Ubuntu alert USN-7990-2 (linux-aws-fips, linux-fips, linux-gcp-fips)
| From: | Rodrigo Figueiredo Zaiden <rodrigo.zaiden@canonical.com> | |
| To: | ubuntu-security-announce@lists.ubuntu.com | |
| Subject: | [USN-7990-2] Linux kernel (FIPS) vulnerabilities | |
| Date: | Fri, 30 Jan 2026 12:47:13 -0300 | |
| Message-ID: | <01669c2b-4a2e-4343-a2c4-2d147879f0b6@canonical.com> |
========================================================================== Ubuntu Security Notice USN-7990-2 January 30, 2026 linux-aws-fips, linux-fips, linux-gcp-fips vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 20.04 LTS Summary: Several security issues were fixed in the Linux kernel. Software Description: - linux-aws-fips: Linux kernel for Amazon Web Services (AWS) systems with FIPS - linux-fips: Linux kernel with FIPS - linux-gcp-fips: Linux kernel for Google Cloud Platform (GCP) systems with FIPS Details: Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - Cryptographic API; - Padata parallel execution mechanism; - Netfilter; (CVE-2022-49698, CVE-2025-21726, CVE-2025-40019) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 20.04 LTS linux-image-5.4.0-1128-fips 5.4.0-1128.138 Available with Ubuntu Pro linux-image-5.4.0-1154-aws-fips 5.4.0-1154.164+fips1 Available with Ubuntu Pro linux-image-5.4.0-1157-gcp-fips 5.4.0-1157.166+fips1 Available with Ubuntu Pro linux-image-aws-fips 5.4.0.1154.101 Available with Ubuntu Pro linux-image-aws-fips-5.4 5.4.0.1154.101 Available with Ubuntu Pro linux-image-fips 5.4.0.1128.125 Available with Ubuntu Pro linux-image-fips-5.4 5.4.0.1128.125 Available with Ubuntu Pro linux-image-gcp-fips 5.4.0.1157.99 Available with Ubuntu Pro linux-image-gcp-fips-5.4 5.4.0.1157.99 Available with Ubuntu Pro After a standard system update you need to reboot your computer to make all the necessary changes. ATTENTION: Due to an unavoidable ABI change the kernel updates have been given a new version number, which requires you to recompile and reinstall all third party kernel modules you might have installed. Unless you manually uninstalled the standard kernel metapackages (e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual, linux-powerpc), a standard system upgrade will automatically perform this as well. References: https://ubuntu.com/security/notices/USN-7990-2 https://ubuntu.com/security/notices/USN-7990-1 CVE-2022-49698, CVE-2025-21726, CVE-2025-40019 Package Information: https://launchpad.net/ubuntu/+source/linux-aws-fips/5.4.0... https://launchpad.net/ubuntu/+source/linux-fips/5.4.0-112... https://launchpad.net/ubuntu/+source/linux-gcp-fips/5.4.0...
Attachment: OpenPGP_signature.asc (type=application/pgp-signature)
-----BEGIN PGP SIGNATURE----- wsB5BAABCAAjFiEEYrygdx1GDec9TV8EZ0GeRcM5nt0FAml80oEFAwAAAAAACgkQZ0GeRcM5nt3n UQf/f60zC57jaac7t192N+u1c8xB3Y9E5uQbJ6JT5rj176S8v04MSmxUfHSO0OG/oS+xzPaYOeMM pG7ouu24JrsEi+9ZzDX2K9CNfMcN+fu+QqJ3O8sme0lHloZr9SmuEi5bHz4cTfnm4LqLYQ0Ck5nB pIYn7pdbDvGqtLk9BFTLRX27s2mFxbyfvOFQxFoT/ccWhvsCEzZ+RP3IcMpQXiq9N7GXRU8e3i7k p47zu1EvsrCVvbSzSo8+pNUzCG5WnqRD47M+8mMQK0tmhbwPhYgD8iLlhYYCfq+HIgqC/n1r2Hya kaH1pV42ZfuEg3r68DhjUjOMvO5KhKsCsHhEa2cbag== =p86/ -----END PGP SIGNATURE-----
