USN-8849-1

Source
https://ubuntu.com/security/notices/USN-8849-1
Import Source
https://github.com/canonical/ubuntu-security-notices/blob/main/osv/usn/USN-8849-1.json
JSON Data
https://api.osv.dev/v1/vulns/USN-8849-1
Upstream
CVE (18)
Related
Published
2026-09-30T08:04:30Z
Modified
2026-09-30T18:27:40Z
Summary
linux-nvidia-tegra-5.15 vulnerabilities
Details

It was discovered that some Arm processors could complete a broadcast translation lookaside buffer (TLB) invalidation before memory writes made through the invalidated translation were globally observed. A local attacker could possibly use this to write to memory after permission to do so had been revoked, bypassing memory protections or escalating privileges. (CVE-2025-10263)

Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems:

  • ARM64 architecture;
  • InfiniBand drivers;
  • Network drivers;
  • TCM subsystem;
  • exFAT file system;
  • Network file system (NFS) server daemon;
  • B.A.T.M.A.N. meshing protocol;
  • IPv4 networking;
  • IPv6 networking;
  • Netfilter;
  • RDS protocol; (CVE-2026-53186, CVE-2026-53221, CVE-2026-53354, CVE-2026-53355, CVE-2026-53398, CVE-2026-63808, CVE-2026-63887, CVE-2026-63888, CVE-2026-63912, CVE-2026-63922, CVE-2026-63924, CVE-2026-63984, CVE-2026-63992, CVE-2026-63993, CVE-2026-63994, CVE-2026-64007, CVE-2026-64091)
References

Affected packages

Ubuntu:Pro:20.04:LTS / linux-nvidia-tegra-5.15

Package

Name
linux-nvidia-tegra-5.15
Purl
pkg:deb/ubuntu/linux-nvidia-tegra-5.15?arch=source&distro=esm-infra%2Ffocal

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0 Unknown introduced version / All previous versions are affected
Fixed
5.15.0-1068.70~20.04.1

Affected versions

5.*
5.15.0-1009.9~20.04.1
5.15.0-1010.10~20.04.1
5.15.0-1012.12~20.04.1
5.15.0-1014.14~20.04.1
5.15.0-1015.15~20.04.1
5.15.0-1016.16~20.04.1
5.15.0-1017.17~20.04.1
5.15.0-1018.18~20.04.1
5.15.0-1019.19~20.04.1
5.15.0-1020.20~20.04.1
5.15.0-1022.22~20.04.1
5.15.0-1025.25~20.04.1
5.15.0-1027.27~20.04.1
5.15.0-1030.30~20.04.1
5.15.0-1032.32~20.04.1
5.15.0-1039.39~20.04.1
5.15.0-1040.40~20.04.1
5.15.0-1041.41~20.04.1
5.15.0-1042.42~20.04.1
5.15.0-1043.43~20.04.1
5.15.0-1044.44~20.04.1
5.15.0-1045.45~20.04.1
5.15.0-1046.46~20.04.1
5.15.0-1047.47~20.04.1
5.15.0-1048.48~20.04.1
5.15.0-1049.49~20.04.1
5.15.0-1050.50~20.04.1
5.15.0-1051.51~20.04.1
5.15.0-1052.52~20.04.2
5.15.0-1053.53~20.04.1
5.15.0-1055.55~20.04.1
5.15.0-1057.57~20.04.1
5.15.0-1058.58~20.04.1
5.15.0-1060.60~20.04.1
5.15.0-1061.61~20.04.1
5.15.0-1063.63~20.04.1
5.15.0-1064.66~20.04.1
5.15.0-1065.67~20.04.1
5.15.0-1066.68~20.04.1
5.15.0-1067.69~20.04.1

Ecosystem specific

{
    "availability":  "Available with Ubuntu Pro (Infra-only): https://ubuntu.com/pro",
    "binaries":  [
        {
            "binary_name":  "linux-buildinfo-5.15.0-1068-nvidia-tegra",
            "binary_version":  "5.15.0-1068.70~20.04.1"
        },
        {
            "binary_name":  "linux-buildinfo-5.15.0-1068-nvidia-tegra-rt",
            "binary_version":  "5.15.0-1068.70~20.04.1"
        },
        {
            "binary_name":  "linux-headers-5.15.0-1068-nvidia-tegra",
            "binary_version":  "5.15.0-1068.70~20.04.1"
        },
        {
            "binary_name":  "linux-headers-5.15.0-1068-nvidia-tegra-rt",
            "binary_version":  "5.15.0-1068.70~20.04.1"
        },
        {
            "binary_name":  "linux-image-unsigned-5.15.0-1068-nvidia-tegra",
            "binary_version":  "5.15.0-1068.70~20.04.1"
        },
        {
            "binary_name":  "linux-image-unsigned-5.15.0-1068-nvidia-tegra-rt",
            "binary_version":  "5.15.0-1068.70~20.04.1"
        },
        {
            "binary_name":  "linux-modules-5.15.0-1068-nvidia-tegra",
            "binary_version":  "5.15.0-1068.70~20.04.1"
        },
        {
            "binary_name":  "linux-modules-5.15.0-1068-nvidia-tegra-rt",
            "binary_version":  "5.15.0-1068.70~20.04.1"
        },
        {
            "binary_name":  "linux-modules-extra-5.15.0-1068-nvidia-tegra",
            "binary_version":  "5.15.0-1068.70~20.04.1"
        },
        {
            "binary_name":  "linux-nvidia-tegra-5.15-headers-5.15.0-1068",
            "binary_version":  "5.15.0-1068.70~20.04.1"
        },
        {
            "binary_name":  "linux-nvidia-tegra-5.15-tools-5.15.0-1068",
            "binary_version":  "5.15.0-1068.70~20.04.1"
        },
        {
            "binary_name":  "linux-tools-5.15.0-1068-nvidia-tegra",
            "binary_version":  "5.15.0-1068.70~20.04.1"
        },
        {
            "binary_name":  "linux-tools-5.15.0-1068-nvidia-tegra-rt",
            "binary_version":  "5.15.0-1068.70~20.04.1"
        }
    ]
}

