Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 494
Alerts This Week
Warning Icon 1 494

Stay Secure with the Latest Linux Advisories

Filter%20icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found 21 articles for you...
172

Ubuntu 14.04 LTS USN-7554-2 Critical: Linux Kernel Security Issues

Several security issues were fixed in the Linux kernel.. ========================================================================== Ubuntu Security Notice USN-7554-2 June 04, 2025 linux-aws, linux-lts-xenial vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 14.04 LTS Summary: Several security issues were fixed in the Linux kernel. Software Description: - linux-aws: Linux kernel for Amazon Web Services (AWS) systems - linux-lts-xenial: Linux hardware enablement kernel from Xenial for Trusty Details: Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - Block layer subsystem; - Clock framework and drivers; - GPU drivers; - Parport drivers; - Ext4 file system; - JFFS2 file system; - JFS file system; - File systems infrastructure; - Sun RPC protocol; - USB sound devices; (CVE-2024-42301, CVE-2024-53168, CVE-2024-57850, CVE-2024-47701, CVE-2021-47211, CVE-2023-52458, CVE-2024-56551, CVE-2024-26966, CVE-2024-53155, CVE-2024-56596, CVE-2021-47353) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 14.04 LTS linux-image-4.4.0-1144-aws 4.4.0-1144.150 Available with Ubuntu Pro linux-image-4.4.0-269-generic 4.4.0-269.303~14.04.1 Available with Ubuntu Pro linux-image-4.4.0-269-lowlatency 4.4.0-269.303~14.04.1 Available with Ubuntu Pro linux-image-aws 4.4.0.1144.141 Available with Ubuntu Pro After a standard system update you need to reboot your computer to make all the necessary changes. ATTENTION: Due to an unavoidable ABI change the kernel updates have been given a new version number, which requires you torecompile and reinstall all third party kernel modules you might have installed. Unless you manually uninstalled the standard kernel metapackages (e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual, linux-powerpc), a standard system upgrade will automatically perform this as well. References: https://ubuntu.com/security/notices/USN-7554-2 https://ubuntu.com/security/notices/USN-7554-1 CVE-2021-47211, CVE-2021-47353, CVE-2023-52458, CVE-2024-26966, CVE-2024-42301, CVE-2024-47701, CVE-2024-53155, CVE-2024-53168, CVE-2024-56551, CVE-2024-56596, CVE-2024-57850 . A security bulletin outlining critical improvements to Ubuntu's Linux core, addressing multiple system weaknesses and threats.. Linux Kernel Security, Ubuntu Update, AWS Kernel Update. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Jun 04, 2025 Critical Ubuntu
172

Ubuntu 20.04 LTS USN-7510-8: Critical Linux Kernel Security Update

Several security issues were fixed in the Linux kernel.. ========================================================================== Ubuntu Security Notice USN-7510-8 May 29, 2025 linux-aws-5.15 vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 20.04 LTS Summary: Several security issues were fixed in the Linux kernel. Software Description: - linux-aws-5.15: Linux kernel for Amazon Web Services (AWS) systems Details: Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - ARM64 architecture; - PowerPC architecture; - x86 architecture; - Block layer subsystem; - Network block device driver; - Bus devices; - Character device driver; - TPM device driver; - Clock framework and drivers; - GPIO subsystem; - GPU drivers; - HID subsystem; - I2C subsystem; - InfiniBand drivers; - Media drivers; - NVIDIA Tegra memory controller driver; - Network drivers; - PCI subsystem; - PPS (Pulse Per Second) driver; - PTP clock framework; - RapidIO drivers; - Real Time Clock drivers; - SLIMbus drivers; - QCOM SoC drivers; - Trusted Execution Environment drivers; - TTY drivers; - USB DSL drivers; - USB Device Class drivers; - USB core drivers; - USB Gadget drivers; - USB Host Controller drivers; - Renesas USBHS Controller drivers; - ACRN Hypervisor Service Module driver; - File systems infrastructure; - BTRFS file system; - F2FS file system; - Network file system (NFS) server daemon; - NILFS2 file system; - Overlay file system; - SMB network file system; - UBI file system; - KVM subsystem; - L3 Master device support module; - Process Accounting mechanism; - Padata parallel execution mechanism; - printk logging mechanism; - Scheduler infrastructure; - Timer subsystem; - Tracinginfrastructure; - Memory management; - 802.1Q VLAN protocol; - B.A.T.M.A.N. meshing protocol; - Networking core; - IPv4 networking; - IPv6 networking; - Logical Link layer; - Multipath TCP; - Netfilter; - NFC subsystem; - Open vSwitch; - Rose network layer; - Network traffic control; - Wireless networking; - Landlock security; - Linux Security Modules (LSM) Framework; - Tomoyo security module; (CVE-2025-21804, CVE-2025-21779, CVE-2025-21878, CVE-2025-21735, CVE-2024-57977, CVE-2025-21951, CVE-2025-21704, CVE-2025-21859, CVE-2025-21760, CVE-2025-21862, CVE-2024-57834, CVE-2025-21745, CVE-2025-21762, CVE-2024-58005, CVE-2025-21846, CVE-2025-21914, CVE-2025-21736, CVE-2025-21928, CVE-2024-57986, CVE-2025-21761, CVE-2024-58086, CVE-2025-21731, CVE-2025-21766, CVE-2025-21844, CVE-2024-58072, CVE-2024-58069, CVE-2025-21924, CVE-2025-21848, CVE-2025-21950, CVE-2025-21934, CVE-2025-21647, CVE-2024-58076, CVE-2025-21726, CVE-2025-21791, CVE-2025-21722, CVE-2025-21971, CVE-2025-21719, CVE-2025-21904, CVE-2025-21875, CVE-2025-21877, CVE-2025-21758, CVE-2024-58001, CVE-2024-58007, CVE-2024-58010, CVE-2025-21787, CVE-2025-21905, CVE-2024-58055, CVE-2025-21782, CVE-2024-58090, CVE-2025-21910, CVE-2025-21708, CVE-2025-21826, CVE-2024-57980, CVE-2024-58051, CVE-2024-56721, CVE-2025-21909, CVE-2025-21802, CVE-2025-21744, CVE-2024-58058, CVE-2025-21728, CVE-2024-47726, CVE-2024-58079, CVE-2024-58002, CVE-2024-58014, CVE-2025-21898, CVE-2025-21811, CVE-2024-57979, CVE-2025-21865, CVE-2025-21748, CVE-2025-21749, CVE-2025-21920, CVE-2025-21763, CVE-2025-21764, CVE-2025-21887, CVE-2025-21858, CVE-2024-58034, CVE-2025-21820, CVE-2024-57978, CVE-2025-21866, CVE-2025-21922, CVE-2025-21926, CVE-2025-21753, CVE-2024-58052, CVE-2025-21684, CVE-2025-21823, CVE-2024-58016, CVE-2025-21835, CVE-2025-21925, CVE-2025-21707, CVE-2025-21785, CVE-2025-21795, CVE-2025-21718, CVE-2025-21935, CVE-2025-21765, CVE-2025-21715, CVE-2025-21916, CVE-2025-21727, CVE-2025-21912, CVE-2024-58071, CVE-2024-58083, CVE-2025-21948,CVE-2024-56599, CVE-2025-21721, CVE-2024-58063, CVE-2025-21806, CVE-2025-21772, CVE-2025-21776, CVE-2025-21830, CVE-2025-21917, CVE-2024-58020, CVE-2025-21871, CVE-2025-21796, CVE-2025-21711, CVE-2024-58017, CVE-2024-58085, CVE-2024-57981, CVE-2024-57973, CVE-2025-21919, CVE-2025-21814, CVE-2024-26982, CVE-2025-21781, CVE-2025-21943, CVE-2025-21799, CVE-2025-21767) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 20.04 LTS linux-image-5.15.0-1084-aws 5.15.0-1084.91~20.04.1 linux-image-aws 5.15.0.1084.91~20.04.1 After a standard system update you need to reboot your computer to make all the necessary changes. ATTENTION: Due to an unavoidable ABI change the kernel updates have been given a new version number, which requires you to recompile and reinstall all third party kernel modules you might have installed. Unless you manually uninstalled the standard kernel metapackages (e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual, linux-powerpc), a standard system upgrade will automatically perform this as well. References: https://ubuntu.com/security/notices/USN-7510-8 https://ubuntu.com/security/notices/USN-7510-7 https://ubuntu.com/security/notices/USN-7510-6 https://ubuntu.com/security/notices/USN-7510-5 https://ubuntu.com/security/notices/USN-7510-4 https://ubuntu.com/security/notices/USN-7510-3 https://ubuntu.com/security/notices/USN-7510-2 https://ubuntu.com/security/notices/USN-7510-1 CVE-2024-26982, CVE-2024-47726, CVE-2024-56599, CVE-2024-56721, CVE-2024-57834, CVE-2024-57973, CVE-2024-57977, CVE-2024-57978, CVE-2024-57979, CVE-2024-57980, CVE-2024-57981, CVE-2024-57986, CVE-2024-58001, CVE-2024-58002, CVE-2024-58005, CVE-2024-58007, CVE-2024-58010, CVE-2024-58014, CVE-2024-58016, CVE-2024-58017, CVE-2024-58020, CVE-2024-58034, CVE-2024-58051, CVE-2024-58052, CVE-2024-58055, CVE-2024-58058, CVE-2024-58063, CVE-2024-58069, CVE-2024-58071, CVE-2024-58072, CVE-2024-58076,CVE-2024-58079, CVE-2024-58083, CVE-2024-58085, CVE-2024-58086, CVE-2024-58090, CVE-2025-21647, CVE-2025-21684, CVE-2025-21704, CVE-2025-21707, CVE-2025-21708, CVE-2025-21711, CVE-2025-21715, CVE-2025-21718, CVE-2025-21719, CVE-2025-21721, CVE-2025-21722, CVE-2025-21726, CVE-2025-21727, CVE-2025-21728, CVE-2025-21731, CVE-2025-21735, CVE-2025-21736, CVE-2025-21744, CVE-2025-21745, CVE-2025-21748, CVE-2025-21749, CVE-2025-21753, CVE-2025-21758, CVE-2025-21760, CVE-2025-21761, CVE-2025-21762, CVE-2025-21763, CVE-2025-21764, CVE-2025-21765, CVE-2025-21766, CVE-2025-21767, CVE-2025-21772, CVE-2025-21776, CVE-2025-21779, CVE-2025-21781, CVE-2025-21782, CVE-2025-21785, CVE-2025-21787, CVE-2025-21791, CVE-2025-21795, CVE-2025-21796, CVE-2025-21799, CVE-2025-21802, CVE-2025-21804, CVE-2025-21806, CVE-2025-21811, CVE-2025-21814, CVE-2025-21820, CVE-2025-21823, CVE-2025-21826, CVE-2025-21830, CVE-2025-21835, CVE-2025-21844, CVE-2025-21846, CVE-2025-21848, CVE-2025-21858, CVE-2025-21859, CVE-2025-21862, CVE-2025-21865, CVE-2025-21866, CVE-2025-21871, CVE-2025-21875, CVE-2025-21877, CVE-2025-21878, CVE-2025-21887, CVE-2025-21898, CVE-2025-21904, CVE-2025-21905, CVE-2025-21909, CVE-2025-21910, CVE-2025-21912, CVE-2025-21914, CVE-2025-21916, CVE-2025-21917, CVE-2025-21919, CVE-2025-21920, CVE-2025-21922, CVE-2025-21924, CVE-2025-21925, CVE-2025-21926, CVE-2025-21928, CVE-2025-21934, CVE-2025-21935, CVE-2025-21943, CVE-2025-21948, CVE-2025-21950, CVE-2025-21951, CVE-2025-21971 Package Information: https://launchpad.net/ubuntu/+source/linux-aws-5.15/5.15.0-1084.91~20.04.1 . Fedora's OSN-2056-3 addresses various kernel vulnerabilities in Azure, enhancing overall system protection and robustness. Important patches recommended.. Linux Kernel Security, Ubuntu Security Update, AWS Linux Kernel, System Security Updates. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 May 29, 2025 Critical Ubuntu
172

