Security Advisory Desk
unratedQCS priority 70/100Ubuntu

USN-8729-3: Linux kernel vulnerabilities

Multiple security vulnerabilities were found in the Linux kernel, which is the core part of the operating system on many devices including those running Ubuntu. These flaws could allow an attacker to compromise the system. Updates have been issued that address issues in many parts of the kernel, such as hardware drivers, networking components, and file systems, among others.

Published 21/9/2026, 1:04:29 pmVerified 22/9/2026, 1:06:14 amRevision 1
Ubuntu unrated network security advisory visual

In plain language

What this advisory means

Multiple security vulnerabilities were found in the Linux kernel, which is the core part of the operating system on many devices including those running Ubuntu. These flaws could allow an attacker to compromise the system. Updates have been issued that address issues in many parts of the kernel, such as hardware drivers, networking components, and file systems, among others.

Technical explanation

How the issue affects the environment

The Linux kernel contained numerous security flaws affecting a wide range of subsystems including ARM32, ARM64, and PowerPC architectures; various hardware drivers (e.g., Bluetooth, GPU, network, SCSI, SPI); networking stacks (IPv4, IPv6, Multipath TCP, Netfilter); file system components (NTFS3, SMB); memory management; and security frameworks (Linux Security Modules, key management). Exploitation of these vulnerabilities could potentially allow attackers to gain unauthorized privileges, execute arbitrary code, or cause denial of service, thereby compromising overall system security. The vendor, Ubuntu, has released updated kernel packages that patch these vulnerabilities. Users should update to these versions and reboot to apply the fixes. Due to changes in the application binary interface (ABI), recompilation and reinstallation of third-party kernel modules are required for compatibility.

Operational impact

Why teams should care

Failure to update the Linux kernel leaves systems exposed to multiple vulnerabilities that attackers could exploit to gain control or disrupt services. This risk affects many core components and can undermine data confidentiality, integrity, and availability, potentially resulting in service outages, data breaches, or compromised infrastructure, especially in cloud and enterprise environments using Ubuntu.

Immediate action

Users must update their Linux kernel packages to the versions specified by Ubuntu and reboot their systems to apply the updates. Because of changes to the kernel's ABI, any third-party kernel modules must be recompiled and reinstalled to ensure compatibility after the upgrade.

Affected and fixed releases

Affected versionsUbuntu 22.04 LTS kernel prior to 6.8.0-1067.75~22.04.1, Ubuntu 24.04 LTS kernel prior to 6.8.0-1036.37 and 6.8.0-1064.65
Fixed versionsUbuntu 22.04 LTS kernel version 6.8.0-1067.75~22.04.1 or later, Ubuntu 24.04 LTS kernel versions 6.8.0-1036.37 and 6.8.0-1064.65 or later

Temporary risk reduction

The official source does not specify any workaround besides upgrading the Linux kernel and rebooting the system. Recompilation and reinstallation of third-party kernel modules is necessary due to ABI changes.

Evidence and validation checklist

  • Official Ubuntu Security Notice USN-8729-3
  • Publication date 21 September 2026
  • List of affected subsystems and CVEs
  • Instructions to update kernel packages and reboot
  • ABI change notification requiring module recompilation

Authoritative reference

Ubuntu Security Notices

QCS detected and normalized this record from the official source. Vendor guidance remains authoritative.

Open source