USN-7301-1

    Dashboard / Vulnerabilities / USN-7301-1

    USN-7301-1

    Published: 25 Feb 2025Last Modified: 7 Oct 2026

    Summary: linux, linux-lowlatency, linux-lowlatency-hwe-6.8 vulnerabilities

    Details: Attila Szász discovered that the HFS+ file system implementation in the Linux Kernel contained a heap overflow vulnerability. An attacker could use a specially crafted file system image that, when mounted, could cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2025-0927) Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - ARM32 architecture; - x86 architecture; - Block layer subsystem; - Cryptographic API; - ACPI drivers; - Drivers core; - ATA over ethernet (AOE) driver; - Network block device driver; - TPM device driver; - Hardware crypto device drivers; - ARM SCMI message protocol; - EFI core; - GPU drivers; - I2C subsystem; - I3C subsystem; - InfiniBand drivers; - Input Device core drivers; - IOMMU subsystem; - Mailbox framework; - Media drivers; - Ethernet bonding driver; - Network drivers; - Mellanox network drivers; - STMicroelectronics network drivers; - NTB driver; - PCI subsystem; - Alibaba DDR Sub-System Driveway PMU driver; - x86 platform drivers; - Powercap sysfs driver; - Remote Processor subsystem; - SCSI subsystem; - USB Device Class drivers; - vDPA drivers; - Virtio Host (VHOST) subsystem; - Framebuffer layer; - AFS file system; - BTRFS file system; - File systems infrastructure; - Ceph distributed file system; - Ext4 file system; - F2FS file system; - JFS file system; - Network file systems library; - Network file system (NFS) server daemon; - NILFS2 file system; - SMB network file system; - BPF subsystem; - Virtio network driver; - TCP network protocol; - Perf events; - Padata parallel execution mechanism; - RCU subsystem; - Arbitrary resource management; - Static call mechanism; - Tracing infrastructure; - Memory management; - Bluetooth subsystem; - CAN network layer; - Networking core; - Distributed Switch Architecture; - IPv4 networking; - IPv6 networking; - MAC80211 subsystem; - IEEE 802.15.4 subsystem; - NCSI (Network Controller Sideband Interface) driver; - RxRPC session sockets; - SCTP protocol; - TIPC protocol; - Wireless networking; - AudioScience HPI driver; - KVM core; (CVE-2024-47748, CVE-2024-49935, CVE-2024-49892, CVE-2024-49960, CVE-2024-49886, CVE-2024-47757, CVE-2024-47741, CVE-2024-49879, CVE-2024-49983, CVE-2024-47687, CVE-2024-49948, CVE-2024-49902, CVE-2024-49969, CVE-2024-49903, CVE-2024-47675, CVE-2024-47713, CVE-2024-47750, CVE-2024-49951, CVE-2024-49936, CVE-2024-49913, CVE-2024-47684, CVE-2024-49917, CVE-2024-47693, CVE-2024-49871, CVE-2024-47740, CVE-2024-49927, CVE-2024-47698, CVE-2024-49996, CVE-2024-47682, CVE-2024-49889, CVE-2024-49888, CVE-2024-47737, CVE-2024-49881, CVE-2023