[CLSA-2025:1757961864] kernel: Fix of 32 CVEs
Type:
security
Severity:
Important
Release date:
2025-09-15 18:44:28 UTC
Description:
- inet: fully convert sk->sk_rx_dst to RCU rules {CVE-2021-47103} - ALSA: usb-audio: Fix out of bounds reads when finding clock sources {CVE-2024-53150} - posix-cpu-timers: fix race between handle_posix_cpu_timers() and posix_cpu_timer_del() {CVE-2025-38352} - can: peak_usb: fix use after free bugs {CVE-2021-47670} - wifi: rtw88: fix the 'para' buffer size to avoid reading out of bounds {CVE-2025-38159} - RDMA/rxe: Fix error unwind in rxe_create_qp() {CVE-2022-50127} - i40e: fix MMIO write access to an invalid page in i40e_clear_hw {CVE-2025-38200} - udp: Fix memory accounting leak. {CVE-2025-22058} - ALSA: bcd2000: Fix a UAF bug on the error path of probing {CVE-2022-50083} - ext4: correct the misjudgment in ext4_iget_extra_inode {CVE-2022-50083} - ext4: correct max_inline_xattr_value_size computing {CVE-2022-50083} - ext4: fix use-after-free in ext4_xattr_set_entry {CVE-2022-50083} - ext4: add EXT4_INODE_HAS_XATTR_SPACE macro in xattr.h {CVE-2022-50083} - Bluetooth: hci_core: Fix use-after-free in vhci_flush() {CVE-2025-38250} - net_sched: ets: Fix double list add in class with netem as child qdisc {CVE-2025-38085} - mm/hugetlb: fix huge_pmd_unshare() vs GUP-fast race {CVE-2025-38085} - padata: fix UAF in padata_reorder {CVE-2025-21727} - net/sched: Always pass notifications when child class becomes empty {CVE-2025-38350} - codel: remove sch->q.qlen check before qdisc_tree_reduce_backlog() {CVE-2025-38177} - sch_ets: make est_qlen_notify() idempotent {CVE-2025-38177} - sch_qfq: make qfq_qlen_notify() idempotent {CVE-2025-38177} - sch_hfsc: make hfsc_qlen_notify() idempotent {CVE-2025-38177} - sch_drr: make drr_qlen_notify() idempotent {CVE-2025-38177} - sch_htb: make htb_qlen_notify() idempotent {CVE-2025-38177} - sch_hfsc: Fix qlen accounting bug when using peek in hfsc_enqueue() {CVE-2025-38000} - mptcp: do not queue data on closed subflows {CVE-2022-50070} - mptcp: export mptcp_subflow_active {CVE-2022-50070} - net/sched: sch_qfq: Fix race condition on qfq_aggregate {CVE-2025-38477} - tipc: Fix use-after-free in tipc_conn_close(). {CVE-2025-38464} - RDMA/iwcm: Fix use-after-free of work objects after cm_id destruction {CVE-2025-38211} - scsi: lpfc: Use memcpy() for BIOS version {CVE-2025-38332} - crypto: algif_hash - fix double free in hash_accept {CVE-2025-38079} - net_sched: hfsc: Fix a UAF vulnerability in class with netem as child qdisc {CVE-2025-37890} - ext4: avoid resizing to a partial cluster size {CVE-2022-50020} - net: tipc: fix refcount warning in tipc_aead_encrypt {CVE-2025-38273} - ice: xsk: prohibit usage of non-balanced queue id {CVE-2022-50003} - net/tipc: fix slab-use-after-free Read in tipc_aead_encrypt_done {CVE-2025-38052} - virtio-gpu: fix a missing check to avoid NULL dereference {CVE-2022-50181} - usb: xhci_plat_remove: avoid NULL dereference {CVE-2022-50133} - ASoC: SOF: Intel: hda-ipc: Do not process IPC reply before firmware boot {CVE-2022-50015} - netfilter: nft_tproxy: restrict to prerouting hook {CVE-2022-50001} - scsi: storvsc: Remove WQ_MEM_RECLAIM from storvsc_error_wq {CVE-2022-49986} - ath11k: fix netdev open race {CVE-2022-50187}
