Red Hat Security Advisory: kernel-rt security update
🔗 CVE IDs covered (11)
📋 Description
CVE-2022-50447 — kernel: Bluetooth: hci_conn: Fix crash on hci_create_cis_sync CVE-2023-53539 — kernel: RDMA/rxe: Fix incomplete state save in rxe_requester CVE-2023-53675 — kernel: scsi: ses: Fix possible desc_ptr out-of-bounds accesses CVE-2023-53680 — kernel: NFSD: Avoid calling OPDESC() with ops->opnum == OP_ILLEGAL CVE-2025-38724 — kernel: nfsd: handle get_client_locked() failure in nfsd4_setclientid_confirm() CVE-2025-39825 — kernel: smb: client: fix race with concurrent opens in rename(2) CVE-2025-39925 — kernel: can: j1939: implement NETDEV_UNREGISTER notification handler CVE-2025-39982 — kernel: Bluetooth: hci_event: Fix UAF in hci_acl_create_conn_sync CVE-2025-40176 — kernel: tls: wait for pending async decryptions if tls_strp_msg_hold fails CVE-2025-68285 — kernel: libceph: fix potential use-after-free in have_mon_and_osd_map() CVE-2025-68287 — kernel: usb: dwc3: Fix race condition between concurrent dwc3_remove_requests() call paths
🔗 References (14)
- selfhttps://access.redhat.com/errata/RHSA-2026:0534
- externalhttps://access.redhat.com/security/updates/classification/#important
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2393172
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2395792
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2400629
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2400804
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2401510
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2402213
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2402293
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2404100
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2414524
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2422788
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2422801
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2026/rhsa-2026_0534.json