-52917, CVE-2024-47695, CVE-2024-50015, CVE-2024-49965, CVE-2024-50179, CVE-2024-47677, CVE-2024-50013, CVE-2024-49855, CVE-2024-47751, CVE-2024-49895, CVE-2024-49930, CVE-2024-49905, CVE-2024-47709, CVE-2024-49953, CVE-2024-49896, CVE-2024-47688, CVE-2024-47712, CVE-2024-49907, CVE-2024-49955, CVE-2024-49933, CVE-2024-49880, CVE-2024-49860, CVE-2024-50176, CVE-2024-47727, CVE-2024-47673, CVE-2024-49878, CVE-2024-49862, CVE-2024-49911, CVE-2024-47734, CVE-2024-49995, CVE-2024-49924, CVE-2024-49925, CVE-2024-47749, CVE-2024-49945, CVE-2024-49950, CVE-2024-49891, CVE-2024-49915, CVE-2024-50006, CVE-2024-49962, CVE-2024-49952, CVE-2024-49982, CVE-2024-49939, CVE-2024-49985, CVE-2024-49928, CVE-2024-47692, CVE-2024-49884, CVE-2024-47756, CVE-2024-49918, CVE-2024-49976, CVE-2024-47671, CVE-2024-49859, CVE-2024-47705, CVE-2024-49864, CVE-2024-47733, CVE-2024-49961, CVE-2024-49973, CVE-2024-49989, CVE-2024-47719, CVE-2024-47685, CVE-2024-49988, CVE-2024-49975, CVE-2024-47681, CVE-2024-49944, CVE-2024-47718, CVE-2024-47689, CVE-2024-50008, CVE-2024-49959, CVE-2024-49868, CVE-2024-47743, CVE-2024-49885, CVE-2024-47742, CVE-2024-49946, CVE-2024-49876, CVE-2024-49875, CVE-2024-49894, CVE-2024-49957, CVE-2024-49980, CVE-2024-49851, CVE-2024-47732, CVE-2024-47716, CVE-2024-49938, CVE-2024-50016, CVE-2024-47735, CVE-2024-47696, CVE-2024-47691, CVE-2024-49994, CVE-2024-49863, CVE-2024-50000, CVE-2024-49919, CVE-2024-49947, CVE-2024-50001, CVE-2024-47678, CVE-2024-49870, CVE-2024-53144, CVE-2024-49929, CVE-2024-47730, CVE-2024-47700, CVE-2024-49900, CVE-2024-47723, CVE-2024-49934, CVE-2024-49883, CVE-2024-49897, CVE-2024-49912, CVE-2024-49991, CVE-2024-47701, CVE-2024-49987, CVE-2024-47753, CVE-2024-49923, CVE-2024-47707, CVE-2024-49853, CVE-2024-47720, CVE-2024-49999, CVE-2024-49958, CVE-2024-49861, CVE-2024-49937, CVE-2024-49852, CVE-2024-47703, CVE-2024-47710, CVE-2024-49942, CVE-2024-49963, CVE-2024-47697, CVE-2024-50175, CVE-2024-47745, CVE-2024-49909, CVE-2024-49997, CVE-2024-49874, CVE-2024-47706, CVE-2024-49922, CVE-2024-47739, CVE-2024-49974, CVE-2024-47744, CVE-2024-47754, CVE-2024-49931, CVE-2024-47690, CVE-2024-49986, CVE-2024-47715, CVE-2024-50014, CVE-2024-49898, CVE-2024-47731, CVE-2024-47670, CVE-2024-49877, CVE-2024-50007, CVE-2024-47699, CVE-2024-49998, CVE-2024-41016, CVE-2024-49850, CVE-2024-47752, CVE-2024-49901, CVE-2024-47728, CVE-2024-49856, CVE-2024-49992, CVE-2024-49926, CVE-2024-49978, CVE-2024-47672, CVE-2024-49954, CVE-2024-47704, CVE-2024-47747, CVE-2024-47738, CVE-2024-49966, CVE-2024-47714, CVE-2024-47686, CVE-2024-47702, CVE-2024-49882, CVE-2024-49858, CVE-2024-50002, CVE-2024-49866, CVE-2024-49981, CVE-2024-50012, CVE-2024-50017, CVE-2024-49890, CVE-2024-49977, CVE-2024-49949, CVE-2024-50005, CVE-2024-47679, CVE-2024-49867)

    References: https://ubuntu.com/security/notices/USN-7301-1, https://ubuntu.com/security/CVE-2023-52917, https://ubuntu.com/security/CVE-2024-41016, https://ubuntu.com/security/CVE-2024-47670, https://ubuntu.com/security/CVE-2024-47671, https://ubuntu.com/security/CVE-2024-47672, https://ubuntu.com/security/CVE-2024-47673, https://ubuntu.com/security/CVE-2024-47675, https://ubuntu.com/security/CVE-2024-47677, https://ubuntu.com/security/CVE-2024-47678, https://ubuntu.com/security/CVE-2024-47679, https://ubuntu.com/security/CVE-2024-47681, https://ubuntu.com/security/CVE-2024-47682, https://ubuntu.com/security/CVE-2024-47684, https://ubuntu.com/security/CVE-2024-47685, https://ubuntu.com/security/CVE-2024-47686, https://ubuntu.com/security/CVE-2024-47687, https://ubuntu.com/security/CVE-2024-47688, https://ubuntu.com/security/CVE-2024-47689, https://ubuntu.com/security/CVE-2024-47690, https://ubuntu.com/security/CVE-2024-47691, https://ubuntu.com/security/CVE-2024-47692, https://ubuntu.com/security/CVE-2024-47693, https://ubuntu.com/security/CVE-2024-47695, https://ubuntu.com/security/CVE-2024-47696, https://ubuntu.com/security/CVE-2024-47697, https://ubuntu.com/security/CVE-2024-47698, https://ubuntu.com/security/CVE-2024-47699, https://ubuntu.com/security/CVE-2024-47700, https://ubuntu.com/security/CVE-2024-47701, https://ubuntu.com/security/CVE-2024-47702, https://ubuntu.com/security/CVE-2024-47703, https://ubuntu.com/security/CVE-2024-47704, https://ubuntu.com/security/CVE-2024-47705, https://ubuntu.com/security/CVE-2024-47706, https://ubuntu.com/security/CVE-2024-47707, https://ubuntu.com/security/CVE-2024-47709, https://ubuntu.com/security/CVE-2024-47710, https://ubuntu.com/security/CVE-2024-47712, https://ubuntu.com/security/CVE-2024-47713, https://ubuntu.com/security/CVE-2024-47714, https://ubuntu.com/security/CVE-2024-47715, https://ubuntu.com/security/CVE-2024-47716, https://ubuntu.com/security/CVE-2024-47718, https://ubuntu.com/security/CVE-2024-47719, https://ubuntu.com/security/CVE-2024-47720, https://ubuntu.com/security/CVE-2024-47723, https://ubuntu.com/security/CVE-2024-47727, https://ubuntu.com/security/CVE-2024-47728, https://ubuntu.com/security/CVE-2024-47730, https://ubuntu.com/security/CVE-2024-47731, https://ubuntu.com/security/CVE-2024-47732, https://ubuntu.com/security/CVE-2024-47733, https://ubuntu.com/security/CVE-2024-47734, https://ubuntu.com/security/CVE-2024-47735, https://ubuntu.com/security/CVE-2024-47737, https://ubuntu.com/security/CVE-2024-47738, https://ubuntu.com/security/CVE-2024-47739, https://ubuntu.com/security/CVE-2024-47740, https://ubuntu.com/security/CVE-2024-47741, https://ubuntu.com/security/CVE-2024-47742, https://ubuntu.com/security/CVE-2024-47743, https://ubuntu.com/security/CVE-2024-47744, https://ubuntu.com/security/CVE-2024-47745, https://ubuntu.com/security/CVE-2024-47747, https://ubuntu.com/security/CVE-2024-47748, https://ubuntu.com/security/CVE-2024-47749, https://ubuntu.com/security/CVE-2024-47750, https://ubuntu.com/security/CVE-2024-47751, https://ubuntu.com/security/CVE-2024-47752, https://ubuntu.com/security/CVE-2024-47753, https://ubuntu.com/security/CVE-2024-47754, https://ubuntu.com/security/CVE-2024-47756, https://ubuntu.com/security/CVE-2024-47757, https://ubuntu.com