The Wire · Showcase
KERNEL 7.0.9-ARCH2 LANDS WITH CRITICAL SECURITY AND NETWORKING FIXES
By RepoJournal · Filed · About Arch Linux
Arch Linux kernel patches hit the wire overnight, addressing unprivileged namespace vulnerabilities and fixing a malformed scatterlist bug that could corrupt memory buffers.
The new v7.0.9-arch2 kernel [1] ships four critical patches directly on top of stable, including a sysctl to disable unprivileged CLONE_NEWUSER namespaces, a udmabuf fix for malformed scatterlists, and two network stack coalescing fixes that preserve frag markers. This lands as the kernel tree continues absorbing 7.1-rc5 power management fixes [2] for Intel Pstate frequency computation on newer processors, alongside ACPI battery wakeup fixes [3] that unbreak critical battery notifications. ARM64 [4] and s390 [5] also merged architecture-specific fixes for probe handling and PAI counter reporting. On the infrastructure side, the Synapse Matrix server bumped to 1.153.0 and draupnir to v3.1.0 [6] [7], but a shell configuration mistake was quickly caught and reverted before it could propagate [8]. The repos also absorbed routine package updates across GNOME Software, Evolution, and toolchain dependencies [9] [10] .
Action items
- → Rebuild and deploy kernel 7.0.9-arch2 immediately - unprivileged namespace fix is critical archlinux/linux [immediate]
- → Verify infrastructure shell revert applied cleanly across all user configs archlinux/infrastructure [plan]
- → Stage GNOME Software 50.2 and Evolution-EWS 3.60.2 for next release cycle archlinux/packages [plan]
- → Monitor Synapse 1.153.0 stability in staging before production cutover archlinux/infrastructure [monitor]
References
- [1] Arch Linux kernel v7.0.9-arch2 ↗ archlinux/linux
- [2] Merge tag 'pm-7.1-rc5' of git://git.kernel.org/pub/scm/linux/kernel/git/rafael/linux-pm archlinux/linux
- [3] Merge tag 'acpi-7.1-rc5' of git://git.kernel.org/pub/scm/linux/kernel/git/rafael/linux-pm archlinux/linux
- [4] Merge tag 'arm64-fixes' of git://git.kernel.org/pub/scm/linux/kernel/git/arm64/linux archlinux/linux
- [5] Merge tag 's390-7.1-3' of git://git.kernel.org/pub/scm/linux/kernel/git/s390/linux archlinux/linux
- [6] matrix: Update synapse to 1.153.0 archlinux/infrastructure
- [7] matrix: Update draupnir to v3.1.0 archlinux/infrastructure
- [8] Revert default user shell to bash archlinux/infrastructure
- [9] update gnome-software to 50.2-1 in extra-x86_64 archlinux/state
- [10] update evolution-ews to 3.60.2-1 in extra-x86_64 archlinux/state
FAQ
- What changed in Arch Linux on May 23, 2026?
- Arch Linux kernel patches hit the wire overnight, addressing unprivileged namespace vulnerabilities and fixing a malformed scatterlist bug that could corrupt memory buffers.
- What should Arch Linux teams do about it?
- Rebuild and deploy kernel 7.0.9-arch2 immediately - unprivileged namespace fix is critical • Verify infrastructure shell revert applied cleanly across all user configs • Stage GNOME Software 50.2 and Evolution-EWS 3.60.2 for next release cycle
- Which Arch Linux repositories shipped on May 23, 2026?
- archlinux/linux, archlinux/infrastructure, archlinux/state