Skip to content
ThreatCluster

Multiple Vulnerabilities in Ubuntu Linux Kernel Affecting AMD Processors

First seen 11 Oct 2026, 04:31 UTC •

Article Content

Browse articles
ThreatCluster AI
ThreatCluster •October 11, 2026 at 17:31 UTC
  • •Ubuntu released patches for multiple vulnerabilities in the Linux kernel.
  • •CVE-2023-20585 allows local attackers with hypervisor access to exploit AMD processors.
  • •Affected systems include Ubuntu 26.04 LTS and its derivatives.

On October 6, 2026, Ubuntu released security notices USN-8887-1 and USN-8889-1 addressing several vulnerabilities in the Linux kernel, particularly affecting Ubuntu 26.04 LTS and its derivatives. The vulnerabilities stem from improper Reverse Map Table (RMP) checks in some AMD processors, which could allow local attackers with hypervisor access to exploit an out-of-bounds condition and compromise SEV-SNP guest memory integrity (CVE-2023-20585). The updates also address flaws across various subsystems, including ARM64, NVDIMM drivers, and more. The severity of the vulnerabilities is classified as medium, with a CVSS score of 5.6 for CVE-2023-20585. Users are advised to apply the patches promptly to mitigate potential risks.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated just now How this analysis works

Timeline

2026-04-16
CVE-2023-20585 published
The vulnerability was disclosed, allowing potential exploitation of AMD processors due to improper RMP checks.
lwn.net
2026-07-25
CVE-2026-64349 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-07-27
CVE-2026-64532 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-07-27
CVE-2026-64533 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-07-27
CVE-2026-64537 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-07-27
CVE-2026-64538 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-07-27
CVE-2026-64539 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-07-27
CVE-2026-64540 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-07-27
CVE-2026-64542 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-07-27
CVE-2026-64543 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE

More articles in this cluster (2)

Following this threat?

Track CVE-2023-20585 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed

Common questions

Which versions of Ubuntu are affected?
Ubuntu 26.04 LTS and its derivatives are affected by the vulnerabilities.
What is the nature of the vulnerabilities?
The vulnerabilities involve improper RMP checks in AMD processors, potentially allowing local attackers with hypervisor access to exploit guest memory.
What should I do to protect my systems?
Apply the security updates provided in USN-8887-1 and USN-8889-1 to mitigate the vulnerabilities.