Ubuntu kernel notices patch i.MX, Arm TLB, and SEV-SNP flaws
Ubuntu's 6–9 October 2026 kernel notices fix CVE-2022-3114, CVE-2025-10263, and CVE-2023-20585; none report exploitation.
From 6 to 9 October 2026, Ubuntu published Linux kernel security notices for generic kernels and for Azure CVM, Azure, GCP, Oracle, and AWS images. CVE-2022-3114, in USN-8875-1, USN-8876-1, USN-8878-1, and USN-8879-1, is an i.MX clock-driver null-pointer dereference that a local attacker could use to crash the system; only USN-8875-1 adds that the attacker triggers a memory-allocation failure. CVE-2025-10263 appears only in the GCP and Oracle notices among this set and describes Arm broadcast TLB invalidation that can finish before related writes are globally visible, potentially allowing memory writes after permissions were revoked. CVE-2023-20585, in USN-8887-1, USN-8888-1, USN-8887-2, USN-8888-2, and USN-8887-3, concerns AMD processors that fail Reverse Map Table checks when the IOMMU accesses certain host buffers, so a local attacker with hypervisor access could cause an out-of-bounds condition and compromise SEV-SNP guest memory integrity. USN-8903-2, dated 9 October, warns that flaws across ARM, ARM64, MIPS, x86, and drivers such as GPU, HID, networking, InfiniBand, Intel NPU, Mellanox, and the Microsoft Azure Network Adapter could possibly be used to compromise a system, but names no CVEs. The notices agree that exploitation is not reported, while disagreeing on scope: each lists a different mix of architectures and subsystems, and several say other unnamed issues could possibly compromise a system.
- On 2026-10-06, USN-8875-1 (generic), USN-8876-1 (Azure CVM), USN-8878-1 (GCP), and USN-8879-1 (Oracle) fix CVE-2022-3114, a local denial of service from a null-pointer dereference in the i.MX clock driver.
- Only USN-8875-1 says CVE-2022-3114 is triggered by a memory-allocation failure; it also lists fixes in UAPI, several CPU architectures, User-Mode Linux, the block layer, and the cryptographic API.
- USN-8878-1 and USN-8879-1 also fix CVE-2025-10263, an Arm broadcast TLB invalidation issue that may let a local attacker write memory after permissions were revoked and escalate privileges.
- CVE-2023-20585 is fixed in USN-8887-1 (2026-10-06), USN-8888-1 (Azure, 2026-10-06), USN-8887-2 (AWS, 2026-10-08), USN-8888-2 (Azure, 2026-10-08), and USN-8887-3 (2026-10-09): missing AMD Reverse Map Table checks on certain IOMMU…
- Those SEV-SNP notices also patch ARM/ARM64, ARM32, MIPS, OpenRISC, PowerPC, RISC-V, NVDIMM drivers, and the Handshake API, though each notice names a slightly different mix.
- USN-8903-2 (2026-10-09) says an attacker could possibly compromise a system via flaws in ARM, ARM64, MIPS, x86, and drivers including GPU, HID, networking, InfiniBand, Intel NPU, Mellanox, and the Microsoft Azure Network Adapter; the…
- None of the notices report exploitation in the wild.
Coverage timelineoldest first · each row is one article
- · 5d agoUSN-8851-3: Linux kernel (Azure) vulnerabilities
Ubuntu Security Notices· 26
Ubuntu patched Linux kernel flaws in NFS, IPv6, and Netfilter for Azure kernels in USN-8851-3.
- · 4d agoUSN-8876-1: Linux kernel (Azure CVM) vulnerabilities
Ubuntu Security Notices· 34
Ubuntu patched Azure CVM Linux kernel flaws, including local denial-of-service bug CVE-2022-3114.
- · 4d agoUSN-8877-1: Linux kernel (GCP) vulnerabilities
Ubuntu Security Notices· 30
Ubuntu's USN-8877-1 patches GCP Linux kernels, including an i.MX clock-driver local denial of service.
Vulnerabilities in this storyAll →
- CVE-2022-31145.5<1%An issue was discovered in the Linux kernel through 5.16-rc6published · linux linux kernel
- CVE-2023-205855.6<1%Insufficient checks of the RMP on host buffer access in IOMMU may allow an attacker with privileges and a compromised hypervisor to trigger an out of bounds…