[ALSA-2025:15782] Moderate: kernel security update
Type:
security
Severity:
moderate
Release date:
2025-09-26
Description:
The kernel packages contain the Linux kernel, the core of any Linux operating system. Security Fix(es): * kernel: ublk: make sure ubq->canceling is set when queue is frozen (CVE-2025-22068) * kernel: scsi: lpfc: Use memcpy() for BIOS version (CVE-2025-38332) * kernel: idpf: convert control queue mutex to a spinlock (CVE-2025-38392) * kernel: tcp: Correct signedness in skb remaining space calculation (CVE-2025-38463) * kernel: do_change_type(): refuse to operate on unmounted/not ours mounts (CVE-2025-38498) * kernel: xfrm: interface: fix use-after-free after changing collect_md xfrm interface (CVE-2025-38500) * kernel: ipv6: mcast: Delay put pmc->idev in mld_del_delrec() (CVE-2025-38550) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Updated packages listed below:
Architecture Package Checksum
noarch kernel-abi-stablelists-6.12.0-55.33.1.el10_0.noarch.rpm 7bdea175b47e51fc0a1a93466a0916d7b50ab3a44efdf45940ef9670aa761993
noarch kernel-doc-6.12.0-55.33.1.el10_0.noarch.rpm d69a3cdc8ca74c642b1a2755fe08fd6e71a7a0a4cbf9396b30fc14e14db074ad
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.