RHSA-2025:21112MediumCVSS 7.8

Red Hat Security Advisory: kernel security update

Published
November 12, 2025
Last Modified
June 29, 2026

🔗 CVE IDs covered (13)

📋 Description

CVE-2022-50087 — kernel: firmware: arm_scpi: Ensure scpi_info is not assigned if the probe fails CVE-2022-50367 — kernel: fs: fix UAF/GPF bug in nilfs_mdt_destroy CVE-2023-53331 — kernel: pstore/ram: Check start of empty przs during init CVE-2023-53373 — kernel: crypto: seqiv - Handle EBUSY correctly CVE-2023-53494 — kernel: crypto: xts - Handle EBUSY correctly CVE-2025-38566 — kernel: sunrpc: fix handling of server side tls alerts CVE-2025-38571 — kernel: sunrpc: fix client side handling of tls alerts CVE-2025-39702 — kernel: ipv6: sr: Fix MAC comparison to be constant-time CVE-2025-39718 — kernel: vsock/virtio: Validate length in packet header before skb_put() CVE-2025-39817 — kernel: efivarfs: Fix slab-out-of-bounds in efivarfs_d_compare CVE-2025-39841 — kernel: scsi: lpfc: Fix buffer free/clear order in deferred receive path CVE-2025-39849 — kernel: wifi: cfg80211: sme: cap SSID length in __cfg80211_connect_result() CVE-2025-40300 — kernel: x86/vmscape: Add conditional IBPB mitigation

🔗 References (16)