RHSA-2026:59544: Moderate: kernel security, bug fix, and enhancement update
Moderate: kernel security, bug fix, and enhancement update
Other sources
The kernel packages contain the Linux kernel, the core of any Linux operating system.Security Fix(es): kernel: crypto: ccp - copy IV using skcipher ivsize (CVE-2026-53016) Bug Fix(es) and Enhancement(s): [RHEL 9] Bonding reports unknown speed/duplex for tg3 interface [rhel-9.4.z] (JIRA:RHEL-182766) vhost: reset the vring metadata cache on vring reconfiguration [rhel-9.4.z] (JIRA:RHEL-224547) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
— Red Hat
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
redhat/kernelto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4 - Upgrade
Upgrade
redhat/bpftoolto a version that resolves this vulnerability.Fixed in 7.3.0-427.146.1.el9_4 - Upgrade
Upgrade
redhat/bpftool-debuginfoto a version that resolves this vulnerability.Fixed in 7.3.0-427.146.1.el9_4 - Upgrade
Upgrade
redhat/kernel-abi-stableliststo a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4 - Upgrade
Upgrade
redhat/kernel-coreto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4 - Upgrade
Upgrade
redhat/kernel-debugto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4 - Upgrade
Upgrade
redhat/kernel-debug-coreto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4 - Upgrade
Upgrade
redhat/kernel-debug-debuginfoto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4 - Upgrade
Upgrade
redhat/kernel-debug-develto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4 - Upgrade
Upgrade
redhat/kernel-debug-devel-matchedto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4 - Upgrade
Upgrade
redhat/kernel-debug-modulesto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4 - Upgrade
Upgrade
redhat/kernel-debug-modules-coreto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4 - Upgrade
Upgrade
redhat/kernel-debug-modules-extrato a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4 - Upgrade
Upgrade
redhat/kernel-debug-uki-virtto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4 - Upgrade
Upgrade
redhat/kernel-debuginfoto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4 - Upgrade
Upgrade
redhat/kernel-develto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4 - Upgrade
Upgrade
redhat/kernel-devel-matchedto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4 - Upgrade
Upgrade
redhat/kernel-docto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4 - Upgrade
Upgrade
redhat/kernel-headersto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4 - Upgrade
Upgrade
redhat/kernel-modulesto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4 - Upgrade
Upgrade
redhat/kernel-modules-coreto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4 - Upgrade
Upgrade
redhat/kernel-modules-extrato a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4 - Upgrade
Upgrade
redhat/kernel-rt-debug-debuginfoto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4 - Upgrade
Upgrade
redhat/kernel-rt-debuginfoto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4 - Upgrade
Upgrade
redhat/kernel-toolsto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4 - Upgrade
Upgrade
redhat/kernel-tools-debuginfoto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4 - Upgrade
Upgrade
redhat/kernel-tools-libsto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4 - Upgrade
Upgrade
redhat/kernel-uki-virtto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4 - Upgrade
Upgrade
redhat/libperf-debuginfoto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4 - Upgrade
Upgrade
redhat/perfto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4 - Upgrade
Upgrade
redhat/perf-debuginfoto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4 - Upgrade
Upgrade
redhat/python3-perfto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4 - Upgrade
Upgrade
redhat/python3-perf-debuginfoto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4 - Upgrade
Upgrade
redhat/rtlato a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4 - Upgrade
Upgrade
redhat/rvto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4 - Upgrade
Upgrade
redhat/kernel-debuginfo-common-ppc64leto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4 - Upgrade
Upgrade
redhat/kernel-rtto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4 - Upgrade
