Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×

Alerts This Week
Warning Icon 1 439
Alerts This Week
Warning Icon 1 439

Stay Secure with the Latest Linux Advisories

Filter%20icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":1,"type":"x","order":1,"pct":16.67,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":3,"type":"x","order":2,"pct":50,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":2,"type":"x","order":4,"pct":33.33,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -6 articles for you...
172

Ubuntu 20.04 LTS: USN-7585-1 critical: Linux kernel security flaws

Several security issues were fixed in the Linux kernel.. ========================================================================== Ubuntu Security Notice USN-7585-1 June 19, 2025 linux, linux-aws, linux-aws-5.4, linux-azure, linux-gcp, linux-gcp-5.4, linux-ibm, linux-ibm-5.4, linux-kvm, linux-oracle, linux-oracle-5.4, linux-xilinx-zynqmp vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 20.04 LTS - Ubuntu 18.04 LTS Summary: Several security issues were fixed in the Linux kernel. Software Description: - linux: Linux kernel - linux-aws: Linux kernel for Amazon Web Services (AWS) systems - linux-azure: Linux kernel for Microsoft Azure Cloud systems - linux-gcp: Linux kernel for Google Cloud Platform (GCP) systems - linux-ibm: Linux kernel for IBM cloud systems - linux-kvm: Linux kernel for cloud environments - linux-oracle: Linux kernel for Oracle Cloud systems - linux-xilinx-zynqmp: Linux kernel for Xilinx ZynqMP processors - linux-aws-5.4: Linux kernel for Amazon Web Services (AWS) systems - linux-gcp-5.4: Linux kernel for Google Cloud Platform (GCP) systems - linux-ibm-5.4: Linux kernel for IBM cloud systems - linux-oracle-5.4: Linux kernel for Oracle Cloud systems Details: It was discovered that the CIFS network file system implementation in the Linux kernel did not properly verify the target namespace when handling upcalls. An attacker could use this to expose sensitive information. (CVE-2025-2312) Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - PowerPC architecture; - x86 architecture; - iSCSI Boot Firmware Table Attributes driver; - GPU drivers; - HID subsystem; - InfiniBand drivers; - Media drivers; - MemoryStick subsystem; - Network drivers; - NTB driver; - PCIsubsystem; - SCSI subsystem; - Thermal drivers; - JFS file system; - File systems infrastructure; - Tracing infrastructure; - 802.1Q VLAN protocol; - Asynchronous Transfer Mode (ATM) subsystem; - Bluetooth subsystem; - IPv6 networking; - Netfilter; - Network traffic control; - Sun RPC protocol; - USB sound devices; (CVE-2025-22007, CVE-2025-21959, CVE-2025-22021, CVE-2025-22063, CVE-2025-22045, CVE-2024-58093, CVE-2022-49636, CVE-2025-22020, CVE-2024-53168, CVE-2025-22071, CVE-2025-39735, CVE-2025-21991, CVE-2025-21992, CVE-2025-21996, CVE-2025-22035, CVE-2023-53034, CVE-2025-22054, CVE-2025-23136, CVE-2025-22073, CVE-2024-56551, CVE-2025-22005, CVE-2025-37937, CVE-2021-47211, CVE-2025-22086, CVE-2025-21956, CVE-2025-38637, CVE-2025-22004, CVE-2025-22018, CVE-2025-22079, CVE-2025-21957, CVE-2025-21993) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 20.04 LTS linux-image-5.4.0-1065-xilinx-zynqmp 5.4.0-1065.69 Available with Ubuntu Pro linux-image-5.4.0-1093-ibm 5.4.0-1093.98 Available with Ubuntu Pro