Ubuntu 24.10: USN-7521-2 critical: linux-aws kernel fixes

Several security issues were fixed in the Linux kernel.. ========================================================================== Ubuntu Security Notice USN-7521-2 May 22, 2025 linux-aws vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 24.10 Summary: Several security issues were fixed in the Linux kernel. Software Description: - linux-aws: Linux kernel for Amazon Web Services (AWS) systems Details: Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - ARM64 architecture; - PowerPC architecture; - x86 architecture; - Block layer subsystem; - Serial ATA and Parallel ATA drivers; - Drivers core; - Network block device driver; - Bluetooth drivers; - Character device driver; - TPM device driver; - Clock framework and drivers; - Hardware crypto device drivers; - FireWire subsystem; - EFI core; - Qualcomm firmware drivers; - GPIO subsystem; - GPU drivers; - HID subsystem; - I2C subsystem; - I3C subsystem; - InfiniBand drivers; - Input Device (Mouse) drivers; - IOMMU subsystem; - Multiple devices driver; - Media drivers; - NVIDIA Tegra memory controller driver; - Fastrpc Driver; - Network drivers; - Operating Performance Points (OPP) driver; - PCI subsystem; - x86 platform drivers; - PPS (Pulse Per Second) driver; - PTP clock framework; - Remote Processor subsystem; - Real Time Clock drivers; - S/390 drivers; - SCSI subsystem; - QCOM SoC drivers; - SPI subsystem; - Media staging drivers; - Trusted Execution Environment drivers; - TTY drivers; - UFS subsystem; - USB Device Class drivers; - USB core drivers; - USB Gadget drivers; - USB Host Controller drivers; - Framebuffer layer; - File systems infrastructure; - BTRFS file system; - Ceph distributed file system; - Network file system (NFS) client; - Network file system (NFS) server daemon; - NILFS2 file system; - Overlay file system; - SMB network file system; - UBI file system; - BPF subsystem; - Timer subsystem; - KVM subsystem; - Networking core; - ptr_ring data structure definitions; - Networking subsytem; - Amateur Radio drivers; - L3 Master device support module; - TCP network protocol; - XFRM subsystem; - Tracing infrastructure; - io_uring subsystem; - Process Accounting mechanism; - Perf events; - Padata parallel execution mechanism; - printk logging mechanism; - Scheduler infrastructure; - Workqueue subsystem; - Memory management; - B.A.T.M.A.N. meshing protocol; - Bluetooth subsystem; - IPv4 networking; - IPv6 networking; - MAC80211 subsystem; - Multipath TCP; - Netfilter; - NFC subsystem; - Open vSwitch; - Rose network layer; - RxRPC session sockets; - Network traffic control; - Wireless networking; - Key management; - Landlock security; - Linux Security Modules (LSM) Framework; - Tomoyo security module; - SoC audio core drivers; - SOF drivers; (CVE-2025-21865, CVE-2025-21768, CVE-2024-57981, CVE-2025-21806, CVE-2025-21873, CVE-2025-21716, CVE-2025-21881, CVE-2025-21852, CVE-2024-57988, CVE-2025-21748, CVE-2025-21868, CVE-2025-21733, CVE-2024-58056, CVE-2025-21792, CVE-2025-21734, CVE-2024-58077, CVE-2025-21827, CVE-2024-58088, CVE-2025-21762, CVE-2025-21786, CVE-2025-21775, CVE-2025-21711, CVE-2025-21848, CVE-2025-21826, CVE-2025-21899, CVE-2025-21844, CVE-2024-58010, CVE-2025-21790, CVE-2025-21732, CVE-2024-54458, CVE-2025-21816, CVE-2024-58068, CVE-2025-21793, CVE-2025-21877, CVE-2024-58017, CVE-2025-21739, CVE-2025-21796, CVE-2024-58002, CVE-2025-21874, CVE-2025-21849, CVE-2025-21721, CVE-2025-21828, CVE-2024-58080, CVE-2025-21758, CVE-2025-21846, CVE-2025-21875, CVE-2025-21741, CVE-2024-58071, CVE-2025-21724, CVE-2025-21808, CVE-2025-21708, CVE-2025-21867, CVE-2024-57984, CVE-2024-58057, CVE-2024-58072,CVE-2025-21971, CVE-2025-21895, CVE-2025-21719, CVE-2025-21754, CVE-2025-21761, CVE-2025-21863, CVE-2024-49570, CVE-2025-21773, CVE-2025-21783, CVE-2025-21772, CVE-2025-21804, CVE-2025-21892, CVE-2024-58084, CVE-2025-21749, CVE-2025-21705, CVE-2024-57978, CVE-2024-57989, CVE-2025-21832, CVE-2025-21782, CVE-2025-21791, CVE-2025-21746, CVE-2025-21831, CVE-2025-21830, CVE-2024-58076, CVE-2024-57999, CVE-2025-21878, CVE-2024-57980, CVE-2025-21898, CVE-2025-21814, CVE-2024-58083, CVE-2025-21766, CVE-2024-58055, CVE-2024-58014, CVE-2025-21787, CVE-2025-21725, CVE-2024-58007, CVE-2025-21885, CVE-2024-58079, CVE-2025-21866, CVE-2025-21799, CVE-2024-58013, CVE-2025-21737, CVE-2024-58020, CVE-2025-21871, CVE-2025-21795, CVE-2025-21785, CVE-2025-21870, CVE-2024-58069, CVE-2025-21851, CVE-2025-21710, CVE-2025-21853, CVE-2025-21776, CVE-2025-21759, CVE-2025-21735, CVE-2024-58061, CVE-2024-57987, CVE-2025-21720, CVE-2024-57998, CVE-2025-21779, CVE-2024-57986, CVE-2025-21823, CVE-2024-57979, CVE-2024-57977, CVE-2025-21825, CVE-2025-21847, CVE-2025-21718, CVE-2025-21856, CVE-2024-58004, CVE-2025-21864, CVE-2025-21736, CVE-2025-21763, CVE-2025-21801, CVE-2025-21707, CVE-2024-58005, CVE-2025-21872, CVE-2025-21889, CVE-2024-57990, CVE-2024-58018, CVE-2025-21858, CVE-2025-21838, CVE-2024-58008, CVE-2024-57997, CVE-2024-58075, CVE-2025-21750, CVE-2025-21987, CVE-2025-21728, CVE-2025-21821, CVE-2025-21706, CVE-2024-58081, CVE-2025-21764, CVE-2024-57993, CVE-2025-21938, CVE-2025-21767, CVE-2024-58051, CVE-2024-57996, CVE-2025-21713, CVE-2024-57834, CVE-2025-21812, CVE-2025-21857, CVE-2025-21784, CVE-2025-21753, CVE-2025-21780, CVE-2024-58082, CVE-2025-21798, CVE-2025-21820, CVE-2024-57994, CVE-2024-58070, CVE-2025-21854, CVE-2024-58053, CVE-2025-21891, CVE-2025-21731, CVE-2025-21829, CVE-2025-21815, CVE-2024-54456, CVE-2024-57953, CVE-2024-58016, CVE-2025-21760, CVE-2025-21839, CVE-2025-21715, CVE-2025-21869, CVE-2024-58078, CVE-2025-21888, CVE-2024-57852, CVE-2025-21835, CVE-2024-58064, CVE-2025-21727, CVE-2025-21704, CVE-2025-21742,CVE-2025-21855, CVE-2025-21809, CVE-2025-21802, CVE-2025-21770, CVE-2024-57985, CVE-2025-21712, CVE-2024-58060, CVE-2025-21743, CVE-2024-58090, CVE-2024-58058, CVE-2025-21781, CVE-2024-57973, CVE-2025-21738, CVE-2025-21810, CVE-2024-57974, CVE-2024-58019, CVE-2024-58054, CVE-2025-21883, CVE-2025-21859, CVE-2024-52559, CVE-2025-21887, CVE-2025-21900, CVE-2024-58006, CVE-2025-21726, CVE-2024-58052, CVE-2025-21723, CVE-2024-58034, CVE-2025-21836, CVE-2024-58085, CVE-2024-58001, CVE-2025-21788, CVE-2025-21744, CVE-2025-21811, CVE-2024-58011, CVE-2024-58012, CVE-2025-21745, CVE-2025-21862, CVE-2024-57982, CVE-2024-58003, CVE-2024-58021, CVE-2024-58063, CVE-2025-21890, CVE-2024-58086, CVE-2025-21876, CVE-2025-21765) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 24.10 linux-image-6.11.0-1014-aws 6.11.0-1014.15 linux-image-aws 6.11.0-1014.15 After a standard system update you need to reboot your computer to make all the necessary changes. ATTENTION: Due to an unavoidable ABI change the kernel updates have been given a new version number, which requires you to recompile and reinstall all third party kernel modules you might have installed. Unless you manually uninstalled the standard kernel metapackages (e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual, linux-powerpc), a standard system upgrade will automatically perform this as well. References: https://ubuntu.com/security/notices/USN-7521-2 https://ubuntu.com/security/notices/USN-7521-1 CVE-2024-49570, CVE-2024-52559, CVE-2024-54456, CVE-2024-54458, CVE-2024-57834, CVE-2024-57852, CVE-2024-57953, CVE-2024-57973, CVE-2024-57974, CVE-2024-57977, CVE-2024-57978, CVE-2024-57979, CVE-2024-57980, CVE-2024-57981, CVE-2024-57982, CVE-2024-57984, CVE-2024-57985, CVE-2024-57986, CVE-2024-57987, CVE-2024-57988, CVE-2024-57989, CVE-2024-57990, CVE-2024-57993, CVE-2024-57994, CVE-2024-57996, CVE-2024-57997, CVE-2024-57998, CVE-2024-57999, CVE-2024-58001, CVE-2024-58002, CVE-2024-58003, CVE-2024-58004, CVE-2024-58005, CVE-2024-58006, CVE-2024-58007, CVE-2024-58008, CVE-2024-58010, CVE-2024-58011, CVE-2024-58012, CVE-2024-58013, CVE-2024-58014, CVE-2024-58016, CVE-2024-58017, CVE-2024-58018, CVE-2024-58019, CVE-2024-58020, CVE-2024-58021, CVE-2024-58034, CVE-2024-58051, CVE-2024-58052, CVE-2024-58053, CVE-2024-58054, CVE-2024-58055, CVE-2024-58056, CVE-2024-58057, CVE-2024-58058, CVE-2024-58060, CVE-2024-58061, CVE-2024-58063, CVE-2024-58064, CVE-2024-58068, CVE-2024-58069, CVE-2024-58070, CVE-2024-58071, CVE-2024-58072, CVE-2024-58075, CVE-2024-58076, CVE-2024-58077, CVE-2024-58078, CVE-2024-58079, CVE-2024-58080, CVE-2024-58081, CVE-2024-58082, CVE-2024-58083, CVE-2024-58084, CVE-2024-58085, CVE-2024-58086, CVE-2024-58088, CVE-2024-58090, CVE-2025-21704, CVE-2025-21705, CVE-2025-21706, CVE-2025-21707, CVE-2025-21708, CVE-2025-21710, CVE-2025-21711, CVE-2025-21712, CVE-2025-21713, CVE-2025-21715, CVE-2025-21716, CVE-2025-21718, CVE-2025-21719, CVE-2025-21720, CVE-2025-21721, CVE-2025-21723, CVE-2025-21724, CVE-2025-21725, CVE-2025-21726, CVE-2025-21727, CVE-2025-21728, CVE-2025-21731, CVE-2025-21732, CVE-2025-21733, CVE-2025-21734, CVE-2025-21735, CVE-2025-21736, CVE-2025-21737, CVE-2025-21738, CVE-2025-21739, CVE-2025-21741, CVE-2025-21742, CVE-2025-21743, CVE-2025-21744, CVE-2025-21745, CVE-2025-21746, CVE-2025-21748, CVE-2025-21749, CVE-2025-21750, CVE-2025-21753, CVE-2025-21754, CVE-2025-21758, CVE-2025-21759, CVE-2025-21760, CVE-2025-21761, CVE-2025-21762, CVE-2025-21763, CVE-2025-21764, CVE-2025-21765, CVE-2025-21766, CVE-2025-21767, CVE-2025-21768, CVE-2025-21770, CVE-2025-21772, CVE-2025-21773, CVE-2025-21775, CVE-2025-21776, CVE-2025-21779, CVE-2025-21780, CVE-2025-21781, CVE-2025-21782, CVE-2025-21783, CVE-2025-21784, CVE-2025-21785, CVE-2025-21786, CVE-2025-21787, CVE-2025-21788, CVE-2025-21790, CVE-2025-21791, CVE-2025-21792, CVE-2025-21793, CVE-2025-21795, CVE-2025-21796, CVE-2025-21798, CVE-2025-21799, CVE-2025-21801, CVE-2025-21802, CVE-2025-21804, CVE-2025-21806, CVE-2025-21808, CVE-2025-21809, CVE-2025-21810, CVE-2025-21811, CVE-2025-21812, CVE-2025-21814, CVE-2025-21815, CVE-2025-21816, CVE-2025-21820, CVE-2025-21821, CVE-2025-21823, CVE-2025-21825, CVE-2025-21826, CVE-2025-21827, CVE-2025-21828, CVE-2025-21829, CVE-2025-21830, CVE-2025-21831, CVE-2025-21832, CVE-2025-21835, CVE-2025-21836, CVE-2025-21838, CVE-2025-21839, CVE-2025-21844, CVE-2025-21846, CVE-2025-21847, CVE-2025-21848, CVE-2025-21849, CVE-2025-21851, CVE-2025-21852, CVE-2025-21853, CVE-2025-21854, CVE-2025-21855, CVE-2025-21856, CVE-2025-21857, CVE-2025-21858, CVE-2025-21859, CVE-2025-21862, CVE-2025-21863, CVE-2025-21864, CVE-2025-21865, CVE-2025-21866, CVE-2025-21867, CVE-2025-21868, CVE-2025-21869, CVE-2025-21870, CVE-2025-21871, CVE-2025-21872, CVE-2025-21873, CVE-2025-21874, CVE-2025-21875, CVE-2025-21876, CVE-2025-21877, CVE-2025-21878, CVE-2025-21881, CVE-2025-21883, CVE-2025-21885, CVE-2025-21887, CVE-2025-21888, CVE-2025-21889, CVE-2025-21890, CVE-2025-21891, CVE-2025-21892, CVE-2025-21895, CVE-2025-21898, CVE-2025-21899, CVE-2025-21900, CVE-2025-21938, CVE-2025-21971, CVE-2025-21987 Package Information: https://launchpad.net/ubuntu/+source/linux-aws/6.11.0-1014.15 . Numerous bugs resolved in Linux kernel for Ubuntu 24.10 and AWS infrastructures, impacting multiple components.. Linux Kernel Update, AWS Security, Ubuntu Vulnerability, System Update, Security Patch. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 May 22, 2025 Critical Ubuntu
172

