> USN-8801-1: Linux kernel (Azure CVM) vulnerabilities
[DATE: 22/09/2026 10:17]
[LANGUAGE: EN]
It was discovered that some Arm processors could complete a broadcast
translation lookaside buffer (TLB) invalidation before memory writes made
through the invalidated translation were globally observed. A local
attacker could possibly use this to write to memory after permission to do
so had been revoked, bypassing memory protections or escalating privileges.
(CVE-2025-10263)
Several security issues were discovered in the Linux kernel.
An attacker could possibly use these to compromise the system.
This update corrects flaws in the following subsystems:
- Character device driver;
- Networking core;
- IPv6 networking;
- Unix domain sockets;
(CVE-2026-52938, CVE-2026-53325, CVE-2026-53361, CVE-2026-53362)