Critical NNCP Vulnerability Exposes File Access Risks in Ubuntu Systems

Critical NNCP Vulnerability Exposes File Access Risks in Ubuntu Systems

First seen 2 Jun 2026, 02:57 UTC UbuntuLinuxsecuritylaunchpad.net 89% similarity 57.8

Article Content

Browse articles
ThreatCluster

A vulnerability in the NNCP package was discovered, affecting multiple Ubuntu releases including 25.10, 24.04 LTS, and 22.04 LTS. The flaw allows remote attackers to read or write arbitrary files outside of the intended directory due to improper sanitization of file paths. This could lead to unauthorized access to sensitive data. The issue has been documented in Ubuntu Security Notice USN-8359-1. Users are advised to update their systems to the latest package versions to mitigate the risk. The vulnerability affects a wide range of users, particularly those utilizing the NNCP package for secure file and mail exchange. Ubuntu Pro users benefit from extended security coverage for these packages. A standard system update is recommended to address the issue.

Key Points: • NNCP vulnerability allows unauthorized file access on Ubuntu systems. • Affected versions include Ubuntu 25.10, 24.04 LTS, and 22.04 LTS. • Users are urged to update their systems to mitigate risks.

ThreatCluster AI

Timeline

2026-06-01
NNCP vulnerability disclosed
Ubuntu Security Notice USN-8359-1 revealed a flaw in NNCP affecting file access. Users are advised to update their systems to secure versions.
Ubuntu
2026-06-01
Linuxsecurity reports on NNCP threat
Linuxsecurity published details on the NNCP vulnerability, confirming its impact on multiple Ubuntu releases and recommending updates.
Linuxsecurity

Community

Browse all →