Details:
The kernel packages contain the Linux kernel, the core of any Linux operating system.
Security Fix(es):
kernel: VMCI: Fix use-after-free when removing resource in vmci_resource_remove() (CVE-2024-46738)
kernel: vt: prevent kernel-infoleak in con_font_get() (CVE-2024-50076)
kernel: Bluetooth: hci_event: Fix UAF in hci_acl_create_conn_sync (CVE-2025-39982)
kernel: drm/amd/display: Do not skip unrelated mode changes in DSC validation (CVE-2026-31488)
kernel: smb: client: fix OOB reads parsing symlink error response (CVE-2026-31613)
kernel: net: sched: act_csum: validate nested VLAN headers (CVE-2026-31684)
kernel: xfrm: defensively unhash xfrm_state lists in __xfrm_state_delete (CVE-2026-46116)
kernel: drm/gem: Fix inconsistent plane dimension calculation in drm_gem_fb_init_with_funcs() (CVE-2026-46209)
Bug Fix(es) and Enhancement(s):
"Send error in SessSetup" messages fill up the logs [rhel-9.6.z] (JIRA:RHEL-145508)
Fix suspend/resume printk bug in C9s [rhel-9.6.z] (JIRA:RHEL-148301)
RHEL9.4 - s390/pci: Fix __pcilg_mio_inuser() inline assembly [rhel-9.6.z] (JIRA:RHEL-161490)
NVMe-FC: Panic during NVMe Controller Reset tests [rhel-9.6.z] (JIRA:RHEL-171743)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
0:5.14.0-570.129.1.el9_60:5.14.0-570.129.1.el9_60:5.14.0-570.129.1.el9_60:5.14.0-570.129.1.el9_60:5.14.0-570.129.1.el9_60:5.14.0-570.129.1.el9_60:5.14.0-570.129.1.el9_60:5.14.0-570.129.1.el9_60:5.14.0-570.129.1.el9_60:5.14.0-570.129.1.el9_6Exploitability
AV:LAC:LPR:LUI:NScope
S:UImpact
C:HI:HA:H7.8/CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H