USN-8793-1: Linux kernel (Azure CVM) vulnerabilities
Ubuntu patches nine Linux kernel vulnerabilities affecting Azure CVM environments across multiple subsystems.
Ubuntu published security notice USN-8793-1 addressing multiple vulnerabilities in the Linux kernel for Azure Confidential Virtual Machine (CVM) environments. The update patches security issues across several subsystems including Bluetooth drivers, GPU drivers, hardware monitoring drivers, SPI subsystem, NTFS3 file system, io_uring subsystem, Ethernet bridge, and Multipath TCP. Nine CVE identifiers are resolved in this advisory, targeting potential system compromise scenarios.
- Ubuntu releases security update for Linux kernel Azure CVM vulnerabilities.
- Patches address flaws in Bluetooth, GPU, and Hardware monitoring drivers.
- Additional fixes cover SPI subsystem, NTFS3, io_uring, and Ethernet bridge.
- Nine CVE identifiers are addressed in this security advisory.
- Update applies specifically to Azure CVM (Confidential Virtual Machine) environments.
Vulnerabilities mentionedAll →
- CVE-2025-712895.5<1%Linux kernel: fs/ntfs3: handle attr_set_size() errors when truncating filespublished · linux linux kernel
- CVE-2026-234694.7<1%Linux kernel: drm/imagination: Synchronize interrupts before suspending the GPU
Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - Bluetooth drivers; - GPU drivers; - Hardware monitoring drivers; - SPI subsystem; - NTFS3 file system; - io_uring subsystem; - Ethernet bridge; - Multipath TCP; (CVE-2025-71289, CVE-2026-23469, CVE-2026-31420, CVE-2026-31486, CVE-2026-31560, CVE-2026-46158, CVE-2026-46170, CVE-2026-46275, CVE-2026-46315)
This source does not provide full text. Read it at ubuntu.com.