USN-8714-3

Source
https://ubuntu.com/security/notices/USN-8714-3
Import Source
https://github.com/canonical/ubuntu-security-notices/blob/main/osv/usn/USN-8714-3.json
JSON Data
https://api.test.osv.dev/v1/vulns/USN-8714-3
Upstream
Related
Published
2026-09-18T08:37:18Z
Modified
2026-09-18T18:41:58Z
Summary
linux-azure-5.4, linux-gcp-fips vulnerabilities
Details

Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems:

  • OCFS2 file system;
  • SCTP protocol; (CVE-2026-53043, CVE-2026-53224, CVE-2026-53225, CVE-2026-53246, CVE-2026-53309)
References

Affected packages

Ubuntu:Pro:18.04:LTS / linux-azure-5.4

Package

Name
linux-azure-5.4
Purl
pkg:deb/ubuntu/linux-azure-5.4?arch=source&distro=esm-infra%2Fbionic

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0 Unknown introduced version / All previous versions are affected
Fixed
5.4.0-1168.174~18.04.1

Affected versions

5.*
5.4.0-1020.20~18.04.1
5.4.0-1022.22~18.04.1
5.4.0-1023.23~18.04.1
5.4.0-1025.25~18.04.1
5.4.0-1026.26~18.04.1
5.4.0-1031.32~18.04.1
5.4.0-1032.33~18.04.1
5.4.0-1034.35~18.04.1
5.4.0-1035.36~18.04.1
5.4.0-1036.38~18.04.1
5.4.0-1039.41~18.04.1
5.4.0-1040.42~18.04.1
5.4.0-1041.43~18.04.1
5.4.0-1043.45~18.04.1
5.4.0-1044.46~18.04.1
5.4.0-1046.48~18.04.1
5.4.0-1047.49~18.04.1
5.4.0-1048.50~18.04.1
5.4.0-1049.51~18.04.1
5.4.0-1051.53~18.04.1
5.4.0-1055.57~18.04.1
5.4.0-1056.58~18.04.1
5.4.0-1058.60~18.04.1
5.4.0-1059.62~18.04.1
5.4.0-1061.64~18.04.1
5.4.0-1062.65~18.04.1
5.4.0-1063.66~18.04.1
5.4.0-1064.67~18.04.1
5.4.0-1065.68~18.04.1
5.4.0-1067.70~18.04.1
5.4.0-1068.71~18.04.1
5.4.0-1069.72~18.04.1
5.4.0-1070.73~18.04.1
5.4.0-1072.75~18.04.1
5.4.0-1073.76~18.04.1
5.4.0-1074.77~18.04.1
5.4.0-1077.80~18.04.1
5.4.0-1078.81~18.04.1
5.4.0-1080.83~18.04.2
5.4.0-1083.87~18.04.1
5.4.0-1085.90~18.04.1
5.4.0-1086.91~18.04.1
5.4.0-1089.94~18.04.1
5.4.0-1090.95~18.04.1
5.4.0-1091.96~18.04.1
5.4.0-1094.100~18.04.1
5.4.0-1095.101~18.04.1
5.4.0-1098.104~18.04.2
5.4.0-1100.106~18.04.1
5.4.0-1101.107~18.04.1
5.4.0-1103.109~18.04.1
5.4.0-1104.110~18.04.1
5.4.0-1105.111~18.04.1
5.4.0-1106.112~18.04.1
5.4.0-1107.113~18.04.1
5.4.0-1108.114~18.04.1
5.4.0-1109.115~18.04.1
5.4.0-1110.116~18.04.1
5.4.0-1111.117~18.04.1
5.4.0-1112.118~18.04.1
5.4.0-1113.119~18.04.1
5.4.0-1115.122~18.04.1
5.4.0-1116.123~18.04.1
5.4.0-1117.124~18.04.1
5.4.0-1118.125~18.04.1
5.4.0-1119.126~18.04.2
5.4.0-1120.127~18.04.1
5.4.0-1121.128~18.04.1
5.4.0-1122.129~18.04.1
5.4.0-1123.130~18.04.1
5.4.0-1124.131~18.04.1
5.4.0-1126.133~18.04.1
5.4.0-1127.134~18.04.1
5.4.0-1128.135~18.04.1
5.4.0-1129.136~18.04.1
5.4.0-1130.137~18.04.1
5.4.0-1131.138~18.04.1
5.4.0-1132.139~18.04.1
5.4.0-1133.140~18.04.1
5.4.0-1134.141~18.04.1
5.4.0-1135.142~18.04.1
5.4.0-1136.143~18.04.1
5.4.0-1137.144~18.04.1
5.4.0-1138.145~18.04.1
5.4.0-1139.146~18.04.1
5.4.0-1140.147~18.04.1
5.4.0-1142.149~18.04.1
5.4.0-1143.150~18.04.1
5.4.0-1145.152~18.04.1
5.4.0-1147.154~18.04.1
5.4.0-1148.155~18.04.1
5.4.0-1149.156~18.04.1
5.4.0-1150.157~18.04.1
5.4.0-1151.158~18.04.1
5.4.0-1152.159~18.04.1
5.4.0-1153.160~18.04.1
5.4.0-1154.161~18.04.1
5.4.0-1156.163~18.04.1
5.4.0-1157.164~18.04.1
5.4.0-1161.167~18.04.1
5.4.0-1162.168~18.04.1
5.4.0-1163.169~18.04.1
5.4.0-1164.170~18.04.1
5.4.0-1166.172~18.04.1
5.4.0-1167.173~18.04.1

