CLSA-2025-1739525834

See a problem?
Import Source
https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos8.4els/CLSA-2025-1739525834.json
JSON Data
https://api.test.osv.dev/v1/vulns/CLSA-2025-1739525834
Upstream
Published
2025-02-14T09:37:20Z
Modified
2026-05-27T11:34:02.583587781Z
Summary
kernel: Fix of 24 CVEs
Details
  • media: uvcvideo: Skip parsing frames of type UVCVSUNDEFINED in uvcparseformat {CVE-2024-53104}
  • wifi: ath9k: add range check for connrspepid in htcconnectservice() {CVE-2024-53156}
  • xsk: fix OOB map writes when deleting elements {CVE-2024-56614}
  • hv_sock: Initializing vsk->trans to NULL to prevent a dangling pointer {CVE-2024-53103}
  • net: inet: do not leave a dangling sk pointer in inet_create() {CVE-2024-56601}
  • scsi: sg: Fix slab-use-after-free read in sg_release() {CVE-2024-56631}
  • scsi: sg: Enable runtime power management {CVE-2024-56631}
  • scsi: sg: Avoid race in error handling & drop bogus warn {CVE-2024-56631}
  • scsi: sg: Avoid sg device teardown race {CVE-2024-56631}
  • initramfs: avoid filename buffer overrun {CVE-2024-53142}
  • Bluetooth: RFCOMM: avoid leaving dangling sk pointer in rfcommsockalloc() {CVE-2024-56604}
  • cifs: Fix use-after-free in rdata->readintopages() {CVE-2023-52741}
  • Bluetooth: L2CAP: do not leave dangling sk pointer on error in l2capsockcreate() {CVE-2024-56605}
  • afpacket: avoid erroring out after sockinitdata() in packetcreate() {CVE-2024-56606}
  • net: ieee802154: do not leave a dangling sk pointer in ieee802154_create() {CVE-2024-56602}
  • net: inet6: do not leave a dangling sk pointer in inet6_create() {CVE-2024-56600}
  • NFSv4.0: Fix a use-after-free problem in the asynchronous open() {CVE-2024-53173}
  • net: afcan: do not leave a dangling sk pointer in cancreate() {CVE-2024-56603}
  • drm/amd: Fix UBSAN array-index-out-of-bounds for SMU7 {CVE-2023-52818}
  • rds: tcp: Fix use-after-free of net in reqsktimerhandler(). {CVE-2024-26865}
  • tcp: Save unnecessary inettwskpurge() calls. {CVE-2024-26865}
  • ceph: prevent use-after-free in encodecapmsg() {CVE-2024-26689}
  • drm/amd/display: Fix out-of-bounds access in 'dcn21linkencoder_create' {CVE-2024-56608}
  • bpf: Check validity of link->type in bpflinkshow_fdinfo() {CVE-2024-53099}
  • drm/amd/pm: fix a double-free in sidpminit {CVE-2023-52691}
  • netfilter: ipset: add missing range check in bitmapipuadt {CVE-2024-53141}
  • tipc: fix NULL deref in cleanup_bearer() {CVE-2024-56661}
  • tipc: Fix use-after-free of kernel socket in cleanup_bearer(). {CVE-2024-56642}
  • tipc: wait and exit until all work queues are done {CVE-2024-56642}
References

Affected packages

TuxCare:CentOS:8.4
bpftool

Package

Name
bpftool
Purl
pkg:rpm/tuxcare/bpftool?distro=centos-8.4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.0-305.25.1.el8_4.tuxcare.els25

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos8.4els/CLSA-2025-1739525834.json"
kernel

Package

Name
kernel
Purl
pkg:rpm/tuxcare/kernel?distro=centos-8.4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.0-305.25.1.el8_4.tuxcare.els25

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos8.4els/CLSA-2025-1739525834.json"
kernel-core

Package

Name
kernel-core
Purl
pkg:rpm/tuxcare/kernel-core?distro=centos-8.4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.0-305.25.1.el8_4.tuxcare.els25

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos8.4els/CLSA-2025-1739525834.json"
kernel-cross-headers

Package

Name
kernel-cross-headers
Purl
pkg:rpm/tuxcare/kernel-cross-headers?distro=centos-8.4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.0-305.25.1.el8_4.tuxcare.els25

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos8.4els/CLSA-2025-1739525834.json"
kernel-debug

Package

Name
kernel-debug
Purl
pkg:rpm/tuxcare/kernel-debug?distro=centos-8.4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.0-305.25.1.el8_4.tuxcare.els25

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos8.4els/CLSA-2025-1739525834.json"
kernel-debug-core

