Summary
It was discovered that some Arm processors could complete a broadcast translation lookaside buffer (TLB) invalidation before memory writes made through the invalidated translation were globally observed. A local attacker could possibly use this to write to memory after permission to do so had been revoked, bypassing memory protections or escalating privileges. (CVE-2025-10263)
Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems:
- ARM64 architecture;
- ARM32 architecture;
- MIPS architecture;
- PowerPC architecture;
- x86 architecture;
- Intel NPU Driver;
- Compute Acceleration Framework;
- Auxiliary display drivers;
- Drivers core;
- Compressed RAM block device driver;
- Bluetooth drivers;
- Arm Firmware Framework for ARMv8-A(FFA);
- EFI core;
- GPIO subsystem;
- GPU drivers;
- HID subsystem;
- Hardware monitoring drivers;
- I2C subsystem;
- IIO subsystem;
- InfiniBand drivers;
- Input Device core drivers;
- Input Device (Mouse) drivers;
- Multiple devices driver;
- Media drivers;
- Fastrpc Driver;
- Ethernet bonding driver;
- Network drivers;
- Mellanox network drivers;
- Microsoft Azure Network Adapter (MANA) driver;
- Texas Instruments network drivers;
- NVMEM (Non Volatile Memory) drivers;
- Parport drivers;
- SCSI subsystem;
- SLIMbus drivers;
- NVIDIA Tegra SoC drivers;
- SPI subsystem;
- TCM subsystem;
- Trusted Execution Environment drivers;
- Thunderbolt and USB4 drivers;
- TTY drivers;
- USB Device Class drivers;
- DesignWare USB2 driver;
- USB Gadget drivers;
- USB Dual Role (OTG-ready) Controller drivers;
- USB Serial drivers;
- USB Type-C support driver;
- USB Type-C Port Controller Manager driver;
- USB Type-C Connector System Software Interface driver;
- USB over IP driver;
- Framebuffer layer;
- Ext4 file system;
- FUSE (File system in Userspace);
- File systems infrastructure;
- Network file systems library;
- NTFS3 file system;
- SMB network file system;
- Software nodes and device properties;
- Mellanox drivers;
- Network traffic control;
- Bluetooth subsystem;
- IPv4 networking;
- Netfilter;
- IPv6 networking;
- Network sockets;
- XFRM subsystem;
- Tracing infrastructure;
- io_uring subsystem;
- IPC subsystem;
- IRQ subsystem;
- Signal handling mechanism;
- KProbes tracing;
- Memory management;
- 6LoWPAN network protocol;
- IEEE 802 network protocols;
- B.A.T.M.A.N. meshing protocol;
- Ethernet bridge;
- Networking core;
- Devlink API;
- Ethtool driver;
- Handshake API;
- HSR network protocol;
- IEEE802154.4 network protocol;
- IUCV driver;
- L2TP protocol;
- MAC80211 subsystem;
- Management Component Transport Protocol (MCTP);
- Multipath TCP;
- NetLabel subsystem;
- NFC subsystem;
- Open vSwitch;
- Phonet protocol;
- Qualcomm IPC Router (QRTR);
- RDS protocol;
- RxRPC session sockets;
- SCTP protocol;
- SMC sockets;
- TLS protocol;
- Unix domain sockets;
- VMware vSockets driver;
- Wireless networking;
- Key management;
- Linux Security Modules (LSM) Framework;
- ALSA framework;
- AudioScience HPI driver;
- Simple audio multiplexer codec driver;
- Wolfson Microelectronics audio codecs;
- KVM subsystem;
View 348 CVE identifiers
Products covered
A separate affected-products list was not included in the collected bulletin.
Remediation
This update corrects flaws in the following subsystems:
- ARM64 architecture
- ARM32 architecture
- MIPS architecture
- PowerPC architecture
- x86 architecture
- Intel NPU Driver
- Compute Acceleration Framework
- Auxiliary display drivers
- Drivers core
- Compressed RAM block device driver
- Bluetooth drivers
- Arm Firmware Framework for ARMv8-A(FFA)
- EFI core
- GPIO subsystem
- GPU drivers
- HID subsystem
- Hardware monitoring drivers
- I2C subsystem
- IIO subsystem
- InfiniBand drivers
- Input Device core drivers
- Input Device (Mouse) drivers
- Multiple devices driver
- Media drivers
- Fastrpc Driver
- Ethernet bonding driver
- Network drivers
- Mellanox network drivers
- Microsoft Azure Network Adapter (MANA) driver
- Texas Instruments network drivers; -
CVEs in this advisory 50
Updates
- Published by Ubuntu
The publication date reported by the vendor.
- Added to SecurityAlert
We collected the advisory from the official source.