Ubuntu 18.04 LTS USN-7401-1 critical: AWS kernel denial of service

Several security issues were fixed in the Linux kernel.. ========================================================================== Ubuntu Security Notice USN-7401-1 April 01, 2025 linux-aws-5.4 vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 18.04 LTS Summary: Several security issues were fixed in the Linux kernel. Software Description: - linux-aws-5.4: Linux kernel for Amazon Web Services (AWS) systems Details: Chenyuan Yang discovered that the CEC driver driver in the Linux kernel contained a use-after-free vulnerability. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2024-23848) Attila Szász discovered that the HFS+ file system implementation in the Linux Kernel contained a heap overflow vulnerability. An attacker could use a specially crafted file system image that, when mounted, could cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2025-0927) Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - ARM64 architecture; - PowerPC architecture; - S390 architecture; - SuperH RISC architecture; - User-Mode Linux (UML); - x86 architecture; - Block layer subsystem; - Cryptographic API; - ACPI drivers; - Drivers core; - ATA over ethernet (AOE) driver; - Virtio block driver; - TPM device driver; - Data acquisition framework and drivers; - Hardware crypto device drivers; - DMA engine subsystem; - EDAC drivers; - ARM SCPI message protocol; - GPIO subsystem; - GPU drivers; - HID subsystem; - Microsoft Hyper-V drivers; - I2C subsystem; - I3C subsystem; - IIO ADC drivers; - IIO subsystem; - InfiniBand drivers; - LEDsubsystem; - Mailbox framework; - Multiple devices driver; - Media drivers; - Multifunction device drivers; - MMC subsystem; - MTD block device drivers; - Network drivers; - Mellanox network drivers; - NTB driver; - Virtio pmem driver; - NVME drivers; - Parport drivers; - PCI subsystem; - Pin controllers subsystem; - x86 platform drivers; - Real Time Clock drivers; - SCSI subsystem; - SuperH / SH-Mobile drivers; - QCOM SoC drivers; - SPI subsystem; - Direct Digital Synthesis drivers; - USB Device Class drivers; - USB Gadget drivers; - USB Dual Role (OTG-ready) Controller drivers; - USB Serial drivers; - USB Type-C support driver; - USB Type-C Port Controller Manager driver; - VFIO drivers; - Framebuffer layer; - Xen hypervisor drivers; - BTRFS file system; - Ceph distributed file system; - Ext4 file system; - F2FS file system; - GFS2 file system; - File systems infrastructure; - JFFS2 file system; - JFS file system; - Network file system (NFS) client; - Network file system (NFS) server daemon; - NILFS2 file system; - Overlay file system; - Proc file system; - Diskquota system; - SMB network file system; - UBI file system; - Timer subsystem; - VLANs driver; - LAPB network protocol; - Network traffic control; - Network sockets; - TCP network protocol; - Kernel init infrastructure; - BPF subsystem; - Kernel CPU control infrastructure; - Perf events; - Arbitrary resource management; - Tracing infrastructure; - Closures library; - Memory management; - 9P file system network protocol; - Amateur Radio drivers; - Bluetooth subsystem; - Ethernet bridge; - CAN network layer; - Networking core; - DCCP (Datagram Congestion Control Protocol); - IEEE802154.4 network protocol; - IPv4 networking; - IPv6 networking; - MAC80211 subsystem; - IEEE802.15.4 subsystem; - Netfilter; - Netlink; - NET/ROM layer; - Packet sockets; - SCTP protocol; - Sun RPC protocol; - TIPC protocol; - Wireless networking; - eXpress Data Path; - XFRM subsystem; - Key management; - SELinux security module; - FireWire sound drivers; - AudioScience HPI driver; - Amlogic Meson SoC drivers; - USB sound devices; - KVM core; (CVE-2024-56637, CVE-2024-56576, CVE-2024-47685, CVE-2024-56558, CVE-2024-47684, CVE-2024-50233, CVE-2024-50301, CVE-2024-49860, CVE-2021-47219, CVE-2024-56581, CVE-2024-57902, CVE-2024-49851, CVE-2024-50074, CVE-2025-21640, CVE-2023-52458, CVE-2024-50134, CVE-2024-47692, CVE-2024-46849, CVE-2024-49902, CVE-2024-56720, CVE-2024-53171, CVE-2024-56615, CVE-2024-47674, CVE-2024-53172, CVE-2024-50218, CVE-2024-50262, CVE-2024-50290, CVE-2024-53680, CVE-2024-53104, CVE-2024-49982, CVE-2024-50282, CVE-2024-49997, CVE-2024-56574, CVE-2024-56595, CVE-2024-47747, CVE-2024-56642, CVE-2024-49878, CVE-2024-35896, CVE-2024-53197, CVE-2024-56770, CVE-2024-56593, CVE-2024-53174, CVE-2024-41066, CVE-2024-56606, CVE-2024-56630, CVE-2024-49879, CVE-2024-50131, CVE-2025-21699, CVE-2024-53214, CVE-2024-50279, CVE-2024-56691, CVE-2024-49925, CVE-2024-53145, CVE-2024-49985, CVE-2024-57802, CVE-2024-50116, CVE-2024-50234, CVE-2024-47672, CVE-2024-56645, CVE-2024-50082, CVE-2024-50035, CVE-2024-50039, CVE-2024-56594, CVE-2024-56596, CVE-2024-49903, CVE-2024-50299, CVE-2024-53138, CVE-2024-50229, CVE-2024-50051, CVE-2024-53161, CVE-2024-40953, CVE-2024-56747, CVE-2024-50230, CVE-2024-49900, CVE-2024-50040, CVE-2024-50287, CVE-2024-49948, CVE-2024-47742, CVE-2024-50033, CVE-2024-57912, CVE-2024-56650, CVE-2024-50267, CVE-2024-56567, CVE-2024-57922, CVE-2024-56605, CVE-2024-57946, CVE-2024-56694, CVE-2024-53194, CVE-2024-56644, CVE-2024-56602, CVE-2024-56619, CVE-2025-21678, CVE-2024-53059, CVE-2024-47749, CVE-2024-56781, CVE-2024-46854, CVE-2024-49867, CVE-2024-50278, CVE-2024-53239,CVE-2024-56548, CVE-2024-57890, CVE-2024-53158, CVE-2024-57807, CVE-2024-56587, CVE-2024-50180, CVE-2024-53227, CVE-2024-49944, CVE-2024-49959, CVE-2024-56614, CVE-2024-53148, CVE-2024-57938, CVE-2024-56746, CVE-2024-49966, CVE-2024-50199, CVE-2024-53173, CVE-2024-53063, CVE-2024-50142, CVE-2024-56700, CVE-2024-49995, CVE-2024-43098, CVE-2024-47737, CVE-2024-50008, CVE-2024-56690, CVE-2024-47713, CVE-2024-50117, CVE-2024-53165, CVE-2024-49882, CVE-2024-47699, CVE-2024-53127, CVE-2024-56598, CVE-2024-57892, CVE-2024-53146, CVE-2024-50059, CVE-2024-49963, CVE-2024-47707, CVE-2024-53155, CVE-2024-56634, CVE-2024-47697, CVE-2024-49958, CVE-2024-47706, CVE-2024-56603, CVE-2024-50302, CVE-2024-35887, CVE-2024-56539, CVE-2024-53183, CVE-2024-44938, CVE-2024-57900, CVE-2024-53130, CVE-2025-21697, CVE-2024-49892, CVE-2024-50265, CVE-2024-50024, CVE-2025-0927, CVE-2024-49924, CVE-2024-56780, CVE-2024-56569, CVE-2024-57929, CVE-2024-50236, CVE-2024-50273, CVE-2024-49949, CVE-2024-53157, CVE-2024-56659, CVE-2024-57849, CVE-2024-57908, CVE-2024-49894, CVE-2024-47723, CVE-2024-56723, CVE-2024-49957, CVE-2024-50127, CVE-2024-43863, CVE-2025-21687, CVE-2024-48881, CVE-2024-56704, CVE-2024-49884, CVE-2024-47710, CVE-2024-56739, CVE-2024-53135, CVE-2024-56532, CVE-2024-49965, CVE-2024-57889, CVE-2024-53112, CVE-2024-42252, CVE-2024-49896, CVE-2024-50237, CVE-2024-56600, CVE-2024-57951, CVE-2024-43900, CVE-2024-53156, CVE-2024-50099, CVE-2024-56631, CVE-2024-50045, CVE-2024-38588, CVE-2024-57884, CVE-2024-49938, CVE-2025-21694, CVE-2024-47757, CVE-2024-56562, CVE-2024-57904, CVE-2024-49955, CVE-2024-47709, CVE-2024-56756, CVE-2024-49962, CVE-2024-53184, CVE-2024-53131, CVE-2024-57901, CVE-2024-47756, CVE-2024-47701, CVE-2024-50148, CVE-2024-44931, CVE-2024-50202, CVE-2024