Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2026:36018

Опубликовано: 11 июл. 2026
Источник: rocky
Оценка: Important

Описание

Important: kernel security, bug fix, and enhancement update

The kernel packages contain the Linux kernel, the core of any Linux operating system.

Security Fix(es):

  • kernel: fs/smb/client: fix out-of-bounds read in cifs_sanitize_prepath (CVE-2026-43112)

  • kernel: net: mana: Fix double destroy_workqueue on service rescan PCI path (CVE-2026-43276)

  • kernel: Linux kernel: Use-After-Free in net/gro due to improper handling of zerocopy skbs (CVE-2026-46323)

  • kernel: xfrm: defensively unhash xfrm_state lists in __xfrm_state_delete (CVE-2026-46116)

  • kernel: sctp: revalidate list cursor after sctp_sendmsg_to_asoc() in SCTP_SENDALL (CVE-2026-46227)

  • kernel: drm/gem: Fix inconsistent plane dimension calculation in drm_gem_fb_init_with_funcs() (CVE-2026-46209)

  • kernel: smb/client: fix out-of-bounds read in smb2_compound_op() (CVE-2026-46155)

  • kernel: netfilter: nft_inner: Fix IPv6 inner_thoff desync (CVE-2026-46244)

  • kernel: procfs: fix missing RCU protection when reading real_parent in do_task_stat() (CVE-2026-46259)

  • kernel: Arm Processors: Privilege escalation or information disclosure via writes to higher exception level resources (CVE-2025-10263)

  • kernel: KVM: arm64: vgic-its: Drop the translation cache reference only for the erased entry (CVE-2026-46316)

Bug Fix(es) and Enhancement(s):

  • WARNING at drivers/gpu/drm/nouveau/nvkm/subdev/gsp/r535.c:1585 r535_gsp_fini+0x2fb/0x310 [nouveau] [rhel-9.8.z] (JIRA:Rocky Linux-160966)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Затронутые продукты

  • Rocky Linux 9

НаименованиеАрхитектураРелизRPM
kernelx86_64687.22.1.el9_8kernel-5.14.0-687.22.1.el9_8.x86_64.rpm
kernel-abi-stablelistsnoarch687.22.1.el9_8kernel-abi-stablelists-5.14.0-687.22.1.el9_8.noarch.rpm
kernel-corex86_64687.22.1.el9_8kernel-core-5.14.0-687.22.1.el9_8.x86_64.rpm
kernel-debugx86_64687.22.1.el9_8kernel-debug-5.14.0-687.22.1.el9_8.x86_64.rpm
kernel-debug-corex86_64687.22.1.el9_8kernel-debug-core-5.14.0-687.22.1.el9_8.x86_64.rpm
kernel-debuginfo-common-x86_64x86_64687.22.1.el9_8kernel-debuginfo-common-x86_64-5.14.0-687.22.1.el9_8.x86_64.rpm
kernel-debug-modulesx86_64687.22.1.el9_8kernel-debug-modules-5.14.0-687.22.1.el9_8.x86_64.rpm
kernel-debug-modules-corex86_64687.22.1.el9_8kernel-debug-modules-core-5.14.0-687.22.1.el9_8.x86_64.rpm
kernel-debug-modules-extrax86_64687.22.1.el9_8kernel-debug-modules-extra-5.14.0-687.22.1.el9_8.x86_64.rpm
kernel-debug-uki-virtx86_64687.22.1.el9_8kernel-debug-uki-virt-5.14.0-687.22.1.el9_8.x86_64.rpm

Показывать по

Связанные уязвимости

oracle-oval
20 дней назад

ELSA-2026-36018: kernel security, bug fix, and enhancement update (IMPORTANT)

CVSS3: 9.1
ubuntu
около 2 месяцев назад

Arm C1-Ultra, C1-Premium, Neoverse V3 & V3AE, Neoverse V2, Neoverse V1, Neoverse-N2, Neoverse-N1, Cortex-X925, Cortex-X4, Cortex-X3, Cortex-X2, Cortex-X1 & X1C, Cortex-A710, Cortex-A78, A78AE & A78C, Cortex-A77, Cortex-A76 & A76A may allow writes to resources owned by a higher exception level.

CVSS3: 8.4
redhat
около 2 месяцев назад

Arm C1-Ultra, C1-Premium, Neoverse V3 & V3AE, Neoverse V2, Neoverse V1, Neoverse-N2, Neoverse-N1, Cortex-X925, Cortex-X4, Cortex-X3, Cortex-X2, Cortex-X1 & X1C, Cortex-A710, Cortex-A78, A78AE & A78C, Cortex-A77, Cortex-A76 & A76A may allow writes to resources owned by a higher exception level.

CVSS3: 9.1
nvd
около 2 месяцев назад

Arm C1-Ultra, C1-Premium, Neoverse V3 & V3AE, Neoverse V2, Neoverse V1, Neoverse-N2, Neoverse-N1, Cortex-X925, Cortex-X4, Cortex-X3, Cortex-X2, Cortex-X1 & X1C, Cortex-A710, Cortex-A78, A78AE & A78C, Cortex-A77, Cortex-A76 & A76A may allow writes to resources owned by a higher exception level.

CVSS3: 9.3
msrc
около 2 месяцев назад

ARM: CVE-2025-10263 Completion of affected memory accesses might not be guaranteed by completion of a TLBI [kernel]