🛡️ USN-7774-1 — linux

⚪ Unknown ✅ No Known Exploit OSV
N/A
CVSS Score
0 Low4 Medium7 High9 Critical10

Description

linux, linux-aws, linux-aws-5.15, linux-gcp, linux-gcp-5.15, linux-gke, linux-gkeop, linux-hwe-5.15, linux-ibm, linux-ibm-5.15, linux-intel-iotg, linux-intel-iotg-5.15, linux-lowlatency, linux-lowlatency-hwe-5.15, linux-nvidia, linux-nvidia-tegra, linux-nvidia-tegra-5.15, linux-oracle, linux-raspi, linux-xilinx-zynqmp vulnerabilities

Several security issues were discovered in the Linux kernel.

An attacker could possibly use these to compromise the system.

This update corrects flaws in the following subsystems:

  • ARM64 architecture;
  • PowerPC architecture;
  • x86 architecture;
  • ACPI drivers;
  • Serial ATA and Parallel ATA drivers;
  • Drivers core;
  • ATA over ethernet (AOE) driver;
  • Network block device driver;
  • Bus devices;
  • Clock framework and drivers;
  • Hardware crypto device drivers;
  • DMA engine subsystem;
  • EDAC drivers;
  • GPU drivers;
  • HID subsystem;
  • InfiniBand drivers;
  • Input Device (Miscellaneous) drivers;
  • Multiple devices driver;
  • Media drivers;
  • VMware VMCI Driver;
  • MMC subsystem;
  • MTD block device drivers;
  • Network drivers;
  • Pin controllers subsystem;
  • x86 platform drivers;
  • PTP clock framework;
  • RapidIO drivers;
  • Voltage and Current Regulator drivers;
  • Remote Processor subsystem;
  • S/390 drivers;
  • SCSI subsystem;
  • ASPEED SoC drivers;
  • TCM subsystem;
  • Thermal drivers;
  • Thunderbolt and USB4 drivers;
  • TTY drivers;
  • UFS subsystem;
  • USB Gadget drivers;
  • Renesas USBHS Controller drivers;
  • USB Type-C support driver;
  • Virtio Host (VHOST) subsystem;
  • Backlight driver;
  • Framebuffer layer;
  • BTRFS file system;
  • File systems infrastructure;
  • Ext4 file system;
  • F2FS file system;
  • JFFS2 file system;
  • JFS file system;
  • Network file system (NFS) client;
  • Network file system (NFS) server daemon;
  • NTFS3 file system;
  • DRM display driver;
  • Memory Management;
  • Mellanox drivers;
  • Memory management;
  • Netfilter;
  • Network sockets;
  • IPC subsystem;
  • BPF subsystem;
  • Perf events;
  • Kernel exit() syscall;
  • Restartable seuqences system call mechanism;
  • Timer subsystem;
  • Tracing infrastructure;
  • Appletalk network protocol;
  • Asynchronous Transfer Mode (ATM) subsystem;
  • Networking core;
  • IPv6 networking;
  • MultiProtocol Label Switching driver;
  • NetLabel subsystem;
  • Netlink;
  • NFC subsystem;
  • Open vSwitch;
  • Rose network layer;
  • RxRPC session sockets;
  • Network traffic control;
  • TIPC protocol;
  • VMware vSockets driver;
  • USB sound devices;

