Skip to content

Commit 64738a0

Browse files
authored
Merge pull request #272 from sky1122/advisories-20250909
advisories: add BRSAs for 4.3.0
2 parents ac1295d + 1db2fb2 commit 64738a0

9 files changed

Lines changed: 158 additions & 0 deletions
Lines changed: 17 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,17 @@
1+
[advisory]
2+
id = "BRSA-3dl3bwywt6kc"
3+
title = "kernel CVE-2025-38572"
4+
cve = "CVE-2025-38572"
5+
severity = "high"
6+
description = "In the Linux kernel, the following vulnerability has been resolved: ipv6: reject malicious packets in ipv6_gso_segment()"
7+
8+
[[advisory.products]]
9+
package-name = "kernel-6.1"
10+
patched-version = "6.1.148"
11+
patched-epoch = "0"
12+
13+
[updateinfo]
14+
author = "jweiw"
15+
issue-date = 2025-09-09T17:25:07Z
16+
arches = ["aarch64", "x86_64"]
17+
version = "4.3.0"
Lines changed: 17 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,17 @@
1+
[advisory]
2+
id = "BRSA-4y0xu3odewhs"
3+
title = "kernel CVE-2025-38587"
4+
cve = "CVE-2025-38587"
5+
severity = "high"
6+
description = "In the Linux kernel, the following vulnerability has been resolved: ipv6: fix possible infinite loop in fib6_info_uses_dev()"
7+
8+
[[advisory.products]]
9+
package-name = "kernel-6.1"
10+
patched-version = "6.1.148"
11+
patched-epoch = "0"
12+
13+
[updateinfo]
14+
author = "jweiw"
15+
issue-date = 2025-09-09T17:25:07Z
16+
arches = ["aarch64", "x86_64"]
17+
version = "4.3.0"
Lines changed: 17 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,17 @@
1+
[advisory]
2+
id = "BRSA-5xbzlsmyrsb4"
3+
title = "kernel CVE-2025-38204"
4+
cve = "CVE-2025-38204"
5+
severity = "high"
6+
description = "In the Linux kernel, the following vulnerability has been resolved: jfs: fix array-index-out-of-bounds read in add_missing_indices"
7+
8+
[[advisory.products]]
9+
package-name = "kernel-6.12"
10+
patched-version = "6.12.40"
11+
patched-epoch = "0"
12+
13+
[updateinfo]
14+
author = "jweiw"
15+
issue-date = 2025-09-09T17:25:05Z
16+
arches = ["x86_64", "aarch64"]
17+
version = "4.3.0"
Lines changed: 17 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,17 @@
1+
[advisory]
2+
id = "BRSA-fmiehnv8frno"
3+
title = "kernel CVE-2025-38553"
4+
cve = "CVE-2025-38553"
5+
severity = "high"
6+
description = "In the Linux kernel, the following vulnerability has been resolved: net/sched: Restrict conditions for adding duplicating netems to qdisc tree"
7+
8+
[[advisory.products]]
9+
package-name = "kernel-6.1"
10+
patched-version = "6.1.148"
11+
patched-epoch = "0"
12+
13+
[updateinfo]
14+
author = "jweiw"
15+
issue-date = 2025-09-09T17:25:06Z
16+
arches = ["x86_64", "aarch64"]
17+
version = "4.3.0"
Lines changed: 17 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,17 @@
1+
[advisory]
2+
id = "BRSA-kalszckqkmvs"
3+
title = "kernel CVE-2025-38162"
4+
cve = "CVE-2025-38162"
5+
severity = "high"
6+
description = "In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_set_pipapo: prevent overflow in lookup table allocation"
7+
8+
[[advisory.products]]
9+
package-name = "kernel-6.1"
10+
patched-version = "6.1.148"
11+
patched-epoch = "0"
12+
13+
[updateinfo]
14+
author = "jweiw"
15+
issue-date = 2025-09-09T17:25:04Z
16+
arches = ["aarch64", "x86_64"]
17+
version = "4.3.0"
Lines changed: 17 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,17 @@
1+
[advisory]
2+
id = "BRSA-mnyaazpgtcnk"
3+
title = "kernel CVE-2025-38500"
4+
cve = "CVE-2025-38500"
5+
severity = "moderate"
6+
description = "In the Linux kernel, the following vulnerability has been resolved: xfrm: interface: fix use-after-free after changing collect_md xfrm interface"
7+
8+
[[advisory.products]]
9+
package-name = "kernel-6.1"
10+
patched-version = "6.1.148"
11+
patched-epoch = "0"
12+
13+
[updateinfo]
14+
author = "jweiw"
15+
issue-date = 2025-09-09T17:25:06Z
16+
arches = ["x86_64", "aarch64"]
17+
version = "4.3.0"
Lines changed: 17 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,17 @@
1+
[advisory]
2+
id = "BRSA-pwgsnenz191s"
3+
title = "kernel CVE-2025-37954"
4+
cve = "CVE-2025-37954"
5+
severity = "high"
6+
description = "In the Linux kernel, the following vulnerability has been resolved: smb: client: Avoid race in open_cached_dir with lease breaks"
7+
8+
[[advisory.products]]
9+
package-name = "kernel-6.1"
10+
patched-version = "6.1.148"
11+
patched-epoch = "0"
12+
13+
[updateinfo]
14+
author = "jweiw"
15+
issue-date = 2025-09-09T17:25:04Z
16+
arches = ["aarch64", "x86_64"]
17+
version = "4.3.0"
Lines changed: 22 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,22 @@
1+
[advisory]
2+
id = "BRSA-w4wfwisqfdsj"
3+
title = "kernel CVE-2025-38206"
4+
cve = "CVE-2025-38206"
5+
severity = "high"
6+
description = "In the Linux kernel, the following vulnerability has been resolved: exfat: fix double free in delayed_free"
7+
8+
[[advisory.products]]
9+
package-name = "kernel-6.1"
10+
patched-version = "6.1.148"
11+
patched-epoch = "0"
12+
13+
[[advisory.products]]
14+
package-name = "kernel-6.12"
15+
patched-version = "6.12.40"
16+
patched-epoch = "0"
17+
18+
[updateinfo]
19+
author = "jweiw"
20+
issue-date = 2025-09-09T17:25:05Z
21+
arches = ["aarch64", "x86_64"]
22+
version = "4.3.0"
Lines changed: 17 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,17 @@
1+
[advisory]
2+
id = "BRSA-wqcjawuyacwq"
3+
title = "kernel CVE-2025-38588"
4+
cve = "CVE-2025-38588"
5+
severity = "high"
6+
description = "In the Linux kernel, the following vulnerability has been resolved: ipv6: prevent infinite loop in rt6_nlmsg_size()"
7+
8+
[[advisory.products]]
9+
package-name = "kernel-6.1"
10+
patched-version = "6.1.148"
11+
patched-epoch = "0"
12+
13+
[updateinfo]
14+
author = "jweiw"
15+
issue-date = 2025-09-09T17:25:08Z
16+
arches = ["x86_64", "aarch64"]
17+
version = "4.3.0"

0 commit comments

Comments
 (0)