Red Hat Security Advisory: kernel security update
🔗 CVE IDs covered (10)
📋 Description
CVE-2022-50865 — kernel: tcp: fix a signed-integer-overflow bug in tcp_add_backlog() CVE-2024-26766 — kernel: IB/hfi1: Fix sdma.h tx->num_descs off-by-one error CVE-2025-38022 — kernel: RDMA/core: Fix "KASAN: slab-use-after-free Read in ib_register_device" problem CVE-2025-38024 — kernel: Linux kernel: RDMA/rxe use-after-free vulnerability leading to potential arbitrary code execution CVE-2025-38415 — kernel: Linux kernel: Memory corruption in Squashfs due to incorrect block size calculation CVE-2025-38459 — kernel: Linux kernel: Denial of Service in ATM CLIP module via infinite recursion CVE-2025-39760 — kernel: Linux kernel: Denial of Service via out-of-bounds read in USB configuration parsing CVE-2025-40258 — kernel: mptcp: fix race condition in mptcp_schedule_work() CVE-2025-40271 — kernel: Linux kernel: Use-after-free in proc_readdir_de() can lead to privilege escalation or denial of service. CVE-2025-40322 — kernel: Linux kernel: Information disclosure and denial of service via out-of-bounds read in font glyph handling
🔗 References (13)
- selfhttps://access.redhat.com/errata/RHSA-2026:1662
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2373326
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2373354
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2383404
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2383487
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2394601
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2418876
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2419837
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2419902
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2426226
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2273187
- externalhttps://access.redhat.com/security/updates/classification/#moderate
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2026/rhsa-2026_1662.json