VOOZH about

URL: https://www.phoronix.com/news/Linux-6.14.7-And-Other-Stable

⇱ Linux 6.14.7 & Other Stable Kernel Releases Bring ARM64 Security Fix - Phoronix


👁 Phoronix

Linux 6.14.7 & Other Stable Kernel Releases Bring ARM64 Security Fix

Written by Michael Larabel in Linux Kernel on 18 May 2025 at 09:18 AM EDT. 1 Comment
Linux 6.14.7 and other new point releases for stable and maintained Linux kernel series were released today. Among the fixes incorporated were a notable ARM64 security fix.

Disclosed this past week was the Training Solo vulnerability affecting Intel processors and some Arm CPU cores. Upstreamed to the mainline Linux kernel was this merge for the ARM64 cBPF BHB mitigation:
"This adds the BHB mitigation into the code JITted for cBPF programs as these can be loaded by unprivileged users via features like seccomp.

The existing mechanisms to disable the BHB mitigation will also prevent the mitigation being JITted. In addition, cBPF programs loaded by processes with the SYS_ADMIN capability are not mitigated as these could equally load an eBPF program that does the same thing.

For good measure, the list of 'k' values for CPU's local mitigations is updated from the version on arm's website"

The ARM64 mitigation patches are part of today's Linux 6.14.7, 6.12.29 LTS, 6.6.91 LTS, and 6.1.139 LTS kernel releases.

👁 ARM64 mitigation patches


The ARM64 mitigation will also be part of today's Linux 6.15-rc7 release due out in the coming hours.

Michael Larabel is the principal author of Phoronix.com and founded the site in 2004 with a focus on enriching the Linux hardware experience. Michael has written more than 20,000 articles covering the state of Linux hardware support, Linux performance, graphics drivers, and other topics. Michael is also the lead developer of the Phoronix Test Suite, Phoromatic, and OpenBenchmarking.org automated benchmarking software. He can be followed via Twitter, LinkedIn, or contacted via MichaelLarabel.com.