|
|
Log in / Subscribe / Register

Ubuntu alert USN-7795-4 (linux-oracle-5.4)

From:  Giampaolo Fresi Roglia <giampaolo.fresi.roglia@canonical.com>
To:  ubuntu-security-announce@lists.ubuntu.com
Subject:  [USN-7795-4] Linux kernel (Oracle) vulnerabilities
Date:  Fri, 24 Oct 2025 10:10:44 +0200
Message-ID:  <87ldl0pvnf.fsf@canonical.com>

========================================================================== Ubuntu Security Notice USN-7795-4 October 24, 2025 linux-oracle-5.4 vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 18.04 LTS Summary: Several security issues were fixed in the Linux kernel. Software Description: - linux-oracle-5.4: Linux kernel for Oracle Cloud systems Details: Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - Ext4 file system; - Network file system (NFS) server daemon; - Packet sockets; - Network traffic control; - VMware vSockets driver; (CVE-2025-38617, CVE-2025-21796, CVE-2025-38618, CVE-2025-37785, CVE-2025-38477) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 18.04 LTS linux-image-5.4.0-1149-oracle 5.4.0-1149.159~18.04.1 Available with Ubuntu Pro linux-image-oracle 5.4.0.1149.159~18.04.1 Available with Ubuntu Pro linux-image-oracle-5.4 5.4.0.1149.159~18.04.1 Available with Ubuntu Pro After a standard system update you need to reboot your computer to make all the necessary changes. ATTENTION: Due to an unavoidable ABI change the kernel updates have been given a new version number, which requires you to recompile and reinstall all third party kernel modules you might have installed. Unless you manually uninstalled the standard kernel metapackages (e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual, linux-powerpc), a standard system upgrade will automatically perform this as well. References: https://ubuntu.com/security/notices/USN-7795-4 https://ubuntu.com/security/notices/USN-7795-3 https://ubuntu.com/security/notices/USN-7795-2 https://ubuntu.com/security/notices/USN-7795-1 CVE-2025-21796, CVE-2025-37785, CVE-2025-38477, CVE-2025-38617, CVE-2025-38618


Attachment: signature.asc (type=application/pgp-signature)

-----BEGIN PGP SIGNATURE----- iQHZBAEBCgBDFiEEBcMY+nwS2CY71sUWc4vdAqvdlsYFAmj7NIQlHGdpYW1wYW9s by5mcmVzaS5yb2dsaWFAY2Fub25pY2FsLmNvbQAKCRBzi90Cq92WxsC6DAC8o0Ye sG7oxQ8Kdl27xDAuFwv/0v/yd7ej6difSBRiTuAWFPn62pr3rkRH3pSZZSXwh0Xo f0VPQ1Jww51XEnpBuolb01nTr5mMVXegs1VI/rkaZbJkxjDxX/mqoUtrQXvLQqPg Rd3gjYkp9dpqUKCfof82aUxYJZXgxG8tR0tiOoxi2QWNMy798GRMteJjZobtD479 eXXORzZY/E4QGOqC1Xbw31gx+jzx9t9YY3B0eVjYfmJVhINWmgrmlGFI2OA9d0am Kl3fFSfskoF9f/3qIE9ve+4MY/FJXUJ0IwsMP5qvzOoq1pmGCdX3bDqV2l5Dhf75 is+3xvBaYlOuE7+Kcga7p/y9hv3fjFFIKVCiT4kToOzekEkkAq8Ou83am4kmiSot 9HguBpCXpe14/NGXk13tZoEtDHh43ULxBLjLKU8ch34xrKTxaEMy4j6dCMiUBgEP FckA2qrfKmK88rYUWA2O4WHJaOuoMJul3F7SD2gvamva/Y85MFGS3DZw07k= =WWiQ -----END PGP SIGNATURE-----


to post comments


Copyright © 2026, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds