RHSA-2026:25120: Critical: kernel-rt security update

Published Jun 10, 2026
·
Updated

Critical: kernel-rt security update

Other sources

The kernel-rt packages provide the Real Time Linux Kernel, which enables fine-tuning for systems with extremely high determinism requirements.Security Fix(es): kernel: geneve: Fix use-after-free in genevefinddev(). (CVE-2025-21858) kernel: smc: Fix use-after-free in tcpwritetimerhandler() (CVE-2023-53781) kernel: nbd: defer config unlock in nbdgenlconnect (CVE-2025-68366) kernel: libceph: prevent potential out-of-bounds reads in handleauthdone() (CVE-2026-22984) kernel: libceph: replace overzealous BUGON in osdmapapplyincremental() (CVE-2026-22990) kernel: netfilter: nftables: release flowtable after rcu grace period on error (CVE-2026-23392) kernel: ALSA: 6fire: fix use-after-free on disconnect (CVE-2026-31581) kernel: smb: client: fix OOB reads parsing symlink error response (CVE-2026-31613) kernel: ip6tunnel: clear skb2->cb[] in ip4ip6err() (CVE-2026-43037) kernel: ipv6: icmp: clear skb2->cb[] in ip6errgenicmpv6unreach() (CVE-2026-43038) kernel: dlm: validate length in dlmsearchrsbtree (CVE-2026-43125) kernel: RDMA/rxe: Fix double free in rxesrqfrominit (CVE-2026-45852) kernel: RDMA/mlx4: Fix mis-use of RCU in mlx4srqevent() (CVE-2026-46181) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Red Hat

Affected Software

18 affected componentsFixes available
Red Hat Red Hat Enterprise Linux for x86_64 - Extended Life Cycle
Red Hat Red Hat Enterprise Linux for Real Time
Red Hat Red Hat Enterprise Linux for Real Time for NFV
redhat/kernel-rt<4.18.0-553.132.1.rt7.473.el8_10
4.18.0-553.132.1.rt7.473.el8_10
redhat/kernel-rt<4.18.0-553.132.1.rt7.473.el8_10
4.18.0-553.132.1.rt7.473.el8_10
redhat/kernel-rt-core<4.18.0-553.132.1.rt7.473.el8_10
4.18.0-553.132.1.rt7.473.el8_10
redhat/kernel-rt-debug<4.18.0-553.132.1.rt7.473.el8_10
4.18.0-553.132.1.rt7.473.el8_10
redhat/kernel-rt-debug-core<4.18.0-553.132.1.rt7.473.el8_10
4.18.0-553.132.1.rt7.473.el8_10
redhat/kernel-rt-debug-debuginfo<4.18.0-553.132.1.rt7.473.el8_10
4.18.0-553.132.1.rt7.473.el8_10
redhat/kernel-rt-debug-devel<4.18.0-553.132.1.rt7.473.el8_10
4.18.0-553.132.1.rt7.473.el8_10
redhat/kernel-rt-debug-modules<4.18.0-553.132.1.rt7.473.el8_10
4.18.0-553.132.1.rt7.473.el8_10
redhat/kernel-rt-debug-modules-extra<4.18.0-553.132.1.rt7.473.el8_10
4.18.0-553.132.1.rt7.473.el8_10
redhat/kernel-rt-debuginfo<4.18.0-553.132.1.rt7.473.el8_10
4.18.0-553.132.1.rt7.473.el8_10
redhat/kernel-rt-devel<4.18.0-553.132.1.rt7.473.el8_10
4.18.0-553.132.1.rt7.473.el8_10
redhat/kernel-rt-modules<4.18.0-553.132.1.rt7.473.el8_10
4.18.0-553.132.1.rt7.473.el8_10
redhat/kernel-rt-modules-extra<4.18.0-553.132.1.rt7.473.el8_10
4.18.0-553.132.1.rt7.473.el8_10
redhat/kernel-rt-debug-kvm<4.18.0-553.132.1.rt7.473.el8_10
4.18.0-553.132.1.rt7.473.el8_10
redhat/kernel-rt-kvm<4.18.0-553.132.1.rt7.473.el8_10
4.18.0-553.132.1.rt7.473.el8_10

Remediation

Event History

Jun 10, 2026
Advisory Published
via Red Hat·12:00 AM
Data Sourced
via Red Hat·12:00 AM
RemedyDescriptionAffected Software
Advisory Published
via Red Hat·07:29 PM
Data Sourced
via Red Hat·07:29 PM
Severity
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is the severity of RHSA-2026:25120?

The severity of RHSA-2026:25120 is critical with a CVSS score of 9.

2

What are the security fixes included in RHSA-2026:25120?

RHSA-2026:25120 addresses a use-after-free vulnerability in the geneve_find_dev() function as part of its security fixes.

3

How do I fix RHSA-2026:25120?

To fix RHSA-2026:25120, apply the kernel-rt security update and reboot the system for changes to take effect.

4

What systems are affected by RHSA-2026:25120?

RHSA-2026:25120 affects Red Hat Enterprise Linux for x86_64 and other related kernel-rt packages.

5

What vulnerabilities does RHSA-2026:25120 address?

RHSA-2026:25120 addresses vulnerabilities related to use-after-free and double-free issues in the kernel.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203