Rapid7

vulnerability

Ubuntu: (Multiple Advisories) (CVE-2026-46028): Linux kernel (NVIDIA Tegra) vulnerabilities

Severity
7
CVSS
(AV:L/AC:M/Au:S/C:C/I:C/A:C)
Published
May 27, 2026
Added
May 31, 2026
Modified
Jun 7, 2026

Description

In the Linux kernel, the following vulnerability has been resolved:

crypto: algif_aead - snapshot IV for async AEAD requests

AF_ALG AEAD AIO requests currently use the socket-wide IV buffer during
request processing. For async requests, later socket activity can
update that shared state before the original request has fully
completed, which can lead to inconsistent IV handling.

Snapshot the IV into per-request storage when preparing the AEAD
request, so in-flight operations no longer depend on mutable socket
state.

Solutions

ubuntu-upgrade-linux-image-5-15-0-179-lowlatencyubuntu-upgrade-linux-image-5-15-0-179-lowlatency-64kubuntu-upgrade-linux-image-5-4-0-1143-raspiubuntu-upgrade-linux-image-5-4-0-1160-awsubuntu-upgrade-linux-image-5-4-0-231-genericubuntu-upgrade-linux-image-5-4-0-231-lowlatencyubuntu-upgrade-linux-image-6-17-0-1017-awsubuntu-upgrade-linux-image-6-17-0-1017-aws-64kubuntu-upgrade-linux-image-6-17-0-1018-gcpubuntu-upgrade-linux-image-6-17-0-1018-gcp-64kubuntu-upgrade-linux-image-6-8-0-1025-nvidia-tegraubuntu-upgrade-linux-image-6-8-0-1025-nvidia-tegra-rtubuntu-upgrade-linux-image-6-8-0-1059-azure-fipsubuntu-upgrade-linux-image-awsubuntu-upgrade-linux-image-aws-5-4ubuntu-upgrade-linux-image-aws-6-17ubuntu-upgrade-linux-image-aws-64kubuntu-upgrade-linux-image-aws-64k-6-17ubuntu-upgrade-linux-image-azure-fipsubuntu-upgrade-linux-image-azure-fips-6-8ubuntu-upgrade-linux-image-gcpubuntu-upgrade-linux-image-gcp-6-17ubuntu-upgrade-linux-image-gcp-64kubuntu-upgrade-linux-image-gcp-64k-6-17ubuntu-upgrade-linux-image-generic-5-4ubuntu-upgrade-linux-image-generic-hwe-18-04ubuntu-upgrade-linux-image-lowlatencyubuntu-upgrade-linux-image-lowlatency-5-15ubuntu-upgrade-linux-image-lowlatency-5-4ubuntu-upgrade-linux-image-lowlatency-64kubuntu-upgrade-linux-image-lowlatency-64k-5-15ubuntu-upgrade-linux-image-lowlatency-64k-hwe-20-04ubuntu-upgrade-linux-image-lowlatency-hwe-18-04ubuntu-upgrade-linux-image-lowlatency-hwe-20-04ubuntu-upgrade-linux-image-nvidia-tegraubuntu-upgrade-linux-image-nvidia-tegra-6-8ubuntu-upgrade-linux-image-nvidia-tegra-rtubuntu-upgrade-linux-image-nvidia-tegra-rt-6-8ubuntu-upgrade-linux-image-oemubuntu-upgrade-linux-image-oem-osp1ubuntu-upgrade-linux-image-raspiubuntu-upgrade-linux-image-raspi-5-4ubuntu-upgrade-linux-image-raspi-hwe-18-04ubuntu-upgrade-linux-image-raspi2ubuntu-upgrade-linux-image-snapdragon-5-4ubuntu-upgrade-linux-image-snapdragon-hwe-18-04ubuntu-upgrade-linux-image-virtual-5-4ubuntu-upgrade-linux-image-virtual-hwe-18-04

References

    Title
    Rapid7 Labs

    2026 Global Threat Landscape Report

    The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.