elsa-2026-50095
oracle_linux[5.15.0-316.196.4.2] - xfrm: also call xfrm_state_delete_tunnel at destroy time for states that were never added (Sabrina Dubroca) - usb: raw-gadget: cap raw_io transfer length to KMALLOC_MAX_SIZE (Gopi Krishna Menon) - ext4: clear i_state_flags when alloc inode (Haibo Chen) - ext4: align max orphan file size with e2fsprogs limit (Baokun Li) - PM: runtime: Do not clear needs_force_resume with enabled runtime PM (Rafael J. Wysocki) - net: enetc: fix build warning when PAGE_SIZE is greater than 128K (Wei Fang) - net/sched: sch_cake: Fix incorrect qlen reduction in cake_drop (Xiang Mei) - block: fix comment for op_is_zone_mgmt() to include RESET_ALL (shechenglong) - fuse: fix readahead reclaim deadlock (Joanne Koong) - i40e: validate ring_len parameter against hardware-specific values (Gregory Herrero) - fs/ntfs3: fix mount failure for sparse runs in run_unpack() (Konstantin Komarov) - xfrm: delete x-tunnel as we delete x (Sabrina Dubroca) [Orabug: 38933003] {CVE-2025-40215} - mptcp: fix race condition in mptcp_schedule_work() (Eric Dumazet) [Orabug: 38932997] {CVE-2025-40258} - mlx5: Fix default values in create CQ (Akiva Goldberger) [Orabug: 38932992] - sunrpc: fix handling of server side tls alerts (Olga Kornievskaia) [Orabug: 38932991] {CVE-2025-38566} - sunrpc: fix client side handling of tls alerts (Olga Kornievskaia) [Orabug: 38932988] {CVE-2025-38571}
- Published
- unknown
- Last Modified
- unknown
CVSS details not available.
No product information available.
No references available.
No linked vulnerabilities found.
{
"cves": [
"CVE-2025-38566",
"CVE-2025-38571",
"CVE-2025-40215",
"CVE-2025-40258",
"CVE-2025-68209"
],
"cvss": 0.0,
"database_specific": {
"severity": "IMPORTANT"
},
"description": "[5.15.0-316.196.4.2]\n- xfrm: also call xfrm_state_delete_tunnel at destroy time for states that were never added (Sabrina Dubroca) \n- usb: raw-gadget: cap raw_io transfer length to KMALLOC_MAX_SIZE (Gopi Krishna Menon) \n- ext4: clear i_state_flags when alloc inode (Haibo Chen) \n- ext4: align max orphan file size with e2fsprogs limit (Baokun Li) \n- PM: runtime: Do not clear needs_force_resume with enabled runtime PM (Rafael J. Wysocki) \n- net: enetc: fix build warning when PAGE_SIZE is greater than 128K (Wei Fang) \n- net/sched: sch_cake: Fix incorrect qlen reduction in cake_drop (Xiang Mei) \n- block: fix comment for op_is_zone_mgmt() to include RESET_ALL (shechenglong) \n- fuse: fix readahead reclaim deadlock (Joanne Koong) \n- i40e: validate ring_len parameter against hardware-specific values (Gregory Herrero) \n- fs/ntfs3: fix mount failure for sparse runs in run_unpack() (Konstantin Komarov) \n- xfrm: delete x-tunnel as we delete x (Sabrina Dubroca) [Orabug: 38933003] {CVE-2025-40215}\n- mptcp: fix race condition in mptcp_schedule_work() (Eric Dumazet) [Orabug: 38932997] {CVE-2025-40258}\n- mlx5: Fix default values in create CQ (Akiva Goldberger) [Orabug: 38932992] \n- sunrpc: fix handling of server side tls alerts (Olga Kornievskaia) [Orabug: 38932991] {CVE-2025-38566}\n- sunrpc: fix client side handling of tls alerts (Olga Kornievskaia) [Orabug: 38932988] {CVE-2025-38571}",
"id": "ELSA-2026-50095",
"ovalId": "oval:com.oracle.elsa:def:202650095",
"source": "oracle_linux",
"title": "ELSA-2026-50095: Unbreakable Enterprise kernel security update (IMPORTANT)",
"url": "https://linux.oracle.com/errata/ELSA-2026-50095.html"
}