Ubuntu 24.04 LTS must be a vendor-supported release.

STIG ID: UBTU-24-700400  |  SRG: SRG-OS-000480-GPOS-00227 |  Severity: high (CAT I)  |  CCI: CCI-000366 |  Vulnerability Id: V-278917

Vulnerability Discussion

An operating system release is considered "supported" if the vendor continues to provide security patches for the product. With an unsupported release, it will not be possible to resolve security issues discovered in the system software.

The support status of the OS depends on its subscription status.

End Of Life dates for Ubuntu 24.04 releases are as follows:
Standard Support: April 2029
Extended Security Maintenance (ESM): April 2036

ESM is available via an Ubuntu Pro subscription.

Check

Verify the version of Ubuntu 24.04 LTS is vendor supported with the following command:

$ grep DISTRIB_DESCRIPTION /etc/lsb-release
DISTRIB_DESCRIPTION="Ubuntu 24.04.3 LTS"

Check the subscription status of the system with the following command:
$ pro status

If the installed version of Ubuntu 24.04 LTS is not supported, this is a finding.

Fix

Upgrade to a supported version of Ubuntu 24.04 LTS.