Details
-
Task
-
Resolution: Unresolved
-
Minor
-
None
-
Lustre 2.17.0, Lustre 2.15.7
-
None
-
3
-
9223372036854775807
Description
Security Fix(es):
- kernel: ipv6: mcast: extend RCU protection in igmp6_send() (CVE-2025-21759)
- kernel: ovl: fix UAF in ovl_dentry_update_reval by moving dput() in ovl_link_up (CVE-2025-21887)
- kernel: net: atm: fix use after free in lec_send() (CVE-2025-22004)
- kernel: udf: Fix a slab-out-of-bounds write bug in udf_find_entry() (CVE-2022-49846)
- kernel: vmxnet3: Fix malformed packet sizing in vmxnet3_process_xdp (CVE-2025-37799)
Security Fix(es):
- kernel: x86/microcode/AMD: Fix out-of-bounds on systems with CPU-less NUMA nodes (CVE-2025-21991)
Security Fix(es):
- kernel: media: uvcvideo: Fix double free in error path (CVE-2024-57980)
- kernel: wifi: iwlwifi: limit printed string from FW file (CVE-2025-21905)
- kernel: RDMA/mlx5: Fix page_size variable overflow (CVE-2025-22091)
- kernel: ext4: fix out-of-bound read in ext4_xattr_inode_dec_ref_all() (CVE-2025-22121)
- kernel: ext4: avoid journaling sb update on error if journal is destroying (CVE-2025-22113)
- kernel: RDMA/core: Fix use-after-free when rename device name (CVE-2025-22085)
- kernel: net_sched: hfsc: Fix a UAF vulnerability in class handling (CVE-2025-37797)
- kernel: mm/huge_memory: fix dereferencing invalid pmd migration entry (CVE-2025-37958)
- kernel: net: ch9200: fix uninitialised access during mii_nway_restart (CVE-2025-38086)
- kernel: net/mdiobus: Fix potential out-of-bounds clause 45 read/write access (CVE-2025-38110)
Security Fix(es):
- kernel: padata: fix UAF in padata_reorder (CVE-2025-21727)
- kernel: HID: intel-ish-hid: Fix use-after-free issue in ishtp_hid_remove() (CVE-2025-21928)
- kernel: HID: intel-ish-hid: Fix use-after-free issue in hid_ishtp_cl_remove() (CVE-2025-21929)
- kernel: cifs: Fix integer overflow while processing closetimeo mount option (CVE-2025-21962)
- kernel: memstick: rtsx_usb_ms: Fix slab-use-after-free in rtsx_usb_ms_drv_remove (CVE-2025-22020)
- kernel: misc/vmw_vmci: fix an infoleak in vmci_host_do_receive_datagram() (CVE-2022-49788)
- kernel: net_sched: hfsc: Fix a UAF vulnerability in class with netem as child qdisc (CVE-2025-37890)
- kernel: net/tipc: fix slab-use-after-free Read in tipc_aead_encrypt_done (CVE-2025-38052)
- kernel: net/sched: fix use-after-free in taprio_dev_notifier (CVE-2025-38087)
https://access.redhat.com/errata/RHSA-2025:10379?sc_cid=701600000006NHXAA2
https://access.redhat.com/errata/product/479/ver=/rhel---9/x86_64/RHSA-2025:10837
https://access.redhat.com/errata/product/479/ver=/rhel---9/x86_64/RHSA-2025:11861
https://access.redhat.com/errata/product/479/ver=/rhel---9/x86_64/RHSA-2025:12746