Several security issues were fixed in the Linux kernel.. ========================================================================== Ubuntu Security Notice USN-7521-3 May 28, 2025 linux-lowlatency, linux-lowlatency-hwe-6.11, linux-oracle vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 24.10 - Ubuntu 24.04 LTS Summary: Several security issues were fixed in the Linux kernel. Software Description: - linux-lowlatency: Linux low latency kernel - linux-oracle: Linux kernel for Oracle Cloud systems - linux-lowlatency-hwe-6.11: Linux low latency kernel Details: Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - ARM64 architecture; - PowerPC architecture; - x86 architecture; - Block layer subsystem; - Serial ATA and Parallel ATA drivers; - Drivers core; - Network block device driver; - Bluetooth drivers; - Character device driver; - TPM device driver; - Clock framework and drivers; - Hardware crypto device drivers; - FireWire subsystem; - EFI core; - Qualcomm firmware drivers; - GPIO subsystem; - GPU drivers; - HID subsystem; - I2C subsystem; - I3C subsystem; - InfiniBand drivers; - Input Device (Mouse) drivers; - IOMMU subsystem; - Multiple devices driver; - Media drivers; - NVIDIA Tegra memory controller driver; - Fastrpc Driver; - Network drivers; - Operating Performance Points (OPP) driver; - PCI subsystem; - x86 platform drivers; - PPS (Pulse Per Second) driver; - PTP clock framework; - Remote Processor subsystem; - Real Time Clock drivers; - S/390 drivers; - SCSI subsystem; - QCOM SoC drivers; - SPI subsystem; - Media staging drivers; - Trusted Execution Environment drivers; - TTY drivers; - UFS subsystem; - USB Device Class drivers; - USB core drivers; - USB Gadgetdrivers; - USB Host Controller drivers; - Framebuffer layer; - File systems infrastructure; - BTRFS file system; - Ceph distributed file system; - Network file system (NFS) client; - Network file system (NFS) server daemon; - NILFS2 file system; - Overlay file system; - SMB network file system; - UBI file system; - BPF subsystem; - Timer subsystem; - KVM subsystem; - Networking core; - ptr_ring data structure definitions; - Networking subsytem; - Amateur Radio drivers; - L3 Master device support module; - TCP network protocol; - XFRM subsystem; - Tracing infrastructure; - io_uring subsystem; - Process Accounting mechanism; - Perf events; - Padata parallel execution mechanism; - printk logging mechanism; - Scheduler infrastructure; - Workqueue subsystem; - Memory management; - B.A.T.M.A.N. meshing protocol; - Bluetooth subsystem; - IPv4 networking; - IPv6 networking; - MAC80211 subsystem; - Multipath TCP; - Netfilter; - NFC subsystem; - Open vSwitch; - Rose network layer; - RxRPC session sockets; - Network traffic control; - Wireless networking; - Key management; - Landlock security; - Linux Security Modules (LSM) Framework; - Tomoyo security module; - SoC audio core drivers; - SOF