RHSA-2026:43307: Important: kernel security, bug fix, and enhancement update
Important: kernel security, bug fix, and enhancement update
Other sources
The kernel packages contain the Linux kernel, the core of any Linux operating system.Security Fix(es): kernel: crypto: afalg - zero initialize memory allocated via sockkmalloc (CVE-2025-71113) kernel: scsi: core: Wake up the error handler when final completions race against each other (CVE-2026-23110) kernel: net: ipv6: fix NOREF dst use in seg6 and rpl lwtunnels (CVE-2026-46099) kernel: fanotify: fix false positive on permission events (CVE-2026-46150) kernel: drm: Set old handle to NULL before prime swap in changehandle (CVE-2026-46215) kernel: Bluetooth: l2cap: Add missing chan lock in l2capecredreconfrsp (CVE-2026-53071) Bug Fix(es) and Enhancement(s): [RHEL9] tools/lib/perf/Makefile: libperf includes appended after CFLAGS causes parallel build race, breaking kernel builds [rhel-9.8.z] (JIRA:RHEL-183980) [RHEL-9.8.z]: mlx5: include bug fixes (JIRA:RHEL-188121) dpll: fix NULL pointer dereference in dpllmsgaddpinrefsync() [rhel-9.8.z] (JIRA:RHEL-212061) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
— Red Hat
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
redhat/kernelto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8 - Upgrade
Upgrade
redhat/kernel-abi-stableliststo a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8 - Upgrade
Upgrade
redhat/kernel-coreto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8 - Upgrade
Upgrade
redhat/kernel-debugto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8 - Upgrade
Upgrade
redhat/kernel-debug-coreto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8 - Upgrade
Upgrade
redhat/kernel-debug-debuginfoto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8 - Upgrade
Upgrade
redhat/kernel-debug-develto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8 - Upgrade
Upgrade
redhat/kernel-debug-devel-matchedto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8 - Upgrade
Upgrade
redhat/kernel-debug-modulesto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8 - Upgrade
Upgrade
redhat/kernel-debug-modules-coreto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8 - Upgrade
Upgrade
redhat/kernel-debug-modules-extrato a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8 - Upgrade
Upgrade
redhat/kernel-debug-uki-virtto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8 - Upgrade
Upgrade
redhat/kernel-debuginfoto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8 - Upgrade
Upgrade
redhat/kernel-develto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8 - Upgrade
Upgrade
redhat/kernel-devel-matchedto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8 - Upgrade
Upgrade
redhat/kernel-docto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8 - Upgrade
Upgrade
redhat/kernel-headersto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8 - Upgrade
Upgrade
redhat/kernel-modulesto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8 - Upgrade
Upgrade
redhat/kernel-modules-coreto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8 - Upgrade
Upgrade
redhat/kernel-modules-extrato a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8 - Upgrade
Upgrade
redhat/kernel-rtto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8 - Upgrade
Upgrade
redhat/kernel-rt-coreto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8 - Upgrade
Upgrade
redhat/kernel-rt-debugto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8 - Upgrade
Upgrade
redhat/kernel-rt-debug-coreto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8 - Upgrade
Upgrade
redhat/kernel-rt-debug-debuginfoto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8 - Upgrade
Upgrade
redhat/kernel-rt-debug-develto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8 - Upgrade
Upgrade
redhat/kernel-rt-debug-modulesto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8 - Upgrade
Upgrade
redhat/kernel-rt-debug-modules-coreto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8 - Upgrade
Upgrade
redhat/kernel-rt-debug-modules-extrato a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8 - Upgrade
Upgrade
redhat/kernel-rt-debuginfoto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8 - Upgrade
Upgrade
redhat/kernel-rt-develto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8 - Upgrade
Upgrade
redhat/kernel-rt-modulesto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8 - Upgrade
Upgrade
redhat/kernel-rt-modules-coreto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8 - Upgrade
Upgrade
redhat/kernel-rt-modules-extrato a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8 - Upgrade
Upgrade
redhat/kernel-toolsto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8 - Upgrade
Upgrade
redhat/kernel-tools-debuginfoto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8 - Upgrade
Upgrade
redhat/kernel-tools-libsto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8 - Upgrade
Upgrade
redhat/kernel-uki-virtto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8 - Upgrade
Upgrade
redhat/kernel-uki-virt-addonsto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8 - Upgrade
Upgrade
redhat/libperf-debuginfoto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8 - Upgrade
Upgrade
redhat/perfto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8 - Upgrade
Upgrade
redhat/perf-debuginfoto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8 - Upgrade
Upgrade
redhat/python3-perfto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8 - Upgrade
Upgrade
redhat/python3-perf-debuginfoto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8 - Upgrade
Upgrade
redhat/rtlato a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8 - Upgrade
Upgrade
redhat/rvto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8 - Upgrade
Upgrade
redhat/kernel-debuginfo-common-s390xto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8 - Upgrade
Upgrade
redhat/kernel-zfcpdumpto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8 - Upgrade
Upgrade
redhat/kernel-zfcpdump-coreto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8 - Upgrade
Upgrade
redhat/kernel-zfcpdump-debuginfoto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8 - Upgrade
Upgrade
redhat/kernel-zfcpdump-develto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8 - Upgrade
Upgrade
redhat/kernel-zfcpdump-devel-matchedto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8 - Upgrade
Upgrade
redhat/kernel-zfcpdump-modulesto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8 - Upgrade
Upgrade
redhat/kernel-zfcpdump-modules-coreto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8 - Upgrade
Upgrade
redhat/kernel-zfcpdump-modules-extrato a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8 - Upgrade
Upgrade
redhat/kernel-debuginfo-common-ppc64leto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8 - Upgrade
Upgrade
