[CLSA-2026:1770040438] kernel: Fix of 14 CVEs
Type:
security
Severity:
Important
Release date:
2026-02-02 13:54:02 UTC
Description:
- efivarfs: Fix slab-out-of-bounds in efivarfs_d_compare {CVE-2025-39817} - scsi: ses: Fix possible desc_ptr out-of-bounds accesses {CVE-2023-53675} - ipv6: Fix out-of-bounds access in ipv6_find_tlv() {CVE-2023-53705} - libceph: fix potential use-after-free in have_mon_and_osd_map() {CVE-2025-68285} - scsi: lpfc: Fix use-after-free KFENCE violation during sysfs firmware write {CVE-2023-53282} - Bluetooth: hci_sysfs: Fix attempting to call device_add multiple times {CVE-2022-50419} - firewire: net: fix use after free in fwnet_finish_incoming_packet() {CVE-2023-53432} - net: openvswitch: fix nested key length validation in the set() action - wifi: mac80211_hwsim: drop short frames {CVE-2023-53321} - scsi: libsas: Fix use-after-free bug in smp_execute_task_sg() {CVE-2022-50422} - fix: crypto: lzo - Fix compression buffer overrun - fix: NFSD: Protect against send buffer overflow in NFSv2 READ - cifs: fix oops during encryption {CVE-2022-50341} - SMB3: Kernel oops mounting a encryptData share with CONFIG_DEBUG_VIRTUAL - fix smb3-encryption breakage when CONFIG_DEBUG_SG=y - Bluetooth: L2CAP: fix "bad unlock balance" in l2cap_disconnect_rsp {CVE-2023-53297} - iomap: iomap: fix memory corruption when recording errors during writeback {CVE-2022-50406} - mm: zswap: fix missing folio cleanup in writeback race path {CVE-2024-26832} - mm: fix zswap writeback race condition - Bluetooth: prefetch channel before killing sock - Bluetooth: Fix l2cap_disconnect_req deadlock - Bluetooth: L2CAP: Fix use-after-free in l2cap_disconnect_{req,rsp} {CVE-2023-53827} - Bluetooth: Fix refcount use-after-free issue - Bluetooth: Check state in l2cap_disconnect_rsp - Bluetooth: L2CAP: Fix build errors in some archs - Bluetooth: L2CAP: Fix l2cap_global_chan_by_psm regression - Bluetooth: use the correct print format for L2CAP debug statements - i40e: fix Jumbo Frame support after iPXE boot - i40e: Report MFS in decimal base instead of hex - i40e: Fix unexpected MFS warning message - i40e: Add a check to see if MFS is set - bitops: Add non-atomic bitops for pointers - bitfield: Add FIELD_MODIFY() helper
Updated packages:
  • bpftool-3.10.0-1160.144.1.el7.tuxcare.els1.x86_64.rpm
    sha:c396268791e8d1740ec5a1eddd9c5b6b975010d503903a20986ba27ab200bc1b
  • kernel-3.10.0-1160.144.1.el7.tuxcare.els1.x86_64.rpm
    sha:db71d155e623ef593813b50b00f8e65cc173ce87933e8de66db2a1e9ab0d06dd
  • kernel-debug-3.10.0-1160.144.1.el7.tuxcare.els1.x86_64.rpm
    sha:64bedc8fa8348c906c5ada954a13ae7ec68ba05c09de2d1da90bbc1050500b79
  • kernel-debug-devel-3.10.0-1160.144.1.el7.tuxcare.els1.x86_64.rpm
    sha:078efc300e93914129f8fe7cb5f62c2ee6d29723529c3f8ef14e9364cf303b63
  • kernel-devel-3.10.0-1160.144.1.el7.tuxcare.els1.x86_64.rpm
    sha:a5663460baa853188a8dfc28dc5907fa1f8c691e64d1904b88dfe3d0ac844088
  • kernel-headers-3.10.0-1160.144.1.el7.tuxcare.els1.x86_64.rpm
    sha:ffa525d3caa0379903371f0f890e58b5e9cf059a5993910050bfbdce4f2a9f8b
  • kernel-tools-3.10.0-1160.144.1.el7.tuxcare.els1.x86_64.rpm
    sha:cb6c919d7baf0132a2ab98e66ecd5f4f6517f5e63766fced08b1da4b16ccf5bb
  • kernel-tools-libs-3.10.0-1160.144.1.el7.tuxcare.els1.x86_64.rpm
    sha:4df82273b2167a562e75650ee57f88c951c757ca99f15186e24c15b427032340
  • kernel-tools-libs-devel-3.10.0-1160.144.1.el7.tuxcare.els1.x86_64.rpm
    sha:8902e340477e1a4e4341bba32e93e39dd13c64709376a3fc168dec483462960b
  • perf-3.10.0-1160.144.1.el7.tuxcare.els1.x86_64.rpm
    sha:939b74d976fd8f522df15eb6b8f6a42dbd6c607caf4b93e5b39b287b9ab6f976
  • python-perf-3.10.0-1160.144.1.el7.tuxcare.els1.x86_64.rpm
    sha:f4d08bd0eddec515dbed3c2827f0b8ebafaac92972df4ff232efcad54e8d3e8d
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.