Security Advisory Desk
unratedQCS priority 70/100Ubuntu

USN-8793-1: Linux kernel (Azure CVM) vulnerabilities

Several security flaws were found in the Linux kernel used by Ubuntu systems on Microsoft Azure cloud virtual machines. These issues affect various parts of the kernel like Bluetooth, graphics, hardware monitoring, file systems, and network components. A malicious user could exploit these flaws to take control of or damage the system. Updating to the fixed Linux kernel versions is necessary to protect your system.

Published 21/9/2026, 1:05:01 pmVerified 21/9/2026, 7:09:04 pmRevision 1
Ubuntu unrated network security advisory visual

In plain language

What this advisory means

Several security flaws were found in the Linux kernel used by Ubuntu systems on Microsoft Azure cloud virtual machines. These issues affect various parts of the kernel like Bluetooth, graphics, hardware monitoring, file systems, and network components. A malicious user could exploit these flaws to take control of or damage the system. Updating to the fixed Linux kernel versions is necessary to protect your system.

Technical explanation

How the issue affects the environment

Multiple vulnerabilities in the Linux kernel subsystems—including Bluetooth drivers, GPU drivers, hardware monitoring drivers, SPI subsystem, NTFS3 file system, io_uring subsystem, Ethernet bridge, and Multipath TCP—were identified in the Ubuntu linux-azure-fde package. Exploiting these kernel flaws could allow attackers to escalate privileges, cause denial of service, or execute arbitrary code leading to system compromise. The update addresses these CVEs by patching the affected kernel modules. Notably, an ABI change requires recompiling and reinstalling third-party kernel modules after upgrade. A system reboot is required to apply these kernel updates properly.

Operational impact

Why teams should care

If exploited, these vulnerabilities could result in unauthorized control over critical systems in cloud environments, leading to data breaches, service disruption, or resource misuse. Organizations relying on Ubuntu Linux kernels in Azure cloud virtual machines may face increased risk of compromise until the updated kernel is deployed and the system rebooted. This can affect confidence in cloud infrastructure security and cause operational downtime during remediation.

Immediate action

Update your Ubuntu system packages to the fixed linux-azure-fde kernel versions listed above. After updating, you must reboot your system to apply changes. Due to an ABI change, recompile and reinstall all third-party kernel modules to maintain compatibility.

Affected and fixed releases

Affected versionsConfirm in the official vendor advisory
Fixed versionslinux-image-6.8.0-1065-azure-fde 6.8.0-1065.72, linux-image-azure-fde-6.8 6.8.0-1065.72, linux-image-azure-fde-lts-24.04 6.8.0-1065.72

Temporary risk reduction

The official source does not specify any workaround. Immediate system update and reboot are recommended.

Evidence and validation checklist

  • Ubuntu Security Notice USN-8793-1
  • Description of kernel subsystems affected and CVEs
  • Update instructions including reboot and module recompilation
  • Package version numbers for fixed kernels

Authoritative reference

Ubuntu Security Notices

QCS detected and normalized this record from the official source. Vendor guidance remains authoritative.

Open source