<?xml version="1.0" encoding="UTF-8"?>
<!-- AUTOGENERATED FILE. DO NOT EDIT. -->
<feed xmlns="http://www.w3.org/2005/Atom">
  <id>tag:google.com,2016:cos-release-notes</id>
  <title>Container Optimized OS - Release notes</title>
  <link rel="self" href="https://docs.cloud.google.com/feeds/cos-release-notes.xml"/>
  <author>
    <name>Google Cloud Platform</name>
  </author>
  <updated>2026-04-06T00:00:00-07:00</updated>

  <entry>
    <title>April 06, 2026</title>
    <id>tag:google.com,2016:cos-release-notes#April_06_2026</id>
    <updated>2026-04-06T00:00:00-07:00</updated>
    <link rel="alternate" href="https://docs.cloud.google.com/container-optimized-os/docs/release-notes#April_06_2026"/>
    <content type="html"><![CDATA[<strong class="release-note-product-version-title">117</strong>
<h3>Change</h3>
<h3 id="cos-117-18613-534-62_">cos-117-18613-534-62 <a id='"cos-arm64-117-18613-534-62"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/adc0dc9357977720199f700bbea8912f61c934a9
">COS-6.6.123</a></td>
<td>v24.0.9</td>
<td>v1.7.29</td>
<td><a href="https://storage.googleapis.com/cos-tools/18613.534.62/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Security</h3>
<p>Fixed CVE-2024-43826 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-38704 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-39748 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-39764 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40135 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68206 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68239 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71161 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23004 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23050 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23138 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23245 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23270 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23271 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23277 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23340 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23397 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23398 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23412 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23413 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23414 in the Linux kernel.</p>
<strong class="release-note-product-version-title">113</strong>
<h3>Change</h3>
<h3 id="cos-113-18244-582-62_">cos-113-18244-582-62 <a id='"cos-arm64-113-18244-582-62"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/bd30b98f1ad2d619c26425f9698025613037e170
">COS-6.1.161</a></td>
<td>v24.0.9</td>
<td>v1.7.27</td>
<td><a href="https://storage.googleapis.com/cos-tools/18244.582.62/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Security</h3>
<p>Fixed CVE-2025-38192 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40135 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68206 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68239 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68265 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71161 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23100 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23113 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23245 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23270 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23271 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23277 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23381 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23397 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23398 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed KCTF-9df9578 in the Linux kernel.</p>
<strong class="release-note-product-version-title">121</strong>
<h3>Change</h3>
<h3 id="cos-121-18867-381-63_">cos-121-18867-381-63 <a id='"cos-arm64-121-18867-381-63"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/881eed6735256ed08c042b5ae37423670343957b
">COS-6.6.122</a></td>
<td>v27.5.1</td>
<td>v2.0.7</td>
<td><a href="https://storage.googleapis.com/cos-tools/18867.381.63/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Security</h3>
<p>Fixed CVE-2025-40135 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68206 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68239 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71161 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23004 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23050 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23138 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23245 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23270 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23271 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23277 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23388 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23391 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23397 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23398 in the Linux kernel.</p>
<strong class="release-note-product-version-title">Main</strong>
<h3>Change</h3>
<h3 id="cos-beta-129-19506-0-121_">cos-beta-129-19506-0-121 <a id='"cos-arm64-beta-129-19506-0-121"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/3c72f15648aedcf11689537f9545addd4377da5f
">COS-6.12.67</a></td>
<td>v27.5.1</td>
<td>v2.2.2</td>
<td><a href="https://storage.googleapis.com/cos-tools/19506.0.121/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Change</h3>
<h3 id="cos-dev-133-19681-0-0_">cos-dev-133-19681-0-0 <a id='"cos-arm64-dev-133-19681-0-0"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/350c271d1b528bc4fe572d2cadd2a16c3a758e41
">COS-6.12.77</a></td>
<td>v27.5.1</td>
<td>v2.2.1</td>
<td><a href="https://storage.googleapis.com/cos-tools/19681.0.0/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Change</h3>
<p>Upgraded sys-apps/iproute2 to version 6.18.0.</p>
<h3>Change</h3>
<p>Fixes a kernel panic in virtio_pci teardown when virtually queues are conditionally skipped.</p>
<h3>Fixed</h3>
<p>Fixed a kernel panic in virtio_pci teardown when virtually queues are conditionally skipped.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-33997 and CVE-2026-34040 in Docker.</p>
<h3>Security</h3>
<p>Fixed CVE-2024-14027 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed KCTF-7cb9a23 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23270 in the Linux kernel.</p>
<h3>Change</h3>
<p>Upgraded sys-apps/iproute2 to version 6.18.0.</p>
<h3>Security</h3>
<p>Fixed KCTF-7cb9a23 in the Linux kernel.</p>
<strong class="release-note-product-version-title">125</strong>
<h3>Change</h3>
<h3 id="cos-125-19216-220-117_">cos-125-19216-220-117 <a id='"cos-arm64-125-19216-220-117"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/f66bf9eb15aea83cae027143806b6af01481c296
">COS-6.12.68</a></td>
<td>v27.5.1</td>
<td>v2.1.5</td>
<td><a href="https://storage.googleapis.com/cos-tools/19216.220.117/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Change</h3>
<p>Made it so that /dev/hugepages is mounted as noexec for cchost boards.</p>
<h3>Change</h3>
<p>Made it so that /mnt/disks is mounted as noexec for cchost boards.</p>
<h3>Change</h3>
<p>Made it so that /run is mounted as noexec for cchost boards.</p>
<h3>Change</h3>
<p>Upgraded sys-apps/iproute2 to version 6.18.0.</p>
<h3>Fixed</h3>
<p>Fixed a kernel panic in virtio_pci teardown when virtually queues are conditionally skipped.</p>
<h3>Security</h3>
<p>Fixed CVE-2024-14027 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23270 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23304 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-33997 and CVE-2026-34040 in Docker.</p>
<h3>Security</h3>
<p>Fixed KCTF-7cb9a23 in the Linux kernel.</p>
]]>
    </content>
  </entry>

  <entry>
    <title>April 01, 2026</title>
    <id>tag:google.com,2016:cos-release-notes#April_01_2026</id>
    <updated>2026-04-01T00:00:00-07:00</updated>
    <link rel="alternate" href="https://docs.cloud.google.com/container-optimized-os/docs/release-notes#April_01_2026"/>
    <content type="html"><![CDATA[<strong class="release-note-product-version-title">Main</strong>
<h3>Change</h3>
<h3 id="cos-beta-129-19506-0-115_">cos-beta-129-19506-0-115 <a id='"cos-arm64-beta-129-19506-0-115"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/808b921cc891c1cb66519d4374662823bfe1713a
">COS-6.12.67</a></td>
<td>v27.5.1</td>
<td>v2.2.2</td>
<td><a href="https://storage.googleapis.com/cos-tools/19506.0.115/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Change</h3>
<h3 id="cos-dev-133-19672-0-0_">cos-dev-133-19672-0-0 <a id='"cos-arm64-dev-133-19672-0-0"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/95e3317c03816d2a958f9aee05d52d08c50b7e2c
">COS-6.12.77</a></td>
<td>v27.5.1</td>
<td>v2.2.1</td>
<td><a href="https://storage.googleapis.com/cos-tools/19672.0.0/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Security</h3>
<p>Fixed CVE-2024-14027 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed KCTF-7cb9a23 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed KCTF-7cb9a23 in the Linux kernel.</p>
<strong class="release-note-product-version-title">125</strong>
<h3>Change</h3>
<h3 id="cos-125-19216-220-106_">cos-125-19216-220-106 <a id='"cos-arm64-125-19216-220-106"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/ff3a3595bc985d25661d470eab88dd46aa459d98
">COS-6.12.68</a></td>
<td>v27.5.1</td>
<td>v2.1.5</td>
<td><a href="https://storage.googleapis.com/cos-tools/19216.220.106/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Security</h3>
<p>Fixed CVE-2024-14027 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23304 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed KCTF-7cb9a23 in the Linux kernel.</p>
]]>
    </content>
  </entry>

  <entry>
    <title>March 30, 2026</title>
    <id>tag:google.com,2016:cos-release-notes#March_30_2026</id>
    <updated>2026-03-30T00:00:00-07:00</updated>
    <link rel="alternate" href="https://docs.cloud.google.com/container-optimized-os/docs/release-notes#March_30_2026"/>
    <content type="html"><![CDATA[<strong class="release-note-product-version-title">Main</strong>
<h3>Change</h3>
<h3 id="cos-beta-129-19506-0-109_">cos-beta-129-19506-0-109 <a id='"cos-arm64-beta-129-19506-0-109"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/82c29e7c6b260a76fdf55a67f4339c2bcb44b824
">COS-6.12.67</a></td>
<td>v27.5.1</td>
<td>v2.2.2</td>
<td><a href="https://storage.googleapis.com/cos-tools/19506.0.109/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Change</h3>
<h3 id="cos-dev-133-19666-0-0_">cos-dev-133-19666-0-0 <a id='"cos-arm64-dev-133-19666-0-0"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/ef4e393c358e8c7675d8c2a260cbca1163ead2a3
">COS-6.12.77</a></td>
<td>v27.5.1</td>
<td>v2.2.1</td>
<td><a href="https://storage.googleapis.com/cos-tools/19666.0.0/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Change</h3>
<p>Fixed CVE-2026-27135 in net-libs/nghttp2.</p>
<h3>Change</h3>
<p>Updated the Linux kernel to v6.12.77.</p>
<h3>Feature</h3>
<p>Enabled dynamic configuration of FUSE max pages limit.</p>
<h3>Feature</h3>
<p>Enabled dynamic configuration of FUSE max pages limit.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23292 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-27135 in net-libs/nghttp2.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23293 in the Linux kernel.</p>
<h3>Change</h3>
<p>Runtime sysctl changes:
<ul>
<li>Added: fs.fuse.max_pages_limit: 256</li>
</ul></p>
<h3>Security</h3>
<p>Fixed CVE-2026-23296 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23297 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23300 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23303 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23304 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23310 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23316 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23319 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23340 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23352 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23359 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23360 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23380 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23381 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23383 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23388 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23390 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed KCTF-9df9578 in the Linux kernel.</p>
<h3>Change</h3>
<p>Runtime sysctl changes:
<ul>
<li>Added: fs.fuse.max_pages_limit: 256</li>
</ul></p>
<strong class="release-note-product-version-title">125</strong>
<h3>Change</h3>
<h3 id="cos-125-19216-220-99_">cos-125-19216-220-99 <a id='"cos-arm64-125-19216-220-99"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/bcbb125a5a57da7523992b266b4f07d3510bd0de
">COS-6.12.68</a></td>
<td>v27.5.1</td>
<td>v2.1.5</td>
<td><a href="https://storage.googleapis.com/cos-tools/19216.220.99/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Feature</h3>
<p>Enabled dynamic configuration of FUSE max pages limit.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23292 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23293 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23296 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23297 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23300 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23303 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23310 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23316 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23319 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23340 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23352 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23359 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23360 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23380 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23381 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23383 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23388 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23390 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-27135 in net-libs/nghttp2.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-27448 in dev-python/pyopenssl.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-27459 in dev-python/pyopenssl.</p>
<h3>Security</h3>
<p>Fixed KCTF-9df9578 in the Linux kernel.</p>
<h3>Change</h3>
<p>Runtime sysctl changes:
<ul>
<li>Added: fs.fuse.max_pages_limit: 256</li>
</ul></p>
<strong class="release-note-product-version-title">121</strong>
<h3>Change</h3>
<h3 id="cos-121-18867-381-56_">cos-121-18867-381-56 <a id='"cos-arm64-121-18867-381-56"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/31a85cce1fd063629a36c894be803b515077311b
">COS-6.6.122</a></td>
<td>v27.5.1</td>
<td>v2.0.7</td>
<td><a href="https://storage.googleapis.com/cos-tools/18867.381.56/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Feature</h3>
<p>Added support for loading the ublk kernel module.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23292 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23293 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23296 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23300 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23303 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23304 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23310 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23340 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23352 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23359 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23368 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23381 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23386 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23392 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-27135 in net-libs/nghttp2.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-27448 in dev-python/pyopenssl.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-27459 in dev-python/pyopenssl.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-32597 with pyjwt package upgrade to 2.12.1.</p>
<h3>Security</h3>
<p>Fixed KCTF-329f0b9 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed KCTF-9df9578 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed the "CrackArmor" vulnerability in the Linux kernel.</p>
<h3>Change</h3>
<p>Runtime sysctl changes:
<ul>
<li>Changed: kernel.threads-max: 63487 -&gt; 63199</li>
<li>Changed: user.max_cgroup_namespaces: 31743 -&gt; 31599</li>
<li>Changed: user.max_ipc_namespaces: 31743 -&gt; 31599</li>
<li>Changed: user.max_mnt_namespaces: 31743 -&gt; 31599</li>
<li>Changed: user.max_net_namespaces: 31743 -&gt; 31599</li>
<li>Changed: user.max_pid_namespaces: 31743 -&gt; 31599</li>
<li>Changed: user.max_time_namespaces: 31743 -&gt; 31599</li>
<li>Changed: user.max_user_namespaces: 31743 -&gt; 31599</li>
<li>Changed: user.max_uts_namespaces: 31743 -&gt; 31599</li>
</ul></p>
<strong class="release-note-product-version-title">117</strong>
<h3>Change</h3>
<h3 id="cos-117-18613-534-53_">cos-117-18613-534-53 <a id='"cos-arm64-117-18613-534-53"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/0af9e0905663e609aafa3b8d9c485e534efdd2a9
">COS-6.6.123</a></td>
<td>v24.0.9</td>
<td>v1.7.29</td>
<td><a href="https://storage.googleapis.com/cos-tools/18613.534.53/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Security</h3>
<p>Fixed CVE-2026-23292 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23293 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23296 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23300 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23303 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23304 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23310 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23351 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23352 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23359 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23368 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23381 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23386 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23388 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23391 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23392 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-27135 in net-libs/nghttp2.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-27448 in dev-python/pyopenssl.</p>
<h3>Security</h3>
<p>Fixed the "CrackArmor" vulnerability in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed the "CrackArmor" vulnerability in the Linux kernel.</p>
<h3>Change</h3>
<p>Runtime sysctl changes:
<ul>
<li>Changed: kernel.threads-max: 63487 -&gt; 63199</li>
<li>Changed: user.max_cgroup_namespaces: 31743 -&gt; 31599</li>
<li>Changed: user.max_ipc_namespaces: 31743 -&gt; 31599</li>
<li>Changed: user.max_mnt_namespaces: 31743 -&gt; 31599</li>
<li>Changed: user.max_net_namespaces: 31743 -&gt; 31599</li>
<li>Changed: user.max_pid_namespaces: 31743 -&gt; 31599</li>
<li>Changed: user.max_time_namespaces: 31743 -&gt; 31599</li>
<li>Changed: user.max_user_namespaces: 31743 -&gt; 31599</li>
<li>Changed: user.max_uts_namespaces: 31743 -&gt; 31599</li>
</ul></p>
<strong class="release-note-product-version-title">113</strong>
<h3>Change</h3>
<h3 id="cos-113-18244-582-55_">cos-113-18244-582-55 <a id='"cos-arm64-113-18244-582-55"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/a5e67a9c58dc766e562460c826eac46e42da4ada
">COS-6.1.161</a></td>
<td>v24.0.9</td>
<td>v1.7.27</td>
<td><a href="https://storage.googleapis.com/cos-tools/18244.582.55/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Fixed</h3>
<p>Updated cos-gpu-installer to v2.6.1.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23292 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23293 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23296 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23300 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23303 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23304 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23340 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23352 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23359 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23368 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23388 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23391 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23392 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-27135 in net-libs/nghttp2.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-27448 in dev-python/pyopenssl.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-27459 in dev-python/pyopenssl.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-32597 with pyjwt package upgrade to 2.12.1.</p>
<h3>Security</h3>
<p>Fixed KCTF-329f0b9 in the Linux kernel.</p>
<h3>Change</h3>
<p>Runtime sysctl changes:
<ul>
<li>Changed: kernel.threads-max: 63503 -&gt; 63215</li>
<li>Changed: user.max_cgroup_namespaces: 31751 -&gt; 31607</li>
<li>Changed: user.max_ipc_namespaces: 31751 -&gt; 31607</li>
<li>Changed: user.max_mnt_namespaces: 31751 -&gt; 31607</li>
<li>Changed: user.max_net_namespaces: 31751 -&gt; 31607</li>
<li>Changed: user.max_pid_namespaces: 31751 -&gt; 31607</li>
<li>Changed: user.max_time_namespaces: 31751 -&gt; 31607</li>
<li>Changed: user.max_user_namespaces: 31751 -&gt; 31607</li>
<li>Changed: user.max_uts_namespaces: 31751 -&gt; 31607</li>
</ul></p>
]]>
    </content>
  </entry>