Ecosystem specific

{
    "availability":  "Available with Ubuntu Pro (Infra-only): https://ubuntu.com/pro",
    "binaries":  [
        {
            "binary_name":  "linux-azure-5.4-cloud-tools-5.4.0-1168",
            "binary_version":  "5.4.0-1168.174~18.04.1"
        },
        {
            "binary_name":  "linux-azure-5.4-headers-5.4.0-1168",
            "binary_version":  "5.4.0-1168.174~18.04.1"
        },
        {
            "binary_name":  "linux-azure-5.4-tools-5.4.0-1168",
            "binary_version":  "5.4.0-1168.174~18.04.1"
        },
        {
            "binary_name":  "linux-buildinfo-5.4.0-1168-azure",
            "binary_version":  "5.4.0-1168.174~18.04.1"
        },
        {
            "binary_name":  "linux-cloud-tools-5.4.0-1168-azure",
            "binary_version":  "5.4.0-1168.174~18.04.1"
        },
        {
            "binary_name":  "linux-headers-5.4.0-1168-azure",
            "binary_version":  "5.4.0-1168.174~18.04.1"
        },
        {
            "binary_name":  "linux-image-unsigned-5.4.0-1168-azure",
            "binary_version":  "5.4.0-1168.174~18.04.1"
        },
        {
            "binary_name":  "linux-modules-5.4.0-1168-azure",
            "binary_version":  "5.4.0-1168.174~18.04.1"
        },
        {
            "binary_name":  "linux-modules-extra-5.4.0-1168-azure",
            "binary_version":  "5.4.0-1168.174~18.04.1"
        },
        {
            "binary_name":  "linux-tools-5.4.0-1168-azure",
            "binary_version":  "5.4.0-1168.174~18.04.1"
        }
    ]
}

