Ubuntu USN · August 2026

Ubuntu Linux Security Advisory: August 2026 Netfilter Zero-Day Triage

Technical triage of Canonical's August 2026 kernel update patching critical Netfilter nf_tables double-free and privilege escalation vulnerabilities.

28
Kernel CVEs Fixed
1
Local Root Zero-Day
7.8
CVSS nf_tables Flaw
Immediate
Cloud Fleet Urgency

Triage Eksekutif dan Penilaian Risiko

Ubuntu's August 2026 security release resolves a widespread local privilege escalation flaw in netfilter/nf_tables (CVE-2024-1086). By supplying malicious rule evaluations, unprivileged containers escape user namespaces to gain full host root privileges.

Matriks Triage Kerentanan Pilihan

Pengenal CVE Subsistem / Komponen Dampak CVSS Eksploitasi Aktif?
CVE-2024-1086Netfilter / nf_tablesDouble Free / LPE7.8 HighYES (In-The-Wild)
CVE-2024-36971IP Networking RouteMemory Leak / DoS6.2 MediumNo
CVE-2024-36972ALSA Audio SubsystemArray Out-of-Bounds5.8 MediumNo
ANALISIS KODE PILIHAN

Deep Dive: Linux Kernel Netfilter nf_tables Double Free Teardown →

Examine the C patch in net/netfilter/nf_tables_api.c that fixes improper verdict handling causing double-decrements of packet sk_buff refcounts.

← Jelajahi Direktori Keamanan Lengkap Semua Pembaruan Keamanan →