In plain language
What this advisory means
Several vulnerabilities were found in the Linux kernel used in Ubuntu, including a WiFi issue that could let nearby attackers inject data packets. Other weaknesses affect different parts of the system, potentially allowing attackers to compromise it. These problems have been fixed in a new software update. Users should update and restart their systems to stay protected.
Technical explanation
How the issue affects the environment
Security researchers discovered that the Linux kernel's WiFi implementation mishandled aggregated frames in mesh networks due to an incorrect prior fix for CVE-2020-24588. This flaw (CVE-2025-27558) allows a physically proximate attacker to inject packets. Additional security vulnerabilities were identified in multiple subsystems: x86 architecture, InfiniBand and other network drivers, NVME drivers, Ext4 filesystem, SMB network filesystem, IPv4 and IPv6 networking stacks, network traffic control, TCP protocol, locking mechanisms, Multipath TCP, Netfilter, SCTP protocol, and SMC sockets. Exploiting these could enable attackers to compromise system integrity or availability. The update addresses all these flaws with code corrections across those components.
Operational impact
Why teams should care
These vulnerabilities present a risk of unauthorized packet injection and broader system compromises, which could lead to data breaches, service interruptions, or system control loss. Organizations running affected Ubuntu Linux systems, especially in networking and cloud environments, should apply the updates promptly to mitigate potential attacks and avoid operational disruptions.
Immediate action
Update the Linux kernel packages to the versions released for Ubuntu 22.04 LTS: linux-image-5.15.0-1110-oracle version 5.15.0-1110.116, linux-image-oracle-5.15 version 5.15.0.1110.106, and linux-image-oracle-lts-22.04 version 5.15.0.1110.106. After installing these updates, reboot the system to apply all changes. Due to an application binary interface (ABI) change, recompile and reinstall all third-party kernel modules.
Affected and fixed releases
Temporary risk reduction
No separate workaround was supplied in the source feed. Use the official vendor advisory before changing production controls.
Evidence and validation checklist
- Discovery by security researchers Siebe Devroe, Héloïse Gollier, and Mathy Vanhoef regarding WiFi frame handling (CVE-2025-27558).
- Multiple Linux kernel subsystems with fixed security issues listed.
- Update instructions recommending kernel package upgrades and reboot.
- Note on ABI change requiring kernel module recompilation.
- Advisory published by Ubuntu Security Notices, reference USN-8631-2.
Authoritative reference
Ubuntu Security Notices
QCS detected and normalized this record from the official source. Vendor guidance remains authoritative.
