RHSA-2025:14511: Important: kernel security update
Important: kernel security update
Other sources
The kernel packages contain the Linux kernel, the core of any Linux operating system.Security Fix(es): kernel: can: peakusb: fix use after free bugs (CVE-2021-47670) kernel: netsched: hfsc: Fix a UAF vulnerability in class with netem as child qdisc (CVE-2025-37890) kernel: netsched: hfsc: Address reentrant enqueue adding class to eltree twice (CVE-2025-38001) kernel: schhfsc: Fix qlen accounting bug when using peek in hfscenqueue() (CVE-2025-38000) kernel: crypto: algifhash - fix double free in hashaccept (CVE-2025-38079) kernel: ftrace: Fix NULL pointer dereference in isftracetrampoline when ftrace is dead (CVE-2022-49977) kernel: schhfsc: make hfscqlennotify() idempotent (CVE-2025-38177) kernel: net/sched: Always pass notifications when child class becomes empty (CVE-2025-38350) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2025:14511?
The severity of RHSA-2025:14511 is classified as Important.
How do I fix RHSA-2025:14511?
To fix RHSA-2025:14511, update the kernel packages to version 4.18.0-477.107.1.el8_8.
What vulnerabilities are addressed in RHSA-2025:14511?
RHSA-2025:14511 addresses use-after-free vulnerabilities in the Linux kernel, specifically CVE-2021-47670.
Which systems are affected by RHSA-2025:14511?
RHSA-2025:14511 affects various versions of Red Hat Enterprise Linux, including the x86_64 architecture and Power LE.
What packages are included in the RHSA-2025:14511 update?
The RHSA-2025:14511 update includes kernel, bpftool, and other related packages.