Red Hat Security Advisory: kernel security update
🔗 CVE IDs covered (13)
📋 Description
CVE-2023-53781 — kernel: smc: Fix use-after-free in tcp_write_timer_handler() CVE-2025-21858 — kernel: geneve: Fix use-after-free in geneve_find_dev(). CVE-2025-68366 — kernel: nbd: defer config unlock in nbd_genl_connect CVE-2026-22984 — kernel: libceph: prevent potential out-of-bounds reads in handle_auth_done() CVE-2026-22990 — kernel: libceph: replace overzealous BUG_ON in osdmap_apply_incremental() CVE-2026-23392 — kernel: netfilter: nf_tables: release flowtable after rcu grace period on error CVE-2026-31581 — kernel: ALSA: 6fire: fix use-after-free on disconnect CVE-2026-31613 — kernel: smb: client: fix OOB reads parsing symlink error response CVE-2026-43037 — kernel: ip6_tunnel: clear skb2->cb[] in ip4ip6_err() CVE-2026-43038 — kernel: ipv6: icmp: clear skb2->cb[] in ip6_err_gen_icmpv6_unreach() CVE-2026-43125 — kernel: dlm: validate length in dlm_search_rsb_tree CVE-2026-45852 — kernel: RDMA/rxe: Fix double free in rxe_srq_from_init CVE-2026-46181 — kernel: RDMA/mlx4: Fix mis-use of RCU in mlx4_srq_event()
🔗 References (16)
- selfhttps://access.redhat.com/errata/RHSA-2026:25121
- externalhttps://access.redhat.com/security/updates/classification/#critical
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2351619
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2420279
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2424881
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2432389
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2432400
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2451218
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2461471
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2461480
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2464351
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2464397
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2467234
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2482166
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2482532
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2026/rhsa-2026_25121.json