Skip to content
Critical libevent Vulnerabilities Affecting Multiple Ubuntu Versions

Critical libevent Vulnerabilities Affecting Multiple Ubuntu Versions

First seen 29 Sep 2026, 21:04 UTC • •

Article Content

Browse articles
ThreatCluster AI
ThreatCluster •September 29, 2026 at 21:05 UTC
  • •Two critical vulnerabilities in libevent affect multiple Ubuntu LTS versions.
  • •Remote and local attackers can exploit these flaws for denial of service or code execution.
  • •Patches are available; immediate updates are recommended for affected systems.

Two vulnerabilities in the libevent library were discovered by Michał Majchrowicz and Marcin Wyczechowski, allowing remote and local attackers to potentially execute arbitrary code or cause denial of service. The vulnerabilities, identified as CVE-2026-63387 and CVE-2026-63388, affect Ubuntu versions 18.04 LTS, 20.04 LTS, 22.04 LTS, 24.04 LTS, and 26.04 LTS. Users are advised to update their systems to mitigate these risks. The vulnerabilities were published on August 20, 2026, and are confirmed to be exploitable. Affected users should prioritize applying the available patches to secure their systems. The issues stem from improper handling of DNS responses and connections within the library. CISA has confirmed the exploitation of these vulnerabilities, emphasizing the urgency of the situation.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated just now How this analysis works

Timeline

2026-08-20
CVE-2026-63387 and CVE-2026-63388 published
Two vulnerabilities in libevent were disclosed, affecting several Ubuntu LTS versions.
Linuxsecurity
2026-09-28
Ubuntu security notice USN-8840-1 released
Ubuntu published an advisory detailing the vulnerabilities and recommended updates for affected systems.
Ubuntu
2026-09-29
CISA confirms exploitation of vulnerabilities
CISA confirmed that the vulnerabilities in libevent are being actively exploited in the wild.
Linuxsecurity

More articles in this cluster (2)

Following this threat?

Track Ubuntu and CVE-2026-63387 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed