RHSA-2025:22124MediumCVSS 7.6

Red Hat Security Advisory: kernel-rt security update

Published
November 25, 2025
Last Modified
June 29, 2026

🔗 CVE IDs covered (14)

📋 Description

CVE-2022-50386 — kernel: Bluetooth: L2CAP: Fix user-after-free CVE-2023-52610 — kernel: net/sched: act_ct: fix skb leak and crash on ooo frags CVE-2023-53257 — kernel: wifi: mac80211: check S1G action frame size CVE-2023-53297 — kernel: Bluetooth: L2CAP: fix "bad unlock balance" in l2cap_disconnect_rsp CVE-2023-53365 — kernel: ip6mr: Fix skb_under_panic in ip6mr_cache_report() CVE-2023-53513 — kernel: nbd: fix incomplete validation of ioctl arg CVE-2024-35868 — kernel: smb: client: fix potential UAF in cifs_stats_proc_write() CVE-2024-46679 — kernel: ethtool: check device is present when getting link settings CVE-2025-38729 — kernel: ALSA: usb-audio: Validate UAC3 power domain descriptors, too CVE-2025-39702 — kernel: ipv6: sr: Fix MAC comparison to be constant-time CVE-2025-39730 — kernel: NFS: Fix filehandle bounds checking in nfs_fh_to_dentry() CVE-2025-39757 — kernel: ALSA: usb-audio: Validate UAC3 cluster segment descriptors CVE-2025-39817 — kernel: efivarfs: Fix slab-out-of-bounds in efivarfs_d_compare CVE-2025-40300 — kernel: x86/vmscape: Add conditional IBPB mitigation

🔗 References (17)