Red Hat Enterprise Linux 9 update for kernel



Risk High
Patch available YES
Number of vulnerabilities 13
CVE-ID CVE-2021-47101
CVE-2024-26614
CVE-2024-26779
CVE-2024-27048
CVE-2024-35900
CVE-2024-35938
CVE-2023-52762
CVE-2023-52784
CVE-2024-36010
CVE-2024-36902
CVE-2024-36939
CVE-2024-50192
CVE-2024-53150
CWE-ID CWE-908
CWE-399
CWE-362
CWE-476
CWE-682
CWE-119
CWE-388
CWE-125
Exploitation vector Network
Public exploit Vulnerability #13 is being exploited in the wild.
Vulnerable software
Red Hat Enterprise Linux for x86_64 - Extended Update Support
Operating systems & Components / Operating system

Red Hat Enterprise Linux Server - AUS
Operating systems & Components / Operating system

Red Hat Enterprise Linux for IBM z Systems - Extended Update Support
Operating systems & Components / Operating system

Red Hat Enterprise Linux for Power, little endian - Extended Update Support
Operating systems & Components / Operating system

Red Hat Enterprise Linux for ARM 64 - Extended Update Support
Operating systems & Components / Operating system

Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions
Operating systems & Components / Operating system package or component

kernel (Red Hat package)
Operating systems & Components / Operating system package or component

Vendor Red Hat Inc.

Security Bulletin

This security bulletin contains information about 13 vulnerabilities.

1) Use of uninitialized resource

EUVDB-ID: #VU90882

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2021-47101

CWE-ID: CWE-908 - Use of Uninitialized Resource

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to use of uninitialized resource within the asix_check_host_enable() function in drivers/net/usb/asix_common.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Install updates from vendor's website.

Vulnerable software versions

Red Hat Enterprise Linux for x86_64 - Extended Update Support: 9.4

Red Hat Enterprise Linux Server - AUS: 9.4

Red Hat Enterprise Linux for IBM z Systems - Extended Update Support: 9.4

Red Hat Enterprise Linux for Power, little endian - Extended Update Support: 9.4

Red Hat Enterprise Linux for ARM 64 - Extended Update Support: 9.4

Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions: 9.4

kernel (Red Hat package): before 5.14.0-427.65.1.el9_4

CPE2.3 External links

https://access.redhat.com/errata/RHSA-2025:3935


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

2) Resource management error

EUVDB-ID: #VU91320

Risk: Medium

CVSSv4.0: 2.7 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:U/U:Green]

CVE-ID: CVE-2024-26614

CWE-ID: CWE-399 - Resource Management Errors

Exploit availability: No

Description

The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.

The vulnerability exists due to improper management of internal resources within the reqsk_queue_alloc() function in net/core/request_sock.c. A remote attacker can send specially crafted ACK packets to the system and perform a denial of service (DoS) attack.

Mitigation

Install updates from vendor's website.

Vulnerable software versions

Red Hat Enterprise Linux for x86_64 - Extended Update Support: 9.4

Red Hat Enterprise Linux Server - AUS: 9.4

Red Hat Enterprise Linux for IBM z Systems - Extended Update Support: 9.4

Red Hat Enterprise Linux for Power, little endian - Extended Update Support: 9.4

Red Hat Enterprise Linux for ARM 64 - Extended Update Support: 9.4

Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions: 9.4

kernel (Red Hat package): before 5.14.0-427.65.1.el9_4

CPE2.3 External links

https://access.redhat.com/errata/RHSA-2025:3935


Q & A

Can this vulnerability be exploited remotely?

Yes. This vulnerability can be exploited by a remote non-authenticated attacker via the Internet.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

3) Race condition

EUVDB-ID: #VU91480

Risk: Low

CVSSv4.0: 5.9 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2024-26779

CWE-ID: CWE-362 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')

Exploit availability: No

Description

The vulnerability allows a local user to escalate privileges on the system.

The vulnerability exists due to a race condition within the ieee80211_check_fast_xmit() function in net/mac80211/tx.c, within the sta_info_insert_finish() function in net/mac80211/sta_info.c. A local user can escalate privileges on the system.

Mitigation

Install updates from vendor's website.

Vulnerable software versions

Red Hat Enterprise Linux for x86_64 - Extended Update Support: 9.4

Red Hat Enterprise Linux Server - AUS: 9.4

Red Hat Enterprise Linux for IBM z Systems - Extended Update Support: 9.4

Red Hat Enterprise Linux for Power, little endian - Extended Update Support: 9.4

Red Hat Enterprise Linux for ARM 64 - Extended Update Support: 9.4

Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions: 9.4

kernel (Red Hat package): before 5.14.0-427.65.1.el9_4

CPE2.3 External links

https://access.redhat.com/errata/RHSA-2025:3935


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

4) NULL pointer dereference

EUVDB-ID: #VU90524

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2024-27048

CWE-ID: CWE-476 - NULL Pointer Dereference

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to NULL pointer dereference within the brcmf_pmksa_v3_op() function in drivers/net/wireless/broadcom/brcm80211/brcmfmac/cfg80211.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Install updates from vendor's website.

Vulnerable software versions

Red Hat Enterprise Linux for x86_64 - Extended Update Support: 9.4

Red Hat Enterprise Linux Server - AUS: 9.4

Red Hat Enterprise Linux for IBM z Systems - Extended Update Support: 9.4

Red Hat Enterprise Linux for Power, little endian - Extended Update Support: 9.4

Red Hat Enterprise Linux for ARM 64 - Extended Update Support: 9.4

Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions: 9.4

kernel (Red Hat package): before 5.14.0-427.65.1.el9_4

CPE2.3 External links

https://access.redhat.com/errata/RHSA-2025:3935


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

5) Incorrect calculation

EUVDB-ID: #VU93613

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2024-35900

CWE-ID: CWE-682 - Incorrect Calculation

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to incorrect calculation within the nf_tables_addchain() function in net/netfilter/nf_tables_api.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Install updates from vendor's website.

Vulnerable software versions

Red Hat Enterprise Linux for x86_64 - Extended Update Support: 9.4

Red Hat Enterprise Linux Server - AUS: 9.4

Red Hat Enterprise Linux for IBM z Systems - Extended Update Support: 9.4

Red Hat Enterprise Linux for Power, little endian - Extended Update Support: 9.4

Red Hat Enterprise Linux for ARM 64 - Extended Update Support: 9.4

Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions: 9.4

kernel (Red Hat package): before 5.14.0-427.65.1.el9_4

CPE2.3 External links

https://access.redhat.com/errata/RHSA-2025:3935


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

6) Buffer overflow

EUVDB-ID: #VU93240

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2024-35938

CWE-ID: CWE-119 - Memory corruption

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to memory corruption within the ARRAY_SIZE() function in drivers/net/wireless/ath/ath11k/mhi.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Install updates from vendor's website.

Vulnerable software versions

Red Hat Enterprise Linux for x86_64 - Extended Update Support: 9.4

Red Hat Enterprise Linux Server - AUS: 9.4

Red Hat Enterprise Linux for IBM z Systems - Extended Update Support: 9.4

Red Hat Enterprise Linux for Power, little endian - Extended Update Support: 9.4

Red Hat Enterprise Linux for ARM 64 - Extended Update Support: 9.4

Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions: 9.4

kernel (Red Hat package): before 5.14.0-427.65.1.el9_4

CPE2.3 External links

https://access.redhat.com/errata/RHSA-2025:3935


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

7) Buffer overflow

EUVDB-ID: #VU93622

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-52762

CWE-ID: CWE-119 - Memory corruption

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to memory corruption within the virtblk_probe() function in drivers/block/virtio_blk.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Install updates from vendor's website.

Vulnerable software versions

Red Hat Enterprise Linux for x86_64 - Extended Update Support: 9.4

Red Hat Enterprise Linux Server - AUS: 9.4

Red Hat Enterprise Linux for IBM z Systems - Extended Update Support: 9.4

Red Hat Enterprise Linux for Power, little endian - Extended Update Support: 9.4

Red Hat Enterprise Linux for ARM 64 - Extended Update Support: 9.4

Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions: 9.4

kernel (Red Hat package): before 5.14.0-427.65.1.el9_4

CPE2.3 External links

https://access.redhat.com/errata/RHSA-2025:3935


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

8) Improper error handling

EUVDB-ID: #VU93650

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2023-52784

CWE-ID: CWE-388 - Error Handling

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to improper error handling within the bond_setup_by_slave() function in drivers/net/bonding/bond_main.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Install updates from vendor's website.

Vulnerable software versions

Red Hat Enterprise Linux for x86_64 - Extended Update Support: 9.4

Red Hat Enterprise Linux Server - AUS: 9.4

Red Hat Enterprise Linux for IBM z Systems - Extended Update Support: 9.4

Red Hat Enterprise Linux for Power, little endian - Extended Update Support: 9.4

Red Hat Enterprise Linux for ARM 64 - Extended Update Support: 9.4

Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions: 9.4

kernel (Red Hat package): before 5.14.0-427.65.1.el9_4

CPE2.3 External links

https://access.redhat.com/errata/RHSA-2025:3935


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

9) NULL pointer dereference

EUVDB-ID: #VU93050

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2024-36010

CWE-ID: CWE-476 - NULL Pointer Dereference

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to NULL pointer dereference within the igb_set_fw_version() function in drivers/net/ethernet/intel/igb/igb_main.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Install updates from vendor's website.

Vulnerable software versions

Red Hat Enterprise Linux for x86_64 - Extended Update Support: 9.4

Red Hat Enterprise Linux Server - AUS: 9.4

Red Hat Enterprise Linux for IBM z Systems - Extended Update Support: 9.4

Red Hat Enterprise Linux for Power, little endian - Extended Update Support: 9.4

Red Hat Enterprise Linux for ARM 64 - Extended Update Support: 9.4

Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions: 9.4

kernel (Red Hat package): before 5.14.0-427.65.1.el9_4

CPE2.3 External links

https://access.redhat.com/errata/RHSA-2025:3935


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

10) NULL pointer dereference

EUVDB-ID: #VU91222

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2024-36902

CWE-ID: CWE-476 - NULL Pointer Dereference

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to NULL pointer dereference within the __fib6_rule_action() function in net/ipv6/fib6_rules.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Install updates from vendor's website.

Vulnerable software versions

Red Hat Enterprise Linux for x86_64 - Extended Update Support: 9.4

Red Hat Enterprise Linux Server - AUS: 9.4

Red Hat Enterprise Linux for IBM z Systems - Extended Update Support: 9.4

Red Hat Enterprise Linux for Power, little endian - Extended Update Support: 9.4

Red Hat Enterprise Linux for ARM 64 - Extended Update Support: 9.4

Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions: 9.4

kernel (Red Hat package): before 5.14.0-427.65.1.el9_4

CPE2.3 External links

https://access.redhat.com/errata/RHSA-2025:3935


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

11) Improper error handling

EUVDB-ID: #VU92054

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2024-36939

CWE-ID: CWE-388 - Error Handling

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to improper error handling within the nfs_net_init() function in fs/nfs/inode.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Install updates from vendor's website.

Vulnerable software versions

Red Hat Enterprise Linux for x86_64 - Extended Update Support: 9.4

Red Hat Enterprise Linux Server - AUS: 9.4

Red Hat Enterprise Linux for IBM z Systems - Extended Update Support: 9.4

Red Hat Enterprise Linux for Power, little endian - Extended Update Support: 9.4

Red Hat Enterprise Linux for ARM 64 - Extended Update Support: 9.4

Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions: 9.4

kernel (Red Hat package): before 5.14.0-427.65.1.el9_4

CPE2.3 External links

https://access.redhat.com/errata/RHSA-2025:3935


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

12) Resource management error

EUVDB-ID: #VU100144

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2024-50192

CWE-ID: CWE-399 - Resource Management Errors

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to resource management error within the its_build_vmapp_cmd(), its_vpe_set_affinity() and its_vpe_init() functions in drivers/irqchip/irq-gic-v3-its.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Install updates from vendor's website.

Vulnerable software versions

Red Hat Enterprise Linux for x86_64 - Extended Update Support: 9.4

Red Hat Enterprise Linux Server - AUS: 9.4

Red Hat Enterprise Linux for IBM z Systems - Extended Update Support: 9.4

Red Hat Enterprise Linux for Power, little endian - Extended Update Support: 9.4

Red Hat Enterprise Linux for ARM 64 - Extended Update Support: 9.4

Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions: 9.4

kernel (Red Hat package): before 5.14.0-427.65.1.el9_4

CPE2.3 External links

https://access.redhat.com/errata/RHSA-2025:3935


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

13) Out-of-bounds read

EUVDB-ID: #VU101910

Risk: High

CVSSv4.0: 6.8 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:A/U:Amber]

CVE-ID: CVE-2024-53150

CWE-ID: CWE-125 - Out-of-bounds read

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to an out-of-bounds read error within the DESC_LENGTH_CHECK(), validate_clock_source() and validate_clock_selector() functions in sound/usb/clock.c. A local user can perform a denial of service (DoS) attack.

Mitigation

Install updates from vendor's website.

Vulnerable software versions

Red Hat Enterprise Linux for x86_64 - Extended Update Support: 9.4

Red Hat Enterprise Linux Server - AUS: 9.4

Red Hat Enterprise Linux for IBM z Systems - Extended Update Support: 9.4

Red Hat Enterprise Linux for Power, little endian - Extended Update Support: 9.4

Red Hat Enterprise Linux for ARM 64 - Extended Update Support: 9.4

Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions: 9.4

kernel (Red Hat package): before 5.14.0-427.65.1.el9_4

CPE2.3 External links

https://access.redhat.com/errata/RHSA-2025:3935


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

Yes. This vulnerability is being exploited in the wild.



###SIDEBAR###