INFSA-2025:11861: kernel security update

Information about definition

Identificator: INFSA-2025:11861

Type: security

Release date: 2025-07-31 16:07:48 UTC

Information about package

The kernel packages contain the Linux kernel, the core of any Linux operating system.

Vulnerabilities description

  • CVE-2024-57980

    In the Linux kernel, the following vulnerability has been resolved: media: uvcvideo: Fix double free in error path.

  • CVE-2025-38086

    In the Linux kernel, the following vulnerability has been resolved: net: ch9200: fix uninitialised access during mii_nway_restart.

  • CVE-2025-21905

    In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: limit printed string from FW file.

  • CVE-2025-22085

    In the Linux kernel, the following vulnerability has been resolved: RDMA/core: Fix use-after-free when rename device name.

  • CVE-2025-22091

    In the Linux kernel, the following vulnerability has been resolved: RDMA/mlx5: Fix page_size variable overflow.

  • CVE-2025-22113

    In the Linux kernel, the following vulnerability has been resolved: ext4: avoid journaling sb update on error if journal is destroying.

  • CVE-2025-22121

    In the Linux kernel, the following vulnerability has been resolved: ext4: fix out-of-bound read in ext4_xattr_inode_dec_ref_all().

  • CVE-2025-37797

    In the Linux kernel, the following vulnerability has been resolved: net_sched: hfsc: Fix a UAF vulnerability in class handling.

  • CVE-2025-37958

    In the Linux kernel, the following vulnerability has been resolved: mm/huge_memory: fix dereferencing invalid pmd migration entry.

  • CVE-2025-38110

    In the Linux kernel, the following vulnerability has been resolved: net/mdiobus: Fix potential out-of-bounds clause 45 read/write access.

Severity level

CVE Score CVSS 2.0 Score CVSS 3.x Score CVSS 4.0
no information 4.7 no information
no information 6.0 no information
no information 6.7 no information
no information 7.0 no information
no information 7.1 no information
no information 7.1 no information
no information 7.0 no information
no information 4.7 no information
no information 7.0 no information
no information 6.0 no information
Critical, important, moderate, low

Updated packages