Updated packages:
  • bpftool-4.18.0-305.25.1.el8_4.tuxcare.els31.x86_64.rpm
    sha:93790f595a0cdc6b68cd5563cd0388427bb10525d9114e21d129d83e3076858b
  • kernel-4.18.0-305.25.1.el8_4.tuxcare.els31.x86_64.rpm
    sha:c389bcb5516f5aa1c4a7ae0c3e18c8acf1feed82d5db380ee6e9076867702432
  • kernel-core-4.18.0-305.25.1.el8_4.tuxcare.els31.x86_64.rpm
    sha:e309e477266f7b46b24aafa9e118f79a8b82b8fc2721dec4c314f4d296b86df3
  • kernel-cross-headers-4.18.0-305.25.1.el8_4.tuxcare.els31.x86_64.rpm
    sha:190db79e2b6addc6e88ee55f139d2fde66abc7dfc4896c6bf19dd45a5fb28148
  • kernel-debug-4.18.0-305.25.1.el8_4.tuxcare.els31.x86_64.rpm
    sha:e09389f7521adc2ee88441d7a2bad1997b2c42fb719e6327d2fb5e02a4732b6c
  • kernel-debug-core-4.18.0-305.25.1.el8_4.tuxcare.els31.x86_64.rpm
    sha:bd2b82bd3c18c94f04f0c205f832cf903724291d7110d5f745d84e746b6b822f
  • kernel-debug-devel-4.18.0-305.25.1.el8_4.tuxcare.els31.x86_64.rpm
    sha:cfe7bb28e30d81325ce01d1046bee05e3ad77562eebb01cc8881ff0c2d4605d3
  • kernel-debug-modules-4.18.0-305.25.1.el8_4.tuxcare.els31.x86_64.rpm
    sha:ab177586aa57f4fba9c30706791605ba3bf84dd25d2f8c8b1740b9e3f387888b
  • kernel-debug-modules-extra-4.18.0-305.25.1.el8_4.tuxcare.els31.x86_64.rpm
    sha:1d4f2e9f6dde182d7d26fa09c5ed45e873f86684cba73688e0aff2c2cb384771
  • kernel-debug-modules-internal-4.18.0-305.25.1.el8_4.tuxcare.els31.x86_64.rpm
    sha:e0f83ad48548c9af49a69cddbfb91025ad8dea50695d7adfdd9f884ab7ce6e35
  • kernel-devel-4.18.0-305.25.1.el8_4.tuxcare.els31.x86_64.rpm
    sha:6b6c5083e7b0b273c8f96b77b6a334a65e53c5772f4d86130fb2deb69c9022d4
  • kernel-headers-4.18.0-305.25.1.el8_4.tuxcare.els31.x86_64.rpm
    sha:010133062c88b206f044d4818b35b803a9db98756a3881977a58268cb6ee13e9
  • kernel-ipaclones-internal-4.18.0-305.25.1.el8_4.tuxcare.els31.x86_64.rpm
    sha:0ddba2e5be6ea0ccf8a3fa71a5728f057203b19480bf7d3c3c18302b61567fc2
  • kernel-modules-4.18.0-305.25.1.el8_4.tuxcare.els31.x86_64.rpm
    sha:d6d22b0e2a058673fff419ea685a7650acfc5aafe9ce641e640f2add67646447
  • kernel-modules-extra-4.18.0-305.25.1.el8_4.tuxcare.els31.x86_64.rpm
    sha:3f984dab04de37dfcb789b18d9ec7c8ed5bf1e50ce436d3097545f55d4c11724
  • kernel-modules-internal-4.18.0-305.25.1.el8_4.tuxcare.els31.x86_64.rpm
    sha:c2c61bcfc8d1d6220da258de466e4e7cf4553a3d7ff61e3b5033175feaac1f2d
  • kernel-selftests-internal-4.18.0-305.25.1.el8_4.tuxcare.els31.x86_64.rpm
    sha:561a3bd6620351aef82cffde0245c726bd48e385b8f1a76832b3bdc330be41e7
  • kernel-tools-4.18.0-305.25.1.el8_4.tuxcare.els31.x86_64.rpm
    sha:398e66e9cedce54a8176806ab81d153164b4a49556dd9a899c90c8a5c5512d65
  • kernel-tools-libs-4.18.0-305.25.1.el8_4.tuxcare.els31.x86_64.rpm
    sha:49030a63e2414def8bcbfd9f6e9759a9b0f0bb59e7c750338b766864b60efe96
  • kernel-tools-libs-devel-4.18.0-305.25.1.el8_4.tuxcare.els31.x86_64.rpm
    sha:ad48b9e2b5ea13db9a9aaecb7da9e930fc9832f9f0adafa2020ba4be8ece54dc
  • perf-4.18.0-305.25.1.el8_4.tuxcare.els31.x86_64.rpm
    sha:bde540671b661b84893653a22ead89e2ba5412e780639b0811c5054a5ebbb197
  • python3-perf-4.18.0-305.25.1.el8_4.tuxcare.els31.x86_64.rpm
    sha:7091c1b6ef89d5ca7095e0613eec5063e42f4e02a42604a761c3ca03c532aaba
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.