  <entry>
    <title>March 26, 2026</title>
    <id>tag:google.com,2016:cos-release-notes#March_26_2026</id>
    <updated>2026-03-26T00:00:00-07:00</updated>
    <link rel="alternate" href="https://docs.cloud.google.com/container-optimized-os/docs/release-notes#March_26_2026"/>
    <content type="html"><![CDATA[<strong class="release-note-product-version-title">Main</strong>
<h3>Change</h3>
<h3 id="cos-beta-129-19506-0-98_">cos-beta-129-19506-0-98 <a id='"cos-arm64-beta-129-19506-0-98"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/665d2061d21ae56123f4de285c75962c6cf56b91
">COS-6.12.67</a></td>
<td>v27.5.1</td>
<td>v2.2.2</td>
<td><a href="https://storage.googleapis.com/cos-tools/19506.0.98/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Change</h3>
<p>Added support for the Lustre 2.14.0_p249 drivers.</p>
<h3>Change</h3>
<p>Fixed CVE-2026-32597 with pyjwt package upgrade to 2.12.1.</p>
<h3>Feature</h3>
<p>Added support for loading the ublk kernel module.</p>
<h3>Fixed</h3>
<p>Fixed an ek-cpu-balloon bug which would result in CPUs being underreported on ek machines with SMT enabled.</p>
<h3>Fixed</h3>
<p>Upgraded app-admin/google-osconfig-agent to v20260119.00.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71265 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71266 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71267 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71268 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23069 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23083 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23085 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23086 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23095 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23097 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23099 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23103 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23105 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23107 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23110 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23243 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23254 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23262 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed KCTF-329f0b9 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed KCTF-c9bc175 in the Linux kernel.</p>
<h3>Security</h3>
<p>Updated dev-libs/openssl to v3.5.5. This resolves CVE-2025-15467.</p>
<h3>Security</h3>
<p>Updated net-misc/curl to v8.19.0. This resolves CVE-2026-1965 and CVE-2026-3783.</p>
<h3>Security</h3>
<p>Updated sys-libs/binutils-libs to 2.46.0. This resolves CVE-2025-69644.</p>
<strong class="release-note-product-version-title">117</strong>
<h3>Change</h3>
<h3 id="cos-117-18613-534-48_">cos-117-18613-534-48 <a id='"cos-arm64-117-18613-534-48"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/b30c5b2734870c7802c8a3e6691ff29d8e65b739
">COS-6.6.123</a></td>
<td>v24.0.9</td>
<td>v1.7.29</td>
<td><a href="https://storage.googleapis.com/cos-tools/18613.534.48/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Change</h3>
<p>Added support for the Lustre 2.14.0_p249 drivers.</p>
<h3>Feature</h3>
<p>Added support for loading the ublk kernel module.</p>
<h3>Fixed</h3>
<p>Updated cos-gpu-installer to v2.6.1.</p>
<h3>Fixed</h3>
<p>Upgraded app-admin/google-osconfig-agent to v20260119.00.</p>
<h3>Fixed</h3>
<p>Upgraded sys-apps/file to v5.47-r1.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23231 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23243 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23254 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-27459 in dev-python/pyopenssl.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-32597 with pyjwt package upgrade to 2.12.1.</p>
<h3>Security</h3>
<p>Fixed KCTF-329f0b9 in the Linux kernel.</p>
]]>
    </content>
  </entry>

  <entry>
    <title>March 25, 2026</title>
    <id>tag:google.com,2016:cos-release-notes#March_25_2026</id>
    <updated>2026-03-25T00:00:00-07:00</updated>
    <link rel="alternate" href="https://docs.cloud.google.com/container-optimized-os/docs/release-notes#March_25_2026"/>
    <content type="html"><![CDATA[<strong class="release-note-product-version-title">125</strong>
<h3>Change</h3>
<h3 id="cos-125-19216-220-87_">cos-125-19216-220-87 <a id='"cos-arm64-125-19216-220-87"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/98c1b6ad6f970918e8fe029d2ee331c556111ae3
">COS-6.12.68</a></td>
<td>v27.5.1</td>
<td>v2.1.5</td>
<td><a href="https://storage.googleapis.com/cos-tools/19216.220.87/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Change</h3>
<p>Added support for the Lustre 2.14.0_p249 drivers.</p>
<h3>Feature</h3>
<p>Added support for loading the ublk kernel module.</p>
<h3>Fixed</h3>
<p>Added CPU balloon support for Arm CPUs.</p>
<h3>Fixed</h3>
<p>Upgraded app-admin/google-osconfig-agent to v20260119.00.</p>
<h3>Fixed</h3>
<p>Upgraded sys-apps/file to v5.47-r1.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71265 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71266 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71267 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71268 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23243 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23254 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23262 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-32597 with pyjwt package upgrade to 2.12.1.</p>
<h3>Security</h3>
<p>Fixed KCTF-329f0b9 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed KCTF-c9bc175 in the Linux kernel.</p>
<h3>Security</h3>
<p>Updated net-misc/curl to v8.19.0. This resolves CVE-2026-1965 and CVE-2026-3783.</p>
<h3>Security</h3>
<p>Updated sys-libs/binutils-libs to 2.46.0. This resolves CVE-2025-69644.</p>
<h3>Change</h3>
<p>Runtime sysctl changes:
<ul>
<li>Changed: net.ipv4.udp_mem: 188034   250714  376068 -&gt; 188034    250715  376068</li>
</ul></p>
<strong class="release-note-product-version-title">Main</strong>
<h3>Change</h3>
<h3 id="cos-dev-133-19654-0-0_">cos-dev-133-19654-0-0 <a id='"cos-arm64-dev-133-19654-0-0"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/8ecb3fb8b4bed2db662e41f5991ae84debec7939
">COS-6.12.76</a></td>
<td>v27.5.1</td>
<td>v2.2.1</td>
<td><a href="https://storage.googleapis.com/cos-tools/19654.0.0/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Fixed</h3>
<p>Fixed an ek-cpu-balloon bug which would result in CPUs being underreported on ek machines with SMT enabled.</p>
<h3>Fixed</h3>
<p>Upgraded dev-db/sqlite to v3.51.3.</p>
<h3>Fixed</h3>
<p>Upgraded dev-libs/expat to v2.7.5.</p>
<h3>Fixed</h3>
<p>Upgraded virtual/logger to v0-r3.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-32597 with pyjwt package upgrade to v2.12.1.</p>
<h3>Security</h3>
<p>Fixed KCTF-329f0b9 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed KCTF-c9bc175 in the Linux kernel.</p>
<h3>Security</h3>
<p>Updated net-misc/curl to v8.19.0. This resolves CVE-2026-1965 and CVE-2026-3783.</p>
<h3>Security</h3>
<p>Updated sys-libs/binutils-libs to 2.46.0. This resolves CVE-2025-69644.</p>
]]>
    </content>
  </entry>

  <entry>
    <title>March 23, 2026</title>
    <id>tag:google.com,2016:cos-release-notes#March_23_2026</id>
    <updated>2026-03-23T00:00:00-07:00</updated>
    <link rel="alternate" href="https://docs.cloud.google.com/container-optimized-os/docs/release-notes#March_23_2026"/>
    <content type="html"><![CDATA[<strong class="release-note-product-version-title">125</strong>
<h3>Change</h3>
<h3 id="cos-125-19216-220-72_">cos-125-19216-220-72 <a id='"cos-arm64-125-19216-220-72"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/6df21e3fc3957bf2dc7eeb7d8e703fc57b1e07ac
">COS-6.12.68</a></td>
<td>v27.5.1</td>
<td>v2.1.5</td>
<td><a href="https://storage.googleapis.com/cos-tools/19216.220.72/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Change</h3>
<p>Added support for the Lustre 2.14.0_p249 drivers.</p>
<h3>Fixed</h3>
<p>Added CPU balloon support for Arm CPUs.</p>
<h3>Fixed</h3>
<p>Upgraded app-admin/google-osconfig-agent to v20260119.00.</p>
<h3>Fixed</h3>
<p>Upgraded sys-apps/file to v5.47-r1.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71265 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71266 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71267 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71268 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23243 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23254 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23262 in the Linux kernel.</p>
<h3>Security</h3>
<p>Updated net-misc/curl to v8.19.0. This resolves CVE-2026-1965 and CVE-2026-3783.</p>
<h3>Security</h3>
<p>Updated sys-libs/binutils-libs to 2.46.0. This resolves CVE-2025-69644.</p>
<h3>Change</h3>
<p>Runtime sysctl changes:
<ul>
<li>Changed: net.ipv4.udp_mem: 188034   250714  376068 -&gt; 188034    250715  376068</li>
</ul></p>
<strong class="release-note-product-version-title">121</strong>
<h3>Change</h3>
<h3 id="cos-121-18867-381-45_">cos-121-18867-381-45 <a id='"cos-arm64-121-18867-381-45"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/d8086709417b04f7a79c84710f6bf3db42e87814
">COS-6.6.122</a></td>
<td>v27.5.1</td>
<td>v2.0.7</td>
<td><a href="https://storage.googleapis.com/cos-tools/18867.381.45/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Change</h3>
<p>Added support for the Lustre 2.14.0_p249 drivers.</p>
<h3>Fixed</h3>
<p>Updated cos-gpu-installer to v2.6.1.</p>
<h3>Fixed</h3>
<p>Upgraded app-admin/google-osconfig-agent to v20260119.00.</p>
<h3>Fixed</h3>
<p>Upgraded sys-apps/file to v5.47-r1.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-22026 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-69647 in binutils-libs.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-69648 in binutils-libs.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23254 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed KCTF-71e99ee in the Linux kernel.</p>
<h3>Security</h3>
<p>Updated net-misc/curl to v8.19.0. This resolves CVE-2026-1965 and CVE-2026-3783.</p>
<h3>Security</h3>
<p>Updated sys-libs/binutils-libs to 2.46.0. This resolves CVE-2025-69644.</p>
<strong class="release-note-product-version-title">Main</strong>
<h3>Change</h3>
<h3 id="cos-dev-133-19633-0-0_">cos-dev-133-19633-0-0 <a id='"cos-arm64-dev-133-19633-0-0"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/788077df45931035984615c9958e274d89bd7e1f
">COS-6.12.76</a></td>
<td>v27.5.1</td>
<td>v2.2.1</td>
<td><a href="https://storage.googleapis.com/cos-tools/19633.0.0/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Change</h3>
<p>Added support for the Lustre 2.14.0_p249 drivers.</p>
<h3>Feature</h3>
<p>Added support for 8th generation TPU devices.</p>
<h3>Fixed</h3>
<p>Upgraded app-admin/google-osconfig-agent to v20260119.00.</p>
<h3>Fixed</h3>
<p>Upgraded chromeos-base/google-breakpad to v2026.03.03.162944-r270.</p>
<h3>Fixed</h3>
<p>Upgraded dev-libs/expat to v2.7.4.</p>
<h3>Fixed</h3>
<p>Upgraded net-firewall/iptables to v1.8.13.</p>
<h3>Fixed</h3>
<p>Upgraded sys-apps/file to v5.47-r1.</p>
<h3>Security</h3>
<p>Fixed KCTF-c9bc175 in the Linux kernel.</p>
<h3>Security</h3>
<p>Updated net-misc/curl to v8.19.0. This resolves CVE-2026-1965 and CVE-2026-3783.</p>
<h3>Security</h3>
<p>Updated sys-libs/binutils-libs to 2.46.0. This resolves CVE-2025-69644.</p>
<strong class="release-note-product-version-title">117</strong>
<h3>Change</h3>
<h3 id="cos-117-18613-534-44_">cos-117-18613-534-44 <a id='"cos-arm64-117-18613-534-44"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/e91b457d7df4624c595f612f65f6a2f2bc973df4
">COS-6.6.123</a></td>
<td>v24.0.9</td>
<td>v1.7.29</td>
<td><a href="https://storage.googleapis.com/cos-tools/18613.534.44/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Change</h3>
<p>Added support for the Lustre 2.14.0_p249 drivers.</p>
<h3>Fixed</h3>
<p>Updated cos-gpu-installer to v2.6.1.</p>
<h3>Fixed</h3>
<p>Upgraded sys-apps/file to v5.47-r1.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23231 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23243 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23254 in the Linux kernel.</p>
<h3>Security</h3>
<p>Updated net-misc/curl to v8.19.0. This resolves CVE-2026-1965 and CVE-2026-3783.</p>
<h3>Security</h3>
<p>Updated sys-libs/binutils-libs to 2.46.0. This resolves CVE-2025-69644.</p>
<strong class="release-note-product-version-title">113</strong>
<h3>Change</h3>
<h3 id="cos-113-18244-582-47_">cos-113-18244-582-47 <a id='"cos-arm64-113-18244-582-47"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/824daafa5f157963eea76b8fc10de1d2df43be70
">COS-6.1.161</a></td>
<td>v24.0.9</td>
<td>v1.7.27</td>
<td><a href="https://storage.googleapis.com/cos-tools/18244.582.47/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Fixed</h3>
<p>Upgraded sys-apps/file to v5.47-r1.</p>
<h3>Security</h3>
<p>Fixed CVE-2024-26822 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-69647 in binutils-libs.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23243 in the Linux kernel.</p>
<h3>Security</h3>
<p>Updated net-misc/curl to v8.19.0. This resolves CVE-2026-1965 and CVE-2026-3783.</p>
<h3>Security</h3>
<p>Updated sys-libs/binutils-libs to 2.46.0. This resolves CVE-2025-69644.</p>
]]>
    </content>
  </entry>

  <entry>
    <title>March 17, 2026</title>
    <id>tag:google.com,2016:cos-release-notes#March_17_2026</id>
    <updated>2026-03-17T00:00:00-07:00</updated>
    <link rel="alternate" href="https://docs.cloud.google.com/container-optimized-os/docs/release-notes#March_17_2026"/>
    <content type="html"><![CDATA[<strong class="release-note-product-version-title">Main</strong>
<h3>Change</h3>
<h3 id="cos-beta-129-19506-0-66_">cos-beta-129-19506-0-66 <a id='"cos-arm64-beta-129-19506-0-66"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/e2ad9be2a74b62aaf49320d42f7a9ca47132ad5e
">COS-6.12.67</a></td>
<td>v27.5.1</td>
<td>v2.2.2</td>
<td><a href="https://storage.googleapis.com/cos-tools/19506.0.66/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Change</h3>
<h3 id="cos-dev-133-19619-0-0_">cos-dev-133-19619-0-0 <a id='"cos-arm64-dev-133-19619-0-0"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/8f01bd7cad431636ba9b859cd3fb0f169e55a58c
">COS-6.12.76</a></td>
<td>v27.5.1</td>
<td>v2.2.1</td>
<td><a href="https://storage.googleapis.com/cos-tools/19619.0.0/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Change</h3>
<p>Added support for the Lustre 2.14.0_p246 drivers.</p>
<h3>Change</h3>
<p>Added support for the Lustre 2.14.0_p246 drivers.</p>
<h3>Change</h3>
<p>Fixed the "CrackArmor" vulnerability in the Linux kernel.</p>
<h3>Change</h3>
<p>Fixed the "CrackArmor" vulnerability in the Linux kernel.</p>
<h3>Breaking</h3>
<p><code>/dev/hugepages</code> is now mounted with the <code>noexec</code> option.</p>
<h3>Breaking</h3>
<p><code>/dev/hugepages</code> is now mounted with the <code>noexec</code> option.</p>
<h3>Change</h3>
<p>Updated cos-gpu-installer to v2.6.0.</p>
<h3>Breaking</h3>
<p><code>/run</code> is now mounted with the <code>noexec</code> option.</p>
<h3>Change</h3>
<p>Updated the Linux kernel to v6.12.76.</p>
<h3>Change</h3>
<p>Updated cos-gpu-installer to v2.6.0.</p>
<h3>Change</h3>
<p>Upgraded CASFS to v0.1.2.</p>
<h3>Change</h3>
<p>Upgraded CASFS to v0.1.2.</p>
<h3>Feature</h3>
<p>Switched to using systemd-resolved stub resolver by default, which fixes DNS caching issues.</p>
<h3>Change</h3>
<p>Upgraded app-containers/containerd to v2.2.2.</p>
<h3>Feature</h3>
<p>Added support for larger ring sizes for the GVNIC driver in DQO-QPL mode.</p>
<h3>Change</h3>
<p>Upgraded dev-libs/glib to v2.86.3. This fixes CVE-2025-14087, CVE-2025-14512 and CVE-2025-13601.</p>
<h3>Feature</h3>
<p>Added support for larger ring sizes for the GVNIC driver in DQO-QPL mode.</p>
<h3>Fixed</h3>
<p>Fixed a kernel bug which could cause traffic drops after NIC resets.</p>
<h3>Fixed</h3>
<p>Updated cos-gpu-installer to v2.6.1.</p>
<h3>Fixed</h3>
<p>Enabled buffer overflow detection for kernel str/mem functions.</p>
<h3>Fixed</h3>
<p>Upgraded app-admin/sosreport to v4.11.0.</p>
<h3>Fixed</h3>
<p>Fixed a kernel bug which could cause traffic drops after NIC resets.</p>
<h3>Fixed</h3>
<p>Upgraded dev-util/gn to v2331.</p>
<h3>Fixed</h3>
<p>Fixed performance and efficiency issues in TCPX through optimized netmem handling and scatter-gather list coalescing for large memory mappings.</p>
<h3>Fixed</h3>
<p>Upgraded net-misc/socat to v1.8.1.1.</p>
<h3>Fixed</h3>
<p>Upgraded sys-apps/acl to v2.3.2-r3.</p>
<h3>Fixed</h3>
<p>Upgraded sys-apps/file to v5.47.</p>
<h3>Fixed</h3>
<p>Updated cos-gpu-installer to v2.6.1.</p>
<h3>Fixed</h3>
<p>Upgraded the galog version to v0.0.0-20250924170816-9dbf105986f4 in google-guest-agent to fix an issue with high CPU consumption.</p>
<h3>Fixed</h3>
<p>Upgraded dev-utils/gdbus-codegen to v2.86.3.</p>
<h3>Security</h3>
<p>Upgraded dev-libs/glib to v2.86.3. This fixes CVE-2025-14087, CVE-2025-14512 and CVE-2025-13601.</p>
<h3>Fixed</h3>
<p>Upgraded app-admin/fluent-bit to v4.2.3.1.</p>
<h3>Fixed</h3>
<p>Upgraded app-admin/sosreport to v4.11.0.</p>
<h3>Fixed</h3>
<p>Upgraded dev-util/gdbus-codegen to v2.86.3.</p>
<h3>Fixed</h3>
<p>Upgraded the galog version to v0.0.0-20250924170816-9dbf105986f4 in google-guest-agent to fix an issue with high CPU consumption.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23229 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23230 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23240 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed a packet header clobbering issue in the IDPF driver occurring when SWIOTLB and header split are enabled.</p>
<h3>Security</h3>
<p>Fixed KCTF-71e99ee in the Linux kernel.</p>
<strong class="release-note-product-version-title">121</strong>
<h3>Change</h3>
<h3 id="cos-121-18867-381-35_">cos-121-18867-381-35 <a id='"cos-arm64-121-18867-381-35"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/c11b19e08b7dec3a166539d526b69fca5d0056e1
">COS-6.6.122</a></td>
<td>v27.5.1</td>
<td>v2.0.7</td>
<td><a href="https://storage.googleapis.com/cos-tools/18867.381.35/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Security</h3>
<p>Fixed CVE-2025-38162 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-38201 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23102 in the Linux kernel.</p>
<strong class="release-note-product-version-title">117</strong>
<h3>Change</h3>
<h3 id="cos-117-18613-534-36_">cos-117-18613-534-36 <a id='"cos-arm64-117-18613-534-36"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/530d6a57e6fea7de26a9600dd43f981ade00d33e
">COS-6.6.123</a></td>
<td>v24.0.9</td>
<td>v1.7.29</td>
<td><a href="https://storage.googleapis.com/cos-tools/18613.534.36/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Security</h3>
<p>Fixed CVE-2025-38162 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-38162 in the Linux kernel.</p>
<strong class="release-note-product-version-title">113</strong>
<h3>Change</h3>
<h3 id="cos-113-18244-582-42_">cos-113-18244-582-42 <a id='"cos-arm64-113-18244-582-42"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/debd483161918f36c7d50ad90146fafe073f6a8f
">COS-6.1.161</a></td>
<td>v24.0.9</td>
<td>v1.7.27</td>
<td><a href="https://storage.googleapis.com/cos-tools/18244.582.42/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Security</h3>
<p>Fixed CVE-2026-23054 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed KCTF-71e99ee in the Linux kernel.</p>
]]>
    </content>
  </entry>