-56601, CVE-2024-56643, CVE-2024-47670, CVE-2024-56633, CVE-2024-57931, CVE-2024-50184, CVE-2024-47712, CVE-2024-57906, CVE-2024-47671, CVE-2025-21638, CVE-2024-50143, CVE-2024-57913, CVE-2024-50205, CVE-2024-56670, CVE-2024-53198,CVE-2024-56629, CVE-2024-53101, CVE-2024-56748, CVE-2024-49981, CVE-2024-53142, CVE-2024-47696, CVE-2024-56779, CVE-2025-21689, CVE-2024-57948, CVE-2022-49034, CVE-2025-21639, CVE-2024-56769, CVE-2025-21653, CVE-2024-56688, CVE-2024-57911, CVE-2024-50269, CVE-2024-46853, CVE-2024-53066, CVE-2024-53140, CVE-2024-47679, CVE-2024-47698, CVE-2024-50167, CVE-2024-38544, CVE-2024-50096, CVE-2024-49973, CVE-2024-50044, CVE-2024-53217, CVE-2024-50006, CVE-2024-50194, CVE-2024-50296, CVE-2024-53150, CVE-2024-40911, CVE-2024-46731, CVE-2024-56724, CVE-2024-41016, CVE-2024-50251, CVE-2024-56681, CVE-2024-53690, CVE-2024-47740, CVE-2024-49936, CVE-2024-40965, CVE-2024-49975, CVE-2024-50150, CVE-2024-56572, CVE-2024-49996, CVE-2024-56586, CVE-2024-53124, CVE-2024-49877, CVE-2024-57910, CVE-2024-49952, CVE-2024-55916, CVE-2024-53121, CVE-2024-56531, CVE-2024-50151, CVE-2024-56767, CVE-2024-52332, CVE-2024-49868, CVE-2024-50179, CVE-2024-56570, CVE-2024-53061, CVE-2024-50171, CVE-2025-21664, CVE-2024-57850, CVE-2024-53181, CVE-2024-50195, CVE-2024-50007, CVE-2024-49883, CVE-2024-56597, CVE-2021-47469) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 18.04 LTS linux-image-5.4.0-1142-aws 5.4.0-1142.152~18.04.1 Available with Ubuntu Pro linux-image-aws 5.4.0.1142.152~18.04.1 Available with Ubuntu Pro After a standard system update you need to reboot your computer to make all the necessary changes. ATTENTION: Due to an unavoidable ABI change the kernel updates have been given a new version number, which requires you to recompile and reinstall all third party kernel modules you might have installed. Unless you manually uninstalled the standard kernel metapackages (e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual, linux-powerpc), a standard system upgrade will automatically perform this as well. References: https://ubuntu.com/security/notices/USN-7401-1 CVE-2021-47219, CVE-2021-47469, CVE-2022-49034, CVE-2023-52458, CVE-2024-23848, CVE-2024-35887, CVE-2024-35896, CVE-2024-38544, CVE-2024-38588, CVE-2024-40911, CVE-2024-40953, CVE-2024-40965, CVE-2024-41016, CVE-2024-41066, CVE-2024-42252, CVE-2024-43098, CVE-2024-43863, CVE-2024-43900, CVE-2024-44931, CVE-2024-44938, CVE-2024-46731, CVE-2024-46849, CVE-2024-46853, CVE-2024-46854, CVE-2024-47670, CVE-2024-47671, CVE-2024-47672, CVE-2024-47674, CVE-2024-47679, CVE-2024-47684, CVE-2024-47685, CVE-2024-47692, CVE-2024-47696, CVE-2024-47697, CVE-2024-47698, CVE-2024-47699, CVE-2024-47701, CVE-2024-47706, CVE-2024-47707, CVE-2024-47709, CVE-2024-47710, CVE-2024-47712, CVE-2024-47713, CVE-2024-47723, CVE-2024-47737, CVE-2024-47740, CVE-2024-47742, CVE-2024-47747, CVE-2024-47749, CVE-2024-47756, CVE-2024-47757, CVE-2024-48881, CVE-2024-49851, CVE-2024-49860, CVE-2024-49867, CVE-2024-49868, CVE-2024-49877, CVE-2024-49878, CVE-2024-49879, CVE-2024-49882, CVE-2024-49883, CVE-2024-49884, CVE-2024-49892, CVE-2024-49894, CVE-2024-49896, CVE-2024-49900, CVE-2024-49902, CVE-2024-49903, CVE-2024-49924, CVE-2024-49925, CVE-2024-49936, CVE-2024-49938, CVE-2024-49944, CVE-2024-49948, CVE-2024-49949, CVE-2024-49952, CVE-2024-49955, CVE-2024-49957, CVE-2024-49958, CVE-2024-49959, CVE-2024-49962, CVE-2024-49963, CVE-2024-49965, CVE-2024-49966, CVE-2024-49973, CVE-2024-49975, CVE-2024-49981, CVE-2024-49982, CVE-2024-49985, CVE-2024-49995, CVE-2024-49996, CVE-2024-49997, CVE-2024-50006, CVE-2024-50007, CVE-2024-50008, CVE-2024-50024, CVE-2024-50033, CVE-2024-50035, CVE-2024-50039, CVE-2024-50040, CVE-2024-50044, CVE-2024-50045, CVE-2024-50051, CVE-2024-50059, CVE-2024-50074, CVE-2024-50082, CVE-2024-50096, CVE-2024-50099, CVE-2024-50116, CVE-2024-50117, CVE-2024-50127, CVE-2024-50131, CVE-2024-50134, CVE-2024-50142, CVE-2024-50143, CVE-2024-50148, CVE-2024-50150,CVE-2024-50151, CVE-2024-50167, CVE-2024-50171, CVE-2024-50179, CVE-2024-50180, CVE-2024-50184, CVE-2024-50194, CVE-2024-50195, CVE-2024-50199, CVE-2024-50202, CVE-2024-50205, CVE-2024-50218, CVE-2024-50229, CVE-2024-50230, CVE-2024-50233, CVE-2024-50234, CVE-2024-50236, CVE-2024-50237, CVE-2024-50251, CVE-2024-50262, CVE-2024-50265, CVE-2024-50267, CVE-2024-50269, CVE-2024-50273, CVE-2024-50278, CVE-2024-50279, CVE-2024-50282, CVE-2024-50287, CVE-2024-50290, CVE-2024-50296, CVE-2024-50299, CVE-2024-50301, CVE-2024-50302, CVE-2024-52332, CVE-2024-53059, CVE-2024-53061, CVE-2024-53063, CVE-2024-53066, CVE-2024-53101, CVE-2024-53104, CVE-2024-53112, CVE-2024-53121, CVE-2024-53124, CVE-2024-53127, CVE-2024-53130, CVE-2024-53131, CVE-2024-53135, CVE-2024-53138, CVE-2024-53140, CVE-2024-53142, CVE-2024-53145, CVE-2024-53146, CVE-2024-53148, CVE-2024-53150, CVE-2024-53155, CVE-2024-53156, CVE-2024-53157, CVE-2024-53158, CVE-2024-53161, CVE-2024-53165, CVE-2024-53171, CVE-2024-53172, CVE-2024-53173, CVE-2024-53174, CVE-2024-53181, CVE-2024-53183, CVE-2024-53184, CVE-2024-53194, CVE-2024-53197, CVE-2024-53198, CVE-2024-53214, CVE-2024-53217, CVE-2024-53227, CVE-2024-53239, CVE-2024-53680, CVE-2024-53690, CVE-2024-55916, CVE-2024-56531, CVE-2024-56532, CVE-2024-56539, CVE-2024-56548, CVE-2024-56558, CVE-2024-56562, CVE-2024-56567, CVE-2024-56569, CVE-2024-56570, CVE-2024-56572, CVE-2024-56574, CVE-2024-56576, CVE-2024-56581, CVE-2024-56586, CVE-2024-56587, CVE-2024-56593, CVE-2024-56594, CVE-2024-56595, CVE-2024-56596, CVE-2024-56597, CVE-2024-56598, CVE-2024-56600, CVE-2024-56601, CVE-2024-56602, CVE-2024-56603, CVE-2024-56605, CVE-2024-56606, CVE-2024-56614, CVE-2024-56615, CVE-2024-56619, CVE-2024-56629, CVE-2024-56630, CVE-2024-56631, CVE-2024-56633, CVE-2024-56634, CVE-2024-56637, CVE-2024-56642, CVE-2024-56643, CVE-2024-56644, CVE-2024-56645, CVE-2024-56650, CVE-2024-56659, CVE-2024-56670,CVE-2024-56681, CVE-2024-56688, CVE-2024-56690, CVE-2024-56691, CVE-2024-56694, CVE-2024-56700, CVE-2024-56704, CVE-2024-56720, CVE-2024-56723, CVE-2024-56724, CVE-2024-56739, CVE-2024-56746, CVE-2024-56747, CVE-2024-56748, CVE-2024-56756, CVE-2024-56767, CVE-2024-56769, CVE-2024-56770, CVE-2024-56779, CVE-2024-56780, CVE-2024-56781, CVE-2024-57802, CVE-2024-57807, CVE-2024-57849, CVE-2024-57850, CVE-2024-57884, CVE-2024-57889, CVE-2024-57890, CVE-2024-57892, CVE-2024-57900, CVE-2024-57901, CVE-2024-57902, CVE-2024-57904, CVE-2024-57906, CVE-2024-57908, CVE-2024-57910, CVE-2024-57911, CVE-2024-57912, CVE-2024-57913, CVE-2024-57922, CVE-2024-57929, CVE-2024-57931, CVE-2024-57938, CVE-2024-57946, CVE-2024-57948, CVE-2024-57951, CVE-2025-0927, CVE-2025-21638, CVE-2025-21639, CVE-2025-21640, CVE-2025-21653, CVE-2025-21664, CVE-2025-21678, CVE-2025-21687, CVE-2025-21689, CVE-2025-21694, CVE-2025-21697, CVE-2025-21699 . Numerous security patches for Ubuntu 18.04 LTS's AWS kernel strengthen system protection against diverse vulnerabilities.. AWS Kernel Updates, Ubuntu 18.04 LTS, Security Patches. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Apr 01, 2025 Critical Ubuntu
172

Ubuntu 7379-1: Linux kernel Security Advisory Updates

Several security issues were fixed in the Linux kernel.. ========================================================================== Ubuntu Security Notice USN-7379-1 March 27, 2025 linux, linux-aws, linux-azure, linux-gcp, linux-hwe-6.11, linux-oracle, linux-realtime vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 24.10 - Ubuntu 24.04 LTS Summary: Several security issues were fixed in the Linux kernel. Software Description: - linux: Linux kernel - linux-aws: Linux kernel for Amazon Web Services (AWS) systems - linux-azure: Linux kernel for Microsoft Azure Cloud systems - linux-gcp: Linux kernel for Google Cloud Platform (GCP) systems - linux-oracle: Linux kernel for Oracle Cloud systems - linux-realtime: Linux kernel for Real-time systems - linux-hwe-6.11: Linux hardware enablement (HWE) kernel Details: Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - ARM64 architecture; - MIPS architecture; - PowerPC architecture; - RISC-V architecture; - S390 architecture; - x86 architecture; - Block layer subsystem; - Compute Acceleration Framework; - ACPI drivers; - Drivers core; - Ublk userspace block driver; - Virtio block driver; - Bluetooth drivers; - Buffer Sharing and Synchronization framework; - DMA engine subsystem; - EFI core; - GPIO subsystem; - GPU drivers; - HID subsystem; - Microsoft Hyper-V drivers; - Hardware monitoring drivers; - I3C subsystem; - IIO ADC drivers; - IIO subsystem; - InfiniBand drivers; - IOMMU subsystem; - LED subsystem; - Multiple devices driver; - Media drivers; - Microchip PCI driver; - MTD block device drivers; - Network drivers; - Mellanox network drivers; -STMicroelectronics network drivers; - NVME drivers; - PCI subsystem; - PHY drivers; - Pin controllers subsystem; - x86 platform drivers; - i.MX PM domains; - Power supply drivers; - Voltage and Current Regulator drivers; - SCSI subsystem; - i.MX SoC drivers; - SPI subsystem; - UFS subsystem; - USB Gadget drivers; - TDX Guest driver; - AFS file system; - BTRFS file system; - Ceph distributed file system; - File systems infrastructure; - F2FS file system; - JFFS2 file system; - JFS file system; - Network file systems library; - Network file system (NFS) server daemon; - NILFS2 file system; - File system notification infrastructure; - Overlay file system; - Diskquota system; - SMB network file system; - DRM display driver; - BPF subsystem; - VLANs driver; - KASAN memory debugging framework; - Memory management; - StackDepot library; - Bluetooth subsystem; - LAPB network protocol; - Netfilter; - io_uring subsystem; - Control group (cgroup); - DMA mapping infrastructure; - KCSAN framework; - Scheduler infrastructure; - Seccomp subsystem; - Tracing infrastructure; - Workqueue subsystem; - KUnit library; - CAN network layer; - Networking core; - DCCP (Datagram Congestion Control Protocol); - HSR network protocol; - IEEE802154.4 network protocol; - IPv4 networking; - IPv6 networking; - MAC80211 subsystem; - Multipath TCP; - NET/ROM layer; - Packet sockets; - RDS protocol; - Network traffic control; - SCTP protocol; - SMC sockets; - TIPC protocol; - Wireless networking; - eXpress Data Path; - SELinux security module; - ALSA framework; - Intel ASoC drivers; - SOF drivers; (CVE-2024-57921, CVE-2024-56614, CVE-2024-56558, CVE-2024-56589, CVE-2024-56662, CVE-2024-56610, CVE-2024-56717, CVE-2024-57890, CVE-2024-55639, CVE-2024-56562, CVE-2025-21633,CVE-2024-56598, CVE-2024-47794, CVE-2024-41935, CVE-2024-57901, CVE-2024-56587, CVE-2024-56581, CVE-2024-56783, CVE-2024-57888, CVE-2024-57809, CVE-2024-57926, CVE-2025-21650, CVE-2024-56634, CVE-2025-21639, CVE-2025-21656, CVE-2024-56578, CVE-2025-21632, CVE-2024-56784, CVE-2025-21644, CVE-2024-56776, CVE-2024-56764, CVE-2024-56652, CVE-2024-56550, CVE-2024-56569, CVE-2024-57904, CVE-2024-49569, CVE-2024-56770, CVE-2024-56606, CVE-2024-57806, CVE-2024-56646, CVE-2024-57895, CVE-2024-57880, CVE-2024-56650, CVE-2024-56591, CVE-2024-56590, CVE-2024-56642, CVE-2024-56713, CVE-2025-21663, CVE-2024-57938, CVE-2024-56760, CVE-2024-56583, CVE-2025-21662, CVE-2024-56629, CVE-2024-47408, CVE-2024-57850, CVE-2024-56777, CVE-2024-56626, CVE-2024-56773, CVE-2024-56647, CVE-2025-21664, CVE-2024-56564, CVE-2024-56597, CVE-2024-56623, CVE-2024-57897, CVE-2024-56670, CVE-2024-56567, CVE-2024-57931, CVE-2024-56761, CVE-2024-57935, CVE-2024-53690, CVE-2025-21640, CVE-2024-56608, CVE-2024-57878, CVE-2025-21648, CVE-2024-57898, CVE-2024-57889, CVE-2024-56644, CVE-2024-56763, CVE-2024-57900, CVE-2024-56575, CVE-2024-56786, CVE-2025-21635, CVE-2024-56559, CVE-2024-56659, CVE-2024-56621, CVE-2024-57908, CVE-2024-52319, CVE-2024-43098, CVE-2024-57838, CVE-2024-56782, CVE-2025-21631, CVE-2024-36476, CVE-2025-21649, CVE-2024-56667, CVE-2024-49571, CVE-2024-55916, CVE-2024-57887, CVE-2024-56640, CVE-2024-57801, CVE-2024-57886, CVE-2024-56582, CVE-2024-56561, CVE-2024-56665, CVE-2024-57805, CVE-2024-51729, CVE-2024-57857, CVE-2024-57876, CVE-2024-57896, CVE-2024-57799, CVE-2024-57925, CVE-2024-57917, CVE-2024-56664, CVE-2024-57913, CVE-2025-21660, CVE-2024-56596, CVE-2024-56671, CVE-2024-56595, CVE-2024-56781, CVE-2024-57912, CVE-2024-56638, CVE-2024-56636, CVE-2024-56669, CVE-2024-57945, CVE-2024-56633, CVE-2024-56605, CVE-2024-57882, CVE-2025-21652, CVE-2024-53179, CVE-2024-56599, CVE-2024-57892, CVE-2025-21647, CVE-2024-57910, CVE-2024-57792, CVE-2024-56768, CVE-2024-56711, CVE-2024-47143, CVE-2024-56577,CVE-2024-56574, CVE-2024-56765, CVE-2024-58087, CVE-2024-53685, CVE-2024-56787, CVE-2024-56592, CVE-2024-56368, CVE-2024-56615, CVE-2024-56712, CVE-2024-56648, CVE-2024-57874, CVE-2024-56653, CVE-2024-56656, CVE-2024-56641, CVE-2024-56719, CVE-2025-21658, CVE-2024-56637, CVE-2024-56709, CVE-2024-57843, CVE-2024-56588, CVE-2024-57807, CVE-2024-57939, CVE-2024-56594, CVE-2024-55642, CVE-2024-57841, CVE-2024-50051, CVE-2024-56663, CVE-2024-56654, CVE-2024-56369, CVE-2024-57885, CVE-2024-56779, CVE-2024-56772, CVE-2024-56617, CVE-2024-56624, CVE-2024-56570, CVE-2024-56639, CVE-2025-21642, CVE-2024-56603, CVE-2024-56604, CVE-2024-57875, CVE-2025-21653, CVE-2025-21654, CVE-2024-56645, CVE-2024-56775, CVE-2024-52332, CVE-2024-48875, CVE-2024-41932, CVE-2024-57804, CVE-2025-21661, CVE-2024-57932, CVE-2024-53681, CVE-2024-56563, CVE-2024-56609, CVE-2024-57798, CVE-2025-21637, CVE-2024-57940, CVE-2024-56675, CVE-2024-56630, CVE-2024-56565, CVE-2024-54460, CVE-2024-56573, CVE-2025-21645, CVE-2024-56715, CVE-2024-56632, CVE-2024-56622, CVE-2024-56673, CVE-2024-48881, CVE-2024-56593, CVE-2024-56620, CVE-2024-48876, CVE-2025-21643, CVE-2024-56657, CVE-2024-57905, CVE-2024-57802, CVE-2024-56766, CVE-2024-57893, CVE-2024-57894, CVE-2024-57903, CVE-2024-57902, CVE-2024-57934, CVE-2024-57881, CVE-2024-56602, CVE-2024-47809, CVE-2024-56580, CVE-2024-57899, CVE-2024-56759, CVE-2024-56586, CVE-2024-57839, CVE-2024-49568, CVE-2024-56660, CVE-2024-53687, CVE-2024-57907, CVE-2024-56601, CVE-2024-56767, CVE-2024-57916, CVE-2024-56616, CVE-2024-56557, CVE-2024-56566, CVE-2024-56643, CVE-2025-21638, CVE-2024-57879, CVE-2025-21655, CVE-2024-56618, CVE-2024-56758, CVE-2024-56576, CVE-2024-57849, CVE-2024-56372, CVE-2024-45828, CVE-2024-57795, CVE-2024-56710, CVE-2024-56568, CVE-2024-56769, CVE-2025-21834, CVE-2024-56716, CVE-2024-56613, CVE-2024-56584, CVE-2024-56552, CVE-2025-21659, CVE-2024-57929, CVE-2024-57946, CVE-2025-21646, CVE-2024-56572, CVE-2024-55881, CVE-2025-21651, CVE-2024-57924, CVE-2025-21634,CVE-2024-53682, CVE-2024-57872, CVE-2024-53680, CVE-2024-54680, CVE-2024-57918, CVE-2024-56780, CVE-2025-21636, CVE-2024-57906, CVE-2024-55641, CVE-2024-54455, CVE-2024-57919, CVE-2024-54683, CVE-2024-54193, CVE-2024-56635, CVE-2024-57933, CVE-2024-56611, CVE-2024-56551, CVE-2024-57883, CVE-2024-57793, CVE-2024-56631, CVE-2024-56600, CVE-2024-56651, CVE-2024-56714, CVE-2024-39282, CVE-2024-56627, CVE-2024-56649, CVE-2024-56579, CVE-2024-57791, CVE-2024-56774, CVE-2024-57944, CVE-2024-57911, CVE-2024-48873, CVE-2024-57884, CVE-2025-21629, CVE-2024-56778, CVE-2024-56619, CVE-2024-54191, CVE-2024-56771, CVE-2024-47141, CVE-2024-56757, CVE-2024-56718, CVE-2024-56655, CVE-2024-56607, CVE-2024-56785, CVE-2024-56625) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 