Back to vendor advisories
Ubuntu Security NoticesUSN-8903-1

USN-8903-1: Linux kernel vulnerabilities

Severity not listed 105 CVEs Published Oct 8, 2026 at 12:55 PM UTC

Summary

Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems:

- ARM32 architecture;

- ARM64 architecture;

- MIPS architecture;

- x86 architecture;

- Intel NPU Driver;

- Auxiliary display drivers;

- Compressed RAM block device driver;

- GPIO subsystem;

- GPU drivers;

- HID subsystem;

- I2C subsystem;

- IIO subsystem;

- InfiniBand drivers;

- Input Device core drivers;

- Input Device (Mouse) drivers;

- Multiple devices driver;

- Media drivers;

- Fastrpc Driver;

- Ethernet bonding driver;

- Network drivers;

- Mellanox network drivers;

- Microsoft Azure Network Adapter (MANA) driver;

- Texas Instruments network drivers;

- NVMEM (Non Volatile Memory) drivers;

- Parport drivers;

- SCSI subsystem;

- SLIMbus drivers;

- NVIDIA Tegra SoC drivers;

- SPI subsystem;

- Trusted Execution Environment drivers;

- Thunderbolt and USB4 drivers;

- TTY drivers;

- USB Device Class drivers;

- DesignWare USB2 driver;

- USB Gadget drivers;

- USB Dual Role (OTG-ready) Controller drivers;

- USB Serial drivers;

- USB Type-C support driver;

- USB Type-C Port Controller Manager driver;

- USB Type-C Connector System Software Interface driver;

- USB over IP driver;

- Framebuffer layer;

- Ext4 file system;

- FUSE (File system in Userspace);

- File systems infrastructure;

- SMB network file system;

- Mellanox drivers;

- Network traffic control;

- Bluetooth subsystem;

- IPv4 networking;

- Netfilter;

- IPv6 networking;

- Network sockets;

- XFRM subsystem;

- IPC subsystem;

- Signal handling mechanism;

- Memory management;

- 6LoWPAN network protocol;

- IEEE 802 network protocols;

- B.A.T.M.A.N. meshing protocol;

- Ethernet bridge;

- Networking core;

- Devlink API;

- Ethtool driver;

- Handshake API;

- HSR network protocol;

- IEEE802154.4 network protocol;

- IUCV driver;

- L2TP protocol;

- MAC80211 subsystem;

- Management Component Transport Protocol (MCTP);

- Multipath TCP;

- NetLabel subsystem;

- NFC subsystem;

- Open vSwitch;

- Qualcomm IPC Router (QRTR);

- RDS protocol;

- RxRPC session sockets;

- SCTP protocol;

- SMC sockets;

- VMware vSockets driver;

- Wireless networking;

- ALSA framework;

- Simple audio multiplexer codec driver;

- Wolfson Microelectronics audio codecs;

- KVM subsystem;

View 232 CVE identifiers

Products covered

A separate affected-products list was not included in the collected bulletin.

Remediation

This update corrects flaws in the following subsystems:

  • ARM32 architecture
  • ARM64 architecture
  • MIPS architecture
  • x86 architecture
  • Intel NPU Driver
  • Auxiliary display drivers
  • Compressed RAM block device driver
  • GPIO subsystem
  • GPU drivers
  • HID subsystem
  • I2C subsystem
  • IIO subsystem
  • InfiniBand drivers
  • Input Device core drivers
  • Input Device (Mouse) drivers
  • Multiple devices driver
  • Media drivers
  • Fastrpc Driver
  • Ethernet bonding driver
  • Network drivers
  • Mellanox network drivers
  • Microsoft Azure Network Adapter (MANA) driver
  • Texas Instruments network drivers
  • NVMEM (Non Volatile Memory) drivers
  • Parport drivers
  • SCSI subsystem
  • SLIMbus drivers
  • NVIDIA Tegra SoC drivers
  • SPI subsystem
  • Trusted Execution Environment drivers; -

CVEs in this advisory 105

Updates

  1. Published by Ubuntu

    The publication date reported by the vendor.

  2. Added to SecurityAlert

    We collected the advisory from the official source.