Linuxsecurity Critical Ceph Vulnerability in Ubuntu Allows Privilege Escalation
Article Content
- •Critical vulnerability in Ceph Object Gateway allows privilege escalation.
- •Affected Ubuntu versions include 26.04, 22.04, 20.04, and 18.04 LTS.
- •Users should update their systems to mitigate risks.
A significant vulnerability was discovered in the Ceph Object Gateway (RGW) SigV4 handler affecting Ubuntu systems. The flaw allows an attacker with a presigned URL to attach arbitrary unsigned x-amz-* headers, potentially escalating privileges beyond the intended access. This issue impacts multiple Ubuntu versions, including 26.04, 22.04, 20.04, and 18.04 LTS. Users are urged to update their systems to the latest package versions to mitigate the risk. No has been reported, but the vulnerability is critical due to its potential impact. The problem can be resolved through standard system updates. The vulnerability is documented under Ubuntu Security Notice USN-8867-1.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (2)
Following this threat?
Track Ubuntu in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Common questions
What versions of Ubuntu are affected?
Is there any active exploitation of this vulnerability?
How can I protect my systems?
Continue Reading
Critical Authentication Bypass in Cisco Catalyst SD-WAN Manager Exploited On September 30, 2026, Cisco disclosed a critical vulnerability (CVE-2026-76504) in the Catalyst SD-WAN Manager that allows unauthenticated remote attackers to bypass authentication and gain admin-level access to the system. This flaw stems from improper handling of URI encoding in HTTP requests, enabling attackers to…