Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
light_mode
dark_mode
CLSA-2025-1766600619
See a problem?
Import Source
https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/rhel7els/CLSA-2025-1766600619.json
JSON Data
https://api.osv.dev/v1/vulns/CLSA-2025-1766600619
Upstream
CVE-2022-21546
CVE-2022-3640
CVE-2022-48900
CVE-2022-49870
CVE-2022-49907
CVE-2022-49917
CVE-2022-49918
CVE-2022-49948
CVE-2022-50084
CVE-2022-50085
CVE-2022-50252
CVE-2022-50258
CVE-2022-50386
CVE-2022-50408
CVE-2023-52854
CVE-2023-53000
CVE-2023-53117
CVE-2023-53305
CVE-2023-53365
CVE-2023-53373
CVE-2025-37839
CVE-2025-37882
CVE-2025-38250
CVE-2025-38584
CVE-2025-38718
CVE-2025-39751
CVE-2025-39965
Published
2025-12-25T10:54:09Z
Modified
2026-06-01T00:33:27.954555279Z
Summary
kernel: Fix of 27 CVEs
Details
xfrm: Duplicate SPI Handling {CVE-2025-39965}
xfrm: state: use atomic
inc
not_zero to increment refcount
padata: Fix pd UAF once and for all {CVE-2025-38584}
padata: Remove broken queue flushing {CVE-2023-52854}
padata: ensure padata
do
serial() runs on the correct CPU
Bluetooth: L2CAP: Fix use-after-free {CVE-2023-53305}
wifi: brcmfmac: fix use-after-free bug in brcmf
netdev
start_xmit() {CVE-2022-50408}
sctp: linearize cloned gso packets in sctp_rcv {CVE-2025-38718}
ip6mr: Fix skb
under
panic in ip6mr
cache
report() {CVE-2023-53365}
Bluetooth: L2CAP: Fix user-after-free {CVE-2022-50386}
Bluetooth: L2CAP: Fix use-after-free caused by l2cap
chan
put {CVE-2022-3640}
ipvs: fix WARNING in ip
vs
app
net
cleanup() {CVE-2022-49917}
ipvs: fix WARNING in _
ip
vs
cleanup
batch() {CVE-2022-49918}
ipvs: use explicitly signed chars
vt: Clear selection before changing the font {CVE-2022-49948}
fs: prevent out-of-bounds array speculation when closing a file descriptor {CVE-2023-53117}
xen/netfront: react properly to failing gnttab
end
foreign
access
ref() {CVE-2022-48900}
netlink: prevent potential spectre v1 gadgets {CVE-2023-53000}
igb: Do not free q_vector unless new one was allocated {CVE-2022-50252}
scsi: target: Fix WRITE_SAME No Data Buffer crash {CVE-2022-21546}
net: mdio: fix undefined behavior in bit shift for _
mdiobus
register {CVE-2022-49907}
dm raid: fix address sanitizer warning in raid_status {CVE-2022-50084}
dm raid: fix address sanitizer warning in raid_resume {CVE-2022-50085}
capabilities: fix undefined behavior in bit shift for CAP
TO
MASK {CVE-2022-49870}
wifi: brcmfmac: Fix potential stack-out-of-bounds in brcmf
c
preinit_dcmds() {CVE-2022-50258}
usb: xhci: Fix isochronous Ring Underrun/Overrun event handling {CVE-2025-37882}
Bluetooth: hci
core: Fix use-after-free in vhci
flush() {CVE-2025-38250}
ALSA: hda/ca0132: Fix buffer overflow in add
tuning
control {CVE-2025-39751}
jbd2: remove wrong sb->s_sequence check {CVE-2025-37839}
net_sched: hfsc: Fix a UAF vulnerability in class handling
crypto: seqiv - Handle EBUSY correctly {CVE-2023-53373}
References
https://errata.tuxcare.com/els_os/rhel7els/CLSA-2025-1766600619.html
Affected packages
TuxCare:RHEL:7
bpftool
Package
Name
bpftool
Purl
pkg:rpm/tuxcare/bpftool?distro=rhel-7
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
3.10.0-1160.139.1.el7.tuxcare.els3
Database specific
source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/rhel7els/CLSA-2025-1766600619.json"
kernel
Package
Name
kernel
Purl
pkg:rpm/tuxcare/kernel?distro=rhel-7
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
3.10.0-1160.139.1.el7.tuxcare.els3
Database specific
source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/rhel7els/CLSA-2025-1766600619.json"
kernel-debug
Package
Name
kernel-debug
Purl
pkg:rpm/tuxcare/kernel-debug?distro=rhel-7
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
3.10.0-1160.139.1.el7.tuxcare.els3
Database specific
source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/rhel7els/CLSA-2025-1766600619.json"
kernel-debug-devel
Package
Name
kernel-debug-devel
Purl
pkg:rpm/tuxcare/kernel-debug-devel?distro=rhel-7
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
3.10.0-1160.139.1.el7.tuxcare.els3
Database specific
source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/rhel7els/CLSA-2025-1766600619.json"
kernel-devel
Package
Name
kernel-devel
Purl
pkg:rpm/tuxcare/kernel-devel?distro=rhel-7
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
3.10.0-1160.139.1.el7.tuxcare.els3
Database specific
source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/rhel7els/CLSA-2025-1766600619.json"
kernel-headers
Package
Name
kernel-headers
Purl
pkg:rpm/tuxcare/kernel-headers?distro=rhel-7
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
3.10.0-1160.139.1.el7.tuxcare.els3
Database specific
source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/rhel7els/CLSA-2025-1766600619.json"
kernel-tools
Package
Name
kernel-tools
Purl
pkg:rpm/tuxcare/kernel-tools?distro=rhel-7
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
3.10.0-1160.139.1.el7.tuxcare.els3
Database specific
source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/rhel7els/CLSA-2025-1766600619.json"
kernel-tools-libs
Package
Name
kernel-tools-libs
Purl
pkg:rpm/tuxcare/kernel-tools-libs?distro=rhel-7
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
3.10.0-1160.139.1.el7.tuxcare.els3
Database specific
source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/rhel7els/CLSA-2025-1766600619.json"
kernel-tools-libs-devel
Package
Name
kernel-tools-libs-devel
Purl
pkg:rpm/tuxcare/kernel-tools-libs-devel?distro=rhel-7
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
3.10.0-1160.139.1.el7.tuxcare.els3
Database specific
source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/rhel7els/CLSA-2025-1766600619.json"
perf
Package
Name
perf
Purl
pkg:rpm/tuxcare/perf?distro=rhel-7
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
3.10.0-1160.139.1.el7.tuxcare.els3
Database specific
source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/rhel7els/CLSA-2025-1766600619.json"
python-perf
Package
Name
python-perf
Purl
pkg:rpm/tuxcare/python-perf?distro=rhel-7
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
3.10.0-1160.139.1.el7.tuxcare.els3
Database specific
source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/rhel7els/CLSA-2025-1766600619.json"
CLSA-2025-1766600619 - OSV