On Fri, May 8, 2026 at 2:16 PM William Park via Talk <talk@lists.gtalug.org> wrote:
From KWLUG list:
https://www.cve.org/CVERecord?id=CVE-2026-31431
When you scroll down, it says the following kernels are fixed:
  • 6.12.85+
  • 6.18.22+
  • 7.0+ -- Kubuntu 26.04 is using kernel 7.0, so you should be okay.

That's not how I read the alert. To me it said that:
  • All versions of 6.12.* after .85 are safe
  • All versions of 6.18.* after .22 are safe
  • All versions of 7.* are safe
Stock *buntu 24.04.1 LTS uses 6.17, which remains vulnerable. All versions of 26.04 will be safe.
My original question was whether I need to upgrade sooner than I want to, in order to get a safe kernel.
Dhaval gave the answer I needed, that the 'kmod' package offers a temporary fix which buys time until I want to upgrade.

- Evan