drivers; (CVE-2025-21799, CVE-2025-21765, CVE-2024-57834, CVE-2025-21971, CVE-2025-21855, CVE-2024-58019, CVE-2025-21987, CVE-2025-21754, CVE-2025-21779, CVE-2024-57986, CVE-2025-21809, CVE-2025-21887, CVE-2025-21744, CVE-2024-58014, CVE-2025-21892, CVE-2025-21848, CVE-2024-58051, CVE-2024-58085, CVE-2025-21862, CVE-2024-57981, CVE-2024-57987, CVE-2024-58053, CVE-2024-58063, CVE-2024-58079, CVE-2025-21875, CVE-2025-21715, CVE-2024-58004, CVE-2025-21857, CVE-2025-21856, CVE-2025-21938, CVE-2024-58082, CVE-2025-21815, CVE-2025-21864, CVE-2024-52559, CVE-2024-58078, CVE-2024-57989, CVE-2024-58001, CVE-2025-21889, CVE-2025-21739, CVE-2024-58005, CVE-2025-21829, CVE-2024-58069, CVE-2025-21712, CVE-2025-21846, CVE-2025-21883, CVE-2025-21852,CVE-2025-21808, CVE-2025-21900, CVE-2025-21888, CVE-2025-21784, CVE-2025-21838, CVE-2024-58054, CVE-2025-21781, CVE-2025-21737, CVE-2024-58013, CVE-2025-21885, CVE-2025-21877, CVE-2024-58010, CVE-2025-21844, CVE-2024-58012, CVE-2024-58083, CVE-2025-21783, CVE-2025-21798, CVE-2024-57973, CVE-2024-57982, CVE-2025-21708, CVE-2024-58003, CVE-2025-21786, CVE-2025-21750, CVE-2025-21870, CVE-2025-21745, CVE-2024-58081, CVE-2024-57979, CVE-2025-21718, CVE-2025-21816, CVE-2025-21868, CVE-2025-21731, CVE-2025-21814, CVE-2025-21826, CVE-2024-58006, CVE-2025-21821, CVE-2024-57852, CVE-2025-21746, CVE-2025-21874, CVE-2025-21866, CVE-2025-21770, CVE-2025-21899, CVE-2025-21804, CVE-2025-21723, CVE-2025-21742, CVE-2024-57988, CVE-2024-58034, CVE-2025-21733, CVE-2024-57980, CVE-2025-21782, CVE-2025-21711, CVE-2024-58090, CVE-2025-21761, CVE-2025-21851, CVE-2025-21828, CVE-2024-58068, CVE-2024-58018, CVE-2024-58064, CVE-2025-21869, CVE-2025-21772, CVE-2025-21758, CVE-2025-21793, CVE-2024-58017, CVE-2025-21835, CVE-2025-21775, CVE-2025-21719, CVE-2024-57998, CVE-2024-58002, CVE-2024-57993, CVE-2025-21847, CVE-2025-21760, CVE-2025-21796, CVE-2024-58075, CVE-2024-58077, CVE-2025-21773, CVE-2025-21790, CVE-2025-21872, CVE-2025-21895, CVE-2025-21732, CVE-2025-21871, CVE-2024-58058, CVE-2025-21749, CVE-2025-21830, CVE-2025-21704, CVE-2025-21720, CVE-2025-21748, CVE-2025-21726, CVE-2025-21801, CVE-2024-58076, CVE-2025-21881, CVE-2025-21831, CVE-2025-21724, CVE-2024-58086, CVE-2025-21812, CVE-2024-57985, CVE-2025-21795, CVE-2025-21725, CVE-2025-21762, CVE-2025-21788, CVE-2024-58080, CVE-2025-21839, CVE-2024-58057, CVE-2025-21706, CVE-2024-58011, CVE-2025-21832, CVE-2024-58061, CVE-2025-21710, CVE-2025-21734, CVE-2025-21836, CVE-2024-54456, CVE-2024-58008, CVE-2025-21743, CVE-2024-58071, CVE-2025-21707, CVE-2025-21791, CVE-2025-21767, CVE-2024-57974, CVE-2024-58021, CVE-2025-21849, CVE-2025-21827, CVE-2024-58084, CVE-2024-58016, CVE-2024-58072, CVE-2025-21802, CVE-2024-58055, CVE-2025-21853, CVE-2024-57997, CVE-2025-21858, CVE-2024-57999,CVE-2025-21780, CVE-2025-21876, CVE-2024-58088, CVE-2025-21820, CVE-2025-21753, CVE-2025-21766, CVE-2025-21768, CVE-2025-21898, CVE-2025-21785, CVE-2024-54458, CVE-2024-58060, CVE-2024-49570, CVE-2025-21759, CVE-2024-57953, CVE-2024-57977, CVE-2025-21810, CVE-2025-21735, CVE-2025-21728, CVE-2025-21865, CVE-2024-58007, CVE-2025-21776, CVE-2025-21859, CVE-2025-21721, CVE-2025-21823, CVE-2024-58070, CVE-2024-57996, CVE-2024-58056, CVE-2024-58020, CVE-2025-21741, CVE-2025-21806, CVE-2025-21727, CVE-2025-21736, CVE-2025-21787, CVE-2025-21763, CVE-2025-21811, CVE-2025-21873, CVE-2025-21890, CVE-2024-58052, CVE-2025-21705, CVE-2025-21713, CVE-2025-21863, CVE-2025-21716, CVE-2025-21825, CVE-2025-21792, CVE-2025-21854, CVE-2025-21738, CVE-2024-57990, CVE-2024-57994, CVE-2024-57978, CVE-2025-21878, CVE-2025-21867, CVE-2025-21764, CVE-2024-57984, CVE-2025-21891) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 24.10 