Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Security Measurement
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2025:2510 - Security Advisory
Issued:
2025-03-10
Updated:
2025-03-10

RHSA-2025:2510 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Important: kernel-rt security update

Type/Severity

Security Advisory: Important

Red Hat Lightspeed patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for kernel-rt is now available for Red Hat Enterprise Linux 7 Extended Lifecycle Support.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

The kernel-rt packages provide the Real Time Linux Kernel, which enables fine-tuning for systems with extremely high determinism requirements.

Security Fix(es):

  • kernel: HID: core: zero-initialize the report buffer (CVE-2024-50302)
  • kernel: can: bcm: Fix UAF in bcm_proc_show() (CVE-2023-52922)
  • kernel: ALSA: usb-audio: Fix potential out-of-bound accesses for Extigy and Mbox devices (CVE-2024-53197)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

The system must be rebooted for this update to take effect.

Affected Products

  • Red Hat Enterprise Linux for Real Time for x86_64 - Extended Life Cycle Support 7 x86_64

Fixes

  • BZ - 2327169 - CVE-2024-50302 kernel: HID: core: zero-initialize the report buffer
  • BZ - 2329370 - CVE-2023-52922 kernel: can: bcm: Fix UAF in bcm_proc_show()
  • BZ - 2334412 - CVE-2024-53197 kernel: ALSA: usb-audio: Fix potential out-of-bound accesses for Extigy and Mbox devices

CVEs

  • CVE-2023-52922
  • CVE-2024-50302
  • CVE-2024-53197

References

  • https://access.redhat.com/security/updates/classification/#important
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux for Real Time for x86_64 - Extended Life Cycle Support 7

SRPM
kernel-rt-3.10.0-1160.133.1.rt56.1285.el7.src.rpm SHA-256: caf5ca41fd16297ad65513870c7dfd2b8e18e28abb29988a4dce65eb5f5ce25c
x86_64
kernel-rt-3.10.0-1160.133.1.rt56.1285.el7.x86_64.rpm SHA-256: 9d0aa4491e10c555f15879632900235a3922ac6f5f4978e572b8b3adf1d1165b
kernel-rt-debug-3.10.0-1160.133.1.rt56.1285.el7.x86_64.rpm SHA-256: 81ff90831fa75f56eaeb8de1c0c3b5dc20da6529203e051487b2dd02abc9b0f8
kernel-rt-debug-debuginfo-3.10.0-1160.133.1.rt56.1285.el7.x86_64.rpm SHA-256: 0801d389e9816d7622ce4171f87bbb3868003aef8d7b036b5451fa96c5409c2b
kernel-rt-debug-devel-3.10.0-1160.133.1.rt56.1285.el7.x86_64.rpm SHA-256: 1084b1006108bfb90f149214b5192f6eaac161accf191cf81039af08f5d65cdf
kernel-rt-debuginfo-3.10.0-1160.133.1.rt56.1285.el7.x86_64.rpm SHA-256: eab747b338634ff771248202811d631117f515817bcff8b7a718cf0094b1b90c
kernel-rt-debuginfo-common-x86_64-3.10.0-1160.133.1.rt56.1285.el7.x86_64.rpm SHA-256: aba9a765179cf7048172c05dc4002e297f28ceb8817148f3402f4890eda365fb
kernel-rt-devel-3.10.0-1160.133.1.rt56.1285.el7.x86_64.rpm SHA-256: feeb10cc70eba000cdcf58480768725ee43bba3934316ef0699fc7a20ab44ba0
kernel-rt-doc-3.10.0-1160.133.1.rt56.1285.el7.noarch.rpm SHA-256: 956a00a92c0f81ad0e9dea508f31a89e2802a50f416fc57d0a241229e0fe7b2e
kernel-rt-trace-3.10.0-1160.133.1.rt56.1285.el7.x86_64.rpm SHA-256: 64afb9e370ff9a09e159cfac8438f8d6588f86f867e4b7ccab3f7bf543610d85
kernel-rt-trace-debuginfo-3.10.0-1160.133.1.rt56.1285.el7.x86_64.rpm SHA-256: 008698f5031866ba37657d4516e6606c5c5498fcc020cb24cf705f1fcf51fb89
kernel-rt-trace-devel-3.10.0-1160.133.1.rt56.1285.el7.x86_64.rpm SHA-256: e5bd5959067fedc57eb00dc0afbfcdf03220bc967c325ee1bfea9c5c59ffbd03

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility