RHSA-2025:23463HighCVSS 7.6

Red Hat Security Advisory: kernel security update

Published
December 17, 2025
Last Modified
June 29, 2026

🔗 CVE IDs covered (14)

📋 Description

CVE-2022-50406 — kernel: iomap: iomap: fix memory corruption when recording errors during writeback CVE-2023-53226 — kernel: wifi: mwifiex: Fix OOB and integer underflow when rx packets CVE-2023-53297 — kernel: Bluetooth: L2CAP: fix "bad unlock balance" in l2cap_disconnect_rsp CVE-2023-53322 — kernel: scsi: qla2xxx: Wait for io return on terminate rport CVE-2023-53365 — kernel: ip6mr: Fix skb_under_panic in ip6mr_cache_report() CVE-2023-53393 — kernel: RDMA/mlx5: Fix mlx5_ib_get_hw_stats when used for device CVE-2024-46679 — kernel: ethtool: check device is present when getting link settings CVE-2025-38718 — kernel: sctp: linearize cloned gso packets in sctp_rcv CVE-2025-38724 — kernel: nfsd: handle get_client_locked() failure in nfsd4_setclientid_confirm() CVE-2025-38729 — kernel: ALSA: usb-audio: Validate UAC3 power domain descriptors, too CVE-2025-39757 — kernel: ALSA: usb-audio: Validate UAC3 cluster segment descriptors CVE-2025-39841 — kernel: scsi: lpfc: Fix buffer free/clear order in deferred receive path CVE-2025-39955 — kernel: tcp: Clear tcp_sk(sk)->fastopen_rsk in tcp_disconnect() CVE-2025-40186 — kernel: Linux kernel: Privilege escalation or Denial of Service via TCP Fast Open vulnerability

🔗 References (17)