CVE-2026-47332
Analyzed
Analyzed - Analysis Complete
AppArmor Out-of-Bounds Read in Ubuntu Linux
Publication date: 2026-05-28
Last updated on: 2026-06-09
Assigner: Canonical Ltd.
Description
Description
Ubuntu Linux 6.8, 6.17 and 7.0 contain AppArmor SAUCE patches which incorrectly validate the size of an internal structure, leading to an out-of-bounds read in notification handling code. The bug can be triggered by an unprivileged local user and can result in information disclosure from adjacent slab objects.
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| canonical | ubuntu_linux | 24.04 |
| canonical | ubuntu_linux | 25.10 |
| canonical | ubuntu_linux | 26.04 |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-125 | The product reads data past the end, or before the beginning, of the intended buffer. |