[USN-8116-1] Linux kernel (Intel IoTG Real-time) vulnerabilities

Rodrigo Figueiredo Zaiden rodrigo.zaiden at canonical.com
Mon Mar 23 14:14:25 UTC 2026


==========================================================================
Ubuntu Security Notice USN-8116-1
March 23, 2026

linux-intel-iot-realtime vulnerabilities
==========================================================================

A security issue affects these releases of Ubuntu and its derivatives:

- Ubuntu 22.04 LTS

Summary:

Several security issues were fixed in the Linux kernel.

Software Description:
- linux-intel-iot-realtime: Linux kernel for Intel IoT Real-time platforms

Details:

Several security issues were discovered in the Linux kernel.
An attacker could possibly use these to compromise the system.
This update corrects flaws in the following subsystems:
   - PowerPC architecture;
   - x86 architecture;
   - Block layer subsystem;
   - Cryptographic API;
   - ACPI drivers;
   - ATM drivers;
   - Drivers core;
   - Network block device driver;
   - Bluetooth drivers;
   - Character device driver;
   - TPM device driver;
   - Data acquisition framework and drivers;
   - Counter interface drivers;
   - CPU frequency scaling framework;
   - Intel Stratix 10 firmware drivers;
   - GPU drivers;
   - HID subsystem;
   - Hardware monitoring drivers;
   - IIO subsystem;
   - InfiniBand drivers;
   - Input Device core drivers;
   - Input Device (Tablet) drivers;
   - ISDN/mISDN subsystem;
   - Macintosh device drivers;
   - Media drivers;
   - MOST (Media Oriented Systems Transport) drivers;
   - MTD block device drivers;
   - Network drivers;
   - Mellanox network drivers;
   - Texas Instruments network drivers;
   - Ethernet team driver;
   - MediaTek network drivers;
   - NVME drivers;
   - PA-RISC drivers;
   - PCI subsystem;
   - Chrome hardware platform drivers;
   - x86 platform drivers;
   - ARM PM domains;
   - Voltage and Current Regulator drivers;
   - S/390 drivers;
   - SCSI subsystem;
   - Texas Instruments SoC drivers;
   - SPI subsystem;
   - Realtek RTL8723BS SDIO drivers;
   - TCM subsystem;
   - Cadence USB3 driver;
   - DesignWare USB3 driver;
   - USB Gadget drivers;
   - USB Host Controller drivers;
   - Renesas USBHS Controller drivers;
   - USB Mass Storage drivers;
   - USB Type-C Connector System Software Interface driver;
   - Backlight driver;
   - Framebuffer layer;
   - Watchdog drivers;
   - BFS file system;
   - BTRFS file system;
   - Ext4 file system;
   - F2FS file system;
   - FUSE (File system in Userspace);
   - HFS+ file system;
   - Journaling layer for block devices (JBD2);
   - JFS file system;
   - Network file system (NFS) client;
   - Network file system (NFS) server daemon;
   - File system notification infrastructure;
   - NTFS3 file system;
   - OCFS2 file system;
   - OrangeFS file system;
   - Proc file system;
   - SMB network file system;
   - XFS file system;
   - BPF subsystem;
   - Ethernet bridge;
   - Memory management;
   - Network traffic control;
   - io_uring subsystem;
   - Locking primitives;
   - Scheduler infrastructure;
   - Shadow Call Stack mechanism;
   - Tracing infrastructure;
   - Bluetooth subsystem;
   - CAIF protocol;
   - CAN network layer;
   - Ceph Core library;
   - Networking core;
   - Ethtool driver;
   - HSR network protocol;
   - IPv4 networking;
   - IPv6 networking;
   - MAC80211 subsystem;
   - Multipath TCP;
   - Netfilter;
   - NET/ROM layer;
   - NFC subsystem;
   - Open vSwitch;
   - Rose network layer;
   - SCTP protocol;
   - Network sockets;
   - Sun RPC protocol;
   - TIPC protocol;
   - VMware vSockets driver;
   - Wireless networking;
   - Rust bindings mechanism;
