[CLSA-2025:1760546935] kernel: Fix of 43 CVEs
Type:
security
Severity:
Important
Release date:
2025-10-15 16:49:07 UTC
Description:
- locking/ww_mutex/test: Fix potential workqueue corruption {CVE-2023-52836} - netfilter: ipset: Fix suspicious rcu_dereference_protected() {CVE-2024-40993} - netfilter: ipset: Fix race between namespace cleanup and gc in the list:set type {CVE-2024-39503} - netfilter: ipset: Missing gc cancellations fixed {CVE-2024-39503} - netfilter: ipset: Add list flush to cancel_gc {CVE-2024-39503} - netfilter: ipset: fix performance regression in swap operation {CVE-2024-26910} - netfilter: ipset: fix race condition between swap/destroy and kernel side add/del/test {CVE-2024-26910} - scsi: ses: Fix slab-out-of-bounds in ses_intf_remove() {CVE-2023-53521} - scsi: mpt3sas: Fix a memory leak {CVE-2023-53512} - scsi: iscsi_tcp: Check that sock is valid before iscsi_set_param() {CVE-2023-53464} - wifi: ath11k: fix deinitialization of firmware resources {CVE-2023-53532} - mt76: mt7915: Fix PCI device refcount leak in mt7915_pci_init_hif2() {CVE-2022-50464} - ionic: catch failure from devlink_alloc {CVE-2023-53470} - enic: Validate length of nl attributes in enic_set_vf_port {CVE-2024-38659} - gpiolib: cdev: fix uninitialised kfifo {CVE-2024-36898} - Bluetooth: hci_conn: Fix crash on hci_create_cis_sync {CVE-2022-50447} - net/sched: taprio: always validate TCA_TAPRIO_ATTR_PRIOMAP {CVE-2024-36974} - ext4: Fix function prototype mismatch for ext4_feat_ktype {CVE-2023-53224} - ipv6: Add lwtunnel encap size of all siblings in nexthop calculation {CVE-2023-53477} - netfilter: nf_tables: prefer nft_chain_validate {CVE-2024-41042} - netfilter: nf_conntrack: fix crash due to removal of uninitialised entry {CVE-2025-38472} - Bluetooth: qca: add missing firmware sanity checks {CVE-2024-36880} - Bluetooth: qca: fix info leak when fetching fw build id {CVE-2024-36032} - Bluetooth: L2CAP: fix "bad unlock balance" in l2cap_disconnect_rsp {CVE-2023-53297} - drm/amd/display: Skip finding free audio for unknown engine_id {CVE-2024-42119} - drm/dp_mst: Fix resetting msg rx state after topology removal {CVE-2024-57876} - drm/vc4: don't check if plane->state->fb == state->fb {CVE-2024-35932} - drm/nouveau/disp: fix use-after-free in error handling of nouveau_connector_create {CVE-2023-53263} - cifs: fix oops during encryption {CVE-2022-50341} - smb: client: fix use-after-free in cifs_oplock_break {CVE-2025-38527} - smb: client: fix race with concurrent opens in rename(2) {CVE-2025-39825} - ASoC: Intel: sof_sdw_rt_sdca_jack_common: ctx->headset_codec_dev = NULL {CVE-2023-52697} - blk-mq: fix NULL dereference on q->elevator in blk_mq_elv_switch_none {CVE-2023-53292} - mlx5: fix possible ptp queue fifo use-after-free {CVE-2023-53398} - sctp: check send stream number after wait_for_sndbuf {CVE-2023-53296} - sctp: linearize cloned gso packets in sctp_rcv {CVE-2025-38718} - ip6mr: Fix skb_under_panic in ip6mr_cache_report() {CVE-2023-53365} - scsi: mpi3mr: Use number of bits to manage bitmap sizes {CVE-2023-53376} - scsi: qla2xxx: Remove unused nvme_ls_waitq