[CLSA-2025:1763990271] Fix of 12 CVEs
Type:
security
Severity:
Important
Release date:
2025-11-24 13:17:54 UTC
Description:
* Focal update: v5.4.291 upstream stable release (LP: #2106002) // CVE-2024-58072 - wifi: rtlwifi: remove unused check_buddy_priv * Focal update: v5.4.291 upstream stable release (LP: #2106002) - wifi: rtlwifi: remove unused timer and related code - wifi: rtlwifi: remove unused dualmac control leftovers * Focal update: v5.4.237 upstream stable release (LP: #2023420) - ext4: move where set the MAY_INLINE_DATA flag is set * CVE-url: https://ubuntu.com/security/CVE-2024-58014 - wifi: brcmsmac: add gain range check to wlc_phy_iqcal_gainparams_nphy() * CVE-url: https://ubuntu.com/security/CVE-2025-38352 - posix-cpu-timers: fix race between handle_posix_cpu_timers() and posix_cpu_timer_del() * CVE-url: https://ubuntu.com/security/CVE-2022-25265 - x86/elf: Add table to document READ_IMPLIES_EXEC - x86/elf: Split READ_IMPLIES_EXEC from executable PT_GNU_STACK - x86/elf: Disable automatic READ_IMPLIES_EXEC on 64-bit * Focal update: v5.4.279 upstream stable release (LP: #2073621) // CVE-url: https://ubuntu.com/security/CVE-2024-37078 - nilfs2: fix potential kernel bug due to lack of writeback flag waiting * CVE-url: https://ubuntu.com/security/CVE-2022-49170 - f2fs: fix to do sanity check on curseg->alloc_type * CVE-url: https://ubuntu.com/security/CVE-2021-47479 - staging: rtl8712: fix use-after-free in rtl8712_dl_fw * Focal update: v5.4.279 upstream stable release (LP: #2073621) // CVE-url: https://ubuntu.com/security/CVE-2024-39469 - nilfs2: fix nilfs_empty_dir() misjudgment and long loop on I/O errors * CVE-url: https://ubuntu.com/security/CVE-2022-49519 - ath10k: skip ath10k_halt during suspend for driver state RESTARTING * CVE-url: https://ubuntu.com/security/CVE-2024-46713 - perf/aux: Fix AUX buffer serialization * Focal update: v5.4.262 upstream stable release (LP: #2049069) // CVE-url: https://ubuntu.com/security/CVE-2023-52804 - fs/jfs: Add check for negative db_l2nbperpage - fs/jfs: Add validity check for db_maxag and db_agpref * Focal update: v5.4.251 upstream stable release (LP: #2034918) // CVE-url: https://ubuntu.com/security/CVE-2023-52804 - jfs: jfs_dmap: Validate db_l2nbperpage while mounting * CVE-url: https://ubuntu.com/security/CVE-2024-36880 - Bluetooth: qca: add missing firmware sanity checks * Miscellaneous upstream changes - net: openvswitch: fix nested key length validation in the set() action - isofs: Prevent the use of too small fid - ext4: ignore xattrs past end - net: ppp: Add bound checking for skb data on ppp_sync_txmung - media: venus: hfi: add check to handle incorrect queue size - sctp: detect and prevent references to a freed transport in sendmsg - ext4: improve xattr consistency checking and error reporting - ext4: introduce ITAIL helper - ext4: fix out-of-bound read in ext4_xattr_inode_dec_ref_all() - ibmvnic: Do not attempt to login if RX or TX queues are not allocated - ibmvnic: Enable GRO - ibmvnic: Fix netdev feature clobbering during a reset - ibmvnic: create send_control_ip_offload - ibmvnic: Define vnic_login_client_data name field as unsized array - ibmvnic: Use strscpy() instead of strncpy() - ibmvnic: Use kernel helpers for hex dumps - wifi: at76c50x: fix use after free access in at76_disconnect
