Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2025:11572 - Security Advisory
Issued:
2025-07-23
Updated:
2025-07-23

RHSA-2025:11572 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Important: kernel-rt security update

Type/Severity

Security Advisory: Important

Red Hat Lightspeed patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for kernel-rt is now available for Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

The kernel-rt packages provide the Real Time Linux Kernel, which enables fine-tuning for systems with extremely high determinism requirements.

Security Fix(es):

  • kernel: net: atm: fix use after free in lec_send() (CVE-2025-22004)
  • kernel: ext4: fix out-of-bound read in ext4_xattr_inode_dec_ref_all() (CVE-2025-22121)
  • kernel: ibmvnic: Use kernel helpers for hex dumps (CVE-2025-22104)
  • kernel: ext4: fix off-by-one error in do_split (CVE-2025-23150)
  • kernel: udmabuf: fix a buf size overflow issue during udmabuf creation (CVE-2025-37803)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

The system must be rebooted for this update to take effect.

Affected Products

  • Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.2 x86_64

Fixes

  • BZ - 2357142 - CVE-2025-22004 kernel: net: atm: fix use after free in lec_send()
  • BZ - 2360199 - CVE-2025-22121 kernel: ext4: fix out-of-bound read in ext4_xattr_inode_dec_ref_all()
  • BZ - 2360265 - CVE-2025-22104 kernel: ibmvnic: Use kernel helpers for hex dumps
  • BZ - 2363268 - CVE-2025-23150 kernel: ext4: fix off-by-one error in do_split
  • BZ - 2365013 - CVE-2025-37803 kernel: udmabuf: fix a buf size overflow issue during udmabuf creation

CVEs

  • CVE-2025-22004
  • CVE-2025-22104
  • CVE-2025-22121
  • CVE-2025-23150
  • CVE-2025-37803

References

  • https://access.redhat.com/security/updates/classification/#important
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.2