/security/CVE-2024-49850, https://ubuntu.com/security/CVE-2024-49851, https://ubuntu.com/security/CVE-2024-49852, https://ubuntu.com/security/CVE-2024-49853, https://ubuntu.com/security/CVE-2024-49855, https://ubuntu.com/security/CVE-2024-49856, https://ubuntu.com/security/CVE-2024-49858, https://ubuntu.com/security/CVE-2024-49859, https://ubuntu.com/security/CVE-2024-49860, https://ubuntu.com/security/CVE-2024-49861, https://ubuntu.com/security/CVE-2024-49862, https://ubuntu.com/security/CVE-2024-49863, https://ubuntu.com/security/CVE-2024-49864, https://ubuntu.com/security/CVE-2024-49866, https://ubuntu.com/security/CVE-2024-49867, https://ubuntu.com/security/CVE-2024-49868, https://ubuntu.com/security/CVE-2024-49870, https://ubuntu.com/security/CVE-2024-49871, https://ubuntu.com/security/CVE-2024-49874, https://ubuntu.com/security/CVE-2024-49875, https://ubuntu.com/security/CVE-2024-49876, https://ubuntu.com/security/CVE-2024-49877, https://ubuntu.com/security/CVE-2024-49878, https://ubuntu.com/security/CVE-2024-49879, https://ubuntu.com/security/CVE-2024-49880, https://ubuntu.com/security/CVE-2024-49881, https://ubuntu.com/security/CVE-2024-49882, https://ubuntu.com/security/CVE-2024-49883, https://ubuntu.com/security/CVE-2024-49884, https://ubuntu.com/security/CVE-2024-49885, https://ubuntu.com/security/CVE-2024-49886, https://ubuntu.com/security/CVE-2024-49888, https://ubuntu.com/security/CVE-2024-49889, https://ubuntu.com/security/CVE-2024-49890, https://ubuntu.com/security/CVE-2024-49891, https://ubuntu.com/security/CVE-2024-49892, https://ubuntu.com/security/CVE-2024-49894, https://ubuntu.com/security/CVE-2024-49895, https://ubuntu.com/security/CVE-2024-49896, https://ubuntu.com/security/CVE-2024-49897, https://ubuntu.com/security/CVE-2024-49898, https://ubuntu.com/security/CVE-2024-49900, https://ubuntu.com/security/CVE-2024-49901, https://ubuntu.com/security/CVE-2024-49902, https://ubuntu.com/security/CVE-2024-49903, https://ubuntu.com/security/CVE-2024-49905, https://ubuntu.com/security/CVE-2024-49907, https://ubuntu.com/security/CVE-2024-49909, https://ubuntu.com/security/CVE-2024-49911, https://ubuntu.com/security/CVE-2024-49912, https://ubuntu.com/security/CVE-2024-49913, https://ubuntu.com/security/CVE-2024-49915, https://ubuntu.com/security/CVE-2024-49917, https://ubuntu.com/security/CVE-2024-49918, https://ubuntu.com/security/CVE-2024-49919, https://ubuntu.com/security/CVE-2024-49922, https://ubuntu.com/security/CVE-2024-49923, https://ubuntu.com/security/CVE-2024-49924, https://ubuntu.com/security/CVE-2024-49925, https://ubuntu.com/security/CVE-2024-49926, https://ubuntu.com/security/CVE-2024-49927, https://ubuntu.com/security/CVE-2024-49928, https://ubuntu.com/security/CVE-2024-49929, https://ubuntu.com/security/CVE-2024-49930, https://ubuntu.com/security/CVE-2024-49931, https://ubuntu.com/security/CVE-2024-49933, https://ubuntu.com/security/CVE-2024-49934, https://ubuntu.com/security/CVE-2024-49935, https://ubuntu.com/security/CVE-2024-49936, https://ubuntu.com/security/CVE-2024-49937, https://ubuntu.com/security/CVE-2024-49938, https://ubuntu.com/security/CVE-2024-49939, https://ubuntu.com/security/CVE-2024-49942, https://ubuntu.com/security/CVE-2024-49944, https://ubuntu.com/security/CVE-2024-49945, https://ubuntu.com/security/CVE-2024-49946, https://ubuntu.com/security/CVE-2024-49947, https://ubuntu.com/security/CVE-2024-49948, https://ubuntu.com/security/CVE-2024-49949, https://ubuntu.com/security/CVE-2024-49950, https://ubuntu.com/security/CVE-2024-49951, https://ubuntu.com/security/CVE-2024-49952, https://ubuntu.com/security/CVE-2024-49953, https://ubuntu.com/security/CVE-2024-49954, https://ubuntu.com/security/CVE-2024-49955, https://ubuntu.com/security/CVE-2024-49957, https://ubuntu.com/security/CVE-2024-49958, https://ubuntu.com/security/CVE-2024-49959, https://ubuntu.com/security/CVE-2024-49960, https://ubuntu.com/security/CVE-2024-49961, https://ubuntu.com/security/CVE-2024-49962, https://ubuntu.com/security/CVE-2024-49963, https://ubuntu.com/security/CVE-2024-49965, https://ubuntu.com/security/CVE-2024-49966, https://ubuntu.com/security/CVE-2024-49969, https://ubuntu.com/security/CVE-2024-49973, https://ubuntu.com/security/CVE-2024-49974, https://ubuntu.com/security/CVE-2024-49975, https://ubuntu.com/security/CVE-2024-49976, https://ubuntu.com/security/CVE-2024-49977, https://ubuntu.com/security/CVE-2024-49978, https://ubuntu.com/security/CVE-2024-49980, https://ubuntu.com/security/CVE-2024-49981, https://ubuntu.com/security/CVE-2024-49982, https://ubuntu.com/security/CVE-2024-49983, https://ubuntu.com/security/CVE-2024-49985, https://ubuntu.com/security/CVE-2024-49986, https://ubuntu.com/security/CVE-2024-49987, https://ubuntu.com/security/CVE-2024-49988, https://ubuntu.com/security/CVE-2024-49989, https://ubuntu.com/security/CVE-2024-49991, https://ubuntu.com/security/CVE-2024-49992, https://ubuntu.com/security/CVE-2024-49994, https://ubuntu.com/security/CVE-2024-49995, https://ubuntu.com/security/CVE-2024-49996, https://ubuntu.com/security/CVE-2024-49997, https://ubuntu.com/security/CVE-2024-49998, https://ubuntu.com/security/CVE-2024-49999, https://ubuntu.com/security/CVE-2024-50000, https://ubuntu.com/security/CVE-2024-50001, https://ubuntu.com/security/CVE-2024-50002, https://ubuntu.com/security/CVE-2024-50005, https://ubuntu.com/security/CVE-2024-50006, https://ubuntu.com/security/CVE-2024-50007, https://ubuntu.com/security/CVE-2024-50008, https://ubuntu.com/security/CVE-2024-50012, https://ubuntu.com/security/CVE-2024-50013, https://ubuntu.com/security/CVE-2024-50014, https://ubuntu.com/security/CVE-2024-50015, https://ubuntu.com/security/CVE-2024-50016, https://ubuntu.com/security/CVE-2024-50017, https://ubuntu.com/security/CVE-2024-50175, https://ubuntu.com/security/CVE-2024-50176, https://ubuntu.com/security/CVE-2024-50179, https://ubuntu.com/security/CVE-2024-53144, https://ubuntu.com/security/CVE-2025-0927

    Affected packages

    Package

    Name: linux-lowlatency-hwe-6.8

    Purl: pkg:deb/ubuntu/linux-lowlatency-hwe-6.8?arch=source&distro=jammy

    Affected ranges

    Type: ECOSYSTEM

    Events:

    Introduced- 0
    Fixed -6.8.0-54.56.1~22.04.1

    Affected versions

    6.8.0-38.38.1~22.04.2
    6.8.0-40.40.1~22.04.1
    6.8.0-44.44.1~22.04.1
    6.8.0-45.45.1~22.04.1
    6.8.0-47.47.1~22.04.1
    6.8.0-48.48.3~22.04.1
    6.8.0-49.49.1~22.04.1
    6.8.0-50.51.1~22.04.1
    6.8.0-51.52.1~22.04.1
    6.8.0-52.53.1~22.04.1

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High
    USN-7301-1 | CVE-DB