From gregory.herrero at oracle.com Fri Jul 17 14:30:26 2026 From: gregory.herrero at oracle.com (Oracle Ksplice) Date: Fri, 17 Jul 2026 14:30:26 +0000 Subject: [Ksplice][Ubuntu-24.04-Updates] New Ksplice updates for Ubuntu 24.04 Noble (USN-8373-1) Message-ID: Synopsis: USN-8373-1 can now be patched using Ksplice CVEs: CVE-2026-31676 CVE-2026-43284 CVE-2026-43494 CVE-2026-43500 CVE-2026-45998 CVE-2026-46000 CVE-2026-46300 CVE-2026-46323 CVE-2026-46333 CVE-2026-47333 Systems running Ubuntu 24.04 Noble can now use Ksplice to patch against the latest Ubuntu Security Notice, USN-8373-1. INSTALLING THE UPDATES We recommend that all users of Ksplice Uptrack running Ubuntu 24.04 Noble install these updates. On systems that have "autoinstall = yes" in /etc/uptrack/uptrack.conf, these updates will be installed automatically and you do not need to take any action. Alternatively, you can install these updates by running: # /usr/sbin/uptrack-upgrade -y DESCRIPTION * CVE-2026-31676, CVE-2026-43500, CVE-2026-45998, CVE-2026-46000: Privilege escalation in RxRPC session sockets driver. * CVE-2026-43284: Privilege escalation in ESP transformation driver. * CVE-2026-43494: Double-free in Reliable Datagram Sockets Protocol driver. * CVE-2026-46300: Privilege escalation in Networking driver. * CVE-2026-46323: Use-after-free in Generic Receive Offload driver. * CVE-2026-46333: Permission bypass in ptrace subsystem. * CVE-2026-47333: Out-of-bounds memory access in AppArmor driver. SUPPORT Ksplice support is available at ksplice-support_ww at oracle.com.