|
|
Log in / Subscribe / Register

Red Hat alert RHSA-2026:59663-01 (kernel-rt)

An update for kernel-rt is now available for Red Hat Enterprise Linux 9.2
Update Services for SAP Solutions.

Red Hat Product Security has rated this update as having a security impact of
Important. A Common Vulnerability Scoring System (CVSS) base score, which
gives a detailed severity rating, is available for each vulnerability from
the CVE link(s) in the References section.

The kernel-rt packages provide the Real Time Linux Kernel, which enables
fine-tuning for systems with extremely high determinism requirements.

Security Fix(es):

* kernel: net: atm: fix crash due to unvalidated vcc pointer in sigd_send()
(CVE-2026-31411)

* kernel: fs/smb/client: fix out-of-bounds read in cifs_sanitize_prepath
(CVE-2026-43112)

* kernel: net: ipv6: fix NOREF dst use in seg6 and rpl lwtunnels
(CVE-2026-46099)

* kernel: dm log: fix out-of-bounds write due to region_count overflow
(CVE-2026-53059)

Bug Fix(es) and Enhancement(s):

* [RHEL 9] Bonding reports unknown speed/duplex for tg3 interface
(JIRA:RHEL-182765)

* vhost: reset the vring metadata cache on vring reconfiguration
(JIRA:RHEL-224546)

For more details about the security issue(s), including the impact, a CVSS
score, acknowledgments, and other related information, refer to the CVE
page(s) listed in the References section.

This content is licensed under the Creative Commons Attribution 4.0
International License (https://creativecommons.org/licenses/by/4.0/). If you
distribute this content, or a modified version of it, you must provide
attribution to Red Hat Inc. and provide a link to the original.

Original: https://access.redhat.com/security/data/csaf/v2/advisories/2026/rhsa-2026_59663.json


to post comments


Copyright © 2026, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds