A security notice published on September 28, 2026 reports an authentication flaw in the Plasma Workspace session manager that could let a local attacker execute code as another user.
Notice USN-8829-1, published on September 28, 2026, concerns a flaw in the Plasma Workspace session manager. The report says local clients were not properly authenticated when connecting to the manager; a local attacker could exploit the issue to execute arbitrary code as another user.
To consult and verify the case, look up identifier USN-8829-1 in Ubuntu security notices and check the original text and any updates. The report alone does not specify which versions are affected or which remediation steps apply; confirm those details in the notice before acting.