Update

USN-8053-1: libvpx vulnerability

USN-8053-1: libvpx vulnerability

Publication date:19 February 2026
Overview: libvpx could be made to crash or run programs if it opened a specially crafted file.

Packages

libvpx - VP8 and VP9 video codec

Details
It was discovered that libvpx did not properly handle certain malformed
media files. If an application using libvpx opened a specially crafted
file, a remote attacker could cause a denial of service, or possibly
execute arbitrary code.

Update instructions
The problem can be corrected by updating your system to the following package versions:

  • 25.10 questing libvpx9 – 1.15.0-2.1ubuntu0.1
  • 24.04 LTS noble libvpx9 – 1.14.0-1ubuntu2.3
  • 22.04 LTS jammy libvpx7 – 1.11.0-2ubuntu2.5
The manufacturer Canonical has not yet set up its devicebase profile. Content such as updates, compatibilities and support may only be maintained with a delay.
Receive Important Update Messages Stay tuned for upcoming Canonical updates

Was the content helpful to you?

Advertisement Advertise here?
Udemy IT certification ad