Package

Name
kernel-debug-core
Purl
pkg:rpm/tuxcare/kernel-debug-core?distro=centos-8.4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.0-305.25.1.el8_4.tuxcare.els25

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos8.4els/CLSA-2025-1739525834.json"
kernel-debug-devel

Package

Name
kernel-debug-devel
Purl
pkg:rpm/tuxcare/kernel-debug-devel?distro=centos-8.4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.0-305.25.1.el8_4.tuxcare.els25

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos8.4els/CLSA-2025-1739525834.json"
kernel-debug-modules

Package

Name
kernel-debug-modules
Purl
pkg:rpm/tuxcare/kernel-debug-modules?distro=centos-8.4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.0-305.25.1.el8_4.tuxcare.els25

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos8.4els/CLSA-2025-1739525834.json"
kernel-debug-modules-extra

Package

Name
kernel-debug-modules-extra
Purl
pkg:rpm/tuxcare/kernel-debug-modules-extra?distro=centos-8.4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.0-305.25.1.el8_4.tuxcare.els25

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos8.4els/CLSA-2025-1739525834.json"
kernel-debug-modules-internal

Package

Name
kernel-debug-modules-internal
Purl
pkg:rpm/tuxcare/kernel-debug-modules-internal?distro=centos-8.4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.0-305.25.1.el8_4.tuxcare.els25

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos8.4els/CLSA-2025-1739525834.json"
kernel-devel

Package

Name
kernel-devel
Purl
pkg:rpm/tuxcare/kernel-devel?distro=centos-8.4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.0-305.25.1.el8_4.tuxcare.els25

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos8.4els/CLSA-2025-1739525834.json"
kernel-headers

Package

Name
kernel-headers
Purl
pkg:rpm/tuxcare/kernel-headers?distro=centos-8.4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.0-305.25.1.el8_4.tuxcare.els25

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos8.4els/CLSA-2025-1739525834.json"
kernel-ipaclones-internal

Package

Name
kernel-ipaclones-internal
Purl
pkg:rpm/tuxcare/kernel-ipaclones-internal?distro=centos-8.4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.0-305.25.1.el8_4.tuxcare.els25

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos8.4els/CLSA-2025-1739525834.json"
kernel-modules

Package

Name
kernel-modules
Purl
pkg:rpm/tuxcare/kernel-modules?distro=centos-8.4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.0-305.25.1.el8_4.tuxcare.els25

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos8.4els/CLSA-2025-1739525834.json"
kernel-modules-extra

Package

Name
kernel-modules-extra
Purl
pkg:rpm/tuxcare/kernel-modules-extra?distro=centos-8.4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.0-305.25.1.el8_4.tuxcare.els25

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos8.4els/CLSA-2025-1739525834.json"
kernel-modules-internal

Package

Name
kernel-modules-internal
Purl
pkg:rpm/tuxcare/kernel-modules-internal?distro=centos-8.4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.0-305.25.1.el8_4.tuxcare.els25

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos8.4els/CLSA-2025-1739525834.json"
kernel-selftests-internal

Package

Name
kernel-selftests-internal
Purl
pkg:rpm/tuxcare/kernel-selftests-internal?distro=centos-8.4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.0-305.25.1.el8_4.tuxcare.els25

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos8.4els/CLSA-2025-1739525834.json"
kernel-tools

Package

Name
kernel-tools
Purl
pkg:rpm/tuxcare/kernel-tools?distro=centos-8.4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.0-305.25.1.el8_4.tuxcare.els25

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos8.4els/CLSA-2025-1739525834.json"
kernel-tools-libs

Package

Name
kernel-tools-libs
Purl
pkg:rpm/tuxcare/kernel-tools-libs?distro=centos-8.4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.0-305.25.1.el8_4.tuxcare.els25

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos8.4els/CLSA-2025-1739525834.json"
kernel-tools-libs-devel

Package

Name
kernel-tools-libs-devel
Purl
pkg:rpm/tuxcare/kernel-tools-libs-devel?distro=centos-8.4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.0-305.25.1.el8_4.tuxcare.els25

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos8.4els/CLSA-2025-1739525834.json"
perf

Package

Name
perf
Purl
pkg:rpm/tuxcare/perf?distro=centos-8.4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.0-305.25.1.el8_4.tuxcare.els25

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos8.4els/CLSA-2025-1739525834.json"
python3-perf

Package

Name
python3-perf
Purl
pkg:rpm/tuxcare/python3-perf?distro=centos-8.4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.0-305.25.1.el8_4.tuxcare.els25

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos8.4els/CLSA-2025-1739525834.json"