Database specific

cves_map
{
    "cves":  [
        {
            "id":  "CVE-2026-53043",
            "severity":  [
                {
                    "score":  "CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N",
                    "type":  "CVSS_V4"
                },
                {
                    "score":  "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H",
                    "type":  "CVSS_V3"
                },
                {
                    "score":  "high",
                    "type":  "Ubuntu"
                }
            ]
        },
        {
            "id":  "CVE-2026-53224",
            "severity":  [
                {
                    "score":  "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:H/SC:N/SI:N/SA:N",
                    "type":  "CVSS_V4"
                },
                {
                    "score":  "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H",
                    "type":  "CVSS_V3"
                },
                {
                    "score":  "high",
                    "type":  "Ubuntu"
                }
            ]
        },
        {
            "id":  "CVE-2026-53225",
            "severity":  [
                {
                    "score":  "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:N/SC:N/SI:N/SA:N",
                    "type":  "CVSS_V4"
                },
                {
                    "score":  "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H",
                    "type":  "CVSS_V3"
                },
                {
                    "score":  "negligible",
                    "type":  "Ubuntu"
                }
            ]
        },
        {
            "id":  "CVE-2026-53246",
            "severity":  [
                {
                    "score":  "CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:H/SC:N/SI:N/SA:N",
                    "type":  "CVSS_V4"
                },
                {
                    "score":  "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
                    "type":  "CVSS_V3"
                },
                {
                    "score":  "medium",
                    "type":  "Ubuntu"
                }
            ]
        },
        {
            "id":  "CVE-2026-53309",
            "severity":  [
                {
                    "score":  "CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N",
                    "type":  "CVSS_V4"
                },
                {
                    "score":  "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
                    "type":  "CVSS_V3"
                },
                {
                    "score":  "medium",
                    "type":  "Ubuntu"
                }
            ]
        }
    ],
    "ecosystem":  "Ubuntu:Pro:18.04:LTS"
}
source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/usn/USN-8714-3.json"

Ubuntu:Pro:FIPS-updates:20.04:LTS / linux-gcp-fips

Package

Name
linux-gcp-fips
Purl
pkg:deb/ubuntu/linux-gcp-fips?arch=source&distro=fips-updates%2Ffocal

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0 Unknown introduced version / All previous versions are affected
Fixed
5.4.0-1166.175+fips1

Affected versions

5.*
5.4.0-1021.21+fips1
5.4.0-1067.71~20.04.1
5.4.0-1069.73+fips2
5.4.0-1071.75+fips1
5.4.0-1073.78+fips1
5.4.0-1075.80+fips1
5.4.0-1078.84+fips1
5.4.0-1080.87+fips1
5.4.0-1081.88+fips1
5.4.0-1086.94+fips1
5.4.0-1087.95+fips1
5.4.0-1089.97+fips1
5.4.0-1092.101+fips1
5.4.0-1093.102+fips1
5.4.0-1096.105+fips1
5.4.0-1097.106+fips1
5.4.0-1098.107+fips1
5.4.0-1100.109+fips1
5.4.0-1101.110+fips1
5.4.0-1102.111+fips1
5.4.0-1103.112+fips1
5.4.0-1104.113+fips1
5.4.0-1105.114+fips1
5.4.0-1106.115+fips1
5.4.0-1107.116+fips1
5.4.0-1108.117+fips1
5.4.0-1109.118+fips1
5.4.0-1110.119+fips1
5.4.0-1111.120+fips1
5.4.0-1112.121+fips1
5.4.0-1113.122+fips1
5.4.0-1115.124+fips1
5.4.0-1116.125+fips1
5.4.0-1117.126+fips1
5.4.0-1118.127+fips1
5.4.0-1120.129+fips1
5.4.0-1121.130+fips1
5.4.0-1122.131+fips1
5.4.0-1124.133+fips1
5.4.0-1125.134+fips1
5.4.0-1126.135+fips1
5.4.0-1127.136+fips1
5.4.0-1128.137+fips1
5.4.0-1129.138+fips1
5.4.0-1130.139+fips1
5.4.0-1131.140+fips1
5.4.0-1132.141+fips1
5.4.0-1133.142+fips1
5.4.0-1134.143+fips1
5.4.0-1135.144+fips1
5.4.0-1136.145+fips1
5.4.0-1137.146+fips1
5.4.0-1138.147+fips1
5.4.0-1139.148+fips1
5.4.0-1140.149+fips1
5.4.0-1141.150+fips1
5.4.0-1142.151+fips1
5.4.0-1143.152+fips1
5.4.0-1145.154+fips1
5.4.0-1146.155+fips1
5.4.0-1147.156+fips1
5.4.0-1148.157+fips1
5.4.0-1149.158+fips1
5.4.0-1150.159+fips1
5.4.0-1151.160+fips1
5.4.0-1152.161+fips1
5.4.0-1153.162+fips1
5.4.0-1154.163+fips1
5.4.0-1155.164+fips1
5.4.0-1156.165+fips1
5.4.0-1157.166+fips1
5.4.0-1159.168+fips1
5.4.0-1160.169+fips1
5.4.0-1161.170+fips1
5.4.0-1162.171+fips1
5.4.0-1163.172+fips1
5.4.0-1164.173+fips1
5.4.0-1165.174+fips1

