Critical Remote Code Execution Vulnerability in Ubuntu Dottie

Critical Remote Code Execution Vulnerability in Ubuntu Dottie

First seen 13 Feb 2026, 03:09 UTC UbuntuLinuxsecurity 85% similarity 62.1

Article Content

Browse articles
ThreatCluster

A critical vulnerability in Dottie affects Ubuntu 22.04 LTS and 20.04 LTS, allowing remote code execution via specially crafted network traffic. Discovered by Yuhan Gao and Peng Zhou, the issue stems from prototype pollution when altering the __proto__ attribute, enabling attackers to execute arbitrary programs.

ThreatCluster AI

Timeline

2023-06-10
CVE-2023-26132 published
2026-02-12
Ubuntu 22.04 and 20.04 LTS affected by Dottie vulnerability
2026-02-12
Vulnerability discovered by Yuhan Gao and Peng Zhou

Community

Browse all →

Tracked Entities in This Story