linux-image-6.11.0-1014-lowlatency 6.11.0-1014.15 linux-image-6.11.0-1014-lowlatency-64k 6.11.0-1014.15 linux-image-6.11.0-1016-oracle 6.11.0-1016.17 linux-image-6.11.0-1016-oracle-64k 6.11.0-1016.17 linux-image-lowlatency 6.11.0-1014.15 linux-image-lowlatency-64k 6.11.0-1014.15 linux-image-oracle 6.11.0-1016.17 linux-image-oracle-64k 6.11.0-1016.17 Ubuntu 24.04 LTS linux-image-6.11.0-1014-lowlatency 6.11.0-1014.15~24.04.1 linux-image-6.11.0-1014-lowlatency-64k 6.11.0-1014.15~24.04.1 linux-image-lowlatency-64k-hwe-24.04 6.11.0-1014.15~24.04.1 linux-image-lowlatency-hwe-24.04 6.11.0-1014.15~24.04.1 After a standard system update you need to reboot your computer to make all the necessary changes. ATTENTION: Due to an unavoidable ABI change the kernel updates have been given a new version number, which requires you to recompile and reinstall all third party kernel modules you might have installed. Unless you manually uninstalled the standard kernel metapackages (e.g.linux-generic, linux-generic-lts-RELEASE, linux-virtual, linux-powerpc), a standard system upgrade will automatically perform this as well. References: https://ubuntu.com/security/notices/USN-7521-3 https://ubuntu.com/security/notices/USN-7521-2 https://ubuntu.com/security/notices/USN-7521-1 CVE-2024-49570, CVE-2024-52559, CVE-2024-54456, CVE-2024-54458, CVE-2024-57834, CVE-2024-57852, CVE-2024-57953, CVE-2024-57973, CVE-2024-57974, CVE-2024-57977, CVE-2024-57978, CVE-2024-57979, CVE-2024-57980, CVE-2024-57981, CVE-2024-57982, CVE-2024-57984, CVE-2024-57985, CVE-2024-57986, CVE-2024-57987, CVE-2024-57988, CVE-2024-57989, CVE-2024-57990, CVE-2024-57993, CVE-2024-57994, CVE-2024-57996, CVE-2024-57997, CVE-2024-57998, CVE-2024-57999, CVE-2024-58001, CVE-2024-58002, CVE-2024-58003, CVE-2024-58004, CVE-2024-58005, CVE-2024-58006, CVE-2024-58007, CVE-2024-58008, CVE-2024-58010, CVE-2024-58011, CVE-2024-58012, CVE-2024-58013, CVE-2024-58014, CVE-2024-58016, CVE-2024-58017, CVE-2024-58018, CVE-2024-58019, CVE-2024-58020, CVE-2024-58021, CVE-2024-58034, CVE-2024-58051, CVE-2024-58052, CVE-2024-58053, CVE-2024-58054, CVE-2024-58055, CVE-2024-58056, CVE-2024-58057, CVE-2024-58058, CVE-2024-58060, CVE-2024-58061, CVE-2024-58063, CVE-2024-58064, CVE-2024-58068, CVE-2024-58069, CVE-2024-58070, CVE-2024-58071, CVE-2024-58072, CVE-2024-58075, CVE-2024-58076, CVE-2024-58077, CVE-2024-58078, CVE-2024-58079, CVE-2024-58080, CVE-2024-58081, CVE-2024-58082, CVE-2024-58083, CVE-2024-58084, CVE-2024-58085, CVE-2024-58086, CVE-2024-58088, CVE-2024-58090, CVE-2025-21704, CVE-2025-21705, CVE-2025-21706, CVE-2025-21707, CVE-2025-21708, CVE-2025-21710, CVE-2025-21711, CVE-2025-21712, CVE-2025-21713, CVE-2025-21715, CVE-2025-21716, CVE-2025-21718, CVE-2025-21719, CVE-2025-21720, CVE-2025-21721, CVE-2025-21723, CVE-2025-21724, CVE-2025-21725, CVE-2025-21726, CVE-2025-21727, CVE-2025-21728, CVE-2025-21731, CVE-2025-21732, CVE-2025-21733, CVE-2025-21734, CVE-2025-21735,CVE-2025-21736, CVE-2025-21737, CVE-2025-21738, CVE-2025-21739, CVE-2025-21741, CVE-2025-21742, CVE-2025-21743, CVE-2025-21744, CVE-2025-21745, CVE-2025-21746, CVE-2025-21748, CVE-2025-21749, CVE-2025-21750, CVE-2025-21753, CVE-2025-21754, CVE-2025-21758, CVE-2025-21759, CVE-2025-21760, CVE-2025-21761, CVE-2025-21762, CVE-2025-21763, CVE-2025-21764, CVE-2025-21765, CVE-2025-21766, CVE-2025-21767, CVE-2025-21768, CVE-2025-21770, CVE-2025-21772, CVE-2025-21773, CVE-2025-21775, CVE-2025-21776, CVE-2025-21779, CVE-2025-21780, CVE-2025-21781, CVE-2025-21782, CVE-2025-21783, CVE-2025-21784, CVE-2025-21785, CVE-2025-21786, CVE-2025-21787, CVE-2025-21788, CVE-2025-21790, CVE-2025-21791, CVE-2025-21792, CVE-2025-21793, CVE-2025-21795, CVE-2025-21796, CVE-2025-21798, CVE-2025-21799, CVE-2025-21801, CVE-2025-21802, CVE-2025-21804, CVE-2025-21806, CVE-2025-21808, CVE-2025-21809, CVE-2025-21810, CVE-2025-21811, CVE-2025-21812, CVE-2025-21814, CVE-2025-21815, CVE-2025-21816, CVE-2025-21820, CVE-2025-21821, CVE-2025-21823, CVE-2025-21825, CVE-2025-21826, CVE-2025-21827, CVE-2025-21828, CVE-2025-21829, CVE-2025-21830, CVE-2025-21831, CVE-2025-21832, CVE-2025-21835, CVE-2025-21836, CVE-2025-21838, CVE-2025-21839, CVE-2025-21844, CVE-2025-21846, CVE-2025-21847, CVE-2025-21848, CVE-2025-21849, CVE-2025-21851, CVE-2025-21852, CVE-2025-21853, CVE-2025-21854, CVE-2025-21855, CVE-2025-21856, CVE-2025-21857, CVE-2025-21858, CVE-2025-21859, CVE-2025-21862, CVE-2025-21863, CVE-2025-21864, CVE-2025-21865, CVE-2025-21866, CVE-2025-21867, CVE-2025-21868, CVE-2025-21869, CVE-2025-21870, CVE-2025-21871, CVE-2025-21872, CVE-2025-21873, CVE-2025-21874, CVE-2025-21875, CVE-2025-21876, CVE-2025-21877, CVE-2025-21878, CVE-2025-21881, CVE-2025-21883, CVE-2025-21885, CVE-2025-21887, CVE-2025-21888, CVE-2025-21889, CVE-2025-21890, CVE-2025-21891, CVE-2025-21892, CVE-2025-21895, CVE-2025-21898, CVE-2025-21899, CVE-2025-21900, CVE-2025-21938, CVE-2025-21971, CVE-2025-21987 PackageInformation: https://launchpad.net/ubuntu/+source/linux-lowlatency/6.11.0-1014.15 https://launchpad.net/ubuntu/+source/linux-oracle/6.11.0-1016.17 https://launchpad.net/ubuntu/+source/linux-lowlatency-hwe-6.11/6.11.0-1014.15~24.04.1 . A variety of protection vulnerabilities in Ubuntu's Linux core addressed with fresh patches for real-time setups.. Linux Kernel Security, Ubuntu Updates, Low Latency Kernel, Oracle Cloud Security. . Severity: Critical. LinuxSecurity.com Team
Several security issues were fixed in the Linux kernel.. ========================================================================== Ubuntu Security Notice USN-6957-1 August 13, 2024 linux-oracle-5.15 vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 20.04 LTS Summary: Several security issues were fixed in the Linux kernel. Software Description: - linux-oracle-5.15: Linux kernel for Oracle Cloud systems Details: Benedict Schlüter, Supraja Sridhara, Andrin Bertschi, and Shweta Shinde discovered that an untrusted hypervisor could inject malicious #VC interrupts and compromise the security guarantees of AMD SEV-SNP. This flaw is known as WeSee. A local attacker in control of the hypervisor could use this to expose sensitive information or possibly execute arbitrary code in the trusted execution environment. (CVE-2024-25742) Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - ARM32 architecture; - ARM64 architecture; - Block layer subsystem; - Bluetooth drivers; - Clock framework and drivers; - FireWire subsystem; - GPU drivers; - InfiniBand drivers; - Multiple devices driver; - EEPROM drivers; - Network drivers; - Pin controllers subsystem; - Remote Processor subsystem; - S/390 drivers; - SCSI drivers; - TTY