RHSA-2026:59146: Important: kpatch-patch-4_18_0-553_109_1, kpatch-patch-4_18_0-553_125_1, kpatch-patch-4_18_0-553_53_1, kpatch-patch-4_18_0-553_72_1, and kpatch-patch-4_18_0-553_85_1 security update
Important: kpatch-patch-4180-5531091, kpatch-patch-4180-5531251, kpatch-patch-4180-553531, kpatch-patch-4180-553721, and kpatch-patch-4180-553851 security update
Other sources
This is a kernel live patch module which can be loaded by the kpatch command line utility to modify the code of a running kernel. This patch module is targeted for kernel-4.18.0-553.53.1.el810.Security Fix(es): kernel: rtmutex: Use waiter::task instead of current in removewaiter() (CVE-2026-43499) kernel: gfs2: Fix use-after-free in iomap inline data write path (CVE-2026-45984) kernel: xfrm: defensively unhash xfrmstate lists in xfrmstatedelete (CVE-2026-46116) kernel: sctp: revalidate list cursor after sctpsendmsgtoasoc() in SCTPSENDALL (CVE-2026-46227) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
— Red Hat
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
redhat/kpatch-patchto a version that resolves this vulnerability.Fixed in 4_18_0-553_109_1-1-10.el8_10 - Upgrade
Upgrade
redhat/kpatch-patchto a version that resolves this vulnerability.Fixed in 4_18_0-553_125_1-1-7.el8_10 - Upgrade
Upgrade
redhat/kpatch-patchto a version that resolves this vulnerability.Fixed in 4_18_0-553_53_1-1-17.el8_10 - Upgrade
Upgrade
redhat/kpatch-patchto a version that resolves this vulnerability.Fixed in 4_18_0-553_72_1-1-14.el8_10 - Upgrade
Upgrade
redhat/kpatch-patchto a version that resolves this vulnerability.Fixed in 4_18_0-553_85_1-1-12.el8_10 - Upgrade
Upgrade
redhat/kpatch-patchto a version that resolves this vulnerability.Fixed in 4_18_0-553_109_1-debuginfo-1-10.el8_10 - Upgrade
Upgrade
redhat/kpatch-patchto a version that resolves this vulnerability.Fixed in 4_18_0-553_109_1-debugsource-1-10.el8_10 - Upgrade
Upgrade
redhat/kpatch-patchto a version that resolves this vulnerability.Fixed in 4_18_0-553_125_1-debuginfo-1-7.el8_10 - Upgrade
Upgrade
redhat/kpatch-patchto a version that resolves this vulnerability.Fixed in 4_18_0-553_125_1-debugsource-1-7.el8_10 - Upgrade
Upgrade
redhat/kpatch-patchto a version that resolves this vulnerability.Fixed in 4_18_0-553_53_1-debuginfo-1-17.el8_10 - Upgrade
Upgrade
redhat/kpatch-patchto a version that resolves this vulnerability.Fixed in 4_18_0-553_53_1-debugsource-1-17.el8_10 - Upgrade
Upgrade
redhat/kpatch-patchto a version that resolves this vulnerability.Fixed in 4_18_0-553_72_1-debuginfo-1-14.el8_10 - Upgrade
Upgrade
redhat/kpatch-patchto a version that resolves this vulnerability.Fixed in 4_18_0-553_72_1-debugsource-1-14.el8_10 - Upgrade
Upgrade
redhat/kpatch-patchto a version that resolves this vulnerability.Fixed in 4_18_0-553_85_1-debuginfo-1-12.el8_10 - Upgrade
Upgrade
redhat/kpatch-patchto a version that resolves this vulnerability.Fixed in 4_18_0-553_85_1-debugsource-1-12.el8_10 - Upgrade
Upgrade
kernel-4.18.0-553.53.1.el8_10to a version that resolves this vulnerability.Patch kpatch-patch-4_18_0-553_53_1 - Upgrade
Upgrade
kernel-4.18.0-553.53.1.el8_10to a version that resolves this vulnerability.Patch kpatch-patch-4_18_0-553_72_1 - Upgrade
Upgrade
kernel-4.18.0-553.53.1.el8_10to a version that resolves this vulnerability.Patch kpatch-patch-4_18_0-553_85_1 - Upgrade
Upgrade
kernel-4.18.0-553.53.1.el8_10to a version that resolves this vulnerability.Patch kpatch-patch-4_18_0-553_109_1 - Upgrade
Upgrade
kernel-4.18.0-553.53.1.el8_10to a version that resolves this vulnerability.Patch kpatch-patch-4_18_0-553_125_1