Views
8

Your rating
Rate update installation process

Log in to rate this update.
Login

Risk factor
No ratings yet. Be the first to rate this update.

Smooth installs 0%
Minor issues 0%
Major issues 0%

AI enhanced content

Update Summary

USN-8712-1 addresses three pyasn1 denial-of-service vulnerabilities in Ubuntu Server 22.04 LTS (jammy). Update to python3-pyasn1 0.4.8-1ubuntu0.3. Reference IDs: CVE-2026-59884, CVE-2026-59885, CVE-2026-59886.

Update Details

Security

  • Fixes a denial-of-service issue where pyasn1 did not properly bound long-form tag identifiers when parsing BER, CER, or DER data (CVE-2026-59884).
  • Fixes quadratic-time processing of OBJECT IDENTIFIER and RELATIVE-OID values that could consume excessive CPU resources (CVE-2026-59885).
  • Fixes incorrect conversion of decoded REAL values to Python float types that could consume excessive CPU and memory resources (CVE-2026-59886).

Hints

  • A standard system update installs the fix.
  • For Ubuntu Server 22.04 LTS (jammy), install python3-pyasn1 version 0.4.8-1ubuntu0.3.

Product Information

Vendor: Canonical

Product: Ubuntu Server

Product type: Software

Application category: Utilities

Platform: Linux

Variant: 22.04 LTS (Jammy Jellyfish)

Version: python3-pyasn1 0.4.8-1ubuntu0.3

Vendor release date: Sep 1, 2026

Original release notes: View on vendor site

Published on updatealert.io: Sep 2, 2026

Description: Server operating system for Linux infrastructure and workloads.