By using this site, you agree to the Privacy Policy and Terms of Use.
Accept
World of SoftwareWorld of SoftwareWorld of Software
  • News
  • Software
  • Mobile
  • Computing
  • Gaming
  • Videos
  • More
    • Gadget
    • Web Stories
    • Trending
    • Press Release
Search
  • Privacy
  • Terms
  • Advertise
  • Contact
Copyright © All Rights Reserved. World of Software.
Reading: Ubuntu’s AppArmor Hit By Several Security Issues – Can Yield Local Privilege Escalation
Share
Sign In
Notification Show More
Font ResizerAa
World of SoftwareWorld of Software
Font ResizerAa
  • Software
  • Mobile
  • Computing
  • Gadget
  • Gaming
  • Videos
Search
  • News
  • Software
  • Mobile
  • Computing
  • Gaming
  • Videos
  • More
    • Gadget
    • Web Stories
    • Trending
    • Press Release
Have an existing account? Sign In
Follow US
  • Privacy
  • Terms
  • Advertise
  • Contact
Copyright © All Rights Reserved. World of Software.
World of Software > Computing > Ubuntu’s AppArmor Hit By Several Security Issues – Can Yield Local Privilege Escalation
Computing

Ubuntu’s AppArmor Hit By Several Security Issues – Can Yield Local Privilege Escalation

News Room
Last updated: 2026/03/12 at 9:50 PM
News Room Published 12 March 2026
Share
Ubuntu’s AppArmor Hit By Several Security Issues – Can Yield Local Privilege Escalation
SHARE

The AppArmor Linux kernel security module used notably by Ubuntu Linux and currently maintained by Canonical has been affected by several vulnerabilities made public today.

Qualys researchers discovered vulnerabilities within the AppArmor code of the Linux kernel they are calling CrackArmor. Some issues can lead to denial of service to kernel memory information leaks but when paired with a sudo discovery can together lead to local privilege escalation.

CrackArmor

This evening on the Ubuntu Blog is publicizing these AppArmor security vulnerabilities and the important fixes. Updates for all affected Ubuntu Linux releases are rolling out.

This tracking ticket sums up the AppArmor kernel fixes as:

– apparmor: validate DFA start states are in bounds in unpack_pdb

– apparmor: fix memory leak in verify_header

– apparmor: replace recursive profile removal with iterative approach

– apparmor: fix: limit the number of levels of policy namespaces

– apparmor: fix side-effect bug in match_char() macro usage

– apparmor: fix missing bounds check on DEFAULT table in verify_dfa()

– apparmor: Fix double free of ns_name in aa_replace_profiles()

– apparmor: fix unprivileged local user can do privileged policy management

– apparmor: fix differential encoding verification

– apparmor: fix race on rawdata dereference

– apparmor: fix race between freeing data and fs accessing it

Where it gets nasty is this issue for sudo that can in turn lead to privilege escalations for local users.

There was also discovered to be unsafe behavior within the su utility that can lead to the exploitation of the AppArmor vulnerabilities in host deployments. So hardening to su is also being carried out.

The sudo issue affects Ubuntu Linux releases back to Ubuntu 22.04 LTS. For the su hardening in util-linux that goes back to Ubuntu 20.04 LTS.

More details on the Qualys “CrackArmor” discovery for these AppArmor issues can be found via this advisory bulletin.

Sign Up For Daily Newsletter

Be keep up! Get the latest breaking news delivered straight to your inbox.
By signing up, you agree to our Terms of Use and acknowledge the data practices in our Privacy Policy. You may unsubscribe at any time.
Share This Article
Facebook Twitter Email Print
Share
What do you think?
Love0
Sad0
Happy0
Sleepy0
Angry0
Dead0
Wink0
Previous Article The Sci-Fi Western That Turned Into One Of Harrison Ford’s Biggest Box Office Flops – BGR The Sci-Fi Western That Turned Into One Of Harrison Ford’s Biggest Box Office Flops – BGR
Next Article Best Hisense deal: Save 2.03 on the Hisense 100-inch Class QD7 Mini-LED 4K TV at Amazon Best Hisense deal: Save $502.03 on the Hisense 100-inch Class QD7 Mini-LED 4K TV at Amazon
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Stay Connected

248.1k Like
69.1k Follow
134k Pin
54.3k Follow

Latest News

Sampled vivas are pivotal in combating AI cheating
Software
MacBook Neo Teardown Reveals It's the Most Repairable Apple Laptop in Ages
MacBook Neo Teardown Reveals It's the Most Repairable Apple Laptop in Ages
News
How to Write GRC Documentation That Non-
Technical Stakeholders Actually Understand | HackerNoon
How to Write GRC Documentation That Non- Technical Stakeholders Actually Understand | HackerNoon
Computing
Apple to cut App Store commission rates in China starting March 15 – 9to5Mac
Apple to cut App Store commission rates in China starting March 15 – 9to5Mac
News

You Might also Like

How to Write GRC Documentation That Non-
Technical Stakeholders Actually Understand | HackerNoon
Computing

How to Write GRC Documentation That Non- Technical Stakeholders Actually Understand | HackerNoon

14 Min Read
Elden Ring producer Hidetaka Miyazaki visits Tencent in Shenzhen · TechNode
Computing

Elden Ring producer Hidetaka Miyazaki visits Tencent in Shenzhen · TechNode

3 Min Read
When Alignment Breaks, Conversion Dies: A Founder Operating System for AI-Driven Markets | HackerNoon
Computing

When Alignment Breaks, Conversion Dies: A Founder Operating System for AI-Driven Markets | HackerNoon

9 Min Read
The Tesla exemption no more: Rivian and Lucid break through Washington state’s dealership wall
Computing

The Tesla exemption no more: Rivian and Lucid break through Washington state’s dealership wall

4 Min Read
//

World of Software is your one-stop website for the latest tech news and updates, follow us now to get the news that matters to you.

Quick Link

  • Privacy Policy
  • Terms of use
  • Advertise
  • Contact

Topics

  • Computing
  • Software
  • Press Release
  • Trending

Sign Up for Our Newsletter

Subscribe to our newsletter to get our newest articles instantly!

World of SoftwareWorld of Software
Follow US
Copyright © All Rights Reserved. World of Software.
Welcome Back!

Sign in to your account

Lost your password?