Security scanners may flag Ubuntu Jammy-based stemcells as vulnerable to CVE-2026-43503. You are looking to maintain security compliance need to verify if their current Jammy stemcell version is affected and what remediation steps are required.
CVE-2026-43503 is a security vulnerability identified in the upstream Linux kernel used by the Ubuntu Jammy stemcell. The vulnerability relates to specific kernel code paths that could potentially be exploited if not properly patched.
This vulnerability has been resolved in the Tanzu Jammy stemcell line.
Fixed Version: The fix for CVE-2026-43503 is included in Ubuntu Jammy stemcell version 1.1234 and all subsequent versions.
Remediation:
For a comprehensive list of CVEs addressed in specific stemcell releases, please refer to the official documentation.