RHSA-2025:14009HighCVSS 7.4
Red Hat Security Advisory: kernel security update
🔗 CVE IDs covered (5)
📋 Description
CVE-2025-21867 — kernel: bpf, test_run: Fix use-after-free issue in eth_skb_pkt_type() CVE-2025-38124 — kernel: net: fix udp gso skb_segment after pull from frag_list CVE-2025-38250 — kernel: Bluetooth: hci_core: Fix use-after-free in vhci_flush() CVE-2025-38380 — kernel: i2c/designware: Fix an initialization issue CVE-2025-38471 — kernel: tls: always refresh the queue when reading sock
🔗 References (8)
- selfhttps://access.redhat.com/errata/RHSA-2025:14009
- externalhttps://access.redhat.com/security/updates/classification/#important
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2355334
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2376041
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2378982
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2383381
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2383893
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2025/rhsa-2025_14009.json