CVE-2026-43503 impact on Tanzu Jammy Stemcells
search cancel

CVE-2026-43503 impact on Tanzu Jammy Stemcells

book

Article ID: 446632

calendar_today

Updated On:

Products

Operations Manager

Issue/Introduction

Security scanners may flag Ubuntu Jammy-based stemcells as vulnerable to CVE-2026-43503. You are looking to maintain security compliance need to verify if their current Jammy stemcell version is affected and what remediation steps are required.

Cause

CVE-2026-43503 is a security vulnerability identified in the upstream Linux kernel used by the Ubuntu Jammy stemcell. The vulnerability relates to specific kernel code paths that could potentially be exploited if not properly patched.

Resolution

This vulnerability has been resolved in the Tanzu Jammy stemcell line.

Fixed Version: The fix for CVE-2026-43503 is included in Ubuntu Jammy stemcell version 1.1234 and all subsequent versions. 

Remediation:

  1. Check the version of the Jammy stemcell currently deployed in your environment.
  2. If the version is lower than 1.1234, upgrade to version 1.1234 or the latest available Jammy stemcell.
  3. If you are already on version 1.1234 or higher, your environment is protected, and no further action is required for this CVE.

Additional Information

For a comprehensive list of CVEs addressed in specific stemcell releases, please refer to the official Security Fixes for Ubuntu Jammy [IaaS] Stemcells documentation.