SRPM
kernel-rt-5.14.0-284.126.1.rt14.411.el9_2.src.rpm SHA-256: f6ef2d7bad71817c1a81095dd64a3c3b4e33f6911b568f4082365e7d6afacd30
x86_64
kernel-rt-5.14.0-284.126.1.rt14.411.el9_2.x86_64.rpm SHA-256: 2d35d5538a97a8828423ed08d8263026d791678cf0091dd3d83de85ba669dca8
kernel-rt-5.14.0-284.126.1.rt14.411.el9_2.x86_64.rpm SHA-256: 2d35d5538a97a8828423ed08d8263026d791678cf0091dd3d83de85ba669dca8
kernel-rt-core-5.14.0-284.126.1.rt14.411.el9_2.x86_64.rpm SHA-256: f61afe0d9942dc021b5cb33e2c52008841d073aa61045ac5ae88e013a682e845
kernel-rt-core-5.14.0-284.126.1.rt14.411.el9_2.x86_64.rpm SHA-256: f61afe0d9942dc021b5cb33e2c52008841d073aa61045ac5ae88e013a682e845
kernel-rt-debug-5.14.0-284.126.1.rt14.411.el9_2.x86_64.rpm SHA-256: 926d71d624baed859f69b14381f71c3858e08214d26adec905cf8d751697c72a
kernel-rt-debug-5.14.0-284.126.1.rt14.411.el9_2.x86_64.rpm SHA-256: 926d71d624baed859f69b14381f71c3858e08214d26adec905cf8d751697c72a
kernel-rt-debug-core-5.14.0-284.126.1.rt14.411.el9_2.x86_64.rpm SHA-256: 2f3fd520ad0624d1bb478d54b1dff52f6c6e583064954bf5d5534b2049b60beb
kernel-rt-debug-core-5.14.0-284.126.1.rt14.411.el9_2.x86_64.rpm SHA-256: 2f3fd520ad0624d1bb478d54b1dff52f6c6e583064954bf5d5534b2049b60beb
kernel-rt-debug-debuginfo-5.14.0-284.126.1.rt14.411.el9_2.x86_64.rpm SHA-256: 8f0efaeafa2288ff4ff04457d8ea73de72081ce65333420e7568085670fefbdb
kernel-rt-debug-debuginfo-5.14.0-284.126.1.rt14.411.el9_2.x86_64.rpm SHA-256: 8f0efaeafa2288ff4ff04457d8ea73de72081ce65333420e7568085670fefbdb
kernel-rt-debug-devel-5.14.0-284.126.1.rt14.411.el9_2.x86_64.rpm SHA-256: aed73a0c2bcd66c6309e23a777d8a1c20836dadce35fdbfa2dbc85e376e0e38b
kernel-rt-debug-devel-5.14.0-284.126.1.rt14.411.el9_2.x86_64.rpm SHA-256: aed73a0c2bcd66c6309e23a777d8a1c20836dadce35fdbfa2dbc85e376e0e38b
kernel-rt-debug-kvm-5.14.0-284.126.1.rt14.411.el9_2.x86_64.rpm SHA-256: ef98ac34cd750afa47943f5791ce31fa78f7ddc55091480544b769c6c3f7b639
kernel-rt-debug-modules-5.14.0-284.126.1.rt14.411.el9_2.x86_64.rpm SHA-256: 66fee323f86aad2d4627300919a86a01d4fc7734e94e456e495a84740b8d79de
kernel-rt-debug-modules-5.14.0-284.126.1.rt14.411.el9_2.x86_64.rpm SHA-256: 66fee323f86aad2d4627300919a86a01d4fc7734e94e456e495a84740b8d79de
kernel-rt-debug-modules-core-5.14.0-284.126.1.rt14.411.el9_2.x86_64.rpm SHA-256: 13ce7ca42b9dab207e79e7d8dfd8ad5c177e97609766351f260eb2a7fe991695
kernel-rt-debug-modules-core-5.14.0-284.126.1.rt14.411.el9_2.x86_64.rpm SHA-256: 13ce7ca42b9dab207e79e7d8dfd8ad5c177e97609766351f260eb2a7fe991695
kernel-rt-debug-modules-extra-5.14.0-284.126.1.rt14.411.el9_2.x86_64.rpm SHA-256: bacbdcb584b8f98a5b5ec8981896a6456088d6d5aace9118bd437f9ef86f12ea
kernel-rt-debug-modules-extra-5.14.0-284.126.1.rt14.411.el9_2.x86_64.rpm SHA-256: bacbdcb584b8f98a5b5ec8981896a6456088d6d5aace9118bd437f9ef86f12ea
kernel-rt-debuginfo-5.14.0-284.126.1.rt14.411.el9_2.x86_64.rpm SHA-256: 4a781c84501a726211e1a0afb3ae7f0101aa534323d22b98a39e693fc2277381
kernel-rt-debuginfo-5.14.0-284.126.1.rt14.411.el9_2.x86_64.rpm SHA-256: 4a781c84501a726211e1a0afb3ae7f0101aa534323d22b98a39e693fc2277381
kernel-rt-debuginfo-common-x86_64-5.14.0-284.126.1.rt14.411.el9_2.x86_64.rpm SHA-256: 4a34f3831fec6ca2bf2b7cc23a8f02456d53dd536d92c8b565b46fb757c977b9
kernel-rt-debuginfo-common-x86_64-5.14.0-284.126.1.rt14.411.el9_2.x86_64.rpm SHA-256: 4a34f3831fec6ca2bf2b7cc23a8f02456d53dd536d92c8b565b46fb757c977b9
kernel-rt-devel-5.14.0-284.126.1.rt14.411.el9_2.x86_64.rpm SHA-256: c5930144bc71b8494a0553bbac82fbceec7ea58ebe0bb7f97541cde351538018
kernel-rt-devel-5.14.0-284.126.1.rt14.411.el9_2.x86_64.rpm SHA-256: c5930144bc71b8494a0553bbac82fbceec7ea58ebe0bb7f97541cde351538018
kernel-rt-kvm-5.14.0-284.126.1.rt14.411.el9_2.x86_64.rpm SHA-256: 0f296e184123937c6cdb2a57b2c5e76fd4028645337fa5397facf9432eb08fec
kernel-rt-modules-5.14.0-284.126.1.rt14.411.el9_2.x86_64.rpm SHA-256: 56ff665124ab55bce1a085ef11008b32b3b5bad6bea428030e74de415816a70c
kernel-rt-modules-5.14.0-284.126.1.rt14.411.el9_2.x86_64.rpm SHA-256: 56ff665124ab55bce1a085ef11008b32b3b5bad6bea428030e74de415816a70c
kernel-rt-modules-core-5.14.0-284.126.1.rt14.411.el9_2.x86_64.rpm SHA-256: 89404a75a9454c736b1d12c9ab3c5ced3fa2f87ca39254b74ee173e7c066bab5
kernel-rt-modules-core-5.14.0-284.126.1.rt14.411.el9_2.x86_64.rpm SHA-256: 89404a75a9454c736b1d12c9ab3c5ced3fa2f87ca39254b74ee173e7c066bab5
kernel-rt-modules-extra-5.14.0-284.126.1.rt14.411.el9_2.x86_64.rpm SHA-256: 01ecad002d2d51bbb0155abdcbd2154bb0903ba0a875f00f7ed87ea7b272a12d
kernel-rt-modules-extra-5.14.0-284.126.1.rt14.411.el9_2.x86_64.rpm SHA-256: 01ecad002d2d51bbb0155abdcbd2154bb0903ba0a875f00f7ed87ea7b272a12d

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility