Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×
Important: kernel security update. {"type": "TYPE_SECURITY", "shortCode": "RL", "name": "RLSA-2026:1142", "synopsis": "Important: kernel security update", "severity": "SEVERITY_IMPORTANT", "topic": "An update is available for kernel.\nThis update affects Rocky Linux 8.\nA Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list", "description": "The kernel packages contain the Linux kernel, the core of any Linux operating system.\n\nSecurity Fix(es):\n\n* kernel: Bluetooth: hci_event: call disconnect callback before deleting conn (CVE-2023-53673)\n\n* kernel: ASoC: Intel: bytcr_rt5640: Fix invalid quirk input mapping (CVE-2025-40154)\n\n* kernel: Linux kernel: vsock vulnerability may lead to memory corruption (CVE-2025-40248)\n\n* kernel: drm/vmwgfx: Validate command header size against SVGA_CMD_MAX_DATASIZE (CVE-2025-40277)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.", "solution": null, "affectedProducts": ["Rocky Linux 8"], "fixes": [{"ticket": "2402193", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2402193", "description": ""}, {"ticket": "2414494", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2414494", "description": ""}, {"ticket": "2418872", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2418872", "description": ""}, {"ticket": "2419954", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2419954", "description": ""}], "cves": [{"name": "CVE-2023-53673", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2023-53673", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H", "cvss3BaseScore": "7.8", "cwe": "CWE-416"}, {"name": "CVE-2025-40154", "sourceBy": "MITRE", "sourceLink":"https://www.cve.org/CVERecord?id=CVE-2025-40154", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H", "cvss3BaseScore": "7.0", "cwe": "CWE-125"}, {"name": "CVE-2025-40248", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2025-40248", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H", "cvss3BaseScore": "7.0", "cwe": "CWE-364"}, {"name": "CVE-2025-40277", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2025-40277", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H", "cvss3BaseScore": "7.8", "cwe": "CWE-190"}], "references": [], "publishedAt": "2026-02-03T17:19:25.693068Z", "rpms": {"Rocky Linux 8": {"nvras": ["bpftool-0:4.18.0-553.97.1.el8_10.aarch64.rpm", "bpftool-0:4.18.0-553.97.1.el8_10.x86_64.rpm", "bpftool-debuginfo-0:4.18.0-553.97.1.el8_10.aarch64.rpm", "bpftool-debuginfo-0:4.18.0-553.97.1.el8_10.x86_64.rpm", "kernel-0:4.18.0-553.97.1.el8_10.aarch64.rpm", "kernel-0:4.18.0-553.97.1.el8_10.src.rpm", "kernel-0:4.18.0-553.97.1.el8_10.x86_64.rpm", "kernel-abi-stablelists-0:4.18.0-553.97.1.el8_10.noarch.rpm", "kernel-core-0:4.18.0-553.97.1.el8_10.aarch64.rpm", "kernel-core-0:4.18.0-553.97.1.el8_10.x86_64.rpm", "kernel-debug-0:4.18.0-553.97.1.el8_10.aarch64.rpm", "kernel-debug-0:4.18.0-553.97.1.el8_10.x86_64.rpm", "kernel-debug-core-0:4.18.0-553.97.1.el8_10.aarch64.rpm", "kernel-debug-core-0:4.18.0-553.97.1.el8_10.x86_64.rpm", "kernel-debug-debuginfo-0:4.18.0-553.97.1.el8_10.aarch64.rpm", "kernel-debug-debuginfo-0:4.18.0-553.97.1.el8_10.x86_64.rpm", "kernel-debug-devel-0:4.18.0-553.97.1.el8_10.aarch64.rpm", "kernel-debug-devel-0:4.18.0-553.97.1.el8_10.x86_64.rpm", "kernel-debuginfo-0:4.18.0-553.97.1.el8_10.aarch64.rpm", "kernel-debuginfo-0:4.18.0-553.97.1.el8_10.x86_64.rpm", "kernel-debuginfo-common-aarch64-0:4.18.0-553.97.1.el8_10.aarch64.rpm", "kernel-debuginfo-common-x86_64-0:4.18.0-553.97.1.el8_10.x86_64.rpm", "kernel-debug-modules-0:4.18.0-553.97.1.el8_10.aarch64.rpm","kernel-debug-modules-0:4.18.0-553.97.1.el8_10.x86_64.rpm", "kernel-debug-modules-extra-0:4.18.0-553.97.1.el8_10.aarch64.rpm", "kernel-debug-modules-extra-0:4.18.0-553.97.1.el8_10.x86_64.rpm", "kernel-devel-0:4.18.0-553.97.1.el8_10.aarch64.rpm", "kernel-devel-0:4.18.0-553.97.1.el8_10.x86_64.rpm", "kernel-doc-0:4.18.0-553.97.1.el8_10.noarch.rpm", "kernel-modules-0:4.18.0-553.97.1.el8_10.aarch64.rpm", "kernel-modules-0:4.18.0-553.97.1.el8_10.x86_64.rpm", "kernel-modules-extra-0:4.18.0-553.97.1.el8_10.aarch64.rpm", "kernel-modules-extra-0:4.18.0-553.97.1.el8_10.x86_64.rpm", "kernel-tools-0:4.18.0-553.97.1.el8_10.aarch64.rpm", "kernel-tools-0:4.18.0-553.97.1.el8_10.x86_64.rpm", "kernel-tools-debuginfo-0:4.18.0-553.97.1.el8_10.aarch64.rpm", "kernel-tools-debuginfo-0:4.18.0-553.97.1.el8_10.x86_64.rpm", "kernel-tools-libs-0:4.18.0-553.97.1.el8_10.aarch64.rpm", "kernel-tools-libs-0:4.18.0-553.97.1.el8_10.x86_64.rpm", "kernel-tools-libs-devel-0:4.18.0-553.97.1.el8_10.aarch64.rpm", "kernel-tools-libs-devel-0:4.18.0-553.97.1.el8_10.x86_64.rpm", "perf-0:4.18.0-553.97.1.el8_10.aarch64.rpm", "perf-0:4.18.0-553.97.1.el8_10.x86_64.rpm", "perf-debuginfo-0:4.18.0-553.97.1.el8_10.aarch64.rpm", "perf-debuginfo-0:4.18.0-553.97.1.el8_10.x86_64.rpm", "python3-perf-0:4.18.0-553.97.1.el8_10.aarch64.rpm", "python3-perf-0:4.18.0-553.97.1.el8_10.x86_64.rpm", "python3-perf-debuginfo-0:4.18.0-553.97.1.el8_10.aarch64.rpm", "python3-perf-debuginfo-0:4.18.0-553.97.1.el8_10.x86_64.rpm"]}}, "rebootSuggested": false, "buildReferences": []}. Kernel security update for Rocky Linux addresses significant vulnerabilities with critical fixes. Stay informed and secure!. Kernel Security Fixes Rocky Linux Important Update. . Severity: Important. LinuxSecurity.com Team
An update that solves one vulnerability can now be installed.. # Security update for the Linux Kernel (Live Patch 43 for SUSE Linux Enterprise 15 SP4) Announcement ID: SUSE-SU-2025:4281-1 Release Date: 2025-11-27T15:04:07Z Rating: important References: * bsc#1251983 Cross-References: * CVE-2023-53673 CVSS scores: * CVE-2023-53673 ( SUSE ): 7.3 CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2023-53673 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H Affected Products: * openSUSE Leap 15.4 * SUSE Linux Enterprise High Performance Computing 15 SP4 * SUSE Linux Enterprise Live Patching 15-SP4 * SUSE Linux Enterprise Micro 5.3 * SUSE Linux Enterprise Micro 5.4 * SUSE Linux Enterprise Real Time 15 SP4 * SUSE Linux Enterprise Server 15 SP4 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 An update that solves one vulnerability can now be installed. ## Description: This update for the SUSE Linux Enterprise kernel 5.14.21-150400.24.173 fixes one security issue The following security issue was fixed: * CVE-2023-53673: Bluetooth: hci_event: call disconnect callback before deleting conn (bsc#1251983). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.4 zypper in -t patch SUSE-2025-4281=1 * SUSE Linux Enterprise Live Patching 15-SP4 zypper in -t patch SUSE-SLE-Module-Live-Patching-15-SP4-2025-4281=1 ## Package List: * openSUSE Leap 15.4 (ppc64le s390x x86_64) * kernel-livepatch-5_14_21-150400_24_173-default-debuginfo-5-150400.2.1 * kernel-livepatch-5_14_21-150400_24_173-default-5-150400.2.1 * kernel-livepatch-SLE15-SP4_Update_43-debugsource-5-150400.2.1 * SUSE Linux Enterprise Live Patching 15-SP4 (ppc64le s390x x86_64) * kernel-livepatch-5_14_21-150400_24_173-default-debuginfo-5-150400.2.1 *kernel-livepatch-5_14_21-150400_24_173-default-5-150400.2.1 * kernel-livepatch-SLE15-SP4_Update_43-debugsource-5-150400.2.1 ## References: * https://www.suse.com/security/cve/CVE-2023-53673.html * https://bugzilla.suse.com/show_bug.cgi?id=1251983 . Update for openSUSE addresses a critical security issue in Bluetooth kernel interactions, enhancing system safety.. openSUSE, kernel, Bluetooth, security patch, SUSE Linux. . Severity: Important. LinuxSecurity.com Team
* bsc#1251983 Cross-References: * CVE-2023-53673 . # Security update for the Linux Kernel (Live Patch 45 for SUSE Linux Enterprise 15 SP4) Announcement ID: SUSE-SU-2025:4242-1 Release Date: 2025-11-25T21:11:36Z Rating: important References: * bsc#1251983 Cross-References: * CVE-2023-53673 CVSS scores: * CVE-2023-53673 ( SUSE ): 7.3 CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2023-53673 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H Affected Products: * openSUSE Leap 15.4 * SUSE Linux Enterprise High Performance Computing 15 SP4 * SUSE Linux Enterprise Live Patching 15-SP4 * SUSE Linux Enterprise Micro 5.3 * SUSE Linux Enterprise Micro 5.4 * SUSE Linux Enterprise Real Time 15 SP4 * SUSE Linux Enterprise Server 15 SP4 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 An update that solves one vulnerability can now be installed. ## Description: This update for the SUSE Linux Enterprise kernel 5.14.21-150400.24.179 fixes one security issue The following security issue was fixed: * CVE-2023-53673: Bluetooth: hci_event: call disconnect callback before deleting conn (bsc#1251983). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.4 zypper in -t patch SUSE-2025-4242=1 * SUSE Linux Enterprise Live Patching 15-SP4 zypper in -t patch SUSE-SLE-Module-Live-Patching-15-SP4-2025-4242=1 ## Package List: * openSUSE Leap 15.4 (ppc64le s390x x86_64) * kernel-livepatch-5_14_21-150400_24_179-default-debuginfo-2-150400.2.1 * kernel-livepatch-5_14_21-150400_24_179-default-2-150400.2.1 * kernel-livepatch-SLE15-SP4_Update_45-debugsource-2-150400.2.1 * SUSE Linux Enterprise Live Patching 15-SP4 (ppc64le s390x x86_64) * kernel-livepatch-5_14_21-150400_24_179-default-debuginfo-2-150400.2.1 *kernel-livepatch-5_14_21-150400_24_179-default-2-150400.2.1 * kernel-livepatch-SLE15-SP4_Update_45-debugsource-2-150400.2.1 ## References: * https://www.suse.com/security/cve/CVE-2023-53673.html * https://bugzilla.suse.com/show_bug.cgi?id=1251983 . SUSE Linux Kernel Security Update addresses CVE-2023-53673, ensuring critical fixes for Bluetooth connection failures.. SUSE security update, Linux kernel patch, Bluetooth security, system vulnerabilities, enterprise Linux security. . Severity: Important. LinuxSecurity.com Team
Security fix for CVE-2019-16275. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2019-2bdcccee3c 2019-11-17 01:12:46.786636 --------------------------------------------------------------------------------Name : wpa_supplicant Product : Fedora 30 Version : 2.8 Release : 3.fc30 URL : http://w1.fi/wpa_supplicant/ Summary : WPA/WPA2/IEEE 802.1X Supplicant Description : wpa_supplicant is a WPA Supplicant for Linux, BSD and Windows with support for WPA and WPA2 (IEEE 802.11i / RSN). Supplicant is the IEEE 802.1X/WPA component that is used in the client stations. It implements key negotiation with a WPA Authenticator and it controls the roaming and IEEE 802.11 authentication/association of the wlan driver. --------------------------------------------------------------------------------Update Information: Security fix for CVE-2019-16275 --------------------------------------------------------------------------------ChangeLog: * Wed Oct 30 2019 Davide Caratti - 1:2.8-3 - fix AP mode PMF disconnection protection bypass (CVE-2019-16275, rh #1767026) * Fri May 10 2019 Davide Caratti - 1:2.8-2 - fix changelog for version 2.8-1 * Thu May 2 2019 Davide Caratti - 1:2.8-1 - Update to 2.8 upstream release, to include latest fix for NULL pointer dereference when EAP-PWD peer receives unexpected EAP fragments (CVE-2019-11555, rh #1701759) --------------------------------------------------------------------------------References: [ 1 ] Bug #1767023 - CVE-2019-16275 wpa_supplicant: AP mode PMF disconnection protection bypass https://bugzilla.redhat.com/show_bug.cgi?id=1767023 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2019-2bdcccee3c' at the command line. For more information, refer to the dnf documentation availableat https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list --
wpa_supplicant could be made to be disconnected and require reconnection to the network if it received a specially crafted management frame.. =========================================================================Ubuntu Security Notice USN-4136-2 September 18, 2019 wpa, wpasupplicant vulnerability ========================================================================= A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 14.04 ESM - Ubuntu 12.04 ESM Summary: wpa_supplicant could be made to be disconnected and require reconnection to the network if it received a specially crafted management frame. Software Description: - wpa: client support for WPA and WPA2 - wpasupplicant: client support for WPA and WPA2 Details: USN-4136-1 fixed a vulnerability in wpa_supplicant. This update provides the corresponding update for Ubuntu 12.04 ESM and Ubuntu 14.04 ESM. Original advisory details: It was discovered that wpa_supplicant incorrectly handled certain management frames. An attacker could possibly use this issue to cause a denial of service. Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 14.04 ESM: hostapd 1:2.1-0ubuntu1.7+esm2 wpasupplicant 2.1-0ubuntu1.7+esm2 Ubuntu 12.04 ESM: wpasupplicant 0.7.3-6ubuntu2.5 After a standard system update you need to reboot your computer to make all the necessary changes. References: https://ubuntu.com/security/notices/USN-4136-2 https://ubuntu.com/security/notices/USN-4136-1 CVE-2019-16275 . The Ubuntu Security Notice USN-4136-2 addresses a vulnerability in wpa_supplicant that may lead to problems with disconnecting and reconnecting to networks.. wpa_supplicant, network connection, denial of service. . Severity: Important. LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.