Views
11

Your rating
Rate update installation process

Log in to rate this update.
Login

Risk factor
No ratings yet. Be the first to rate this update.

Smooth installs 0%
Minor issues 0%
Major issues 0%

AI enhanced content

Update Summary

USN-8719-1 updates APR-util on Ubuntu 22.04 LTS to address four security issues, including a password hash comparison flaw and multiple heap-based buffer overflows. The advisory covers CVE-2025-49506, CVE-2026-32327, CVE-2026-34501, and CVE-2026-34502.

Update Details

Security

  • Fixed non-constant-time password hash comparisons that could leak sensitive information (CVE-2025-49506).
  • Fixed recursive XML element quoting handling that could cause a denial of service (CVE-2026-32327).
  • Fixed a Redis client heap-based buffer overflow that could allow crashes or arbitrary code execution (CVE-2026-34501).
  • Fixed a memcached client heap-based buffer overflow that could allow crashes or arbitrary code execution (CVE-2026-34502).

Hints

  • A standard system update installs the required fix.
  • Ubuntu 22.04 LTS package version: libaprutil1 1.6.1-5ubuntu4.22.04.3.

Product Information

Vendor: Canonical

Product: Ubuntu Server

Product type: Software

Application category: Utilities

Platform: Linux

Variant: 22.04 LTS (Jammy Jellyfish)

Version: 1.6.1-5ubuntu4.22.04.3

Vendor release date: Sep 3, 2026

Original release notes: View on vendor site

Published on updatealert.io: Sep 4, 2026

Description: Server operating system for Linux infrastructure and workloads.