RHSA-2026:47633HighCVSS 7.1

Red Hat Security Advisory: kernel security, bug fix, and enhancement update

Published
July 30, 2026
Last Modified
August 17, 2026

🔗 CVE IDs covered (10)

📋 Description

CVE-2025-68183 — kernel: ima: don't clear IMA_DIGSIG flag when setting or removing non-IMA xattr CVE-2025-68724 — kernel: crypto: asymmetric_keys - prevent overflow in asymmetric_key_generate_id CVE-2026-31613 — kernel: smb: client: fix OOB reads parsing symlink error response CVE-2026-31684 — kernel: net: sched: act_csum: validate nested VLAN headers CVE-2026-43027 — kernel: netfilter: nf_conntrack_helper: pass helper to expect cleanup CVE-2026-43279 — kernel: ALSA: usb-audio: Add sanity check for OOB writes at silencing CVE-2026-46116 — kernel: xfrm: defensively unhash xfrm_state lists in __xfrm_state_delete CVE-2026-46135 — kernel: nvmet-tcp: fix race between ICReq handling and queue teardown CVE-2026-46189 — kernel: RDMA/vmw_pvrdma: Fix double free on pvrdma_alloc_ucontext() error path CVE-2026-46209 — kernel: drm/gem: Fix inconsistent plane dimension calculation in drm_gem_fb_init_with_funcs()

🎯 Affected products52

  • Red Hat Enterprise Linux BaseOS AUS (v.8.4)
  • Red Hat Enterprise Linux BaseOS EUS EXTENSION (v.8.4)
  • bpftool-0:4.18.0-305.199.1.el8_4.x86_64 as a component of Red Hat Enterprise Linux BaseOS AUS (v.8.4)
  • bpftool-0:4.18.0-305.199.1.el8_4.x86_64 as a component of Red Hat Enterprise Linux BaseOS EUS EXTENSION (v.8.4)
  • bpftool-debuginfo-0:4.18.0-305.199.1.el8_4.x86_64 as a component of Red Hat Enterprise Linux BaseOS AUS (v.8.4)
  • bpftool-debuginfo-0:4.18.0-305.199.1.el8_4.x86_64 as a component of Red Hat Enterprise Linux BaseOS EUS EXTENSION (v.8.4)
  • kernel-0:4.18.0-305.199.1.el8_4.src as a component of Red Hat Enterprise Linux BaseOS AUS (v.8.4)
  • kernel-0:4.18.0-305.199.1.el8_4.src as a component of Red Hat Enterprise Linux BaseOS EUS EXTENSION (v.8.4)
  • kernel-0:4.18.0-305.199.1.el8_4.x86_64 as a component of Red Hat Enterprise Linux BaseOS AUS (v.8.4)
  • kernel-0:4.18.0-305.199.1.el8_4.x86_64 as a component of Red Hat Enterprise Linux BaseOS EUS EXTENSION (v.8.4)
  • kernel-abi-stablelists-0:4.18.0-305.199.1.el8_4.noarch as a component of Red Hat Enterprise Linux BaseOS AUS (v.8.4)
  • kernel-abi-stablelists-0:4.18.0-305.199.1.el8_4.noarch as a component of Red Hat Enterprise Linux BaseOS EUS EXTENSION (v.8.4)
  • kernel-core-0:4.18.0-305.199.1.el8_4.x86_64 as a component of Red Hat Enterprise Linux BaseOS AUS (v.8.4)
  • kernel-core-0:4.18.0-305.199.1.el8_4.x86_64 as a component of Red Hat Enterprise Linux BaseOS EUS EXTENSION (v.8.4)
  • kernel-debug-0:4.18.0-305.199.1.el8_4.x86_64 as a component of Red Hat Enterprise Linux BaseOS AUS (v.8.4)
  • kernel-debug-0:4.18.0-305.199.1.el8_4.x86_64 as a component of Red Hat Enterprise Linux BaseOS EUS EXTENSION (v.8.4)
  • kernel-debug-core-0:4.18.0-305.199.1.el8_4.x86_64 as a component of Red Hat Enterprise Linux BaseOS AUS (v.8.4)
  • kernel-debug-core-0:4.18.0-305.199.1.el8_4.x86_64 as a component of Red Hat Enterprise Linux BaseOS EUS EXTENSION (v.8.4)
  • kernel-debug-debuginfo-0:4.18.0-305.199.1.el8_4.x86_64 as a component of Red Hat Enterprise Linux BaseOS AUS (v.8.4)
  • kernel-debug-debuginfo-0:4.18.0-305.199.1.el8_4.x86_64 as a component of Red Hat Enterprise Linux BaseOS EUS EXTENSION (v.8.4)
  • kernel-debug-devel-0:4.18.0-305.199.1.el8_4.x86_64 as a component of Red Hat Enterprise Linux BaseOS AUS (v.8.4)
  • kernel-debug-devel-0:4.18.0-305.199.1.el8_4.x86_64 as a component of Red Hat Enterprise Linux BaseOS EUS EXTENSION (v.8.4)
  • kernel-debug-modules-0:4.18.0-305.199.1.el8_4.x86_64 as a component of Red Hat Enterprise Linux BaseOS AUS (v.8.4)
  • kernel-debug-modules-0:4.18.0-305.199.1.el8_4.x86_64 as a component of Red Hat Enterprise Linux BaseOS EUS EXTENSION (v.8.4)
  • kernel-debug-modules-extra-0:4.18.0-305.199.1.el8_4.x86_64 as a component of Red Hat Enterprise Linux BaseOS AUS (v.8.4)
  • kernel-debug-modules-extra-0:4.18.0-305.199.1.el8_4.x86_64 as a component of Red Hat Enterprise Linux BaseOS EUS EXTENSION (v.8.4)
  • kernel-debuginfo-0:4.18.0-305.199.1.el8_4.x86_64 as a component of Red Hat Enterprise Linux BaseOS AUS (v.8.4)
  • kernel-debuginfo-0:4.18.0-305.199.1.el8_4.x86_64 as a component of Red Hat Enterprise Linux BaseOS EUS EXTENSION (v.8.4)
  • kernel-debuginfo-common-x86_64-0:4.18.0-305.199.1.el8_4.x86_64 as a component of Red Hat Enterprise Linux BaseOS AUS (v.8.4)
  • kernel-debuginfo-common-x86_64-0:4.18.0-305.199.1.el8_4.x86_64 as a component of Red Hat Enterprise Linux BaseOS EUS EXTENSION (v.8.4)
  • +22 more not shown

✅ Remediation

For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 The system must be rebooted for this update to take effect. Workaround: Mitigation for this issue is either not available or the currently available options don't meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base or stability.

🔗 References (13)