INFSA-2025:22388: kernel security update

Information about definition

Identificator: INFSA-2025:22388

Type: security

Release date: 2025-12-07 23:25:49 UTC

Information about package

The kernel packages contain the Linux kernel, the core of any Linux operating system.

Vulnerabilities description

  • CVE-2025-39955

    tcp_disconnect() failed to clear tcp_sk(sk)->fastopen_rsk when reusing a TFO socket (e.g., after accept() → connect(AF_UNSPEC) → connect() sequence). This left a stale reference, allowing the retransmit timer to access a freed request_sock, triggering a kernel warning or potential UAF.

  • CVE-2025-38724

    A vulnerability has been identified in the Linux kernel's Network File System (NFS) daemon that could allow for a Denial of Service and in worst case scenario Arbitrary Code Execution. This Use-After-Free flaw arises from a race condition when the kernel handles the confirmation of an NFS client identifier. If an NFS client is expiring while this confirmation is in progress, the system can attempt to use memory that is no longer allocated.

  • CVE-2025-39898

    n the Linux kernel, the following vulnerability has been resolved: e1000e: fix heap overflow in e1000_set_eeprom.

  • CVE-2023-53513

    In the Linux kernel, the following vulnerability has been resolved: nbd: fix incomplete validation of ioctl arg.

  • CVE-2025-39825

    In the Linux kernel, the following vulnerability has been resolved: smb: client: fix race with concurrent opens in rename.

  • CVE-2025-39883

    In the Linux kernel, the following vulnerability has been resolved: mm/memory-failure: fix VM_BUG_ON_PAGE(PagePoisoned(page)) when unpoison memory.

Severity level

CVE Score CVSS 2.0 Score CVSS 3.x Score CVSS 4.0
no information 7.3 no information
no information 7.0 no information
no information 7.0 no information
no information 7.0 no information
no information 7.6 no information
no information 7.6 no information
Critical, important, moderate, low

Updated packages

loader icon Preparing to download...
Architecture: Download