USN-8826-1: LXC vulnerabilities

Publication date

28 September 2026

Overview

Several security issues were fixed in LXC.


Packages

  • lxc - Linux Containers userspace tools

Details

Maher Azzouzi discovered that LXC did not correctly handle logging
certain failure messages. An attacker could possibly use this issue
to leak sensitive information. This issue only affected
Ubuntu 16.04 LTS, Ubuntu 18.04 LTS, Ubuntu 20.04 LTS,
Ubuntu 22.04 LTS and Ubuntu 24.04 LTS. (CVE-2022-47952)

Sam Sanoop discovered that LXC did not correctly handle certain forms
of user authorization. An attacker could possibly use this issue to
cause a denial of service. (CVE-2026-39402)

Maher Azzouzi discovered that LXC did not correctly handle logging
certain failure messages. An attacker could possibly use this issue
to leak sensitive information. This issue only affected
Ubuntu 16.04 LTS, Ubuntu 18.04 LTS, Ubuntu 20.04 LTS,
Ubuntu 22.04 LTS and Ubuntu 24.04 LTS. (CVE-2022-47952)

Sam Sanoop discovered that LXC did not correctly handle certain forms
of user authorization. An attacker could possibly use this issue to
cause a denial of service. (CVE-2026-39402)

Update instructions

After a standard system update you need to restart LXC containers to make all the necessary changes.

Learn more about how to get the fixes.

The problem can be corrected by updating your system to the following package versions:

Ubuntu Release Package Version
26.04 LTS resolute liblxc-common –  1:6.0.6-1ubuntu1+esm1  
liblxc1t64 –  1:6.0.6-1ubuntu1+esm1  
libpam-cgfs –  1:6.0.6-1ubuntu1+esm1  
lxc –  1:6.0.6-1ubuntu1+esm1  
lxc-dev –  1:6.0.6-1ubuntu1+esm1  
lxc-tests –  1:6.0.6-1ubuntu1+esm1  
24.04 LTS noble liblxc-common –  1:5.0.3-2ubuntu7.3+esm1  
liblxc-dev –  1:5.0.3-2ubuntu7.3+esm1  
liblxc1t64 –  1:5.0.3-2ubuntu7.3+esm1  
libpam-cgfs –  1:5.0.3-2ubuntu7.3+esm1  
lxc –  1:5.0.3-2ubuntu7.3+esm1  
lxc-dev –  1:5.0.3-2ubuntu7.3+esm1  
lxc-tests –  1:5.0.3-2ubuntu7.3+esm1  
lxc-utils –  1:5.0.3-2ubuntu7.3+esm1  
lxc1 –  1:5.0.3-2ubuntu7.3+esm1  
22.04 LTS jammy liblxc-common –  1:5.0.0~git2209-g5a7b9ce67-0ubuntu1.1+esm1  
liblxc-dev –  1:5.0.0~git2209-g5a7b9ce67-0ubuntu1.1+esm1  
liblxc1 –  1:5.0.0~git2209-g5a7b9ce67-0ubuntu1.1+esm1  
libpam-cgfs –  1:5.0.0~git2209-g5a7b9ce67-0ubuntu1.1+esm1  
lxc –  1:5.0.0~git2209-g5a7b9ce67-0ubuntu1.1+esm1  
lxc-dev –  1:5.0.0~git2209-g5a7b9ce67-0ubuntu1.1+esm1  
lxc-utils –  1:5.0.0~git2209-g5a7b9ce67-0ubuntu1.1+esm1  
lxc1 –  1:5.0.0~git2209-g5a7b9ce67-0ubuntu1.1+esm1  
20.04 LTS focal liblxc-common –  1:4.0.12-0ubuntu1~20.04.1+esm1  
liblxc-dev –  1:4.0.12-0ubuntu1~20.04.1+esm1  
liblxc1 –  1:4.0.12-0ubuntu1~20.04.1+esm1  
libpam-cgfs –  1:4.0.12-0ubuntu1~20.04.1+esm1  
lxc –  1:4.0.12-0ubuntu1~20.04.1+esm1  
lxc-dev –  1:4.0.12-0ubuntu1~20.04.1+esm1  
lxc-utils –  1:4.0.12-0ubuntu1~20.04.1+esm1  
lxc1 –  1:4.0.12-0ubuntu1~20.04.1+esm1  
18.04 LTS bionic liblxc-common –  3.0.3-0ubuntu1~18.04.3+esm1  
liblxc-dev –  3.0.3-0ubuntu1~18.04.3+esm1  
liblxc1 –  3.0.3-0ubuntu1~18.04.3+esm1  
libpam-cgfs –  3.0.3-0ubuntu1~18.04.3+esm1  
lxc –  3.0.3-0ubuntu1~18.04.3+esm1  
lxc-dev –  3.0.3-0ubuntu1~18.04.3+esm1  
lxc-utils –  3.0.3-0ubuntu1~18.04.3+esm1  
lxc1 –  3.0.3-0ubuntu1~18.04.3+esm1  
16.04 LTS xenial liblxc1 –  2.0.11-0ubuntu1~16.04.3+esm1  
lua-lxc –  2.0.11-0ubuntu1~16.04.3+esm1  
lxc –  2.0.11-0ubuntu1~16.04.3+esm1  
lxc-common –  2.0.11-0ubuntu1~16.04.3+esm1  
lxc-dev –  2.0.11-0ubuntu1~16.04.3+esm1  
lxc-templates –  2.0.11-0ubuntu1~16.04.3+esm1  
lxc-tests –  2.0.11-0ubuntu1~16.04.3+esm1  
lxc1 –  2.0.11-0ubuntu1~16.04.3+esm1  
python3-lxc –  2.0.11-0ubuntu1~16.04.3+esm1  

Reduce your security exposure

Ubuntu Pro provides ten-year security coverage to 25,000+ packages in Main and Universe repositories, and it is free for up to five machines.


Have additional questions?

Talk to a member of the team ›