Linux 5.14 offers new security protections
The operating system's 30th birthday release helps protect against side-channel attacks


Version 5.14 of the Linux kernel shipped over the weekend, featuring new protections against the Spectre and Meltdown attacks that threatened Intel CPU security.
A secret feature enables developers to create memory areas available only to the application that owns them, blocking even the kernel from monitoring them. This is useful to hold sensitive data, such as encryption keys.
Another secure feature is core scheduling. This makes it safer to use hyperthreading, which allows multiple programs to share a single core. Turning off hyperthreading helped prevent the 2019 side-channel attacks but carried a performance hit, which is significant for cloud service providers running thousands of servers.
Core scheduling allows admins to separate sensitive processes in hyperthreading schedules, making it less likely that one process will snoop on another.
The kernel also features improved journaling on EXT4 file systems, offering more protection against information leaks.
Security features aside, the new kernel comes with a range of extra hardware support and enhancements. These include support for Intel's Alder Lake P graphics, and Qualcomm's Adreno 660 GPU. It also features enhancements to the open source AMD GPU drivers, including the ability to hot swap them.
Linux 5.14 also includes support for hardware-based microphones and webcam kill switches on Dell laptops. Over the last few years, Dell has been a staunch Linux supporter, shipping developer versions of its laptops with preinstalled Linux and driver support.
Get the ITPro daily newsletter
Sign up today and you will receive a free copy of our Future Focus 2025 report - the leading guidance on AI, cybersecurity and other IT challenges as per 700+ senior executives
RELATED RESOURCE
Five questions to ask before you upgrade to a modern SIEM
Do you need a better defense strategy?
The kernel also drops support for legacy integrated device electronics (IDE) storage interfaces, helping to offset the ongoing growth of the code base.
Linus creator, Linus Torvalds, announced the new kernel along with acknowledging the operating system's 30th birthday. "The celebrations will go on for a few more weeks yet, but you all may just need a breather from them," he said.
"And when that happens, I have just the thing for you - a new kernel release to test and enjoy. Because 5.14 is out there, just waiting for you to kick the tires and remind yourself what all the festivities are about."
Those who want early access to the latest kernel can download the source code and compile it themselves. Otherwise, Linux distributions will begin adopting 5.14 over time.
Distributions either come as time-based releases, with period increments that roll up collections of features including the kernel, or rolling releases that update more frequently with new features. Examples of the former include Ubuntu, while Arch is a rolling release distribution.
Danny Bradbury has been a print journalist specialising in technology since 1989 and a freelance writer since 1994. He has written for national publications on both sides of the Atlantic and has won awards for his investigative cybersecurity journalism work and his arts and culture writing.
Danny writes about many different technology issues for audiences ranging from consumers through to software developers and CIOs. He also ghostwrites articles for many C-suite business executives in the technology sector and has worked as a presenter for multiple webinars and podcasts.
-
Bigger salaries, more burnout: Is the CISO role in crisis?
In-depth CISOs are more stressed than ever before – but why is this and what can be done?
By Kate O'Flaherty Published
-
Cheap cyber crime kits can be bought on the dark web for less than $25
News Research from NordVPN shows phishing kits are now widely available on the dark web and via messaging apps like Telegram, and are often selling for less than $25.
By Emma Woollacott Published
-
Tiny11 review: Windows 11 with only 2GB of RAM
Review A version of Windows 11 for older machines that don't meet the full requirements
By Nik Rawlinson Published
-
Red Hat Enterprise Linux becomes foundational operating system for Cohesity Data Cloud
News New strategic partnership between Red Hat and Cohesity aims to drive innovation in the data security and management space
By Daniel Todd Published
-
Ubuntu shifts to four-week update cycle
News Critical fixes will also come every two weeks, mitigating the issues involved with releasing prompt patches on the old three-week cadence
By Richard Speed Published
-
AlmaLinux follows Oracle in ditching RHEL compatibility
News Application binary compatibility is now the aim with 1:1 now dropped
By Richard Speed Published
-
How big is the Windows 10 cliff-edge?
ITPro Network With some comparing the upcoming Windows 10 end of life to Windows XP, we ask members of the ITPro Network for their insight
By Jane McCallion Published
-
Everything you need to know about the latest Windows 11 updates - from bug fixes to brand-new features
News Two new cumulative updates are on the way and will be installed automatically on Windows 10 and Windows 11 machines
By Rory Bathgate Published
-
How to download a Windows 11 ISO file and perform a clean install
Tutorial Use a Windows 11 ISO to install the operating system afresh
By John Loeppky Published
-
We could all benefit from better Windows and macOS accessibility features
Opinion Today’s accessibility features can help you work through a nasty injury, but there’s still plenty of room for improvement
By Barry Collins Published