{"id":"USN-7585-3","summary":"linux-azure-fips, linux-fips vulnerabilities","details":"It was discovered that the CIFS network file system implementation in the\nLinux kernel did not properly verify the target namespace when handling\nupcalls. An attacker could use this to expose sensitive information.\n(CVE-2025-2312)\n\nSeveral security issues were discovered in the Linux kernel.\nAn attacker could possibly use these to compromise the system.\nThis update corrects flaws in the following subsystems:\n  - PowerPC architecture;\n  - x86 architecture;\n  - iSCSI Boot Firmware Table Attributes driver;\n  - GPU drivers;\n  - HID subsystem;\n  - InfiniBand drivers;\n  - Media drivers;\n  - MemoryStick subsystem;\n  - Network drivers;\n  - NTB driver;\n  - PCI subsystem;\n  - SCSI subsystem;\n  - Thermal drivers;\n  - JFS file system;\n  - File systems infrastructure;\n  - Tracing infrastructure;\n  - 802.1Q VLAN protocol;\n  - Asynchronous Transfer Mode (ATM) subsystem;\n  - Bluetooth subsystem;\n  - IPv6 networking;\n  - Netfilter;\n  - Network traffic control;\n  - Sun RPC protocol;\n  - USB sound devices;\n(CVE-2025-22007, CVE-2025-21959, CVE-2025-22021, CVE-2025-22063,\nCVE-2025-22045, CVE-2024-58093, CVE-2022-49636, CVE-2025-22020,\nCVE-2024-53168, CVE-2025-22071, CVE-2025-39735, CVE-2025-21991,\nCVE-2025-21992, CVE-2025-21996, CVE-2025-22035, CVE-2023-53034,\nCVE-2025-22054, CVE-2025-23136, CVE-2025-22073, CVE-2024-56551,\nCVE-2025-22005, CVE-2025-37937, CVE-2021-47211, CVE-2025-22086,\nCVE-2025-21956, CVE-2025-38637, CVE-2025-22004, CVE-2025-22018,\nCVE-2025-22079, CVE-2025-21957, CVE-2025-21993)\n","modified":"2026-04-24T10:02:22.833737Z","published":"2025-06-25T15:05:37Z","related":["UBUNTU-CVE-2021-47211","UBUNTU-CVE-2022-49636","UBUNTU-CVE-2023-53034","UBUNTU-CVE-2024-53168","UBUNTU-CVE-2024-56551","UBUNTU-CVE-2024-58093","UBUNTU-CVE-2025-21956","UBUNTU-CVE-2025-21957","UBUNTU-CVE-2025-21959","UBUNTU-CVE-2025-21991","UBUNTU-CVE-2025-21992","UBUNTU-CVE-2025-21993","UBUNTU-CVE-2025-21996","UBUNTU-CVE-2025-22004","UBUNTU-CVE-2025-22005","UBUNTU-CVE-2025-22007","UBUNTU-CVE-2025-22018","UBUNTU-CVE-2025-22020","UBUNTU-CVE-2025-22021","UBUNTU-CVE-2025-22035","UBUNTU-CVE-2025-22045","UBUNTU-CVE-2025-22054","UBUNTU-CVE-2025-22063","UBUNTU-CVE-2025-22071","UBUNTU-CVE-2025-22073","UBUNTU-CVE-2025-22079","UBUNTU-CVE-2025-22086","UBUNTU-CVE-2025-2312","UBUNTU-CVE-2025-23136","UBUNTU-CVE-2025-37937","UBUNTU-CVE-2025-38637","UBUNTU-CVE-2025-39735"],"upstream":["CVE-2021-47211","CVE-2022-49636","CVE-2023-53034","CVE-2024-53168","CVE-2024-56551","CVE-2024-58093","CVE-2025-21956","CVE-2025-21957","CVE-2025-21959","CVE-2025-21991","CVE-2025-21992","CVE-2025-21993","CVE-2025-21996","CVE-2025-22004","CVE-2025-22005","CVE-2025-22007","CVE-2025-22018","CVE-2025-22020","CVE-2025-22021","CVE-2025-22035","CVE-2025-22045","CVE-2025-22054","CVE-2025-22063","CVE-2025-22071","CVE-2025-22073","CVE-2025-22079","CVE-2025-22086","CVE-2025-2312","CVE-2025-23136","CVE-2025-37937","CVE-2025-38637","CVE-2025-39735","UBUNTU-CVE-2021-47211","UBUNTU-CVE-2022-49636","UBUNTU-CVE-2023-53034","UBUNTU-CVE-2024-53168","UBUNTU-CVE-2024-56551","UBUNTU-CVE-2024-58093","UBUNTU-CVE-2025-21956","UBUNTU-CVE-2025-21957","UBUNTU-CVE-2025-21959","UBUNTU-CVE-2025-21991","UBUNTU-CVE-2025-21992","UBUNTU-CVE-2025-21993","UBUNTU-CVE-2025-21996","UBUNTU-CVE-2025-22004","UBUNTU-CVE-2025-22005","UBUNTU-CVE-2025-22007","UBUNTU-CVE-2025-22018","UBUNTU-CVE-2025-22020","UBUNTU-CVE-2025-22021","UBUNTU-CVE-2025-22035","UBUNTU-CVE-2025-22045","UBUNTU-CVE-2025-22054","UBUNTU-CVE-2025-22063","UBUNTU-CVE-2025-22071","UBUNTU-CVE-2025-22073","UBUNTU-CVE-2025-22079","UBUNTU-CVE-2025-22086","UBUNTU-CVE-2025-2312","UBUNTU-CVE-2025-23136","UBUNTU-CVE-2025-37937","UBUNTU-CVE-2025-38637","UBUNTU-CVE-2025-39735"],"references":[{"type":"ADVISORY","url":"https://ubuntu.com/security/notices/USN-7585-3"}],"affected":[{"package":{"name":"linux-azure-fips","ecosystem":"Ubuntu:Pro:FIPS-updates:20.04:LTS","purl":"pkg:deb/ubuntu/linux-azure-fips@5.4.0-1153.160+fips1?arch=source&distro=fips-updates/focal"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"5.4.0-1153.160+fips1"}]}],"versions":["5.4.0-1022.22+fips1","5.4.0-1073.76+fips1","5.4.0-1074.77+fips1","5.4.0-1076.79+fips1","5.4.0-1078.81+fips1","5.4.0-1080.83+fips1","5.4.0-1083.87+fips1","5.4.0-1085.90+fips1","5.4.0-1086.91+fips1","5.4.0-1089.94+fips1","5.4.0-1090.95+fips1","5.4.0-1091.96+fips1","5.4.0-1094.100+fips1","5.4.0-1095.101+fips1","5.4.0-1098.104+fips1","5.4.0-1100.106+fips1","5.4.0-1101.107+fips1","5.4.0-1103.109+fips1","5.4.0-1104.110+fips1","5.4.0-1105.111+fips1","5.4.0-1106.112+fips1","5.4.0-1107.113+fips1","5.4.0-1108.114+fips1","5.4.0-1109.115+fips1","5.4.0-1110.116+fips1","5.4.0-1111.117+fips1","5.4.0-1112.118+fips1","5.4.0-1113.119+fips1","5.4.0-1114.120+fips1","5.4.0-1115.122+fips1","5.4.0-1116.123+fips1","5.4.0-1117.124+fips1","5.4.0-1118.125+fips1","5.4.0-1119.126+fips1","5.4.0-1121.128+fips1","5.4.0-1122.129+fips1","5.4.0-1123.130+fips1","5.4.0-1124.131+fips1","5.4.0-1126.133+fips1","5.4.0-1127.134+fips1","5.4.0-1128.135+fips1","5.4.0-1129.136+fips1","5.4.0-1130.137+fips1","5.4.0-1131.138+fips1","5.4.0-1132.139+fips1","5.4.0-1133.140+fips1","5.4.0-1134.141+fips1","5.4.0-1135.142+fips1","5.4.0-1136.143+fips1","5.4.0-1137.144+fips1","5.4.0-1138.145+fips1","5.4.0-1139.146+fips1","5.4.0-1140.147+fips1","5.4.0-1142.149+fips1","5.4.0-1143.150+fips1","5.4.0-1145.152+fips1","5.4.0-1147.154+fips1","5.4.0-1148.156+fips1","5.4.0-1149.157+fips1","5.4.0-1151.158+fips1","5.4.0-1152.159+fips1"],"ecosystem_specific":{"binaries":[{"binary_version":"5.4.0-1153.160+fips1","binary_name":"linux-azure-fips-cloud-tools-5.4.0-1153"},{"binary_version":"5.4.0-1153.160+fips1","binary_name":"linux-azure-fips-headers-5.4.0-1153"},{"binary_version":"5.4.0-1153.160+fips1","binary_name":"linux-azure-fips-tools-5.4.0-1153"},{"binary_version":"5.4.0-1153.160+fips1","binary_name":"linux-buildinfo-5.4.0-1153-azure-fips"},{"binary_version":"5.4.0-1153.160+fips1","binary_name":"linux-cloud-tools-5.4.0-1153-azure-fips"},{"binary_version":"5.4.0-1153.160+fips1","binary_name":"linux-headers-5.4.0-1153-azure-fips"},{"binary_version":"5.4.0-1153.160+fips1","binary_name":"linux-image-unsigned-5.4.0-1153-azure-fips"},{"binary_version":"5.4.0-1153.160+fips1","binary_name":"linux-image-unsigned-hmac-5.4.0-1153-azure-fips"},{"binary_version":"5.4.0-1153.160+fips1","binary_name":"linux-modules-5.4.0-1153-azure-fips"},{"binary_version":"5.4.0-1153.160+fips1","binary_name":"linux-modules-extra-5.4.0-1153-azure-fips"},{"binary_version":"5.4.0-1153.160+fips1","binary_name":"linux-tools-5.4.0-1153-azure-fips"}],"availability":"Available