  <entry>
    <title>March 14, 2026</title>
    <id>tag:google.com,2016:cos-release-notes#March_14_2026</id>
    <updated>2026-03-14T00:00:00-07:00</updated>
    <link rel="alternate" href="https://docs.cloud.google.com/container-optimized-os/docs/release-notes#March_14_2026"/>
    <content type="html"><![CDATA[<strong class="release-note-product-version-title">125</strong>
<h3>Change</h3>
<h3 id="cos-125-19216-220-57_">cos-125-19216-220-57 <a id='"cos-arm64-125-19216-220-57"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/92c9f3ce0777cb6759e4c8a66adac2583c5ba3a8
">COS-6.12.68</a></td>
<td>v27.5.1</td>
<td>v2.1.5</td>
<td><a href="https://storage.googleapis.com/cos-tools/19216.220.57/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Change</h3>
<p>Fixed the "CrackArmor" vulnerability in the Linux kernel.</p>
<h3>Fixed</h3>
<p>Downgraded ek-cpu-balloon driver to version 1.1.0 to address efficiency daemon issues.</p>
]]>
    </content>
  </entry>

  <entry>
    <title>March 10, 2026</title>
    <id>tag:google.com,2016:cos-release-notes#March_10_2026</id>
    <updated>2026-03-10T00:00:00-07:00</updated>
    <link rel="alternate" href="https://docs.cloud.google.com/container-optimized-os/docs/release-notes#March_10_2026"/>
    <content type="html"><![CDATA[<strong class="release-note-product-version-title">113</strong>
<h3>Change</h3>
<h3 id="cos-113-18244-582-40_">cos-113-18244-582-40 <a id='"cos-arm64-113-18244-582-40"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/da5dc8347ba20698e2b8e3a27f2f4b5783e11c98
">COS-6.1.161</a></td>
<td>v24.0.9</td>
<td>v1.7.27</td>
<td><a href="https://storage.googleapis.com/cos-tools/18244.582.40/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Fixed</h3>
<p>Upgraded sys-apps/file to v5.47.</p>
<h3>Security</h3>
<p>Fixed CVE-2023-53421 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-13601, CVE-2025-14512, CVE-2025-14087 in
dev-libs/glib.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-22026 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-37920 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-38201 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-38591 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40251 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71089 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23176 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23216 in the Linux kernel.</p>
<strong class="release-note-product-version-title">117</strong>
<h3>Change</h3>
<h3 id="cos-117-18613-534-35_">cos-117-18613-534-35 <a id='"cos-arm64-117-18613-534-35"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/810772cc40b9bc07245d9d7059e7f2d697995adf
">COS-6.6.123</a></td>
<td>v24.0.9</td>
<td>v1.7.29</td>
<td><a href="https://storage.googleapis.com/cos-tools/18613.534.35/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Fixed</h3>
<p>Upgraded net-misc/socat to v1.8.1.1.</p>
<h3>Fixed</h3>
<p>Upgraded sys-apps/file to v5.47.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-22026 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-38201 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-38234 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23100 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23216 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23229 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23230 in the Linux kernel.</p>
<h3>Security</h3>
<p>Upgraded dev-libs/glib to v2.86.3 and gdbus-codegen to v2.86.3. This fixes
CVE-2025-14087, CVE-2025-14512 and CVE-2025-13601.</p>
<strong class="release-note-product-version-title">121</strong>
<h3>Change</h3>
<h3 id="cos-121-18867-381-30_">cos-121-18867-381-30 <a id='"cos-arm64-121-18867-381-30"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/894f17dcc8a978b3bd6e85e3cfe41e97d55a87d8
">COS-6.6.122</a></td>
<td>v27.5.1</td>
<td>v2.0.7</td>
<td><a href="https://storage.googleapis.com/cos-tools/18867.381.30/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Fixed</h3>
<p>Upgraded app-admin/sosreport to v4.11.0.</p>
<h3>Fixed</h3>
<p>Upgraded net-misc/socat to v1.8.1.1.</p>
<h3>Fixed</h3>
<p>Upgraded sys-apps/file to v5.47.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-38234 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23100 in the Linux kernel.</p>
]]>
    </content>
  </entry>

  <entry>
    <title>March 08, 2026</title>
    <id>tag:google.com,2016:cos-release-notes#March_08_2026</id>
    <updated>2026-03-08T00:00:00-07:00</updated>
    <link rel="alternate" href="https://docs.cloud.google.com/container-optimized-os/docs/release-notes#March_08_2026"/>
    <content type="html"><![CDATA[<strong class="release-note-product-version-title">125</strong>
<h3>Change</h3>
<h3 id="cos-125-19216-220-43_">cos-125-19216-220-43 <a id='"cos-arm64-125-19216-220-43"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/7eb31713b3fb44138b65643ab9d3037e22d29e47
">COS-6.12.68</a></td>
<td>v27.5.1</td>
<td>v2.1.5</td>
<td><a href="https://storage.googleapis.com/cos-tools/19216.220.43/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Change</h3>
<p>Updated cos-gpu-installer to v2.6.0.</p>
<h3>Fixed</h3>
<p>Upgraded app-admin/node-problem-detector to v0.8.25.</p>
<h3>Change</h3>
<p>Runtime sysctl changes:
<ul>
<li>Changed: net.ipv4.udp_mem: 188034   250714  376068 -&gt; 188034    250715  376068</li>
</ul></p>
]]>
    </content>
  </entry>

  <entry>
    <title>March 07, 2026</title>
    <id>tag:google.com,2016:cos-release-notes#March_07_2026</id>
    <updated>2026-03-07T00:00:00-08:00</updated>
    <link rel="alternate" href="https://docs.cloud.google.com/container-optimized-os/docs/release-notes#March_07_2026"/>
    <content type="html"><![CDATA[<strong class="release-note-product-version-title">125</strong>
<h3>Change</h3>
<h3 id="cos-125-19216-220-39_">cos-125-19216-220-39 <a id='"cos-arm64-125-19216-220-39"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/7eb31713b3fb44138b65643ab9d3037e22d29e47
">COS-6.12.68</a></td>
<td>v27.5.1</td>
<td>v2.1.5</td>
<td><a href="https://storage.googleapis.com/cos-tools/19216.220.39/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Fixed</h3>
<p>Fixed a kernel bug which could cause traffic drops after NIC resets.</p>
<h3>Change</h3>
<p>Runtime sysctl changes:
<ul>
<li>Changed: net.ipv4.udp_mem: 188034   250715  376068 -&gt; 188034    250714  376068</li>
</ul></p>
]]>
    </content>
  </entry>

  <entry>
    <title>March 06, 2026</title>
    <id>tag:google.com,2016:cos-release-notes#March_06_2026</id>
    <updated>2026-03-06T00:00:00-08:00</updated>
    <link rel="alternate" href="https://docs.cloud.google.com/container-optimized-os/docs/release-notes#March_06_2026"/>
    <content type="html"><![CDATA[<strong class="release-note-product-version-title">125</strong>
<h3>Change</h3>
<h3 id="cos-125-19216-220-38_">cos-125-19216-220-38 <a id='"cos-arm64-125-19216-220-38"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/7eb31713b3fb44138b65643ab9d3037e22d29e47
">COS-6.12.68</a></td>
<td>v27.5.1</td>
<td>v2.1.5</td>
<td><a href="https://storage.googleapis.com/cos-tools/19216.220.38/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Security</h3>
<p>Fixed CVE-2026-23100 in the Linux kernel.</p>
<h3>Change</h3>
<p>Runtime sysctl changes:
<ul>
<li>Changed: net.ipv4.udp_mem: 188034   250715  376068 -&gt; 188034    250714  376068</li>
</ul></p>
]]>
    </content>
  </entry>

  <entry>
    <title>March 04, 2026</title>
    <id>tag:google.com,2016:cos-release-notes#March_04_2026</id>
    <updated>2026-03-04T00:00:00-08:00</updated>
    <link rel="alternate" href="https://docs.cloud.google.com/container-optimized-os/docs/release-notes#March_04_2026"/>
    <content type="html"><![CDATA[<strong class="release-note-product-version-title">113</strong>
<h3>Change</h3>
<h3 id="cos-113-18244-582-29_">cos-113-18244-582-29 <a id='"cos-arm64-113-18244-582-29"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/2f3d82e8d18f259f62bd81421e80cfb19aa2a822
">COS-6.1.161</a></td>
<td>v24.0.9</td>
<td>v1.7.27</td>
<td><a href="https://storage.googleapis.com/cos-tools/18244.582.29/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Change</h3>
<p>Fixed an issue where most platforms would use only half of the available GVNIC TX queues.</p>
<h3>Fixed</h3>
<p>Upgraded net-dns/c-ares to v1.31.0.</p>
<h3>Fixed</h3>
<p>Upgraded net-misc/socat to v1.8.1.1.</p>
<h3>Fixed</h3>
<p>Upgraded sys-apps/less to v692.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-58187 in dev-lang/go.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-6075 in python.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-60753 in libarchive.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-61732 in dev-lang/go.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23086 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23112 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23119 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23124 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23145 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23156 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23168 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23198 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23205 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23212 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23193 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed KCTF-e3f000f in the Linux kernel.</p>
<h3>Security</h3>
<p>Upgraded net-misc/curl to version 8.18.0. This fixes CVE-2025-10966, CVE-2025-13034, CVE-2025-14017, CVE-2025-14524, CVE-2025-14819, CVE-2025-15079, and CVE-2025-15224.</p>
<strong class="release-note-product-version-title">125</strong>
<h3>Change</h3>
<h3 id="cos-125-19216-220-34_">cos-125-19216-220-34 <a id='"cos-arm64-125-19216-220-34"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/8ae4fb3efb4e9b9c6276d3c9247c7a123a73fca6
">COS-6.12.68</a></td>
<td>v27.5.1</td>
<td>v2.1.5</td>
<td><a href="https://storage.googleapis.com/cos-tools/19216.220.34/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Change</h3>
<p>Added support for the Lustre 2.14.0_p246 drivers.</p>
<h3>Fixed</h3>
<p>Upgraded dev-util/gdbus-codegen to v2.86.3.</p>
<h3>Fixed</h3>
<p>Upgraded the galog version to v0.0.0-20250924170816-9dbf105986f4 in google-guest-agent to fix an issue with high CPU consumption.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23204 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23229 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23230 in the Linux kernel.</p>
<h3>Security</h3>
<p>Upgraded dev-libs/glib to v2.86.3. This fixes
CVE-2025-14087, CVE-2025-14512 and CVE-2025-13601.</p>
<strong class="release-note-product-version-title">121</strong>
<h3>Change</h3>
<h3 id="cos-121-18867-381-24_">cos-121-18867-381-24 <a id='"cos-arm64-121-18867-381-24"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/8182b8864d9e39f8ec1bd6d96a4e6b2380412f26
">COS-6.6.122</a></td>
<td>v27.5.1</td>
<td>v2.0.7</td>
<td><a href="https://storage.googleapis.com/cos-tools/18867.381.24/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Change</h3>
<p>Fixed an issue where most platforms would use only half of the available GVNIC TX queues.</p>
<h3>Fixed</h3>
<p>Upgraded dev-util/gdbus-codegen to v2.86.3.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-58187 in dev-lang/go.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23216 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23229 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23230 in the Linux kernel.</p>
<h3>Security</h3>
<p>Upgraded dev-libs/glib to v2.86.3. This fixes
CVE-2025-14087, CVE-2025-14512 and CVE-2025-13601.</p>
<strong class="release-note-product-version-title">117</strong>
<h3>Change</h3>
<h3 id="cos-117-18613-534-24_">cos-117-18613-534-24 <a id='"cos-arm64-117-18613-534-24"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/c6a9ce222e73689842f21f4e17890d16e03cd17b
">COS-6.6.123</a></td>
<td>v24.0.9</td>
<td>v1.7.29</td>
<td><a href="https://storage.googleapis.com/cos-tools/18613.534.24/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Change</h3>
<p>Added support for the Lustre 2.14.0_p246 drivers.</p>
<h3>Change</h3>
<p>Fixed an issue where most platforms would use only half of the available GVNIC TX queues.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-58187 in dev-lang/go.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-61732 in dev-lang/go.</p>
<h3>Security</h3>
<p>Fixed KCTF-e3f000f in the Linux kernel.</p>
]]>
    </content>
  </entry>

  <entry>
    <title>February 27, 2026</title>
    <id>tag:google.com,2016:cos-release-notes#February_27_2026</id>
    <updated>2026-02-27T00:00:00-08:00</updated>
    <link rel="alternate" href="https://docs.cloud.google.com/container-optimized-os/docs/release-notes#February_27_2026"/>
    <content type="html"><![CDATA[<strong class="release-note-product-version-title">121</strong>
<h3>Change</h3>
<h3 id="cos-121-18867-381-14_">cos-121-18867-381-14 <a id='"cos-arm64-121-18867-381-14"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/c68efb7356143c761a7b8f1e048e0236ecb23d94
">COS-6.6.122</a></td>
<td>v27.5.1</td>
<td>v2.0.7</td>
<td><a href="https://storage.googleapis.com/cos-tools/18867.381.14/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Change</h3>
<p>Added support for the Lustre 2.14.0_p246 drivers.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-60753 in libarchive.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23112 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23176 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23179 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23193 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23198 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23200 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23204 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23205 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23212 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed KCTF-e3f000f in the Linux kernel.</p>
]]>
    </content>
  </entry>

