Linuxsecurity Multiple CryptX Vulnerabilities Affect Ubuntu 18.04 LTS and Others
Article Content
- •CryptX vulnerabilities affect multiple Ubuntu LTS versions, primarily 18.04.
- •CVE-2018-25099 allows attackers to bypass authentication checks.
- •Patches are available for all affected Ubuntu versions.
A series of vulnerabilities in CryptX have been identified, primarily affecting Ubuntu 18.04 LTS. The issues include failure to verify authentication tags during GCM and ChaCha20-Poly1305 decryption (CVE-2018-25099), malformed unicode handling (CVE-2025-40912), and an integer overflow (CVE-2025-40914). Attackers could exploit these vulnerabilities to manipulate ciphertext, leading to data integrity violations, unexpected behavior, or memory corruption. The vulnerabilities are addressed in updates for Ubuntu 18.04 LTS and its derivatives, including Ubuntu 20.04, 22.04, and 24.04 LTS. Users are advised to update their systems to mitigate these risks. The vulnerabilities were disclosed on March 26, 2026, with CVE-2018-25099 published on March 18, 2024, and the others on June 11, 2025. The current status is that patches are available for affected systems.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (2)
Following this threat?
Track Ubuntu and CVE-2018-25099 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Critical Authentication Bypass in Rejetto HFS Exploited Within 24 Hours Anthropic's Mythos model identified a critical authentication bypass in Rejetto HTTP File Server (HFS), tracked as CVE-2026-61500, allowing remote code execution. Discovered by Horizon3 researcher Zach Hanley, the flaw was revealed on September 27, 2026, and exploitation began within 24 hours, with attacks traced to…
Critical Citrix NetScaler Zero-Day Vulnerabilities Exploited In late September 2026, two critical zero-day vulnerabilities (CVE-2026-88771 and CVE-2026-88772) in Citrix NetScaler ADC and Gateway were actively exploited, allowing remote code execution. The Cybersecurity and Infrastructure Security Agency (CISA) added these CVEs to its Known Exploited Vulnerabilities catalog on…