June 8th, 2026
The system could crash or be made to run programs as an administrator.
Package(s) : linux-image-ql-generic,
qlustar-module-core-jammy-amd64-13.4,
qlustar-module-core-noble-amd64-14.1
Qlustar releases : 13, 14
Affected versions: All versions prior to this update
Vulnerability : privilege escalation/denial of service
Problem type : local
Qlustar-specific : no
CVE Id(s) : Not documented
A number of vulnerabilities and bugs have been discovered in the 6.12.x Linux kernel series since the last Qlustar 14 release based on 6.12.89. They may lead to a denial of service or privilege escalation.
The most recent qlustar kernel 6.12.92-ql-generic-14-11 also contains a fix for the recently discovered CIFSwitch vulnerability (CVE-2026-46243) which could allow a local root exploit.
Please check the following web pages that contain details of the fixes in each release after 6.12.89 up to the current Qlustar kernel 6.12.92:
Linux kernel 6.12.92 Linux kernel 6.12.91 Linux kernel 6.12.90
A number of vulnerabilities and bugs have been discovered in the 5.15.x Linux kernel series since the last Qlustar 13.0 release based on 5.15.207. They may lead to a denial of service or privilege escalation.
The most recent qlustar kernel 5.15.209-ql-generic-13.0-29 also contains a fix for the recently discovered CIFSwitch vulnerability (CVE-2026-46243) which could allow a local root exploit.
Please check the following web pages that contain details of the fixes in each release after 5.15.207 up to the current Qlustar kernel 5.15.209:
Linux kernel 5.15.209 Linux kernel 5.15.208
The problem can be corrected by updating your system to the following or more recent package versions:
linux-image-ql-generic 6.12.92-ql-generic-14-11
qlustar-module-core-noble-amd64-14.1 14.1.4-b589f1628
linux-image-ql-generic 5.15.209-ql-generic-13.0-29
qlustar-module-core-jammy-amd64-13.4 13.4.4-b588f1627
In addition to the steps described in the general Qlustar Update Instructions these updates require the following: