- What: Authorization bypass vulnerability in OpenZFS
- Impact: Local attackers could perform administrative operations
Ubuntu Security Notices USN-8705-1 USN-8705-1: OpenZFS vulnerability Publication date 31 August 2026 Overview OpenZFS could be made to run programs as an administrator. Releases 26.04 LTS 24.04 LTS 22.04 LTS Open side navigation Close side navigation Packages Details Update instructions References Packages zfs-linux - OpenZFS file system for Linux Details It was discovered that OpenZFS incorrectly handled authorization checks for certain ioctl operations on Linux. A local attacker could possibly use this issue to perform pool-administrative operations or access privileged information, resulting in an authorization bypass. It was discovered that OpenZFS incorrectly handled authorization checks for certain ioctl operations on Linux. A local attacker could possibly use this issue to perform pool-administrative operations or access privileged information, resulting in an authorization bypass. Update instructions After a standard system update you need to reboot your computer to make all the necessary changes. Learn more about how to get the fixes. The problem can be corrected by updating your system to the following package versions: Ubuntu Release Package Version 26.04 LTS resolute libzfs7linux – 2.4.1-1ubuntu5.1 zfs-dkms – 2.4.1-1ubuntu5.1 zfsutils-linux – 2.4.1-1ubuntu5.1 24.04 LTS noble libzfs4linux – 2.2.2-0ubuntu9.5 zfs-dkms – 2.2.2-0ubuntu9.5 zfsutils-linux – 2.2.2-0ubuntu9.5 22.04 LTS jammy libzfs4linux – 2.1.5-1ubuntu6~22.04.7 zfs-dkms – 2.1.5-1ubuntu6~22.04.7 zfsutils-linux – 2.1.5-1ubuntu6~22.04.7 Reduce your security exposure Ubuntu Pro provides ten-year security coverage to 25,000+ packages in Main and Universe repositories, and it is free for up to five machines. Get Ubuntu Pro References CVE-2026-79619 CVE-2026-79619