RHSA-2026:28748: Critical: kpatch-patch-4_18_0-477_107_1, kpatch-patch-4_18_0-477_120_1, kpatch-patch-4_18_0-477_130_1, kpatch-patch-4_18_0-477_143_1, and kpatch-patch-4_18_0-477_97_1 security update
Critical: kpatch-patch-4180-4771071, kpatch-patch-4180-4771201, kpatch-patch-4180-4771301, kpatch-patch-4180-4771431, and kpatch-patch-4180-477971 security update
Other sources
This is a kernel live patch module which can be loaded by the kpatch command line utility to modify the code of a running kernel. This patch module is targeted for kernel-4.18.0-477.97.1.el88.Security Fix(es): kernel: ip6tunnel: clear skb2->cb[] in ip4ip6err() (CVE-2026-43037) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
— Red Hat
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
redhat/kpatch-patchto a version that resolves this vulnerability.Fixed in 4_18_0-477_107_1-1-7.el8_8 - Upgrade
Upgrade
redhat/kpatch-patchto a version that resolves this vulnerability.Fixed in 4_18_0-477_120_1-1-6.el8_8 - Upgrade
Upgrade
redhat/kpatch-patchto a version that resolves this vulnerability.Fixed in 4_18_0-477_130_1-1-4.el8_8 - Upgrade
Upgrade
redhat/kpatch-patchto a version that resolves this vulnerability.Fixed in 4_18_0-477_143_1-1-1.el8_8 - Upgrade
Upgrade
redhat/kpatch-patchto a version that resolves this vulnerability.Fixed in 4_18_0-477_97_1-1-11.el8_8 - Upgrade
Upgrade
redhat/kpatch-patchto a version that resolves this vulnerability.Fixed in 4_18_0-477_107_1-debuginfo-1-7.el8_8 - Upgrade
Upgrade
redhat/kpatch-patchto a version that resolves this vulnerability.Fixed in 4_18_0-477_107_1-debugsource-1-7.el8_8 - Upgrade
Upgrade
redhat/kpatch-patchto a version that resolves this vulnerability.Fixed in 4_18_0-477_120_1-debuginfo-1-6.el8_8 - Upgrade
Upgrade
redhat/kpatch-patchto a version that resolves this vulnerability.Fixed in 4_18_0-477_120_1-debugsource-1-6.el8_8 - Upgrade
Upgrade
redhat/kpatch-patchto a version that resolves this vulnerability.Fixed in 4_18_0-477_130_1-debuginfo-1-4.el8_8 - Upgrade
Upgrade
redhat/kpatch-patchto a version that resolves this vulnerability.Fixed in 4_18_0-477_130_1-debugsource-1-4.el8_8 - Upgrade
Upgrade
redhat/kpatch-patchto a version that resolves this vulnerability.Fixed in 4_18_0-477_143_1-debuginfo-1-1.el8_8 - Upgrade
Upgrade
redhat/kpatch-patchto a version that resolves this vulnerability.Fixed in 4_18_0-477_143_1-debugsource-1-1.el8_8 - Upgrade
Upgrade
redhat/kpatch-patchto a version that resolves this vulnerability.Fixed in 4_18_0-477_97_1-debuginfo-1-11.el8_8 - Upgrade
Upgrade
redhat/kpatch-patchto a version that resolves this vulnerability.Fixed in 4_18_0-477_97_1-debugsource-1-11.el8_8
Event History
Frequently Asked Questions
What is the severity of RHSA-2026:28748?
The severity of RHSA-2026:28748 is critical with a score of 9.
How do I fix RHSA-2026:28748?
To fix RHSA-2026:28748, you should apply the latest kpatch security updates immediately.
What products are affected by RHSA-2026:28748?
RHSA-2026:28748 affects several versions of Red Hat Enterprise Linux and the kpatch-patch utilities.
Is RHSA-2026:28748 related to kernel vulnerabilities?
Yes, RHSA-2026:28748 involves kernel live patch updates addressing critical vulnerabilities.
When was RHSA-2026:28748 published?
RHSA-2026:28748 was published on June 24, 2026.