Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2026:49871

Опубликовано: 06 авг. 2026
Источник: rocky
Оценка: Moderate

Описание

Moderate: kernel security, bug fix, and enhancement update

The kernel packages contain the Linux kernel, the core of any Linux operating system.

Security Fix(es):

  • kernel: Linux kernel: Denial of Service due to NULL function pointer race in timer shutdown (CVE-2025-68214)

  • kernel: procfs: avoid fetching build ID while holding VMA lock (CVE-2026-23199)

Bug Fix(es) and Enhancement(s):

  • [Lenovo] Graphics not working on T14 G7 Intel (Pantherlake) (JIRA:Rocky Linux-172832)

  • Possible regression with FM350GL [rhel-10.2.z] (JIRA:Rocky Linux-184266)

  • [10.2 FEAT] CNB102: dpll: sync with upstream (JIRA:Rocky Linux-211011)

  • backport make module and modules-core provides use variant [rhel-10.2.z] (JIRA:Rocky Linux-213965)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Затронутые продукты

  • Rocky Linux 10

НаименованиеАрхитектураРелизRPM
kernel-debug-modules-coreaarch64211.43.1.el10_2kernel-debug-modules-core-6.12.0-211.43.1.el10_2.aarch64.rpm
kernel-uki-virt-addonsaarch64211.43.1.el10_2kernel-uki-virt-addons-6.12.0-211.43.1.el10_2.aarch64.rpm
kernel-tools-libsaarch64211.43.1.el10_2kernel-tools-libs-6.12.0-211.43.1.el10_2.aarch64.rpm
kernel-debugaarch64211.43.1.el10_2kernel-debug-6.12.0-211.43.1.el10_2.aarch64.rpm
kernel-64k-coreaarch64211.43.1.el10_2kernel-64k-core-6.12.0-211.43.1.el10_2.aarch64.rpm
kernel-modules-extraaarch64211.43.1.el10_2kernel-modules-extra-6.12.0-211.43.1.el10_2.aarch64.rpm
kernel-coreaarch64211.43.1.el10_2kernel-core-6.12.0-211.43.1.el10_2.aarch64.rpm
kernel-debuginfo-common-aarch64aarch64211.43.1.el10_2kernel-debuginfo-common-aarch64-6.12.0-211.43.1.el10_2.aarch64.rpm
kernel-64k-debugaarch64211.43.1.el10_2kernel-64k-debug-6.12.0-211.43.1.el10_2.aarch64.rpm
kernel-toolsaarch64211.43.1.el10_2kernel-tools-6.12.0-211.43.1.el10_2.aarch64.rpm

Показывать по

Связанные CVE

Связанные уязвимости

oracle-oval
10 дней назад

ELSA-2026-49871: kernel security, bug fix, and enhancement update (MODERATE)

CVSS3: 5.5
ubuntu
6 месяцев назад

In the Linux kernel, the following vulnerability has been resolved: procfs: avoid fetching build ID while holding VMA lock Fix PROCMAP_QUERY to fetch optional build ID only after dropping mmap_lock or per-VMA lock, whichever was used to lock VMA under question, to avoid deadlock reported by syzbot: -> #1 (&mm->mmap_lock){++++}-{4:4}: __might_fault+0xed/0x170 _copy_to_iter+0x118/0x1720 copy_page_to_iter+0x12d/0x1e0 filemap_read+0x720/0x10a0 blkdev_read_iter+0x2b5/0x4e0 vfs_read+0x7f4/0xae0 ksys_read+0x12a/0x250 do_syscall_64+0xcb/0xf80 entry_SYSCALL_64_after_hwframe+0x77/0x7f -> #0 (&sb->s_type->i_mutex_key#8){++++}-{4:4}: __lock_acquire+0x1509/0x26d0 lock_acquire+0x185/0x340 down_read+0x98/0x490 blkdev_read_iter+0x2a7/0x4e0 __kernel_read+0x39a/0xa90 freader_fetch+0x1d5/0xa80 __build_id_parse.isra.0+0xea/0x6a0 do_procmap_query+0xd75/0x1050 procfs_procmap_ioctl+0x7a/0xb0 __x64_sys_ioctl+0x18e/0x210 do_syscall_64+0xcb/0xf80 entry_SYSCALL_64_after_hwframe+0x77/0x7f other info that might...

CVSS3: 5.5
redhat
6 месяцев назад

In the Linux kernel, the following vulnerability has been resolved: procfs: avoid fetching build ID while holding VMA lock Fix PROCMAP_QUERY to fetch optional build ID only after dropping mmap_lock or per-VMA lock, whichever was used to lock VMA under question, to avoid deadlock reported by syzbot: -> #1 (&mm->mmap_lock){++++}-{4:4}: __might_fault+0xed/0x170 _copy_to_iter+0x118/0x1720 copy_page_to_iter+0x12d/0x1e0 filemap_read+0x720/0x10a0 blkdev_read_iter+0x2b5/0x4e0 vfs_read+0x7f4/0xae0 ksys_read+0x12a/0x250 do_syscall_64+0xcb/0xf80 entry_SYSCALL_64_after_hwframe+0x77/0x7f -> #0 (&sb->s_type->i_mutex_key#8){++++}-{4:4}: __lock_acquire+0x1509/0x26d0 lock_acquire+0x185/0x340 down_read+0x98/0x490 blkdev_read_iter+0x2a7/0x4e0 __kernel_read+0x39a/0xa90 freader_fetch+0x1d5/0xa80 __build_id_parse.isra.0+0xea/0x6a0 do_procmap_query+0xd75/0x1050 procfs_procmap_ioctl+0x7a/0xb0 __x64_sys_ioctl+0x18e/0x210 do_syscall_64+0xcb/0xf80 entry_SYSCALL_64_after_hwframe+0x77/0x7f other info that might...

CVSS3: 5.5
nvd
6 месяцев назад

In the Linux kernel, the following vulnerability has been resolved: procfs: avoid fetching build ID while holding VMA lock Fix PROCMAP_QUERY to fetch optional build ID only after dropping mmap_lock or per-VMA lock, whichever was used to lock VMA under question, to avoid deadlock reported by syzbot: -> #1 (&mm->mmap_lock){++++}-{4:4}: __might_fault+0xed/0x170 _copy_to_iter+0x118/0x1720 copy_page_to_iter+0x12d/0x1e0 filemap_read+0x720/0x10a0 blkdev_read_iter+0x2b5/0x4e0 vfs_read+0x7f4/0xae0 ksys_read+0x12a/0x250 do_syscall_64+0xcb/0xf80 entry_SYSCALL_64_after_hwframe+0x77/0x7f -> #0 (&sb->s_type->i_mutex_key#8){++++}-{4:4}: __lock_acquire+0x1509/0x26d0 lock_acquire+0x185/0x340 down_read+0x98/0x490 blkdev_read_iter+0x2a7/0x4e0 __kernel_read+0x39a/0xa90 freader_fetch+0x1d5/0xa80 __build_id_parse.isra.0+0xea/0x6a0 do_procmap_query+0xd75/0x1050

CVSS3: 5.5
debian
6 месяцев назад

In the Linux kernel, the following vulnerability has been resolved: p ...