wait queue {CVE-2023-53280} - mt76: mt7921: fix kernel panic by accessing unallocated eeprom.data {CVE-2023-53232} - wifi: ath9k: don't allow to overwrite ENDPOINT0 attributes {CVE-2023-53185} - fbdev: Fix invalid page access after closing deferred I/O devices {CVE-2023-52731} - ACPICA: Add AML_NO_OPERAND_RESOLVE flag to Timer {CVE-2023-53395} - ACPI: processor: idle: Check acpi_fetch_acpi_dev() return value {CVE-2022-50327} - media: az6007: Fix null-ptr-deref in az6007_i2c_xfer() {CVE-2023-53220} - media: dvb-usb: az6027: fix null-ptr-deref in az6027_i2c_xfer() {CVE-2022-50272}
Updated packages:
  • bpftool-7.0.0-284.1101.el9_2.tuxcare.7.els22.x86_64.rpm
    sha:ed04137c0ec8dc78a71ba647e57b540fec4b90dad625233a606e927af2788570
  • kernel-5.14.0-284.1101.el9_2.tuxcare.7.els22.x86_64.rpm
    sha:ec9b795f0ead599b230fa1214efe4898131ac7c51e03033c732cb4cbf7c505a4
  • kernel-abi-stablelists-5.14.0-284.1101.el9_2.tuxcare.7.els22.noarch.rpm
    sha:aa5c8a76965010f83df708e3f0640376e6e2d8fab86179fcc06fe45fa92b7409
  • kernel-core-5.14.0-284.1101.el9_2.tuxcare.7.els22.x86_64.rpm
    sha:140b9a856ab4fb09695563d5ddcb304609c7df9672c92f25ffb4f53e4549abb0
  • kernel-cross-headers-5.14.0-284.1101.el9_2.tuxcare.7.els22.x86_64.rpm
    sha:cfa70cede1bb3e63c426b105b8c4ab85c8747db0cd4a8554b45b679eb4d7afac
  • kernel-debug-5.14.0-284.1101.el9_2.tuxcare.7.els22.x86_64.rpm
    sha:c5e1e3b0b563f0700d3866b78f77e0851b3ca1bf94f63064da3b4ca401b8ffb8
  • kernel-debug-core-5.14.0-284.1101.el9_2.tuxcare.7.els22.x86_64.rpm
    sha:b1bd851edce69e36ddfe09f8a40ab49ac044abe6d6b07a067f8bc3b2b975f4dc
  • kernel-debug-devel-5.14.0-284.1101.el9_2.tuxcare.7.els22.x86_64.rpm
    sha:72efd72058c8fb46e28bed7aca37c5f12d54f483e1a10b04366dae8cac3d31c0
  • kernel-debug-devel-matched-5.14.0-284.1101.el9_2.tuxcare.7.els22.x86_64.rpm
    sha:0b6c68378556992c473ac4ba67b853c9048c969d50e141fa3ca0985845faf33a
  • kernel-debug-modules-5.14.0-284.1101.el9_2.tuxcare.7.els22.x86_64.rpm
    sha:d7fb3a23cf4892ab394c8bbde09801d6e0383064ae29c9533ef7f07784162186
  • kernel-debug-modules-core-5.14.0-284.1101.el9_2.tuxcare.7.els22.x86_64.rpm
    sha:34e3012b67bdb1bf00f8f9f6a09786eb6c5ee973260439af548588d36c414bed
  • kernel-debug-modules-extra-5.14.0-284.1101.el9_2.tuxcare.7.els22.x86_64.rpm
    sha:fbb94965edfd7cb77abf6ebfd141b7fbe7706cf575e31f002e1ff1c9fca7eef7
  • kernel-debug-modules-internal-5.14.0-284.1101.el9_2.tuxcare.7.els22.x86_64.rpm
    sha:60b50f866679b8e7f93322d4990c52dd1ed9d53430a6dd6c0559f7aeb1b1a393
  • kernel-debug-modules-partner-5.14.0-284.1101.el9_2.tuxcare.7.els22.x86_64.rpm
    sha:ba56185de8f299430af4d75effdb7c5a2398fe20ee871e65b0bd6b501b68d1a7
  • kernel-debug-uki-virt-5.14.0-284.1101.el9_2.tuxcare.7.els22.x86_64.rpm
    sha:b7b312e9e20dbb11283fad0ca77cebfce3b99d4d2d0283d60e06b40887ef7159
  • kernel-devel-5.14.0-284.1101.el9_2.tuxcare.7.els22.x86_64.rpm
    sha:eca377982bbae7e8a6d347ee1c2898cddc9d72cf4033ef405f099868f48e2a8a
  • kernel-devel-matched-5.14.0-284.1101.el9_2.tuxcare.7.els22.x86_64.rpm
    sha:c0d2ea7d648ec3b850b785d73261dcf3705159822cde1cb1ea9043216b3de9d6
  • kernel-doc-5.14.0-284.1101.el9_2.tuxcare.7.els22.noarch.rpm
    sha:eeefc2d626794f68de00432ea68d1678f0aa4820a84645a8a96e9490172f8129
  • kernel-headers-5.14.0-284.1101.el9_2.tuxcare.7.els22.x86_64.rpm
    sha:8d69b3087e12008a7a6a34d6659c34acbe9d5e27a36ed89103f5e3bdbd5c9639
  • kernel-ipaclones-internal-5.14.0-284.1101.el9_2.tuxcare.7.els22.x86_64.rpm
    sha:8339c7ce62d072df3cf73f7665f90963ffd6417165013a90cae544175d2bba90
  • kernel-modules-5.14.0-284.1101.el9_2.tuxcare.7.els22.x86_64.rpm
    sha:c2a388431fa4330b5b2603997269d373a2082abe8914331eaa6de7bcbad02682
  • kernel-modules-core-5.14.0-284.1101.el9_2.tuxcare.7.els22.x86_64.rpm
    sha:2ca9031cd308f723d9737188540207f3095c59d9b46a42f8528df6220fe727d8
  • kernel-modules-extra-5.14.0-284.1101.el9_2.tuxcare.7.els22.x86_64.rpm
    sha:217436c1adec29749ab30e159c0de7a2ed6fd64e54d8edb5f2cd7c83fac50201
  • kernel-modules-internal-5.14.0-284.1101.el9_2.tuxcare.7.els22.x86_64.rpm
    sha:233701de2d4d46ba4bdd5a1ffbfc3194aa9da14dd7f6bf9805fa3b1f40589f6c
  • kernel-modules-partner-5.14.0-284.1101.el9_2.tuxcare.7.els22.x86_64.rpm
    sha:e5c95054ba733bac08e563c23181a99999bf00ce177b8c16084f0d55fae339fc
  • kernel-selftests-internal-5.14.0-284.1101.el9_2.tuxcare.7.els22.x86_64.rpm
    sha:ef2a2ab336a66c223e3a84aadbb12975fbb3a81132363b863bf55dc622daefd9
  • kernel-tools-5.14.0-284.1101.el9_2.tuxcare.7.els22.x86_64.rpm
    sha:da78460d5541e73d289e6829781a118804044b3facbb0cd5aa8b73b1678e8fab
  • kernel-tools-libs-5.14.0-284.1101.el9_2.tuxcare.7.els22.x86_64.rpm
    sha:e655cc663fae3fd18ec178e3ec4fea6f7d9a483729d2af700024cb2d46585579
  • kernel-tools-libs-devel-5.14.0-284.1101.el9_2.tuxcare.7.els22.x86_64.rpm
    sha:81494f0191cda1beccf1fa5a979cd9371108a25cf19987a089e08b94f51c256c
  • kernel-uki-virt-5.14.0-284.1101.el9_2.tuxcare.7.els22.x86_64.rpm
    sha:84fa6ddc1ab364bd785b1efa29728290a00ece528e0ca421a19b5435b3747387
  • libbpf-1.0.0-2.el9_2.tuxcare.7.els22.i686.rpm
    sha:65791e04287cac6d5c59de3a48a6de7f36e273287a1df2f9123e2d8d15f51e42
  • libbpf-1.0.0-2.el9_2.tuxcare.7.els22.x86_64.rpm
    sha:dfcfd4b411231b5c7bd6d7a6e36549d745e5a307091b1e1be10a09cde869d7b1
  • libbpf-devel-1.0.0-2.el9_2.tuxcare.7.els22.i686.rpm
    sha:11a74afc35290b4a8fa7476458e03a2502df572a6e83c3e611df4c497855edf2
  • libbpf-devel-1.0.0-2.el9_2.tuxcare.7.els22.x86_64.rpm
    sha:eac16e9fe84bc0ab9f2776c929979f52286fffde52d48d488c1fed694920613a
  • libbpf-static-1.0.0-2.el9_2.tuxcare.7.els22.i686.rpm
    sha:61e1a03f2cf7cc83d7d0081bd9eadd79e85ae577a2e288d6d77cdc68bd3e9f72
  • libbpf-static-1.0.0-2.el9_2.tuxcare.7.els22.x86_64.rpm
    sha:b01a0b54b703f22525cdd15d6ed94585ffa0ecc659ffa1587dc4782fe8876f0d
  • perf-5.14.0-284.1101.el9_2.tuxcare.7.els22.x86_64.rpm
    sha:f8b13794d1d59285d490ab25bce2e246ce7d05219d1045927d632152ec542111
  • python3-perf-5.14.0-284.1101.el9_2.tuxcare.7.els22.x86_64.rpm
    sha:3d225086df45f6f0da2ffe21d96efad069b2f7248d91ef0690643378488ccf9b
  • rtla-5.14.0-284.1101.el9_2.tuxcare.7.els22.x86_64.rpm
    sha:9275564e728e721fa913546604120cb8122d2e23725c5bf90a6088131b3b2dcf
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.