Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2026:6037

Опубликовано: 07 апр. 2026
Источник: rocky
Оценка: Moderate

Описание

Moderate: kernel security update

The kernel packages contain the Linux kernel, the core of any Linux operating system.

Security Fix(es):

  • kernel: Linux kernel: Use-After-Free vulnerability in ATM subsystem (CVE-2025-38180)

  • kernel: macvlan: fix error recovery in macvlan_common_newlink() (CVE-2026-23209)

  • kernel: net/sched: cls_u32: use skb_header_pointer_careful() (CVE-2026-23204)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Затронутые продукты

  • Rocky Linux 8

НаименованиеАрхитектураРелизRPM
bpftoolx86_64553.115.1.el8_10bpftool-4.18.0-553.115.1.el8_10.x86_64.rpm
kernelx86_64553.115.1.el8_10kernel-4.18.0-553.115.1.el8_10.x86_64.rpm
kernel-abi-stablelistsnoarch553.115.1.el8_10kernel-abi-stablelists-4.18.0-553.115.1.el8_10.noarch.rpm
kernel-corex86_64553.115.1.el8_10kernel-core-4.18.0-553.115.1.el8_10.x86_64.rpm
kernel-debugx86_64553.115.1.el8_10kernel-debug-4.18.0-553.115.1.el8_10.x86_64.rpm
kernel-debug-corex86_64553.115.1.el8_10kernel-debug-core-4.18.0-553.115.1.el8_10.x86_64.rpm
kernel-debug-develx86_64553.115.1.el8_10kernel-debug-devel-4.18.0-553.115.1.el8_10.x86_64.rpm
kernel-debuginfo-common-x86_64x86_64553.115.1.el8_10kernel-debuginfo-common-x86_64-4.18.0-553.115.1.el8_10.x86_64.rpm
kernel-debug-modulesx86_64553.115.1.el8_10kernel-debug-modules-4.18.0-553.115.1.el8_10.x86_64.rpm
kernel-debug-modules-extrax86_64553.115.1.el8_10kernel-debug-modules-extra-4.18.0-553.115.1.el8_10.x86_64.rpm

Показывать по

Связанные уязвимости

oracle-oval
4 месяца назад

ELSA-2026-6037: kernel security update (MODERATE)

rocky
4 месяца назад

Moderate: kernel security update

oracle-oval
4 месяца назад

ELSA-2026-6153: kernel security update (MODERATE)

CVSS3: 7.8
ubuntu
около 1 года назад

In the Linux kernel, the following vulnerability has been resolved: net: atm: fix /proc/net/atm/lec handling /proc/net/atm/lec must ensure safety against dev_lec[] changes. It appears it had dev_put() calls without prior dev_hold(), leading to imbalance and UAF.

CVSS3: 7.1
redhat
около 1 года назад

In the Linux kernel, the following vulnerability has been resolved: net: atm: fix /proc/net/atm/lec handling /proc/net/atm/lec must ensure safety against dev_lec[] changes. It appears it had dev_put() calls without prior dev_hold(), leading to imbalance and UAF.