RHSA-2025:13776: Important: kernel security update
Important: kernel security update
Other sources
The kernel packages contain the Linux kernel, the core of any Linux operating system.Security Fix(es): kernel: media: uvcvideo: Remove dangling pointers (CVE-2024-58002) kernel: padata: fix UAF in padatareorder (CVE-2025-21727) kernel: media: uvcvideo: Fix double free in error path (CVE-2024-57980) kernel: HID: intel-ish-hid: Fix use-after-free issue in ishtphidremove() (CVE-2025-21928) kernel: sched/fair: Fix potential memory corruption in childcfsrqonlist (CVE-2025-21919) kernel: ext4: fix off-by-one error in dosplit (CVE-2025-23150) kernel: misc/vmwvmci: fix an infoleak in vmcihostdoreceivedatagram() (CVE-2022-49788) kernel: net/tipc: fix slab-use-after-free Read in tipcaeadencryptdone (CVE-2025-38052) kernel: ext4: avoid resizing to a partial cluster size (CVE-2022-50020) kernel: drivers:md:fix a potential use-after-free bug (CVE-2022-50022) kernel: net: ch9200: fix uninitialised access during miinwayrestart (CVE-2025-38086) kernel: i2c/designware: Fix an initialization issue (CVE-2025-38380) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What are the main security fixes addressed in RHSA-2025:13776?
RHSA-2025:13776 addresses vulnerabilities such as dangling pointers in uvcvideo (CVE-2024-58002) and a use-after-free issue in padata_reorder (CVE-2025-21727).
How do I fix RHSA-2025:13776?
To fix RHSA-2025:13776, update the kernel packages to version 4.18.0-372.157.1.el8_6.
What severity level is assigned to RHSA-2025:13776?
RHSA-2025:13776 is classified as an important security update.
Who is affected by RHSA-2025:13776?
RHSA-2025:13776 affects users of Red Hat Enterprise Linux Server for Power LE and x86_64, specifically those on Update Services for SAP Solutions.
What is the recommended action for systems running vulnerable versions covered by RHSA-2025:13776?
Systems running vulnerable versions should promptly apply the security update to mitigate risks associated with the identified vulnerabilities.