24.10 linux-image-6.11.0-1007-realtime 6.11.0-1007.7 linux-image-6.11.0-1011-aws 6.11.0-1011.12 linux-image-6.11.0-1011-gcp 6.11.0-1011.11 linux-image-6.11.0-1011-gcp-64k 6.11.0-1011.11 linux-image-6.11.0-1012-azure 6.11.0-1012.12 linux-image-6.11.0-1012-azure-fde 6.11.0-1012.12 linux-image-6.11.0-1013-oracle 6.11.0-1013.14 linux-image-6.11.0-1013-oracle-64k 6.11.0-1013.14 linux-image-6.11.0-21-generic 6.11.0-21.21 linux-image-6.11.0-21-generic-64k 6.11.0-21.21 linux-image-aws 6.11.0-1011.12 linux-image-azure 6.11.0-1012.12 linux-image-azure-fde 6.11.0-1012.12 linux-image-gcp 6.11.0-1011.11 linux-image-gcp-64k 6.11.0-1011.11 linux-image-generic 6.11.0-21.21 linux-image-generic-64k 6.11.0-21.21 linux-image-generic-64k-hwe-24.04 6.11.0-21.21 linux-image-generic-hwe-24.04 6.11.0-21.21 linux-image-oem-24.04 6.11.0-21.21 linux-image-oem-24.04a 6.11.0-21.21 linux-image-oracle 6.11.0-1013.14 linux-image-oracle-64k 6.11.0-1013.14 linux-image-realtime 6.11.0-1007.7 linux-image-realtime-hwe-24.04 6.11.0-1007.7 linux-image-virtual 6.11.0-21.21 linux-image-virtual-hwe-24.04 6.11.0-21.21 Ubuntu 24.04 LTS linux-image-6.11.0-21-generic 6.11.0-21.21~24.04.1+1 linux-image-6.11.0-21-generic-64k 6.11.0-21.21~24.04.1+1 linux-image-generic-64k-hwe-24.04 6.11.0-21.21~24.04.1 linux-image-generic-hwe-24.04 6.11.0-21.21~24.04.1 linux-image-virtual-hwe-24.04 6.11.0-21.21~24.04.1 After a standard system update you need to reboot your computer to make all the necessary changes. ATTENTION: Due to an unavoidable ABI change the kernel updates have been given a new version number, which requires you to recompile and reinstall all third party kernel modules you might have installed. Unless you manually uninstalled the standard kernel metapackages (e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual, linux-powerpc), a standard system upgrade will automatically perform this as well. References: https://ubuntu.com/security/notices/USN-7379-1 CVE-2024-36476, CVE-2024-39282, CVE-2024-41932, CVE-2024-41935, CVE-2024-43098, CVE-2024-45828, CVE-2024-47141, CVE-2024-47143, CVE-2024-47408, CVE-2024-47794, CVE-2024-47809, CVE-2024-48873, CVE-2024-48875, CVE-2024-48876, CVE-2024-48881, CVE-2024-49568, CVE-2024-49569, CVE-2024-49571, CVE-2024-50051, CVE-2024-51729, CVE-2024-52319, CVE-2024-52332, CVE-2024-53179, CVE-2024-53680, CVE-2024-53681, CVE-2024-53682, CVE-2024-53685, CVE-2024-53687, CVE-2024-53690, CVE-2024-54191, CVE-2024-54193, CVE-2024-54455, CVE-2024-54460, CVE-2024-54680, CVE-2024-54683, CVE-2024-55639, CVE-2024-55641, CVE-2024-55642, CVE-2024-55881, CVE-2024-55916, CVE-2024-56368, CVE-2024-56369, CVE-2024-56372, CVE-2024-56550, CVE-2024-56551, CVE-2024-56552, CVE-2024-56557, CVE-2024-56558, CVE-2024-56559, CVE-2024-56561, CVE-2024-56562, CVE-2024-56563, CVE-2024-56564, CVE-2024-56565, CVE-2024-56566,CVE-2024-56567, CVE-2024-56568, CVE-2024-56569, CVE-2024-56570, CVE-2024-56572, CVE-2024-56573, CVE-2024-56574, CVE-2024-56575, CVE-2024-56576, CVE-2024-56577, CVE-2024-56578, CVE-2024-56579, CVE-2024-56580, CVE-2024-56581, CVE-2024-56582, CVE-2024-56583, CVE-2024-56584, CVE-2024-56586, CVE-2024-56587, CVE-2024-56588, CVE-2024-56589, CVE-2024-56590, CVE-2024-56591, CVE-2024-56592, CVE-2024-56593, CVE-2024-56594, CVE-2024-56595, CVE-2024-56596, CVE-2024-56597, CVE-2024-56598, CVE-2024-56599, CVE-2024-56600, CVE-2024-56601, CVE-2024-56602, CVE-2024-56603, CVE-2024-56604, CVE-2024-56605, CVE-2024-56606, CVE-2024-56607, CVE-2024-56608, CVE-2024-56609, CVE-2024-56610, CVE-2024-56611, CVE-2024-56613, CVE-2024-56614, CVE-2024-56615, CVE-2024-56616, CVE-2024-56617, CVE-2024-56618, CVE-2024-56619, CVE-2024-56620, CVE-2024-56621, CVE-2024-56622, CVE-2024-56623, CVE-2024-56624, CVE-2024-56625, CVE-2024-56626, CVE-2024-56627, CVE-2024-56629, CVE-2024-56630, CVE-2024-56631, CVE-2024-56632, CVE-2024-56633, CVE-2024-56634, CVE-2024-56635, CVE-2024-56636, CVE-2024-56637, CVE-2024-56638, CVE-2024-56639, CVE-2024-56640, CVE-2024-56641, CVE-2024-56642, CVE-2024-56643, CVE-2024-56644, CVE-2024-56645, CVE-2024-56646, CVE-2024-56647, CVE-2024-56648, CVE-2024-56649, CVE-2024-56650, CVE-2024-56651, CVE-2024-56652, CVE-2024-56653, CVE-2024-56654, CVE-2024-56655, CVE-2024-56656, CVE-2024-56657, CVE-2024-56659, CVE-2024-56660, CVE-2024-56662, CVE-2024-56663, CVE-2024-56664, CVE-2024-56665, CVE-2024-56667, CVE-2024-56669, CVE-2024-56670, CVE-2024-56671, CVE-2024-56673, CVE-2024-56675, CVE-2024-56709, CVE-2024-56710, CVE-2024-56711, CVE-2024-56712, CVE-2024-56713, CVE-2024-56714, CVE-2024-56715, CVE-2024-56716, CVE-2024-56717, CVE-2024-56718, CVE-2024-56719, CVE-2024-56757, CVE-2024-56758, CVE-2024-56759, CVE-2024-56760, CVE-2024-56761, CVE-2024-56763, CVE-2024-56764, CVE-2024-56765, CVE-2024-56766, CVE-2024-56767,CVE-2024-56768, CVE-2024-56769, CVE-2024-56770, CVE-2024-56771, CVE-2024-56772, CVE-2024-56773, CVE-2024-56774, CVE-2024-56775, CVE-2024-56776, CVE-2024-56777, CVE-2024-56778, CVE-2024-56779, CVE-2024-56780, CVE-2024-56781, CVE-2024-56782, CVE-2024-56783, CVE-2024-56784, CVE-2024-56785, CVE-2024-56786, CVE-2024-56787, CVE-2024-57791, CVE-2024-57792, CVE-2024-57793, CVE-2024-57795, CVE-2024-57798, CVE-2024-57799, CVE-2024-57801, CVE-2024-57802, CVE-2024-57804, CVE-2024-57805, CVE-2024-57806, CVE-2024-57807, CVE-2024-57809, CVE-2024-57838, CVE-2024-57839, CVE-2024-57841, CVE-2024-57843, CVE-2024-57849, CVE-2024-57850, CVE-2024-57857, CVE-2024-57872, CVE-2024-57874, CVE-2024-57875, CVE-2024-57876, CVE-2024-57878, CVE-2024-57879, CVE-2024-57880, CVE-2024-57881, CVE-2024-57882, CVE-2024-57883, CVE-2024-57884, CVE-2024-57885, CVE-2024-57886, CVE-2024-57887, CVE-2024-57888, CVE-2024-57889, CVE-2024-57890, CVE-2024-57892, CVE-2024-57893, CVE-2024-57894, CVE-2024-57895, CVE-2024-57896, CVE-2024-57897, CVE-2024-57898, CVE-2024-57899, CVE-2024-57900, CVE-2024-57901, CVE-2024-57902, CVE-2024-57903, CVE-2024-57904, CVE-2024-57905, CVE-2024-57906, CVE-2024-57907, CVE-2024-57908, CVE-2024-57910, CVE-2024-57911, CVE-2024-57912, CVE-2024-57913, CVE-2024-57916, CVE-2024-57917, CVE-2024-57918, CVE-2024-57919, CVE-2024-57921, CVE-2024-57924, CVE-2024-57925, CVE-2024-57926, CVE-2024-57929, CVE-2024-57931, CVE-2024-57932, CVE-2024-57933, CVE-2024-57934, CVE-2024-57935, CVE-2024-57938, CVE-2024-57939, CVE-2024-57940, CVE-2024-57944, CVE-2024-57945, CVE-2024-57946, CVE-2024-58087, CVE-2025-21629, CVE-2025-21631, CVE-2025-21632, CVE-2025-21633, CVE-2025-21634, CVE-2025-21635, CVE-2025-21636, CVE-2025-21637, CVE-2025-21638, CVE-2025-21639, CVE-2025-21640, CVE-2025-21642, CVE-2025-21643, CVE-2025-21644, CVE-2025-21645, CVE-2025-21646, CVE-2025-21647, CVE-2025-21648, CVE-2025-21649, CVE-2025-21650, CVE-2025-21651,CVE-2025-21652, CVE-2025-21653, CVE-2025-21654, CVE-2025-21655, CVE-2025-21656, CVE-2025-21658, CVE-2025-21659, CVE-2025-21660, CVE-2025-21661, CVE-2025-21662, CVE-2025-21663, CVE-2025-21664, CVE-2025-21834 Package Information: https://launchpad.net/ubuntu/+source/linux/6.11.0-21.21 https://launchpad.net/ubuntu/+source/linux-aws/6.11.0-1011.12 https://launchpad.net/ubuntu/+source/linux-azure/6.11.0-1012.12 https://launchpad.net/ubuntu/+source/linux-gcp/6.11.0-1011.11 https://launchpad.net/ubuntu/+source/linux-oracle/6.11.0-1013.14 https://launchpad.net/ubuntu/+source/linux-realtime/6.11.0-1007.7 https://launchpad.net/ubuntu/+source/linux-hwe-6.11/6.11.0-21.21~24.04.1 . Kernel updates in Ubuntu address multiple security issues, ensuring system integrity against potential compromises.. security, linux, kernel, ============================================. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Mar 27, 2025 Critical Ubuntu
197

