In the Linux kernel, the following vulnerability has been resolved: do_change_type(): refuse to operate on unmounted/not ours mounts Ensure that propagation settings can only be changed for mounts located in the caller's mount namespace. This change aligns permission checking with the rest of mount(2).
Upstream advisory: https://lore.kernel.org/linux-cve-announce/2025073029-CVE-2025-38498-e3ab@gregkh/T
This issue has been addressed in the following products: Red Hat Enterprise Linux 10 Via RHSA-2025:15782 https://access.redhat.com/errata/RHSA-2025:15782
This issue has been addressed in the following products: Red Hat Enterprise Linux 8 Via RHSA-2025:16372 https://access.redhat.com/errata/RHSA-2025:16372
This issue has been addressed in the following products: Red Hat Enterprise Linux 9 Via RHSA-2025:16398 https://access.redhat.com/errata/RHSA-2025:16398