RHSA-2025:22387MediumCVSS 7.6
Red Hat Security Advisory: kernel-rt security update
🔗 CVE IDs covered (7)
CVE-2025-40186 →CVE-2023-53513 →CVE-2025-38724 →CVE-2025-39825 →CVE-2025-39883 →CVE-2025-39898 · pendingCVE-2025-39955 →
📋 Description
CVE-2023-53513 — kernel: nbd: fix incomplete validation of ioctl arg CVE-2025-38724 — kernel: nfsd: handle get_client_locked() failure in nfsd4_setclientid_confirm() CVE-2025-39825 — kernel: smb: client: fix race with concurrent opens in rename(2) CVE-2025-39883 — kernel: mm/memory-failure: fix VM_BUG_ON_PAGE(PagePoisoned(page)) when unpoison memory CVE-2025-39898 — kernel: e1000e: fix heap overflow in e1000_set_eeprom CVE-2025-39955 — kernel: tcp: Clear tcp_sk(sk)->fastopen_rsk in tcp_disconnect() CVE-2025-40186 — kernel: Linux kernel: Privilege escalation or Denial of Service via TCP Fast Open vulnerability
🔗 References (9)
- selfhttps://access.redhat.com/errata/RHSA-2025:22387
- externalhttps://access.redhat.com/security/updates/classification/#moderate
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2393172
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2395792
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2397553
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2400598
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2402699
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2400795
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2025/rhsa-2025_22387.json