Update

USN-7860-2: Linux kernel (Real-time) vulnerability

USN-7860-2: Linux kernel (Real-time) vulnerability

Publication date: 6 November 2025
Overview: The system could be made to expose sensitive information.

Packages

  • linux-realtime-6.14 - Linux kernel for Real-time systems
    -
    Details
    Jean-Claude Graf, Sandro Rüegge, Ali Hajiabadi, and Kaveh Razavi discovered
    that the Linux kernel contained insufficient branch predictor isolation
    between a guest and a userspace hypervisor for certain processors. This
    flaw is known as VMSCAPE. An attacker in a guest VM could possibly use this
    to expose sensitive information from the host OS.

Update instructions
The problem can be corrected by updating your system to the following package versions:

24.04 LTS noble

  • linux-image-6.14.0-1015-realtime – 6.14.0-1015.15~24.04.1
  • linux-image-realtime-6.14 – 6.14.0-1015.15~24.04.1
  • linux-image-realtime-hwe-24.04 – 6.14.0-1015.15~24.04.1
The manufacturer Canonical has not yet set up its devicebase profile. Content such as updates, compatibilities and support may only be maintained with a delay.
Receive Important Update Messages Stay tuned for upcoming Canonical updates

Was the content helpful to you?

Advertisement Advertise here?
Udemy IT certification ad