Vulnerability knowledge base

Applying security updates in a timely manner is critical to reducing risks, especially with high-impact vulnerabilities. Canonical releases Ubuntu Security Notices whenever a security fix is available for an official Ubuntu package.

When high-profile vulnerabilities are publicly disclosed, the Ubuntu security team also provides in-depth technical explanations and mitigation guidance in the form of vulnerability knowledge base articles.


Recent vulnerabilities

2026


 Fixed

Published 12 March 2026

Several vulnerabilities were discovered in AppArmor which could lead to denial of service, kernel memory information leak, removing security controls, or local privilege escalation to root user.

Published 12 March 2026

2025


Issues were discovered in AMD, Intel, and Hygon CPUs that result in information disclosure to KVM virtual machine guests under mitigations for the Spectre Variant 2 vulnerability.

Published 12 September 2025

2024


A new variant of the previously-disclosed BHI (also known as Spectre v2) vulnerabilities was discovered to affected certain Intel CPUs. The new publication shows that attacks are possible using vectors other than eBPF, leading to...

Published 24 April 2024


Resources


Ubuntu Pro

    Up to 12 years of security coverage for Ubuntu and 36,000 open-source applications and toolchains.