Upgrade
redhat/kernel-rt-coreto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4 - Upgrade
Upgrade
redhat/kernel-rt-debugto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4 - Upgrade
Upgrade
redhat/kernel-rt-debug-coreto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4 - Upgrade
Upgrade
redhat/kernel-rt-debug-develto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4 - Upgrade
Upgrade
redhat/kernel-rt-debug-kvmto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4 - Upgrade
Upgrade
redhat/kernel-rt-debug-modulesto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4 - Upgrade
Upgrade
redhat/kernel-rt-debug-modules-coreto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4 - Upgrade
Upgrade
redhat/kernel-rt-debug-modules-extrato a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4 - Upgrade
Upgrade
redhat/kernel-rt-develto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4 - Upgrade
Upgrade
redhat/kernel-rt-kvmto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4 - Upgrade
Upgrade
redhat/kernel-rt-modulesto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4 - Upgrade
Upgrade
redhat/kernel-rt-modules-coreto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4 - Upgrade
Upgrade
redhat/kernel-rt-modules-extrato a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4 - Upgrade
Upgrade
redhat/bpftoolto a version that resolves this vulnerability.Fixed in 7.3.0-427.146.1.el9_4.aa - Upgrade
Upgrade
redhat/bpftool-debuginfoto a version that resolves this vulnerability.Fixed in 7.3.0-427.146.1.el9_4.aa - Upgrade
Upgrade
redhat/kernelto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4.aa - Upgrade
Upgrade
redhat/kernelto a version that resolves this vulnerability.Fixed in 64k-5.14.0-427.146.1.el9_4.aa - Upgrade
Upgrade
redhat/kernelto a version that resolves this vulnerability.Fixed in 64k-core-5.14.0-427.146.1.el9_4.aa - Upgrade
Upgrade
redhat/kernelto a version that resolves this vulnerability.Fixed in 64k-debug-5.14.0-427.146.1.el9_4.aa - Upgrade
Upgrade
redhat/kernelto a version that resolves this vulnerability.Fixed in 64k-debug-core-5.14.0-427.146.1.el9_4.aa - Upgrade
Upgrade
redhat/kernelto a version that resolves this vulnerability.Fixed in 64k-debug-debuginfo-5.14.0-427.146.1.el9_4.aa - Upgrade
Upgrade
redhat/kernelto a version that resolves this vulnerability.Fixed in 64k-debug-devel-5.14.0-427.146.1.el9_4.aa - Upgrade
Upgrade
redhat/kernelto a version that resolves this vulnerability.Fixed in 64k-debug-devel-matched-5.14.0-427.146.1.el9_4.aa - Upgrade
Upgrade
redhat/kernelto a version that resolves this vulnerability.Fixed in 64k-debug-modules-5.14.0-427.146.1.el9_4.aa - Upgrade
Upgrade
redhat/kernelto a version that resolves this vulnerability.Fixed in 64k-debug-modules-core-5.14.0-427.146.1.el9_4.aa - Upgrade
Upgrade
redhat/kernelto a version that resolves this vulnerability.Fixed in 64k-debug-modules-extra-5.14.0-427.146.1.el9_4.aa - Upgrade
Upgrade
redhat/kernelto a version that resolves this vulnerability.Fixed in 64k-debuginfo-5.14.0-427.146.1.el9_4.aa - Upgrade
Upgrade
redhat/kernelto a version that resolves this vulnerability.Fixed in 64k-devel-5.14.0-427.146.1.el9_4.aa - Upgrade
Upgrade
redhat/kernelto a version that resolves this vulnerability.Fixed in 64k-devel-matched-5.14.0-427.146.1.el9_4.aa - Upgrade
Upgrade
redhat/kernelto a version that resolves this vulnerability.Fixed in 64k-modules-5.14.0-427.146.1.el9_4.aa - Upgrade
Upgrade
redhat/kernelto a version that resolves this vulnerability.Fixed in 64k-modules-core-5.14.0-427.146.1.el9_4.aa - Upgrade
Upgrade
redhat/kernelto a version that resolves this vulnerability.Fixed in 64k-modules-extra-5.14.0-427.146.1.el9_4.aa - Upgrade
Upgrade
redhat/kernel-coreto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4.aa - Upgrade
Upgrade
redhat/kernel-debugto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4.aa - Upgrade
Upgrade
redhat/kernel-debug-coreto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4.aa - Upgrade
Upgrade
redhat/kernel-debug-debuginfoto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4.aa - Upgrade
Upgrade
redhat/kernel-debug-develto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4.aa - Upgrade
Upgrade
redhat/kernel-debug-devel-matchedto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4.aa - Upgrade
