{"id":"USN-7585-6","summary":"linux-bluefield vulnerabilities","details":"It was discovered that the CIFS network file system implementation in the\nLinux kernel did not properly verify the target namespace when handling\nupcalls. An attacker could use this to expose sensitive information.\n(CVE-2025-2312)\n\nSeveral security issues were discovered in the Linux kernel.\nAn attacker could possibly use these to compromise the system.\nThis update corrects flaws in the following subsystems:\n  - PowerPC architecture;\n  - x86 architecture;\n  - iSCSI Boot Firmware Table Attributes driver;\n  - GPU drivers;\n  - HID subsystem;\n  - InfiniBand drivers;\n  - Media drivers;\n  - MemoryStick subsystem;\n  - Network drivers;\n  - NTB driver;\n  - PCI subsystem;\n  - SCSI subsystem;\n  - Thermal drivers;\n  - JFS file system;\n  - File systems infrastructure;\n  - Tracing infrastructure;\n  - 802.1Q VLAN protocol;\n  - Asynchronous Transfer Mode (ATM) subsystem;\n  - Bluetooth subsystem;\n  - IPv6 networking;\n  - Netfilter;\n  - Network traffic control;\n  - Sun RPC protocol;\n  - USB sound devices;\n(CVE-2025-22007, CVE-2025-21959, CVE-2025-22021, CVE-2025-22063,\nCVE-2025-22045, CVE-2024-58093, CVE-2022-49636, CVE-2025-22020,\nCVE-2024-53168, CVE-2025-22071, CVE-2025-39735, CVE-2025-21991,\nCVE-2025-21992, CVE-2025-21996, CVE-2025-22035, CVE-2023-53034,\nCVE-2025-22054, CVE-2025-23136, CVE-2025-22073, CVE-2024-56551,\nCVE-2025-22005, CVE-2025-37937, CVE-2021-47211, CVE-2025-22086,\nCVE-2025-21956, CVE-2025-38637, CVE-2025-22004, CVE-2025-22018,\nCVE-2025-22079, CVE-2025-21957, CVE-2025-21993)\n","modified":"2026-02-10T04:49:02Z","published":"2025-07-03T18:03:47Z","related":["UBUNTU-CVE-2021-47211","UBUNTU-CVE-2022-49636","UBUNTU-CVE-2023-53034","UBUNTU-CVE-2024-53168","UBUNTU-CVE-2024-56551","UBUNTU-CVE-2024-58093","UBUNTU-CVE-2025-21956","UBUNTU-CVE-2025-21957","UBUNTU-CVE-2025-21959","UBUNTU-CVE-2025-21991","UBUNTU-CVE-2025-21992","UBUNTU-CVE-2025-21993","UBUNTU-CVE-2025-21996","UBUNTU-CVE-2025-22004","UBUNTU-CVE-2025-22005","UBUNTU-CVE-2025-22007","UBUNTU-CVE-2025-22018","UBUNTU-CVE-2025-22020","UBUNTU-CVE-2025-22021","UBUNTU-CVE-2025-22035","UBUNTU-CVE-2025-22045","UBUNTU-CVE-2025-22054","UBUNTU-CVE-2025-22063","UBUNTU-CVE-2025-22071","UBUNTU-CVE-2025-22073","UBUNTU-CVE-2025-22079","UBUNTU-CVE-2025-22086","UBUNTU-CVE-2025-2312","UBUNTU-CVE-2025-23136","UBUNTU-CVE-2025-37937","UBUNTU-CVE-2025-38637","UBUNTU-CVE-2025-39735"],"upstream":["CVE-2021-47211","CVE-2022-49636","CVE-2023-53034","CVE-2024-53168","CVE-2024-56551","CVE-2024-58093","CVE-2025-21956","CVE-2025-21957","CVE-2025-21959","CVE-2025-21991","CVE-2025-21992","CVE-2025-21993","CVE-2025-21996","CVE-2025-22004","CVE-2025-22005","CVE-2025-22007","CVE-2025-22018","CVE-2025-22020","CVE-2025-22021","CVE-2025-22035","CVE-2025-22045","CVE-2025-22054","CVE-2025-22063","CVE-2025-22071","CVE-2025-22073","CVE-2025-22079","CVE-2025-22086","CVE-2025-2312","CVE-2025-23136","CVE-2025-37937","CVE-2025-38637","CVE-2025-39735","UBUNTU-CVE-2021-47211","UBUNTU-CVE-2022-49636","UBUNTU-CVE-2023-53034","UBUNTU-CVE-2024-53168","UBUNTU-CVE-2024-56551","UBUNTU-CVE-2024-58093","UBUNTU-CVE-2025-21956","UBUNTU-CVE-2025-21957","UBUNTU-CVE-2025-21959","UBUNTU-CVE-2025-21991","UBUNTU-CVE-2025-21992","UBUNTU-CVE-2025-21993","UBUNTU-CVE-2025-21996","UBUNTU-CVE-2025-22004","UBUNTU-CVE-2025-22005","UBUNTU-CVE-2025-22007","UBUNTU-CVE-2025-22018","UBUNTU-CVE-2025-22020","UBUNTU-CVE-2025-22021","UBUNTU-CVE-2025-22035","UBUNTU-CVE-2025-22045","UBUNTU-CVE-2025-22054","UBUNTU-CVE-2025-22063","UBUNTU-CVE-2025-22071","UBUNTU-CVE-2025-22073","UBUNTU-CVE-2025-22079","UBUNTU-CVE-2025-22086","UBUNTU-CVE-2025-2312","UBUNTU-CVE-2025-23136","UBUNTU-CVE-2025-37937","UBUNTU-CVE-2025-38637","UBUNTU-CVE-2025-39735"],"references":[{"type":"ADVISORY","url":"https://ubuntu.com/security/notices/USN-7585-6"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2021-47211"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2022-49636"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2023-53034"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2024-53168"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2024-56551"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2024-58093"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2025-2312"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2025-21956"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2025-21957"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2025-21959"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2025-21991"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2025-21992"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2025-21993"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2025-21996"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2025-22004"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2025-22005"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2025-22007"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2025-22018"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2025-22020"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2025-22021"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2025-22035"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2025-22045"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2025-22054"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2025-22063"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2025-22071"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2025-22073"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2025-22079"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2025-22086"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2025-23136"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2025-37937"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2025-38637"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2025-39735"}],"affected":[{"package":{"name":"linux-bluefield","ecosystem":"Ubuntu:Pro:20.04:LTS","purl":"pkg:deb/ubuntu/linux-bluefield@5.4.0-1106.113?arch=source&distro=esm-infra/focal"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"5.4.0-1106.113"}]}],"versions":["5.4.0-1007.10","5.4.0-1011.14","5.4.0-1012.15","5.4.0-1013.16","5.4.0-1016.19","5.4.0-1019.22","5.4.0-1020.23","5.4.0-1021.24","5.4.0-1022.25","5.4.0-1023.26","5.4.0-1025.28","5.4.0-1026.29","5.4.0-1028.31","5.4.0-1030.33","5.4.0-1032.35","5.4.0-1035.38","5.4.0-1036.39","5.4.0-1040.44","5.4.0-1042.47","5.4.0-1044.49","5.4.0-1045.50","5.4.0-1046.51","5.4.0-1047.52","5.4.0-1049.55","5.4.0-1050.56","5.4.0-1054.60","5.4.0-1058.64","5.4.0-1059.65","5.4.0-1060.66","5.4.0-1062.68","5.4.0-1064.70","5.4.0-1065.71","5.4.0-1066.72","5.4.0-1068.74","5.4.0-1070.76","5.4.0-1071.77","5.4.0-1072.78","5.4.0-1073.79","5.4.0-1074.80","5.4.0-1075.81","5.4.0-1076.82","5.4.0-1077.83","5.4.0-1078.84","5.4.0-1079.85","5.4.0-1080.87","5.4.0-1081.88","5.4.0-1082.89","5.4.0-1083.90","5.4.0-1084.91","5.4.0-1085.92","5.4.0-1086.93","5.4.0-1087.94","5.4.0-1088.95","5.4.0-1089.96","5.4.0-1090.97","5.4.0-1091.98","5.4.0-1092.99","5.4.0-1093.100","5.4.0-1094.101","5.4.0-1095.102","5.4.0-1096.103","5.4.0-1097.104","5.4.0-1098.105","5.4.0-1099.106","5.4.0-1101.108","5.4.0-1102.109","5.4.0-1103.110","5.4.0-1105.112"],"ecosystem_specific":{"availability":"Available with Ubuntu Pro (Infra-only): https://ubuntu.com/pro","binaries":[{"binary_name":"linux-bluefield-headers-5.4.0-1106","binary_version":"5.4.0-1106.113"},{"binary_name":"linux-bluefield-tools-5.4.0-1106","binary_version":"5.4.0-1106.113"},{"binary_name":"linux-buildinfo-5.4.0-1106-bluefield","binary_version":"5.4.0-1106.113"},{"binary_name":"linux-headers-5.4.0-1106-bluefield","binary_version":"5.4.0-1106.113"},{"binary_name":"linux-image-unsigned-5.4.0-1106-bluefield","binary_version":"5.4.0-1106.113"},{"binary_name":"linux-modules-5.4.0-1106-bluefield","binary_version":"5.4.0-1106.113"},{"binary_name":"linux-tools-5.4.0-1106-bluefield","binary_version":"5.4.0-1106.113"}]},"database_specific":{"cves_map":{"cves":[{"severity":[{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}],"id":"CVE-2021-47211"},{"severity":[{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}],"id":"CVE-2022-49636"},{"severity":[{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}],"id":"CVE-2023-53034"},{"severity":[{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","type":"CVSS_V3"},{"score":"high","type":"Ubuntu"}],"id":"CVE-2024-53168"},{"severity":[{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","type":"CVSS_V3"},{"score":"high","type":"Ubuntu"}],"id":"CVE-2024-56551"},{"severity":[{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","type":"CVSS_V3"},{"score":"low","type":"Ubuntu"}],"id":"CVE-2024-58093"},{"severity":[{"score":"CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:C/C:H/I:N/A:N","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}],"id":"CVE-2025-2312"},{"severity":[{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}],"id":"CVE-2025-21956"},{"severity":[{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}],"id":"CVE-2025-21957"},{"severity":[{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}],"id":"CVE-2025-21959"},{"severity":[{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}],"id":"CVE-2025-21991"},{"severity":[{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}],"id":"CVE-2025-21992"},{"severity":[{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}],"id":"CVE-2025-21993"},{"severity":[{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}],"id":"CVE-2025-21996"},{"severity":[{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}],"id":"CVE-2025-22004"},{"severity":[{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}],"id":"CVE-2025-22005"},{"severity":[{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}],"id":"CVE-2025-22007"},{"severity":[{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}],"id":"CVE-2025-22018"},{"severity":[{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}],"id":"CVE-2025-22020"},{"severity":[{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}],"id":"CVE-2025-22021"},{"severity":[{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}],"id":"CVE-2025-22035"},{"severity":[{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}],"id":"CVE-2025-22045"},{"severity":[{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}],"id":"CVE-2025-22054"},{"severity":[{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}],"id":"CVE-2025-22063"},{"severity":[{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}],"id":"CVE-2025-22071"},{"severity":[{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}],"id":"CVE-2025-22073"},{"severity":[{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}],"id":"CVE-2025-22079"},{"severity":[{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}],"id":"CVE-2025-22086"},{"severity":[{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}],"id":"CVE-2025-23136"},{"severity":[{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}],"id":"CVE-2025-37937"},{"severity":[{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}],"id":"CVE-2025-38637"},{"severity":[{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H","type":"CVSS_V3"},{"score":"high","type":"Ubuntu"}],"id":"CVE-2025-39735"}],"ecosystem":"Ubuntu:Pro:20.04:LTS"},"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/usn/USN-7585-6.json"}}],"schema_version":"1.7.3"}