{"id":"USN-8015-2","summary":"linux-realtime, linux-realtime-6.8, linux-raspi-realtime vulnerabilities","details":"Several security issues were discovered in the Linux kernel.\nAn attacker could possibly use these to compromise the system.\nThis update corrects flaws in the following subsystems:\n  - Cryptographic API;\n  - SMB network file system;\n  - io_uring subsystem;\n(CVE-2025-38561, CVE-2025-39698, CVE-2025-40019)\n","modified":"2026-02-10T04:50:49Z","published":"2026-02-04T20:52:36Z","related":["UBUNTU-CVE-2025-38561","UBUNTU-CVE-2025-39698","UBUNTU-CVE-2025-40019"],"upstream":["CVE-2025-38561","CVE-2025-39698","CVE-2025-40019","UBUNTU-CVE-2025-38561","UBUNTU-CVE-2025-39698","UBUNTU-CVE-2025-40019"],"references":[{"type":"ADVISORY","url":"https://ubuntu.com/security/notices/USN-8015-2"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2025-38561"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2025-39698"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2025-40019"}],"affected":[{"package":{"name":"linux-realtime-6.8","ecosystem":"Ubuntu:Pro:Realtime:22.04:LTS","purl":"pkg:deb/ubuntu/linux-realtime-6.8@6.8.1-1040.41~22.04.1?arch=source&distro=realtime/jammy"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"6.8.1-1040.41~22.04.1"}]}],"versions":["6.8.1-1004.4~22.04.1","6.8.1-1005.5~22.04.2","6.8.1-1006.6~22.04.1","6.8.1-1007.7~22.04.1","6.8.1-1008.8~22.04.1","6.8.1-1009.9~22.04.1","6.8.1-1010.10~22.04.1","6.8.1-1011.11~22.04.1","6.8.1-1012.12~22.04.1","6.8.1-1013.14~22.04.1","6.8.1-1014.15~22.04.1","6.8.1-1015.16~22.04.1","6.8.1-1016.17~22.04.1","6.8.1-1017.18~22.04.1","6.8.1-1018.19~22.04.1","6.8.1-1019.20~22.04.1","6.8.1-1020.21~22.04.1","6.8.1-1021.22~22.04.1","6.8.1-1022.23~22.04.1","6.8.1-1023.24~22.04.1","6.8.1-1024.25~22.04.1","6.8.1-1025.26~22.04.1","6.8.1-1026.27~22.04.1","6.8.1-1030.31~22.04.1","6.8.1-1031.32~22.04.1","6.8.1-1034.35~22.04.1","6.8.1-1035.36~22.04.1","6.8.1-1036.37~22.04.1","6.8.1-1037.38~22.04.1","6.8.1-1038.39~22.04.1","6.8.1-1039.40~22.04.1"],"ecosystem_specific":{"binaries":[{"binary_version":"6.8.1-1040.41~22.04.1","binary_name":"linux-buildinfo-6.8.1-1040-realtime"},{"binary_version":"6.8.1-1040.41~22.04.1","binary_name":"linux-cloud-tools-6.8.1-1040-realtime"},{"binary_version":"6.8.1-1040.41~22.04.1","binary_name":"linux-headers-6.8.1-1040-realtime"},{"binary_version":"6.8.1-1040.41~22.04.1","binary_name":"linux-image-unsigned-6.8.1-1040-realtime"},{"binary_version":"6.8.1-1040.41~22.04.1","binary_name":"linux-modules-6.8.1-1040-realtime"},{"binary_version":"6.8.1-1040.41~22.04.1","binary_name":"linux-modules-extra-6.8.1-1040-realtime"},{"binary_version":"6.8.1-1040.41~22.04.1","binary_name":"linux-modules-iwlwifi-6.8.1-1040-realtime"},{"binary_version":"6.8.1-1040.41~22.04.1","binary_name":"linux-realtime-6.8-cloud-tools-6.8.1-1040"},{"binary_version":"6.8.1-1040.41~22.04.1","binary_name":"linux-realtime-6.8-headers-6.8.1-1040"},{"binary_version":"6.8.1-1040.41~22.04.1","binary_name":"linux-realtime-6.8-tools-6.8.1-1040"},{"binary_version":"6.8.1-1040.41~22.04.1","binary_name":"linux-tools-6.8.1-1040-realtime"}],"availability":"Available with Ubuntu Pro: https://ubuntu.com/pro"},"database_specific":{"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/usn/USN-8015-2.json","cves_map":{"cves":[{"id":"CVE-2025-38561","severity":[{"score":"CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"high","type":"Ubuntu"}]},{"id":"CVE-2025-39698","severity":[{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"high","type":"Ubuntu"}]},{"id":"CVE-2025-40019","severity":[{"score":"medium","type":"Ubuntu"}]}],"ecosystem":"Ubuntu:Pro:Realtime:22.04:LTS"}}},{"package":{"name":"linux-raspi-realtime","ecosystem":"Ubuntu:Pro:Realtime:24.04:LTS","purl":"pkg:deb/ubuntu/linux-raspi-realtime@6.8.0-2036.37?arch=source&distro=realtime/noble"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"6.8.0-2036.37"}]}],"versions":["6.7.0-2001.1","6.8.0-2001.1","6.8.0-2002.2","6.8.0-2004.4","6.8.0-2005.5","6.8.0-2006.