Details:
The kernel packages contain the Linux kernel, the core of any Linux operating system.
Security Fix(es):
kernel: xfrm: Duplicate SPI Handling (CVE-2025-39797)
kernel: lib/buildid: use __kernel_read() for sleepable context (CVE-2026-23002)
kernel: futex: Drop CLONE_THREAD requirement for private default hash alloc (CVE-2026-52973)
kernel: iommu/vt-d: Avoid NULL pointer dereference or refcount corruption (CVE-2026-53281)
kernel: blk-mq: pop cached request if it is usable (CVE-2026-64017)
Bug Fix(es) and Enhancement(s):
general protection fault during exportfs / nfsd4_revoke_states [rhel-9.8.z] (JIRA:RHEL-188257)
Enable Pretimeout Watchdog Panic Functionality on x86 [rhel-9.8.z] (JIRA:RHEL-193729)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
0:5.14.0-687.31.1.el9_80:5.14.0-687.31.1.el9_80:5.14.0-687.31.1.el9_80:5.14.0-687.31.1.el9_80:5.14.0-687.31.1.el9_80:5.14.0-687.31.1.el9_80:5.14.0-687.31.1.el9_80:5.14.0-687.31.1.el9_80:5.14.0-687.31.1.el9_80:5.14.0-687.31.1.el9_8Exploitability
AV:LAC:HPR:LUI:NScope
S:UImpact
C:HI:HA:H7.0/CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H