USN-8643-2

Source
https://ubuntu.com/security/notices/USN-8643-2
Import Source
https://github.com/canonical/ubuntu-security-notices/blob/main/osv/usn/USN-8643-2.json
JSON Data
https://api.test.osv.dev/v1/vulns/USN-8643-2
Upstream
Related
Published
2026-08-20T21:32:40Z
Modified
2026-08-21T05:42:48.190971570Z
Summary
linux-gke, linux-lowlatency, linux-lowlatency-hwe-6.8 vulnerabilities
Details

Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - Network drivers; - Open vSwitch; - SCTP protocol; (CVE-2026-53224, CVE-2026-53246, CVE-2026-53247, CVE-2026-64531)

References

Affected packages

Ubuntu:22.04:LTS / linux-lowlatency-hwe-6.8

Package

Name
linux-lowlatency-hwe-6.8
Purl
pkg:deb/ubuntu/linux-lowlatency-hwe-6.8?arch=source&distro=jammy

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
6.8.0-138.138.1~22.04.1

Affected versions

6.*
6.8.0-38.38.1~22.04.2
6.8.0-40.40.1~22.04.1
6.8.0-44.44.1~22.04.1
6.8.0-45.45.1~22.04.1
6.8.0-47.47.1~22.04.1
6.8.0-48.48.3~22.04.1
6.8.0-49.49.1~22.04.1
6.8.0-50.51.1~22.04.1
6.8.0-51.52.1~22.04.1
6.8.0-52.53.1~22.04.1
6.8.0-54.56.1~22.04.1
6.8.0-55.57.1~22.04.1
6.8.0-56.58.1~22.04.1
6.8.0-57.59.1~22.04.1
6.8.0-58.60.1~22.04.1
6.8.0-59.61.1~22.04.1
6.8.0-60.63.1~22.04.1
6.8.0-62.65.1~22.04.1
6.8.0-63.66.1~22.04.1
6.8.0-64.67.1~22.04.1
6.8.0-65.68.1~22.04.1
6.8.0-78.78.1~22.04.1
6.8.0-79.79.1~22.04.1
6.8.0-83.83.1~22.04.1
6.8.0-84.84.1~22.04.1
6.8.0-85.85.1~22.04.1
6.8.0-86.87.1~22.04.1
6.8.0-87.88.1~22.04.1
6.8.0-88.89.1~22.04.1
6.8.0-90.91.1~22.04.1
6.8.0-94.96.1~22.04.1
6.8.0-100.100.1~22.04.1
6.8.0-101.101.1~22.04.1
6.8.0-106.106.1~22.04.1
6.8.0-107.107.1~22.04.1
6.8.0-110.110.1~22.04.1
6.8.0-111.111.1~22.04.1
6.8.0-117.117.1~22.04.1
6.8.0-134.134.1~22.04.1
6.8.0-136.136.2~22.04.1
6.8.0-137.137.1~22.04.1

