INFSA-2025:15011: kernel security update
Information about definition
Identificator: INFSA-2025:15011
Type: security
Release date: 2025-09-11 14:29:07 UTC
Information about package
The kernel packages contain the Linux kernel, the core of any Linux operating system.
Vulnerabilities description
- CVE-2025-38200
In the Linux kernel, the following vulnerability has been resolved: i40e: fix MMIO write access to an invalid page in i40e_clear_hw.
- CVE-2025-37823
In the Linux kernel, the following vulnerability has been resolved: net_sched: hfsc: Fix a potential UAF in hfsc_dequeue() too.
- CVE-2025-38211
In the Linux kernel, the following vulnerability has been resolved: RDMA/iwcm: Fix use-after-free of work objects after cm_id destruction.
- CVE-2025-38350
A use-after-free (UAF) vulnerability was found in the Linux kernel's net/sched subsystem, specifically in the Credit-Based Shaper (CBS) qdisc implementation (sch_cbs). The vulnerability occurs because the CBS qdisc's reset function (qdisc_reset_queue()) only resets its internal queue but fails to reset its child qdisc recursively. As a result, a mismatch in queue length (qlen) occurs between CBS and its children during interface resets, eventually allowing attackers to trigger UAF on a parent HFSC scheduler.
- CVE-2025-38461
In the Linux kernel, the following vulnerability has been resolved: vsock: Transport assignment may race with module unload.
- CVE-2025-38464
In the Linux kernel, the following vulnerability has been resolved: tipc: Fix use-after-free in tipc_conn_close().
- CVE-2025-38500
In the Linux kernel, the following vulnerability has been resolved: xfrm: interface: fix use-after-free after changing collect_md.
Severity level
CVE | Score CVSS 2.0 | Score CVSS 3.x | Score CVSS 4.0 |
---|---|---|---|
NIST — CVE-2025-37823
|
no information | 7.1 | no information |
NIST — CVE-2025-38200
|
no information | 7.0 | no information |
NIST — CVE-2025-38211
|
no information | 7.3 | no information |
NIST — CVE-2025-38350
|
no information | 7.0 | no information |
NIST — CVE-2025-38461
|
no information | 7.3 | no information |
NIST — CVE-2025-38464
|
no information | 7.3 | no information |
NIST — CVE-2025-38500
|
no information | 7.8 | no information |
Updated packages