Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2026:50978

Опубликовано: 07 авг. 2026
Источник: rocky
Оценка: Important

Описание

Important: kernel security, bug fix, and enhancement update

The kernel packages contain the Linux kernel, the core of any Linux operating system.

Security Fix(es):

  • kernel: xen: AMD Zen 2 Processors: Privilege escalation via improper CPU cache isolation (CVE-2025-54518)

Bug Fix(es) and Enhancement(s):

  • Kernel crash in bpf_for_each_array_elem() due to missing backport of upstream commit 4b6313cf99b0 (JIRA:Rocky Linux-191844)

  • gfs2: xfstests generic/363 failure [rhel-8.10.z] (JIRA:Rocky Linux-214099)

  • Rocky Linux8: HYPERV hv_storvsc driver can we add additional code to allow PERSISTENT_RESERVE_IN [Rocky Linux 8.10Z] (JIRA:Rocky Linux-188270)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Затронутые продукты

  • Rocky Linux 8

НаименованиеАрхитектураРелизRPM
bpftoolaarch64553.153.1.el8_10bpftool-4.18.0-553.153.1.el8_10.aarch64.rpm
kernelaarch64553.153.1.el8_10kernel-4.18.0-553.153.1.el8_10.aarch64.rpm
kernel-abi-stablelistsnoarch553.153.1.el8_10kernel-abi-stablelists-4.18.0-553.153.1.el8_10.noarch.rpm
kernel-coreaarch64553.153.1.el8_10kernel-core-4.18.0-553.153.1.el8_10.aarch64.rpm
kernel-debugaarch64553.153.1.el8_10kernel-debug-4.18.0-553.153.1.el8_10.aarch64.rpm
kernel-debug-coreaarch64553.153.1.el8_10kernel-debug-core-4.18.0-553.153.1.el8_10.aarch64.rpm
kernel-debug-develaarch64553.153.1.el8_10kernel-debug-devel-4.18.0-553.153.1.el8_10.aarch64.rpm
kernel-debuginfo-common-aarch64aarch64553.153.1.el8_10kernel-debuginfo-common-aarch64-4.18.0-553.153.1.el8_10.aarch64.rpm
kernel-debug-modulesaarch64553.153.1.el8_10kernel-debug-modules-4.18.0-553.153.1.el8_10.aarch64.rpm
kernel-debug-modules-extraaarch64553.153.1.el8_10kernel-debug-modules-extra-4.18.0-553.153.1.el8_10.aarch64.rpm

Показывать по

Связанные CVE

Исправления

Связанные уязвимости

CVSS3: 7
ubuntu
4 месяца назад

Improper isolation of shared resources within the CPU operation cache on Zen 2-based products could allow an attacker to corrupt instructions executed at a different privilege level, potentially resulting in privilege escalation.

CVSS3: 7
redhat
4 месяца назад

Improper isolation of shared resources within the CPU operation cache on Zen 2-based products could allow an attacker to corrupt instructions executed at a different privilege level, potentially resulting in privilege escalation.

CVSS3: 7
nvd
4 месяца назад

Improper isolation of shared resources within the CPU operation cache on Zen 2-based products could allow an attacker to corrupt instructions executed at a different privilege level, potentially resulting in privilege escalation.

msrc
4 месяца назад

AMD: CVE-2025-54518 CPU OP Cache Corruption

CVSS3: 7
debian
4 месяца назад

Improper isolation of shared resources within the CPU operation cache ...