USN-7704-2: Linux kernel (FIPS) vulnerabilities
Publication date
19 August 2025
Overview
Several security issues were fixed in the Linux kernel.
Releases
Packages
- linux-aws-fips - Linux kernel for Amazon Web Services (AWS) systems with FIPS
- linux-fips - Linux kernel with FIPS
- linux-gcp-fips - Linux kernel for Google Cloud Platform (GCP) systems with FIPS
Details
Several security issues were discovered in the Linux kernel.
An attacker could possibly use these to compromise the system.
This update corrects flaws in the following subsystems:
- Cryptographic API;
- Arm Firmware Framework for ARMv8-A(FFA);
- Multiple devices driver;
- Media drivers;
- Network drivers;
- NVDIMM (Non-Volatile Memory Device) drivers;
- NVME drivers;
- x86 platform drivers;
- TCM subsystem;
- Virtio drivers;
- File systems infrastructure;
- SMB network file system;
- LZO compression library;
- Digital Audio (PCM) driver;
- Tracing infrastructure;
- Padata parallel execution mechanism;
- CAN network layer;
- Networking core;
- TIPC protocol;
- ALSA framework
Several security issues were discovered in the Linux kernel.
An attacker could possibly use these to compromise the system.
This update corrects flaws in the following subsystems:
- Cryptographic API;
- Arm Firmware Framework for ARMv8-A(FFA);
- Multiple devices driver;
- Media drivers;
- Network drivers;
- NVDIMM (Non-Volatile Memory Device) drivers;
- NVME drivers;
- x86 platform drivers;
- TCM subsystem;
- Virtio drivers;
- File systems infrastructure;
- SMB network file system;
- LZO compression library;
- Digital Audio (PCM) driver;
- Tracing infrastructure;
- Padata parallel execution mechanism;
- CAN network layer;
- Networking core;
- TIPC protocol;
- ALSA framework
Update instructions
After a standard system update you need to reboot your computer to make all the necessary changes.
Learn more about how to get the fixes.The problem can be corrected by updating your system to the following package versions:
Ubuntu Release | Package Version | ||
---|---|---|---|
22.04 jammy | linux-image-5.15.0-1090-aws-fips – 5.15.0-1090.97+fips1 | ||
linux-image-5.15.0-1090-gcp-fips – 5.15.0-1090.99+fips1 | |||
linux-image-5.15.0-152-fips – 5.15.0-152.162+fips1 | |||
linux-image-aws-fips – 5.15.0.1090.86 | |||
linux-image-aws-fips-5.15 – 5.15.0.1090.86 | |||
linux-image-fips – 5.15.0.152.87 | |||
linux-image-fips-5.15 – 5.15.0.152.87 | |||
linux-image-gcp-fips – 5.15.0.1090.80 | |||
linux-image-gcp-fips-5.15 – 5.15.0.1090.80 |
Reduce your security exposure
Ubuntu Pro provides ten-year security coverage to 25,000+ packages in Main and Universe repositories, and it is free for up to five machines.
References
- CVE-2025-38079
- CVE-2025-38078
- CVE-2025-38077
- CVE-2025-38075
- CVE-2025-38072
- CVE-2025-38068
- CVE-2025-38066
- CVE-2025-38065
- CVE-2025-38061
- CVE-2025-38058
- CVE-2025-38079
- CVE-2025-38078
- CVE-2025-38077
- CVE-2025-38075
- CVE-2025-38072
- CVE-2025-38068
- CVE-2025-38066
- CVE-2025-38065
- CVE-2025-38061
- CVE-2025-38058
- CVE-2025-38052
- CVE-2025-38051
- CVE-2025-38048
- CVE-2025-38044
- CVE-2025-38043
- CVE-2025-38037
- CVE-2025-38035
- CVE-2025-38034
- CVE-2025-38031
- CVE-2025-38004
- CVE-2025-38003
Have additional questions?