USN-8819-4: Linux kernel (FIPS) vulnerabilities
Ubuntu FIPS kernel update fixes NFS, IPv6, and Netfilter flaws CVE-2025-38724, CVE-2026-53131, and CVE-2026-53221.
Ubuntu USN-8819-4 fixes Linux kernel flaws in FIPS builds. The issues are in the NFS server daemon, IPv6 networking, and Netfilter, tracked as CVE-2025-38724, CVE-2026-53131, and CVE-2026-53221. Ubuntu says an attacker could possibly use them to compromise the system. The bulletin does not report observed exploitation.
- USN-8819-4 covers the Ubuntu Linux kernel FIPS build.
- Fixed areas are the NFS server, IPv6, and Netfilter.
- Tracked CVEs are CVE-2025-38724, CVE-2026-53131, and CVE-2026-53221.
- The notice does not report exploitation in the wild.
Vulnerabilities mentionedAll →
- CVE-2025-387247.8<1%Linux kernel: nfsd: handle get_client_locked() failure in nfsd4_setclientid_confirm() Lei Lu recently reported that…published · linux linux kernel
- CVE-2026-532219.8<1%Linux kernel: ip6_vti: fix incorrect tunnel matching in vti6_tnl_lookup()
Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - Network file system (NFS) server daemon; - IPv6 networking; - Netfilter; (CVE-2025-38724, CVE-2026-53131, CVE-2026-53221)
This source does not provide full text. Read it at ubuntu.com.