   - Integrity Measurement Architecture(IMA) framework;
   - Key management;
   - Simplified Mandatory Access Control Kernel framework;
   - FireWire sound drivers;
   - Turtle Beach Wavefront ALSA driver;
   - STMicroelectronics SoC drivers;
   - USB sound devices;
(CVE-2022-49465, CVE-2024-36903, CVE-2024-36927, CVE-2024-37354,
CVE-2024-41014, CVE-2024-46830, CVE-2024-47666, CVE-2024-49968,
CVE-2025-22022, CVE-2025-22111, CVE-2025-22121, CVE-2025-38022,
CVE-2025-38129, CVE-2025-38556, CVE-2025-40040, CVE-2025-40083,
CVE-2025-40110, CVE-2025-40211, CVE-2025-40248, CVE-2025-40252,
CVE-2025-40253, CVE-2025-40254, CVE-2025-40257, CVE-2025-40258,
CVE-2025-40259, CVE-2025-40261, CVE-2025-40262, CVE-2025-40263,
CVE-2025-40264, CVE-2025-40269, CVE-2025-40271, CVE-2025-40272,
CVE-2025-40273, CVE-2025-40275, CVE-2025-40277, CVE-2025-40278,
CVE-2025-40279, CVE-2025-40280, CVE-2025-40281, CVE-2025-40282,
CVE-2025-40283, CVE-2025-40304, CVE-2025-40306, CVE-2025-40308,
CVE-2025-40309, CVE-2025-40312, CVE-2025-40313, CVE-2025-40314,
CVE-2025-40315, CVE-2025-40317, CVE-2025-40319, CVE-2025-40321,
CVE-2025-40322, CVE-2025-40324, CVE-2025-40331, CVE-2025-40342,
CVE-2025-40343, CVE-2025-40345, CVE-2025-40360, CVE-2025-40363,
CVE-2025-68168, CVE-2025-68176, CVE-2025-68177, CVE-2025-68185,
CVE-2025-68191, CVE-2025-68192, CVE-2025-68194, CVE-2025-68200,
CVE-2025-68204, CVE-2025-68217, CVE-2025-68220, CVE-2025-68227,
CVE-2025-68229, CVE-2025-68238, CVE-2025-68241, CVE-2025-68244,
CVE-2025-68245, CVE-2025-68254, CVE-2025-68255, CVE-2025-68257,
CVE-2025-68258, CVE-2025-68261, CVE-2025-68264, CVE-2025-68266,
CVE-2025-68282, CVE-2025-68284, CVE-2025-68285, CVE-2025-68286,
CVE-2025-68287, CVE-2025-68288, CVE-2025-68289, CVE-2025-68290,
CVE-2025-68295, CVE-2025-68301, CVE-2025-68302, CVE-2025-68303,
CVE-2025-68308, CVE-2025-68312, CVE-2025-68321, CVE-2025-68325,
CVE-2025-68327, CVE-2025-68328, CVE-2025-68330, CVE-2025-68331,
CVE-2025-68332, CVE-2025-68335, CVE-2025-68336, CVE-2025-68337,
CVE-2025-68339, CVE-2025-68344, CVE-2025-68346, CVE-2025-68349,
CVE-2025-68354, CVE-2025-68362, CVE-2025-68364, CVE-2025-68366,
CVE-2025-68367, CVE-2025-68372, CVE-2025-68724, CVE-2025-68727,
CVE-2025-68728, CVE-2025-68732, CVE-2025-68733, CVE-2025-68734,
CVE-2025-68740, CVE-2025-68746, CVE-2025-68757, CVE-2025-68758,
CVE-2025-68759, CVE-2025-68764, CVE-2025-68765, CVE-2025-68767,
CVE-2025-68769, CVE-2025-68771, CVE-2025-68774, CVE-2025-68776,
CVE-2025-68777, CVE-2025-68780, CVE-2025-68782, CVE-2025-68783,
CVE-2025-68785, CVE-2025-68787, CVE-2025-68788, CVE-2025-68795,
CVE-2025-68796, CVE-2025-68797, CVE-2025-68799, CVE-2025-68800,
CVE-2025-68801, CVE-2025-68803, CVE-2025-68804, CVE-2025-68808,
CVE-2025-68813, CVE-2025-68814, CVE-2025-68815, CVE-2025-68816,
CVE-2025-68818, CVE-2025-68819, CVE-2025-68820, CVE-2025-68821,
CVE-2025-71064, CVE-2025-71066, CVE-2025-71068, CVE-2025-71069,
CVE-2025-71075, CVE-2025-71077, CVE-2025-71078, CVE-2025-71079,
CVE-2025-71081, CVE-2025-71082, CVE-2025-71083, CVE-2025-71084,
CVE-2025-71085, CVE-2025-71086, CVE-2025-71087, CVE-2025-71091,
CVE-2025-71093, CVE-2025-71094, CVE-2025-71096, CVE-2025-71097,
CVE-2025-71098, CVE-2025-71102, CVE-2025-71104, CVE-2025-71105,
CVE-2025-71108, CVE-2025-71111, CVE-2025-71112, CVE-2025-71113,
CVE-2025-71114, CVE-2025-71116, CVE-2025-71118, CVE-2025-71120,
CVE-2025-71121, CVE-2025-71125, CVE-2025-71127, CVE-2025-71131,
CVE-2025-71132, CVE-2025-71133, CVE-2025-71136, CVE-2025-71137,
CVE-2025-71147, CVE-2025-71154, CVE-2025-71180, CVE-2025-71182,
CVE-2026-22976, CVE-2026-22977, CVE-2026-22978, CVE-2026-22980,
CVE-2026-22982, CVE-2026-22984, CVE-2026-22990, CVE-2026-22991,
CVE-2026-22992, CVE-2026-23019, CVE-2026-23020, CVE-2026-23021,
CVE-2026-23047)