Ecosystem specific

{
    "availability":  "Available with Ubuntu Pro: https://ubuntu.com/pro",
    "binaries":  [
        {
            "binary_name":  "linux-buildinfo-5.4.0-1166-gcp-fips",
            "binary_version":  "5.4.0-1166.175+fips1"
        },
        {
            "binary_name":  "linux-gcp-fips-headers-5.4.0-1166",
            "binary_version":  "5.4.0-1166.175+fips1"
        },
        {
            "binary_name":  "linux-gcp-fips-tools-5.4.0-1166",
            "binary_version":  "5.4.0-1166.175+fips1"
        },
        {
            "binary_name":  "linux-headers-5.4.0-1166-gcp-fips",
            "binary_version":  "5.4.0-1166.175+fips1"
        },
        {
            "binary_name":  "linux-image-unsigned-5.4.0-1166-gcp-fips",
            "binary_version":  "5.4.0-1166.175+fips1"
        },
        {
            "binary_name":  "linux-image-unsigned-hmac-5.4.0-1166-gcp-fips",
            "binary_version":  "5.4.0-1166.175+fips1"
        },
        {
            "binary_name":  "linux-modules-5.4.0-1166-gcp-fips",
            "binary_version":  "5.4.0-1166.175+fips1"
        },
        {
            "binary_name":  "linux-modules-extra-5.4.0-1166-gcp-fips",
            "binary_version":  "5.4.0-1166.175+fips1"
        },
        {
            "binary_name":  "linux-tools-5.4.0-1166-gcp-fips",
            "binary_version":  "5.4.0-1166.175+fips1"
        }
    ]
}

Database specific

cves_map
{
    "cves":  [
        {
            "id":  "CVE-2026-53043",
            "severity":  [
                {
                    "score":  "CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N",
                    "type":  "CVSS_V4"
                },
                {
                    "score":  "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H",
                    "type":  "CVSS_V3"
                },
                {
                    "score":  "high",
                    "type":  "Ubuntu"
                }
            ]
        },
        {
            "id":  "CVE-2026-53224",
            "severity":  [
                {
                    "score":  "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:H/SC:N/SI:N/SA:N",
                    "type":  "CVSS_V4"
                },
                {
                    "score":  "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H",
                    "type":  "CVSS_V3"
                },
                {
                    "score":  "high",
                    "type":  "Ubuntu"
                }
            ]
        },
        {
            "id":  "CVE-2026-53225",
            "severity":  [
                {
                    "score":  "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:N/SC:N/SI:N/SA:N",
                    "type":  "CVSS_V4"
                },
                {
                    "score":  "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H",
                    "type":  "CVSS_V3"
                },
                {
                    "score":  "negligible",
                    "type":  "Ubuntu"
                }
            ]
        },
        {
            "id":  "CVE-2026-53246",
            "severity":  [
                {
                    "score":  "CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:H/SC:N/SI:N/SA:N",
                    "type":  "CVSS_V4"
                },
                {
                    "score":  "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
                    "type":  "CVSS_V3"
                },
                {
                    "score":  "medium",
                    "type":  "Ubuntu"
                }
            ]
        },
        {
            "id":  "CVE-2026-53309",
            "severity":  [
                {
                    "score":  "CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N",
                    "type":  "CVSS_V4"
                },
                {
                    "score":  "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
                    "type":  "CVSS_V3"
                },
                {
                    "score":  "medium",
                    "type":  "Ubuntu"
                }
            ]
        }
    ],
    "ecosystem":  "Ubuntu:Pro:FIPS-updates:20.04:LTS"
}
source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/usn/USN-8714-3.json"