Ubuntu Linux 6.8, 6.17 and 7.0 contain AppArmor SAUCE patches which incorrectly attempt to free a pointer which was not previously kmalloc()d, while at the same time leaking allocated memory. The bug can be triggered by an unprivileged local user and can result in the corruption of slab metadata and could lead to resource exhaustion.
References
Configurations
Configuration 1 (hide)
|
History
09 Jun 2026, 16:33
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://git.launchpad.net/~ubuntu-kernel/ubuntu/+source/linux/+git/noble/commit/?id=7f3c4902c39432ce7ea0d384cb70eba282247fac - Patch |
09 Jun 2026, 14:30
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://git.launchpad.net/~ubuntu-kernel/ubuntu/+source/linux/+git/noble/commit/?id=7f3c4902c39432ce7ea0d384cb70eba282247fac - Vendor Advisory | |
| First Time |
Canonical ubuntu Linux
Canonical |
|
| CPE | cpe:2.3:o:canonical:ubuntu_linux:25.10:*:*:*:*:*:*:* cpe:2.3:o:canonical:ubuntu_linux:26.04:*:*:*:*:*:*:* cpe:2.3:o:canonical:ubuntu_linux:24.04:*:*:*:*:*:*:* |
28 May 2026, 19:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-05-28 19:16
Updated : 2026-06-09 16:33
NVD link : CVE-2026-47328
Mitre link : CVE-2026-47328
CVE.ORG link : CVE-2026-47328
JSON object : View
Products Affected
canonical
- ubuntu_linux
CWE
CWE-590
Free of Memory not on the Heap