linux-image-5.4.0-1134-kvm 5.4.0-1134.143 Available with Ubuntu Pro linux-image-5.4.0-1145-oracle 5.4.0-1145.155 Available with Ubuntu Pro linux-image-5.4.0-1147-aws 5.4.0-1147.157 Available with Ubuntu Pro linux-image-5.4.0-1150-gcp 5.4.0-1150.159 Available with Ubuntu Pro linux-image-5.4.0-1152-azure 5.4.0-1152.159 Available with Ubuntu Pro linux-image-5.4.0-218-generic 5.4.0-218.238 Available with Ubuntu Pro linux-image-5.4.0-218-generic-lpae 5.4.0-218.238 Available with Ubuntu Pro linux-image-5.4.0-218-lowlatency 5.4.0-218.238 Available with Ubuntu Pro linux-image-aws-lts-20.04 5.4.0.1147.144 Available with Ubuntu Pro linux-image-azure-lts-20.04 5.4.0.1152.146 Available with Ubuntu Pro linux-image-gcp-lts-20.04 5.4.0.1150.152 Available with Ubuntu Pro linux-image-generic 5.4.0.218.210 Available with Ubuntu Pro linux-image-generic-lpae 5.4.0.218.210 Available with Ubuntu Pro linux-image-ibm-lts-20.04 5.4.0.1093.122 Available with Ubuntu Pro linux-image-kvm 5.4.0.1134.130 Available with Ubuntu Pro linux-image-lowlatency 5.4.0.218.210 Available with Ubuntu Pro linux-image-oem 5.4.0.218.210 Available with Ubuntu Pro linux-image-oem-osp1 5.4.0.218.210 Available with Ubuntu Pro linux-image-oracle-lts-20.04 5.4.0.1145.139 Available with Ubuntu Pro linux-image-virtual 5.4.0.218.210 Available with Ubuntu Pro linux-image-xilinx-zynqmp 5.4.0.1065.65 Available with Ubuntu Pro Ubuntu 18.04 LTS linux-image-5.4.0-1093-ibm 5.4.0-1093.98~18.04.1 Available with Ubuntu Pro linux-image-5.4.0-1145-oracle 5.4.0-1145.155~18.04.1 Available with Ubuntu Pro linux-image-5.4.0-1147-aws 5.4.0-1147.157~18.04.1 Available with Ubuntu Pro linux-image-5.4.0-1150-gcp 5.4.0-1150.159~18.04.1 Available with Ubuntu Pro linux-image-aws 5.4.0.1147.157~18.04.1 Available with Ubuntu Pro linux-image-gcp 5.4.0.1150.159~18.04.1 Available with Ubuntu Pro linux-image-ibm 5.4.0.1093.98~18.04.1 Available with Ubuntu Pro linux-image-oracle 5.4.0.1145.155~18.04.1 Available with Ubuntu Pro After a standard system update you need to reboot your computer to make all the necessary changes. ATTENTION: Due to an unavoidable ABI change the kernel updates have been given a new version number, which requires you to recompile and reinstall all third party kernel modules you might have installed. Unless you manually uninstalled the standard kernel metapackages (e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual, linux-powerpc), a standard system upgrade will automatically perform this as well. References: https://ubuntu.com/security/notices/USN-7585-1 CVE-2021-47211, CVE-2022-49636, CVE-2023-53034, CVE-2024-53168, CVE-2024-56551, CVE-2024-58093, CVE-2025-21956, CVE-2025-21957, CVE-2025-21959, CVE-2025-21991, CVE-2025-21992, CVE-2025-21993, CVE-2025-21996, CVE-2025-22004, CVE-2025-22005, CVE-2025-22007, CVE-2025-22018, CVE-2025-22020, CVE-2025-22021, CVE-2025-22035, CVE-2025-22045, CVE-2025-22054, CVE-2025-22063, CVE-2025-22071, CVE-2025-22073, CVE-2025-22079, CVE-2025-22086, CVE-2025-2312, CVE-2025-23136, CVE-2025-37937, CVE-2025-38637, CVE-2025-39735 . Essential security patches for the Ubuntu kernel tackle various weaknesses, improving both system security and reliability.. Ubuntu kernel update, security advisories, Linux kernel issues, system vulnerabilities. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Jun 19, 2025 Critical Ubuntu
172

Ubuntu 22.04 LTS: USN-6608-2 Critical: Denial of Service Issues

Several security issues were fixed in the Linux kernel.. ========================================================================== Ubuntu Security Notice USN-6608-2 February 14, 2024 linux-nvidia-6.2 vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 22.04 LTS Summary: Several security issues were fixed in the Linux kernel. Software Description: - linux-nvidia-6.2: Linux kernel for NVIDIA systems Details: It was discovered that the CIFS network file system implementation in the Linux kernel did not properly validate the server frame size in certain situation, leading to an out-of-bounds read vulnerability. An attacker could use this to construct a malicious CIFS image that, when operated on, could cause a denial of service (system crash) or possibly expose sensitive information. (CVE-2023-6606) Xingyuan Mo discovered that the netfilter subsystem in the Linux kernel did not properly handle inactive elements in its PIPAPO data structure, leading to a use-after-free vulnerability. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2023-6817) Budimir Markovic, Lucas De Marchi, and Pengfei Xu discovered that the perf subsystem in the Linux kernel did not properly validate all event sizes when attaching new events, leading to an out-of-bounds write vulnerability. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2023-6931) It was discovered that the IGMP protocol implementation in the Linux kernel contained a race condition, leading to a use-after-free vulnerability. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2023-6932) Kevin Rich discovered that the netfilter subsystem in the Linux kernel did not properly check deactivated elements in certain situations, leading to a use-after-freevulnerability. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2024-0193) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 22.04 LTS: linux-image-6.2.0-1015-nvidia 6.2.0-1015.15 linux-image-6.2.0-1015-nvidia-64k 6.2.0-1015.15 linux-image-nvidia-6.2 6.2.0.1015.17 linux-image-nvidia-64k-6.2 6.2.0.1015.17 linux-image-nvidia-64k-hwe-22.04 6.2.0.1015.17 linux-image-nvidia-hwe-22.04 6.2.0.1015.17 After a standard system update you need to reboot your computer to make all the necessary changes. ATTENTION: Due to an unavoidable ABI change the kernel updates have been given a new version number, which requires you to recompile and reinstall all third party kernel modules you might have installed. Unless you manually uninstalled the standard kernel metapackages (e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual, linux-powerpc), a standard system upgrade will automatically perform this as well. References: https://ubuntu.com/security/notices/USN-6608-2 https://ubuntu.com/security/notices/USN-6608-1 CVE-2023-6606, CVE-2023-6817, CVE-2023-6931, CVE-2023-6932, CVE-2024-0193 Package Information: https://launchpad.net/ubuntu/+source/linux-nvidia-6.2/6.2.0-1015.15 . A number of vulnerabilities have been resolved in Ubuntu 22.04 LTS featuring the linux-nvidia-6.2 kernel. Essential patches are now available.. Ubuntu Kernel, Linux NVIDIA, Denial Of Service, Security Fixes. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Feb 14, 2024 Critical Ubuntu
172

Ubuntu 10.10 USN-1280-1 Critical OMAP4 Kernel Security Advisory

Several security issues were fixed in the kernel.. =========================================================================Ubuntu Security Notice USN-1280-1 November 24, 2011 linux-ti-omap4 vulnerabilities ========================================================================= A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 10.10 Summary: Several security issues were fixed in the kernel. Software Description: - linux-ti-omap4: Linux kernel for OMAP4 Details: It was discovered that CIFS incorrectly handled authentication. When a user had a CIFS share mounted that required authentication, a local user could mount the same share without knowing the correct password. (CVE-2011-1585) Robert Swiecki discovered that mapping extensions were incorrectly handled. A local attacker could exploit this to crash the system, leading to a denial of service. (CVE-2011-2496) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 10.10: linux-image-2.6.35-903-omap4 2.6.35-903.27 After a standard system update you need to reboot your computer to make all the necessary changes. ATTENTION: Due to an unavoidable ABI change the kernel updates have been given a new version number, which requires you to recompile and reinstall all third party kernel modules you might have installed. If you use linux-restricted-modules, you have to update that package as well to get modules which work with the new kernel version. Unless you manually uninstalled the standard kernel metapackages (e.g. linux-generic, linux-server, linux-powerpc), a standard system upgrade will automatically perform this as well. References: https://ubuntu.com/security/notices/USN-1280-1 CVE-2011-1585, CVE-2011-2496 Package Information: https://launchpad.net/ubuntu/+source/linux-ti-omap4/2.6.35-903.27 . Ubuntu Security Notice USN-1280-2 addresses critical kernel vulnerabilities and provides updatesfor Linux OMAP5.. Linux Kernel Update, Ubuntu Security Notice, OMAP4 Fixes, CIFS Authentication Issue, System Update Instructions. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Nov 24, 2011 Critical Ubuntu
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":1,"type":"x","order":1,"pct":16.67,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":3,"type":"x","order":2,"pct":50,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":2,"type":"x","order":4,"pct":33.33,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200