Ubuntu alert USN-7797-1 (linux, linux-kvm)
From: | Giampaolo Fresi Roglia <giampaolo.fresi.roglia@canonical.com> | |
To: | ubuntu-security-announce@lists.ubuntu.com | |
Subject: | [USN-7797-1] Linux kernel vulnerabilities | |
Date: | Thu, 02 Oct 2025 11:53:33 +0200 | |
Message-ID: | <87o6qp1vfm.fsf@canonical.com> |
========================================================================== Ubuntu Security Notice USN-7797-1 October 02, 2025 linux, linux-kvm vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 16.04 LTS Summary: Several security issues were fixed in the Linux kernel. Software Description: - linux: Linux kernel - linux-kvm: Linux kernel for cloud environments Details: Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - Virtio block driver; - Media drivers; - Network drivers; - Framebuffer layer; - BTRFS file system; - Ext4 file system; - Network file system (NFS) server daemon; - Packet sockets; - VMware vSockets driver; (CVE-2025-38618, CVE-2024-35849, CVE-2025-37785, CVE-2024-49924, CVE-2025-38617, CVE-2024-27078, CVE-2021-47149, CVE-2021-47319, CVE-2025-21796, CVE-2021-47589) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 16.04 LTS linux-image-4.4.0-1149-kvm 4.4.0-1149.160 Available with Ubuntu Pro linux-image-4.4.0-273-generic 4.4.0-273.307 Available with Ubuntu Pro linux-image-4.4.0-273-lowlatency 4.4.0-273.307 Available with Ubuntu Pro linux-image-generic 4.4.0.273.279 Available with Ubuntu Pro linux-image-generic-lts-xenial 4.4.0.273.279 Available with Ubuntu Pro linux-image-kvm 4.4.0.1149.146 Available with Ubuntu Pro linux-image-lowlatency 4.4.0.273.279 Available with Ubuntu Pro linux-image-lowlatency-lts-xenial 4.4.0.273.279 Available with Ubuntu Pro linux-image-virtual 4.4.0.273.279 Available with Ubuntu Pro linux-image-virtual-lts-xenial 4.4.0.273.279 Available with Ubuntu Pro After a standard system update you need to reboot your computer to make all the necessary changes. ATTENTION: Due to an unavoidable ABI change the kernel updates have been given a new version number, which requires you to recompile and reinstall all third party kernel modules you might have installed. Unless you manually uninstalled the standard kernel metapackages (e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual, linux-powerpc), a standard system upgrade will automatically perform this as well. References: https://ubuntu.com/security/notices/USN-7797-1 CVE-2021-47149, CVE-2021-47319, CVE-2021-47589, CVE-2024-27078, CVE-2024-35849, CVE-2024-49924, CVE-2025-21796, CVE-2025-37785, CVE-2025-38617, CVE-2025-38618
Attachment: signature.asc (type=application/pgp-signature)
-----BEGIN PGP SIGNATURE----- iQHZBAEBCgBDFiEEBcMY+nwS2CY71sUWc4vdAqvdlsYFAmjeS50lHGdpYW1wYW9s by5mcmVzaS5yb2dsaWFAY2Fub25pY2FsLmNvbQAKCRBzi90Cq92WxrQZC/oDKe+u ozaf4fn+oqPZfbD8m2zmVAi1uIr9sOuBL0KpcI0ZUxXU2gJNLsJVqfI7w44OlnYJ vGv5M2rflUlt9T2AKT4+tESZSwuuURp/5hiHGddvEvkKaopSqGSkwVAYIiM84+oZ dKQsydA8wKay6hssgJzGFSMwd7Sqy4/VPqEDn/88+NrANs2WRsVsHr/R1Q4qvXdX IxwxNPWQEig1zeeXCgGes7LKPZ0IhTyBaaeoH3V6ekrRrezY2erkEUeG4SDiVZkB A5hUJOJjJaLzYpfmNsmYPM9SD19XhpTvV2HLtdxJWMM/nartwf5JyQP5oljy1NYR Qf9t9vFOuK8I+chOTBM3UgZlkvnwPC1GFnvNopD5pZj2rrvgR7BnGWDPv5fz46RP y4DMnk6/JyhsJ8TkaKTPIi+NAbqVkqZcPf8qZHzogAQFxjdR1EdW/RfU9JlyfsSM ekRz8c90O3+10wWPWO3Z1/p5CoOMjrQ0gntPgX5SWadT1LnqTrYhHrxFbXk= =qVwL -----END PGP SIGNATURE-----