CSIRTS // UNIFIED SECURITY ADVISORY FEEDSYS ● ONLINE · POWERED BY INTELFUSIONS.COM

USN-8620-4: Linux kernel (Intel IoTG) vulnerabilities

highCVE-2023-45896CVE-2025-54505CVE-2025-54518CVE-2022-49803CVE-2022-49961CVE-2022-50073
Maxim Suhanov discovered that the NTFS file system implementation in the Linux kernel did not properly validate file name length in certain situations, leading to an out-of-bounds read. An attacker could use this to construct a malicious NTFS image that, when mounted and operated on, could expose sensitive information (kernel memory). (CVE-2023-45896) It was discovered that some AMD processors did not properly clear data in the floating point divider unit during speculative execution. A local attacker could use this to expose sensitive information. (CVE-2025-54505) It was discovered that some AMD Zen 2 processors did not properly isolate shared resources in the operation cache. A local attacker could possibly use this issue to corrupt instructions executed at a higher privilege level, resulting in privilege escalation. (CVE-2025-54518) Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - ARM32 architecture; - ARM64 architecture; - MIPS architecture; - PowerPC architecture; - S390 architecture; - x86 architecture; - Block layer subsystem; - Cryptographic API; - ACPI drivers; - ATM drivers; - Drivers core; - Power management core; - DRBD Distributed Replicated Block Device drivers; - RNBD block device driver; - Bluetooth drivers; - Bus devices; - Character device driver; - TPM device driver; - Clocksource drivers; - Data acquisition framework and drivers; - CPU frequency scaling framework; - CPU idle management framework; - Hardware crypto device drivers; - DMA engine subsystem; - Arm Firmware Framework for ARMv8-A(FFA); - EFI core; - GPIO subsystem; - GPU drivers; - HID subsystem; - Hardware monitoring drivers; - I2C subsystem; - IIO subsystem; - IIO ADC drivers; - InfiniBand drivers; - Input Device (Miscellaneous) drivers; - IOMMU subsystem; - Mailbox framework; - Multiple devices driver; - Media drivers; - MediaTek SMI driver; - NVIDIA Te

Details

Source
Ubuntu Security Notices (INTL · vendor-psirt · site)
Severity
high
Published
2026-07-31
Exploitation
Not in CISA KEV at last sync

Original advisory: https://ubuntu.com/security/notices/USN-8620-4

Exploitation outlook

EPSS (FIRST.org) estimates each CVE’s probability of exploitation in the next 30 days — here is the CSIRTS.com read on those numbers.

Referenced CVEs

CVECSIRTS overviewExternal
CVE-2023-45896coverage & exploitation statusNVD · CVE.org
CVE-2025-54505coverage & exploitation statusNVD · CVE.org
CVE-2025-54518coverage & exploitation statusNVD · CVE.org
CVE-2022-49803coverage & exploitation statusNVD · CVE.org
CVE-2022-49961coverage & exploitation statusNVD · CVE.org
CVE-2022-50073coverage & exploitation statusNVD · CVE.org
CVE-2022-50116coverage & exploitation statusNVD · CVE.org
CVE-2022-50552coverage & exploitation statusNVD · CVE.org
CVE-2023-52682coverage & exploitation statusNVD · CVE.org
CVE-2023-52737coverage & exploitation statusNVD · CVE.org
CVE-2023-53545coverage & exploitation statusNVD · CVE.org
CVE-2023-53596coverage & exploitation statusNVD · CVE.org
CVE-2023-53629coverage & exploitation statusNVD · CVE.org
CVE-2024-27389coverage & exploitation statusNVD · CVE.org
CVE-2024-35865coverage & exploitation statusNVD · CVE.org
CVE-2024-36898coverage & exploitation statusNVD · CVE.org
CVE-2024-36922coverage & exploitation statusNVD · CVE.org
CVE-2024-41079coverage & exploitation statusNVD · CVE.org
CVE-2024-46715coverage & exploitation statusNVD · CVE.org
CVE-2024-46770coverage & exploitation statusNVD · CVE.org
CVE-2024-47809coverage & exploitation statusNVD · CVE.org
CVE-2024-50012coverage & exploitation statusNVD · CVE.org
CVE-2024-53221coverage & exploitation statusNVD · CVE.org
CVE-2024-56557coverage & exploitation statusNVD · CVE.org
CVE-2024-56584coverage & exploitation statusNVD · CVE.org
CVE-2024-56657coverage & exploitation statusNVD · CVE.org
CVE-2024-56719coverage & exploitation statusNVD · CVE.org
CVE-2024-56727coverage & exploitation statusNVD · CVE.org
CVE-2025-21712coverage & exploitation statusNVD · CVE.org
CVE-2025-21739coverage & exploitation statusNVD · CVE.org
CVE-2025-21863coverage & exploitation statusNVD · CVE.org
CVE-2025-22107coverage & exploitation statusNVD · CVE.org
CVE-2025-23141coverage & exploitation statusNVD · CVE.org
CVE-2025-37786coverage & exploitation statusNVD · CVE.org
CVE-2025-38006coverage & exploitation statusNVD · CVE.org
CVE-2025-38105coverage & exploitation statusNVD · CVE.org
CVE-2025-38192coverage & exploitation statusNVD · CVE.org
CVE-2025-38250coverage & exploitation statusNVD · CVE.org
CVE-2025-38562coverage & exploitation statusNVD · CVE.org
CVE-2025-38626coverage & exploitation statusNVD · CVE.org
CVE-2025-38659coverage & exploitation statusNVD · CVE.org
CVE-2025-38710coverage & exploitation statusNVD · CVE.org
CVE-2025-39748coverage & exploitation statusNVD · CVE.org
CVE-2025-39764coverage & exploitation statusNVD · CVE.org
CVE-2025-40005coverage & exploitation statusNVD · CVE.org
CVE-2025-40016coverage & exploitation statusNVD · CVE.org
CVE-2025-40103coverage & exploitation statusNVD · CVE.org
CVE-2025-40323coverage & exploitation statusNVD · CVE.org

+714 more CVEs referenced in this advisory.

Same CVEs, other sources

How other CERTs, PSIRTs and databases cover the vulnerabilities in this advisory.

More from Ubuntu Security Notices