Critical Code Execution Vulnerability in Mistral Affects Multiple Ubuntu Releases

Critical Code Execution Vulnerability in Mistral Affects Multiple Ubuntu Releases

First seen 11 Jun 2026, 18:09 UTC UbuntuLinuxsecuritylaunchpad.net 87% similarity 74.0

Article Content

Browse articles
ThreatCluster

A significant security vulnerability has been identified in Mistral, the OpenStack Workflow Service, affecting Ubuntu 26.04 LTS, 25.10, 24.04 LTS, and 22.04 LTS. Discovered by Eduardo Gonzalez Gutierrez and Arnaud Morin, the flaw allows attackers to execute arbitrary code on Mistral workers and potentially extract sensitive information, including service credentials. The vulnerability arises from improper enforcement of access policies on certain API endpoints. Users are advised to update their systems to the specified package versions to mitigate the risk. A standard system update will address the issue across all affected versions. This vulnerability is critical due to the potential for unauthorized access and data exposure.

Key Points: • Mistral vulnerability allows arbitrary code execution on affected Ubuntu systems. • Sensitive data, including service credentials, may be exposed due to this flaw. • Users must update to specific package versions to mitigate the vulnerability.

ThreatCluster AI

Timeline

2026-06-11
Mistral vulnerability disclosed
Eduardo Gonzalez Gutierrez and Arnaud Morin reported a critical vulnerability in Mistral affecting multiple Ubuntu releases.
Linuxsecurity
2026-06-11
Ubuntu releases security notice USN-8422-1
Ubuntu issued a security notice detailing the Mistral vulnerability and recommended updates for affected systems.
Ubuntu

Community

Browse all →

Tracked Entities in This Story