Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×
Several security issues were fixed in the Linux kernel.. ========================================================================== Ubuntu Security Notice USN-7585-1 June 19, 2025 linux, linux-aws, linux-aws-5.4, linux-azure, linux-gcp, linux-gcp-5.4, linux-ibm, linux-ibm-5.4, linux-kvm, linux-oracle, linux-oracle-5.4, linux-xilinx-zynqmp vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 20.04 LTS - Ubuntu 18.04 LTS Summary: Several security issues were fixed in the Linux kernel. Software Description: - linux: Linux kernel - linux-aws: Linux kernel for Amazon Web Services (AWS) systems - linux-azure: Linux kernel for Microsoft Azure Cloud systems - linux-gcp: Linux kernel for Google Cloud Platform (GCP) systems - linux-ibm: Linux kernel for IBM cloud systems - linux-kvm: Linux kernel for cloud environments - linux-oracle: Linux kernel for Oracle Cloud systems - linux-xilinx-zynqmp: Linux kernel for Xilinx ZynqMP processors - linux-aws-5.4: Linux kernel for Amazon Web Services (AWS) systems - linux-gcp-5.4: Linux kernel for Google Cloud Platform (GCP) systems - linux-ibm-5.4: Linux kernel for IBM cloud systems - linux-oracle-5.4: Linux kernel for Oracle Cloud systems Details: It was discovered that the CIFS network file system implementation in the Linux kernel did not properly verify the target namespace when handling upcalls. An attacker could use this to expose sensitive information. (CVE-2025-2312) Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - PowerPC architecture; - x86 architecture; - iSCSI Boot Firmware Table Attributes driver; - GPU drivers; - HID subsystem; - InfiniBand drivers; - Media drivers; - MemoryStick subsystem; - Network drivers; - NTB driver; - PCIsubsystem; - SCSI subsystem; - Thermal drivers; - JFS file system; - File systems infrastructure; - Tracing infrastructure; - 802.1Q VLAN protocol; - Asynchronous Transfer Mode (ATM) subsystem; - Bluetooth subsystem; - IPv6 networking; - Netfilter; - Network traffic control; - Sun RPC protocol; - USB sound devices; (CVE-2025-22007, CVE-2025-21959, CVE-2025-22021, CVE-2025-22063, CVE-2025-22045, CVE-2024-58093, CVE-2022-49636, CVE-2025-22020, CVE-2024-53168, CVE-2025-22071, CVE-2025-39735, CVE-2025-21991, CVE-2025-21992, CVE-2025-21996, CVE-2025-22035, CVE-2023-53034, CVE-2025-22054, CVE-2025-23136, CVE-2025-22073, CVE-2024-56551, CVE-2025-22005, CVE-2025-37937, CVE-2021-47211, CVE-2025-22086, CVE-2025-21956, CVE-2025-38637, CVE-2025-22004, CVE-2025-22018, CVE-2025-22079, CVE-2025-21957, CVE-2025-21993) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 20.04 LTS linux-image-5.4.0-1065-xilinx-zynqmp 5.4.0-1065.69 Available with Ubuntu Pro linux-image-5.4.0-1093-ibm 5.4.0-1093.98 Available with Ubuntu Pro linux-image-5.4.0-1134-kvm 5.4.0-1134.143 Available with Ubuntu Pro linux-image-5.4.0-1145-oracle 5.4.0-1145.155 Available with Ubuntu Pro linux-image-5.4.0-1147-aws 5.4.0-1147.157 Available with Ubuntu Pro linux-image-5.4.0-1150-gcp 5.4.0-1150.159 Available with Ubuntu Pro linux-image-5.4.0-1152-azure 5.4.0-1152.159 Available with Ubuntu Pro linux-image-5.4.0-218-generic 5.4.0-218.238 Available with Ubuntu Pro linux-image-5.4.0-218-generic-lpae 5.4.0-218.238 Available with Ubuntu Pro linux-image-5.4.0-218-lowlatency 5.4.0-218.238 Available with Ubuntu Pro linux-image-aws-lts-20.04 5.4.0.1147.144 Available with Ubuntu Pro linux-image-azure-lts-20.04 5.4.0.1152.146 Available with Ubuntu Pro linux-image-gcp-lts-20.04 5.4.0.1150.152 Available with Ubuntu Pro linux-image-generic 5.4.0.218.210 Available with Ubuntu Pro linux-image-generic-lpae 5.4.0.218.210 Available with Ubuntu Pro linux-image-ibm-lts-20.04 5.4.0.1093.122 Available with Ubuntu Pro linux-image-kvm 5.4.0.1134.130 Available with Ubuntu Pro linux-image-lowlatency 5.4.0.218.210 Available with Ubuntu Pro linux-image-oem 5.4.0.218.210 Available with Ubuntu Pro linux-image-oem-osp1 5.4.0.218.210 Available with Ubuntu Pro linux-image-oracle-lts-20.04 5.4.0.1145.139 Available with Ubuntu Pro linux-image-virtual 5.4.0.218.210 Available with Ubuntu Pro linux-image-xilinx-zynqmp 5.4.0.1065.65 Available with Ubuntu Pro Ubuntu 18.04 LTS linux-image-5.4.0-1093-ibm 5.4.0-1093.98~18.04.1 Available with Ubuntu Pro linux-image-5.4.0-1145-oracle 5.4.0-1145.155~18.04.1 Available with Ubuntu Pro linux-image-5.4.0-1147-aws 5.4.0-1147.157~18.04.1 Available with Ubuntu Pro linux-image-5.4.0-1150-gcp 5.4.0-1150.159~18.04.1 Available with Ubuntu Pro linux-image-aws 5.4.0.1147.157~18.04.1 Available with Ubuntu Pro linux-image-gcp 5.4.0.1150.159~18.04.1 Available with Ubuntu Pro linux-image-ibm 5.4.0.1093.98~18.04.1 Available with Ubuntu Pro linux-image-oracle 5.4.0.1145.155~18.04.1 Available with Ubuntu Pro After a standard system update you need to reboot your computer to make all the necessary changes. ATTENTION: Due to an unavoidable ABI change the kernel updates have been given a new version number, which requires you to recompile and reinstall all third party kernel modules you might have installed. Unless you manually uninstalled the standard kernel metapackages (e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual, linux-powerpc), a standard system upgrade will automatically perform this as well. References: https://ubuntu.com/security/notices/USN-7585-1 CVE-2021-47211, CVE-2022-49636, CVE-2023-53034, CVE-2024-53168, CVE-2024-56551, CVE-2024-58093, CVE-2025-21956, CVE-2025-21957, CVE-2025-21959, CVE-2025-21991, CVE-2025-21992, CVE-2025-21993, CVE-2025-21996, CVE-2025-22004, CVE-2025-22005, CVE-2025-22007, CVE-2025-22018, CVE-2025-22020, CVE-2025-22021, CVE-2025-22035, CVE-2025-22045, CVE-2025-22054, CVE-2025-22063, CVE-2025-22071, CVE-2025-22073, CVE-2025-22079, CVE-2025-22086, CVE-2025-2312, CVE-2025-23136, CVE-2025-37937, CVE-2025-38637, CVE-2025-39735 . Essential security patches for the Ubuntu kernel tackle various weaknesses, improving both system security and reliability.. Ubuntu kernel update, security advisories, Linux kernel issues, system vulnerabilities. . Severity: Critical. LinuxSecurity.com Team
Several security issues were fixed in the Linux kernel.. ========================================================================== Ubuntu Security Notice USN-6608-2 February 14, 2024 linux-nvidia-6.2 vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 22.04 LTS Summary: Several security issues were fixed in the Linux kernel. Software Description: - linux-nvidia-6.2: Linux kernel for NVIDIA systems Details: It was discovered that the CIFS network file system implementation in the Linux kernel did not properly validate the server frame size in certain situation, leading to an out-of-bounds read vulnerability. An attacker could use this to construct a malicious CIFS image that, when operated on, could cause a denial of service (system crash) or possibly expose sensitive information. (CVE-2023-6606) Xingyuan Mo discovered that the netfilter subsystem in the Linux kernel did not properly handle inactive elements in its PIPAPO data structure, leading to a use-after-free vulnerability. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2023-6817) Budimir Markovic, Lucas De Marchi, and Pengfei Xu discovered that the perf subsystem in the Linux kernel did not properly validate all event sizes when attaching new events, leading to an out-of-bounds write vulnerability. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2023-6931) It was discovered that the IGMP protocol implementation in the Linux kernel contained a race condition, leading to a use-after-free vulnerability. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2023-6932) Kevin Rich discovered that the netfilter subsystem in the Linux kernel did not properly check deactivated elements in certain situations, leading to a use-after-freevulnerability. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2024-0193) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 22.04 LTS: linux-image-6.2.0-1015-nvidia 6.2.0-1015.15 linux-image-6.2.0-1015-nvidia-64k 6.2.0-1015.15 linux-image-nvidia-6.2 6.2.0.1015.17 linux-image-nvidia-64k-6.2 6.2.0.1015.17 linux-image-nvidia-64k-hwe-22.04 6.2.0.1015.17 linux-image-nvidia-hwe-22.04 6.2.0.1015.17 After a standard system update you need to reboot your computer to make all the necessary changes. ATTENTION: Due to an unavoidable ABI change the kernel updates have been given a new version number, which requires you to recompile and reinstall all third party kernel modules you might have installed. Unless you manually uninstalled the standard kernel metapackages (e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual, linux-powerpc), a standard system upgrade will automatically perform this as well. References: https://ubuntu.com/security/notices/USN-6608-2 https://ubuntu.com/security/notices/USN-6608-1 CVE-2023-6606, CVE-2023-6817, CVE-2023-6931, CVE-2023-6932, CVE-2024-0193 Package Information: https://launchpad.net/ubuntu/+source/linux-nvidia-6.2/6.2.0-1015.15 . A number of vulnerabilities have been resolved in Ubuntu 22.04 LTS featuring the linux-nvidia-6.2 kernel. Essential patches are now available.. Ubuntu Kernel, Linux NVIDIA, Denial Of Service, Security Fixes. . Severity: Critical. LinuxSecurity.com Team
Several security issues were fixed in the kernel.. =========================================================================Ubuntu Security Notice USN-1280-1 November 24, 2011 linux-ti-omap4 vulnerabilities ========================================================================= A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 10.10 Summary: Several security issues were fixed in the kernel. Software Description: - linux-ti-omap4: Linux kernel for OMAP4 Details: It was discovered that CIFS incorrectly handled authentication. When a user had a CIFS share mounted that required authentication, a local user could mount the same share without knowing the correct password. (CVE-2011-1585) Robert Swiecki discovered that mapping extensions were incorrectly handled. A local attacker could exploit this to crash the system, leading to a denial of service. (CVE-2011-2496) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 10.10: linux-image-2.6.35-903-omap4 2.6.35-903.27 After a standard system update you need to reboot your computer to make all the necessary changes. ATTENTION: Due to an unavoidable ABI change the kernel updates have been given a new version number, which requires you to recompile and reinstall all third party kernel modules you might have installed. If you use linux-restricted-modules, you have to update that package as well to get modules which work with the new kernel version. Unless you manually uninstalled the standard kernel metapackages (e.g. linux-generic, linux-server, linux-powerpc), a standard system upgrade will automatically perform this as well. References: https://ubuntu.com/security/notices/USN-1280-1 CVE-2011-1585, CVE-2011-2496 Package Information: https://launchpad.net/ubuntu/+source/linux-ti-omap4/2.6.35-903.27 . Ubuntu Security Notice USN-1280-2 addresses critical kernel vulnerabilities and provides updatesfor Linux OMAP5.. Linux Kernel Update, Ubuntu Security Notice, OMAP4 Fixes, CIFS Authentication Issue, System Update Instructions. . Severity: Critical. LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.