Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2025:18298 - Security Advisory
Issued:
2025-10-20
Updated:
2025-10-20

RHSA-2025:18298 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Moderate: kernel-rt security update

Type/Severity

Security Advisory: Moderate

Red Hat Lightspeed patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for kernel-rt is now available for Red Hat Enterprise Linux 8.

Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

The kernel-rt packages provide the Real Time Linux Kernel, which enables fine-tuning for systems with extremely high determinism requirements.

Security Fix(es):

  • kernel: ALSA: usb-audio: Validate UAC3 cluster segment descriptors (CVE-2025-39757)
  • kernel: ALSA: hda/ca0132: Fix buffer overflow in add_tuning_control (CVE-2025-39751)
  • kernel: crypto: seqiv - Handle EBUSY correctly (CVE-2023-53373)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

The system must be rebooted for this update to take effect.

Affected Products

  • Red Hat Enterprise Linux for Real Time 8 x86_64
  • Red Hat Enterprise Linux for Real Time for NFV 8 x86_64

Fixes

  • BZ - 2394615 - CVE-2025-39757 kernel: ALSA: usb-audio: Validate UAC3 cluster segment descriptors
  • BZ - 2394624 - CVE-2025-39751 kernel: ALSA: hda/ca0132: Fix buffer overflow in add_tuning_control
  • BZ - 2396379 - CVE-2023-53373 kernel: crypto: seqiv - Handle EBUSY correctly

CVEs

  • CVE-2023-53373
  • CVE-2025-39751
  • CVE-2025-39757

References

  • https://access.redhat.com/security/updates/classification/#moderate
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux for Real Time 8

SRPM
kernel-rt-4.18.0-553.80.1.rt7.421.el8_10.src.rpm SHA-256: 0442a46ecc10d1f57c6ba6205f6d4d62403dee9d6cd87e23dff18edb3c8777d0
x86_64
kernel-rt-4.18.0-553.80.1.rt7.421.el8_10.x86_64.rpm SHA-256: 58a4760bc8b39bfefe45449f24def3ebb2122a75df75f802f65b73f52815602d
kernel-rt-core-4.18.0-553.80.1.rt7.421.el8_10.x86_64.rpm SHA-256: e5f70565bb30bdd31d2698fa6b9682bb846314c6971116f5a2d37e910e612c5b
kernel-rt-debug-4.18.0-553.80.1.rt7.421.el8_10.x86_64.rpm SHA-256: ff3a6d113ab5d1b467abfffe1337fa89c3abb12e077af3d0eb093a6ad7bedda8
kernel-rt-debug-core-4.18.0-553.80.1.rt7.421.el8_10.x86_64.rpm SHA-256: 5eb69ce47b8f3aabab486be4d6cb7c49290d4aec89fd34c0bed96ec020a307eb
kernel-rt-debug-debuginfo-4.18.0-553.80.1.rt7.421.el8_10.x86_64.rpm SHA-256: 339c0990708d6ceabe31f90ebc6b9d306dabe544538585ecd24382a59e4e9f74
kernel-rt-debug-devel-4.18.0-553.80.1.rt7.421.el8_10.x86_64.rpm SHA-256: e08224951677e4076ee2322081022014954598d35c5f5797ec54098441e6c011
kernel-rt-debug-modules-4.18.0-553.80.1.rt7.421.el8_10.x86_64.rpm SHA-256: 5e2213cd87e2d0eaad3aa6afc283871aa382652f915e5898572a058db7976e4d
kernel-rt-debug-modules-extra-4.18.0-553.80.1.rt7.421.el8_10.x86_64.rpm SHA-256: 3abb3d04f86d49a4184faf1899078b6e084246735ac7bdcbf5f947a05390fc61
kernel-rt-debuginfo-4.18.0-553.80.1.rt7.421.el8_10.x86_64.rpm SHA-256: 4177e587e63ad150d9e9523c3eb8aa050847bedbb305269d7b41281666a78038
kernel-rt-debuginfo-common-x86_64-4.18.0-553.80.1.rt7.421.el8_10.x86_64.rpm SHA-256: 24f41969662bed18ea8f3d4cbda2bcdc0aab2d49549938385674e8b3232c8a3b
kernel-rt-devel-4.18.0-553.80.1.rt7.421.el8_10.x86_64.rpm SHA-256: 2345ec607046dce178e914869ff6ea3dcb815981abb305301226344a9752ded2
kernel-rt-modules-4.18.0-553.80.1.rt7.421.el8_10.x86_64.rpm SHA-256: ba79fb11daddad5b6c53c0bf4f9a4601e326435b8135f290d2fe3169c0424ad0
kernel-rt-modules-extra-4.18.0-553.80.1.rt7.421.el8_10.x86_64.rpm SHA-256: 402851fd38616732f70361ca9fffa4421d629eec9c9f4d749a2f03ca76e8fa76

