Red Hat Security Advisory: kernel-rt security update
🔗 CVE IDs covered (6)
📋 Description
CVE-2022-48701 — kernel: ALSA: usb-audio: ALSA USB Audio Out-of-Bounds Bug CVE-2022-50211 — kernel: md-raid10: fix KASAN warning CVE-2022-50229 — kernel: ALSA: bcd2000: Fix a UAF bug on the error path of probing CVE-2023-53125 — kernel: net: usb: smsc75xx: Limit packet length to skb->len CVE-2025-38200 — kernel: i40e: fix MMIO write access to an invalid page in i40e_clear_hw CVE-2025-38477 — kernel: net/sched: sch_qfq: Fix race condition on qfq_aggregate
🎯 Affected products13
- Red Hat Enterprise Linux for Real Time (v. 7 ELS)
- kernel-rt-0:3.10.0-1160.140.1.rt56.1292.el7.src as a component of Red Hat Enterprise Linux for Real Time (v. 7 ELS)
- kernel-rt-0:3.10.0-1160.140.1.rt56.1292.el7.x86_64 as a component of Red Hat Enterprise Linux for Real Time (v. 7 ELS)
- kernel-rt-debug-0:3.10.0-1160.140.1.rt56.1292.el7.x86_64 as a component of Red Hat Enterprise Linux for Real Time (v. 7 ELS)
- kernel-rt-debug-debuginfo-0:3.10.0-1160.140.1.rt56.1292.el7.x86_64 as a component of Red Hat Enterprise Linux for Real Time (v. 7 ELS)
- kernel-rt-debug-devel-0:3.10.0-1160.140.1.rt56.1292.el7.x86_64 as a component of Red Hat Enterprise Linux for Real Time (v. 7 ELS)
- kernel-rt-debuginfo-0:3.10.0-1160.140.1.rt56.1292.el7.x86_64 as a component of Red Hat Enterprise Linux for Real Time (v. 7 ELS)
- kernel-rt-debuginfo-common-x86_64-0:3.10.0-1160.140.1.rt56.1292.el7.x86_64 as a component of Red Hat Enterprise Linux for Real Time (v. 7 ELS)
- kernel-rt-devel-0:3.10.0-1160.140.1.rt56.1292.el7.x86_64 as a component of Red Hat Enterprise Linux for Real Time (v. 7 ELS)
- kernel-rt-doc-0:3.10.0-1160.140.1.rt56.1292.el7.noarch as a component of Red Hat Enterprise Linux for Real Time (v. 7 ELS)
- kernel-rt-trace-0:3.10.0-1160.140.1.rt56.1292.el7.x86_64 as a component of Red Hat Enterprise Linux for Real Time (v. 7 ELS)
- kernel-rt-trace-debuginfo-0:3.10.0-1160.140.1.rt56.1292.el7.x86_64 as a component of Red Hat Enterprise Linux for Real Time (v. 7 ELS)
- kernel-rt-trace-devel-0:3.10.0-1160.140.1.rt56.1292.el7.x86_64 as a component of Red Hat Enterprise Linux for Real Time (v. 7 ELS)
✅ Remediation
For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 The system must be rebooted for this update to take effect. Workaround: To mitigate this issue, prevent module smsc75xx from being loaded. Please see https://access.redhat.com/solutions/41278 for how to blacklist a kernel module to prevent it from loading automatically. Workaround: To mitigate this issue, prevent module sch_qfq from being loaded. Please see https://access.redhat.com/solutions/41278 for how to blacklist a kernel module to prevent it from loading automatically.
🔗 References (9)
- selfhttps://access.redhat.com/errata/RHSA-2025:17109
- externalhttps://access.redhat.com/security/updates/classification/#moderate
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2278950
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2363686
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2373460
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2373662
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2376392
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2383922
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2025/rhsa-2025_17109.json