Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2025:21397 - Security Advisory
Issued:
2025-11-17
Updated:
2025-11-17

RHSA-2025:21397 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Moderate: kernel-rt security update

Type/Severity

Security Advisory: Moderate

Red Hat Lightspeed patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for kernel-rt is now available for Red Hat Enterprise Linux 8.

Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

The kernel-rt packages provide the Real Time Linux Kernel, which enables fine-tuning for systems with extremely high determinism requirements.

Security Fix(es):

  • kernel: vsock/virtio: Validate length in packet header before skb_put() (CVE-2025-39718)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

The system must be rebooted for this update to take effect.

Affected Products

  • Red Hat Enterprise Linux for Real Time 8 x86_64
  • Red Hat Enterprise Linux for Real Time for NFV 8 x86_64

Fixes

  • BZ - 2393507 - CVE-2025-39718 kernel: vsock/virtio: Validate length in packet header before skb_put()

CVEs

  • CVE-2025-39718

References

  • https://access.redhat.com/security/updates/classification/#moderate
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux for Real Time 8

SRPM
kernel-rt-4.18.0-553.84.1.rt7.425.el8_10.src.rpm SHA-256: a8bbece129c253568dcbc772e0f3494289002ada945bf3656acd4318408aa206
x86_64
kernel-rt-4.18.0-553.84.1.rt7.425.el8_10.x86_64.rpm SHA-256: 600892691d4b342509b29c22bb231d789440af34c1d813e8eca8a974248035ea
kernel-rt-core-4.18.0-553.84.1.rt7.425.el8_10.x86_64.rpm SHA-256: ccfa4a72dad66383376d49fb6141f1326274fcbb7991cf2bc7649db353e22ec7
kernel-rt-debug-4.18.0-553.84.1.rt7.425.el8_10.x86_64.rpm SHA-256: 5a23e930252e1d1d3d9ed4be34adc2cc9bf4e9451ebb3d18495acde78239e36a
kernel-rt-debug-core-4.18.0-553.84.1.rt7.425.el8_10.x86_64.rpm SHA-256: d751d3a65af09b7c8ab9718249782b287893527cef816c764296552326ead39d
kernel-rt-debug-debuginfo-4.18.0-553.84.1.rt7.425.el8_10.x86_64.rpm SHA-256: ad51b1a44f3f57648f77046dace630448dfc1dc0d2ef6d048c0c4e433ee0b0cf
kernel-rt-debug-devel-4.18.0-553.84.1.rt7.425.el8_10.x86_64.rpm SHA-256: 59ba02438b73f0f6663d688f485fdc8868ee444987dfe18cb9c6ec34731df9dc
kernel-rt-debug-modules-4.18.0-553.84.1.rt7.425.el8_10.x86_64.rpm SHA-256: 0200e33d3717d94c8b3817fc54dd94c5ece0f1dfcead39cf9a91fe90e1cce66d
kernel-rt-debug-modules-extra-4.18.0-553.84.1.rt7.425.el8_10.x86_64.rpm SHA-256: 839e1807920d758a0d478e1323f7cd9e5c8544a896d36ef72138ba7797aa3ed2
kernel-rt-debuginfo-4.18.0-553.84.1.rt7.425.el8_10.x86_64.rpm SHA-256: 2211153adbd797bca9de9603d9d2c3793080ac9b5aa420a44aea08a7f63036a6
kernel-rt-debuginfo-common-x86_64-4.18.0-553.84.1.rt7.425.el8_10.x86_64.rpm SHA-256: e5ecd657a435cb9e7b22f41535fb85e2bcf0172b0570c64e609a3c93a65abc9e
kernel-rt-devel-4.18.0-553.84.1.rt7.425.el8_10.x86_64.rpm SHA-256: 215defa714b0230002c55b188382eb208edf5d590919bb06d5934e529c23f5f3
kernel-rt-modules-4.18.0-553.84.1.rt7.425.el8_10.x86_64.rpm SHA-256: 048ef1a2a72ff63b7fb46740c86f7f7222f1c3b5d82aa30b6e22f90d4401df53
kernel-rt-modules-extra-4.18.0-553.84.1.rt7.425.el8_10.x86_64.rpm SHA-256: 3a7776c906176b5319a53bb0e9f13f573032ad3e829a83ec93d41a1bced7c19f

