Release Info

Advisory: CLSA-2026:1767867153

OS: Oracle Linux 7 ELS

Public date: 2026-01-08 10:12:34.972336

Project: kernel

Version: 3.10.0-1160.139.1.el7.tuxcare.els4

Errata link: https://errata.tuxcare.com/els_os/oraclelinux7els/CLSA-2026-1767867153.html

Changelog

- crypto: lzo - Fix compression buffer overrun {CVE-2025-38068} - wifi: brcmfmac: fix use-after-free when rescheduling brcmf_btcoex_info work {CVE-2025-39863} - NFSD: Protect against send buffer overflow in NFSv2 READ {CVE-2022-43945} - tcp: Clear tcp_sk(sk)->fastopen_rsk in tcp_disconnect(). {CVE-2025-40186} - can: bcm: add locking for bcm_op runtime updates {CVE-2025-38004} - Squashfs: check return result of sb_min_blocksize {CVE-2025-38415} - ALSA: usb-audio: Validate UAC3 cluster segment descriptors {CVE-2025-39757} - ext4: fix undefined behavior in bit shift for ext4_check_flag_values {CVE-2022-50403} - scsi: qla2xxx: Wait for io return on terminate rport {CVE-2023-53322} - fs: fix UAF/GPF bug in nilfs_mdt_destroy {CVE-2022-2978} - ALSA: usb-audio: Validate UAC3 power domain descriptors, too {CVE-2025-38729} - ipv6: Fix infinite recursion in fib6_dump_done(). {CVE-2024-35886} - wifi: ath9k_htc: Abort software beacon handling if disabled {CVE-2025-38157} - atm: Release atm_dev_mutex after removing procfs in atm_dev_deregister(). {CVE-2025-38245} - atm: clip: Fix infinite recursive call of clip_push(). {CVE-2025-38459} - smb: client: Fix use-after-free in cifs_fill_dirent {CVE-2025-38051}

Update

Update command: yum update kernel*

Packages list

bpftool-3.10.0-1160.139.1.el7.tuxcare.els4.x86_64.rpm kernel-3.10.0-1160.139.1.el7.tuxcare.els4.x86_64.rpm kernel-debug-3.10.0-1160.139.1.el7.tuxcare.els4.x86_64.rpm kernel-debug-devel-3.10.0-1160.139.1.el7.tuxcare.els4.x86_64.rpm kernel-devel-3.10.0-1160.139.1.el7.tuxcare.els4.x86_64.rpm kernel-headers-3.10.0-1160.139.1.el7.tuxcare.els4.x86_64.rpm kernel-tools-3.10.0-1160.139.1.el7.tuxcare.els4.x86_64.rpm kernel-tools-libs-3.10.0-1160.139.1.el7.tuxcare.els4.x86_64.rpm kernel-tools-libs-devel-3.10.0-1160.139.1.el7.tuxcare.els4.x86_64.rpm perf-3.10.0-1160.139.1.el7.tuxcare.els4.x86_64.rpm python-perf-3.10.0-1160.139.1.el7.tuxcare.els4.x86_64.rpm

CVEs

CVE-2025-38729
CVE-2025-40186
CVE-2025-38245
CVE-2025-38459
CVE-2025-39863
CVE-2022-2978
CVE-2025-38415
CVE-2022-50367
CVE-2025-38051
CVE-2025-38068
CVE-2025-38157
CVE-2025-38004
CVE-2022-50403
CVE-2025-39757
CVE-2022-43945
CVE-2025-39955
CVE-2024-35886
CVE-2023-53322
CVE-2022-50410