[USN-7714-1] Open VM Tools vulnerabilities
A security notice was issued for Ubuntu 14.04 LTS due to vulnerabilities found in Open VM Tools. Two issues were discovered: one where a local attacker could hijack /dev/uinput and simulate user inputs (CVE-2023-34059), and another where an attacker could setup a symlink attack to override files without authorization (CVE-2014-4199).
[USN-7714-1] Open VM Tools vulnerabilities
[USN-7714-1] Open VM Tools vulnerabilities
Ubuntu has issued two security updates: USN-7713-1 addressing vulnerabilities in OpenLDAP and USN-7710-2 resolving a vulnerability in Python 2.7. The OpenLDAP update affects Ubuntu 14.04 LTS, while the Python update affects Ubuntu versions 16.04 LTS, 18.04 LTS, 20.04 LTS, and 22.04 LTS. The resolved issues encompass the incorrect parsing of X.509 DNs by OpenLDAP, which had the potential to lead to a denial of service (CVE-2020-36229, CVE-2020-36230), as well as the inefficient parsing of maliciously crafted HTML input and Tar archives by Python (CVE-2025-6069, CVE-2025-8194).
[USN-7713-1] OpenLDAP vulnerabilities
[USN-7710-2] Python 2.7 vulnerability
[USN-7713-1] OpenLDAP vulnerabilities
[USN-7710-2] Python 2.7 vulnerability
Liquorix is a kernel replacement designed for desktop, multimedia, and gaming workloads, built with optimized configurations and sources for improved performance, and has been updated to the latest Linux kernel, 6.16.4. It features various tuning options and settings, including Zen Interactive Tuning, PDS/BMQ CPU Scheduler, High Resolution Scheduling, and Compressed Swap, among others. The Liquorix kernel is available for installation on Debian, Ubuntu, and Arch Linux systems through a simple install script or binary builds from the project's GitHub repository.
Multiple Ubuntu Security Notices (USN) have been issued, addressing various vulnerabilities in the Linux kernel affecting different Ubuntu releases. These vulnerabilities were found in various subsystems such as the NTFS3 file system, network traffic control, overlay file system, and more, and could be exploited by an attacker to compromise the system (CVE numbers mentioned include CVE-2024-27407, CVE-2025-37752, and others). The affected Ubuntu releases include 16.04 LTS, 14.04 LTS, 22.04 LTS, 20.04 LTS, 18.04 LTS, and 24.04 LTS. Additionally, a vulnerability was found in the UDisks service that could cause it to crash or run arbitrary code if it received specially crafted input.
[USN-7726-2] Linux kernel (Real-time) vulnerabilities
[USN-7704-5] Linux kernel vulnerabilities
[USN-7703-4] Linux kernel vulnerabilities
[USN-7724-1] Linux kernel (OEM) vulnerabilities
[USN-7722-1] Linux kernel vulnerability
[USN-7721-1] Linux kernel (Azure) vulnerabilities
[USN-7725-1] Linux kernel vulnerabilities
[USN-7725-2] Linux kernel (Real-time) vulnerabilities
[USN-7726-3] Linux kernel (FIPS) vulnerabilities
[USN-7727-1] Linux kernel vulnerabilities
[USN-7727-2] Linux kernel (FIPS) vulnerabilities
[USN-7726-1] Linux kernel vulnerabilities
[USN-7723-1] UDisks vulnerability
[USN-7726-2] Linux kernel (Real-time) vulnerabilities
[USN-7704-5] Linux kernel vulnerabilities
[USN-7703-4] Linux kernel vulnerabilities
[USN-7724-1] Linux kernel (OEM) vulnerabilities
[USN-7722-1] Linux kernel vulnerability
[USN-7721-1] Linux kernel (Azure) vulnerabilities
[USN-7725-1] Linux kernel vulnerabilities
[USN-7725-2] Linux kernel (Real-time) vulnerabilities
[USN-7726-3] Linux kernel (FIPS) vulnerabilities
[USN-7727-1] Linux kernel vulnerabilities
[USN-7727-2] Linux kernel (FIPS) vulnerabilities
[USN-7726-1] Linux kernel vulnerabilities
[USN-7723-1] UDisks vulnerability
A security issue affects Ubuntu 14.04 LTS due to several vulnerabilities in the Linux kernel. The issues include a use-after-free vulnerability caused by a race condition in the Unix domain socket, as well as flaws in the HID and media drivers subsystems (CVE-2021-0920, CVE-2024-50302, CVE-2024-53104).
[USN-7720-1] Linux kernel vulnerabilities
[USN-7720-1] Linux kernel vulnerabilities
Ubuntu Security Notices have been issued to address vulnerabilities in various packages, including Linux kernel (Raspberry Pi Real-time), GNU binutils, GStreamer Base Plugins, and GStreamer Good Plugins. The vulnerabilities affect multiple Ubuntu releases, including Ubuntu 24.04 LTS, Ubuntu 25.04, and Ubuntu 22.04 LTS. Updates are available to fix the issues, and users are advised to update their systems with the latest package versions.
[USN-7719-1] Linux kernel (Raspberry Pi Real-time) vulnerabilities
[USN-7718-1] GNU binutils vulnerability
[USN-7716-1] GStreamer Base Plugins vulnerabilities
[USN-7717-1] GStreamer Good Plugins vulnerabilities
[USN-7719-1] Linux kernel (Raspberry Pi Real-time) vulnerabilities
[USN-7718-1] GNU binutils vulnerability
[USN-7716-1] GStreamer Base Plugins vulnerabilities
[USN-7717-1] GStreamer Good Plugins vulnerabilities
A security issue has been discovered in the nginx web server, affecting Ubuntu 25.04, 24.04 LTS, and 22.04 LTS releases. Due to incorrect memory handling by the ngx_mail_smtp_module module, the vulnerability enables the transmission of sensitive information over the network during SMTP authentication.
[USN-7715-1] nginx vulnerability
[USN-7715-1] nginx vulnerability
Liquorix Kernel 6.16-2, a custom kernel replacement designed for desktop, multimedia, and gaming workloads, featuring several major optimizations and tweaks compared to standard kernel configurations, has been released based on the latest Linux Kernel 6.16.3. Some important features are Zen Interactive Tuning, Budget Fair Queue, Hard Kernel Preemption, and TCP BBR2 Congestion Control, which are designed to make the system respond faster and work better in different situations. The Liquorix kernel is available for installation on Debian, Ubuntu, and Arch Linux systems through a simple install script or binary builds from the project's GitHub repository.
Steven Barrett has announced the release of the first Liquorix Linux kernel based on the Linux kernel 6.16 series. The Liquorix Linux kernel is an enthusiast Linux kernel that is optimized for low-latency computing in audiovisual production, reduced frame time variations in games, and unparalleled responsiveness in interactive systems. It is available for Debian, Ubuntu, and Arch Linux.
Ubuntu Linux has received updates focused on security enhancements, addressing vulnerabilities in PHP and the Linux kernel:
[USN-7648-2] PHP vulnerabilities
[USN-7711-1] Linux kernel (Azure) vulnerabilities
[USN-7712-1] Linux kernel (Azure FIPS) vulnerabilities
[USN-7648-2] PHP vulnerabilities
[USN-7711-1] Linux kernel (Azure) vulnerabilities
[USN-7712-1] Linux kernel (Azure FIPS) vulnerabilities
Steven Barrett has released a new Liquorix kernel derived from Linux kernel 6.15.11. The Liquorix Linux kernel is an enthusiast Linux kernel that is optimized for low-latency computing in audiovisual production, reduced frame time variations in games, and unparalleled responsiveness in interactive systems. It is available for Debian, Ubuntu, and Arch Linux.
