Jean-Claude Graf, Sandro Rüegge, Ali Hajiabadi, and Kaveh Razavi discovered that the Linux kernel contained insufficient branch predictor isolation between a guest and a userspace hypervisor for certain processors. This flaw is known as VMSCAPE. An attacker in a guest VM could possibly use this to expose sensitive information from the host OS.
{
"binaries": [
{
"binary_version": "6.14.0-1015.15~24.04.1",
"binary_name": "linux-buildinfo-6.14.0-1015-realtime"
},
{
"binary_version": "6.14.0-1015.15~24.04.1",
"binary_name": "linux-cloud-tools-6.14.0-1015-realtime"
},
{
"binary_version": "6.14.0-1015.15~24.04.1",
"binary_name": "linux-headers-6.14.0-1015-realtime"
},
{
"binary_version": "6.14.0-1015.15~24.04.1",
"binary_name": "linux-image-unsigned-6.14.0-1015-realtime"
},
{
"binary_version": "6.14.0-1015.15~24.04.1",
"binary_name": "linux-modules-6.14.0-1015-realtime"
},
{
"binary_version": "6.14.0-1015.15~24.04.1",
"binary_name": "linux-modules-extra-6.14.0-1015-realtime"
},
{
"binary_version": "6.14.0-1015.15~24.04.1",
"binary_name": "linux-modules-iwlwifi-6.14.0-1015-realtime"
},
{
"binary_version": "6.14.0-1015.15~24.04.1",
"binary_name": "linux-realtime-6.14-cloud-tools-6.14.0-1015"
},
{
"binary_version": "6.14.0-1015.15~24.04.1",
"binary_name": "linux-realtime-6.14-headers-6.14.0-1015"
},
{
"binary_version": "6.14.0-1015.15~24.04.1",
"binary_name": "linux-realtime-6.14-tools-6.14.0-1015"
},
{
"binary_version": "6.14.0-1015.15~24.04.1",
"binary_name": "linux-tools-6.14.0-1015-realtime"
}
],
"availability": "Available with Ubuntu Pro: https://ubuntu.com/pro"
}