  <entry>
    <title>February 24, 2026</title>
    <id>tag:google.com,2016:cos-release-notes#February_24_2026</id>
    <updated>2026-02-24T00:00:00-08:00</updated>
    <link rel="alternate" href="https://docs.cloud.google.com/container-optimized-os/docs/release-notes#February_24_2026"/>
    <content type="html"><![CDATA[<strong class="release-note-product-version-title">Main</strong>
<h3>Change</h3>
<h3 id="cos-beta-129-19506-0-32_">cos-beta-129-19506-0-32 <a id='"cos-arm64-beta-129-19506-0-32"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/db611b456979827c0f71190bd2fd9868cec57510
">COS-6.12.67</a></td>
<td>v27.5.1</td>
<td>v2.2.0</td>
<td><a href="https://storage.googleapis.com/cos-tools/19506.0.32/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Change</h3>
<h3 id="cos-dev-133-19566-0-0_">cos-dev-133-19566-0-0 <a id='"cos-arm64-dev-133-19566-0-0"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/ec8a48be0774f726990a93e2afead08ee16b3f2c
">COS-6.12.74</a></td>
<td>v27.5.1</td>
<td>v2.2.1</td>
<td><a href="https://storage.googleapis.com/cos-tools/19566.0.0/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Change</h3>
<p>Upgraded net-misc/curl to version 8.18.0. This fixes CVE-2025-13034, CVE-2025-14017, CVE-2025-14524, CVE-2025-14819, CVE-2025-15079, and CVE-2025-15224.</p>
<h3>Feature</h3>
<p>Added support for  590.44.01 and 590.48.01 NVIDIA driver for NVIDIA_RTX_PRO_6000</p>
<h3>Change</h3>
<p>Made it so that /run is mounted as noexec.</p>
<h3>Fixed</h3>
<p>Added support for NVIDIA driver v580.126.09-grid for NVIDIA_RTX_PRO_6000 GPU type.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-15281 and CVE-2026-0861 in sys-libs/glibc.</p>
<h3>Change</h3>
<p>Updated the Linux kernel to v6.12.74.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68358 in the Linux kernel.</p>
<h3>Change</h3>
<p>Upgraded containerd to v2.2.1.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68365 in the Linux kernel.</p>
<h3>Feature</h3>
<p>Added support for 590.44.01 and 590.48.01 NVIDIA driver for NVIDIA_RTX_PRO_6000</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68725 in the Linux kernel.</p>
<h3>Feature</h3>
<p>Added support for NVIDIA driver v535.288.01, v570.211.01 and v580.126.09.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71225 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23112 in the Linux kernel.</p>
<h3>Fixed</h3>
<p>Added support for NVIDIA driver v580.126.09-grid for NVIDIA_RTX_PRO_6000 GPU type.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23113 in the Linux kernel.</p>
<h3>Fixed</h3>
<p>Enabled buffer overflow detection for kernel str/mem functions.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23119 in the Linux kernel.</p>
<h3>Fixed</h3>
<p>Upgraded app-admin/google-guest-agent to v20260121.00.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23124 in the Linux kernel.</p>
<h3>Fixed</h3>
<p>Upgraded app-admin/oslogin to v20260128.00.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23148 in the Linux kernel.</p>
<h3>Fixed</h3>
<p>Upgraded app-admin/oslogin to v20260129.00.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23154 in the Linux kernel.</p>
<h3>Fixed</h3>
<p>Upgraded dev-db/sqlite to v3.51.2.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23156 in the Linux kernel.</p>
<h3>Fixed</h3>
<p>Upgraded net-libs/libnetfilter_conntrack to v1.1.1.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23159 in the Linux kernel.</p>
<h3>Fixed</h3>
<p>Upgraded net-misc/rsync to v3.4.1-r2.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23161 in the Linux kernel.</p>
<h3>Fixed</h3>
<p>Upgraded net-misc/socat to v1.8.1.0-r1.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23168 in the Linux kernel.</p>
<h3>Fixed</h3>
<p>Upgraded sys-apps/gentoo-functions to v1.7.6.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23173 in the Linux kernel.</p>
<h3>Fixed</h3>
<p>Upgraded sys-apps/less to v692.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23177 in the Linux kernel.</p>
<h3>Fixed</h3>
<p>Upgraded sys-process/procps to v4.0.6.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23179 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23193 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-15281 and CVE-2026-0861 in sys-libs/glibc.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23198 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40147 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23199 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-0915 in sys-apps/glibc.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23200 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed KCTF-e3f000f in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23204 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed KCTF-f8db647 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23205 in the Linux kernel.</p>
<h3>Security</h3>
<p>Updated dev-libs/libxml2 to version 2.14.6. This resolves CVE-2025-6021.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23212 in the Linux kernel.</p>
<h3>Security</h3>
<p>Updated dev-libs/openssl to v3.5.5. This resolves CVE-2025-15467.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23214 in the Linux kernel.</p>
<h3>Security</h3>
<p>Upgraded net-misc/curl to version 8.18.0. This fixes CVE-2025-13034, CVE-2025-14017, CVE-2025-14524, CVE-2025-14819, CVE-2025-15079, and CVE-2025-15224.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23215 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23216 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23219 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed KCTF-e3f000f in the Linux kernel.</p>
<strong class="release-note-product-version-title">125</strong>
<h3>Change</h3>
<h3 id="cos-125-19216-220-24_">cos-125-19216-220-24 <a id='"cos-arm64-125-19216-220-24"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/53881952835848fbf440de93baf50cf22f1e4785
">COS-6.12.68</a></td>
<td>v27.5.1</td>
<td>v2.1.5</td>
<td><a href="https://storage.googleapis.com/cos-tools/19216.220.24/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Change</h3>
<p>Fixed CVE-2026-23177 in the Linux kernel.</p>
<h3>Feature</h3>
<p>Added support for  590.44.01 and 590.48.01 NVIDIA driver for NVIDIA_RTX_PRO_6000</p>
<h3>Fixed</h3>
<p>Added support for NVIDIA driver v580.126.09-grid for NVIDIA_RTX_PRO_6000 GPU type.</p>
<h3>Fixed</h3>
<p>Upgraded app-admin/sosreport to v4.11.0.</p>
<h3>Fixed</h3>
<p>Upgraded net-misc/rsync to v3.4.1-r2.</p>
<h3>Fixed</h3>
<p>Upgraded net-misc/socat to v1.8.1.1.</p>
<h3>Fixed</h3>
<p>Upgraded sys-apps/less to v692.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-15281 and CVE-2026-0861 in sys-libs/glibc.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-47912, CVE-2025-58185, CVE-2025-58187, CVE-2025-58188, CVE-2025-58189, CVE-2025-61723, CVE-2025-61724, CVE-2025-61726, and CVE-2025-61728 in dev-lang/go.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-60753 in libarchive.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71225 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23112 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23148 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23154 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23156 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23159 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23161 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23168 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23173 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23179 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23193 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23198 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23199 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23200 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23205 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23212 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23214 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23215 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23216 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23219 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed KCTF-e3f000f in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed KCTF-f41c5d1 in the Linux kernel.</p>
<h3>Security</h3>
<p>Upgraded net-misc/curl to version 8.18.0. This fixes CVE-2025-10148, CVE-2025-10966, CVE-2025-13034, CVE-2025-14017, CVE-2025-14524, CVE-2025-14819, CVE-2025-15079, and CVE-2025-15224.</p>
<strong class="release-note-product-version-title">113</strong>
<h3>Change</h3>
<h3 id="cos-113-18244-582-11_">cos-113-18244-582-11 <a id='"cos-arm64-113-18244-582-11"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/5c4d6d97af15aedf3768f1e1cef2cdb5a5735ccc
">COS-6.1.161</a></td>
<td>v24.0.9</td>
<td>v1.7.27</td>
<td><a href="https://storage.googleapis.com/cos-tools/18244.582.11/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Security</h3>
<p>Fixed CVE-2023-54285 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-15281 and CVE-2026-0861 in sys-libs/glibc.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-38232 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68725 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-22998 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-22999 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23001 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23003 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23005 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23010 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23011 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23025 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23038 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23069 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23085 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23095 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23097 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23099 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23102 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23103 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23105 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23107 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23110 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed KCTF-f41c5d1 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed KCTF-f8db647 in the Linux kernel.</p>
<strong class="release-note-product-version-title">117</strong>
<h3>Change</h3>
<h3 id="cos-117-18613-534-15_">cos-117-18613-534-15 <a id='"cos-arm64-117-18613-534-15"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/62eaa6fec6fa6b8cc2b4146e32ae7139de26e9a4
">COS-6.6.123</a></td>
<td>v24.0.9</td>
<td>v1.7.29</td>
<td><a href="https://storage.googleapis.com/cos-tools/18613.534.15/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Fixed</h3>
<p>Upgraded net-misc/socat to v1.8.1.0-r1.</p>
<h3>Fixed</h3>
<p>Upgraded sys-apps/less to v692.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-15281 and CVE-2026-0861 in sys-libs/glibc.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-6075 in python.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-60753 in libarchive.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23112 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23176 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23179 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23193 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23198 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23200 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23204 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23205 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23209 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed KCTF-f41c5d1 in the Linux kernel.</p>
<h3>Security</h3>
<p>Upgraded net-misc/curl to version 8.18.0. This fixes CVE-2025-10148, CVE-2025-10966, CVE-2025-13034, CVE-2025-14017, CVE-2025-14524, CVE-2025-14819, CVE-2025-15079, and CVE-2025-15224.</p>
<strong class="release-note-product-version-title">121</strong>
<h3>Change</h3>
<h3 id="cos-121-18867-381-1_">cos-121-18867-381-1 <a id='"cos-arm64-121-18867-381-1"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/648b5918d64d7a9788baa271ec7cb32d9b73c857
">COS-6.6.122</a></td>
<td>v27.5.1</td>
<td>v2.0.7</td>
<td><a href="https://storage.googleapis.com/cos-tools/18867.381.1/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Fixed</h3>
<p>Upgraded net-misc/socat to v1.8.1.0-r1.</p>
<h3>Fixed</h3>
<p>Upgraded sys-apps/less to v692.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23156 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23159 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23168 in the Linux kernel.</p>
<h3>Security</h3>
<p>Upgraded net-misc/curl to version 8.18.0. This fixes CVE-2025-10148, CVE-2025-10966, CVE-2025-13034, CVE-2025-14017, CVE-2025-14524, CVE-2025-14819, CVE-2025-15079, and CVE-2025-15224.</p>
]]>
    </content>
  </entry>