Ecosystem specific

{
    "availability": "No subscription required",
    "binaries": [
        {
            "binary_name": "linux-buildinfo-6.8.0-138-lowlatency",
            "binary_version": "6.8.0-138.138.1~22.04.1"
        },
        {
            "binary_name": "linux-buildinfo-6.8.0-138-lowlatency-64k",
            "binary_version": "6.8.0-138.138.1~22.04.1"
        },
        {
            "binary_name": "linux-cloud-tools-6.8.0-138-lowlatency",
            "binary_version": "6.8.0-138.138.1~22.04.1"
        },
        {
            "binary_name": "linux-headers-6.8.0-138-lowlatency",
            "binary_version": "6.8.0-138.138.1~22.04.1"
        },
        {
            "binary_name": "linux-headers-6.8.0-138-lowlatency-64k",
            "binary_version": "6.8.0-138.138.1~22.04.1"
        },
        {
            "binary_name": "linux-image-unsigned-6.8.0-138-lowlatency",
            "binary_version": "6.8.0-138.138.1~22.04.1"
        },
        {
            "binary_name": "linux-image-unsigned-6.8.0-138-lowlatency-64k",
            "binary_version": "6.8.0-138.138.1~22.04.1"
        },
        {
            "binary_name": "linux-lowlatency-hwe-6.8-cloud-tools-6.8.0-138",
            "binary_version": "6.8.0-138.138.1~22.04.1"
        },
        {
            "binary_name": "linux-lowlatency-hwe-6.8-headers-6.8.0-138",
            "binary_version": "6.8.0-138.138.1~22.04.1"
        },
        {
            "binary_name": "linux-lowlatency-hwe-6.8-lib-rust-6.8.0-138-lowlatency",
            "binary_version": "6.8.0-138.138.1~22.04.1"
        },
        {
            "binary_name": "linux-lowlatency-hwe-6.8-tools-6.8.0-138",
            "binary_version": "6.8.0-138.138.1~22.04.1"
        },
        {
            "binary_name": "linux-modules-6.8.0-138-lowlatency",
            "binary_version": "6.8.0-138.138.1~22.04.1"
        },
        {
            "binary_name": "linux-modules-6.8.0-138-lowlatency-64k",
            "binary_version": "6.8.0-138.138.1~22.04.1"
        },
        {
            "binary_name": "linux-modules-iwlwifi-6.8.0-138-lowlatency",
            "binary_version": "6.8.0-138.138.1~22.04.1"
        },
        {
            "binary_name": "linux-tools-6.8.0-138-lowlatency",
            "binary_version": "6.8.0-138.138.1~22.04.1"
        },
        {
            "binary_name": "linux-tools-6.8.0-138-lowlatency-64k",
            "binary_version": "6.8.0-138.138.1~22.04.1"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/usn/USN-8643-2.json"
cves_map
{
    "ecosystem": "Ubuntu:22.04:LTS",
    "cves": [
        {
            "id": "CVE-2026-53224",
            "severity": [
                {
                    "type": "CVSS_V4",
                    "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:H/SC:N/SI:N/SA:N"
                },
                {
                    "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H",
                    "type": "CVSS_V3"
                },
                {
                    "score": "high",
                    "type": "Ubuntu"
                }
            ]
        },
        {
            "id": "CVE-2026-53246",
            "severity": [
                {
                    "type": "CVSS_V4",
                    "score": "CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:H/SC:N/SI:N/SA:N"
                },
                {
                    "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
                    "type": "CVSS_V3"
                },
                {
                    "type": "Ubuntu",
                    "score": "medium"
                }
            ]
        },
        {
            "id": "CVE-2026-53247",
            "severity": [
                {
                    "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
                    "type": "CVSS_V3"
                },
                {
                    "score": "low",
                    "type": "Ubuntu"
                }
            ]
        },
        {
            "id": "CVE-2026-64531",
            "severity": [
                {
                    "type": "CVSS_V4",
                    "score": "CVSS:4.0/AV:L/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N"
                },
                {
                    "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
                    "type": "CVSS_V3"
                },
                {
                    "type": "Ubuntu",
                    "score": "high"
                }
            ]
        }
    ]
}

Ubuntu:24.04:LTS / linux-gke

Package

Name
linux-gke
Purl
pkg:deb/ubuntu/linux-gke?arch=source&distro=noble

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
6.8.0-1061.69

Affected versions

6.*
6.8.0-1003.5
6.8.0-1004.7
6.8.0-1005.8
6.8.0-1006.9
6.8.0-1007.10
6.8.0-1008.11
6.8.0-1009.12
6.8.0-1010.13
6.8.0-1011.14
6.8.0-1012.15
6.8.0-1013.17
6.8.0-1014.18
6.8.0-1015.19
6.8.0-1016.20
6.8.0-1017.21
6.8.0-1019.23
6.8.0-1020.24
6.8.0-1021.25
6.8.0-1022.26
6.8.0-1023.27
6.8.0-1024.28
6.8.0-1025.29
6.8.0-1026.30
6.8.0-1027.31
6.8.0-1028.32
6.8.0-1029.33
6.8.0-1032.36
6.8.0-1033.37
6.8.0-1035.39
6.8.0-1036.40
6.8.0-1037.41
6.8.0-1038.43
6.8.0-1039.44
6.8.0-1040.45
6.8.0-1041.46
6.8.0-1042.47
6.8.0-1043.48
6.8.0-1044.49
6.8.0-1048.53
6.8.0-1049.54
6.8.0-1050.56
6.8.0-1051.57
6.8.0-1054.60
6.8.0-1055.61
6.8.0-1058.64
6.8.0-1059.67
6.8.0-1060.68

