Important: kernel security update
The kernel packages contain the Linux kernel, the core of any Linux operating system. Security Fix(es): * kernel: scsi: target: iscsi: Fix use-after-free in iscsit_dec_conn_usage_count() (CVE-2026-23216) * kernel: Linux kernel: Use-after-free in bonding driver leads to denial of service (CVE-2026-31419) * kernel: net: openvswitch: Avoid releasing netdev before teardown completes (CVE-2026-31508) * kernel: ALSA: 6fire: fix use-after-free on disconnect (CVE-2026-31581) * kernel: ip6_tunnel: clear skb2->cb[] in ip4ip6_err() (CVE-2026-43037) * kernel: net: mana: fix use-after-free in add_adev() error path (CVE-2026-43056) * kernel: netfilter: ctnetlink: ensure safe access to master conntrack (CVE-2026-43116) * kernel: dlm: validate length in dlm_search_rsb_tree (CVE-2026-43125) * kernel: ipv6: rpl: reserve mac_len headroom when recompressed SRH grows (CVE-2026-43501) * kernel: RDMA/rxe: Fix double free in rxe_srq_from_init (CVE-2026-45852) * kernel: RDMA/mlx4: Fix mis-use of RCU in mlx4_srq_event() (CVE-2026-46181) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
02 / AFFECTED SOFTWARE
Affected packages
03 / CONNECTIONS
Connected vulnerabilities
04 / EVIDENCE
Source records
The kernel packages contain the Linux kernel, the core of any Linux operating system. Security Fix(es): * kernel: scsi: target: iscsi: Fix use-after-free in iscsit_dec_conn_usage_count() (CVE-2026-23216) * kernel: Linux kernel: Use-after-free in bonding driver leads to denial of service (CVE-2026-31419) * kernel: net: openvswitch: Avoid releasing netdev before teardown completes (CVE-2026-31508) * kernel: ALSA: 6fire: fix use-after-free on disconnect (CVE-2026-31581) * kernel: ip6_tunnel: clear skb2->cb[] in ip4ip6_err() (CVE-2026-43037) * kernel: net: mana: fix use-after-free in add_adev() error path (CVE-2026-43056) * kernel: netfilter: ctnetlink: ensure safe access to master conntrack (CVE-2026-43116) * kernel: dlm: validate length in dlm_search_rsb_tree (CVE-2026-43125) * kernel: ipv6: rpl: reserve mac_len headroom when recompressed SRH grows (CVE-2026-43501) * kernel: RDMA/rxe: Fix double free in rxe_srq_from_init (CVE-2026-45852) * kernel: RDMA/mlx4: Fix mis-use of RCU in mlx4_srq_event() (CVE-2026-46181) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
05 / REFERENCES
Further evidence
- https://access.redhat.com/errata/RHSA-2026:25217
- https://access.redhat.com/security/cve/CVE-2026-23216
- https://access.redhat.com/security/cve/CVE-2026-31419
- https://access.redhat.com/security/cve/CVE-2026-31508
- https://access.redhat.com/security/cve/CVE-2026-31581
- https://access.redhat.com/security/cve/CVE-2026-43037
- https://access.redhat.com/security/cve/CVE-2026-43056
- https://access.redhat.com/security/cve/CVE-2026-43116
- https://access.redhat.com/security/cve/CVE-2026-43125
- https://access.redhat.com/security/cve/CVE-2026-43501
- https://access.redhat.com/security/cve/CVE-2026-45852
- https://access.redhat.com/security/cve/CVE-2026-46181
- https://bugzilla.redhat.com/2440630
- https://bugzilla.redhat.com/2457829
- https://bugzilla.redhat.com/2460641
- https://bugzilla.redhat.com/2461471
- https://bugzilla.redhat.com/2464351
- https://bugzilla.redhat.com/2464449
- https://bugzilla.redhat.com/2467005
- https://bugzilla.redhat.com/2467234
- https://bugzilla.redhat.com/2480457
- https://bugzilla.redhat.com/2482166
- https://bugzilla.redhat.com/2482532
- https://errata.almalinux.org/9/ALSA-2026-25217.html