Vulnerability knowledge base
Applying security updates in a timely manner is critical to reducing risks, especially with high-impact vulnerabilities. Canonical releases Ubuntu Security Notices whenever a security fix is available for an official Ubuntu package.
When high-profile vulnerabilities are publicly disclosed, the Ubuntu security team also provides in-depth technical explanations and mitigation guidance in the form of vulnerability knowledge base articles.
Recent vulnerabilities
2026
Published 6 April 2026
It was discovered that some AMD Zen processors did not properly verify the signature of CPU microcode which could lead to the loss of integrity and confidentiality if a malicious CPU microcode is loaded.
Published 6 April 2026
Published 12 March 2026
Several vulnerabilities were discovered in AppArmor which could lead to denial of service, kernel memory information leak, removing security controls, or local privilege escalation to root user.
Published 12 March 2026
2025
Published 12 September 2025
Issues were discovered in AMD, Intel, and Hygon CPUs that result in information disclosure to KVM virtual machine guests under mitigations for the Spectre Variant 2 vulnerability.
Published 12 September 2025
2024
Published 24 April 2024
A new variant of the previously-disclosed BHI (also known as Spectre v2) vulnerabilities was discovered to affected certain Intel CPUs. The new publication shows that attacks are possible using vectors other than eBPF, leading to...
Published 24 April 2024
Resources
Ubuntu security updates
Ubuntu Pro
Up to 15 years of security coverage for Ubuntu and 36,000 open-source applications and toolchains.