Canonical Ubuntu Server 22.04 LTS (Jammy Jellyfish) Update Version 2.1.12-stable-1ubuntu0.1
Your rating
Rate update installation process
Risk factor
No ratings yet. Be the first to rate this update.
AI enhanced content
Update Summary
USN-8710-1 fixes multiple libevent security issues on Ubuntu 22.04 LTS Jammy Jellyfish. The update addresses use-after-free, HTTP request smuggling, out-of-bounds read, resource exhaustion, and security restriction bypass issues.
Update Details
Security
- Fixes a use-after-free in certain empty output buffers that could lead to denial of service or arbitrary code execution (CVE-2026-63381).
- Fixes HTTP request boundary desynchronization that could allow HTTP request smuggling (CVE-2026-63382).
- Fixes an out-of-bounds read in malformed tagged RPC data that could cause denial of service (CVE-2026-63383).
- Fixes excessive resource consumption from large tagged RPC payload lengths that could cause denial of service (CVE-2026-63384).
- Fixes inconsistent handling of HTTP URIs and header values that could bypass security restrictions (CVE-2026-63385).
Hints
- A standard system update installs the required fixes.
- For Ubuntu 22.04 LTS jammy, update
libevent-2.1-7,libevent-core-2.1-7,libevent-dev, andlibevent-extra-2.1-7to2.1.12-stable-1ubuntu0.1.
Product Information
Vendor: Canonical
Product: Ubuntu Server
Product type: Software
Application category: Utilities
Platform: Linux
Variant: 22.04 LTS (Jammy Jellyfish)
Version: 2.1.12-stable-1ubuntu0.1
Vendor release date: Sep 1, 2026
Original release notes: View on vendor site
Published on updatealert.io: Sep 2, 2026
Description: Server operating system for Linux infrastructure and workloads.