# USN-8845-1: GVfs vulnerabilities

Publisher-attributed story with a reviewed brief or permitted publisher paragraph. The original publisher is responsible for the linked reporting.

- Publisher: Ubuntu Security
- Category: Vulnerabilities
- Original publication time: 2026-09-30T15:54:56Z
- First observed by NexusTechWire: 2026-10-01T15:54:36Z
- Original source: https://ubuntu.com/security/notices/USN-8845-1
- NexusTechWire record: https://nexustechwire.com/news/news-5e63bf650605b465b182

## The brief

Ubuntu's GVfs update addresses two different risks: malicious SFTP data could cause memory corruption, while a local file-ownership flaw could enable root privilege escalation on specified recent LTS releases. The affected versions differ between the issues. Ubuntu says users need to restart their session after applying the relevant package updates.

AI-assisted NexusTechWire summary, checked against the linked source on 2026-10-01T19:12:54Z. Not independent reporting.

Read the full original: [Ubuntu Security](https://ubuntu.com/security/notices/USN-8845-1)

This record does not reproduce the complete article or represent independent confirmation of every source claim.
