Oracle Linux 6415 Published by

Oracle Linux Security Advisories and Bug Fix Advisories have been released for various versions, including Oracle Linux 9, 10, and 8. The advisories include security updates for the kernel, nodejs22, linuxptp, and mysql:8.0. The security updates address several vulnerabilities, including CVE-2025-38472, CVE-2025-38527, CVE-2025-38718, CVE-2022-50087, CVE-2025-22026, and others. The advisories also include bug fixes and enhancements for various packages, including the kernel, nodejs22, linuxptp, and mysql:8.0.

ELSA-2025-16880 Moderate: Oracle Linux 9 kernel security update
ELBA-2025-16438 Oracle Linux 10 nodejs22 bug fix and enhancement update
ELBA-2025-16954 Oracle Linux 9 linuxptp bug fix and enhancement update
ELSA-2025-16919 Moderate: Oracle Linux 8 kernel security update
ELSA-2025-16861 Moderate: Oracle Linux 8 mysql:8.0 security update




ELSA-2025-16880 Moderate: Oracle Linux 9 kernel security update


Oracle Linux Security Advisory ELSA-2025-16880

http://linux.oracle.com/errata/ELSA-2025-16880.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
kernel-5.14.0-570.49.1.0.1.el9_6.x86_64.rpm
kernel-abi-stablelists-5.14.0-570.49.1.0.1.el9_6.noarch.rpm
kernel-core-5.14.0-570.49.1.0.1.el9_6.x86_64.rpm
kernel-cross-headers-5.14.0-570.49.1.0.1.el9_6.x86_64.rpm
kernel-debug-5.14.0-570.49.1.0.1.el9_6.x86_64.rpm
kernel-debug-core-5.14.0-570.49.1.0.1.el9_6.x86_64.rpm
kernel-debug-devel-5.14.0-570.49.1.0.1.el9_6.x86_64.rpm
kernel-debug-devel-matched-5.14.0-570.49.1.0.1.el9_6.x86_64.rpm
kernel-debug-modules-5.14.0-570.49.1.0.1.el9_6.x86_64.rpm
kernel-debug-modules-core-5.14.0-570.49.1.0.1.el9_6.x86_64.rpm
kernel-debug-modules-extra-5.14.0-570.49.1.0.1.el9_6.x86_64.rpm
kernel-debug-uki-virt-5.14.0-570.49.1.0.1.el9_6.x86_64.rpm
kernel-devel-5.14.0-570.49.1.0.1.el9_6.x86_64.rpm
kernel-devel-matched-5.14.0-570.49.1.0.1.el9_6.x86_64.rpm
kernel-doc-5.14.0-570.49.1.0.1.el9_6.noarch.rpm
kernel-headers-5.14.0-570.49.1.0.1.el9_6.x86_64.rpm
kernel-modules-5.14.0-570.49.1.0.1.el9_6.x86_64.rpm
kernel-modules-core-5.14.0-570.49.1.0.1.el9_6.x86_64.rpm
kernel-modules-extra-5.14.0-570.49.1.0.1.el9_6.x86_64.rpm
kernel-tools-5.14.0-570.49.1.0.1.el9_6.x86_64.rpm
kernel-tools-libs-5.14.0-570.49.1.0.1.el9_6.x86_64.rpm
kernel-tools-libs-devel-5.14.0-570.49.1.0.1.el9_6.x86_64.rpm
kernel-uki-virt-5.14.0-570.49.1.0.1.el9_6.x86_64.rpm
kernel-uki-virt-addons-5.14.0-570.49.1.0.1.el9_6.x86_64.rpm
libperf-5.14.0-570.49.1.0.1.el9_6.x86_64.rpm
perf-5.14.0-570.49.1.0.1.el9_6.x86_64.rpm
python3-perf-5.14.0-570.49.1.0.1.el9_6.x86_64.rpm
rtla-5.14.0-570.49.1.0.1.el9_6.x86_64.rpm
rv-5.14.0-570.49.1.0.1.el9_6.x86_64.rpm

aarch64:
kernel-cross-headers-5.14.0-570.49.1.0.1.el9_6.aarch64.rpm
kernel-headers-5.14.0-570.49.1.0.1.el9_6.aarch64.rpm
kernel-tools-5.14.0-570.49.1.0.1.el9_6.aarch64.rpm
kernel-tools-libs-5.14.0-570.49.1.0.1.el9_6.aarch64.rpm
kernel-tools-libs-devel-5.14.0-570.49.1.0.1.el9_6.aarch64.rpm
libperf-5.14.0-570.49.1.0.1.el9_6.aarch64.rpm
perf-5.14.0-570.49.1.0.1.el9_6.aarch64.rpm
python3-perf-5.14.0-570.49.1.0.1.el9_6.aarch64.rpm
rtla-5.14.0-570.49.1.0.1.el9_6.aarch64.rpm
rv-5.14.0-570.49.1.0.1.el9_6.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/kernel-5.14.0-570.49.1.0.1.el9_6.src.rpm

