Views
7

Your rating
Rate update installation process

Log in to rate this update.
Login

Risk factor
No ratings yet. Be the first to rate this update.

Smooth installs 0%
Minor issues 0%
Major issues 0%

AI enhanced content

Update Summary

USN-8741-1 addresses two Flatpak vulnerabilities in Ubuntu 24.04 LTS. A malicious app could access host files outside the sandbox or delete arbitrary files on the host. Reference IDs: CVE-2026-34078, CVE-2026-34079.

Update Details

Security

  • Fixed improper path validation in sandbox-expose options that could let a malicious or compromised Flatpak app access arbitrary host files and gain code execution in the host context (CVE-2026-34078).
  • Fixed improper path validation when removing outdated ld.so cache files, which could allow deletion of arbitrary host files (CVE-2026-34079).

Hints

  • A standard system update installs the required fixes.
  • For Ubuntu 24.04 LTS (noble), update flatpak and libflatpak0 to 1.14.6-1ubuntu0.1+esm1.

Product Information

Vendor: Canonical

Product: Ubuntu Server

Product type: Software

Application category: Utilities

Platform: Linux

Variant: 24.04 LTS (Noble Numbat)

Version: 1.14.6-1ubuntu0.1+esm1

Vendor release date: Sep 10, 2026

Original release notes: View on vendor site

Published on updatealert.io: Sep 10, 2026

Description: Server operating system for Linux infrastructure and workloads.