INFSA-2025:22387: kernel-rt security update
Information about definition
Identificator: INFSA-2025:22387
Type: security
Release date: 2025-12-07 23:30:20 UTC
Information about package
The kernel-rt packages provide the Real Time Linux Kernel, which enables fine-tuning for systems with extremely high determinism requirements.
Vulnerabilities description
- CVE-2025-39955
tcp_disconnect() failed to clear tcp_sk(sk)->fastopen_rsk when reusing a TFO socket (e.g., after accept() → connect(AF_UNSPEC) → connect() sequence). This left a stale reference, allowing the retransmit timer to access a freed request_sock, triggering a kernel warning or potential UAF.
- CVE-2025-38724
A vulnerability has been identified in the Linux kernel's Network File System (NFS) daemon that could allow for a Denial of Service and in worst case scenario Arbitrary Code Execution. This Use-After-Free flaw arises from a race condition when the kernel handles the confirmation of an NFS client identifier. If an NFS client is expiring while this confirmation is in progress, the system can attempt to use memory that is no longer allocated.
- CVE-2025-39898
n the Linux kernel, the following vulnerability has been resolved: e1000e: fix heap overflow in e1000_set_eeprom.
- CVE-2023-53513
In the Linux kernel, the following vulnerability has been resolved: nbd: fix incomplete validation of ioctl arg.
- CVE-2025-39825
In the Linux kernel, the following vulnerability has been resolved: smb: client: fix race with concurrent opens in rename.
- CVE-2025-39883
In the Linux kernel, the following vulnerability has been resolved: mm/memory-failure: fix VM_BUG_ON_PAGE(PagePoisoned(page)) when unpoison memory.
Severity level
| CVE | Score CVSS 2.0 | Score CVSS 3.x | Score CVSS 4.0 |
|---|---|---|---|
|
NIST — CVE-2023-53513
|
no information | 7.3 | no information |
|
NIST — CVE-2025-38724
|
no information | 7.0 | no information |
|
NIST — CVE-2025-39825
|
no information | 7.0 | no information |
|
NIST — CVE-2025-39883
|
no information | 7.0 | no information |
|
NIST — CVE-2025-39898
|
no information | 7.6 | no information |
|
NIST — CVE-2025-39955
|
no information | 7.6 | no information |
Updated packages