Upgrade
redhat/kernel-debug-modulesto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4.aa - Upgrade
Upgrade
redhat/kernel-debug-modules-coreto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4.aa - Upgrade
Upgrade
redhat/kernel-debug-modules-extrato a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4.aa - Upgrade
Upgrade
redhat/kernel-debuginfoto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4.aa - Upgrade
Upgrade
redhat/kernel-debuginfo-common-aarch64to a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4.aa - Upgrade
Upgrade
redhat/kernel-develto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4.aa - Upgrade
Upgrade
redhat/kernel-devel-matchedto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4.aa - Upgrade
Upgrade
redhat/kernel-headersto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4.aa - Upgrade
Upgrade
redhat/kernel-modulesto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4.aa - Upgrade
Upgrade
redhat/kernel-modules-coreto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4.aa - Upgrade
Upgrade
redhat/kernel-modules-extrato a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4.aa - Upgrade
Upgrade
redhat/kernel-rt-debug-debuginfoto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4.aa - Upgrade
Upgrade
redhat/kernel-rt-debuginfoto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4.aa - Upgrade
Upgrade
redhat/kernel-toolsto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4.aa - Upgrade
Upgrade
redhat/kernel-tools-debuginfoto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4.aa - Upgrade
Upgrade
redhat/kernel-tools-libsto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4.aa - Upgrade
Upgrade
redhat/libperf-debuginfoto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4.aa - Upgrade
Upgrade
redhat/perfto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4.aa - Upgrade
Upgrade
redhat/perf-debuginfoto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4.aa - Upgrade
Upgrade
redhat/python3-perfto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4.aa - Upgrade
Upgrade
redhat/python3-perf-debuginfoto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4.aa - Upgrade
Upgrade
redhat/rtlato a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4.aa - Upgrade
Upgrade
redhat/rvto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4.aa - Upgrade
Upgrade
redhat/kernel-debuginfo-common-s390xto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4 - Upgrade
Upgrade
redhat/kernel-zfcpdumpto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4 - Upgrade
Upgrade
redhat/kernel-zfcpdump-coreto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4 - Upgrade
Upgrade
redhat/kernel-zfcpdump-debuginfoto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4 - Upgrade
Upgrade
redhat/kernel-zfcpdump-develto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4 - Upgrade
Upgrade
redhat/kernel-zfcpdump-devel-matchedto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4 - Upgrade
Upgrade
redhat/kernel-zfcpdump-modulesto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4 - Upgrade
Upgrade
redhat/kernel-zfcpdump-modules-coreto a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4 - Upgrade
Upgrade
redhat/kernel-zfcpdump-modules-extrato a version that resolves this vulnerability.Fixed in 5.14.0-427.146.1.el9_4 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in rhel-9.4.zPatch JIRA:RHEL-224547 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in rhel-9.4.zPatch JIRA:RHEL-182766 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in rhel-9.4.z - Compensating control
Reboot the system after applying this kernel update so the changes take effect.
Event History
Frequently Asked Questions
Which systems should be prioritized for this update?
Systems running the affected Red Hat kernel packages should be prioritized, particularly where the kernel crypto CCP component is in use. The advisory also includes kernel-core, kernel-debug, kernel-debug-core, kernel-debug-devel, bpftool, and bpftool-debuginfo packages.
What non-security fixes are included in this update?
The update fixes a RHEL 9.4.z bonding issue that can report unknown speed or duplex for tg3 interfaces. It also resets the vhost vring metadata cache when vring reconfiguration occurs.