Moderate: kernel security update
The kernel packages contain the Linux kernel, the core of any Linux operating system. Security Fix(es): * kernel: cifs: fix double free race when mount fails in cifs_get_root() (CVE-2022-48919) * kernel: security/keys: fix slab-out-of-bounds in key_task_permission (CVE-2024-50301) * kernel: idpf: fix idpf_vc_core_init error path (CVE-2024-53064) * kernel: ndisc: use RCU protection in ndisc_alloc_skb() (CVE-2025-21764) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
02 / AFFECTED SOFTWARE
Affected packages
03 / CONNECTIONS
Connected vulnerabilities
04 / EVIDENCE
Source records
The kernel packages contain the Linux kernel, the core of any Linux operating system. Security Fix(es): * kernel: cifs: fix double free race when mount fails in cifs_get_root() (CVE-2022-48919) * kernel: security/keys: fix slab-out-of-bounds in key_task_permission (CVE-2024-50301) * kernel: idpf: fix idpf_vc_core_init error path (CVE-2024-53064) * kernel: ndisc: use RCU protection in ndisc_alloc_skb() (CVE-2025-21764) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
05 / REFERENCES
Further evidence
- https://access.redhat.com/errata/RHSA-2025:9580
- https://access.redhat.com/security/cve/CVE-2022-48919
- https://access.redhat.com/security/cve/CVE-2024-50301
- https://access.redhat.com/security/cve/CVE-2024-53064
- https://access.redhat.com/security/cve/CVE-2025-21764
- https://bugzilla.redhat.com/2327188
- https://bugzilla.redhat.com/2327347
- https://bugzilla.redhat.com/2348575
- https://errata.almalinux.org/8/ALSA-2025-9580.html