Kernel Security
The latest Kernel Security coverage — news, analysis, and updates from the WindowsNews.AI desk.
CVE-2025-38624: Microsoft Confirms Azure Linux Impact, But Other Products Not Yet Verified
Microsoft has published an advisory for CVE-2025-38624, a Linux kernel vulnerability that can trigger kernel panics in the PowerNV PCI hotplug driver. The company confirmed that its Azure Linux...
Microsoft Warns Azure Linux Users: Kernel Crash Bug Patched, But More Systems Could Be Vulnerable
Microsoft has publicly confirmed that Azure Linux carries a kernel-level flaw that can be exploited to crash affected systems. The vulnerability, tracked as CVE-2025-38635, stems from a missing...
Azure Linux at Risk from Kernel Bug CVE-2025-38639: What to Patch Now
Microsoft has confirmed that Azure Linux is vulnerable to a memory corruption bug in the Linux kernel’s netfilter subsystem. The advisory, published under the company’s new CSAF/VEX transparency...
Intel P-Unit IPC Kernel Bug: Why a Single Extra Ampersand Threatens Your System and How to Patch It Now
On December 16, 2025, Microsoft published security advisory CVE-2025-68303, warning that a subtle pointer mistake in the Linux kernel's Intel P-Unit IPC driver can corrupt kernel memory, crash...
Microsoft Confirms Azure Linux Affected by CVE-2025-38482; Other Products May Still Be at Risk
Microsoft has issued an advisory for CVE-2025-38482, a vulnerability in the Linux kernel's comedi subsystem that could allow a local attacker to trigger undefined behavior via a...
Kernel Flaw Let Attackers Crash Ceph Clusters: Here’s the Fix (CVE-2025-68283)
On December 16, 2025, the Linux kernel maintainers committed a patch that neutralizes a serious vulnerability in the Ceph storage client. The fix, assigned CVE-2025-68283, eliminates a kernel panic...
CVE-2025-38425: Microsoft Says Azure Linux Affected—Here’s What to Do About All Your Other Microsoft Linux Installations
Microsoft’s July 2025 advisory for CVE-2025-38425 confirms that Azure Linux kernels are vulnerable to a local out-of-bounds read bug. For the first time, the company is delivering that news in a...
Microsoft confirms CVE-2025-38410 DRM flaw in Azure Linux; urges verification of other artifacts
Microsoft's recent security advisory for CVE-2025-38410 represents more than just another vulnerability disclosure—it showcases the company's evolving approach to transparency in the complex world...
Azure Linux NFSv4 pNFS Vulnerability: Microsoft's Attestation Explained
Microsoft's recent security advisory regarding a Linux kernel vulnerability in NFSv4/pNFS functionality has created important discussions about vulnerability management, transparency, and the...
CVE-2025-68358: Linux Btrfs Race Condition Could Lock Up Filesystems—And What It Means for Windows
{ "title": "CVE-2025-68358: Linux Btrfs Race Condition Could Lock Up Filesystems—And What It Means for Windows", "content": "On December 24, 2025, the Linux kernel community disclosed a race...
Microsoft Flags Kernel UAF in Linux NBD Driver – Patch Now to Protect WSL2 and Azure VMs
Microsoft has published an advisory for CVE-2025-68372, a use-after-free vulnerability in the Linux kernel’s Network Block Device (NBD) driver that can crash systems running affected kernels,...
Microsoft Warns of Kernel Bug in Linux BPF That Degrades Network Speed—WSL Users Should Update
Microsoft’s Security Response Center (MSRC) has published an advisory for CVE-2025-68725, a flaw in the Linux kernel’s BPF (Berkeley Packet Filter) test infrastructure that can trigger continuous...