Update instructions:

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 22.04 LTS
   linux-image-5.15.0-1094-intel-iot-realtime  5.15.0-1094.96
                                   Available with Ubuntu Pro
   linux-image-intel-iot-realtime  5.15.0.1094.98
                                   Available with Ubuntu Pro
   linux-image-intel-iot-realtime-5.15  5.15.0.1094.98
                                   Available with Ubuntu Pro

After a standard system update you need to reboot your computer to make
all the necessary changes.

ATTENTION: Due to an unavoidable ABI change the kernel updates have
been given a new version number, which requires you to recompile and
reinstall all third party kernel modules you might have installed.
Unless you manually uninstalled the standard kernel metapackages
(e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual,
linux-powerpc), a standard system upgrade will automatically perform
this as well.

References:
   https://ubuntu.com/security/notices/USN-8116-1
   CVE-2022-49465, CVE-2024-36903, CVE-2024-36927, CVE-2024-37354,
   CVE-2024-41014, CVE-2024-46830, CVE-2024-47666, CVE-2024-49968,
   CVE-2025-22022, CVE-2025-22111, CVE-2025-22121, CVE-2025-38022,
   CVE-2025-38129, CVE-2025-38556, CVE-2025-40040, CVE-2025-40083,
   CVE-2025-40110, CVE-2025-40211, CVE-2025-40248, CVE-2025-40252,
   CVE-2025-40253, CVE-2025-40254, CVE-2025-40257, CVE-2025-40258,
   CVE-2025-40259, CVE-2025-40261, CVE-2025-40262, CVE-2025-40263,
   CVE-2025-40264, CVE-2025-40269, CVE-2025-40271, CVE-2025-40272,
   CVE-2025-40273, CVE-2025-40275, CVE-2025-40277, CVE-2025-40278,
   CVE-2025-40279, CVE-2025-40280, CVE-2025-40281, CVE-2025-40282,
   CVE-2025-40283, CVE-2025-40304, CVE-2025-40306, CVE-2025-40308,
   CVE-2025-40309, CVE-2025-40312, CVE-2025-40313, CVE-2025-40314,
   CVE-2025-40315, CVE-2025-40317, CVE-2025-40319, CVE-2025-40321,
   CVE-2025-40322, CVE-2025-40324, CVE-2025-40331, CVE-2025-40342,
   CVE-2025-40343, CVE-2025-40345, CVE-2025-40360, CVE-2025-40363,
   CVE-2025-68168, CVE-2025-68176, CVE-2025-68177, CVE-2025-68185,
   CVE-2025-68191, CVE-2025-68192, CVE-2025-68194, CVE-2025-68200,
   CVE-2025-68204, CVE-2025-68217, CVE-2025-68220, CVE-2025-68227,
   CVE-2025-68229, CVE-2025-68238, CVE-2025-68241, CVE-2025-68244,
   CVE-2025-68245, CVE-2025-68254, CVE-2025-68255, CVE-2025-68257,
   CVE-2025-68258, CVE-2025-68261, CVE-2025-68264, CVE-2025-68266,
   CVE-2025-68282, CVE-2025-68284, CVE-2025-68285, CVE-2025-68286,
   CVE-2025-68287, CVE-2025-68288, CVE-2025-68289, CVE-2025-68290,
