The Linux kernel project published an unusually large batch of 440 vulnerability advisories over a two-day period, covering flaws across subsystems including DRM/AMDGPU, KVM, RDMA, Bluetooth, Wi‑Fi, SMB, Btrfs, ext4, SPI, media, IPMI, and networking. The disclosures describe memory-safety bugs, race conditions, information leaks, bounds-check failures, integer overflows, NULL dereferences, out-of-bounds reads, and use-after-free conditions, with reporting highlighting ksmbd, TIPC, and KVM/SEV as areas of potentially higher risk. Most issues were reported after fixes were available or already merged into stable kernel branches, though many advisories had not yet received CVSS scores.
Ubuntu subsequently published security notices to address Linux kernel vulnerabilities across multiple supported releases, and the Canadian Centre for Cyber Security issued advisory AV26-717 urging organizations to review the notices and apply updates. The affected Ubuntu versions listed were 14.04 LTS, 16.04 LTS, 20.04 LTS, 24.04 LTS, and 25.10, underscoring the broad downstream impact of the kernel disclosure wave and the need for administrators to prioritize distribution-provided kernel patches, especially in environments exposing SMB services, TIPC, or SEV-enabled KVM systems.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
6 events from the most recent confirmed update back to the earliest known activity.
CSIRT.SK reported that Linux kernel developers fixed 442 vulnerabilities in new kernel releases, including 57 critical and 211 high-severity issues across multiple subsystems. The report said kernels older than 6.12.96, 6.18.39, 7.1.4, and 7.2-rc4 were affected and urged users to update through their Linux distribution.
The Canadian Centre for Cyber Security published advisory AV26-717 on July 20, 2026, summarizing Ubuntu kernel security notices issued during July 13-19 and urging administrators to apply the required updates.
Nine more Linux kernel vulnerability advisories were published on July 20, 2026, bringing the two-day total to 440 advisories. Reporting highlighted potentially higher-risk issues affecting ksmbd, TIPC, and KVM/SEV.
The Linux kernel project published 431 vulnerability advisories on July 19, 2026 as part of an unusually large disclosure wave. The advisories covered numerous flaws, with most fixes reportedly already patched or merged into stable branches.
Ubuntu published security advisories from July 13 through July 19, 2026 to address Linux kernel vulnerabilities affecting multiple supported releases, including Ubuntu 14.04 LTS, 16.04 LTS, 20.04 LTS, 24.04 LTS, and 25.10.
A large set of Linux kernel CVE announcements covering many subsystems was published across May 27 and May 28, 2026, reflecting a coordinated disclosure batch of kernel vulnerabilities.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
21 references tracked. Mallory keeps watching after this page renders.
seclists.org
Open sourcexakep.ru
Open sourcescworld.com
Open sourceseclists.org
Open sourcelore.kernel.org
Open sourcesel4.systems
Open sourceseclists.org
Open sourceseclists.org
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.