Liquorix Kernel 7.1-5 dropped on July 19, 2026, merging upstream Linux v7.1.4 with over 40 patches that realign its custom Project-C scheduler with mainline locking models. The update slashes the default scheduling timeslice to 2ms, disables split lock detection, and zeroes out watermark boost to aggressively prioritize low-latency task switching for gaming and multimedia workloads. While it locks support strictly to AMD64 and x86_64 hardware, the kernel trades sustained throughput and power efficiency for tighter system responsiveness that creative professionals and desktop tinkerers will actually notice.
XanMod has released new kernel builds for the mainline 7.1.4 and LTS 6.18.39 branches, addressing a massive wave of security vulnerabilities alongside performance optimizations. The update patches critical issues across the rtl8723bs driver, SMB subsystems, and BPF JIT hardening, while retaining popular features like Google's BBRv3 and AMD 3D V-Cache support. Users can choose between the feature-rich mainline track or the stable LTS branch with a support window extending to December 2028. Both builds are available for x86-64 architectures via the XanMod APT repository for Debian and Ubuntu distributions.
Liquorix Linux Kernel 7.1-4 has been released by maintainer Steven Barrett, updating the enthusiast-grade kernel to Linux 7.1.3. The release focuses on a major cleanup, reverting six obsolete patches to reduce maintenance burden and improve stability against upstream code. Core updates include deep integration of the Project-C scheduler framework, which brings significant latency improvements for gaming and interactive workloads.
New Ubuntu security updates are available to resolve critical flaws across ubuntu-advantage-tools, NTFS-3G, Ruby 2.3, tar, and Python Authlib. The patches address seventeen distinct vulnerabilities, including bearer token exposure in ubuntu-advantage-tools, heap buffer overflows in the NTFS-3G driver, and IMAP command injection in Ruby 2.3. tar updates resolve a previous patch regression that blocked archive extraction, while Authlib patches enforce strict JWT validation and add cross-site request forgery protections for OAuth systems.
[USN-8555-1] Ubuntu Advantage Tools (pro client) vulnerabilities
[USN-8554-1] NTFS-3G vulnerabilities
[USN-8556-1] Ruby vulnerabilities
[USN-8477-2] tar regression
[USN-8557-1] Authlib vulnerabilities
[USN-8555-1] Ubuntu Advantage Tools (pro client) vulnerabilities
[USN-8554-1] NTFS-3G vulnerabilities
[USN-8556-1] Ruby vulnerabilities
[USN-8477-2] tar regression
[USN-8557-1] Authlib vulnerabilities
Liquorix Linux Kernel 7.1-3 has officially landed, marking the project’s first shift to the Linux 7.1 mainline base. Maintainer Steven Barrett used the rapid release cycle to integrate extensive upstream fixes for Project-C, his custom low-latency scheduler framework. The update also introduces per-mapping control for transparent hugepages on shared memory and tmpfs, improving consistency for databases, containers, and audio production workloads. Packages are now available via Ubuntu PPAs, Debian repositories, and the Arch AUR for desktop users seeking responsive Linux performance.
Ubuntu released a batch of security notices addressing numerous vulnerabilities across the Linux kernel and several core applications. These updates patch critical flaws in kernel configurations for AWS, GCP, Raspberry Pi, and standard hardware enablement systems, alongside fixes for LuaJIT, libslirp, python-idna, Sympa, Tomcat, and .NET. The corrected issues span privilege escalation risks, remote code execution vectors, authorization bypasses, and denial of service triggers tied to hundreds of identified CVE identifiers.
[USN-8548-1] Linux kernel vulnerabilities
[USN-8547-1] Linux kernel vulnerabilities
[USN-8546-1] Linux kernel (Raspberry Pi) vulnerabilities
[USN-8545-1] Linux kernel (HWE) vulnerabilities
[USN-8544-1] LuaJIT vulnerabilities
[USN-8550-1] libslirp vulnerability
[USN-8549-1] idna vulnerability
[USN-8552-1] Sympa vulnerability
[USN-8551-1] Tomcat vulnerabilities
[USN-8553-1] .NET vulnerabilities
[USN-8548-1] Linux kernel vulnerabilities
[USN-8547-1] Linux kernel vulnerabilities
[USN-8546-1] Linux kernel (Raspberry Pi) vulnerabilities
[USN-8545-1] Linux kernel (HWE) vulnerabilities
[USN-8544-1] LuaJIT vulnerabilities
[USN-8550-1] libslirp vulnerability
[USN-8549-1] idna vulnerability
[USN-8552-1] Sympa vulnerability
[USN-8551-1] Tomcat vulnerabilities
[USN-8553-1] .NET vulnerabilities
Ubuntu published nine security advisories on July 14, 2026, to address critical vulnerabilities in httplib2, MariaDB, alsa-lib, OpenVPN, GnuTLS, Dnsmasq, Vim, libheif, and Wget. The updated patches fix flaws that could enable remote code execution, authentication bypass, denial of service, and data leakage across affected systems.
[USN-8537-1] httplib2 vulnerability
[USN-8536-1] MariaDB vulnerabilities
[USN-8538-1] alsa-lib vulnerability
[USN-8540-1] OpenVPN vulnerabilities
[USN-8539-1] GnuTLS vulnerabilities
[USN-8542-1] Dnsmasq vulnerabilities
[USN-8541-1] Vim vulnerabilities
[USN-8526-2] libheif vulnerabilities
[USN-8543-1] Wget vulnerabilities
[USN-8537-1] httplib2 vulnerability
[USN-8536-1] MariaDB vulnerabilities
[USN-8538-1] alsa-lib vulnerability
[USN-8540-1] OpenVPN vulnerabilities
[USN-8539-1] GnuTLS vulnerabilities
[USN-8542-1] Dnsmasq vulnerabilities
[USN-8541-1] Vim vulnerabilities
[USN-8526-2] libheif vulnerabilities
[USN-8543-1] Wget vulnerabilities
Ubuntu released security notices, addressing multiple vulnerabilities across several key packages. The updates fix privilege escalation risks in cifs-utils, buffer handling flaws in libexif and libssh2, and several security bypass issues in OpenSSH. LibreOffice receives patches for crash risks in file importers and formula compilers, while PipeWire addresses denial of service vulnerabilities in its audio processing modules.
[USN-8496-3] cifs-utils vulnerability
[USN-8531-1] libexif vulnerabilities
[USN-8532-1] libssh2 vulnerabilities
[USN-8533-1] OpenSSH vulnerabilities
[USN-8534-1] LibreOffice vulnerabilities
[USN-8535-1] PipeWire vulnerabilities
[USN-8496-3] cifs-utils vulnerability
[USN-8531-1] libexif vulnerabilities
[USN-8532-1] libssh2 vulnerabilities
[USN-8533-1] OpenSSH vulnerabilities
[USN-8534-1] LibreOffice vulnerabilities
[USN-8535-1] PipeWire vulnerabilities
Liquorix maintainer damentz has announced the first build based on the Linux 7.1 series, moving the project forward from its current 7.0.14 release. The kernel applies aggressive Zen Interactive Tuning, including a 1000Hz tick rate, PDS scheduler, and hard preemption, to prioritize desktop responsiveness over power efficiency or sustained throughput. Designed specifically for AMD64 desktops, it targets gamers and audio producers who need low-latency performance, with installation scripts and prebuilt binaries already rolling out for Debian, Ubuntu, and Arch.
Ubuntu released multiple security notices, addressing critical vulnerabilities in the Linux kernel across Ubuntu 18.04, 22.04, and 24.04 distributions.
[USN-8530-1] Linux kernel (AWS) vulnerabilities
[USN-8529-1] Linux kernel vulnerabilities
[USN-8528-1] Linux kernel (Xilinx ZynqMP) vulnerabilities
[USN-8527-1] Linux kernel (Raspberry Pi) vulnerabilities
[USN-8492-5] Linux kernel (FIPS) vulnerabilities
[USN-8530-1] Linux kernel (AWS) vulnerabilities
[USN-8529-1] Linux kernel vulnerabilities
[USN-8528-1] Linux kernel (Xilinx ZynqMP) vulnerabilities
[USN-8527-1] Linux kernel (Raspberry Pi) vulnerabilities
[USN-8492-5] Linux kernel (FIPS) vulnerabilities
Ubuntu 25.10 "Questing Quokka" officially hit its end of life on July 9, 2026, cutting off security patches and active package repositories. If your machine is still running the interim release, you’re exposing yourself to growing vulnerabilities with no official fixes in sight. Canonical recommends pushing the upgrade directly to Ubuntu 26.04 LTS "Resolute Raccoon" through the standard Software Updater, which guarantees five years of free maintenance.
Ubuntu issued a wide-ranging security update, targeting dozens of vulnerabilities across its 14.04 through 26.04 LTS operating systems. The patches resolve critical flaws in the Raspberry Pi Linux kernel that could enable unauthorized system access, alongside dangerous memory corruption bugs in curl, libheif, and libsoup that risk data theft and service outages.
