Ubuntu alert USN-8148-2 (linux-fips, linux-aws-fips, linux-gcp-fips)
| From: | Rodrigo Figueiredo Zaiden <rodrigo.zaiden@canonical.com> | |
| To: | ubuntu-security-announce@lists.ubuntu.com | |
| Subject: | [USN-8148-2] Linux kernel (FIPS) vulnerabilities | |
| Date: | Thu, 02 Apr 2026 18:00:52 -0300 | |
| Message-ID: | <5ca37f41-8429-4ceb-826e-824855f32955@canonical.com> |
========================================================================== Ubuntu Security Notice USN-8148-2 April 02, 2026 linux-fips, linux-aws-fips, linux-gcp-fips vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 24.04 LTS Summary: Several security issues were fixed in the Linux kernel. Software Description: - linux-aws-fips: Linux kernel for Amazon Web Services (AWS) systems with FIPS - linux-fips: Linux kernel with FIPS - linux-gcp-fips: Linux kernel for Google Cloud Platform (GCP) systems with FIPS Details: Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - Cryptographic API; - Netfilter; - Network traffic control; (CVE-2026-23060, CVE-2026-23074, CVE-2026-23111) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 24.04 LTS linux-image-6.8.0-1051-aws-fips 6.8.0-1051.54+fips1 Available with Ubuntu Pro linux-image-6.8.0-1053-gcp-fips 6.8.0-1053.56+fips1 Available with Ubuntu Pro linux-image-6.8.0-107-fips 6.8.0-107.107+fips1 Available with Ubuntu Pro linux-image-aws-fips 6.8.0-1051.54+fips1 Available with Ubuntu Pro linux-image-aws-fips-6.8 6.8.0-1051.54+fips1 Available with Ubuntu Pro linux-image-fips 6.8.0-107.107+fips1 Available with Ubuntu Pro linux-image-fips-6.8 6.8.0-107.107+fips1 Available with Ubuntu Pro linux-image-gcp-fips 6.8.0-1053.56+fips1 Available with Ubuntu Pro linux-image-gcp-fips-6.8 6.8.0-1053.56+fips1 Available with Ubuntu Pro After a standard system update you need to reboot your computer to make all the necessary changes. ATTENTION: Due to an unavoidable ABI change the kernel updates have been given a new version number, which requires you to recompile and reinstall all third party kernel modules you might have installed. Unless you manually uninstalled the standard kernel metapackages (e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual, linux-powerpc), a standard system upgrade will automatically perform this as well. References: https://ubuntu.com/security/notices/USN-8148-2 https://ubuntu.com/security/notices/USN-8148-1 CVE-2026-23060, CVE-2026-23074, CVE-2026-23111 Package Information: https://launchpad.net/ubuntu/+source/linux-aws-fips/6.8.0... https://launchpad.net/ubuntu/+source/linux-fips/6.8.0-107... https://launchpad.net/ubuntu/+source/linux-gcp-fips/6.8.0...
Attachment: OpenPGP_signature.asc (type=application/pgp-signature)
-----BEGIN PGP SIGNATURE----- wsB5BAABCAAjFiEEYrygdx1GDec9TV8EZ0GeRcM5nt0FAmnO2QQFAwAAAAAACgkQZ0GeRcM5nt0d gAgAh2q2RWQlcQpmWfI79wEujvLyEY2xHIyZMMuYKpvRirb7y905QsXYlo2zWp2ui6jOWFu5Un1p eJk18207DncReGimWvlEKoQ2tzCPvidR+1XVRj0MidqD68efYvgFu+AS8XByAHFPG9fo6huh5wIk Un5jdvU5LqElHgKA/2uresaULLnZKk3q4mwG1rLeWqc4gXXHKqB+aJs+dFNt4MwDrlpj/tLzK3ZL 2aOix8Oq5E/pe53S5dqucK7ZFcJsPssdkSDfhGXpBmJHeQXlVzGA0hLMaqQv5oR6mM/TaDWt0EE1 TKFID+RiPp9XZIgLTbcQxnbMc93rMIZjhdzI8g7WlQ== =/RIX -----END PGP SIGNATURE-----
