Details:
The kernel packages contain the Linux kernel, the core of any Linux operating system.
Security Fix(es):
kernel: rtmutex: Use waiter::task instead of current in remove_waiter() (CVE-2026-43499)
kernel: futex/requeue: Prevent NULL pointer dereference in remove_waiter() on self-deadlock (CVE-2026-53166)
kernel: XFS data corruption using reflink ()
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
0:7.3.0-427.138.1.el9_40:5.14.0-427.138.1.el9_40:5.14.0-427.138.1.el9_40:5.14.0-427.138.1.el9_40:5.14.0-427.138.1.el9_40:5.14.0-427.138.1.el9_40:5.14.0-427.138.1.el9_40:5.14.0-427.138.1.el9_40:5.14.0-427.138.1.el9_40:5.14.0-427.138.1.el9_4Exploitability
AV:LAC:LPR:LUI:NScope
S:UImpact
C:HI:HA:H7.8/CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H