drivers; - 9P distributed file system; - Network file system client; - SMB network file system; - Socket messages infrastructure; - Dynamic debug library; - Bluetooth subsystem; - Networking core; - IPv4 networking; - IPv6 networking; - Multipath TCP; - Netfilter; - NSH protocol; - Phonet protocol; - TIPC protocol; - Wireless networking; - Key management; - ALSA framework; - HD-audio driver; (CVE-2024-36947, CVE-2024-36919, CVE-2024-36929,CVE-2024-36955, CVE-2023-52585, CVE-2024-36931, CVE-2024-27399, CVE-2024-36957, CVE-2024-26980, CVE-2024-27398, CVE-2024-36902, CVE-2024-36928, CVE-2024-36960, CVE-2024-36904, CVE-2024-27017, CVE-2024-36959, CVE-2024-36880, CVE-2024-26936, CVE-2024-36975, CVE-2023-52882, CVE-2024-35848, CVE-2024-36886, CVE-2024-36889, CVE-2024-27401, CVE-2024-36906, CVE-2024-36937, CVE-2024-36016, CVE-2024-36964, CVE-2024-36933, CVE-2024-36031, CVE-2024-36969, CVE-2024-36954, CVE-2024-26900, CVE-2024-26952, CVE-2024-36017, CVE-2024-35947, CVE-2024-36965, CVE-2023-52752, CVE-2024-36905, CVE-2024-36938, CVE-2024-36952, CVE-2024-36940, CVE-2024-36916, CVE-2024-38600, CVE-2024-36946, CVE-2024-36953, CVE-2024-36967, CVE-2024-26886, CVE-2024-36934, CVE-2024-36950, CVE-2024-36941, CVE-2024-36883, CVE-2024-36944, CVE-2024-36939, CVE-2024-36897) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 20.04 LTS linux-image-5.15.0-1065-oracle 5.15.0-1065.71~20.04.1 linux-image-oracle 5.15.0.1065.71~20.04.1 After a standard system update you need to reboot your computer to make all the necessary changes. ATTENTION: Due to an unavoidable ABI change the kernel updates have been given a new version number, which requires you to recompile and reinstall all third party kernel modules you might have installed. Unless you manually uninstalled the standard kernel metapackages (e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual, linux-powerpc), a standard system upgrade will automatically perform this as well. References: https://ubuntu.com/security/notices/USN-6957-1 CVE-2023-52585, CVE-2023-52752, CVE-2023-52882, CVE-2024-25742, CVE-2024-26886, CVE-2024-26900, CVE-2024-26936, CVE-2024-26952, CVE-2024-26980, CVE-2024-27017, CVE-2024-27398, CVE-2024-27399, CVE-2024-27401, CVE-2024-35848, CVE-2024-35947, CVE-2024-36016, CVE-2024-36017, CVE-2024-36031, CVE-2024-36880, CVE-2024-36883, CVE-2024-36886, CVE-2024-36889, CVE-2024-36897,CVE-2024-36902, CVE-2024-36904, CVE-2024-36905, CVE-2024-36906, CVE-2024-36916, CVE-2024-36919, CVE-2024-36928, CVE-2024-36929, CVE-2024-36931, CVE-2024-36933, CVE-2024-36934, CVE-2024-36937, CVE-2024-36938, CVE-2024-36939, CVE-2024-36940, CVE-2024-36941, CVE-2024-36944, CVE-2024-36946, CVE-2024-36947, CVE-2024-36950, CVE-2024-36952, CVE-2024-36953, CVE-2024-36954, CVE-2024-36955, CVE-2024-36957, CVE-2024-36959, CVE-2024-36960, CVE-2024-36964, CVE-2024-36965, CVE-2024-36967, CVE-2024-36969, CVE-2024-36975, CVE-2024-38600 Package Information: https://launchpad.net/ubuntu/+source/linux-oracle-5.15/5.15.0-1065.71~20.04.1 . Revisions for Ubuntu 20.04 LTS rectify various kernel vulnerabilities, improving defense mechanisms against potential threats.. Linux Kernel Updates, Ubuntu Security Notice, Hypervisor Issues, Oracle Cloud Systems, Security Fixes. . Severity: Critical. LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.