[CLSA-2026:1770028389] kernel: Fix of 14 CVEs
Type:
security
Severity:
Important
Release date:
2026-02-02 10:33:13 UTC
Description:
- efivarfs: Fix slab-out-of-bounds in efivarfs_d_compare {CVE-2025-39817} - scsi: ses: Fix possible desc_ptr out-of-bounds accesses {CVE-2023-53675} - ipv6: Fix out-of-bounds access in ipv6_find_tlv() {CVE-2023-53705} - libceph: fix potential use-after-free in have_mon_and_osd_map() {CVE-2025-68285} - scsi: lpfc: Fix use-after-free KFENCE violation during sysfs firmware write {CVE-2023-53282} - Bluetooth: hci_sysfs: Fix attempting to call device_add multiple times {CVE-2022-50419} - firewire: net: fix use after free in fwnet_finish_incoming_packet() {CVE-2023-53432} - net: openvswitch: fix nested key length validation in the set() action - wifi: mac80211_hwsim: drop short frames {CVE-2023-53321} - scsi: libsas: Fix use-after-free bug in smp_execute_task_sg() {CVE-2022-50422} - fix: crypto: lzo - Fix compression buffer overrun - fix: NFSD: Protect against send buffer overflow in NFSv2 READ - cifs: fix oops during encryption {CVE-2022-50341} - SMB3: Kernel oops mounting a encryptData share with CONFIG_DEBUG_VIRTUAL - fix smb3-encryption breakage when CONFIG_DEBUG_SG=y - Bluetooth: L2CAP: fix "bad unlock balance" in l2cap_disconnect_rsp {CVE-2023-53297} - iomap: iomap: fix memory corruption when recording errors during writeback {CVE-2022-50406} - mm: zswap: fix missing folio cleanup in writeback race path {CVE-2024-26832} - mm: fix zswap writeback race condition - Bluetooth: prefetch channel before killing sock - Bluetooth: Fix l2cap_disconnect_req deadlock - Bluetooth: L2CAP: Fix use-after-free in l2cap_disconnect_{req,rsp} {CVE-2023-53827} - Bluetooth: Fix refcount use-after-free issue - Bluetooth: Check state in l2cap_disconnect_rsp - Bluetooth: L2CAP: Fix build errors in some archs - Bluetooth: L2CAP: Fix l2cap_global_chan_by_psm regression - Bluetooth: use the correct print format for L2CAP debug statements - i40e: fix Jumbo Frame support after iPXE boot - i40e: Report MFS in decimal base instead of hex - i40e: Fix unexpected MFS warning message - i40e: Add a check to see if MFS is set - bitops: Add non-atomic bitops for pointers - bitfield: Add FIELD_MODIFY() helper
Updated packages:
  • bpftool-3.10.0-1160.144.1.el7.tuxcare.els1.x86_64.rpm
    sha:8af4d8065dda8399d541c28b0d69a65d2d363996fc2d9a2f9ffc752deabc4b99
  • kernel-3.10.0-1160.144.1.el7.tuxcare.els1.x86_64.rpm
    sha:f2067d6e30b83205b252b1e0fdc538658c6ce783679d5ea7ce025c305c1b7e02
  • kernel-debug-3.10.0-1160.144.1.el7.tuxcare.els1.x86_64.rpm
    sha:1b60b171c8e92de1d80bb6e2b4437a1d46cbfbf89aa8b81735ec623def91bb37
  • kernel-debug-devel-3.10.0-1160.144.1.el7.tuxcare.els1.x86_64.rpm
    sha:dd708d643c9ff8d1d797906391af19024b4170fa26b7bf6f0e25bfe3d865547a
  • kernel-devel-3.10.0-1160.144.1.el7.tuxcare.els1.x86_64.rpm
    sha:97621891c553523797786d4008218364fa4221872471308545e61ed14294af82
  • kernel-headers-3.10.0-1160.144.1.el7.tuxcare.els1.x86_64.rpm
    sha:9ad9f4d6823c99ab8d8229e709022c72f0a973046e94db109dc90befccb14a3b
  • kernel-tools-3.10.0-1160.144.1.el7.tuxcare.els1.x86_64.rpm
    sha:3fe720b499e4f0fdf10a9e5fa7a2a0962bc210395d7972949c7126e5ebcb8cde
  • kernel-tools-libs-3.10.0-1160.144.1.el7.tuxcare.els1.x86_64.rpm
    sha:e35d24e2d656bcc05c9f49c6fef3427eaab9c7e562cb218d494c5e2bfe1773ba
  • kernel-tools-libs-devel-3.10.0-1160.144.1.el7.tuxcare.els1.x86_64.rpm
    sha:a72b2c9457a655ec2e17cb2fb7d34b9f45469766cf9980e7f5ed38bab25424ff
  • perf-3.10.0-1160.144.1.el7.tuxcare.els1.x86_64.rpm
    sha:202929e289d1741313a3da988827e566b6ada08b13a7e1500fed55f685584abf
  • python-perf-3.10.0-1160.144.1.el7.tuxcare.els1.x86_64.rpm
    sha:9caef1c37236b388883ef679086d6bed08e4fcddde08df6373bf092d31a647f8
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.