Views
10

Your rating
Rate update installation process

Log in to rate this update.
Login

Risk factor
No ratings yet. Be the first to rate this update.

Smooth installs 0%
Minor issues 0%
Major issues 0%

AI enhanced content

Update Summary

USN-8722-1 addresses multiple libssh2 security issues on Ubuntu Server 24.04 LTS (noble). A standard system update installs libssh2-1t64 1.11.0-4.1ubuntu0.24.04.4. Reference IDs: CVE-2026-66032, CVE-2026-66033, CVE-2026-66035.

Update Details

Security

  • Fixes a crash or possible arbitrary code execution issue in libssh2 when handling certain SFTP server responses (CVE-2026-66032).
  • Fixes a denial-of-service issue caused by incorrect AES-GCM cipher negotiation handling (CVE-2026-66033).
  • Fixes a crash or possible arbitrary code execution issue in libssh2 when handling Encrypt-then-MAC cipher negotiation (CVE-2026-66035).

Hints

  • A standard system update will apply the fix.
  • For Ubuntu 24.04 LTS noble, update libssh2-1t64 to 1.11.0-4.1ubuntu0.24.04.4.

Product Information

Vendor: Canonical

Product: Ubuntu Server

Product type: Software

Application category: Utilities

Platform: Linux

Variant: 24.04 LTS (Noble Numbat)

Version: libssh2-1t64 1.11.0-4.1ubuntu0.24.04.4

Vendor release date: Sep 3, 2026

Original release notes: View on vendor site

Published on updatealert.io: Sep 6, 2026

Description: Server operating system for Linux infrastructure and workloads.