  <entry>
    <title>February 20, 2026</title>
    <id>tag:google.com,2016:cos-release-notes#February_20_2026</id>
    <updated>2026-02-20T00:00:00-08:00</updated>
    <link rel="alternate" href="https://docs.cloud.google.com/container-optimized-os/docs/release-notes#February_20_2026"/>
    <content type="html"><![CDATA[<strong class="release-note-product-version-title">Main</strong>
<h3>Change</h3>
<h3 id="cos-beta-129-19506-0-17_">cos-beta-129-19506-0-17 <a id='"cos-arm64-beta-129-19506-0-17"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/6a94838554b0bb000df16504d3a1e893f6822085
">COS-6.12.67</a></td>
<td>v27.5.1</td>
<td>v2.2.0</td>
<td><a href="https://storage.googleapis.com/cos-tools/19506.0.17/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Change</h3>
<p>Added kernel support for bare-metal on the NVIDIA Grace platform.</p>
<h3>Change</h3>
<p>Added support for A4X-Max NICs.</p>
<h3>Change</h3>
<p>Applied ethtool ring length changes to a4x's first Diorite interface.</p>
<h3>Change</h3>
<p>Enabled Coherent Driver Memory Management by default when installing GPU drivers on GB2000.</p>
<h3>Change</h3>
<p>Changed the mount options for /mnt/disks to noexec.</p>
<h3>Change</h3>
<p>Updated CONFIG_BLK_DEV_LOOP_MIN_COUNT to 0. This allows
unlimited loop devices.</p>
<h3>Change</h3>
<p>Updated app-containers/containerd to v2.2.0.</p>
<h3>Change</h3>
<p>Updated app-containers/runc to v1.4.0.</p>
<h3>Change</h3>
<p>Updated dev-libs/openssl to v3.5.4.</p>
<h3>Change</h3>
<p>Updated the Linux kernel to v6.12.67.</p>
<h3>Change</h3>
<p>Upgraded dev-libs/json-c from 0.16-r1 to 0.18.0.</p>
<h3>Change</h3>
<p>Upgraded dev-libs/libuv from 1.43.0 to 1.51.0-r1.</p>
<h3>Change</h3>
<p>Upgraded dev-util/cmake from 3.26.4 to 3.31.9.</p>
<h3>Feature</h3>
<p>Added CPU balloon support for ARM CPUs.</p>
<h3>Feature</h3>
<p>Added ConnectX-8 RDMA support.</p>
<h3>Feature</h3>
<p>Added GB300 support to cos-extensions.</p>
<h3>Feature</h3>
<p>Added GDRCopy kernel module for NVIDIA drivers.</p>
<h3>Feature</h3>
<p>Added IPv6 support for machines using the IDPF driver.</p>
<h3>Feature</h3>
<p>Added TDX RTMR support.</p>
<h3>Feature</h3>
<p>Added guest support for paravirtualization of cpuids on ARM machines.</p>
<h3>Feature</h3>
<p>Added iRDMA support in the Linux kernel.</p>
<h3>Feature</h3>
<p>Added patches to handle IDPF tx timeouts.</p>
<h3>Feature</h3>
<p>Added support for CASFS (Content Addressable Storage File System) as a kernel module.</p>
<h3>Feature</h3>
<p>Added support for NVIDIA GB300 devices.</p>
<h3>Feature</h3>
<p>Added support for NVIDIA MFT Tools on arm64.</p>
<h3>Feature</h3>
<p>Added support for NVIDIA driver v535.288.01, v570.211.01 and v580.126.09.</p>
<h3>Feature</h3>
<p>Added support for NVIDIA driver v580.105.08 and set it as the default version for all GPU types.</p>
<h3>Feature</h3>
<p>Added support for SCSI logging.</p>
<h3>Feature</h3>
<p>Added support for the Lustre 2.14.0_p224 drivers.</p>
<h3>Feature</h3>
<p>Added support for the fwctl subsystem and the Mellanox fwctl driver for ARM64.</p>
<h3>Feature</h3>
<p>Added support for zswap in the Linux kernel.</p>
<h3>Feature</h3>
<p>Backported support for AMD SEV-SNP SVSM vTPM driver and
configfs-tsm addition for extended attestation protocol.</p>
<h3>Feature</h3>
<p>Configured the cos-gpu-installer to use R580 drivers as the
default GPU drivers.</p>
<h3>Feature</h3>
<p>Disabled DNSSEC by default for COS TPU VMs.</p>
<h3>Feature</h3>
<p>Enabled HTCP TCP congestion control algorithm as a module.</p>
<h3>Feature</h3>
<p>Enabled KVM for COS ARM64.</p>
<h3>Feature</h3>
<p>Enabled Software Watchdog as a module.</p>
<h3>Feature</h3>
<p>Enabled automatic loading of RDMA kernel modules when CX-8 devices are detected.</p>
<h3>Feature</h3>
<p>Enabled dynamic vlan configuration for non-primary NICs.</p>
<h3>Feature</h3>
<p>Enabled hardware optimized SHA256 algorithms for x86 machines with SSSE3 and AVX/AVX2 instructions and ARM64 machines with SHA-NI and ARMv8 Crypto Extensions.</p>
<h3>Feature</h3>
<p>Enabled the Btrfs kernel module.</p>
<h3>Feature</h3>
<p>Enabled the google-guest-agent's network management functionality.</p>
<h3>Feature</h3>
<p>Fixed a bug in cos-extensions which would cause GB200 and GB300 devices not to be detected in one code path, which would result in Imex channels not being created by default.</p>
<h3>Feature</h3>
<p>Removed the cloud-final.service dependency on multi-user.target which could delay cloud-init user-data scripts indefinitely when long-running startup scripts are used.</p>
<h3>Feature</h3>
<p>Removed the futility program from the root file system.</p>
<h3>Fixed</h3>
<p>Add support for NVIDIA MFT Tools v4.33.0.</p>
<h3>Fixed</h3>
<p>Added binary auth-provider-gcp.</p>
<h3>Fixed</h3>
<p>Added support for NVIDIA driver v535.274.02 and v570.195.03.</p>
<h3>Fixed</h3>
<p>Added support for the Lustre 2.14.0_p216 drivers.</p>
<h3>Fixed</h3>
<p>Backported various TCPDirect networking fixes.</p>
<h3>Fixed</h3>
<p>Enabled multiport support for CX-8 devices.</p>
<h3>Fixed</h3>
<p>Fixed a TCPX bug which would sometimes incorrectly report devices as being missing when route cache entries were missing or invalidated.</p>
<h3>Fixed</h3>
<p>Fixed a bug where setting MTU above 9000 on ARM systems with a 64k page size would cause IDPF networking to fail.</p>
<h3>Fixed</h3>
<p>Fixed a kernel bug which caused boot to fail for n4 machine types.</p>
<h3>Fixed</h3>
<p>Fixed an issue in app-containers/runc that caused runc to
use more file descriptors than intended.</p>
<h3>Fixed</h3>
<p>Fixed an issue where cpusets cgroups did not work with
cgroup v1 enabled.</p>
<h3>Fixed</h3>
<p>Fixed an issue where the cpuidle driver selected for some
machine types would cause inflated reports of high CPU usage.</p>
<h3>Fixed</h3>
<p>Fixed bcache latency spikes.</p>
<h3>Fixed</h3>
<p>Installed app-misc/c_rehash.</p>
<h3>Fixed</h3>
<p>Made CX-8 NIC naming order deterministic.</p>
<h3>Fixed</h3>
<p>Made the google-guest-agent more resilient to network link
flakes.</p>
<h3>Fixed</h3>
<p>Partially fixed an issue where excessive contention among writeback kworkers when switching a large number of inodes between cgroups could lead to system unresponsiveness.</p>
<h3>Fixed</h3>
<p>Reduced gcr_wait_online retry gap.</p>
<h3>Fixed</h3>
<p>Removed an artifact registry ping that would delay multi-user.target indefinitely for machines with no external IP address.</p>
<h3>Fixed</h3>
<p>Reverted a containerd change which reduced the default soft file descriptor limit for processes in containers to 1024.</p>
<h3>Fixed</h3>
<p>Reverted a containerd change which reduced the default soft file descriptor limit for processes in containers to 1024.</p>
<h3>Fixed</h3>
<p>Updated app-admin/node-problem-detector to 0.8.21.</p>
<h3>Fixed</h3>
<p>Updated app-containers/cni-plugins to 1.7.1.</p>
<h3>Fixed</h3>
<p>Updated app-containers/cri-tools to 1.32.0.</p>
<h3>Fixed</h3>
<p>Updated cos-gpu-installer to v2.5.10.</p>
<h3>Fixed</h3>
<p>Updated dev-python/requests to v2.32.4.</p>
<h3>Fixed</h3>
<p>Updated golang.org/x/crypto, golang.org/x/net, and
golang.org/x/oauth2 in kubelet and kubectl.</p>
<h3>Fixed</h3>
<p>Updated golang.org/x/oauth2, golang.org/x/net, golang.org/x/crypto, and github.com/golang-jwt/jwt/v5 in Docker.</p>
<h3>Fixed</h3>
<p>Updated kubelet and kubectl to v1.35.0.</p>
<h3>Fixed</h3>
<p>Updated net-misc/chrony to v4.8.</p>
<h3>Fixed</h3>
<p>Updated sys-libs/readline to v8.3.</p>
<h3>Fixed</h3>
<p>Updated app-admin/google-osconfig-agent to v20250522.00.</p>
<h3>Fixed</h3>
<p>Updated the dump capture kernel to v6.12.52.</p>
<h3>Fixed</h3>
<p>Updated toolbox container image tag to v20251002.</p>
<h3>Fixed</h3>
<p>Upgraded app-admin/fluent-bit to v4.2.2.</p>
<h3>Fixed</h3>
<p>Upgraded app-admin/node-problem-detector to v0.8.25.</p>
<h3>Fixed</h3>
<p>Upgraded app-admin/oslogin to v20260116.00.</p>
<h3>Fixed</h3>
<p>Upgraded app-admin/sosreport to v4.10.2.</p>
<h3>Fixed</h3>
<p>Upgraded app-admin/sudo to v1.9.17_p2.</p>
<h3>Fixed</h3>
<p>Upgraded app-benchmarks/microbenchmarks to v0.0.1-r21.</p>
<h3>Fixed</h3>
<p>Upgraded app-containers/cni-plugins to v1.9.0.</p>
<h3>Fixed</h3>
<p>Upgraded app-containers/docker-credential-gcr to v2.1.31</p>
<h3>Fixed</h3>
<p>Upgraded app-containers/docker-credential-helpers to v0.9.5.</p>
<h3>Fixed</h3>
<p>Upgraded app-crypt/mit-krb5 from version 1.20.1 to version 1.22.1.</p>
<h3>Fixed</h3>
<p>Upgraded app-emulation/cloud-init to v25.1.4.</p>
<h3>Fixed</h3>
<p>Upgraded app-shells/bash to v5.3.</p>
<h3>Fixed</h3>
<p>Upgraded chromeos-base/chromeos-common-script to v0.0.1-r668.</p>
<h3>Fixed</h3>
<p>Upgraded chromeos-base/chromeos-common-script to v0.0.1-r671.</p>
<h3>Fixed</h3>
<p>Upgraded chromeos-base/debugd-client to v0.0.1-r2737.</p>
<h3>Fixed</h3>
<p>Upgraded chromeos-base/google-breakpad to v2026.01.16.201758-r268.</p>
<h3>Fixed</h3>
<p>Upgraded chromeos-base/minijail to v18-r168.</p>
<h3>Fixed</h3>
<p>Upgraded chromeos-base/power_manager-client to v0.0.1-r2972.</p>
<h3>Fixed</h3>
<p>Upgraded chromeos-base/session_manager-client to v0.0.1-r2833.</p>
<h3>Fixed</h3>
<p>Upgraded chromeos-base/shill-client to v0.0.1-r4879.</p>
<h3>Fixed</h3>
<p>Upgraded dev-db/sqlite to v3.50.3.</p>
<h3>Fixed</h3>
<p>Upgraded dev-db/sqlite to v3.50.4.</p>
<h3>Fixed</h3>
<p>Upgraded dev-db/sqlite to v3.51.1.</p>
<h3>Fixed</h3>
<p>Upgraded dev-lang/go to v1.23.11.</p>
<h3>Fixed</h3>
<p>Upgraded dev-lang/go to v1.23.12.</p>
<h3>Fixed</h3>
<p>Upgraded dev-libs/expat to v2.7.3.</p>
<h3>Fixed</h3>
<p>Upgraded dev-libs/libxslt to version 1.1.43-r1.</p>
<h3>Fixed</h3>
<p>Upgraded dev-libs/nss to 3.117 and dev-libs/nspr to 4.37.</p>
<h3>Fixed</h3>
<p>Upgraded dev-libs/openssl to 3.5.1.</p>
<h3>Fixed</h3>
<p>Upgraded dev-python/coverage to v7.10.7.</p>
<h3>Fixed</h3>
<p>Upgraded google-guest-configs to v20260121.00.</p>
<h3>Fixed</h3>
<p>Upgraded net-dns/c-ares to v1.34.6.</p>
<h3>Fixed</h3>
<p>Upgraded net-libs/gnutls to v3.8.11.</p>
<h3>Fixed</h3>
<p>Upgraded net-libs/libtirpc to v1.3.7-r2.</p>
<h3>Fixed</h3>
<p>Upgraded net-misc/curl from 8.12.1 to 8.17.0.</p>
<h3>Fixed</h3>
<p>Upgraded net-misc/openssh to 10.0_p1.</p>
<h3>Fixed</h3>
<p>Upgraded net-misc/rsync to v3.4.1-r2.</p>
<h3>Fixed</h3>
<p>Upgraded net-misc/socat to v1.8.1.0-r1.</p>
<h3>Fixed</h3>
<p>Upgraded net-misc/wget to v1.25.0-r1.</p>
<h3>Fixed</h3>
<p>Upgraded net-nds/rpcbind to v1.2.8.</p>
<h3>Fixed</h3>
<p>Upgraded sys-apps/dmidecode to v3.7.</p>
<h3>Fixed</h3>
<p>Upgraded sys-apps/file to v5.46-r3.</p>
<h3>Fixed</h3>
<p>Upgraded sys-apps/gentoo-functions to v1.7.4.</p>
<h3>Fixed</h3>
<p>Upgraded sys-apps/hwdata to v0.400.</p>
<h3>Fixed</h3>
<p>Upgraded sys-apps/kmod to v34.2.</p>
<h3>Fixed</h3>
<p>Upgraded sys-apps/less to v692.</p>
<h3>Fixed</h3>
<p>Upgraded sys-apps/makedumpfile to v1.7.8.</p>
<h3>Fixed</h3>
<p>Upgraded sys-apps/nvme-cli from version 1.6-r1 to version 2.16, added package sys-libs/libnvme.</p>
<h3>Fixed</h3>
<p>Upgraded sys-apps/pv to v1.10.1.</p>
<h3>Fixed</h3>
<p>Upgraded sys-apps/pv to v1.10.2.</p>
<h3>Fixed</h3>
<p>Upgraded sys-apps/pv to v1.10.3.</p>
<h3>Fixed</h3>
<p>Upgraded sys-apps/pv to v1.9.34.</p>
<h3>Fixed</h3>
<p>Upgraded sys-apps/pv to v1.9.42.</p>
<h3>Fixed</h3>
<p>Upgraded sys-apps/pv to v1.9.44.</p>
<h3>Fixed</h3>
<p>Upgraded sys-auth/pambase to v20251104.</p>
<h3>Fixed</h3>
<p>Upgraded sys-libs/libcap to v2.77.</p>
<h3>Fixed</h3>
<p>Upgraded sys-libs/libseccomp to v2.6.0-r3.</p>
<h3>Fixed</h3>
<p>Upgraded sys-process/audit to 4.0.2-r1.</p>
<h3>Fixed</h3>
<p>Upgraded sys-process/lsof to v4.99.5.</p>
<h3>Fixed</h3>
<p>Upgraded sys-process/procps to v4.0.5-r3.</p>
<h3>Fixed</h3>
<p>Upgraded virtual/logger to v0-r2.</p>
<h3>Fixed</h3>
<p>upgraded net-fs/cifs-utils to v7.4.</p>
<h3>Security</h3>
<p>Added support for Nvidia driver version 535.261.03. This fixes CVE-2025-23286 and CVE-2025-23279.</p>
<h3>Security</h3>
<p>Added support for Nvidia driver version 570.172.08. This fixes CVE-2025-23279.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-11081, CVE-2025-11082 and CVE-2025-11083 in sys-libs/binutils-libs.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-11412 in binutils-libs.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-11413 and CVE-2025-11414 in binutils-libs.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-11494 in binutils-libs.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-11495 in binutils-libs.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-12084 in dev-lang/python.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-13836 in dev-lang/python.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-13837 in dev-lang/python.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-31133, CVE-2025-52565, and CVE-2025-52881 in
app-containers/runc.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40147 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40212 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40256 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-47914 and CVE-2025-58181 in dev-go/crypto.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-6052 in dev-libs/glib.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-61727 in dev-lang/go.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-61729 in dev-lang/go.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-66471 and CVE-2025-66418 in dev-python/urllib3.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-8058 in glibc.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-21441 in dev-python/urllib3.</p>
<h3>Security</h3>
<p>Fixed KCTF-01d3c84 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed KCTF-134121b in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed KCTF-2397e92 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed KCTF-50da4b9 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed KCTF-60e6489 in the Linux Kernel.</p>
<h3>Security</h3>
<p>Fixed KCTF-6bb73db in the Linux Kernel.</p>
<h3>Security</h3>
<p>Fixed KCTF-abad3d0 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed KCTF-b441cf3 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed KCTF-f41c5d1 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed KCTF-f8db647 in the Linux kernel.</p>
<h3>Security</h3>
<p>Updated dev-libs/libxml2 to version 2.14.6. This resolves CVE-2025-6021.</p>
<h3>Security</h3>
<p>Updated dev-python/jinja to v3.1.6. This resolves
CVE-2024-56326, CVE-2024-56201 and CVE-2025-27516.</p>
<h3>Security</h3>
<p>Updated dev-python/urllib3 to v2.5.0. This resolves
CVE-2025-50181.</p>
<h3>Security</h3>
<p>Updated sys-apps/coreutils to v9.5. This resolves
CVE-2024-0684.</p>
<h3>Security</h3>
<p>Upgraded dev-libs/glib to 2.82.5. This resolves
CVE-2024-52533.</p>
<h3>Security</h3>
<p>Upgraded dev-vcs/git to version 2.49.1. This fixes CVE-2025-48385, CVE-2025-27613, CVE-2025-27614, CVE-2025-48384, CVE-2025-46835.</p>
<h3>Security</h3>
<p>Upgraded net-misc/netplan to 1.1.2. This fixes
CVE-2022-4968.</p>
<h3>Security</h3>
<p>Upgraded open-vm-tools to 13.0.5. This fixes CVE-2025-41244 in anthos variant.</p>
<h3>Security</h3>
<p>Upgraded sys-libs/binutils-libs to version 2.45. This fixes CVE-2025-8224,CVE-2025-8225 and CVE-2025-1153.</p>
<h3>Security</h3>
<p>Upgraded urllib3 to version 1.26.18. This fixes CVE-2021-33503, CVE-2023-43804, and CVE-2023-45803.</p>
<h3>Security</h3>
<p>Upgraded vim &amp; vim-core to version 9.1.1652. This fixes
CVE-2025-53905, CVE-2025-53906, CVE-2025-9390.</p>
<h3>Change</h3>
<p>Runtime sysctl changes:
<ul>
<li>Changed: net.ipv4.udp_mem: 188034   250714  376068 -&gt; 188034    250715  376068</li>
</ul></p>
]]>
    </content>
  </entry>

  <entry>
    <title>February 19, 2026</title>
    <id>tag:google.com,2016:cos-release-notes#February_19_2026</id>
    <updated>2026-02-19T00:00:00-08:00</updated>
    <link rel="alternate" href="https://docs.cloud.google.com/container-optimized-os/docs/release-notes#February_19_2026"/>
    <content type="html"><![CDATA[<strong class="release-note-product-version-title">117</strong>
<h3>Change</h3>
<h3 id="cos-117-18613-534-2_">cos-117-18613-534-2 <a id='"cos-arm64-117-18613-534-2"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/55925dbc98fdf4fb587279b50d8bf5691279f7a5
">COS-6.6.123</a></td>
<td>v24.0.9</td>
<td>v1.7.29</td>
<td><a href="https://storage.googleapis.com/cos-tools/18613.534.2/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Announcement</h3>
<p>This is an <a href="https://docs.cloud.google.com/container-optimized-os/docs/concepts/versioning#lts_refresh_releases">LTS Refresh release.</a></p>
<h3>Feature</h3>
<p>Added support for NVIDIA driver v535.288.01, v570.211.01 and v580.126.09.</p>
<h3>Fixed</h3>
<p>Upgraded app-containers/docker-credential-helpers to v0.9.4.</p>
<h3>Fixed</h3>
<p>Upgraded net-libs/libtirpc to v1.3.7.</p>
<h3>Fixed</h3>
<p>Upgraded sys-libs/libcap to v2.77.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-22121 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-38232 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68725 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-22998 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-22999 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23001 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23003 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23005 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23010 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23011 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23025 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23038 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23054 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23069 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23083 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23085 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23095 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23097 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23099 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23103 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23105 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23107 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23110 in the Linux kernel.</p>
<h3>Security</h3>
<p>Updated dev-libs/libxml2 to version 2.14.6. This resolves CVE-2025-6021.</p>
<h3>Change</h3>
<p>Runtime sysctl changes:
<ul>
<li>Changed: kernel.tainted: 4608 -&gt; 4096</li>
</ul></p>
<strong class="release-note-product-version-title">121</strong>
<h3>Change</h3>
<h3 id="cos-121-18867-294-134_">cos-121-18867-294-134 <a id='"cos-arm64-121-18867-294-134"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/fb58ee65b976db7511889e450eea774c01a7e705
">COS-6.6.122</a></td>
<td>v27.5.1</td>
<td>v2.0.7</td>
<td><a href="https://storage.googleapis.com/cos-tools/18867.294.134/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Announcement</h3>
<p>This is an <a href="https://docs.cloud.google.com/container-optimized-os/docs/concepts/versioning#lts_refresh_releases">LTS Refresh release.</a></p>
<h3>Security</h3>
<p>Fixed CVE-2024-57994 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-37920 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-38232 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68725 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-22998 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-22999 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23001 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23003 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23005 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23010 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23011 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23038 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23069 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23083 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23085 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23095 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23097 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23099 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23103 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23105 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed KCTF-f41c5d1 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed KCTF-f8db647 in the Linux kernel.</p>
<h3>Security</h3>
<p>Updated dev-libs/libxml2 to version 2.14.6. This resolves CVE-2025-6021.</p>
<h3>Change</h3>
<p>Runtime sysctl changes:
<ul>
<li>Changed: kernel.tainted: 4608 -&gt; 4096</li>
</ul></p>
<strong class="release-note-product-version-title">125</strong>
<h3>Change</h3>
<h3 id="cos-125-19216-220-9_">cos-125-19216-220-9 <a id='"cos-arm64-125-19216-220-9"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/0f7fdc11309c4368bee6047b0946cf23a718ec27
">COS-6.12.68</a></td>
<td>v27.5.1</td>
<td>v2.1.5</td>
<td><a href="https://storage.googleapis.com/cos-tools/19216.220.9/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Announcement</h3>
<p>This is an <a href="https://docs.cloud.google.com/container-optimized-os/docs/concepts/versioning#lts_refresh_releases">LTS Refresh release.</a></p>
<h3>Feature</h3>
<p>Added CPU balloon support for Arm CPUs.</p>
<h3>Feature</h3>
<p>Added guest support for paravirtualization of cpuids on Arm machines.</p>
<h3>Fixed</h3>
<p>Upgraded app-containers/docker-registry-test to v2.8.3.</p>
<h3>Fixed</h3>
<p>Upgraded dev-libs/expat to v2.7.3.</p>
<h3>Fixed</h3>
<p>Upgraded google-guest-configs to v20260121.00.</p>
<h3>Fixed</h3>
<p>Upgraded net-libs/libtirpc to v1.3.7.</p>
<h3>Fixed</h3>
<p>Upgraded net-misc/socat to v1.8.1.0-r1.</p>
<h3>Fixed</h3>
<p>Upgraded net-nds/rpcbind to v1.2.8.</p>
<h3>Fixed</h3>
<p>Upgraded sys-apps/gentoo-functions to v1.7.4.</p>
<h3>Fixed</h3>
<p>Upgraded sys-auth/pambase to v20251104.</p>
<h3>Fixed</h3>
<p>Upgraded sys-libs/libcap to v2.77.</p>
<h3>Security</h3>
<p>Fixed KCTF-f8db647 in the Linux kernel.</p>
<h3>Change</h3>
<p>Runtime sysctl changes:
<ul>
<li>Changed: kernel.tainted: 4608 -&gt; 4096</li>
</ul></p>
]]>
    </content>
  </entry>