Red Hat Enterprise Linux for Real Time for NFV 8

SRPM
kernel-rt-4.18.0-553.84.1.rt7.425.el8_10.src.rpm SHA-256: a8bbece129c253568dcbc772e0f3494289002ada945bf3656acd4318408aa206
x86_64
kernel-rt-4.18.0-553.84.1.rt7.425.el8_10.x86_64.rpm SHA-256: 600892691d4b342509b29c22bb231d789440af34c1d813e8eca8a974248035ea
kernel-rt-core-4.18.0-553.84.1.rt7.425.el8_10.x86_64.rpm SHA-256: ccfa4a72dad66383376d49fb6141f1326274fcbb7991cf2bc7649db353e22ec7
kernel-rt-debug-4.18.0-553.84.1.rt7.425.el8_10.x86_64.rpm SHA-256: 5a23e930252e1d1d3d9ed4be34adc2cc9bf4e9451ebb3d18495acde78239e36a
kernel-rt-debug-core-4.18.0-553.84.1.rt7.425.el8_10.x86_64.rpm SHA-256: d751d3a65af09b7c8ab9718249782b287893527cef816c764296552326ead39d
kernel-rt-debug-debuginfo-4.18.0-553.84.1.rt7.425.el8_10.x86_64.rpm SHA-256: ad51b1a44f3f57648f77046dace630448dfc1dc0d2ef6d048c0c4e433ee0b0cf
kernel-rt-debug-devel-4.18.0-553.84.1.rt7.425.el8_10.x86_64.rpm SHA-256: 59ba02438b73f0f6663d688f485fdc8868ee444987dfe18cb9c6ec34731df9dc
kernel-rt-debug-kvm-4.18.0-553.84.1.rt7.425.el8_10.x86_64.rpm SHA-256: 7c4e555287ca52a212281490e6ade8895f736931646366bb7f22020798c861c3
kernel-rt-debug-modules-4.18.0-553.84.1.rt7.425.el8_10.x86_64.rpm SHA-256: 0200e33d3717d94c8b3817fc54dd94c5ece0f1dfcead39cf9a91fe90e1cce66d
kernel-rt-debug-modules-extra-4.18.0-553.84.1.rt7.425.el8_10.x86_64.rpm SHA-256: 839e1807920d758a0d478e1323f7cd9e5c8544a896d36ef72138ba7797aa3ed2
kernel-rt-debuginfo-4.18.0-553.84.1.rt7.425.el8_10.x86_64.rpm SHA-256: 2211153adbd797bca9de9603d9d2c3793080ac9b5aa420a44aea08a7f63036a6
kernel-rt-debuginfo-common-x86_64-4.18.0-553.84.1.rt7.425.el8_10.x86_64.rpm SHA-256: e5ecd657a435cb9e7b22f41535fb85e2bcf0172b0570c64e609a3c93a65abc9e
kernel-rt-devel-4.18.0-553.84.1.rt7.425.el8_10.x86_64.rpm SHA-256: 215defa714b0230002c55b188382eb208edf5d590919bb06d5934e529c23f5f3
kernel-rt-kvm-4.18.0-553.84.1.rt7.425.el8_10.x86_64.rpm SHA-256: c9e7880b36e2e5bbb2e3d893547c3836f638b59a803544db3b60f3960d1c8261
kernel-rt-modules-4.18.0-553.84.1.rt7.425.el8_10.x86_64.rpm SHA-256: 048ef1a2a72ff63b7fb46740c86f7f7222f1c3b5d82aa30b6e22f90d4401df53
kernel-rt-modules-extra-4.18.0-553.84.1.rt7.425.el8_10.x86_64.rpm SHA-256: 3a7776c906176b5319a53bb0e9f13f573032ad3e829a83ec93d41a1bced7c19f

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility