linux-raspi vulnerabilities
Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - ARM64 architecture; - Block layer subsystem; - Cryptographic API; - DMA engine subsystem; - InfiniBand drivers; - STMicroelectronics network drivers; - Network drivers; - NVME drivers; - SCSI subsystem; - USB over IP driver; - File systems infrastructure; - Ext4 file system; - Network file system (NFS) server daemon; - SMB network file system; - Kernel thread helper (kthread); - IPv6 networking; - Tracing infrastructure; - Kernel exit() syscall; - Scatterlist API; - B.A.T.M.A.N. meshing protocol; - Ethernet bridge; - Ceph Core library; - IPv4 networking; - Multipath TCP; - Netfilter; - RxRPC session sockets; - SMC sockets; - X.25 network layer; (CVE-2026-22984, CVE-2026-23272, CVE-2026-23278, CVE-2026-23392, CVE-2026-23427, CVE-2026-23428, CVE-2026-23450, CVE-2026-23455, CVE-2026-31402, CVE-2026-31418, CVE-2026-31436, CVE-2026-31448, CVE-2026-31478, CVE-2026-31607, CVE-2026-31635, CVE-2026-31637, CVE-2026-31649, CVE-2026-31657, CVE-2026-31659, CVE-2026-31668, CVE-2026-31669, CVE-2026-31682, CVE-2026-31685, CVE-2026-31718, CVE-2026-43011, CVE-2026-43037, CVE-2026-43038, CVE-2026-43071, CVE-2026-43083, CVE-2026-43114, CVE-2026-43117, CVE-2026-43125, CVE-2026-43185, CVE-2026-43186, CVE-2026-43197, CVE-2026-43304, CVE-2026-43341, CVE-2026-43376, CVE-2026-43378, CVE-2026-43383, CVE-2026-43384, CVE-2026-43402, CVE-2026-43406, CVE-2026-43407, CVE-2026-43414, CVE-2026-43493, CVE-2026-43501, CVE-2026-45898, CVE-2026-45988, CVE-2026-46039, CVE-2026-46043, CVE-2026-46115, CVE-2026-46119, CVE-2026-46135, CVE-2026-46185, CVE-2026-46195, CVE-2026-46243, CVE-2026-46244, CVE-2026-46266, CVE-2026-46289, CVE-2026-46316, CVE-2026-46325)
AI Analysis
Technical Summary
This advisory covers numerous security vulnerabilities in the linux-raspi kernel affecting a wide array of subsystems such as ARM64 architecture, block layer, cryptographic API, DMA engine, various network drivers, file systems including Ext4 and SMB, kernel thread helpers, IPv4 and IPv6 networking, and others. The vulnerabilities are identified by multiple CVEs (e.g., CVE-2026-22984 through CVE-2026-46325) and are collectively addressed in the USN-8546-1 update. The affected versions include specific kernel builds prior to 6.17.0-1021.21 and several exact versions within the 6.14.0 and 6.17.0 series. No CVSS scores are provided. The advisory indicates that these vulnerabilities could be exploited to compromise the system but does not detail exploitation techniques or impacts per CVE.
Potential Impact
The vulnerabilities affect critical kernel subsystems that could allow an attacker to compromise system integrity or confidentiality. The broad range of affected components suggests potential for privilege escalation, denial of service, or information disclosure, depending on the specific flaw. However, no known exploits in the wild are reported at this time.
Mitigation Recommendations
A security update identified as USN-8546-1 has been released to correct these vulnerabilities. Users should apply this official update to linux-raspi kernel versions to remediate the issues. Patch status is confirmed by the advisory. No additional mitigation steps are indicated beyond applying the update.