Ubuntu Linux has received security updates that address various vulnerabilities, including those related to the Linux kernel, Poppler, Python, and WEBrick:
[USN-7701-3] Linux kernel (IoT) vulnerabilities
[USN-7708-1] poppler vulnerability
[USN-7710-1] Python vulnerabilities
[USN-7703-3] Linux kernel (Oracle) vulnerabilities
[USN-7704-4] Linux kernel (NVIDIA) vulnerabilities
[USN-7709-1] WEBrick vulnerability
[USN-7701-3] Linux kernel (IoT) vulnerabilities
[USN-7708-1] poppler vulnerability
[USN-7710-1] Python vulnerabilities
[USN-7703-3] Linux kernel (Oracle) vulnerabilities
[USN-7704-4] Linux kernel (NVIDIA) vulnerabilities
[USN-7709-1] WEBrick vulnerability
Ubuntu Linux has received several security updates, including Tomcat, libssh, Apache HTTP Server, libxml2, Kernel, GCC, Ceph, and LibTIFF:
[USN-7705-1] Tomcat vulnerabilities
[USN-7696-1] libssh vulnerabilities
[USN-7639-2] Apache HTTP Server vulnerabilities
[USN-7694-1] libxml2 vulnerabilities
[USN-7701-2] Linux kernel (FIPS) vulnerabilities
[USN-7682-6] Linux kernel (IBM) vulnerabilities
[USN-7700-1] GCC vulnerability
[USN-7706-1] Ceph vulnerabilities
[USN-7707-1] LibTIFF vulnerabilities
[USN-7699-2] Linux kernel (HWE) vulnerabilities
[USN-7704-3] Linux kernel vulnerabilities
[USN-7703-2] Linux kernel vulnerabilities
[USN-7705-1] Tomcat vulnerabilities
[USN-7696-1] libssh vulnerabilities
[USN-7639-2] Apache HTTP Server vulnerabilities
[USN-7694-1] libxml2 vulnerabilities
[USN-7701-2] Linux kernel (FIPS) vulnerabilities
[USN-7682-6] Linux kernel (IBM) vulnerabilities
[USN-7700-1] GCC vulnerability
[USN-7706-1] Ceph vulnerabilities
[USN-7707-1] LibTIFF vulnerabilities
[USN-7699-2] Linux kernel (HWE) vulnerabilities
[USN-7704-3] Linux kernel vulnerabilities
[USN-7703-2] Linux kernel vulnerabilities
Ubuntu Linux has received new security updates, including fixes for WebKitGTK and various Linux kernel updates:
[USN-7702-1] WebKitGTK vulnerabilities
[USN-7701-1] Linux kernel vulnerabilities
[USN-7704-1] Linux kernel vulnerabilities
[USN-7704-2] Linux kernel (FIPS) vulnerabilities
[USN-7703-1] Linux kernel vulnerabilities
[USN-7702-1] WebKitGTK vulnerabilities
[USN-7701-1] Linux kernel vulnerabilities
[USN-7704-1] Linux kernel vulnerabilities
[USN-7704-2] Linux kernel (FIPS) vulnerabilities
[USN-7703-1] Linux kernel vulnerabilities
Ubuntu Linux has been updated with security updates, including fixes for vulnerabilities in the Linux kernel and OpenLDAP:
[LSN-0114-1] Linux kernel vulnerability
[USN-7698-1] OpenLDAP vulnerabilities
[USN-7699-1] Linux kernel vulnerabilities
[LSN-0114-1] Linux kernel vulnerability
[USN-7698-1] OpenLDAP vulnerabilities
[USN-7699-1] Linux kernel vulnerabilities
Steven Barrett has released another Liquorix kernel derived from Linux kernel 6.15.10. The Liquorix Linux kernel is an enthusiast Linux kernel that is optimized for low-latency computing in audiovisual production, reduced frame time variations in games, and unparalleled responsiveness in interactive systems. It is available for Debian, Ubuntu, and Arch Linux.
Steven Barrett has released a new Liquorix kernel derived from Linux kernel 6.15.10. The Liquorix Linux kernel is an enthusiast Linux kernel that is optimized for low-latency computing in audiovisual production, reduced frame time variations in games, and unparalleled responsiveness in interactive systems. It is available for Debian, Ubuntu, and Arch Linux.
Ubuntu Linux has been updated with security updates, including fixes for Request Tracker, Sidekiq, and AIDE vulnerabilities:
[USN-7692-1] Request Tracker vulnerabilities
[USN-7695-1] Sidekiq vulnerabilities
[USN-7697-1] AIDE vulnerabilities
[USN-7692-1] Request Tracker vulnerabilities
[USN-7695-1] Sidekiq vulnerabilities
[USN-7697-1] AIDE vulnerabilities
Ubuntu Linux has been updated with security updates, including vulnerabilities in the Linux kernel (Oracle), MySQL, qs, and Apache HTTP Server:
[USN-7685-5] Linux kernel (Oracle) vulnerabilities
[USN-7691-1] MySQL vulnerabilities
[USN-7693-1] qs vulnerability
[USN-6885-6] Apache HTTP Server regression
[USN-7685-5] Linux kernel (Oracle) vulnerabilities
[USN-7691-1] MySQL vulnerabilities
[USN-7693-1] qs vulnerability
[USN-6885-6] Apache HTTP Server regression
The following kernel updates are available for Ubuntu Linux:
[USN-7682-5] Linux kernel vulnerabilities
[USN-7681-3] Linux kernel (Oracle) vulnerability
[USN-7682-5] Linux kernel vulnerabilities
[USN-7681-3] Linux kernel (Oracle) vulnerability