RHSA-2025:23227HighCVSS 6.2
Red Hat Security Advisory: Red Hat Ceph Storage
🔗 CVE IDs covered (3)
📋 Description
CVE-2025-4598 — systemd-coredump: race condition that allows a local attacker to crash a SUID program and gain read access to the resulting core dump CVE-2025-9714 — libxslt: libxml2: Inifinite recursion at exsltDynMapFunction function in libexslt/dynamic.c CVE-2025-59375 — firefox: thunderbird: expat: libexpat in Expat allows attackers to trigger large dynamic memory allocations via a small document that is submitted for parsing
🔗 References (7)
- selfhttps://access.redhat.com/errata/RHSA-2025:23227
- externalhttps://access.redhat.com/security/cve/CVE-2025-4598
- externalhttps://access.redhat.com/security/cve/CVE-2025-59375
- externalhttps://access.redhat.com/security/cve/CVE-2025-9714
- externalhttps://access.redhat.com/security/updates/classification/
- externalhttps://docs.redhat.com/en/documentation/red_hat_ceph_storage/
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2025/rhsa-2025_23227.json