RHSA-2025:18281MediumCVSS 7.5
Red Hat Security Advisory: kernel security update
🔗 CVE IDs covered (7)
📋 Description
CVE-2022-50087 — kernel: firmware: arm_scpi: Ensure scpi_info is not assigned if the probe fails CVE-2025-22026 — kernel: nfsd: don't ignore the return code of svc_proc_register() CVE-2025-38566 — kernel: sunrpc: fix handling of server side tls alerts CVE-2025-38571 — kernel: sunrpc: fix client side handling of tls alerts CVE-2025-39817 — kernel: efivarfs: Fix slab-out-of-bounds in efivarfs_d_compare CVE-2025-39841 — kernel: scsi: lpfc: Fix buffer free/clear order in deferred receive path CVE-2025-39849 — kernel: wifi: cfg80211: sme: cap SSID length in __cfg80211_connect_result()
🔗 References (10)
- selfhttps://access.redhat.com/errata/RHSA-2025:18281
- externalhttps://access.redhat.com/security/updates/classification/#moderate
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2360224
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2373539
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2389480
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2389487
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2395805
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2396928
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2396944
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2025/rhsa-2025_18281.json