Database specific

cves_map
{
    "cves":  [
        {
            "id":  "CVE-2025-10263",
            "severity":  [
                {
                    "score":  "CVSS:4.0/AV:L/AC:H/AT:P/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N",
                    "type":  "CVSS_V4"
                },
                {
                    "score":  "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:N",
                    "type":  "CVSS_V3"
                },
                {
                    "score":  "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N",
                    "type":  "CVSS_V3"
                },
                {
                    "score":  "high",
                    "type":  "Ubuntu"
                }
            ]
        },
        {
            "id":  "CVE-2026-53186",
            "severity":  [
                {
                    "score":  "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N",
                    "type":  "CVSS_V4"
                },
                {
                    "score":  "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H",
                    "type":  "CVSS_V3"
                },
                {
                    "score":  "high",
                    "type":  "Ubuntu"
                }
            ]
        },
        {
            "id":  "CVE-2026-53221",
            "severity":  [
                {
                    "score":  "CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:L/VI:L/VA:N/SC:N/SI:N/SA:N",
                    "type":  "CVSS_V4"
                },
                {
                    "score":  "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
                    "type":  "CVSS_V3"
                },
                {
                    "score":  "medium",
                    "type":  "Ubuntu"
                }
            ]
        },
        {
            "id":  "CVE-2026-53354",
            "severity":  [
                {
                    "score":  "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H",
                    "type":  "CVSS_V3"
                },
                {
                    "score":  "medium",
                    "type":  "Ubuntu"
                }
            ]
        },
        {
            "id":  "CVE-2026-53355",
            "severity":  [
                {
                    "score":  "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
                    "type":  "CVSS_V3"
                },
                {
                    "score":  "medium",
                    "type":  "Ubuntu"
                }
            ]
        },
        {
            "id":  "CVE-2026-53398",
            "severity":  [
                {
                    "score":  "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N",
                    "type":  "CVSS_V4"
                },
                {
                    "score":  "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
                    "type":  "CVSS_V3"
                },
                {
                    "score":  "critical",
                    "type":  "Ubuntu"
                }
            ]
        },
        {
            "id":  "CVE-2026-63808",
            "severity":  [
                {
                    "score":  "CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:P/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N",
                    "type":  "CVSS_V4"
                },
                {
                    "score":  "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
                    "type":  "CVSS_V3"
                },
                {
                    "score":  "medium",
                    "type":  "Ubuntu"
                }
            ]
        },
        {
            "id":  "CVE-2026-63887",
            "severity":  [
                {
                    "score":  "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
                    "type":  "CVSS_V3"
                },
                {
                    "score":  "medium",
                    "type":  "Ubuntu"
                }
            ]
        },
        {
            "id":  "CVE-2026-63888",
            "severity":  [
                {
                    "score":  "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
                    "type":  "CVSS_V3"
                },
                {
                    "score":  "medium",
                    "type":  "Ubuntu"
                }
            ]
        },
        {
            "id":  "CVE-2026-63912",
            "severity":  [
                {
                    "score":  "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
                    "type":  "CVSS_V3"
                },
                {
                    "score":  "medium",
                    "type":  "Ubuntu"
                }
            ]
        },
        {
            "id":  "CVE-2026-63922",
            "severity":  [
                {
                    "score":  "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
                    "type":  "CVSS_V3"
                },
                {
                    "score":  "medium",
                    "type":  "Ubuntu"
                }
            ]
        },
        {
            "id":  "CVE-2026-63924",
            "severity":  [
                {
                    "score":  "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
                    "type":  "CVSS_V3"
                },
                {
                    "score":  "medium",
                    "type":  "Ubuntu"
                }
            ]
        },
        {
            "id":  "CVE-2026-63984",
            "severity":  [
                {
                    "score":  "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
                    "type":  "CVSS_V3"
                },
                {
                    "score":  "medium",
                    "type":  "Ubuntu"
                }
            ]
        },
        {
            "id":  "CVE-2026-63992",
            "severity":  [
                {
                    "score":  "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H",
                    "type":  "CVSS_V3"
                },
                {
                    "score":  "medium",
                    "type":  "Ubuntu"
                }
            ]
        },
        {
            "id":  "CVE-2026-63993",
            "severity":  [
                {
                    "score":  "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
                    "type":  "CVSS_V3"
                },
                {
                    "score":  "medium",
                    "type":  "Ubuntu"
                }
            ]
        },
        {
            "id":  "CVE-2026-63994",
            "severity":  [
                {
                    "score":  "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
                    "type":  "CVSS_V3"
                },
                {
                    "score":  "medium",
                    "type":  "Ubuntu"
                }
            ]
        },
        {
            "id":  "CVE-2026-64007",
            "severity":  [
                {
                    "score":  "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
                    "type":  "CVSS_V3"
                },
                {
                    "score":  "medium",
                    "type":  "Ubuntu"
                }
            ]
        },
        {
            "id":  "CVE-2026-64091",
            "severity":  [
                {
                    "score":  "CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N",
                    "type":  "CVSS_V4"
                },
                {
                    "score":  "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
                    "type":  "CVSS_V3"
                },
                {
                    "score":  "high",
                    "type":  "Ubuntu"
                }
            ]
        }
    ],
    "ecosystem":  "Ubuntu:Pro:20.04:LTS"
}
source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/usn/USN-8849-1.json"