Related CVEs:

CVE-2025-38472
CVE-2025-38527
CVE-2025-38718
CVE-2025-39682
CVE-2025-39698

Description of changes:

[5.14.0-570.49.1.0.1.el9_6.OL9]
- nvme-pci: remove two deallocate zeroes quirks [Orabug: 37756650]
- Disable UKI signing [Orabug: 36571828]
- Update Oracle Linux certificates (Kevin Lyons)
- Disable signing for aarch64 (Ilya Okomin)
- Oracle Linux RHCK Module Signing Key was added to the kernel trusted keys list (olkmod_signing_key.pem) [Orabug: 29539237]
- Update x509.genkey [Orabug: 24817676]
- Conflict with shim-ia32 and shim-x64 in_use in ice_ll_ts_intr (Petr Oros) [RHEL-112873]
- ice: fix NULL access of tx->in_use in ice_ptp_ts_irq (Petr Oros) [RHEL-112873]
- ice: Implement PTP support for E830 devices (Petr Oros) [RHEL-112558]
- ice: Refactor ice_ptp_init_tx_* (Petr Oros) [RHEL-112558]
- ice: Add unified ice_capture_crosststamp (Petr Oros) [RHEL-112558]
- ice: Process TSYN IRQ in a separate function (Petr Oros) [RHEL-112558]
- ice: Use FIELD_PREP for timestamp values (Petr Oros) [RHEL-112558]
- ice: Remove unnecessary ice_is_e8xx() functions (Petr Oros) [RHEL-112558]
- ice: Don't check device type when checking GNSS presence (Petr Oros) [RHEL-112558]
- ice: Add in/out PTP pin delays (Petr Oros) [RHEL-112558]
- ice: fix PHY timestamp extraction for ETH56G (Petr Oros) [RHEL-112558]
- ice: Add correct PHY lane assignment (Petr Oros) [RHEL-112683]
- ice: Fix ETH56G FC-FEC Rx offset value (Petr Oros) [RHEL-112683]
- ice: Fix quad registers read on E825 (Petr Oros) [RHEL-112683]
- ice: Fix E825 initialization (Petr Oros) [RHEL-112683]
- tcp: drop secpath at the same time as we currently drop dst (Sabrina Dubroca) [RHEL-82136]
- smb: client: fix use-after-free in cifs_oplock_break (CKI Backport Bot) [RHEL-111196] {CVE-2025-38527}
- i40e: When removing VF MAC filters, only check PF-set MAC (CKI Backport Bot) [RHEL-109571]
- cpufreq/cppc: Don't compare desired_perf in target() (Mark Langsdorf) [RHEL-109525]
- netfilter: nf_conntrack: fix crash due to removal of uninitialised entry (CKI Backport Bot) [RHEL-106432] {CVE-2025-38472}
- sched/rt: Fix race in push_rt_task (Phil Auld) [RHEL-91800]



ELBA-2025-16438 Oracle Linux 10 nodejs22 bug fix and enhancement update


Oracle Linux Bug Fix Advisory ELBA-2025-16438

http://linux.oracle.com/errata/ELBA-2025-16438.html

The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:

x86_64:
nodejs-22.19.0-2.el10_0.x86_64.rpm
nodejs-devel-22.19.0-2.el10_0.x86_64.rpm
nodejs-docs-22.19.0-2.el10_0.noarch.rpm
nodejs-full-i18n-22.19.0-2.el10_0.x86_64.rpm
nodejs-libs-22.19.0-2.el10_0.x86_64.rpm
nodejs-npm-10.9.3-1.22.19.0.2.el10_0.x86_64.rpm

aarch64:
nodejs-22.19.0-2.el10_0.aarch64.rpm
nodejs-devel-22.19.0-2.el10_0.aarch64.rpm
nodejs-docs-22.19.0-2.el10_0.noarch.rpm
nodejs-full-i18n-22.19.0-2.el10_0.aarch64.rpm
nodejs-libs-22.19.0-2.el10_0.aarch64.rpm
nodejs-npm-10.9.3-1.22.19.0.2.el10_0.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol10/SRPMS-updates/nodejs22-22.19.0-2.el10_0.src.rpm

Description of changes:

[1:22.19.0-2]
- Fix nodejs_abi generator in template

[1:22.19.0-1]
- Update to version 22.19.0 (rhbz#2391591)

[1:22.18.0-3]
- spec: fix node binary calls to use versioned binary



ELBA-2025-16954 Oracle Linux 9 linuxptp bug fix and enhancement update


Oracle Linux Bug Fix Advisory ELBA-2025-16954

http://linux.oracle.com/errata/ELBA-2025-16954.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
linuxptp-4.4-1.el9_6.4.x86_64.rpm

aarch64:
linuxptp-4.4-1.el9_6.4.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/linuxptp-4.4-1.el9_6.4.src.rpm

Description of changes:

[4.4-1.el9_6.4]
- rebuild

[4.4-1.el9_6.3]
- handle missing pulses in ts2phc (RHEL-112342)



ELSA-2025-16919 Moderate: Oracle Linux 8 kernel security update


Oracle Linux Security Advisory ELSA-2025-16919

http://linux.oracle.com/errata/ELSA-2025-16919.html

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:

x86_64:
bpftool-4.18.0-553.77.1.el8_10.x86_64.rpm
kernel-4.18.0-553.77.1.el8_10.x86_64.rpm
kernel-abi-stablelists-4.18.0-553.77.1.el8_10.noarch.rpm
kernel-core-4.18.0-553.77.1.el8_10.x86_64.rpm
kernel-cross-headers-4.18.0-553.77.1.el8_10.x86_64.rpm
kernel-debug-4.18.0-553.77.1.el8_10.x86_64.rpm
kernel-debug-core-4.18.0-553.77.1.el8_10.x86_64.rpm
kernel-debug-devel-4.18.0-553.77.1.el8_10.x86_64.rpm
kernel-debug-modules-4.18.0-553.77.1.el8_10.x86_64.rpm
kernel-debug-modules-extra-4.18.0-553.77.1.el8_10.x86_64.rpm
kernel-devel-4.18.0-553.77.1.el8_10.x86_64.rpm
kernel-doc-4.18.0-553.77.1.el8_10.noarch.rpm
kernel-headers-4.18.0-553.77.1.el8_10.x86_64.rpm
kernel-modules-4.18.0-553.77.1.el8_10.x86_64.rpm
kernel-modules-extra-4.18.0-553.77.1.el8_10.x86_64.rpm
kernel-tools-4.18.0-553.77.1.el8_10.x86_64.rpm
kernel-tools-libs-4.18.0-553.77.1.el8_10.x86_64.rpm
kernel-tools-libs-devel-4.18.0-553.77.1.el8_10.x86_64.rpm
perf-4.18.0-553.77.1.el8_10.x86_64.rpm
python3-perf-4.18.0-553.77.1.el8_10.x86_64.rpm

aarch64:
bpftool-4.18.0-553.77.1.el8_10.aarch64.rpm
kernel-cross-headers-4.18.0-553.77.1.el8_10.aarch64.rpm
kernel-headers-4.18.0-553.77.1.el8_10.aarch64.rpm
kernel-tools-4.18.0-553.77.1.el8_10.aarch64.rpm
kernel-tools-libs-4.18.0-553.77.1.el8_10.aarch64.rpm
kernel-tools-libs-devel-4.18.0-553.77.1.el8_10.aarch64.rpm
perf-4.18.0-553.77.1.el8_10.aarch64.rpm
python3-perf-4.18.0-553.77.1.el8_10.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol8/SRPMS-updates/kernel-4.18.0-553.77.1.el8_10.src.rpm

Related CVEs:

CVE-2022-50087
CVE-2025-22026
CVE-2025-37797
CVE-2025-38718

Description of changes:

[4.18.0-553.77.1.el8_10.OL8]
- Update Oracle Linux certificates (Kevin Lyons)
- Disable signing for aarch64 (Ilya Okomin)
- Oracle Linux RHCK Module Signing Key was added to the kernel trusted keys list (olkmod_signing_key.pem) [Orabug: 29539237]
- Update x509.genkey [Orabug: 24817676]
- Conflict with shim-ia32 and shim-x64