with Ubuntu Pro: https://ubuntu.com/pro"},"database_specific":{"cves_map":{"cves":[],"ecosystem":"Ubuntu:Pro:FIPS-updates:20.04:LTS"},"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/usn/USN-7585-3.json"}},{"package":{"name":"linux-fips","ecosystem":"Ubuntu:Pro:FIPS-updates:20.04:LTS","purl":"pkg:deb/ubuntu/linux-fips@5.4.0-1121.131?arch=source&distro=fips-updates/focal"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"5.4.0-1121.131"}]}],"versions":["5.4.0-1026.30","5.4.0-1028.32","5.4.0-1031.36","5.4.0-1032.37","5.4.0-1033.38","5.4.0-1034.40","5.4.0-1035.41","5.4.0-1036.42","5.4.0-1037.43","5.4.0-1038.44","5.4.0-1040.46","5.4.0-1041.47","5.4.0-1042.48","5.4.0-1043.49","5.4.0-1045.51","5.4.0-1046.52","5.4.0-1047.53","5.4.0-1048.54","5.4.0-1049.55","5.4.0-1051.57","5.4.0-1054.61","5.4.0-1056.64","5.4.0-1057.65","5.4.0-1059.67","5.4.0-1060.68","5.4.0-1061.69","5.4.0-1062.70","5.4.0-1064.73","5.4.0-1065.74","5.4.0-1068.77","5.4.0-1069.78","5.4.0-1070.79","5.4.0-1072.81","5.4.0-1073.82","5.4.0-1074.83","5.4.0-1075.84","5.4.0-1076.85","5.4.0-1077.86","5.4.0-1078.87","5.4.0-1079.88","5.4.0-1080.89","5.4.0-1081.90","5.4.0-1082.91","5.4.0-1083.92","5.4.0-1084.93","5.4.0-1085.94","5.4.0-1086.95","5.4.0-1087.96","5.4.0-1088.97","5.4.0-1089.98","5.4.0-1090.100","5.4.0-1091.101","5.4.0-1092.102","5.4.0-1094.104","5.4.0-1095.105","5.4.0-1096.106","5.4.0-1097.107","5.4.0-1098.108","5.4.0-1099.109","5.4.0-1100.110","5.4.0-1101.111","5.4.0-1102.112","5.4.0-1103.113","5.4.0-1104.114","5.4.0-1105.115","5.4.0-1106.116","5.4.0-1107.117","5.4.0-1108.118","5.4.0-1109.119","5.4.0-1110.120","5.4.0-1111.121","5.4.0-1112.122","5.4.0-1116.126","5.4.0-1117.127","5.4.0-1118.128","5.4.0-1119.129","5.4.0-1120.130"],"ecosystem_specific":{"binaries":[{"binary_version":"5.4.0-1121.131","binary_name":"linux-buildinfo-5.4.0-1121-fips"},{"binary_version":"5.4.0-1121.131","binary_name":"linux-fips-headers-5.4.0-1121"},{"binary_version":"5.4.0-1121.131","binary_name":"linux-fips-tools-5.4.0-1121"},{"binary_version":"5.4.0-1121.131","binary_name":"linux-fips-tools-host"},{"binary_version":"5.4.0-1121.131","binary_name":"linux-headers-5.4.0-1121-fips"},{"binary_version":"5.4.0-1121.131","binary_name":"linux-image-unsigned-5.4.0-1121-fips"},{"binary_version":"5.4.0-1121.131","binary_name":"linux-image-unsigned-hmac-5.4.0-1121-fips"},{"binary_version":"5.4.0-1121.131","binary_name":"linux-modules-5.4.0-1121-fips"},{"binary_version":"5.4.0-1121.131","binary_name":"linux-modules-extra-5.4.0-1121-fips"},{"binary_version":"5.4.0-1121.131","binary_name":"linux-tools-5.4.0-1121-fips"}],"availability":"Available with Ubuntu Pro: https://ubuntu.com/pro"},"database_specific":{"cves_map":{"cves":[],"ecosystem":"Ubuntu:Pro:FIPS-updates:20.04:LTS"},"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/usn/USN-7585-3.json"}}],"schema_version":"1.7.5"}