RHSA-2026:25120: Critical: kernel-rt security update
Critical: kernel-rt security update
Other sources
The kernel-rt packages provide the Real Time Linux Kernel, which enables fine-tuning for systems with extremely high determinism requirements.Security Fix(es): kernel: geneve: Fix use-after-free in genevefinddev(). (CVE-2025-21858) kernel: smc: Fix use-after-free in tcpwritetimerhandler() (CVE-2023-53781) kernel: nbd: defer config unlock in nbdgenlconnect (CVE-2025-68366) kernel: libceph: prevent potential out-of-bounds reads in handleauthdone() (CVE-2026-22984) kernel: libceph: replace overzealous BUGON in osdmapapplyincremental() (CVE-2026-22990) kernel: netfilter: nftables: release flowtable after rcu grace period on error (CVE-2026-23392) kernel: ALSA: 6fire: fix use-after-free on disconnect (CVE-2026-31581) kernel: smb: client: fix OOB reads parsing symlink error response (CVE-2026-31613) kernel: ip6tunnel: clear skb2->cb[] in ip4ip6err() (CVE-2026-43037) kernel: ipv6: icmp: clear skb2->cb[] in ip6errgenicmpv6unreach() (CVE-2026-43038) kernel: dlm: validate length in dlmsearchrsbtree (CVE-2026-43125) kernel: RDMA/rxe: Fix double free in rxesrqfrominit (CVE-2026-45852) kernel: RDMA/mlx4: Fix mis-use of RCU in mlx4srqevent() (CVE-2026-46181) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2026:25120?
The severity of RHSA-2026:25120 is critical with a CVSS score of 9.
What are the security fixes included in RHSA-2026:25120?
RHSA-2026:25120 addresses a use-after-free vulnerability in the geneve_find_dev() function as part of its security fixes.
How do I fix RHSA-2026:25120?
To fix RHSA-2026:25120, apply the kernel-rt security update and reboot the system for changes to take effect.
What systems are affected by RHSA-2026:25120?
RHSA-2026:25120 affects Red Hat Enterprise Linux for x86_64 and other related kernel-rt packages.
What vulnerabilities does RHSA-2026:25120 address?
RHSA-2026:25120 addresses vulnerabilities related to use-after-free and double-free issues in the kernel.