<?xml version='1.0' encoding='UTF-8'?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0"><channel><title>Ubuntu security notices</title><link>https://ubuntu.com/security/notices/rss.xml</link><description>Recent content on Ubuntu security notices</description><atom:link href="https://ubuntu.com/security/notices/rss.xml" rel="self"/><copyright>2026 Canonical Ltd. Ubuntu and Canonical are registered trademarks of Canonical Ltd.</copyright><docs>http://www.rssboard.org/rss-specification</docs><generator>Feedgen</generator><lastBuildDate>Wed, 09 Sep 2026 21:05:55 +0000</lastBuildDate><item><title>USN-8716-2: FFmpeg vulnerabilities</title><link>https://ubuntu.com/security/notices/USN-8716-2</link><description>USN-8716-1 fixed several vulnerabilities in FFmpeg. This update provides
the corresponding fix for Ubuntu 26.04 LTS.

Original advisory details:

 It was discovered that FFmpeg incorrectly handled certain crafted media
 files in the VobSub subtitle demuxer. An attacker could possibly use
 this issue to cause a denial of service or execute arbitrary code.
 (CVE-2026-64830)

 It was discovered that FFmpeg incorrectly handled certain crafted HEVC
 bitstreams in the Vulkan HEVC hardware decoder. An attacker could
 possibly use this issue to cause a denial of service or execute
 arbitrary code. (CVE-2026-64831)

 It was discovered that FFmpeg incorrectly handled certain crafted video
 files in the NVDEC hardware decoder. An attacker could possibly use
 this issue to cause a denial of service or execute arbitrary code.
 (CVE-2026-64832)

 It was discovered that FFmpeg incorrectly handled certain crafted DTS
 audio streams in the S/PDIF muxer. An attacker could possibly use this
 issue to cause a denial of service or expose sensitive information.
 (CVE-2026-64833)

 It was discovered that FFmpeg incorrectly handled certain crafted RTP/ASF
 streams. An attacker could possibly use this issue to cause a denial of
 service. (CVE-2026-64834)

 It was discovered that FFmpeg incorrectly handled certain crafted ADX
 audio files. An attacker could possibly use this issue to cause a
 denial of service or execute arbitrary code. (CVE-2026-64835)

 It was discovered that FFmpeg incorrectly handled certain crafted AVI
 files in the TDSC video decoder. An attacker could possibly use this
 issue to cause a denial of service or execute arbitrary code.
 (CVE-2026-65703)

 It was discovered that FFmpeg incorrectly handled certain crafted
 ffconcat files processed via the TY demuxer. An attacker could possibly
 use this issue to cause a denial of service or execute arbitrary code.
 (CVE-2026-65704)

 It was discovered that FFmpeg incorrectly handled certain crafted video
 streams in the vf_floodfill video filter. An attacker could possibly
 use this issue to cause a denial of service or execute arbitrary code.
 (CVE-2026-65705)

 It was discovered that FFmpeg incorrectly handled certain crafted NV12
 video frames in the vf_swaprect video filter. An attacker could
 possibly use this issue to cause a denial of service or execute
 arbitrary code. (CVE-2026-65706)

 It was discovered that FFmpeg incorrectly handled certain crafted hvcC
 NAL arrays in the HEVC parser. An attacker could possibly use this
 issue to cause a denial of service or execute arbitrary code.
 (CVE-2026-75141)

 It was discovered that FFmpeg incorrectly handled certain crafted MPEG
 system headers. An attacker could possibly use this issue to cause a
 denial of service or execute arbitrary code. (CVE-2026-75142)

 It was discovered that FFmpeg incorrectly handled certain crafted
 network input in the librist protocol handler. An attacker could
 possibly use this issue to cause a denial of service or execute
 arbitrary code. (CVE-2026-75143)

 It was discovered that FFmpeg incorrectly handled certain crafted Dirac
 data units in the VC2 HQ RTP packetizer. An attacker could possibly use
 this issue to cause a denial of service or execute arbitrary code.
 (CVE-2026-75144)

 It was discovered that FFmpeg incorrectly handled certain crafted DASH
 manifests. An attacker could possibly use this issue to cause a denial
 of service or expose sensitive information. (CVE-2026-75146)</description><guid isPermaLink="false">https://ubuntu.com/security/notices/USN-8716-2</guid><pubDate>Wed, 09 Sep 2026 17:27:15 +0000</pubDate></item><item><title>USN-8675-2: Perl vulnerabilities</title><link>https://ubuntu.com/security/notices/USN-8675-2</link><description>USN-8675-1 fixed vulnerabilities in Perl. This update provides the
corresponding fix for Perl on Ubuntu 26.04 LTS.

Original advisory details:

 It was discovered that Perl incorrectly handled short source addresses
 in the Socket module. An attacker could possibly use this issue to
 trigger an out-of-bounds heap read, resulting in information disclosure.
 (CVE-2026-12087)

 It was discovered that Perl incorrectly handled regular expressions
 containing a large number of fixed string alternatives. An attacker
 could possibly use this issue to cause incorrect regular expression
 matches, resulting in security restrictions being bypassed.
 (CVE-2026-13221)

 It was discovered that Perl incorrectly handled certain large repeat
 counts when processing pack and unpack templates. An attacker could
 possibly use this issue to trigger an out-of-bounds heap read, resulting
 in information disclosure. (CVE-2026-57432)

 It was discovered that Perl incorrectly handled certain crafted data
 when deserializing with the Storable module. An attacker could possibly
 use this issue to trigger an integer overflow and application
 termination, resulting in a denial of service. (CVE-2026-57433)</description><guid isPermaLink="false">https://ubuntu.com/security/notices/USN-8675-2</guid><pubDate>Wed, 09 Sep 2026 14:10:59 +0000</pubDate></item><item><title>USN-8739-1: ImageMagick vulnerabilities</title><link>https://ubuntu.com/security/notices/USN-8739-1</link><description>It was discovered that ImageMagick incorrectly handled certain images. An
attacker could possibly use this issue to cause a denial of service. This
issue only affected Ubuntu 14.04 LTS, Ubuntu 16.04 LTS, Ubuntu 18.04 LTS,
Ubuntu 20.04 LTS, and Ubuntu 22.04 LTS. (CVE-2026-56366, CVE-2026-56368,
CVE-2026-56371, CVE-2026-56373)

It was discovered that ImageMagick incorrectly handled certain images. An
attacker could possibly use this issue to cause a denial of service or
execute arbitrary code. This issue only affected Ubuntu 22.04 LTS and
Ubuntu 26.04 LTS. (CVE-2026-56370)

It was discovered that ImageMagick incorrectly handled certain images. An
attacker could possibly use this issue to cause a denial of service or
expose sensitive information. This issue only affected Ubuntu 14.04 LTS,
Ubuntu 16.04 LTS, Ubuntu 18.04 LTS, Ubuntu 20.04 LTS, and Ubuntu 22.04 LTS.
(CVE-2026-56378)

It was discovered that ImageMagick incorrectly handled certain images. An
attacker could possibly use this issue to execute arbitrary code. This
issue only affected Ubuntu 14.04 LTS, Ubuntu 16.04 LTS, Ubuntu 18.04 LTS,
Ubuntu 20.04 LTS, and Ubuntu 22.04 LTS. (CVE-2026-56379)

It was discovered that ImageMagick incorrectly handled memory allocation in
certain operations. An attacker could possibly use this issue to cause a
denial of service. This issue only affected Ubuntu 16.04 LTS, Ubuntu 18.04
LTS, Ubuntu 20.04 LTS, Ubuntu 22.04 LTS, and Ubuntu 26.04 LTS.
(CVE-2026-61465)

It was discovered that ImageMagick incorrectly handled certain images. An
attacker could possibly use this issue to cause a denial of service. This
issue only affected Ubuntu 22.04 LTS and Ubuntu 26.04 LTS. (CVE-2026-61857)

It was discovered that ImageMagick incorrectly handled certain images. An
attacker could possibly use this issue to cause a denial of service.
(CVE-2026-61863, CVE-2026-61864, CVE-2026-61865, CVE-2026-61870)

It was discovered that ImageMagick incorrectly handled certain images. An
attacker could possibly use this issue to cause a denial of service. This
issue only affected Ubuntu 16.04 LTS, Ubuntu 18.04 LTS, Ubuntu 20.04 LTS,
Ubuntu 22.04 LTS, and Ubuntu 26.04 LTS. (CVE-2026-61866)

It was discovered that ImageMagick incorrectly handled certain images on
32-bit systems. An attacker could possibly use this issue to cause a denial
of service or execute arbitrary code. This issue only affected Ubuntu 16.04
LTS, Ubuntu 18.04 LTS, Ubuntu 20.04 LTS, Ubuntu 22.04 LTS, and Ubuntu 26.04
LTS. (CVE-2026-62946)</description><guid isPermaLink="false">https://ubuntu.com/security/notices/USN-8739-1</guid><pubDate>Tue, 08 Sep 2026 18:30:19 +0000</pubDate></item><item><title>USN-8670-3: curl vulnerability</title><link>https://ubuntu.com/security/notices/USN-8670-3</link><description>USN-8670-1 fixed a vulnerability in curl. This update provides the
corresponding update for Ubuntu 26.04 LTS.

Original advisory details:

 Joshua Rogers discovered that curl incorrectly handled reusing
 connections when client certificate settings changed. This could result
 in the wrong client certificates being used, contrary to expectations.</description><guid isPermaLink="false">https://ubuntu.com/security/notices/USN-8670-3</guid><pubDate>Tue, 08 Sep 2026 17:20:54 +0000</pubDate></item><item><title>USN-8679-2: Vim vulnerability</title><link>https://ubuntu.com/security/notices/USN-8679-2</link><description>USN-8679-1 fixed a vulnerability in Vim. This update provides the
corresponding update for Ubuntu 26.04 LTS.

Original advisory details:

 It was discovered that Vim incorrectly handled certain tags files. An
 attacker could possibly use this issue to execute arbitrary code.</description><guid isPermaLink="false">https://ubuntu.com/security/notices/USN-8679-2</guid><pubDate>Tue, 08 Sep 2026 17:12:17 +0000</pubDate></item><item><title>USN-8738-1: FFmpeg vulnerabilities</title><link>https://ubuntu.com/security/notices/USN-8738-1</link><description>It was discovered that FFmpeg incorrectly handled certain video frames
when using the hqdn3d filter. An attacker could possibly use this issue
to cause a denial of service or execute arbitrary code. (CVE-2026-66036)

Adrian Junge discovered that FFmpeg incorrectly handled certain
compressed video files. An attacker could possibly use this issue to
expose sensitive information. (CVE-2026-66038)

Adrian Junge discovered that FFmpeg incorrectly handled certain audio
files. An attacker could possibly use this issue to cause a denial of
service or execute arbitrary code. (CVE-2026-66039)

Adrian Junge discovered that FFmpeg incorrectly handled certain subtitle
files. An attacker could possibly use this issue to cause a denial of
service or execute arbitrary code. (CVE-2026-70628)

Adrian Junge discovered that FFmpeg incorrectly handled certain video
files. An attacker could possibly use this issue to cause a denial of
service or execute arbitrary code. (CVE-2026-70632)</description><guid isPermaLink="false">https://ubuntu.com/security/notices/USN-8738-1</guid><pubDate>Tue, 08 Sep 2026 17:01:04 +0000</pubDate></item><item><title>USN-8737-1: GNU C Library vulnerabilities</title><link>https://ubuntu.com/security/notices/USN-8737-1</link><description>It was discovered that GNU C Library had a buffer overflow in the strfmon
function when handling right-justification padding. An attacker could
possibly use this issue to cause a denial of service or execute arbitrary
code. This issue only affected Ubuntu 26.04 LTS. (CVE-2026-19499)

It was discovered that GNU C Library had an out-of-bounds stack array
access in the tdelete function. An attacker could possibly use this issue
to cause a denial of service or execute arbitrary code. (CVE-2026-19542)

It was discovered that GNU C Library incorrectly handled memory when
calling wordexp with the WRDE_APPEND flag. An attacker could possibly use
this issue to cause a denial of service. (CVE-2026-6368)

It was discovered that GNU C Library had a stack overflow in the wordexp
function when expanding paths beginning with a tilde followed by a long
username. An attacker could possibly use this issue to cause a denial of
service or execute arbitrary code. (CVE-2026-6791)

It was discovered that GNU C Library had a hang in the SHIFT_JISX0213
character set converter. An attacker could possibly use this issue to cause
a denial of service. (CVE-2026-77117)

It was discovered that GNU C Library had a hang in the EUC_JISX0213
character set converter. An attacker could possibly use this issue to cause
a denial of service. (CVE-2026-80489)</description><guid isPermaLink="false">https://ubuntu.com/security/notices/USN-8737-1</guid><pubDate>Tue, 08 Sep 2026 15:17:47 +0000</pubDate></item><item><title>USN-8736-1: Perl vulnerabilities</title><link>https://ubuntu.com/security/notices/USN-8736-1</link><description>It was discovered that Perl incorrectly handled certain large inputs during
regular expression matching. An attacker could possibly use this issue to
trigger out-of-bounds heap reads or writes, resulting in a denial of
service or arbitrary code execution. (CVE-2026-15534)

It was discovered that Perl incorrectly handled certain regular expression
containing alternative matching branches. An attacker could  possibly use
this issue to cause incorrect regular expression matches, resulting in
security restrictions being bypassed. (CVE-2026-19487)</description><guid isPermaLink="false">https://ubuntu.com/security/notices/USN-8736-1</guid><pubDate>Tue, 08 Sep 2026 14:25:07 +0000</pubDate></item><item><title>USN-8735-1: HSQLDB vulnerability</title><link>https://ubuntu.com/security/notices/USN-8735-1</link><description>It was discovered that HSQLDB incorrectly handled specially crafted
database files. An attacker could possibly use this issue to overwrite
arbitrary files.</description><guid isPermaLink="false">https://ubuntu.com/security/notices/USN-8735-1</guid><pubDate>Tue, 08 Sep 2026 11:51:18 +0000</pubDate></item><item><title>USN-8734-1: PHP vulnerabilities</title><link>https://ubuntu.com/security/notices/USN-8734-1</link><description>It was discovered that PHP incorrectly handled Apache map decoding in SOAP
servers with a typemap configured. A remote attacker could use this issue
to cause a NULL pointer dereference, resulting in a denial of service.
(CVE-2026-7262)

It was discovered that PHP incorrectly handled signed integer overflow in
the metaphone() function. An attacker could use this issue to cause an
out-of-bounds read, resulting in a denial of service. (CVE-2026-7568)

It was discovered that PHP incorrectly handled circular symbolic links in
phar archives. An attacker could use this issue to cause unbounded
recursion, resulting in a denial of service. (CVE-2026-7260)

It was discovered that PHP incorrectly escaped backslashes in the pgsql
extension when standard_conforming_strings is enabled. An attacker could
use this issue to perform SQL injection via a backslash breakout.
(CVE-2026-17543)</description><guid isPermaLink="false">https://ubuntu.com/security/notices/USN-8734-1</guid><pubDate>Mon, 07 Sep 2026 13:56:38 +0000</pubDate></item></channel></rss>