Summary:
An update for is now available for EulerOS Virtualization release 2.12.1
EulerOS Security has rated this update as having a security impact of Critical.A Common Vunlnerability Scoring System(CVSS)base score, which gives a detailed severity rating, is available for each vulnerability from the CVElink(s) in the References section.General:
Input: alps - fix use-after-free bugs caused by dev3_register_work(CVE-2025-68822)
ext4: reject mount if bigalloc with s_first_data_block != 0(CVE-2026-31447)
tls: Fix race condition in tls_sw_cancel_work_tx()(CVE-2026-23240)
apparmor: replace recursive profile removal with iterative approach(CVE-2026-23404)
ethtool: Avoid overflowing userspace buffer on stats query(CVE-2025-68795)
ipv6: avoid overflows in ip6_datagram_send_ctl()(CVE-2026-31415)
ceph: add a bunch of missing ceph_path_info initializers(CVE-2026-43408)
netfilter: nf_conntrack_helper: pass helper to expect cleanup(CVE-2026-43027)
netfilter: nf_conntrack_sip: fix Content-Length u32 truncation in sip_help_tcp()(CVE-2026-23457)
PM: runtime: Fix a race condition related to device removal(CVE-2026-23452)
net/sched: sch_hfsc: fix divide-by-zero in rtsc_min()(CVE-2026-31423)
mm: blk-cgroup: fix use-after-free in cgwb_release_workfn()(CVE-2026-31586)
drm/ioc32: stop speculation on the drm_compat_ioctl path(CVE-2026-31781)
module: Fix kernel panic when a symbol st_shndx is out of bounds(CVE-2026-31521)
serial: core: fix infinite loop in handle_tx() for PORT_UNKNOWN(CVE-2026-23472)
net/tcp-md5: Fix MAC comparison to be constant-time(CVE-2026-43383)
ext4: avoid infinite loops caused by residual data(CVE-2026-31448)
smb: client: Don't log plaintext credentials in cifs_set_cifscreds(CVE-2026-23303)
dmaengine: idxd: Fix memory leak when a wq is reset(CVE-2026-31441)
bridge: br_nd_send: linearize skb before parsing ND options(CVE-2026-31682)
net/sched: teql: fix NULL pointer dereference in iptunnel_xmit on...
5.10.0-136.12.0.86.h3030.eulerosv2r125.10.0-136.12.0.86.h3030.eulerosv2r125.10.0-136.12.0.86.h3030.eulerosv2r125.10.0-136.12.0.86.h3030.eulerosv2r125.10.0-136.12.0.86.h3030.eulerosv2r12Exploitability
AV:NAC:LPR:NUI:NScope
S:UImpact
C:HI:HA:H9.8/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H