In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: limit printed string from FW file There's no guarantee here that the file is always with a NUL-termination, so reading the string may read beyond the end of the TLV. If that's the last TLV in the file, it can perhaps even read beyond the end of the file buffer. Fix that by limiting the print format to the size of the buffer we have.
Upstream advisory: https://lore.kernel.org/linux-cve-announce/2025040129-CVE-2025-21905-348b@gregkh/T
This issue has been addressed in the following products: Red Hat Enterprise Linux 10 Via RHSA-2025:11428 https://access.redhat.com/errata/RHSA-2025:11428
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.4 Extended Update Support Via RHSA-2025:11810 https://access.redhat.com/errata/RHSA-2025:11810
This issue has been addressed in the following products: Red Hat Enterprise Linux 8 Via RHSA-2025:11851 https://access.redhat.com/errata/RHSA-2025:11851
This issue has been addressed in the following products: Red Hat Enterprise Linux 8 Via RHSA-2025:11850 https://access.redhat.com/errata/RHSA-2025:11850
This issue has been addressed in the following products: Red Hat Enterprise Linux 9 Via RHSA-2025:11861 https://access.redhat.com/errata/RHSA-2025:11861
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions Via RHSA-2025:12209 https://access.redhat.com/errata/RHSA-2025:12209
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-On Via RHSA-2025:12238 https://access.redhat.com/errata/RHSA-2025:12238
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions Via RHSA-2025:12311 https://access.redhat.com/errata/RHSA-2025:12311
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions Via RHSA-2025:12525 https://access.redhat.com/errata/RHSA-2025:12525
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions Via RHSA-2025:12526 https://access.redhat.com/errata/RHSA-2025:12526
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.2 Advanced Update Support Via RHSA-2025:12623 https://access.redhat.com/errata/RHSA-2025:12623
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions Red Hat Enterprise Linux 8.8 Telecommunications Update Service Via RHSA-2025:13061 https://access.redhat.com/errata/RHSA-2025:13061
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support Red Hat Enterprise Linux 8.6 Update Services for SAP Solutions Red Hat Enterprise Linux 8.6 Telecommunications Update Service Via RHSA-2025:13099 https://access.redhat.com/errata/RHSA-2025:13099