Blog


ebarretto
18 June 2025

Fixes available for local privilege escalation vulnerability in libblockdev using udisks

Article Ubuntu

Qualys discovered two vulnerabilities in various Linux distributions which allow local attackers to escalate privileges. The first vulnerability (CVE-2025-6018) was found in the PAM configuration. This CVE does not impact default Ubuntu installations because of how the pam_systemd.so and pam_env.so modules are invoked....

ebarretto
18 June 2025


Pedro Lazzarotto
16 June 2025

Join Canonical at HPE Discover Las Vegas 2025

Article AI

Canonical, the publisher of Ubuntu and trusted open source solutions provider, is proud to sponsor HPE Discover Las Vegas 2025. Join us from June 23–26 to explore how our collaboration with Hewlett Packard Enterprise (HPE) is transforming the future of enterprise IT, from virtualization and cloud infrastructure to AI/ML...

Pedro Lazzarotto
16 June 2025


Benjamin Ryzman
11 June 2025

Canonical delivers Kubernetes platform and open-source security with NVIDIA Enterprise AI Factory validated design 

Article AI

Reference architectures speed up time to market for agentic AI projects To ease the path of enterprise AI adoption and accelerate the conversion of AI insights into business value, NVIDIA recently published the NVIDIA Enterprise AI Factory validated design, an ecosystem of solutions that integrates seamlessly with...

Benjamin Ryzman
11 June 2025


Benjamin Ryzman
11 June 2025

Canonical Kubernetes meets NVIDIA DOCA Platform Framework (DPF): building the future of DPU-driven infrastructure

Article Kubernetes

The combined solutions simplify infrastructure operations and accelerate time-to-value for AI, telecom, and enterprise computing workloads. Accelerate deployment and operations of BlueField DPUs with Canonical Kubernetes At GTC Paris today, Canonical announced support for the NVIDIA DOCA Platform Framework (DPF) with...

Benjamin Ryzman
11 June 2025


Giulia Lanzafame
10 June 2025

Apache Spark security: start with a solid foundation

Article Data Platform

Everyone agrees security matters – yet when it comes to big data analytics with Apache Spark, it’s not just another checkbox. Spark’s open source Java architecture introduces special security concerns that, if neglected, can quietly reveal sensitive information and interrupt vital functions. Unlike standard software,...

Giulia Lanzafame
10 June 2025


Henry Coggill
6 June 2025

What is CMMC compliance?

Article Hardening

CMMC version 2.0 came into effect on December 26, 2023, and is designed to ensure adherence to rigorous cybersecurity policies and practices within the public sector and amongst wider industry partners.

Henry Coggill
6 June 2025


Rawand Benour
5 June 2025

What if your container images were security-maintained at the source?

Article Ubuntu

Software supply chain security has become a top concern for developers, DevOps engineers, and IT leaders. High-profile breaches and dependency compromises have shown that open source components can introduce risk if not properly vetted and maintained. Although containerization has become commonplace in contemporary...

Rawand Benour
5 June 2025


Octavio Galland
30 May 2025

Apport local information disclosure vulnerability fixes available

Article Ubuntu

Qualys discovered two vulnerabilities in various Linux distributions which allow a local attacker with permission to create user namespaces to leak core dumps for processes of suid executables. These affect both apport, the Ubuntu default core dump handler (CVE-2025-5054), and systemd-coredump, the default core dump...

Octavio Galland
30 May 2025


Nkeiruka Whenu
28 May 2025

The 2025 Frankfurt Engineering Sprint: What did you miss?

Article Community

If you have ever wondered what goes on when your friends say that they’re going on a “Business trip” abroad, then allow me to spill the beans 🫘. Let’s recap what you may have missed from Canonical’s Frankfurt Engineering Sprint this May, shall we? My name is Nkeiruka, and I work as a Software Engineer

Nkeiruka Whenu
28 May 2025


ilvipero
27 May 2025

Ubuntu Summit 25.10 is coming to your circle of friends, from London

Article Ubuntu

London calling… We have an exciting announcement about the Ubuntu Summit. We’ve been chatting with our community and contributors to see how we can bring our event, and the impact of open source, to even more people. This year, the Ubuntu Summit is reborn – read on to find out what changes we’re making. Twice

ilvipero
27 May 2025


Tytus Kurek
26 May 2025

OpenStack with Sunbeam for medium-scale cloud infrastructure

Article Cloud and server

The rapid growth in OpenStack installation and orchestration tools that we have seen in recent years has effectively established OpenStack as the world’s leading open source cloud platform. Projects like Sunbeam or Kolla Ansible, for example, are effectively transforming OpenStack into yet another user application. By...

Tytus Kurek
26 May 2025


Bertrand Boisseau
22 May 2025

Boost your Android development with remote app testing via Anbox Cloud

Article Ubuntu

In today’s hectic app development cycles, speed is key. But as teams scale and spread worldwide, and app complexity increases, traditional testing workflows become bottlenecks that can compromise security, increase operational costs, and delay product delivery. Simply sharing APKs or configuring physical test devices...

Bertrand Boisseau
22 May 2025


Miona Aleksic
21 May 2025

Simplify security maintenance and compliance with Ubuntu Pro auto-attach for LXD guests

Article Cloud and server

With the latest LXD release, Ubuntu Pro now supports auto-attachment for LXD guest instances, offering organizations a seamless way to extend Ubuntu Pro benefits across their infrastructure.

Miona Aleksic
21 May 2025


Matthew de Klerk
20 May 2025

What is geopatriation?

Article Cloud and server

Geopatriation refers to the relocation of workloads and applications from global cloud hyperscalers to regional or national alternatives due to geopolitical uncertainty.

Matthew de Klerk
20 May 2025