6","6.8.0-2007.7","6.8.0-2008.8","6.8.0-2009.9","6.8.0-2010.10","6.8.0-2011.11","6.8.0-2012.12","6.8.0-2013.14","6.8.0-2014.15","6.8.0-2015.16","6.8.0-2016.17","6.8.0-2017.18","6.8.0-2018.19","6.8.0-2019.20","6.8.0-2022.23","6.8.0-2023.24","6.8.0-2024.25","6.8.0-2025.26","6.8.0-2026.27","6.8.0-2028.29","6.8.0-2029.30","6.8.0-2030.31","6.8.0-2031.32","6.8.0-2032.33","6.8.0-2033.34","6.8.0-2034.35","6.8.0-2035.36"],"ecosystem_specific":{"binaries":[{"binary_version":"6.8.0-2036.37","binary_name":"linux-buildinfo-6.8.0-2036-raspi-realtime"},{"binary_version":"6.8.0-2036.37","binary_name":"linux-headers-6.8.0-2036-raspi-realtime"},{"binary_version":"6.8.0-2036.37","binary_name":"linux-image-6.8.0-2036-raspi-realtime"},{"binary_version":"6.8.0-2036.37","binary_name":"linux-modules-6.8.0-2036-raspi-realtime"},{"binary_version":"6.8.0-2036.37","binary_name":"linux-raspi-realtime-headers-6.8.0-2036"},{"binary_version":"6.8.0-2036.37","binary_name":"linux-raspi-realtime-tools-6.8.0-2036"},{"binary_version":"6.8.0-2036.37","binary_name":"linux-tools-6.8.0-2036-raspi-realtime"}],"availability":"Available with Ubuntu Pro: https://ubuntu.com/pro"},"database_specific":{"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/usn/USN-8015-2.json","cves_map":{"cves":[{"id":"CVE-2025-38561","severity":[{"score":"CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"high","type":"Ubuntu"}]},{"id":"CVE-2025-39698","severity":[{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"high","type":"Ubuntu"}]},{"id":"CVE-2025-40019","severity":[{"score":"medium","type":"Ubuntu"}]}],"ecosystem":"Ubuntu:Pro:Realtime:24.04:LTS"}}},{"package":{"name":"linux-realtime","ecosystem":"Ubuntu:Pro:Realtime:24.04:LTS","purl":"pkg:deb/ubuntu/linux-realtime@6.8.1-1040.41?arch=source&distro=realtime/noble"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"6.8.1-1040.41"}]}],"versions":["6.8.0-1008.19","6.8.1-1001.1","6.8.1-1002.2","6.8.1-1003.3","6.8.1-1004.4","6.8.1-1005.5","6.8.1-1006.6","6.8.1-1007.7","6.8.1-1008.8","6.8.1-1009.9","6.8.1-1010.10","6.8.1-1011.11","6.8.1-1012.12","6.8.1-1013.14","6.8.1-1014.15","6.8.1-1015.16","6.8.1-1016.17","6.8.1-1017.18","6.8.1-1018.19","6.8.1-1019.20","6.8.1-1020.21","6.8.1-1021.22","6.8.1-1022.23","6.8.1-1023.24","6.8.1-1024.25","6.8.1-1025.26","6.8.1-1026.27","6.8.1-1030.31","6.8.1-1031.32","6.8.1-1033.34","6.8.1-1034.35","6.8.1-1035.36","6.8.1-1036.37","6.8.1-1037.38","6.8.1-1038.39","6.8.1-1039.40"],"ecosystem_specific":{"binaries":[{"binary_version":"6.8.1-1040.41","binary_name":"linux-buildinfo-6.8.1-1040-realtime"},{"binary_version":"6.8.1-1040.41","binary_name":"linux-cloud-tools-6.8.1-1040-realtime"},{"binary_version":"6.8.1-1040.41","binary_name":"linux-headers-6.8.1-1040-realtime"},{"binary_version":"6.8.1-1040.41","binary_name":"linux-image-unsigned-6.8.1-1040-realtime"},{"binary_version":"6.8.1-1040.41","binary_name":"linux-modules-6.8.1-1040-realtime"},{"binary_version":"6.8.1-1040.41","binary_name":"linux-modules-extra-6.8.1-1040-realtime"},{"binary_version":"6.8.1-1040.41","binary_name":"linux-modules-iwlwifi-6.8.1-1040-realtime"},{"binary_version":"6.8.1-1040.41","binary_name":"linux-realtime-cloud-tools-6.8.1-1040"},{"binary_version":"6.8.1-1040.41","binary_name":"linux-realtime-headers-6.8.1-1040"},{"binary_version":"6.8.1-1040.41","binary_name":"linux-realtime-tools-6.8.1-1040"},{"binary_version":"6.8.1-1040.41","binary_name":"linux-tools-6.8.1-1040-realtime"}],"availability":"Available with Ubuntu Pro: https://ubuntu.com/pro"},"database_specific":{"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/usn/USN-8015-2.json","cves_map":{"cves":[{"id":"CVE-2025-38561","severity":[{"score":"CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"high","type":"Ubuntu"}]},{"id":"CVE-2025-39698","severity":[{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"high","type":"Ubuntu"}]},{"id":"CVE-2025-40019","severity":[{"score":"medium","type":"Ubuntu"}]}],"ecosystem":"Ubuntu:Pro:Realtime:24.04:LTS"}}}],"schema_version":"1.7.3"}