CVE-2026-47331 PUBLISHED

Use-after-free in Ubuntu Linux AppArmor notification handling

Assigner: canonical
Reserved: 19.05.2026 Published: 28.05.2026 Updated: 29.05.2026

Ubuntu Linux 6.8 contains AppArmor SAUCE patches which fail to acquire a lock when modifying a linked list. An unprivileged local user could trigger the race condition that can lead to a use-after-free (UAF) and, theoretically, arbitrary code execution.

Metrics

CVSS Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS Score: 7.8

Product Status

Vendor Canonical
Product Ubuntu Linux
Versions Default: unaffected
  • affected from 6.8.0 to 6.8.0-124.124 (excl.)

Credits

  • Tristan Madani (@TristanInSec), Talence Security finder

References

Problem Types

  • CWE-416 Use After Free CWE