A fortnightly podcast talking about the latest developments and updates from the Ubuntu Security team.

Latest Episode

Episode 242

Posted on Friday, Nov 29, 2024

This week we dive into the details of a number of local privilege escalation vulnerablities discovered by Qualys in the needrestart package, covering topics from confused deputies to the inner workings of the /proc filesystem and responsible disclosure as well.

Episode 11

Posted on Monday, Nov 12, 2018

This week we look at some details of the 23 unique CVEs addressed across the supported Ubuntu releases, discuss the latest purported Intel side-channel vulnerability PortSmash and more.

Episode 10

Posted on Monday, Nov 5, 2018

This week we look at some details of the 17 unique CVEs addressed across the supported Ubuntu releases, have a brief look at some Canonical presentations from LSS-EU and more.

Episode 9

Posted on Tuesday, Oct 30, 2018

This week we look at some details of the 61 unique CVEs addressed across the supported Ubuntu releases, with a particular focus on the recent Xorg vulnerability (CVE-2018-14665), plus Cosmic is now officially supported by the Security Team.

Episode 8

Posted on Monday, Oct 22, 2018

This week we look at some details of the 15 unique CVEs addressed across the supported Ubuntu releases and discuss some of the security relevant changes in Ubuntu 18.10, plus a refresh of the Ubuntu CVE tracker and more.

Episode 7

Posted on Tuesday, Oct 16, 2018

This week we look at some details of the 78 unique CVEs addressed across the supported Ubuntu releases including more GhostScript, ImageMagick, WebKitGTK, Linux kernel and more.

Episode 6

Posted on Tuesday, Oct 2, 2018

This week we look at some details of the 17 unique CVEs addressed across the supported Ubuntu releases and more.

Episode 5

Posted on Monday, Sep 24, 2018

This week we look at some details of the 43 unique CVEs addressed across the supported Ubuntu releases and talk about the recently announced Extended Security Maintenance support for Ubuntu 14.04 Trusty Tahr.

Episode 4

Posted on Monday, Sep 10, 2018

A quieter week in package updates - this week we look at some details of the 9 unique CVEs addressed across the supported Ubuntu releases and talk about various hardening guides for Ubuntu.

Episode 3

Posted on Monday, Sep 3, 2018

This week we look at 29 unique CVEs addressed across the supported Ubuntu releases, a discussion of the Main Inclusion Review process and recent news around the bubblewrap package, and open positions within the team.

Episode 2

Posted on Tuesday, Aug 28, 2018

L1TF kernel regressions, WPA2 key recovery, mirror fail and more!