Jean-Claude Graf, Sandro Rüegge, Ali Hajiabadi, and Kaveh Razavi discovered that the Linux kernel contained insufficient branch predictor isolation between a guest and a userspace hypervisor for certain processors. This flaw is known as VMSCAPE. An attacker in a guest VM could possibly use this to expose sensitive information from the host OS.
{
"availability": "Available with Ubuntu Pro: https://ubuntu.com/pro",
"binaries": [
{
"binary_version": "5.15.0-1096.103+fips1",
"binary_name": "linux-aws-fips-cloud-tools-5.15.0-1096"
},
{
"binary_version": "5.15.0-1096.103+fips1",
"binary_name": "linux-aws-fips-headers-5.15.0-1096"
},
{
"binary_version": "5.15.0-1096.103+fips1",
"binary_name": "linux-aws-fips-tools-5.15.0-1096"
},
{
"binary_version": "5.15.0-1096.103+fips1",
"binary_name": "linux-buildinfo-5.15.0-1096-aws-fips"
},
{
"binary_version": "5.15.0-1096.103+fips1",
"binary_name": "linux-cloud-tools-5.15.0-1096-aws-fips"
},
{
"binary_version": "5.15.0-1096.103+fips1",
"binary_name": "linux-headers-5.15.0-1096-aws-fips"
},
{
"binary_version": "5.15.0-1096.103+fips1",
"binary_name": "linux-image-unsigned-5.15.0-1096-aws-fips"
},
{
"binary_version": "5.15.0-1096.103+fips1",
"binary_name": "linux-image-unsigned-hmac-5.15.0-1096-aws-fips"
},
{
"binary_version": "5.15.0-1096.103+fips1",
"binary_name": "linux-modules-5.15.0-1096-aws-fips"
},
{
"binary_version": "5.15.0-1096.103+fips1",
"binary_name": "linux-modules-extra-5.15.0-1096-aws-fips"
},
{
"binary_version": "5.15.0-1096.103+fips1",
"binary_name": "linux-tools-5.15.0-1096-aws-fips"
}
]
}
{
"availability": "Available with Ubuntu Pro: https://ubuntu.com/pro",
"binaries": [
{
"binary_version": "5.15.0-161.171+fips1",
"binary_name": "linux-buildinfo-5.15.0-161-fips"
},
{
"binary_version": "5.15.0-161.171+fips1",
"binary_name": "linux-fips-headers-5.15.0-161"
},
{
"binary_version": "5.15.0-161.171+fips1",
"binary_name": "linux-fips-tools-5.15.0-161"
},
{
"binary_version": "5.15.0-161.171+fips1",
"binary_name": "linux-headers-5.15.0-161-fips"
},
{
"binary_version": "5.15.0-161.171+fips1",
"binary_name": "linux-image-unsigned-5.15.0-161-fips"
},
{
"binary_version": "5.15.0-161.171+fips1",
"binary_name": "linux-image-unsigned-hmac-5.15.0-161-fips"
},
{
"binary_version": "5.15.0-161.171+fips1",
"binary_name": "linux-modules-5.15.0-161-fips"
},
{
"binary_version": "5.15.0-161.171+fips1",
"binary_name": "linux-modules-extra-5.15.0-161-fips"
},
{
"binary_version": "5.15.0-161.171+fips1",
"binary_name": "linux-modules-iwlwifi-5.15.0-161-fips"
},
{
"binary_version": "5.15.0-161.171+fips1",
"binary_name": "linux-tools-5.15.0-161-fips"
}
]
}
{
"availability": "Available with Ubuntu Pro: https://ubuntu.com/pro",
"binaries": [
{
"binary_version": "5.15.0-1096.105+fips1",
"binary_name": "linux-buildinfo-5.15.0-1096-gcp-fips"
},
{
"binary_version": "5.15.0-1096.105+fips1",
"binary_name": "linux-gcp-fips-headers-5.15.0-1096"
},
{
"binary_version": "5.15.0-1096.105+fips1",
"binary_name": "linux-gcp-fips-tools-5.15.0-1096"
},
{
"binary_version": "5.15.0-1096.105+fips1",
"binary_name": "linux-headers-5.15.0-1096-gcp-fips"
},
{
"binary_version": "5.15.0-1096.105+fips1",
"binary_name": "linux-image-unsigned-5.15.0-1096-gcp-fips"
},
{
"binary_version": "5.15.0-1096.105+fips1",
"binary_name": "linux-image-unsigned-hmac-5.15.0-1096-gcp-fips"
},
{
"binary_version": "5.15.0-1096.105+fips1",
"binary_name": "linux-modules-5.15.0-1096-gcp-fips"
},
{
"binary_version": "5.15.0-1096.105+fips1",
"binary_name": "linux-modules-extra-5.15.0-1096-gcp-fips"
},
{
"binary_version": "5.15.0-1096.105+fips1",
"binary_name": "linux-tools-5.15.0-1096-gcp-fips"
}
]
}