RHSA-2025:15649: Important: kernel security update
Important: kernel security update
Other sources
The kernel packages contain the Linux kernel, the core of any Linux operating system.Security Fix(es): kernel: ext4: use-after-free in ext4xattrsetentry() (CVE-2023-2513) kernel: wifi: rtw88: fix the 'para' buffer size to avoid reading out of bounds (CVE-2025-38159) kernel: scsi: lpfc: Use memcpy() for BIOS version (CVE-2025-38332) kernel: posix-cpu-timers: fix race between handleposixcputimers() and posixcputimerdel() (CVE-2025-38352) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2025:15649?
RHSA-2025:15649 is classified as an important security update.
How do I fix RHSA-2025:15649?
To fix RHSA-2025:15649, you should update to kernel version 4.18.0-477.110.1.el8_8.
What vulnerabilities are addressed in RHSA-2025:15649?
RHSA-2025:15649 addresses a use-after-free vulnerability in ext4_xattr_set_entry() and other security fixes.
Which products are affected by RHSA-2025:15649?
RHSA-2025:15649 affects several Red Hat Enterprise Linux packages, including kernel and bpftool.
Is a reboot required after applying the fix for RHSA-2025:15649?
Yes, a reboot is typically required to fully apply the kernel updates after installing the fix for RHSA-2025:15649.