  <entry>
    <title>February 10, 2026</title>
    <id>tag:google.com,2016:cos-release-notes#February_10_2026</id>
    <updated>2026-02-10T00:00:00-08:00</updated>
    <link rel="alternate" href="https://docs.cloud.google.com/container-optimized-os/docs/release-notes#February_10_2026"/>
    <content type="html"><![CDATA[<strong class="release-note-product-version-title">125</strong>
<h3>Change</h3>
<h3 id="cos-125-19216-104-149_">cos-125-19216-104-149 <a id='"cos-arm64-125-19216-104-149"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/1b1e2b01ac575e6ecc5a3a83615620cc2fd27c45
">COS-6.12.55</a></td>
<td>v27.5.1</td>
<td>v2.1.5</td>
<td><a href="https://storage.googleapis.com/cos-tools/19216.104.149/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Fixed</h3>
<p>Fixed TCPX performance issues.</p>
<h3>Feature</h3>
<p>Added support for NVIDIA driver v535.288.01, v570.211.01 and v580.126.09.</p>
<h3>Feature</h3>
<p>Enabled TC Traffic Police as a module.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71183 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23023 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23038 in the Linux kernel.</p>
<strong class="release-note-product-version-title">113</strong>
<h3>Announcement</h3>
<p>This is an <a href="https://docs.cloud.google.com/container-optimized-os/docs/concepts/versioning#lts_refresh_releases">LTS Refresh release.</a></p>
<h3>Change</h3>
<h3 id="cos-113-18244-582-2_">cos-113-18244-582-2 <a id='"cos-arm64-113-18244-582-2"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/da4d584d21d831be3c46b5c3d188cae522848c2e
">COS-6.1.161</a></td>
<td>v24.0.9</td>
<td>v1.7.27</td>
<td><a href="https://storage.googleapis.com/cos-tools/18244.582.2/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Fixed</h3>
<p>Upgraded app-admin/google-guest-configs to v20251014.00.</p>
<h3>Fixed</h3>
<p>Upgraded app-containers/docker-credential-helpers to v0.9.4.</p>
<h3>Fixed</h3>
<p>Upgraded net-libs/libtirpc to v1.3.7.</p>
<h3>Fixed</h3>
<p>Upgraded sys-libs/libcap to v2.77.</p>
<h3>Security</h3>
<p>Updated dev-libs/libxml2 to version 2.14.6. This resolves CVE-2025-6021.</p>
<strong class="release-note-product-version-title">121</strong>
<h3>Change</h3>
<h3 id="cos-121-18867-294-116_">cos-121-18867-294-116 <a id='"cos-arm64-121-18867-294-116"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/46f5bcaacd71195ddc14cf9fd99c7908891efae7
">COS-6.6.113</a></td>
<td>v27.5.1</td>
<td>v2.0.7</td>
<td><a href="https://storage.googleapis.com/cos-tools/18867.294.116/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Feature</h3>
<p>Added support for NVIDIA driver v535.288.01, v570.211.01 and v580.126.09.</p>
<h3>Security</h3>
<p>Fixed CVE-2024-49968 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2024-57982 in the Linux kernel.</p>
]]>
    </content>
  </entry>

  <entry>
    <title>February 03, 2026</title>
    <id>tag:google.com,2016:cos-release-notes#February_03_2026</id>
    <updated>2026-02-03T00:00:00-08:00</updated>
    <link rel="alternate" href="https://docs.cloud.google.com/container-optimized-os/docs/release-notes#February_03_2026"/>
    <content type="html"><![CDATA[<strong class="release-note-product-version-title">Main</strong>
<h3>Change</h3>
<h3 id="cos-dev-129-19506-0-0_">cos-dev-129-19506-0-0 <a id='"cos-arm64-dev-129-19506-0-0"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/1c4b37fda000c09fb986f28b1dcc4a063cfe47bc
">COS-6.12.67</a></td>
<td>v27.5.1</td>
<td>v2.2.0</td>
<td><a href="https://storage.googleapis.com/cos-tools/19506.0.0/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Change</h3>
<p>Made it so that /mnt/disks is mounted as noexec.</p>
<h3>Change</h3>
<p>Updated CONFIG_BLK_DEV_LOOP_MIN_COUNT to 0. This allows
unlimited loop devices.</p>
<h3>Change</h3>
<p>Updated app-containers/containerd to v2.2.0.</p>
<h3>Change</h3>
<p>Updated app-containers/runc to v1.4.0.</p>
<h3>Change</h3>
<p>Updated dev-libs/openssl to v3.5.4.</p>
<h3>Change</h3>
<p>Updated the Linux kernel to v6.12.67.</p>
<h3>Change</h3>
<p>Upgrade dev-libs/json-c from 0.16-r1 to 0.18.0.</p>
<h3>Change</h3>
<p>Upgrade dev-libs/libuv from 1.43.0 to 1.51.0-r1.</p>
<h3>Change</h3>
<p>Upgrade dev-util/cmake from 3.26.4 to 3.31.9.</p>
<h3>Feature</h3>
<p>Added support for CASFS (Content Addressable Storage File System) as a kernel module.</p>
<h3>Feature</h3>
<p>Removed the futility program from the root file system.</p>
<h3>Fixed</h3>
<p>Added binary auth-provider-gcp.</p>
<h3>Fixed</h3>
<p>Updated cos-gpu-installer to v2.5.10.</p>
<h3>Fixed</h3>
<p>Updated kubelet and kubectl to v1.35.0.</p>
<h3>Fixed</h3>
<p>Updated sys-libs/readline to v8.3.</p>
<h3>Fixed</h3>
<p>Upgraded app-admin/fluent-bit to v4.2.2.</p>
<h3>Fixed</h3>
<p>Upgraded app-admin/google-guest-configs to v20260112.00.</p>
<h3>Fixed</h3>
<p>Upgraded app-admin/oslogin to v20260116.00.</p>
<h3>Fixed</h3>
<p>Upgraded app-admin/sosreport to v4.10.2.</p>
<h3>Fixed</h3>
<p>Upgraded app-benchmarks/microbenchmarks to v0.0.1-r21.</p>
<h3>Fixed</h3>
<p>Upgraded app-containers/cni-plugins to v1.9.0.</p>
<h3>Fixed</h3>
<p>Upgraded app-containers/docker-credential-gcr to v2.1.31</p>
<h3>Fixed</h3>
<p>Upgraded app-containers/docker-credential-helpers to v0.9.5.</p>
<h3>Fixed</h3>
<p>Upgraded app-crypt/mit-krb5 from version 1.20.1 to version 1.22.1.</p>
<h3>Fixed</h3>
<p>Upgraded app-shells/bash to v5.3.</p>
<h3>Fixed</h3>
<p>Upgraded chromeos-base/chromeos-common-script to v0.0.1-r671.</p>
<h3>Fixed</h3>
<p>Upgraded chromeos-base/debugd-client to v0.0.1-r2737.</p>
<h3>Fixed</h3>
<p>Upgraded chromeos-base/google-breakpad to v2025.12.22.204548-r263.</p>
<h3>Fixed</h3>
<p>Upgraded chromeos-base/google-breakpad to v2026.01.12.054131-r266.</p>
<h3>Fixed</h3>
<p>Upgraded chromeos-base/google-breakpad to v2026.01.16.201758-r268.</p>
<h3>Fixed</h3>
<p>Upgraded chromeos-base/power_manager-client to v0.0.1-r2972.</p>
<h3>Fixed</h3>
<p>Upgraded chromeos-base/session_manager-client to v0.0.1-r2833.</p>
<h3>Fixed</h3>
<p>Upgraded dev-db/sqlite to v3.51.1.</p>
<h3>Fixed</h3>
<p>Upgraded google-guest-configs to v20260121.00.</p>
<h3>Fixed</h3>
<p>Upgraded net-dns/c-ares to v1.34.6.</p>
<h3>Fixed</h3>
<p>Upgraded net-libs/gnutls to v3.8.11.</p>
<h3>Fixed</h3>
<p>Upgraded net-misc/socat to v1.8.1.0.</p>
<h3>Fixed</h3>
<p>Upgraded sys-apps/dmidecode to v3.7.</p>
<h3>Fixed</h3>
<p>Upgraded sys-apps/kmod to v34.2.</p>
<h3>Fixed</h3>
<p>Upgraded sys-apps/less to v691.</p>
<h3>Fixed</h3>
<p>Upgraded sys-apps/nvme-cli from version 1.6-r1 to version 2.16, added package sys-libs/libnvme.</p>
<h3>Fixed</h3>
<p>Upgraded sys-apps/pv to v1.10.3.</p>
<h3>Fixed</h3>
<p>Upgraded sys-libs/libseccomp to v2.6.0-r3.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-12084 in dev-lang/python.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-13836 in dev-lang/python.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-13837 in dev-lang/python.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-61727 in dev-lang/go.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-61729 in dev-lang/go.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-66471 and CVE-2025-66418 in dev-python/urllib3.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-21441 in dev-python/urllib3.</p>
<h3>Security</h3>
<p>Fixed KCTF-2397e92 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed KCTF-50da4b9 in the Linux kernel.</p>
<h3>Change</h3>
<p>Runtime sysctl changes:
<ul>
<li>Changed: net.ipv4.udp_mem: 188034   250715  376068 -&gt; 188034    250714  376068</li>
</ul></p>
<strong class="release-note-product-version-title">125</strong>
<h3>Change</h3>
<h3 id="cos-125-19216-104-133_">cos-125-19216-104-133 <a id='"cos-arm64-125-19216-104-133"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/d79e2a3f722af5d20208d089d7da9b07124ea6a7
">COS-6.12.55</a></td>
<td>v27.5.1</td>
<td>v2.1.5</td>
<td><a href="https://storage.googleapis.com/cos-tools/19216.104.133/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Security</h3>
<p>Fixed CVE-2025-38591 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40149 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71148 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71149 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71151 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71156 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71157 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71160 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-0915 in sys-apps/glibc.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-22976 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-22977 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-22979 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-22980 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-22988 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-22989 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-22994 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-22996 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-22998 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-22999 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23000 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23001 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23002 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23003 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23005 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23010 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-23011 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed KCTF-2397e92 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed KCTF-50da4b9 in the Linux kernel.</p>
<h3>Change</h3>
<p>Runtime sysctl changes:
<ul>
<li>Changed: kernel.tainted: 4096 -&gt; 4608</li>
</ul></p>
<strong class="release-note-product-version-title">121</strong>
<h3>Change</h3>
<h3 id="cos-121-18867-294-112_">cos-121-18867-294-112 <a id='"cos-arm64-121-18867-294-112"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/ae5e8e39e06320f6f9149d3e219c57bef0d7f151
">COS-6.6.113</a></td>
<td>v27.5.1</td>
<td>v2.0.7</td>
<td><a href="https://storage.googleapis.com/cos-tools/18867.294.112/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Feature</h3>
<p>Enabled TC Traffic Police as a module.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-22111 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71148 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71149 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71151 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71160 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-0915 in sys-apps/glibc.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-22976 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-22977 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-22979 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-22980 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-22988 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-22994 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed KCTF-2397e92 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed KCTF-50da4b9 in the Linux kernel.</p>
<h3>Change</h3>
<p>Runtime sysctl changes:
<ul>
<li>Changed: kernel.tainted: 4096 -&gt; 4608</li>
</ul></p>
<strong class="release-note-product-version-title">117</strong>
<h3>Change</h3>
<h3 id="cos-117-18613-439-120_">cos-117-18613-439-120 <a id='"cos-arm64-117-18613-439-120"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/1587565bad32343ed4bfeb5fd619967ed3db343a
">COS-6.6.111</a></td>
<td>v24.0.9</td>
<td>v1.7.29</td>
<td><a href="https://storage.googleapis.com/cos-tools/18613.439.120/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Security</h3>
<p>Fixed CVE-2025-71148 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71149 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71151 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71160 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-0915 in sys-apps/glibc.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-22976 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-22977 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-22979 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-22980 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-22988 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-22994 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed KCTF-2397e92 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed KCTF-50da4b9 in the Linux kernel.</p>
<h3>Change</h3>
<p>Runtime sysctl changes:
<ul>
<li>Changed: kernel.tainted: 4096 -&gt; 4608</li>
</ul></p>
<strong class="release-note-product-version-title">113</strong>
<h3>Change</h3>
<h3 id="cos-113-18244-521-98_">cos-113-18244-521-98 <a id='"cos-arm64-113-18244-521-98"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/ddebac76ba109e1bec46dd70ce8260528fc79065
">COS-6.1.155</a></td>
<td>v24.0.9</td>
<td>v1.7.27</td>
<td><a href="https://storage.googleapis.com/cos-tools/18244.521.98/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Fixed</h3>
<p>Upgraded sys-apps/less to v691.</p>
<h3>Security</h3>
<p>Fixed CVE-2024-49968 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71149 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-0915 in sys-apps/glibc.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-22976 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-22977 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-22979 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-22980 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-22988 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-22994 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed KCTF-2397e92 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed KCTF-50da4b9 in the Linux kernel.</p>
]]>
    </content>
  </entry>

  <entry>
    <title>January 28, 2026</title>
    <id>tag:google.com,2016:cos-release-notes#January_28_2026</id>
    <updated>2026-01-28T00:00:00-08:00</updated>
    <link rel="alternate" href="https://docs.cloud.google.com/container-optimized-os/docs/release-notes#January_28_2026"/>
    <content type="html"><![CDATA[<strong class="release-note-product-version-title">117</strong>
<h3>Change</h3>
<h3 id="cos-117-18613-439-108_">cos-117-18613-439-108 <a id='"cos-arm64-117-18613-439-108"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/50c02274e65e7795a63e00fc825404e1c33caad8
">COS-6.6.111</a></td>
<td>v24.0.9</td>
<td>v1.7.29</td>
<td><a href="https://storage.googleapis.com/cos-tools/18613.439.108/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Fixed</h3>
<p>Installed app-misc/c_rehash, which was unintentionally removed after the dev-libs/openssl update.</p>
<h3>Fixed</h3>
<p>Upgraded sys-apps/less to v691.</p>
<h3>Security</h3>
<p>Fixed CVE-2024-49968 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2024-57982 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-13836 in dev-lang/python.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-13837 in dev-lang/python.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-22111 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-38022 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-38129 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68259 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68261 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68264 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68265 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68337 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68349 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68363 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68724 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68740 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68744 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68756 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68764 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68775 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68780 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68782 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68788 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68794 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68795 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68798 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68803 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68813 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68814 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68816 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68820 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68821 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71068 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71077 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71084 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71089 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71096 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71097 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71098 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71102 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71104 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71113 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71118 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71120 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71123 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71125 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71131 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-21441 in dev-python/urllib3.</p>
<h3>Security</h3>
<p>Updated dev-libs/openssl to v3.0.19. This resolves CVE-2025-15467.</p>
<strong class="release-note-product-version-title">121</strong>
<h3>Change</h3>
<h3 id="cos-121-18867-294-100_">cos-121-18867-294-100 <a id='"cos-arm64-121-18867-294-100"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/7c8659e7ea01e6439fb9c0ebec1014543bf25250
">COS-6.6.113</a></td>
<td>v27.5.1</td>
<td>v2.0.7</td>
<td><a href="https://storage.googleapis.com/cos-tools/18867.294.100/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Fixed</h3>
<p>Installed app-misc/c_rehash, which was unintentionally removed after the dev-libs/openssl update.</p>
<h3>Fixed</h3>
<p>Upgraded app-admin/sosreport to v4.10.2.</p>
<h3>Fixed</h3>
<p>Upgraded sys-apps/less to v691.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-13836 in dev-lang/python.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-13837 in dev-lang/python.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-38022 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-38129 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68259 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68261 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68264 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68265 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68337 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68349 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68363 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68724 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68740 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68744 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68756 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68764 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68775 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68780 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68782 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68788 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68794 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68795 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68798 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68813 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68814 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68816 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68820 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68821 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71068 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71077 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71084 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71089 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71096 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71097 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71098 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71102 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71104 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71113 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71118 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71120 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71123 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71125 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71131 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-21441 in dev-python/urllib3.</p>
<h3>Security</h3>
<p>Updated dev-libs/openssl to v3.0.19. This resolves CVE-2025-15467.</p>
<strong class="release-note-product-version-title">113</strong>
<h3>Change</h3>
<h3 id="cos-113-18244-521-88_">cos-113-18244-521-88 <a id='"cos-arm64-113-18244-521-88"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/cf2b03d70c085364cc03f0b8a1f770b054cce832
">COS-6.1.155</a></td>
<td>v24.0.9</td>
<td>v1.7.27</td>
<td><a href="https://storage.googleapis.com/cos-tools/18244.521.88/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Fixed</h3>
<p>Installed app-misc/c_rehash, which was unintentionally removed after the dev-libs/openssl update.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-13836 in dev-lang/python.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-13837 in dev-lang/python.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68795 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68816 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71102 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71104 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71113 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71118 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71120 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71123 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71125 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71131 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-21441 in dev-python/urllib3.</p>
<h3>Security</h3>
<p>Updated dev-libs/openssl to v3.0.19. This resolves CVE-2025-15467.</p>
<strong class="release-note-product-version-title">125</strong>
<h3>Change</h3>
<h3 id="cos-125-19216-104-126_">cos-125-19216-104-126 <a id='"cos-arm64-125-19216-104-126"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/46c2d01887bed5038cc2b8bbd801ae2f7985e7f0
">COS-6.12.55</a></td>
<td>v27.5.1</td>
<td>v2.1.5</td>
<td><a href="https://storage.googleapis.com/cos-tools/19216.104.126/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Fixed</h3>
<p>Upgraded app-admin/sosreport to v4.10.2.</p>
<h3>Fixed</h3>
<p>Upgraded sys-apps/less to v691.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-13836 in dev-lang/python.</p>
<h3>Security</h3>
<p>Fixed CVE-2026-21441 in dev-python/urllib3.</p>
<h3>Security</h3>
<p>Updated dev-libs/openssl to v3.5.5. This resolves CVE-2025-15467.</p>
]]>
    </content>
  </entry>

  <entry>
    <title>January 23, 2026</title>
    <id>tag:google.com,2016:cos-release-notes#January_23_2026</id>
    <updated>2026-01-23T00:00:00-08:00</updated>
    <link rel="alternate" href="https://docs.cloud.google.com/container-optimized-os/docs/release-notes#January_23_2026"/>
    <content type="html"><![CDATA[<strong class="release-note-product-version-title">125</strong>
<h3>Change</h3>
<h3 id="cos-125-19216-104-117_">cos-125-19216-104-117 <a id='"cos-arm64-125-19216-104-117"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/fc34d54f830a07ff0b7ee3b4f6273acf2d6099de
">COS-6.12.55</a></td>
<td>v27.5.1</td>
<td>v2.1.5</td>
<td><a href="https://storage.googleapis.com/cos-tools/19216.104.117/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Fixed</h3>
<p>Fixed a performance issue in TCPX.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-13837 in dev-lang/python.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71141 in the Linux kernel.</p>
]]>
    </content>
  </entry>

