Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2026-36018

Опубликовано: 08 июл. 2026
Источник: oracle-oval
Платформа: Oracle Linux 9

Описание

ELSA-2026-36018: kernel security, bug fix, and enhancement update (IMPORTANT)

[5.14.0-687.22.1]

  • Disable UKI signing [Orabug: 36571828]
  • Update Oracle Linux certificates (Kevin Lyons)
  • Disable signing for aarch64 (Ilya Okomin)
  • Oracle Linux RHCK Module Signing Key was added to the kernel trusted keys list (olkmod_signing_key.pem) [Orabug: 29539237]
  • Update x509.genkey [Orabug: 24817676]
  • Conflict with shim-ia32 and shim-x64 <= 15.3-1.0.5]
  • Remove upstream reference during boot (Kevin Lyons) [Orabug: 34729535]
  • Add Oracle Linux IMA certificates
  • Add new Oracle Linux Driver Signing (key 1) certificate [Orabug: 37985764]

[5.14.0-687.22.1]

  • smb/client: fix out-of-bounds read in smb2_compound_op() (Paulo Alcantara) [RHEL-180041] {CVE-2026-46155}
  • smb: client: fix off-by-8 bounds check in check_wsl_eas() (Paulo Alcantara) [RHEL-180041]
  • xfrm: defensively unhash xfrm_state lists in __xfrm_state_delete (Sabrina Dubroca) [RHEL-180176] {CVE-2026-46116}
  • net: gro: don't merge zcopy skbs (Sabrina Dubroca) [RHEL-177878] {CVE-2026-46323}
  • net/mana: Null service_wq on setup error to prevent double destroy (CKI Backport Bot) [RHEL-180271] {CVE-2026-43276}
  • net: mana: Fix double destroy_workqueue on service rescan PCI path (CKI Backport Bot) [RHEL-180271] {CVE-2026-43276}

[5.14.0-687.21.1]

  • fs/smb/client: fix out-of-bounds read in cifs_sanitize_prepath (CKI Backport Bot) [RHEL-189503] {CVE-2026-43112}
  • Enable workaround for ARM64 ERRATUM 4118414 (Mark Salter) [RHEL-183625] {CVE-2025-10263}
  • arm64: cputype: Add NVIDIA Olympus definitions (Mark Salter) [RHEL-183625] {CVE-2025-10263}
  • arm64: errata: Mitigate TLBI errata on Microsoft Azure Cobalt 100 CPU (Mark Salter) [RHEL-183625] {CVE-2025-10263}
  • arm64: errata: Mitigate TLBI errata on NVIDIA Olympus CPU (Mark Salter) [RHEL-183625] {CVE-2025-10263}
  • arm64: errata: Mitigate TLBI errata on various Arm CPUs (Mark Salter) [RHEL-183625] {CVE-2025-10263}
  • arm64: errata: Apply workarounds for Neoverse-V3AE (Mark Salter) [RHEL-183625] {CVE-2025-10263}
  • arm64: cputype: Add Neoverse-V3AE definitions (Mark Salter) [RHEL-183625] {CVE-2025-10263}
  • arm64: cputype: Add C1-Ultra definitions (Mark Salter) [RHEL-183625] {CVE-2025-10263}
  • arm64: cputype: Add C1-Premium definitions (Mark Salter) [RHEL-183625] {CVE-2025-10263}
  • arm64: cputype: Add C1-Pro definitions (Mark Salter) [RHEL-183625] {CVE-2025-10263}
  • Clean up documentation mess left by previous backport (Mark Salter) [RHEL-183625] {CVE-2025-10263}
  • KVM: arm64: vgic-its: Drop the translation cache reference only for the erased entry (CKI Backport Bot) [RHEL-183969] {CVE-2026-46316}
  • netfilter: nft_inner: Fix IPv6 inner_thoff desync (CKI Backport Bot) [RHEL-181929] {CVE-2026-46244}
  • procfs: fix missing RCU protection when reading real_parent in do_task_stat() (CKI Backport Bot) [RHEL-181907] {CVE-2026-46259}
  • drm/gem: Fix inconsistent plane dimension calculation in drm_gem_fb_init_with_funcs() (CKI Backport Bot) [RHEL-179909] {CVE-2026-46209}
  • sctp: revalidate list cursor after sctp_sendmsg_to_asoc() in SCTP_SENDALL (CKI Backport Bot) [RHEL-179865] {CVE-2026-46227}
  • nouveau/gsp: drop WARN_ON in ACPI probes (Lyude Paul) [RHEL-160966]