linux-raspi vulnerabilities
Description
Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - ARM64 architecture; - Block layer subsystem; - Cryptographic API; - DMA engine subsystem; - InfiniBand drivers; - STMicroelectronics network drivers; - Network drivers; - NVME drivers; - SCSI subsystem; - USB over IP driver; - File systems infrastructure; - Ext4 file system; - Network file system (NFS) server daemon; - SMB network file system; - Kernel thread helper (kthread); - IPv6 networking; - Tracing infrastructure; - Kernel exit() syscall; - Scatterlist API; - B.A.T.M.A.N. meshing protocol; - Ethernet bridge; - Ceph Core library; - IPv4 networking; - Multipath TCP; - Netfilter; - RxRPC session sockets; - SMC sockets; - X.25 network layer; (CVE-2026-22984, CVE-2026-23272, CVE-2026-23278, CVE-2026-23392, CVE-2026-23427, CVE-2026-23428, CVE-2026-23450, CVE-2026-23455, CVE-2026-31402, CVE-2026-31418, CVE-2026-31436, CVE-2026-31448, CVE-2026-31478, CVE-2026-31607, CVE-2026-31635, CVE-2026-31637, CVE-2026-31649, CVE-2026-31657, CVE-2026-31659, CVE-2026-31668, CVE-2026-31669, CVE-2026-31682, CVE-2026-31685, CVE-2026-31718, CVE-2026-43011, CVE-2026-43037, CVE-2026-43038, CVE-2026-43071, CVE-2026-43083, CVE-2026-43114, CVE-2026-43117, CVE-2026-43125, CVE-2026-43185, CVE-2026-43186, CVE-2026-43197, CVE-2026-43304, CVE-2026-43341, CVE-2026-43376, CVE-2026-43378, CVE-2026-43383, CVE-2026-43384, CVE-2026-43402, CVE-2026-43406, CVE-2026-43407, CVE-2026-43414, CVE-2026-43493, CVE-2026-43501, CVE-2026-45898, CVE-2026-45988, CVE-2026-46039, CVE-2026-46043, CVE-2026-46115, CVE-2026-46119, CVE-2026-46135, CVE-2026-46185, CVE-2026-46195, CVE-2026-46243, CVE-2026-46244, CVE-2026-46266, CVE-2026-46289, CVE-2026-46316, CVE-2026-46325)
Affected software
pkg:deb/ubuntu/[email protected]?arch=source&distro=questingRun on your own infrastructure? Check whether these packages are installed with threat-finder — our free open-source scanner.
AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
This advisory covers numerous security vulnerabilities in the linux-raspi kernel affecting a wide array of subsystems such as ARM64 architecture, block layer, cryptographic API, DMA engine, various network drivers, file systems including Ext4 and SMB, kernel thread helpers, IPv4 and IPv6 networking, and others. The vulnerabilities are identified by multiple CVEs (e.g., CVE-2026-22984 through CVE-2026-46325) and are collectively addressed in the USN-8546-1 update. The affected versions include specific kernel builds prior to 6.17.0-1021.21 and several exact versions within the 6.14.0 and 6.17.0 series. No CVSS scores are provided. The advisory indicates that these vulnerabilities could be exploited to compromise the system but does not detail exploitation techniques or impacts per CVE.
Potential Impact
The vulnerabilities affect critical kernel subsystems that could allow an attacker to compromise system integrity or confidentiality. The broad range of affected components suggests potential for privilege escalation, denial of service, or information disclosure, depending on the specific flaw. However, no known exploits in the wild are reported at this time.
Mitigation Recommendations
A security update identified as USN-8546-1 has been released to correct these vulnerabilities. Users should apply this official update to linux-raspi kernel versions to remediate the issues. Patch status is confirmed by the advisory. No additional mitigation steps are indicated beyond applying the update.
Technical Details
- Gcve Source
- db.gcve.eu
- Osv Id
- USN-8546-1
- Osv Schema Version
- 1.7.0
- Aliases
- []
- Ecosystems
- ["Ubuntu:25.10"]
- Database Specific Severity
- null
- Cvss Version
- null
Threat ID: 6a58b51168715ace43db35a7
Added to database: 07/16/2026, 10:40:17 UTC
Last enriched: 07/16/2026, 14:26:13 UTC
Last updated: 08/28/2026, 04:42:23 UTC
Views: 71
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.