  <entry>
    <title>January 20, 2026</title>
    <id>tag:google.com,2016:cos-release-notes#January_20_2026</id>
    <updated>2026-01-20T00:00:00-08:00</updated>
    <link rel="alternate" href="https://docs.cloud.google.com/container-optimized-os/docs/release-notes#January_20_2026"/>
    <content type="html"><![CDATA[<strong class="release-note-product-version-title">125</strong>
<h3>Change</h3>
<h3 id="cos-125-19216-104-113_">cos-125-19216-104-113 <a id='"cos-arm64-125-19216-104-113"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/c3275d29487cb867b01fadabaae9e498686a1ad3
">COS-6.12.55</a></td>
<td>v27.5.1</td>
<td>v2.1.5</td>
<td><a href="https://storage.googleapis.com/cos-tools/19216.104.113/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Security</h3>
<p>Applied urllib3 patch for CVE-2024-37891.</p>
<h3>Change</h3>
<p>Applied ethtool ring length changes to a4x's first Diorite interface.</p>
<h3>Fixed</h3>
<p>Updated dev-libs/openssl to v3.5.4.</p>
<h3>Feature</h3>
<p>Enabled guest support for NVIDIA virtual command queues (CMDQV).</p>
<h3>Fixed</h3>
<p>Updated cos-gpu-installer to v2.5.10.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-12084 in dev-lang/python.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-22111 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-38234 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40325 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-61727 in dev-lang/go.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-61729 in dev-lang/go.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68206 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68259 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68261 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68264 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68265 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68337 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68348 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68349 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68363 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68366 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68369 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68372 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68374 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68724 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68727 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68728 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68740 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68742 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68744 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68775 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68778 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68780 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68782 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68788 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68794 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68795 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68798 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68800 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68801 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68803 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68810 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68811 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68813 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68814 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68816 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68820 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68821 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71067 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71068 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71072 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71077 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71080 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71084 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71089 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71096 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71097 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71098 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71102 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71104 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71113 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71118 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71120 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71123 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71125 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71131 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71134 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71135 in the Linux kernel.</p>
<strong class="release-note-product-version-title">113</strong>
<h3>Change</h3>
<h3 id="cos-113-18244-521-74_">cos-113-18244-521-74 <a id='"cos-arm64-113-18244-521-74"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/06ffda9ccf58dca3b8a10277998fdd686fd701f4
">COS-6.1.155</a></td>
<td>v24.0.9</td>
<td>v1.7.27</td>
<td><a href="https://storage.googleapis.com/cos-tools/18244.521.74/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Fixed</h3>
<p>Updated dev-libs/openssl to v3.0.18</p>
<h3>Security</h3>
<p>Applied urllib3 patch for CVE-2024-37891.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-12084 in dev-lang/python.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-22111 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-38022 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-38129 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-61727 in dev-lang/go.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-61729 in dev-lang/go.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68261 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68264 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68337 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68349 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68363 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68724 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68740 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68780 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68782 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68788 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68798 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68803 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68813 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68814 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68820 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68821 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71077 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71084 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71096 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71097 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-71098 in the Linux kernel.</p>
<strong class="release-note-product-version-title">117</strong>
<h3>Change</h3>
<h3 id="cos-117-18613-439-92_">cos-117-18613-439-92 <a id='"cos-arm64-117-18613-439-92"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/6d08f5d4ac61d058c2507b97ca2101b22c79a8c1
">COS-6.6.111</a></td>
<td>v24.0.9</td>
<td>v1.7.29</td>
<td><a href="https://storage.googleapis.com/cos-tools/18613.439.92/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Security</h3>
<p>Applied urllib3 patch for CVE-2024-37891.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-12084 in dev-lang/python.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40350 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40350 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40350 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-61727 in dev-lang/go.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-61729 in dev-lang/go.</p>
<strong class="release-note-product-version-title">121</strong>
<h3>Change</h3>
<h3 id="cos-121-18867-294-88_">cos-121-18867-294-88 <a id='"cos-arm64-121-18867-294-88"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/97e2b5284efaa0c1d58fe37dd438d4f1e64a835f
">COS-6.6.113</a></td>
<td>v27.5.1</td>
<td>v2.0.7</td>
<td><a href="https://storage.googleapis.com/cos-tools/18867.294.88/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Change</h3>
<p>Updated dev-libs/openssl to v3.0.18.</p>
<h3>Security</h3>
<p>Applied urllib3 patch for CVE-2024-37891.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-12084 in dev-lang/python.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-61727 in dev-lang/go.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-61729 in dev-lang/go.</p>
]]>
    </content>
  </entry>

  <entry>
    <title>January 14, 2026</title>
    <id>tag:google.com,2016:cos-release-notes#January_14_2026</id>
    <updated>2026-01-14T00:00:00-08:00</updated>
    <link rel="alternate" href="https://docs.cloud.google.com/container-optimized-os/docs/release-notes#January_14_2026"/>
    <content type="html"><![CDATA[<strong class="release-note-product-version-title">125</strong>
<h3>Change</h3>
<h3 id="cos-125-19216-104-95_">cos-125-19216-104-95 <a id='"cos-arm64-125-19216-104-95"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/740cba961383c7ac618ea6c083b09027ec1c786b
">COS-6.12.55</a></td>
<td>v27.5.1</td>
<td>v2.1.5</td>
<td><a href="https://storage.googleapis.com/cos-tools/19216.104.95/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Security</h3>
<p>Fixed CVE-2025-40350 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40350 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40350 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68329 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68756 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68758 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68763 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68764 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68766 in the Linux kernel.</p>
<h3>Change</h3>
<p>Runtime sysctl changes:
<ul>
<li>Changed: net.ipv4.udp_mem: 188034   250714  376068 -&gt; 188034    250715  376068</li>
</ul></p>
<strong class="release-note-product-version-title">121</strong>
<h3>Change</h3>
<h3 id="cos-121-18867-294-78_">cos-121-18867-294-78 <a id='"cos-arm64-121-18867-294-78"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/97e2b5284efaa0c1d58fe37dd438d4f1e64a835f
">COS-6.6.113</a></td>
<td>v27.5.1</td>
<td>v2.0.7</td>
<td><a href="https://storage.googleapis.com/cos-tools/18867.294.78/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Security</h3>
<p>Fixed CVE-2025-40350 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40350 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40350 in the Linux kernel.</p>
<h3>Change</h3>
<p>Runtime sysctl changes:
<ul>
<li>Changed: net.ipv4.tcp_mem: 94044    125392  188088 -&gt; 94041 125391  188082</li>
<li>Changed: net.ipv4.udp_mem: 188088   250784  376176 -&gt; 188085    250783  376170</li>
</ul></p>
<strong class="release-note-product-version-title">117</strong>
<h3>Change</h3>
<h3 id="cos-117-18613-439-82_">cos-117-18613-439-82 <a id='"cos-arm64-117-18613-439-82"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/c1c785eede9ce8b473ad459859f5054d6e66af95
">COS-6.6.111</a></td>
<td>v24.0.9</td>
<td>v1.7.29</td>
<td><a href="https://storage.googleapis.com/cos-tools/18613.439.82/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Fixed</h3>
<p>Added bcache clock cache replacement policy.</p>
]]>
    </content>
  </entry>

  <entry>
    <title>January 05, 2026</title>
    <id>tag:google.com,2016:cos-release-notes#January_05_2026</id>
    <updated>2026-01-05T00:00:00-08:00</updated>
    <link rel="alternate" href="https://docs.cloud.google.com/container-optimized-os/docs/release-notes#January_05_2026"/>
    <content type="html"><![CDATA[<strong class="release-note-product-version-title">125</strong>
<h3>Change</h3>
<h3 id="cos-125-19216-104-89_">cos-125-19216-104-89 <a id='"cos-arm64-125-19216-104-89"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/d3f94ae8cf5edcf8f0b51e6d49a1715adc182c06
">COS-6.12.55</a></td>
<td>v27.5.1</td>
<td>v2.1.5</td>
<td><a href="https://storage.googleapis.com/cos-tools/19216.104.89/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Change</h3>
<p>Updated app-admin/sosreport to v4.10.1. Enabled containerd stack dump by default.</p>
<h3>Fixed</h3>
<p>Upgraded net-misc/socat to v1.8.1.0.</p>
<h3>Fixed</h3>
<p>Upgraded sys-apps/dmidecode to v3.7.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40346 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40348 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40353 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40359 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40360 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40361 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-66471 and CVE-2025-66418 in dev-python/urllib3.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68171 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68173 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68178 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68183 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68185 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68186 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68188 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68191 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68198 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68199 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68200 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68208 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68213 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68214 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68219 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68224 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68229 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68231 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68241 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68242 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68292 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68293 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68295 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68313 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68317 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68321 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68324 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68325 in the Linux kernel.</p>
<h3>Change</h3>
<p>Runtime sysctl changes:
<ul>
<li>Changed: fs.file-max: 811475 -&gt; 811504</li>
<li>Changed: net.ipv4.udp_mem: 188034   250715  376068 -&gt; 188034    250714  376068</li>
</ul></p>
<strong class="release-note-product-version-title">121</strong>
<h3>Change</h3>
<h3 id="cos-121-18867-294-76_">cos-121-18867-294-76 <a id='"cos-arm64-121-18867-294-76"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/681ebb10b5bb34ddcbfed4624beeca6417afe4b8
">COS-6.6.113</a></td>
<td>v27.5.1</td>
<td>v2.0.7</td>
<td><a href="https://storage.googleapis.com/cos-tools/18867.294.76/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Change</h3>
<p>Updated app-admin/sosreport to v4.10.1. Enabled containerd stack dump by default.</p>
<h3>Fixed</h3>
<p>Upgraded net-misc/socat to v1.8.1.0.</p>
<h3>Fixed</h3>
<p>Upgraded sys-apps/dmidecode to v3.7.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40346 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40360 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40361 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-66471 and CVE-2025-66418 in dev-python/urllib3.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68171 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68173 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68178 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68183 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68185 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68191 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68198 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68200 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68208 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68214 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68219 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68224 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68229 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68231 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68241 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68295 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68321 in the Linux kernel.</p>
<h3>Change</h3>
<p>Runtime sysctl changes:
<ul>
<li>Changed: fs.file-max: 811762 -&gt; 811813</li>
<li>Changed: net.ipv4.tcp_mem: 94041    125391  188082 -&gt; 94044 125392  188088</li>
<li>Changed: net.ipv4.udp_mem: 188085   250783  376170 -&gt; 188088    250784  376176</li>
</ul></p>
<strong class="release-note-product-version-title">117</strong>
<h3>Change</h3>
<h3 id="cos-117-18613-439-81_">cos-117-18613-439-81 <a id='"cos-arm64-117-18613-439-81"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/c3c868d27f79927ba002a59d72ec102f9cfff5e9
">COS-6.6.111</a></td>
<td>v24.0.9</td>
<td>v1.7.29</td>
<td><a href="https://storage.googleapis.com/cos-tools/18613.439.81/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Change</h3>
<p>Updated app-admin/sosreport to v4.10.1. Enabled containerd stack dump by default.</p>
<h3>Fixed</h3>
<p>Upgraded net-misc/socat to v1.8.1.0.</p>
<h3>Fixed</h3>
<p>Upgraded sys-apps/dmidecode to v3.7.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40346 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40360 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40361 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-66471 and CVE-2025-66418 in dev-python/urllib3.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68171 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68173 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68178 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68183 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68185 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68191 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68198 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68200 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68208 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68214 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68219 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68224 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68229 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68231 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68241 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68295 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68321 in the Linux kernel.</p>
<h3>Change</h3>
<p>Runtime sysctl changes:
<ul>
<li>Changed: fs.file-max: 811737 -&gt; 811699</li>
</ul></p>
<strong class="release-note-product-version-title">113</strong>
<h3>Change</h3>
<h3 id="cos-113-18244-521-65_">cos-113-18244-521-65 <a id='"cos-arm64-113-18244-521-65"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/4355a68c462538a57389ff1190ca36705c68afa3
">COS-6.1.155</a></td>
<td>v24.0.9</td>
<td>v1.7.27</td>
<td><a href="https://storage.googleapis.com/cos-tools/18244.521.65/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Change</h3>
<p>Updated app-admin/sosreport to v4.10.1. Enabled containerd stack dump by default.</p>
<h3>Fixed</h3>
<p>Upgraded net-misc/socat to v1.8.1.0.</p>
<h3>Fixed</h3>
<p>Upgraded sys-apps/dmidecode to v3.7.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40346 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40361 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-66471 and CVE-2025-66418 in dev-python/urllib3.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68171 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68173 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68185 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68191 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68200 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68224 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68229 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68231 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68241 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68295 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-68321 in the Linux kernel.</p>
<h3>Change</h3>
<p>Runtime sysctl changes:
<ul>
<li>Changed: fs.file-max: 812054 -&gt; 812031</li>
</ul></p>
]]>
    </content>
  </entry>

  <entry>
    <title>December 16, 2025</title>
    <id>tag:google.com,2016:cos-release-notes#December_16_2025</id>
    <updated>2025-12-16T00:00:00-08:00</updated>
    <link rel="alternate" href="https://docs.cloud.google.com/container-optimized-os/docs/release-notes#December_16_2025"/>
    <content type="html"><![CDATA[<strong class="release-note-product-version-title">Main</strong>
<h3>Change</h3>
<h3 id="cos-dev-129-19437-0-0_">cos-dev-129-19437-0-0 <a id='"cos-arm64-dev-129-19437-0-0"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/840c821062a0030fc3846421ce7ad559f87a9e13
">COS-6.12.61</a></td>
<td>v27.5.1</td>
<td>v2.1.5</td>
<td><a href="https://storage.googleapis.com/cos-tools/19437.0.0/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Change</h3>
<p>Applied ethtool ring length changes to a4x's first Diorite interface.</p>
<h3>Feature</h3>
<p>Added guest support for paravirtualization of cpuids on ARM machines.</p>
<h3>Fixed</h3>
<p>Upgraded net-misc/curl from 8.12.1 to 8.17.0.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40256 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-47914 and CVE-2025-58181 in dev-go/crypto.</p>
<h3>Security</h3>
<p>Updated containerd and containerd-test to v2.1.5. This
resolves CVE-2024-25621 and CVE-2025-64329.</p>
<h3>Change</h3>
<p>Runtime sysctl changes:
<ul>
<li>Changed: fs.file-max: 811412 -&gt; 811430</li>
</ul></p>
<strong class="release-note-product-version-title">125</strong>
<h3>Change</h3>
<h3 id="cos-125-19216-104-74_">cos-125-19216-104-74 <a id='"cos-arm64-125-19216-104-74"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/49d1312ab9c199f2057b78dfaca25ece0281535d
">COS-6.12.55</a></td>
<td>v27.5.1</td>
<td>v2.1.5</td>
<td><a href="https://storage.googleapis.com/cos-tools/19216.104.74/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Fixed</h3>
<p>Backported upstream commit to reduce bcache gc latency.</p>
<h3>Security</h3>
<p>Fixed KCTF-f05a4f9 in the Linux kernel.</p>
<h3>Change</h3>
<p>Runtime sysctl changes:
<ul>
<li>Changed: fs.file-max: 811448 -&gt; 811475</li>
</ul></p>
<strong class="release-note-product-version-title">121</strong>
<h3>Change</h3>
<h3 id="cos-121-18867-294-68_">cos-121-18867-294-68 <a id='"cos-arm64-121-18867-294-68"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/45b4334f3d9631c8409c84a9ba19b6ce5f27ccf8
">COS-6.6.113</a></td>
<td>v27.5.1</td>
<td>v2.0.7</td>
<td><a href="https://storage.googleapis.com/cos-tools/18867.294.68/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Fixed</h3>
<p>Backported upstream commit to reduce bcache gc latency.</p>
<h3>Security</h3>
<p>Fixed KCTF-f05a4f9 in the Linux kernel.</p>
<h3>Change</h3>
<p>Runtime sysctl changes:
<ul>
<li>Changed: fs.file-max: 811817 -&gt; 811762</li>
</ul></p>
<strong class="release-note-product-version-title">117</strong>
<h3>Change</h3>
<h3 id="cos-117-18613-439-72_">cos-117-18613-439-72 <a id='"cos-arm64-117-18613-439-72"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/b331fe7b7073b7dbfc8e7b02ea9b60bdb30e0e94
">COS-6.6.111</a></td>
<td>v24.0.9</td>
<td>v1.7.29</td>
<td><a href="https://storage.googleapis.com/cos-tools/18613.439.72/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Fixed</h3>
<p>Backported upstream commit to reduce bcache gc latency.</p>
<h3>Security</h3>
<p>Fixed KCTF-f05a4f9 in the Linux kernel.</p>
<h3>Change</h3>
<p>Runtime sysctl changes:
<ul>
<li>Changed: fs.file-max: 811769 -&gt; 811737</li>
</ul></p>
<strong class="release-note-product-version-title">113</strong>
<h3>Change</h3>
<h3 id="cos-113-18244-521-56_">cos-113-18244-521-56 <a id='"cos-arm64-113-18244-521-56"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/7d3601d80b2a8874f08ecf3f1cbf8404ec1bf82e
">COS-6.1.155</a></td>
<td>v24.0.9</td>
<td>v1.7.27</td>
<td><a href="https://storage.googleapis.com/cos-tools/18244.521.56/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Security</h3>
<p>Fixed KCTF-f05a4f9 in the Linux kernel.</p>
<h3>Change</h3>
<p>Runtime sysctl changes:
<ul>
<li>Changed: fs.file-max: 812044 -&gt; 812054</li>
</ul></p>
]]>
    </content>
  </entry>