   CVE-2025-68295, CVE-2025-68301, CVE-2025-68302, CVE-2025-68303,
   CVE-2025-68308, CVE-2025-68312, CVE-2025-68321, CVE-2025-68325,
   CVE-2025-68327, CVE-2025-68328, CVE-2025-68330, CVE-2025-68331,
   CVE-2025-68332, CVE-2025-68335, CVE-2025-68336, CVE-2025-68337,
   CVE-2025-68339, CVE-2025-68344, CVE-2025-68346, CVE-2025-68349,
   CVE-2025-68354, CVE-2025-68362, CVE-2025-68364, CVE-2025-68366,
   CVE-2025-68367, CVE-2025-68372, CVE-2025-68724, CVE-2025-68727,
   CVE-2025-68728, CVE-2025-68732, CVE-2025-68733, CVE-2025-68734,
   CVE-2025-68740, CVE-2025-68746, CVE-2025-68757, CVE-2025-68758,
   CVE-2025-68759, CVE-2025-68764, CVE-2025-68765, CVE-2025-68767,
   CVE-2025-68769, CVE-2025-68771, CVE-2025-68774, CVE-2025-68776,
   CVE-2025-68777, CVE-2025-68780, CVE-2025-68782, CVE-2025-68783,
   CVE-2025-68785, CVE-2025-68787, CVE-2025-68788, CVE-2025-68795,
   CVE-2025-68796, CVE-2025-68797, CVE-2025-68799, CVE-2025-68800,
   CVE-2025-68801, CVE-2025-68803, CVE-2025-68804, CVE-2025-68808,
   CVE-2025-68813, CVE-2025-68814, CVE-2025-68815, CVE-2025-68816,
   CVE-2025-68818, CVE-2025-68819, CVE-2025-68820, CVE-2025-68821,
   CVE-2025-71064, CVE-2025-71066, CVE-2025-71068, CVE-2025-71069,
   CVE-2025-71075, CVE-2025-71077, CVE-2025-71078, CVE-2025-71079,
   CVE-2025-71081, CVE-2025-71082, CVE-2025-71083, CVE-2025-71084,
   CVE-2025-71085, CVE-2025-71086, CVE-2025-71087, CVE-2025-71091,
   CVE-2025-71093, CVE-2025-71094, CVE-2025-71096, CVE-2025-71097,
   CVE-2025-71098, CVE-2025-71102, CVE-2025-71104, CVE-2025-71105,
   CVE-2025-71108, CVE-2025-71111, CVE-2025-71112, CVE-2025-71113,
   CVE-2025-71114, CVE-2025-71116, CVE-2025-71118, CVE-2025-71120,
   CVE-2025-71121, CVE-2025-71125, CVE-2025-71127, CVE-2025-71131,
   CVE-2025-71132, CVE-2025-71133, CVE-2025-71136, CVE-2025-71137,
   CVE-2025-71147, CVE-2025-71154, CVE-2025-71180, CVE-2025-71182,
   CVE-2026-22976, CVE-2026-22977, CVE-2026-22978, CVE-2026-22980,
   CVE-2026-22982, CVE-2026-22984, CVE-2026-22990, CVE-2026-22991,
   CVE-2026-22992, CVE-2026-23019, CVE-2026-23020, CVE-2026-23021,
   CVE-2026-23047

Package Information:
   https://launchpad.net/ubuntu/+source/linux-intel-iot-realtime/5.15.0-1094.96

-------------- next part --------------
A non-text attachment was scrubbed...
Name: OpenPGP_signature.asc
Type: application/pgp-signature
Size: 495 bytes
Desc: OpenPGP digital signature
URL: <https://lists.ubuntu.com/archives/ubuntu-security-announce/attachments/20260323/e86e2f26/attachment-0001.sig>


More information about the ubuntu-security-announce mailing list