Ecosystem specific

{
    "availability": "No subscription required",
    "binaries": [
        {
            "binary_name": "linux-buildinfo-6.8.0-1061-gke",
            "binary_version": "6.8.0-1061.69"
        },
        {
            "binary_name": "linux-buildinfo-6.8.0-1061-gke-64k",
            "binary_version": "6.8.0-1061.69"
        },
        {
            "binary_name": "linux-gke-headers-6.8.0-1061",
            "binary_version": "6.8.0-1061.69"
        },
        {
            "binary_name": "linux-gke-tools-6.8.0-1061",
            "binary_version": "6.8.0-1061.69"
        },
        {
            "binary_name": "linux-headers-6.8.0-1061-gke",
            "binary_version": "6.8.0-1061.69"
        },
        {
            "binary_name": "linux-headers-6.8.0-1061-gke-64k",
            "binary_version": "6.8.0-1061.69"
        },
        {
            "binary_name": "linux-image-unsigned-6.8.0-1061-gke",
            "binary_version": "6.8.0-1061.69"
        },
        {
            "binary_name": "linux-image-unsigned-6.8.0-1061-gke-64k",
            "binary_version": "6.8.0-1061.69"
        },
        {
            "binary_name": "linux-modules-6.8.0-1061-gke",
            "binary_version": "6.8.0-1061.69"
        },
        {
            "binary_name": "linux-modules-6.8.0-1061-gke-64k",
            "binary_version": "6.8.0-1061.69"
        },
        {
            "binary_name": "linux-modules-extra-6.8.0-1061-gke",
            "binary_version": "6.8.0-1061.69"
        },
        {
            "binary_name": "linux-modules-extra-6.8.0-1061-gke-64k",
            "binary_version": "6.8.0-1061.69"
        },
        {
            "binary_name": "linux-modules-iwlwifi-6.8.0-1061-gke",
            "binary_version": "6.8.0-1061.69"
        },
        {
            "binary_name": "linux-tools-6.8.0-1061-gke",
            "binary_version": "6.8.0-1061.69"
        },
        {
            "binary_name": "linux-tools-6.8.0-1061-gke-64k",
            "binary_version": "6.8.0-1061.69"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/usn/USN-8643-2.json"
cves_map
{
    "ecosystem": "Ubuntu:24.04:LTS",
    "cves": [
        {
            "id": "CVE-2026-53224",
            "severity": [
                {
                    "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:H/SC:N/SI:N/SA:N",
                    "type": "CVSS_V4"
                },
                {
                    "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H",
                    "type": "CVSS_V3"
                },
                {
                    "type": "Ubuntu",
                    "score": "high"
                }
            ]
        },
        {
            "id": "CVE-2026-53246",
            "severity": [
                {
                    "type": "CVSS_V4",
                    "score": "CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:H/SC:N/SI:N/SA:N"
                },
                {
                    "type": "CVSS_V3",
                    "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
                },
                {
                    "score": "medium",
                    "type": "Ubuntu"
                }
            ]
        },
        {
            "id": "CVE-2026-53247",
            "severity": [
                {
                    "type": "CVSS_V3",
                    "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
                },
                {
                    "score": "low",
                    "type": "Ubuntu"
                }
            ]
        },
        {
            "id": "CVE-2026-64531",
            "severity": [
                {
                    "type": "CVSS_V4",
                    "score": "CVSS:4.0/AV:L/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N"
                },
                {
                    "type": "CVSS_V3",
                    "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
                },
                {
                    "type": "Ubuntu",
                    "score": "high"
                }
            ]
        }
    ]
}

Ubuntu:24.04:LTS / linux-lowlatency

Package

Name
linux-lowlatency
Purl
pkg:deb/ubuntu/linux-lowlatency?arch=source&distro=noble

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
6.8.0-138.138.1

Affected versions

6.*
6.5.0-9.9.1
6.6.0-14.14.1
6.8.0-7.7.1
6.8.0-25.25.3
6.8.0-28.28.1
6.8.0-31.31.1
6.8.0-35.35.1
6.8.0-36.36.1
6.8.0-38.38.1
6.8.0-39.39.1
6.8.0-40.40.1
6.8.0-41.41.1
6.8.0-44.44.1
6.8.0-45.45.1
6.8.0-47.47.1
6.8.0-48.48.3
6.8.0-49.49.1
6.8.0-50.51.1
6.8.0-51.52.1
6.8.0-52.53.1
6.8.0-53.55.2
6.8.0-54.56.1
6.8.0-55.57.1
6.8.0-56.58.1
6.8.0-57.59.1
6.8.0-58.60.1
6.8.0-59.61.1
6.8.0-60.63.1
6.8.0-62.65.1
6.8.0-63.66.1
6.8.0-64.67.1
6.8.0-65.68.1
6.8.0-78.78.1
6.8.0-79.79.1
6.8.0-83.83.1
6.8.0-84.84.1
6.8.0-85.85.1
6.8.0-86.87.1
6.8.0-87.88.1
6.8.0-88.89.1
6.8.0-90.91.1
6.8.0-94.96.1
6.8.0-100.100.1
6.8.0-101.101.1
6.8.0-106.106.1
6.8.0-107.107.1
6.8.0-110.110.1
6.8.0-111.111.1
6.8.0-117.117.1
6.8.0-134.134.1
6.8.0-136.136.2
6.8.0-137.137.1

Ecosystem specific

{
    "availability": "No subscription required",
    "binaries": [
        {
            "binary_name": "linux-buildinfo-6.8.0-138-lowlatency",
            "binary_version": "6.8.0-138.138.1"
        },
        {
            "binary_name": "linux-buildinfo-6.8.0-138-lowlatency-64k",
            "binary_version": "6.8.0-138.138.1"
        },
        {
            "binary_name": "linux-cloud-tools-6.8.0-138-lowlatency",
            "binary_version": "6.8.0-138.138.1"
        },
        {
            "binary_name": "linux-headers-6.8.0-138-lowlatency",
            "binary_version": "6.8.0-138.138.1"
        },
        {
            "binary_name": "linux-headers-6.8.0-138-lowlatency-64k",
            "binary_version": "6.8.0-138.138.1"
        },
        {
            "binary_name": "linux-image-unsigned-6.8.0-138-lowlatency",
            "binary_version": "6.8.0-138.138.1"
        },
        {
            "binary_name": "linux-image-unsigned-6.8.0-138-lowlatency-64k",
            "binary_version": "6.8.0-138.138.1"
        },
        {
            "binary_name": "linux-lowlatency-cloud-tools-6.8.0-138",
            "binary_version": "6.8.0-138.138.1"
        },
        {
            "binary_name": "linux-lowlatency-headers-6.8.0-138",
            "binary_version": "6.8.0-138.138.1"
        },
        {
            "binary_name": "linux-lowlatency-lib-rust-6.8.0-138-lowlatency",
            "binary_version": "6.8.0-138.138.1"
        },
        {
            "binary_name": "linux-lowlatency-tools-6.8.0-138",
            "binary_version": "6.8.0-138.138.1"
        },
        {
            "binary_name": "linux-modules-6.8.0-138-lowlatency",
            "binary_version": "6.8.0-138.138.1"
        },
        {
            "binary_name": "linux-modules-6.8.0-138-lowlatency-64k",
            "binary_version": "6.8.0-138.138.1"
        },
        {
            "binary_name": "linux-modules-iwlwifi-6.8.0-138-lowlatency",
            "binary_version": "6.8.0-138.138.1"
        },
        {
            "binary_name": "linux-tools-6.8.0-138-lowlatency",
            "binary_version": "6.8.0-138.138.1"
        },
        {
            "binary_name": "linux-tools-6.8.0-138-lowlatency-64k",
            "binary_version": "6.8.0-138.138.1"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/usn/USN-8643-2.json"
cves_map
{
    "ecosystem": "Ubuntu:24.04:LTS",
    "cves": [
        {
            "id": "CVE-2026-53224",
            "severity": [
                {
                    "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:H/SC:N/SI:N/SA:N",
                    "type": "CVSS_V4"
                },
                {
                    "type": "CVSS_V3",
                    "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H"
                },
                {
                    "score": "high",
                    "type": "Ubuntu"
                }
            ]
        },
        {
            "id": "CVE-2026-53246",
            "severity": [
                {
                    "type": "CVSS_V4",
                    "score": "CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:H/SC:N/SI:N/SA:N"
                },
                {
                    "type": "CVSS_V3",
                    "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
                },
                {
                    "type": "Ubuntu",
                    "score": "medium"
                }
            ]
        },
        {
            "id": "CVE-2026-53247",
            "severity": [
                {
                    "type": "CVSS_V3",
                    "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
                },
                {
                    "type": "Ubuntu",
                    "score": "low"
                }
            ]
        },
        {
            "id": "CVE-2026-64531",
            "severity": [
                {
                    "type": "CVSS_V4",
                    "score": "CVSS:4.0/AV:L/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N"
                },
                {
                    "type": "CVSS_V3",
                    "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
                },
                {
                    "type": "Ubuntu",
                    "score": "high"
                }
            ]
        }
    ]
}