USN-7853-2: Linux kernel (FIPS) vulnerabilities | Ubuntu security notices | Ubuntu


USN-7853-2: Linux kernel (FIPS) vulnerabilities | Ubuntu security notices | Ubuntu

linux-gcp-fips - Linux kernel for Google Cloud Platform (GCP) systems with FIPS

Jean-Claude Graf, Sandro Rüegge, Ali Hajiabadi, and Kaveh Razavi discovered

that the Linux kernel contained insufficient branch predictor isolation

between a guest and a userspace hypervisor for certain processors. This

flaw is known as VMSCAPE. An attacker in a guest VM could possibly use this

to expose sensitive information from the host OS. (CVE-2025-40300)

Several security issues were discovered in the Linux kernel.

An attacker could possibly use these to compromise the system.

This update corrects flaws in the following subsystems:

Previous articleNext article

POPULAR CATEGORY

misc

16558

entertainment

17572

corporate

14539

research

8911

wellness

14418

athletics

18445