(CVE-2025-38465, CVE-2025-38386, CVE-2025-38273, CVE-2025-38227,

CVE-2025-38107, CVE-2025-37958, CVE-2025-38371, CVE-2025-38328,

CVE-2025-38348, CVE-2025-38100, CVE-2025-38336, CVE-2025-38420,

CVE-2025-38154, CVE-2025-38542, CVE-2025-38222, CVE-2025-38406,

CVE-2025-37948, CVE-2025-38112, CVE-2025-38145, CVE-2025-38163,

CVE-2025-38464, CVE-2025-38085, CVE-2025-38342, CVE-2025-38310,

CVE-2025-38326, CVE-2025-38418, CVE-2025-38362, CVE-2025-38412,

CVE-2025-38219, CVE-2025-38332, CVE-2025-38387, CVE-2025-38262,

CVE-2025-38157, CVE-2025-38514, CVE-2025-38466, CVE-2025-38313,

CVE-2025-38159, CVE-2024-44939, CVE-2025-38352, CVE-2025-38459,

CVE-2025-38419, CVE-2025-38086, CVE-2025-38298, CVE-2025-38146,

CVE-2025-38181, CVE-2025-38448, CVE-2025-38231, CVE-2025-38461,

CVE-2025-38251, CVE-2025-38391, CVE-2025-38515, CVE-2024-26726,

CVE-2025-38462, CVE-2025-38416, CVE-2025-38280, CVE-2025-38226,

CVE-2025-38211, CVE-2025-38120, CVE-2025-38377, CVE-2025-38147,

CVE-2025-38204, CVE-2025-38345, CVE-2025-38424, CVE-2025-38203,

CVE-2025-38443, CVE-2025-38197, CVE-2025-38067, CVE-2025-38400,

CVE-2025-38229, CVE-2025-38108, CVE-2025-38319, CVE-2025-38445,

CVE-2025-38212, CVE-2025-38184, CVE-2025-38363, CVE-2025-38160,

CVE-2024-57883, CVE-2025-38441, CVE-2025-38320, CVE-2025-38393,

CVE-2025-38200, CVE-2025-38467, CVE-2025-38444, CVE-2025-38194,

CVE-2025-38460, CVE-2025-38167, CVE-2025-38428, CVE-2025-38312,

CVE-2025-38111, CVE-2025-38498, CVE-2025-38135, CVE-2025-38237,

CVE-2025-38457, CVE-2025-38401, CVE-2025-38206, CVE-2025-38293,

CVE-2025-38143, CVE-2025-38161, CVE-2025-38136, CVE-2022-48703,

CVE-2025-38513, CVE-2025-38430, CVE-2025-38384, CVE-2025-38346,

CVE-2025-38337, CVE-2025-38088, CVE-2025-38257, CVE-2025-38395,

CVE-2025-38153, CVE-2025-38263, CVE-2025-38218, CVE-2024-26775,

CVE-2025-38305, CVE-2025-38119, CVE-2025-38389, CVE-2025-38102,

CVE-2025-38074, CVE-2025-38173, CVE-2025-38138, CVE-2025-38103,

CVE-2025-38286, CVE-2025-38458, CVE-2025-38174, CVE-2025-38245,

CVE-2025-38084, CVE-2025-38415, CVE-2025-38516, CVE-2025-38090,

CVE-2025-38439, CVE-2025-38403, CVE-2025-38115, CVE-2025-38344,

CVE-2025-38410, CVE-2025-38375, CVE-2025-37963, CVE-2025-38249,

CVE-2025-38324, CVE-2025-38122, CVE-2025-38540, CVE-2025-38399,

CVE-2025-21888, CVE-2025-38285)

Affected software

USN-7774-1 is recorded against 20 packages.

  • linux (fixed in 5.15.0-156.166)
  • linux-aws (fixed in 5.15.0-1092.99)
  • linux-aws-5.15 (fixed in 5.15.0-1092.99~20.04.1)
  • linux-gcp (fixed in 5.15.0-1092.101)
  • linux-gcp-5.15 (fixed in 5.15.0-1092.101~20.04.1)
  • linux-gke (fixed in 5.15.0-1089.95)
  • linux-gkeop (fixed in 5.15.0-1075.83)
  • linux-hwe-5.15 (fixed in 5.15.0-156.166~20.04.1)
  • linux-ibm (fixed in 5.15.0-1086.89)
  • linux-ibm-5.15 (fixed in 5.15.0-1086.89~20.04.1)
  • linux-intel-iotg (fixed in 5.15.0-1087.93)
  • linux-intel-iotg-5.15 (fixed in 5.15.0-1087.93~20.04.1)
  • linux-lowlatency (fixed in 5.15.0-156.166)
  • linux-lowlatency-hwe-5.15 (fixed in 5.15.0-156.166~20.04.1)
  • linux-nvidia (fixed in 5.15.0-1087.88)
  • linux-nvidia-tegra (fixed in 5.15.0-1045.45)
  • linux-nvidia-tegra-5.15 (fixed in 5.15.0-1045.45~20.04.1)
  • linux-oracle (fixed in 5.15.0-1090.96)
  • linux-raspi (fixed in 5.15.0-1086.89)
  • linux-xilinx-zynqmp (fixed in 5.15.0-1056.60)

Timeline and source

Published on 3 December 2025 and last revised on 6 August 2026. No public exploit is currently recorded for this entry. Record sourced from OSV.

References

ubuntu.com (Advisory)
ubuntu.com (Report)
ubuntu.com (Report)
ubuntu.com (Report)
ubuntu.com (Report)
ubuntu.com (Report)
ubuntu.com (Report)
ubuntu.com (Report)
ubuntu.com (Report)
ubuntu.com (Report)
ubuntu.com (Report)
ubuntu.com (Report)
ubuntu.com (Report)
ubuntu.com (Report)
ubuntu.com (Report)

Details

Severity Unknown
CVSS Score N/A
CVSS Vector N/A
CWE N/A
Public Exploit ✅ No
Source OSV
Published 2025-12-03
Updated 2026-08-12
Modified 2026-08-06
Fix URL N/A

Affected Packages

Software From version Fixed in
linux 5.15.0-156.166
linux-aws 5.15.0-1092.99
linux-aws-5.15 5.15.0-1092.99~20.04.1
linux-gcp 5.15.0-1092.101
linux-gcp-5.15 5.15.0-1092.101~20.04.1
linux-gke 5.15.0-1089.95
linux-gkeop 5.15.0-1075.83
linux-hwe-5.15 5.15.0-156.166~20.04.1
linux-ibm 5.15.0-1086.89
linux-ibm-5.15 5.15.0-1086.89~20.04.1
linux-intel-iotg 5.15.0-1087.93
linux-intel-iotg-5.15 5.15.0-1087.93~20.04.1
linux-lowlatency 5.15.0-156.166
linux-lowlatency-hwe-5.15 5.15.0-156.166~20.04.1
linux-nvidia 5.15.0-1087.88
linux-nvidia-tegra 5.15.0-1045.45
linux-nvidia-tegra-5.15 5.15.0-1045.45~20.04.1
linux-oracle 5.15.0-1090.96
linux-raspi 5.15.0-1086.89
linux-xilinx-zynqmp 5.15.0-1056.60

References

Similar Threats

Free Vulnerability Check

Is your site affected by USN-7774-1?

BotEraser helps you identify potentially vulnerable plugins and themes by checking your installation against USN-7774-1 and other known CVE records.

Scan My Site Free →

No credit card required  ·  Results in minutes

ⓘ Data Notice: The information presented above has been compiled from publicly available internet sources. Boteraser aggregates this data solely for informational purposes and does not independently classify, evaluate, or endorse any findings about the vulnerabilities listed. The accuracy and completeness of this information is the sole responsibility of the original publishers. Boteraser and its operators accept no liability for any decisions made based on this data.