[USN-8492-4] Linux kernel (Raspberry Pi) vulnerabilities
[USN-8490-2] Linux kernel (Raspberry Pi) vulnerabilities
[USN-8522-1] LibRaw vulnerabilities
[USN-8521-1] Libidn vulnerability
[USN-8524-1] Python vulnerability
[USN-8520-1] Expat vulnerability
[USN-8519-1] Go Cryptography vulnerabilities
[USN-8525-1] curl vulnerabilities
[USN-8526-1] libheif vulnerabilities
[USN-8523-1] libsoup vulnerabilities
[USN-8492-4] Linux kernel (Raspberry Pi) vulnerabilities
[USN-8490-2] Linux kernel (Raspberry Pi) vulnerabilities
[USN-8522-1] LibRaw vulnerabilities
[USN-8521-1] Libidn vulnerability
[USN-8524-1] Python vulnerability
[USN-8520-1] Expat vulnerability
[USN-8519-1] Go Cryptography vulnerabilities
[USN-8525-1] curl vulnerabilities
[USN-8526-1] libheif vulnerabilities
[USN-8523-1] libsoup vulnerabilities
Ubuntu released USN-8516-1 to patch multiple vulnerabilities in the Apache HTTP Server that could allow remote attackers to cause denial of service or execute arbitrary code. The organization also published USN-8517-1 to address security flaws in ClamAV where improper handling of specific archive formats and executable files could crash the antivirus utility or exhaust system resources. USN-8518-1 fixes a sandbox escape issue in the mailcap package that allowed the cautious-launcher utility to bypass execution restrictions and run arbitrary code on the host system.
[USN-8516-1] Apache HTTP Server vulnerabilities
[USN-8517-1] ClamAV vulnerabilities
[USN-8518-1] mailcap vulnerability
[USN-8516-1] Apache HTTP Server vulnerabilities
[USN-8517-1] ClamAV vulnerabilities
[USN-8518-1] mailcap vulnerability
Ubuntu published security notice USN-8515-1 to address a denial of service flaw discovered in the ruby-addressable package. The bug stems from incorrect handling of specific URI templates, which generates regular expressions prone to catastrophic backtracking when processing malicious input. Systems running Ubuntu versions from 16.04 LTS through 26.04 LTS all require immediate package updates to prevent resource exhaustion attacks.
[USN-8515-1] Addressable vulnerability
[USN-8515-1] Addressable vulnerability
Ubuntu issued fourteen security notices, targeting critical flaws across Ubuntu 14.04 LTS through 26.04 LTS. The patches repair dangerous bugs in the Raspberry Pi Real-time and NVIDIA Linux kernels, alongside vulnerabilities in Python, ncurses, tar, SOGo, Request Tracker, GnuTLS, PHP, OpenSSH, gzip, socat, and Parsl.
[USN-8492-3] Linux kernel (Raspberry Pi Real-time) vulnerabilities
[USN-8508-1] Linux kernel (NVIDIA) vulnerabilities
[USN-8507-1] Linux kernel (NVIDIA) vulnerabilities
[USN-8503-1] ncurses vulnerability
[USN-8510-1] tar vulnerability
[USN-8509-1] Python vulnerabilities
[USN-8504-1] SOGo vulnerabilities
[USN-8505-1] Parsl vulnerability
[USN-8506-1] Request Tracker vulnerabilities
[USN-8502-1] GnuTLS vulnerabilities
[USN-8513-1] PHP vulnerabilities
[USN-8514-1] OpenSSH vulnerability
[USN-8512-1] Gzip vulnerabilities
[USN-8511-1] socat vulnerabilities
[USN-8492-3] Linux kernel (Raspberry Pi Real-time) vulnerabilities
[USN-8508-1] Linux kernel (NVIDIA) vulnerabilities
[USN-8507-1] Linux kernel (NVIDIA) vulnerabilities
[USN-8503-1] ncurses vulnerability
[USN-8510-1] tar vulnerability
[USN-8509-1] Python vulnerabilities
[USN-8504-1] SOGo vulnerabilities
[USN-8505-1] Parsl vulnerability
[USN-8506-1] Request Tracker vulnerabilities
[USN-8502-1] GnuTLS vulnerabilities
[USN-8513-1] PHP vulnerabilities
[USN-8514-1] OpenSSH vulnerability
[USN-8512-1] Gzip vulnerabilities
[USN-8511-1] socat vulnerabilities
XanMod maintainer Alexandre Frade has released Linux 7.1.3-xanmod1 and Linux 6.18.38-xanmod1, tracking the upstream point releases dropped on July 4, 2026. Both builds inherit all upstream stability and security patches while adding XanMod's performance enhancements, including LLVM ThinLTO compilation, sched_ext support, and Google's multigenerational LRU framework. The update offers users the choice between the mainline 7.1.x series or the 6.18 LTS branch, the latter of which features a dedicated real-time build for latency-sensitive workloads and is available via the official APT repository for Debian-based distributions. Third-party optimizations such as AMD's 3D V-Cache driver, Cloudflare's TCP collapse, and BBRv3 congestion control round out the release, alongside targeted fixes for ksmbd, apparmor, and various WiFi drivers.
Canonical's Snap Store will undergo scheduled database maintenance from 22:00 UTC on Saturday, July 5, to 02:00 UTC on Sunday, July 6, 2026. During this four-hour window, users cannot install new snaps or update existing ones as api.snapcraft.io will reject all requests. Applications already installed on your system will continue to function normally, though any pending updates will stall until the service resumes. No user action is required; services will automatically resume after the maintenance closes, so you should complete any critical updates before the 22:00 UTC start.
Ubuntu released USN-8467-2 to patch two security flaws in Perl 5.40 for Ubuntu 25.10, addressing an Archive::Tar symlink handling bug and a 32-bit regex compilation memory overflow. USN-8496-2 rolls back a previous cifs-utils security patch across Ubuntu 22.04 LTS, 24.04 LTS, 25.10, and 26.04 LTS after the original fix broke Kerberos-based network mounts. The initial update corrected a privilege escalation flaw that allowed local attackers to run code as root by mishandling user lookups before dropping administrative access.
[USN-8467-2] Perl vulnerabilities
[USN-8496-2] cifs-utils regression
[USN-8467-2] Perl vulnerabilities
[USN-8496-2] cifs-utils regression
Liquorix Linux Kernel 7.0-18 has been released, featuring a targeted fix for a use-after-free bug in the Project-C scheduler's active balance task. Built on top of Linux 7.0.14, the update continues to prioritize low-latency performance for gaming and A/V workloads. Debian and Ubuntu users can install the latest build via the official install script or PPA, while Arch Linux users can grab the linux-lqx package from the AUR. Maintainer Steven Barrett continues to deliver regular patches to keep the custom scheduler stable for high-interactivity desktop environments.
Ubuntu published a batch of security notices, delivering vulnerability fixes for nghttp2, LibVNCServer, cifs-utils, Vim, nginx, and multiple Linux kernel builds. These patches close flaws that could enable HTTP request smuggling, trigger denial of service attacks, escalate local privileges, or bypass file system permissions. The updates cover Ubuntu distributions from 14.04 LTS through 26.04 LTS, including specialized kernels for Raspberry Pi, Xilinx, NVIDIA Tegra, low latency workloads, and major cloud infrastructure platforms.
[USN-8495-1] nghttp2 vulnerability
[USN-8494-1] LibVNCServer vulnerability
[USN-8488-2] Linux kernel (Raspberry Pi) vulnerabilities
[USN-8501-1] Linux kernel vulnerabilities
[USN-8493-2] Linux kernel (Oracle) vulnerabilities
[USN-8499-1] Linux kernel (Xilinx) vulnerabilities
[USN-8498-1] Linux kernel (NVIDIA Tegra) vulnerabilities
[USN-8497-1] Linux kernel (Low Latency) vulnerabilities
[USN-8492-2] Linux kernel vulnerabilities
[USN-8496-1] cifs-utils vulnerability
[USN-8500-1] Vim vulnerabilities
[USN-8398-4] nginx vulnerability
[USN-8495-1] nghttp2 vulnerability
[USN-8494-1] LibVNCServer vulnerability
[USN-8488-2] Linux kernel (Raspberry Pi) vulnerabilities
[USN-8501-1] Linux kernel vulnerabilities
[USN-8493-2] Linux kernel (Oracle) vulnerabilities
[USN-8499-1] Linux kernel (Xilinx) vulnerabilities
[USN-8498-1] Linux kernel (NVIDIA Tegra) vulnerabilities
[USN-8497-1] Linux kernel (Low Latency) vulnerabilities
[USN-8492-2] Linux kernel vulnerabilities
[USN-8496-1] cifs-utils vulnerability
[USN-8500-1] Vim vulnerabilities
[USN-8398-4] nginx vulnerability