CSIRTS // UNIFIED SECURITY ADVISORY FEEDSYS ● ONLINE · POWERED BY INTELFUSIONS.COM

USN-8568-1: Linux kernel (OEM) vulnerabilities

highpublic exploitCVE-2025-54518CVE-2026-43490CVE-2026-43492CVE-2026-43495CVE-2026-43496CVE-2026-43497
It was discovered that some AMD Zen 2 processors did not properly isolate shared resources in the operation cache. A local attacker could possibly use this issue to corrupt instructions executed at a higher privilege level, resulting in privilege escalation. (CVE-2025-54518) Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - PSP security protocol; - ARM64 architecture; - PowerPC architecture; - RISC-V architecture; - S390 architecture; - User-Mode Linux (UML); - x86 architecture; - Block layer subsystem; - Cryptographic API; - Intel NPU Driver; - DRBD Distributed Replicated Block Device drivers; - Ublk userspace block driver; - Bluetooth drivers; - Bus devices; - Character device driver; - Clock framework and drivers; - CPU frequency scaling framework; - Hardware crypto device drivers; - EDAC drivers; - EFI core; - FWCTL subsystem; - GPU drivers; - HID subsystem; - I3C subsystem; - InfiniBand drivers; - IOMMU subsystem; - Mailbox framework; - Multiple devices driver; - Media drivers; - NVIDIA Tegra memory controller driver; - MTD block device drivers; - Network drivers; - Ethernet bonding driver; - Mellanox network drivers; - Microsoft Azure Network Adapter (MANA) driver; - STMicroelectronics network drivers; - MediaTek network drivers; - NVME drivers; - PCI subsystem; - Pin controllers subsystem; - Chrome hardware platform drivers; - ACPI WMI driver; - x86 platform drivers; - Generic PM domains; - MediaTek PM domains; - Power supply drivers; - MPAM driver; - Amlogic Meson reset controller drivers; - S/390 drivers; - SCSI subsystem; - NVIDIA Tegra Control Backbone (CBB) driver; - SPI subsystem; - Greybus lights staging drivers; - Media staging drivers; - Realtek RTL8723BS SDIO drivers; - TCM subsystem; - TTY drivers; - USB Device Class drivers; - ULPI bus; - USB Type-C support driver; - TI TPS6598x USB Power Delivery controller driver; -

CSIRTS triage

What
Local attackers could exploit vulnerabilities in AMD processors to escalate privileges.
Who is affected
Deployments of affected AMD processors using the Linux kernel.
Urgency
Remediation is urgent due to high severity and potential for exploitation.
Action
Apply the latest kernel updates to mitigate these vulnerabilities.

AI-assisted analysis generated from the source advisory — verify against the original.

⚡ Watch Linux kernel

Get an email when a new Linux kernel advisory drops — max one per day, one-click unsubscribe.

Details

Source
Ubuntu Security Notices (INTL · vendor-psirt · site)
Severity
high
Published
2026-07-20
Exploitation
Not in CISA KEV at last sync

Original advisory: https://ubuntu.com/security/notices/USN-8568-1

Exploitation outlook

EPSS (FIRST.org) estimates each CVE’s probability of exploitation in the next 30 days — here is the CSIRTS.com read on those numbers.

Referenced CVEs

CVECSIRTS overviewExternal
CVE-2025-54518coverage & exploitation statusNVD · CVE.org
CVE-2026-43490coverage & exploitation statusNVD · CVE.org
CVE-2026-43492coverage & exploitation statusNVD · CVE.org
CVE-2026-43495coverage & exploitation statusNVD · CVE.org
CVE-2026-43496coverage & exploitation statusNVD · CVE.org
CVE-2026-43497coverage & exploitation statusNVD · CVE.org
CVE-2026-43498coverage & exploitation statusNVD · CVE.org
CVE-2026-43502coverage & exploitation statusNVD · CVE.org
CVE-2026-45834coverage & exploitation statusNVD · CVE.org
CVE-2026-45835coverage & exploitation statusNVD · CVE.org
CVE-2026-45836coverage & exploitation statusNVD · CVE.org
CVE-2026-45837coverage & exploitation statusNVD · CVE.org
CVE-2026-45838coverage & exploitation statusNVD · CVE.org
CVE-2026-45839coverage & exploitation statusNVD · CVE.org
CVE-2026-45840coverage & exploitation statusNVD · CVE.org
CVE-2026-45841coverage & exploitation statusNVD · CVE.org
CVE-2026-45842coverage & exploitation statusNVD · CVE.org
CVE-2026-45843coverage & exploitation statusNVD · CVE.org
CVE-2026-45844coverage & exploitation statusNVD · CVE.org
CVE-2026-45845coverage & exploitation statusNVD · CVE.org
CVE-2026-45846coverage & exploitation statusNVD · CVE.org
CVE-2026-46104coverage & exploitation statusNVD · CVE.org
CVE-2026-46105coverage & exploitation statusNVD · CVE.org
CVE-2026-46106coverage & exploitation statusNVD · CVE.org
CVE-2026-46107coverage & exploitation statusNVD · CVE.org
CVE-2026-46108coverage & exploitation statusNVD · CVE.org
CVE-2026-46109coverage & exploitation statusNVD · CVE.org
CVE-2026-46110coverage & exploitation statusNVD · CVE.org
CVE-2026-46111coverage & exploitation statusNVD · CVE.org
CVE-2026-46112coverage & exploitation statusNVD · CVE.org
CVE-2026-46113coverage & exploitation statusNVD · CVE.org
CVE-2026-46114coverage & exploitation statusNVD · CVE.org
CVE-2026-46116coverage & exploitation statusNVD · CVE.org
CVE-2026-46117coverage & exploitation statusNVD · CVE.org
CVE-2026-46118coverage & exploitation statusNVD · CVE.org
CVE-2026-46120coverage & exploitation statusNVD · CVE.org
CVE-2026-46121coverage & exploitation statusNVD · CVE.org
CVE-2026-46122coverage & exploitation statusNVD · CVE.org
CVE-2026-46123coverage & exploitation statusNVD · CVE.org
CVE-2026-46124coverage & exploitation statusNVD · CVE.org
CVE-2026-46125coverage & exploitation statusNVD · CVE.org
CVE-2026-46126coverage & exploitation statusNVD · CVE.org
CVE-2026-46127coverage & exploitation statusNVD · CVE.org
CVE-2026-46128coverage & exploitation statusNVD · CVE.org
CVE-2026-46129coverage & exploitation statusNVD · CVE.org
CVE-2026-46130coverage & exploitation statusNVD · CVE.org
CVE-2026-46131coverage & exploitation statusNVD · CVE.org
CVE-2026-46132coverage & exploitation statusNVD · CVE.org

+395 more CVEs referenced in this advisory.

Same CVEs, other sources

How other CERTs, PSIRTs and databases cover the vulnerabilities in this advisory.

More from Ubuntu Security Notices