulnerabilities
[USN-7010-2] DCMTK regression
[USN-7627-2] Linux kernel (FIPS) vulnerabilities
[USN-7608-5] Linux kernel vulnerabilities
[USN-7609-4] Linux kernel (Azure) vulnerabilities
[USN-7607-3] Linux kernel (KVM) vulnerabilities
[USN-7594-3] Linux kernel vulnerabilities
[USN-7628-1] Linux kernel (Azure) vulnerabilities
[USN-7611-2] Linux kernel (Azure) vulnerabilities
[USN-7610-2] Linux kernel vulnerabilities
[USN-7626-1] Git vulnerabilities
[USN-7625-1] OnionShare vulnerabilities
[USN-7624-1] FreeRDP vulnerability
[USN-7623-1] Ghostscript vulnerabilitiesjQuery, DCMTK, FIPS, and more updates for Ubuntu @ Linux Compatible