Red Hat Security Advisory: kernel security update
🔗 CVE IDs covered (11)
📋 Description
CVE-2022-50356 — kernel: net: sched: sfb: fix null pointer access issue when sfb_init() fails CVE-2022-50367 — kernel: fs: fix UAF/GPF bug in nilfs_mdt_destroy CVE-2022-50403 — kernel: ext4: fix undefined behavior in bit shift for ext4_check_flag_values CVE-2022-50406 — kernel: iomap: iomap: fix memory corruption when recording errors during writeback CVE-2022-50410 — kernel: NFSD: Protect against send buffer overflow in NFSv2 READ CVE-2023-53178 — kernel: mm: fix zswap writeback race condition CVE-2023-53297 — kernel: Bluetooth: L2CAP: fix "bad unlock balance" in l2cap_disconnect_rsp CVE-2023-53322 — kernel: scsi: qla2xxx: Wait for io return on terminate rport CVE-2025-38729 — kernel: ALSA: usb-audio: Validate UAC3 power domain descriptors, too CVE-2025-39757 — kernel: ALSA: usb-audio: Validate UAC3 cluster segment descriptors CVE-2025-39955 — kernel: tcp: Clear tcp_sk(sk)->fastopen_rsk in tcp_disconnect()
🔗 References (14)
- selfhttps://access.redhat.com/errata/RHSA-2025:23947
- externalhttps://access.redhat.com/security/updates/classification/#moderate
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2393164
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2394615
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2395358
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2395681
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2395891
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2396114
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2396152
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2396494
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2396536
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2396538
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2402699
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2025/rhsa-2025_23947.json