redhat/kernelto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernelto a version that resolves this vulnerability.Fixed in 64k-5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernelto a version that resolves this vulnerability.Fixed in 64k-core-5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernelto a version that resolves this vulnerability.Fixed in 64k-debug-5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernelto a version that resolves this vulnerability.Fixed in 64k-debug-core-5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernelto a version that resolves this vulnerability.Fixed in 64k-debug-debuginfo-5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernelto a version that resolves this vulnerability.Fixed in 64k-debug-devel-5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernelto a version that resolves this vulnerability.Fixed in 64k-debug-devel-matched-5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernelto a version that resolves this vulnerability.Fixed in 64k-debug-modules-5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernelto a version that resolves this vulnerability.Fixed in 64k-debug-modules-core-5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernelto a version that resolves this vulnerability.Fixed in 64k-debug-modules-extra-5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernelto a version that resolves this vulnerability.Fixed in 64k-debuginfo-5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernelto a version that resolves this vulnerability.Fixed in 64k-devel-5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernelto a version that resolves this vulnerability.Fixed in 64k-devel-matched-5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernelto a version that resolves this vulnerability.Fixed in 64k-modules-5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernelto a version that resolves this vulnerability.Fixed in 64k-modules-core-5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernelto a version that resolves this vulnerability.Fixed in 64k-modules-extra-5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernel-coreto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernel-debugto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernel-debug-coreto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernel-debug-debuginfoto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernel-debug-develto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernel-debug-devel-matchedto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernel-debug-modulesto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernel-debug-modules-coreto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernel-debug-modules-extrato a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernel-debuginfoto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernel-debuginfo-common-aarch64to a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernel-develto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernel-devel-matchedto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernel-headersto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernel-modulesto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernel-modules-coreto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernel-modules-extrato a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernel-rtto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernel-rtto a version that resolves this vulnerability.Fixed in 64k-5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernel-rtto a version that resolves this vulnerability.Fixed in 64k-core-5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernel-rtto a version that resolves this vulnerability.Fixed in 64k-debug-5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernel-rtto a version that resolves this vulnerability.Fixed in 64k-debug-core-5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernel-rtto a version that resolves this vulnerability.Fixed in 64k-debug-debuginfo-5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernel-rtto a version that resolves this vulnerability.Fixed in 64k-debug-devel-5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernel-rtto a version that resolves this vulnerability.Fixed in 64k-debug-modules-5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernel-rtto a version that resolves this vulnerability.Fixed in 64k-debug-modules-core-5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernel-rtto a version that resolves this vulnerability.Fixed in 64k-debug-modules-extra-5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernel-rtto a version that resolves this vulnerability.Fixed in 64k-debuginfo-5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernel-rtto a version that resolves this vulnerability.Fixed in 64k-devel-5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernel-rtto a version that resolves this vulnerability.Fixed in 64k-modules-5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernel-rtto a version that resolves this vulnerability.Fixed in 64k-modules-core-5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernel-rtto a version that resolves this vulnerability.Fixed in 64k-modules-extra-5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernel-rt-coreto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernel-rt-debugto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernel-rt-debug-coreto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernel-rt-debug-debuginfoto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernel-rt-debug-develto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernel-rt-debug-modulesto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernel-rt-debug-modules-coreto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernel-rt-debug-modules-extrato a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernel-rt-debuginfoto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernel-rt-develto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernel-rt-modulesto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernel-rt-modules-coreto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernel-rt-modules-extrato a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernel-toolsto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernel-tools-debuginfoto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernel-tools-libsto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/libperf-debuginfoto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/perfto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/perf-debuginfoto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/python3-perfto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/python3-perf-debuginfoto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/rtlato a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/rvto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernel-cross-headersto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8 - Upgrade
Upgrade
redhat/kernel-tools-libs-develto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8 - Upgrade
Upgrade
redhat/libperfto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8 - Upgrade
Upgrade
redhat/kernel-cross-headersto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/kernel-tools-libs-develto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
redhat/libperfto a version that resolves this vulnerability.Fixed in 5.14.0-687.29.1.el9_8.aa - Upgrade
Upgrade
kernel packages (Linux kernel)to a version that resolves this vulnerability.Fixed in rhel-9.8.z - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Patch JIRA:RHEL-188121 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Patch JIRA:RHEL-212061 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Patch CVE-2026-53071 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Patch CVE-2026-46215 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Patch CVE-2026-46150 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Patch CVE-2026-46099 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Patch CVE-2026-23110 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Patch JIRA:RHEL-183980 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Patch CVE-2025-71113 - Operational
Reboot the system after applying the update so the kernel package changes take effect.
Event History
Frequently Asked Questions
What is the severity of RHSA-2026:43307?
The severity of RHSA-2026:43307 is rated as high, with a score of 7.
What does RHSA-2026:43307 address?
RHSA-2026:43307 addresses kernel security vulnerabilities, bug fixes, and enhancement updates.
How do I fix RHSA-2026:43307?
Fixing RHSA-2026:43307 involves applying the latest updates for Red Hat Enterprise Linux and its derivatives as specified in the advisory.
Which systems are affected by RHSA-2026:43307?
RHSA-2026:43307 affects various versions of Red Hat Enterprise Linux for ARM 64, x86_64, and Power architecture.
When was RHSA-2026:43307 published?
RHSA-2026:43307 was published on July 22, 2026.