Обновленные пакеты

Oracle Linux 9

Oracle Linux aarch64

kernel-cross-headers

5.14.0-687.22.1.el9_8

kernel-tools-libs-devel

5.14.0-687.22.1.el9_8

libperf

5.14.0-687.22.1.el9_8

kernel-tools

5.14.0-687.22.1.el9_8

kernel-tools-libs

5.14.0-687.22.1.el9_8

kernel-headers

5.14.0-687.22.1.el9_8

perf

5.14.0-687.22.1.el9_8

python3-perf

5.14.0-687.22.1.el9_8

rtla

5.14.0-687.22.1.el9_8

rv

5.14.0-687.22.1.el9_8

Oracle Linux x86_64

kernel

5.14.0-687.22.1.el9_8

kernel-abi-stablelists

5.14.0-687.22.1.el9_8

kernel-core

5.14.0-687.22.1.el9_8

kernel-debug

5.14.0-687.22.1.el9_8

kernel-debug-core

5.14.0-687.22.1.el9_8

kernel-debug-modules

5.14.0-687.22.1.el9_8

kernel-debug-modules-core

5.14.0-687.22.1.el9_8

kernel-debug-modules-extra

5.14.0-687.22.1.el9_8

kernel-debug-uki-virt

5.14.0-687.22.1.el9_8

kernel-modules

5.14.0-687.22.1.el9_8

kernel-modules-core

5.14.0-687.22.1.el9_8

kernel-modules-extra

5.14.0-687.22.1.el9_8

kernel-tools

5.14.0-687.22.1.el9_8

kernel-tools-libs

5.14.0-687.22.1.el9_8

kernel-uki-virt

5.14.0-687.22.1.el9_8

kernel-uki-virt-addons

5.14.0-687.22.1.el9_8

kernel-debug-devel

5.14.0-687.22.1.el9_8

kernel-debug-devel-matched

5.14.0-687.22.1.el9_8

kernel-devel

5.14.0-687.22.1.el9_8

kernel-devel-matched

5.14.0-687.22.1.el9_8

kernel-doc

5.14.0-687.22.1.el9_8

kernel-headers

5.14.0-687.22.1.el9_8

perf

5.14.0-687.22.1.el9_8

python3-perf

5.14.0-687.22.1.el9_8

rtla

5.14.0-687.22.1.el9_8

rv

5.14.0-687.22.1.el9_8

kernel-cross-headers

5.14.0-687.22.1.el9_8

kernel-tools-libs-devel

5.14.0-687.22.1.el9_8

libperf

5.14.0-687.22.1.el9_8

Связанные уязвимости

rocky
16 дней назад

Important: kernel security, bug fix, and enhancement update

CVSS3: 9.1
ubuntu
около 2 месяцев назад

Arm C1-Ultra, C1-Premium, Neoverse V3 & V3AE, Neoverse V2, Neoverse V1, Neoverse-N2, Neoverse-N1, Cortex-X925, Cortex-X4, Cortex-X3, Cortex-X2, Cortex-X1 & X1C, Cortex-A710, Cortex-A78, A78AE & A78C, Cortex-A77, Cortex-A76 & A76A may allow writes to resources owned by a higher exception level.

CVSS3: 8.4
redhat
около 2 месяцев назад

Arm C1-Ultra, C1-Premium, Neoverse V3 & V3AE, Neoverse V2, Neoverse V1, Neoverse-N2, Neoverse-N1, Cortex-X925, Cortex-X4, Cortex-X3, Cortex-X2, Cortex-X1 & X1C, Cortex-A710, Cortex-A78, A78AE & A78C, Cortex-A77, Cortex-A76 & A76A may allow writes to resources owned by a higher exception level.

CVSS3: 9.1
nvd
около 2 месяцев назад

Arm C1-Ultra, C1-Premium, Neoverse V3 & V3AE, Neoverse V2, Neoverse V1, Neoverse-N2, Neoverse-N1, Cortex-X925, Cortex-X4, Cortex-X3, Cortex-X2, Cortex-X1 & X1C, Cortex-A710, Cortex-A78, A78AE & A78C, Cortex-A77, Cortex-A76 & A76A may allow writes to resources owned by a higher exception level.

CVSS3: 9.3
msrc
около 2 месяцев назад

ARM: CVE-2025-10263 Completion of affected memory accesses might not be guaranteed by completion of a TLBI [kernel]