RHSA-2026:13566HighCVSS 7.8
Red Hat Security Advisory: kernel security update
🔗 CVE IDs covered (5)
📋 Description
CVE-2026-23270 — kernel: Linux kernel: Use-after-free in traffic control (act_ct) may lead to denial of service or privilege escalation CVE-2026-31402 — kernel: nfsd: fix heap overflow in NFSv4.0 LOCK replay cache CVE-2026-31419 — kernel: Linux kernel: Use-after-free in bonding driver leads to denial of service CVE-2026-31431 — kernel: crypto: algif_aead - Revert to operating out-of-place CVE-2026-43077 — kernel: crypto: algif_aead - Fix minimum RX size check for decryption
🔗 References (7)
- selfhttps://access.redhat.com/errata/RHSA-2026:13566
- externalhttps://access.redhat.com/security/updates/classification/#important
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2448745
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2454844
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2457829
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2460538
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2026/rhsa-2026_13566.json