Debian 11: DLA-4080-1 moderate: libaws insecure defaults with GnuTLS

AdaCore released a security advisory for "Insecure defaults in AWS.Client when linked with GnuTLS". The debian package of libaws is built with GnuTLS and the reproducer included in the advisory was used to confirm the (previous version of) . ------------------------------------------------------------------------- Debian LTS Advisory DLA-4080-1 This email address is being protected from spambots. You need JavaScript enabled to view it. https://www.debian.org/lts/security/ Andreas Henriksson March 09, 2025 https://wiki.debian.org/LTS ------------------------------------------------------------------------- Package : libaws Version : 20.2-2+deb11u1 CVE ID : CVE-2024-55581 Debian Bug : AdaCore released a security advisory for "Insecure defaults in AWS.Client when linked with GnuTLS". The debian package of libaws is built with GnuTLS and the reproducer included in the advisory was used to confirm the (previous version of) the package was affected. The upstream fix was backported to the packaged version to address the problem. For Debian 11 bullseye, this problem has been fixed in version 20.2-2+deb11u1. We recommend that you upgrade your libaws packages. For the detailed security status of libaws please refer to its security tracker page at: https://security-tracker.debian.org/tracker/source-package/libaws Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS . Enhance the libaws package on Debian LTS to address vulnerabilities stemming from unsecure configurations with GnuTLS, as outlined in advisory DLA-4080-1.. Debian LTS, libaws security, AWS client security, GnuTLS update, Debian advisory. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Mar 10, 2025 Important Debian LTS
172

