RHSA-2026:25533: Critical: kernel security update
Critical: kernel security update
Other sources
The kernel packages contain the Linux kernel, the core of any Linux operating system.Security Fix(es): kernel: nvme: avoid double free special payload (CVE-2024-41073) kernel: sctp: fix a potential overflow in sctpifwdtsnskip (CVE-2023-53372) kernel: net: use dstdevrcu() in sksetupcaps() (CVE-2025-40170) kernel: ipv6: use RCU in ip6xmit() (CVE-2025-40135) kernel: ipv6: use RCU in ip6output() (CVE-2025-40158) kernel: nbd: defer config unlock in nbdgenlconnect (CVE-2025-68366) kernel: crypto: asymmetrickeys - prevent overflow in asymmetrickeygenerateid (CVE-2025-68724) kernel: iommu: disable SVA when CONFIGX86 is set (CVE-2025-71089) kernel: macvlan: fix possible UAF in macvlanforwardsource() (CVE-2026-23001) kernel: scsi: target: iscsi: Fix use-after-free in iscsitdecconnusagecount() (CVE-2026-23216) kernel: can: raw: fix ro->uniq use-after-free in rawrcv() (CVE-2026-31532) kernel: netfilter: ip6teui64: reject invalid MAC header for all packets (CVE-2026-31685) kernel: ip6tunnel: clear skb2->cb[] in ip4ip6err() (CVE-2026-43037) kernel: ipv6: icmp: clear skb2->cb[] in ip6errgenicmpv6unreach() (CVE-2026-43038) kernel: wifi: brcmfmac: validate bsscfg indices in IF events (CVE-2026-43110) kernel: netfilter: xttcpmss: check remaining length before reading optlen (CVE-2026-43190) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2026:25533?
The severity of RHSA-2026:25533 is classified as critical with a score of 9.
How do I fix RHSA-2026:25533?
To fix RHSA-2026:25533, apply the kernel security update and reboot your system.
What vulnerabilities are addressed in RHSA-2026:25533?
RHSA-2026:25533 addresses CVE-2024-41073 and CVE-2023-53372 vulnerabilities.
Which packages are included in RHSA-2026:25533?
The update includes the Red Hat kernel packages and other related software components.
What are the risks associated with RHSA-2026:25533?
RHSA-2026:25533 poses risks such as use after free and double free vulnerabilities that could lead to system exploitation.