Red Hat Security Advisory: kernel security update
🔗 CVE IDs covered (13)
📋 Description
CVE-2022-50087 — kernel: firmware: arm_scpi: Ensure scpi_info is not assigned if the probe fails CVE-2022-50367 — kernel: fs: fix UAF/GPF bug in nilfs_mdt_destroy CVE-2023-53331 — kernel: pstore/ram: Check start of empty przs during init CVE-2023-53373 — kernel: crypto: seqiv - Handle EBUSY correctly CVE-2023-53494 — kernel: crypto: xts - Handle EBUSY correctly CVE-2025-38566 — kernel: sunrpc: fix handling of server side tls alerts CVE-2025-38571 — kernel: sunrpc: fix client side handling of tls alerts CVE-2025-39702 — kernel: ipv6: sr: Fix MAC comparison to be constant-time CVE-2025-39718 — kernel: vsock/virtio: Validate length in packet header before skb_put() CVE-2025-39817 — kernel: efivarfs: Fix slab-out-of-bounds in efivarfs_d_compare CVE-2025-39841 — kernel: scsi: lpfc: Fix buffer free/clear order in deferred receive path CVE-2025-39849 — kernel: wifi: cfg80211: sme: cap SSID length in __cfg80211_connect_result() CVE-2025-40300 — kernel: x86/vmscape: Add conditional IBPB mitigation
🔗 References (16)
- selfhttps://access.redhat.com/errata/RHSA-2025:21112
- externalhttps://access.redhat.com/security/updates/classification/#moderate
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2373539
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2389480
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2389487
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2393507
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2393533
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2394627
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2395805
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2395880
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2396114
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2396379
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2396928
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2396944
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2400777
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2025/rhsa-2025_21112.json