Monitor vulnerabilities like this one.
Sign up free to get alerted when software you use is affected.
8.4
Important: Linux Kernel Update Fixes Security Risks
RLSA-2026:36018
Summary
This update addresses multiple security vulnerabilities in the Linux kernel, which could allow attackers to access sensitive information, escalate privileges, or cause a system crash. Affected systems include Linux-based servers and workstations. To ensure system security, update the Linux kernel to the latest version.
What to do
- Update kernel to version 0:5.14.0-687.22.1.el9_8.
Affected software
| Ecosystem | Vendor | Product | Affected versions |
|---|---|---|---|
| Rocky Linux:9 | – | kernel |
< 0:5.14.0-687.22.1.el9_8 Fix: upgrade to 0:5.14.0-687.22.1.el9_8
|
Original title
Important: kernel security, bug fix, and enhancement update
Original description
The kernel packages contain the Linux kernel, the core of any Linux operating system.
Security Fix(es):
* kernel: fs/smb/client: fix out-of-bounds read in cifs_sanitize_prepath (CVE-2026-43112)
* kernel: net: mana: Fix double destroy_workqueue on service rescan PCI path (CVE-2026-43276)
* kernel: Linux kernel: Use-After-Free in net/gro due to improper handling of zerocopy skbs (CVE-2026-46323)
* kernel: xfrm: defensively unhash xfrm_state lists in __xfrm_state_delete (CVE-2026-46116)
* kernel: sctp: revalidate list cursor after sctp_sendmsg_to_asoc() in SCTP_SENDALL (CVE-2026-46227)
* kernel: drm/gem: Fix inconsistent plane dimension calculation in drm_gem_fb_init_with_funcs() (CVE-2026-46209)
* kernel: smb/client: fix out-of-bounds read in smb2_compound_op() (CVE-2026-46155)
* kernel: netfilter: nft_inner: Fix IPv6 inner_thoff desync (CVE-2026-46244)
* kernel: procfs: fix missing RCU protection when reading real_parent in do_task_stat() (CVE-2026-46259)
* kernel: Arm Processors: Privilege escalation or information disclosure via writes to higher exception level resources (CVE-2025-10263)
* kernel: KVM: arm64: vgic-its: Drop the translation cache reference only for the erased entry (CVE-2026-46316)
Bug Fix(es) and Enhancement(s):
* WARNING at drivers/gpu/drm/nouveau/nvkm/subdev/gsp/r535.c:1585 r535_gsp_fini+0x2fb/0x310 [nouveau] [rhel-9.8.z] (JIRA:Rocky Linux-160966)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Security Fix(es):
* kernel: fs/smb/client: fix out-of-bounds read in cifs_sanitize_prepath (CVE-2026-43112)
* kernel: net: mana: Fix double destroy_workqueue on service rescan PCI path (CVE-2026-43276)
* kernel: Linux kernel: Use-After-Free in net/gro due to improper handling of zerocopy skbs (CVE-2026-46323)
* kernel: xfrm: defensively unhash xfrm_state lists in __xfrm_state_delete (CVE-2026-46116)
* kernel: sctp: revalidate list cursor after sctp_sendmsg_to_asoc() in SCTP_SENDALL (CVE-2026-46227)
* kernel: drm/gem: Fix inconsistent plane dimension calculation in drm_gem_fb_init_with_funcs() (CVE-2026-46209)
* kernel: smb/client: fix out-of-bounds read in smb2_compound_op() (CVE-2026-46155)
* kernel: netfilter: nft_inner: Fix IPv6 inner_thoff desync (CVE-2026-46244)
* kernel: procfs: fix missing RCU protection when reading real_parent in do_task_stat() (CVE-2026-46259)
* kernel: Arm Processors: Privilege escalation or information disclosure via writes to higher exception level resources (CVE-2025-10263)
* kernel: KVM: arm64: vgic-its: Drop the translation cache reference only for the erased entry (CVE-2026-46316)
Bug Fix(es) and Enhancement(s):
* WARNING at drivers/gpu/drm/nouveau/nvkm/subdev/gsp/r535.c:1585 r535_gsp_fini+0x2fb/0x310 [nouveau] [rhel-9.8.z] (JIRA:Rocky Linux-160966)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
osv CVSS3.1
8.4
- https://errata.rockylinux.org/RLSA-2026:36018 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2467015 Third Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2467113 Third Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2479832 Third Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2482523 Third Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2482564 Third Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2482636 Third Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2482660 Third Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2484451 Third Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2484477 Third Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2486958 Third Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2486982 Third Party Advisory
Published: 11 Jul 2026 · Updated: 11 Jul 2026 · First seen: 11 Jul 2026