A security notice published on September 28, 2026 reports two LXC flaws: possible exposure of sensitive information in specific Ubuntu versions and possible denial of service.
Notice USN-8826-1, published on September 28, 2026, describes two LXC vulnerabilities. The first stems from incorrect handling of certain failure-message logging and could allow sensitive information to be exposed. The notice says it affects only Ubuntu 16.04 LTS, 18.04 LTS, 20.04 LTS, and 24.04 LTS (CVE-2022-47952). The second involves incorrect handling of certain forms of user authorization and could cause denial of service (CVE-2026-39402). The notice does not say which versions are affected by the second flaw.
The notice credits Maher Azzouzi and Sam Sanoop with the respective discoveries. Consult the original publication through Ubuntu's official security channel to confirm its scope and check which remediation guidance applies to your environment; do not infer that an unlisted version is affected or protected.