USN-8851-1: Linux kernel vulnerabilities
Ubuntu USN-8851-1 patches three Linux kernel flaws in NFS server daemon, IPv6, and Netfilter that could allow system compromise.
Canonical published USN-8851-1 correcting several Linux kernel security issues. The update fixes flaws in the NFS server daemon, IPv6 networking, and Netfilter subsystems, tracked as CVE-2025-38724, CVE-2026-53131, and CVE-2026-53221. The notice states an attacker could possibly use these issues to compromise the system; no exploitation is mentioned.
- Three CVEs fixed across NFS server, IPv6, and Netfilter subsystems
- Flaws could allow an attacker to compromise the system
- Routine kernel update; users should apply patched kernel packages
Vulnerabilities mentionedAll →
- CVE-2025-387247.8<1%Linux kernel: nfsd: handle get_client_locked() failure in nfsd4_setclientid_confirm() Lei Lu recently reported that…published · linux linux kernel
- CVE-2026-532219.8<1%Linux kernel: ip6_vti: fix incorrect tunnel matching in vti6_tnl_lookup()
Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - Network file system (NFS) server daemon; - IPv6 networking; - Netfilter; (CVE-2025-38724, CVE-2026-53131, CVE-2026-53221)
This source does not provide full text. Read it at ubuntu.com.