  <entry>
    <title>December 15, 2025</title>
    <id>tag:google.com,2016:cos-release-notes#December_15_2025</id>
    <updated>2025-12-15T00:00:00-08:00</updated>
    <link rel="alternate" href="https://docs.cloud.google.com/container-optimized-os/docs/release-notes#December_15_2025"/>
    <content type="html"><![CDATA[<strong class="release-note-product-version-title">113</strong>
<h3>Change</h3>
<h3 id="cos-113-18244-521-55_">cos-113-18244-521-55 <a id='"cos-arm64-113-18244-521-55"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/ba73fa7fea97f67245b4aea7bfb5328dff53f188
">COS-6.1.155</a></td>
<td>v24.0.9</td>
<td>v1.7.27</td>
<td><a href="https://storage.googleapis.com/cos-tools/18244.521.55/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Feature</h3>
<p>Added support for NVIDIA drivers v580.95.05 and v580.105.08.</p>
<h3>Fixed</h3>
<p>Fixed CVE-2025-40271 in the Linux kernel.</p>
<h3>Fixed</h3>
<p>Fixed CVE-2025-40273 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2024-25621 and CVE-2025-64329 in app-containers/containerd.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-38057 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-38678 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40083 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40220 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40248 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40256 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40292 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40293 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40297 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40319 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40324 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40341 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-47914 and CVE-2025-58181 in dev-go/crypto.</p>
<h3>Change</h3>
<p>Runtime sysctl changes:
<ul>
<li>Changed: fs.file-max: 812052 -&gt; 812044</li>
</ul></p>
<strong class="release-note-product-version-title">125</strong>
<h3>Change</h3>
<h3 id="cos-125-19216-104-72_">cos-125-19216-104-72 <a id='"cos-arm64-125-19216-104-72"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/e2523dd07b96cc75b0940a20895e40e1211f3d29
">COS-6.12.55</a></td>
<td>v27.5.1</td>
<td>v2.1.5</td>
<td><a href="https://storage.googleapis.com/cos-tools/19216.104.72/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Security</h3>
<p>Fixed CVE-2025-40231 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40238 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40248 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40256 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40292 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40297 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40303 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40305 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40313 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40319 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40320 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40324 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40328 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40341 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-47914 and CVE-2025-58181 in dev-go/crypto.</p>
<h3>Security</h3>
<p>Updated app-containers/containerd and app-containers/containerd-test to v2.1.5. This resolves CVE-2024-25621 and CVE-2025-64329.</p>
<h3>Change</h3>
<p>Runtime sysctl changes:
<ul>
<li>Changed: fs.file-max: 811449 -&gt; 811448</li>
</ul></p>
<strong class="release-note-product-version-title">121</strong>
<h3>Change</h3>
<h3 id="cos-121-18867-294-66_">cos-121-18867-294-66 <a id='"cos-arm64-121-18867-294-66"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/36348945ac1412fc8068ef396a5ad8693deda345
">COS-6.6.113</a></td>
<td>v27.5.1</td>
<td>v2.0.7</td>
<td><a href="https://storage.googleapis.com/cos-tools/18867.294.66/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Security</h3>
<p>Fixed CVE-2025-40220 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40231 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40292 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40293 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40297 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40319 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40324 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40328 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40341 in the Linux kernel.</p>
<h3>Security</h3>
<p>Updated app-containers/containerd and app-containers/containerd-test to v2.0.7. This resolves CVE-2024-25621 and CVE-2025-64329.</p>
<h3>Change</h3>
<p>Runtime sysctl changes:
<ul>
<li>Changed: fs.file-max: 811799 -&gt; 811817</li>
</ul></p>
<strong class="release-note-product-version-title">117</strong>
<h3>Change</h3>
<h3 id="cos-117-18613-439-70_">cos-117-18613-439-70 <a id='"cos-arm64-117-18613-439-70"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/bf7aa68afdde1db3e28dd40212b7b39d3760a713
">COS-6.6.111</a></td>
<td>v24.0.9</td>
<td>v1.7.29</td>
<td><a href="https://storage.googleapis.com/cos-tools/18613.439.70/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Security</h3>
<p>Fixed CVE-2025-40328 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40341 in the Linux kernel.</p>
<h3>Security</h3>
<p>Updated app-containers/containerd and app-containers/containerd-test to v1.7.29. This resolves CVE-2024-25621 and CVE-2025-64329.</p>
<h3>Change</h3>
<p>Runtime sysctl changes:
<ul>
<li>Changed: fs.file-max: 811701 -&gt; 811769</li>
</ul></p>
]]>
    </content>
  </entry>

  <entry>
    <title>December 11, 2025</title>
    <id>tag:google.com,2016:cos-release-notes#December_11_2025</id>
    <updated>2025-12-11T00:00:00-08:00</updated>
    <link rel="alternate" href="https://docs.cloud.google.com/container-optimized-os/docs/release-notes#December_11_2025"/>
    <content type="html"><![CDATA[<strong class="release-note-product-version-title">117</strong>
<h3>Change</h3>
<h3 id="cos-117-18613-439-65_">cos-117-18613-439-65 <a id='"cos-arm64-117-18613-439-65"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/4f012683a5c630e1785a292264ad2ee1d6133315
">COS-6.6.111</a></td>
<td>v24.0.9</td>
<td>v1.7.28</td>
<td><a href="https://storage.googleapis.com/cos-tools/18613.439.65/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Feature</h3>
<p>Added patches to handle IDPF tx timeouts.</p>
<h3>Fixed</h3>
<p>Upgraded app-admin/google-guest-configs to v20251014.00.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-21868 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-22103 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-38057 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-38678 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40104 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40220 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40231 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40248 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40250 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40251 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40256 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40268 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40271 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40272 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40273 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40292 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40293 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40297 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40319 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40320 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40324 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-47914 and CVE-2025-58181 in dev-go/crypto.</p>
<h3>Change</h3>
<p>Runtime sysctl changes:
<ul>
<li>Changed: fs.file-max: 811788 -&gt; 811701</li>
</ul></p>
]]>
    </content>
  </entry>

  <entry>
    <title>December 10, 2025</title>
    <id>tag:google.com,2016:cos-release-notes#December_10_2025</id>
    <updated>2025-12-10T00:00:00-08:00</updated>
    <link rel="alternate" href="https://docs.cloud.google.com/container-optimized-os/docs/release-notes#December_10_2025"/>
    <content type="html"><![CDATA[<strong class="release-note-product-version-title">121</strong>
<h3>Change</h3>
<h3 id="cos-121-18867-294-60_">cos-121-18867-294-60 <a id='"cos-arm64-121-18867-294-60"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/74621904885c99caf3a3c486ca6e03c68c9044a8
">COS-6.6.113</a></td>
<td>v27.5.1</td>
<td>v2.0.6</td>
<td><a href="https://storage.googleapis.com/cos-tools/18867.294.60/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Feature</h3>
<p>Applied critical tx timeout patch series to fix idpf bug.</p>
<h3>Fixed</h3>
<p>Upgraded app-admin/google-guest-configs to v20251014.00.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-21868 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-22103 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-38057 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-38678 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40248 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40250 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40251 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40256 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40266 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40268 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40271 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40272 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40273 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40320 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-47914 and CVE-2025-58181 in dev-go/crypto.</p>
<h3>Change</h3>
<p>Runtime sysctl changes:
<ul>
<li>Changed: fs.file-max: 811755 -&gt; 811799</li>
</ul></p>
<strong class="release-note-product-version-title">125</strong>
<h3>Change</h3>
<h3 id="cos-125-19216-104-61_">cos-125-19216-104-61 <a id='"cos-arm64-125-19216-104-61"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/e90029a23eafe4fcb53799d708139b1a8c5e8151
">COS-6.12.55</a></td>
<td>v27.5.1</td>
<td>v2.1.4</td>
<td><a href="https://storage.googleapis.com/cos-tools/19216.104.61/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Feature</h3>
<p>Added patches to handle IDPF tx timeouts.</p>
<h3>Feature</h3>
<p>Enabled automatic loading of RDMA kernel modules when CX-8 devices are detected.</p>
<h3>Fixed</h3>
<p>Upgraded app-admin/google-guest-configs to v20251014.00.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-38678 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40209 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40230 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40235 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40250 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40251 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40266 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40268 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40271 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40272 in the Linux kernel.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40273 in the Linux kernel.</p>
<h3>Change</h3>
<p>Runtime sysctl changes:
<ul>
<li>Changed: fs.file-max: 811530 -&gt; 811449</li>
</ul></p>
<strong class="release-note-product-version-title">Main</strong>
<h3>Change</h3>
<h3 id="cos-dev-129-19424-0-0_">cos-dev-129-19424-0-0 <a id='"cos-arm64-dev-129-19424-0-0"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/0103e6b2132977fa0ecab1c6dee86bf2ca4c3346
">COS-6.12.61</a></td>
<td>v27.5.1</td>
<td>v2.1.4</td>
<td><a href="https://storage.googleapis.com/cos-tools/19424.0.0/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Change</h3>
<p>Updated the Linux kernel to v6.12.61.</p>
<h3>Feature</h3>
<p>Added patches to handle IDPF tx timeouts.</p>
<h3>Feature</h3>
<p>Added support for NVIDIA driver v580.105.08 and set it as the default version for all GPU types.</p>
<h3>Feature</h3>
<p>Enabled automatic loading of RDMA kernel modules when CX-8 devices are detected.</p>
<h3>Fixed</h3>
<p>Upgraded app-admin/fluent-bit to v4.2.0.</p>
<h3>Fixed</h3>
<p>upgraded net-fs/cifs-utils to v7.4.</p>
<h3>Change</h3>
<p>Runtime sysctl changes:
<ul>
<li>Changed: fs.file-max: 811490 -&gt; 811412</li>
</ul></p>
<strong class="release-note-product-version-title">113</strong>
<h3>Change</h3>
<h3 id="cos-113-18244-521-45_">cos-113-18244-521-45 <a id='"cos-arm64-113-18244-521-45"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/5b125bb5aacd10f8f7f133b6db42cb22237d4cdf
">COS-6.1.155</a></td>
<td>v24.0.9</td>
<td>v1.7.27</td>
<td><a href="https://storage.googleapis.com/cos-tools/18244.521.45/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Fixed</h3>
<p>Upgraded app-admin/google-guest-configs to v20251014.00.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40231 in the Linux kernel.</p>
<h3>Change</h3>
<p>Runtime sysctl changes:
<ul>
<li>Changed: fs.file-max: 811999 -&gt; 812052</li>
</ul></p>
]]>
    </content>
  </entry>

  <entry>
    <title>December 04, 2025</title>
    <id>tag:google.com,2016:cos-release-notes#December_04_2025</id>
    <updated>2025-12-04T00:00:00-08:00</updated>
    <link rel="alternate" href="https://docs.cloud.google.com/container-optimized-os/docs/release-notes#December_04_2025"/>
    <content type="html"><![CDATA[<strong class="release-note-product-version-title">113</strong>
<h3>Change</h3>
<h3 id="cos-113-18244-521-41_">cos-113-18244-521-41 <a id='"cos-arm64-113-18244-521-41"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/2fccd796b687dd10fc40c794fafefdcc3af48570
">COS-6.1.155</a></td>
<td>v24.0.9</td>
<td>v1.7.27</td>
<td><a href="https://storage.googleapis.com/cos-tools/18244.521.41/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Fixed</h3>
<p>Made the google-guest-agent more resilient to network link
flakes.</p>
<h3>Security</h3>
<p>Updated vim &amp; vim-core to version 9.1.1652. This fixes
CVE-2025-53905, CVE-2025-53906, CVE-2025-9390.</p>
<h3>Change</h3>
<p>Runtime sysctl changes:
<ul>
<li>Changed: fs.file-max: 812031 -&gt; 811999</li>
</ul></p>
]]>
    </content>
  </entry>

  <entry>
    <title>December 03, 2025</title>
    <id>tag:google.com,2016:cos-release-notes#December_03_2025</id>
    <updated>2025-12-03T00:00:00-08:00</updated>
    <link rel="alternate" href="https://docs.cloud.google.com/container-optimized-os/docs/release-notes#December_03_2025"/>
    <content type="html"><![CDATA[<strong class="release-note-product-version-title">125</strong>
<h3>Change</h3>
<h3 id="cos-125-19216-104-45_">cos-125-19216-104-45 <a id='"cos-arm64-125-19216-104-45"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/907f3d47b4cd729b87de8f40712f7f4d92c1e0ae
">COS-6.12.55</a></td>
<td>v27.5.1</td>
<td>v2.1.4</td>
<td><a href="https://storage.googleapis.com/cos-tools/19216.104.45/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Feature</h3>
<p>Added support for NVIDIA driver v580.105.08 and set it as the default version for all GPU types.</p>
<h3>Fixed</h3>
<p>Made the google-guest-agent more resilient to network link
flakes.</p>
<h3>Security</h3>
<p>Upgraded vim &amp; vim-core to version 9.1.1652. This fixes
CVE-2025-53905, CVE-2025-53906, CVE-2025-9390.</p>
<h3>Change</h3>
<p>Runtime sysctl changes:
<ul>
<li>Changed: fs.file-max: 811428 -&gt; 811530</li>
<li>Changed: net.ipv4.udp_mem: 188034   250714  376068 -&gt; 188034    250715  376068</li>
</ul></p>
<strong class="release-note-product-version-title">121</strong>
<h3>Change</h3>
<h3 id="cos-121-18867-294-42_">cos-121-18867-294-42 <a id='"cos-arm64-121-18867-294-42"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/461127aa41e30d4006acf6ce6888982d7a641182
">COS-6.6.113</a></td>
<td>v27.5.1</td>
<td>v2.0.6</td>
<td><a href="https://storage.googleapis.com/cos-tools/18867.294.42/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Feature</h3>
<p>Added support for NVIDIA driver v580.105.08 and set it as the default version for NVIDIA_RTX_PRO_6000, NVIDIA_GB200, NVIDIA_B200, and NVIDIA_H200 GPU types.</p>
<h3>Fixed</h3>
<p>Made the google-guest-agent more resilient to network link
flakes.</p>
<h3>Security</h3>
<p>Upgraded vim &amp; vim-core to version 9.1.1652. This fixes
CVE-2025-53905, CVE-2025-53906, CVE-2025-9390.</p>
<h3>Change</h3>
<p>Runtime sysctl changes:
<ul>
<li>Changed: fs.file-max: 811812 -&gt; 811755</li>
</ul></p>
<strong class="release-note-product-version-title">117</strong>
<h3>Change</h3>
<h3 id="cos-117-18613-439-49_">cos-117-18613-439-49 <a id='"cos-arm64-117-18613-439-49"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/9cc4ef0859f651ce461abf496563c71dd8ef2180
">COS-6.6.111</a></td>
<td>v24.0.9</td>
<td>v1.7.28</td>
<td><a href="https://storage.googleapis.com/cos-tools/18613.439.49/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Feature</h3>
<p>Added support for NVIDIA driver v580.105.08 and set it as the default version for NVIDIA_RTX_PRO_6000, NVIDIA_GB200, NVIDIA_B200, and NVIDIA_H200 GPU types.</p>
<h3>Fixed</h3>
<p>Made the google-guest-agent more resilient to network link
flakes.</p>
<h3>Security</h3>
<p>Upgraded vim &amp; vim-core to version 9.1.1652. This fixes
CVE-2025-53905, CVE-2025-53906, CVE-2025-9390.</p>
<h3>Change</h3>
<p>Runtime sysctl changes:
<ul>
<li>Changed: fs.file-max: 811751 -&gt; 811788</li>
</ul></p>
<strong class="release-note-product-version-title">Main</strong>
<h3>Change</h3>
<h3 id="cos-dev-129-19407-0-0_">cos-dev-129-19407-0-0 <a id='"cos-arm64-dev-129-19407-0-0"/'></a></h3>
<table class="pkg">
<tr>
<td>Kernel</td>
<td>Docker</td>
<td>Containerd</td>
<td><a href="https://cloud.google.com/container-optimized-os/docs/how-to/run-gpus">GPU Drivers</a></td>
</tr>
<tr>
<td><a href="https://cos.googlesource.com/third_party/kernel/+/7822213a1b8dcb569af2c00a17864a88564f013c
">COS-6.12.57</a></td>
<td>v27.5.1</td>
<td>v2.1.4</td>
<td><a href="https://storage.googleapis.com/cos-tools/19407.0.0/lakitu/gpu_driver_versions.textproto">See List</a></td>
</tr>
</table>
<h3>Fixed</h3>
<p>Made the google-guest-agent more resilient to network link
flakes.</p>
<h3>Security</h3>
<p>Fixed CVE-2025-40212 in the Linux kernel.</p>
<h3>Security</h3>
<p>Upgraded vim &amp; vim-core to version 9.1.1652. This fixes
CVE-2025-53905, CVE-2025-53906, CVE-2025-9390.</p>
<h3>Change</h3>
<p>Runtime sysctl changes:
<ul>
<li>Changed: fs.file-max: 811538 -&gt; 811490</li>
</ul></p>
]]>
    </content>
  </entry>

</feed>