Ubuntu 22.04 LTS USN-7308-1 Critical: Linux kernel flaws resolved

Several security issues were fixed in the Linux kernel.. ========================================================================== Ubuntu Security Notice USN-7308-1 February 27, 2025 linux-aws vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 22.04 LTS Summary: Several security issues were fixed in the Linux kernel. Software Description: - linux-aws: Linux kernel for Amazon Web Services (AWS) systems Details: Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - ARM64 architecture; - x86 architecture; - Block layer subsystem; - ACPI drivers; - GPU drivers; - HID subsystem; - I2C subsystem; - IIO ADC drivers; - IIO subsystem; - InfiniBand drivers; - IOMMU subsystem; - IRQ chip drivers; - Multiple devices driver; - Media drivers; - Network drivers; - STMicroelectronics network drivers; - Parport drivers; - Pin controllers subsystem; - Direct Digital Synthesis drivers; - TCM subsystem; - TTY drivers; - USB Dual Role (OTG-ready) Controller drivers; - USB Serial drivers; - USB Type-C support driver; - USB Type-C Connector System Software Interface driver; - BTRFS file system; - File systems infrastructure; - Network file system (NFS) client; - NILFS2 file system; - NTFS3 file system; - SMB network file system; - User-space API (UAPI); - io_uring subsystem; - BPF subsystem; - Timer substystem drivers; - Tracing infrastructure; - Closures library; - Memory management; - Amateur Radio drivers; - Bluetooth subsystem; - Networking core; - IPv4 networking; - MAC80211 subsystem; - Multipath TCP; - Netfilter; - Network traffic control; - SCTP protocol; - VMware vSockets driver; - XFRM subsystem; - Key management; - FireWire sound drivers; - HD-audio driver; - QCOMASoC drivers; - STMicroelectronics SoC drivers; - KVM core; (CVE-2024-50141, CVE-2024-53101, CVE-2024-50301, CVE-2024-50082, CVE-2024-39497, CVE-2024-50245, CVE-2024-50302, CVE-2024-35887, CVE-2024-50205, CVE-2024-50153, CVE-2024-50154, CVE-2024-50279, CVE-2024-50074, CVE-2024-50168, CVE-2024-50128, CVE-2024-53141, CVE-2024-50290, CVE-2024-50292, CVE-2024-50218, CVE-2024-50193, CVE-2024-50209, CVE-2024-53088, CVE-2024-50058, CVE-2024-50116, CVE-2024-50199, CVE-2024-50083, CVE-2024-50265, CVE-2024-53058, CVE-2024-50244, CVE-2024-50195, CVE-2024-41066, CVE-2024-50151, CVE-2024-50229, CVE-2024-42291, CVE-2024-40965, CVE-2024-50160, CVE-2024-53097, CVE-2024-50134, CVE-2024-53164, CVE-2024-50295, CVE-2024-50267, CVE-2024-50251, CVE-2024-50198, CVE-2024-53042, CVE-2024-40953, CVE-2024-50167, CVE-2024-50010, CVE-2024-42252, CVE-2024-53055, CVE-2024-50259, CVE-2024-50110, CVE-2024-50208, CVE-2024-50249, CVE-2024-50148, CVE-2024-50269, CVE-2024-50182, CVE-2024-50115, CVE-2024-50287, CVE-2024-50142, CVE-2024-53103, CVE-2024-50099, CVE-2024-50234, CVE-2024-50282, CVE-2024-50185, CVE-2024-50247, CVE-2024-50257, CVE-2024-50036, CVE-2024-50268, CVE-2024-50127, CVE-2024-50230, CVE-2024-50278, CVE-2024-50273, CVE-2024-26718, CVE-2024-50086, CVE-2024-50262, CVE-2024-50236, CVE-2024-50117, CVE-2024-50237, CVE-2024-53104, CVE-2024-50194, CVE-2024-50192, CVE-2024-53061, CVE-2024-53052, CVE-2024-50202, CVE-2024-41080, CVE-2024-50143, CVE-2023-52913, CVE-2024-50296, CVE-2024-50085, CVE-2024-50196, CVE-2024-50072, CVE-2024-50171, CVE-2024-50103, CVE-2024-50101, CVE-2024-50156, CVE-2024-50201, CVE-2024-50233, CVE-2024-53059, CVE-2024-53066, CVE-2024-53063, CVE-2024-50150, CVE-2024-50131, CVE-2024-50163, CVE-2024-50162, CVE-2024-50299, CVE-2024-50232) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 22.04 LTS linux-image-5.15.0-1078-aws 5.15.0-1078.85 linux-image-aws-lts-22.04 5.15.0.1078.80 After a standard system update you need to reboot yourcomputer to make all the necessary changes. ATTENTION: Due to an unavoidable ABI change the kernel updates have been given a new version number, which requires you to recompile and reinstall all third party kernel modules you might have installed. Unless you manually uninstalled the standard kernel metapackages (e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual, linux-powerpc), a standard system upgrade will automatically perform this as well. References: https://ubuntu.com/security/notices/USN-7308-1 CVE-2023-52913, CVE-2024-26718, CVE-2024-35887, CVE-2024-39497, CVE-2024-40953, CVE-2024-40965, CVE-2024-41066, CVE-2024-41080, CVE-2024-42252, CVE-2024-42291, CVE-2024-50010, CVE-2024-50036, CVE-2024-50058, CVE-2024-50072, CVE-2024-50074, CVE-2024-50082, CVE-2024-50083, CVE-2024-50085, CVE-2024-50086, CVE-2024-50099, CVE-2024-50101, CVE-2024-50103, CVE-2024-50110, CVE-2024-50115, CVE-2024-50116, CVE-2024-50117, CVE-2024-50127, CVE-2024-50128, CVE-2024-50131, CVE-2024-50134, CVE-2024-50141, CVE-2024-50142, CVE-2024-50143, CVE-2024-50148, CVE-2024-50150, CVE-2024-50151, CVE-2024-50153, CVE-2024-50154, CVE-2024-50156, CVE-2024-50160, CVE-2024-50162, CVE-2024-50163, CVE-2024-50167, CVE-2024-50168, CVE-2024-50171, CVE-2024-50182, CVE-2024-50185, CVE-2024-50192, CVE-2024-50193, CVE-2024-50194, CVE-2024-50195, CVE-2024-50196, CVE-2024-50198, CVE-2024-50199, CVE-2024-50201, CVE-2024-50202, CVE-2024-50205, CVE-2024-50208, CVE-2024-50209, CVE-2024-50218, CVE-2024-50229, CVE-2024-50230, CVE-2024-50232, CVE-2024-50233, CVE-2024-50234, CVE-2024-50236, CVE-2024-50237, CVE-2024-50244, CVE-2024-50245, CVE-2024-50247, CVE-2024-50249, CVE-2024-50251, CVE-2024-50257, CVE-2024-50259, CVE-2024-50262, CVE-2024-50265, CVE-2024-50267, CVE-2024-50268, CVE-2024-50269, CVE-2024-50273, CVE-2024-50278, CVE-2024-50279, CVE-2024-50282, CVE-2024-50287, CVE-2024-50290, CVE-2024-50292, CVE-2024-50295, CVE-2024-50296, CVE-2024-50299, CVE-2024-50301, CVE-2024-50302, CVE-2024-53042, CVE-2024-53052, CVE-2024-53055, CVE-2024-53058, CVE-2024-53059, CVE-2024-53061, CVE-2024-53063, CVE-2024-53066, CVE-2024-53088, CVE-2024-53097, CVE-2024-53101, CVE-2024-53103, CVE-2024-53104, CVE-2024-53141, CVE-2024-53164 Package Information: https://launchpad.net/ubuntu/+source/linux-aws/5.15.0-1078.85 . Debian 11.5 updates tackle various system vulnerabilities and improve overall stability. A restart is required following this update.. Linux Kernel Update, Ubuntu Security Advisory, AWS Kernel Improvements. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Feb 27, 2025 Critical Ubuntu
172

Ubuntu 24.10: USN-7238-4 urgent: Critical AWS kernel vulnerabilities

Several security issues were fixed in the Linux kernel.. ========================================================================== Ubuntu Security Notice USN-7238-4 February 12, 2025 linux-aws vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 24.10 Summary: Several security issues were fixed in the Linux kernel. Software Description: - linux-aws: Linux kernel for Amazon Web Services (AWS) systems Details: Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - Network traffic control; - VMware vSockets driver; (CVE-2024-53103, CVE-2024-53164) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 24.10 linux-image-6.11.0-1008-aws 6.11.0-1008.8 linux-image-aws 6.11.0-1008.8 After a standard system update you need to reboot your computer to make all the necessary changes. ATTENTION: Due to an unavoidable ABI change the kernel updates have been given a new version number, which requires you to recompile and reinstall all third party kernel modules you might have installed. Unless you manually uninstalled the standard kernel metapackages (e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual, linux-powerpc), a standard system upgrade will automatically perform this as well. References: https://ubuntu.com/security/notices/USN-7238-4 https://ubuntu.com/security/notices/USN-7238-3 https://ubuntu.com/security/notices/USN-7238-2 https://ubuntu.com/security/notices/USN-7238-1 CVE-2024-53103, CVE-2024-53164 Package Information: https://launchpad.net/ubuntu/+source/linux-aws/6.11.0-1008.8 . Ubuntu 24.10 rolls out vital security patches addressing critical vulnerabilities in kernel handlingand various services.. linux kernel security, Ubuntu updates, AWS kernel vulnerabilities. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Feb 12, 2025 Critical Ubuntu
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200