[ALSA-2025:18318] Moderate: kernel security update
Type:
security
Severity:
moderate
Release date:
2025-10-22
Description:
The kernel packages contain the Linux kernel, the core of any Linux operating system. Security Fix(es): * kernel: KVM: x86/hyper-v: Skip non-canonical addresses during PV TLB flush (CVE-2025-38351) * kernel: sunrpc: fix client side handling of tls alerts (CVE-2025-38571) * kernel: eventpoll: Fix semi-unbounded recursion (CVE-2025-38614) * kernel: ipv6: reject malicious packets in ipv6_gso_segment() (CVE-2025-38572) * kernel: efivarfs: Fix slab-out-of-bounds in efivarfs_d_compare (CVE-2025-39817) * kernel: scsi: lpfc: Fix buffer free/clear order in deferred receive path (CVE-2025-39841) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Updated packages listed below:
Architecture Package Checksum
noarch kernel-abi-stablelists-6.12.0-55.40.1.el10_0.noarch.rpm 70abc1e8cdba33b90bcc7e9729df748a863bbe9bc579370bb955b4554bd082f9
noarch kernel-doc-6.12.0-55.40.1.el10_0.noarch.rpm 954524fc1f03c75e8744fbd29340b7f8ca7ae7c97b0368997e78f086913ebfad
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.