Issued at: 2026-01-17
Updated at: 2026-01-21
Synopsis
Moderate: kernel security update
Description
The kernel packages contain the Linux kernel, the core of any Linux operating system.
Security Fix(es):
* kernel: HID: multitouch: fix slab out-of-bounds access in mt_report_fixup() (CVE-2025-39806)
* kernel: audit: fix out-of-bounds read in audit_compare_dname_path() (CVE-2025-39840)
* kernel: mm/memory-failure: fix VM_BUG_ON_PAGE(PagePoisoned(page)) when unpoison memory (CVE-2025-39883)
* kernel: sctp: avoid NULL dereference when chunk data buffer is missing (CVE-2025-40240)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.