CLSA-2025-1747688831

See a problem?
Import Source
https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos8.5els/CLSA-2025-1747688831.json
JSON Data
https://api.osv.dev/v1/vulns/CLSA-2025-1747688831
Upstream
  • CVE-2022-48936
Published
2025-05-19T21:07:15Z
Modified
2026-05-29T01:37:27.994761529Z
Summary
kernel: Fix of 20 CVEs
Details
  • drm/dpmst: Ensure mstprimary pointer is valid in drmdpmsthandleup_req() {CVE-2024-57798}
  • block: Fix handling of offline queues in blkmqallocrequesthctx() {CVE-2022-49720}
  • drm: nv04: Fix out of bounds access {CVE-2024-27008}
  • parport: Proper fix for array out-of-bounds access {CVE-2024-50074}
  • Bluetooth: L2CAP: Fix slab-use-after-free Read in l2capsendcmd {CVE-2025-21969}
  • media: uvcvideo: Fix double free in error path {CVE-2024-57980}
  • vrf: use RCU protection in l3mdevl3out() {CVE-2025-21791}
  • geneve: Fix use-after-free in genevefinddev(). {CVE-2025-21858}
  • dm-crypt: don't modify the data when using authenticated encryption {CVE-2024-26763}
  • pfifotailenqueue: Drop new packet when sch->limit == 0 {CVE-2025-21702}
  • iscsiibft: Fix UBSAN shift-out-of-bounds warning in ibftattrshownic() {CVE-2025-21993}
  • vlan: enforce underlying device type {CVE-2025-21920}
  • HID: intel-ish-hid: Fix use-after-free issue in ishtphidremove() {CVE-2025-21928}
  • ALSA: usb-audio: Fix potential out-of-bound accesses for Extigy and Mbox devices {CVE-2024-53197}
  • can: bcm: Fix UAF in bcmprocshow() {CVE-2023-52922}
  • gso: do not skip outer ip header in case of ipip and net_failover {CVE-2022-48936}
  • cifs: fix potential double free during failed mount {CVE-2022-49541}
  • bpf: Fix out of bounds access for ringbuf helpers {CVE-2021-4204}
  • bpf: Generally fix helper register offset check {CVE-2021-4204}
  • bpf: Generalize checkctxreg for reuse with other types {CVE-2021-4204}
  • ALSA: usb-audio: Fix an out-of-bounds bug in __sndusbparseaudiointerface() {CVE-2022-48701}
  • ALSA: emu10k1: Fix out of bounds access in sndemu10k1pcmchannelalloc() {CVE-2022-48702}
References

Affected packages