Updated packages:
  • linux-buildinfo-4.15.0-253-tuxcare.els41-generic_4.15.0-253.264_amd64.deb
    sha:6809a4831ce296f2dc62da41e6ba18cefbbf73e4
  • linux-buildinfo-4.15.0-253-tuxcare.els41-lowlatency_4.15.0-253.264_amd64.deb
    sha:538d0fd732946c3189767df194cf98650b6b4565
  • linux-cloud-tools-4.15.0-253-tuxcare.els41_4.15.0-253.264_amd64.deb
    sha:0ec24574b9aae091dfc79f8f259f4ca457f08abc
  • linux-cloud-tools-4.15.0-253-tuxcare.els41-generic_4.15.0-253.264_amd64.deb
    sha:a24f15987c6abe47e75d4ff9c50add684b5dec8a
  • linux-cloud-tools-4.15.0-253-tuxcare.els41-lowlatency_4.15.0-253.264_amd64.deb
    sha:450cddb9de0c0fc28db8318d5db4dc46585aacd9
  • linux-cloud-tools-common_4.15.0-253.264_all.deb
    sha:85b7f5f02b32b715b507b24ffa3826ab2bef4afd
  • linux-doc_4.15.0-253.264_all.deb
    sha:cd69ba0adf61d91d7199cb78226fd65f3f5af365
  • linux-headers-4.15.0-253-tuxcare.els41_4.15.0-253.264_all.deb
    sha:424c8f24df99f8b447b3a579d09a7fed9fcf0a95
  • linux-headers-4.15.0-253-tuxcare.els41-generic_4.15.0-253.264_amd64.deb
    sha:16a099b7fb96b09030deb49d127496bdcf940fc0
  • linux-headers-4.15.0-253-tuxcare.els41-lowlatency_4.15.0-253.264_amd64.deb
    sha:f583803d6be1cee2b3507b1a69f238d28bdac7f9
  • linux-image-unsigned-4.15.0-253-tuxcare.els41-generic_4.15.0-253.264_amd64.deb
    sha:1651bb27815e400b562ddbb9dc2a59e81dc43376
  • linux-image-unsigned-4.15.0-253-tuxcare.els41-lowlatency_4.15.0-253.264_amd64.deb
    sha:0b0643a2c8766691c18f95ead59248eaa6eb58f6
  • linux-libc-dev_4.15.0-253.264_amd64.deb
    sha:b84fcab92b1ae83821f5973eb409c939e27f65c9
  • linux-modules-4.15.0-253-tuxcare.els41-generic_4.15.0-253.264_amd64.deb
    sha:081ecd6c6d839003daf824f0888adba3401c7498
  • linux-modules-4.15.0-253-tuxcare.els41-lowlatency_4.15.0-253.264_amd64.deb
    sha:e58338b3becc04fbc68b86e17930f418df4e425f
  • linux-modules-extra-4.15.0-253-tuxcare.els41-generic_4.15.0-253.264_amd64.deb
    sha:b53470425acd0339c0b5b04e5bb086b4d086c8c5
  • linux-source-4.15.0_4.15.0-253.264_all.deb
    sha:72ba47fd2a1c753cf0bf074c8f7425235bad6d3e
  • linux-tools-4.15.0-253-tuxcare.els41_4.15.0-253.264_amd64.deb
    sha:eb901b1b23a8770d26115e967f99d98fdc57c554
  • linux-tools-4.15.0-253-tuxcare.els41-generic_4.15.0-253.264_amd64.deb
    sha:eb3209d9ee2567f25d2b5240d0c1965c9a281f1b
  • linux-tools-4.15.0-253-tuxcare.els41-lowlatency_4.15.0-253.264_amd64.deb
    sha:4d4371cd54fe494bbb784e2f91f9eb9bca0f9d94
  • linux-tools-common_4.15.0-253.264_all.deb
    sha:230e7282132cc73392bca84b933b5fdb21dca23c
  • linux-tools-host_4.15.0-253.264_all.deb
    sha:0f427301f1e3a85d972816fa786285c6f3b63037
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.