Red Hat Enterprise Linux for Real Time for NFV 8

SRPM
kernel-rt-4.18.0-553.80.1.rt7.421.el8_10.src.rpm SHA-256: 0442a46ecc10d1f57c6ba6205f6d4d62403dee9d6cd87e23dff18edb3c8777d0
x86_64
kernel-rt-4.18.0-553.80.1.rt7.421.el8_10.x86_64.rpm SHA-256: 58a4760bc8b39bfefe45449f24def3ebb2122a75df75f802f65b73f52815602d
kernel-rt-core-4.18.0-553.80.1.rt7.421.el8_10.x86_64.rpm SHA-256: e5f70565bb30bdd31d2698fa6b9682bb846314c6971116f5a2d37e910e612c5b
kernel-rt-debug-4.18.0-553.80.1.rt7.421.el8_10.x86_64.rpm SHA-256: ff3a6d113ab5d1b467abfffe1337fa89c3abb12e077af3d0eb093a6ad7bedda8
kernel-rt-debug-core-4.18.0-553.80.1.rt7.421.el8_10.x86_64.rpm SHA-256: 5eb69ce47b8f3aabab486be4d6cb7c49290d4aec89fd34c0bed96ec020a307eb
kernel-rt-debug-debuginfo-4.18.0-553.80.1.rt7.421.el8_10.x86_64.rpm SHA-256: 339c0990708d6ceabe31f90ebc6b9d306dabe544538585ecd24382a59e4e9f74
kernel-rt-debug-devel-4.18.0-553.80.1.rt7.421.el8_10.x86_64.rpm SHA-256: e08224951677e4076ee2322081022014954598d35c5f5797ec54098441e6c011
kernel-rt-debug-kvm-4.18.0-553.80.1.rt7.421.el8_10.x86_64.rpm SHA-256: 5c052d5f11cdeb540f8d4b26115e10279228f320e1565519036a33bafd9adbed
kernel-rt-debug-modules-4.18.0-553.80.1.rt7.421.el8_10.x86_64.rpm SHA-256: 5e2213cd87e2d0eaad3aa6afc283871aa382652f915e5898572a058db7976e4d
kernel-rt-debug-modules-extra-4.18.0-553.80.1.rt7.421.el8_10.x86_64.rpm SHA-256: 3abb3d04f86d49a4184faf1899078b6e084246735ac7bdcbf5f947a05390fc61
kernel-rt-debuginfo-4.18.0-553.80.1.rt7.421.el8_10.x86_64.rpm SHA-256: 4177e587e63ad150d9e9523c3eb8aa050847bedbb305269d7b41281666a78038
kernel-rt-debuginfo-common-x86_64-4.18.0-553.80.1.rt7.421.el8_10.x86_64.rpm SHA-256: 24f41969662bed18ea8f3d4cbda2bcdc0aab2d49549938385674e8b3232c8a3b
kernel-rt-devel-4.18.0-553.80.1.rt7.421.el8_10.x86_64.rpm SHA-256: 2345ec607046dce178e914869ff6ea3dcb815981abb305301226344a9752ded2
kernel-rt-kvm-4.18.0-553.80.1.rt7.421.el8_10.x86_64.rpm SHA-256: 7d0469e47f00c17878662c65f76775f8a2f442270ec3da31911b405b5e8b2b99
kernel-rt-modules-4.18.0-553.80.1.rt7.421.el8_10.x86_64.rpm SHA-256: ba79fb11daddad5b6c53c0bf4f9a4601e326435b8135f290d2fe3169c0424ad0
kernel-rt-modules-extra-4.18.0-553.80.1.rt7.421.el8_10.x86_64.rpm SHA-256: 402851fd38616732f70361ca9fffa4421d629eec9c9f4d749a2f03ca76e8fa76

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility