RHSA-2026:52649: Important: kernel security update
Important: kernel security update
Other sources
The kernel packages contain the Linux kernel, the core of any Linux operating system.Security Fix(es): kernel: xen/privcmd: fix double free via VMA splitting (CVE-2026-31787) kernel: fs/smb/client: fix out-of-bounds read in cifssanitizeprepath (CVE-2026-43112) kernel: selinux: fix overlayfs mmap() and mprotect() access checks (CVE-2026-46054) kernel: Arm Processors: Privilege escalation or information disclosure via writes to higher exception level resources (CVE-2025-10263) kernel: ipc: limit nextid allocation to the valid ID range (CVE-2026-52923) kernel: dm log: fix out-of-bounds write due to regioncount overflow (CVE-2026-53059) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
— Red Hat
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
redhat/kernelto a version that resolves this vulnerability.Fixed in 4.18.0-477.158.1.el8_8 - Upgrade
Upgrade
redhat/bpftoolto a version that resolves this vulnerability.Fixed in 4.18.0-477.158.1.el8_8 - Upgrade
Upgrade
redhat/bpftool-debuginfoto a version that resolves this vulnerability.Fixed in 4.18.0-477.158.1.el8_8 - Upgrade
Upgrade
redhat/kernel-abi-stableliststo a version that resolves this vulnerability.Fixed in 4.18.0-477.158.1.el8_8 - Upgrade
Upgrade
redhat/kernel-coreto a version that resolves this vulnerability.Fixed in 4.18.0-477.158.1.el8_8 - Upgrade
Upgrade
redhat/kernel-cross-headersto a version that resolves this vulnerability.Fixed in 4.18.0-477.158.1.el8_8 - Upgrade
Upgrade
redhat/kernel-debugto a version that resolves this vulnerability.Fixed in 4.18.0-477.158.1.el8_8 - Upgrade
Upgrade
redhat/kernel-debug-coreto a version that resolves this vulnerability.Fixed in 4.18.0-477.158.1.el8_8 - Upgrade
Upgrade
redhat/kernel-debug-debuginfoto a version that resolves this vulnerability.Fixed in 4.18.0-477.158.1.el8_8 - Upgrade
Upgrade
redhat/kernel-debug-develto a version that resolves this vulnerability.Fixed in 4.18.0-477.158.1.el8_8 - Upgrade
Upgrade
redhat/kernel-debug-modulesto a version that resolves this vulnerability.Fixed in 4.18.0-477.158.1.el8_8 - Upgrade
Upgrade
redhat/kernel-debug-modules-extrato a version that resolves this vulnerability.Fixed in 4.18.0-477.158.1.el8_8 - Upgrade
Upgrade
redhat/kernel-debuginfoto a version that resolves this vulnerability.Fixed in 4.18.0-477.158.1.el8_8 - Upgrade
Upgrade
redhat/kernel-develto a version that resolves this vulnerability.Fixed in 4.18.0-477.158.1.el8_8 - Upgrade
Upgrade
redhat/kernel-docto a version that resolves this vulnerability.Fixed in 4.18.0-477.158.1.el8_8 - Upgrade
Upgrade
redhat/kernel-headersto a version that resolves this vulnerability.Fixed in 4.18.0-477.158.1.el8_8 - Upgrade
Upgrade
redhat/kernel-modulesto a version that resolves this vulnerability.Fixed in 4.18.0-477.158.1.el8_8 - Upgrade
Upgrade
redhat/kernel-modules-extrato a version that resolves this vulnerability.Fixed in 4.18.0-477.158.1.el8_8 - Upgrade
Upgrade
redhat/kernel-toolsto a version that resolves this vulnerability.Fixed in 4.18.0-477.158.1.el8_8 - Upgrade
Upgrade
redhat/kernel-tools-debuginfoto a version that resolves this vulnerability.Fixed in 4.18.0-477.158.1.el8_8 - Upgrade
Upgrade
redhat/kernel-tools-libsto a version that resolves this vulnerability.Fixed in 4.18.0-477.158.1.el8_8 - Upgrade
Upgrade
redhat/perfto a version that resolves this vulnerability.Fixed in 4.18.0-477.158.1.el8_8 - Upgrade
Upgrade
redhat/perf-debuginfoto a version that resolves this vulnerability.Fixed in 4.18.0-477.158.1.el8_8 - Upgrade
Upgrade
redhat/python3-perfto a version that resolves this vulnerability.Fixed in 4.18.0-477.158.1.el8_8 - Upgrade
Upgrade
redhat/python3-perf-debuginfoto a version that resolves this vulnerability.Fixed in 4.18.0-477.158.1.el8_8 - Upgrade
Upgrade
redhat/kernel-debuginfo-common-ppc64leto a version that resolves this vulnerability.Fixed in 4.18.0-477.158.1.el8_8 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Patch https://access.redhat.com/articles/11258
Event History
Frequently Asked Questions
What is the severity of RHSA-2026:52649?
The severity of RHSA-2026:52649 is rated as high with a score of 7.
How do I fix RHSA-2026:52649?
To fix RHSA-2026:52649, you need to apply the recommended security updates for your Red Hat Enterprise Linux version.
What affected software versions are impacted by RHSA-2026:52649?
RHSA-2026:52649 impacts Red Hat Enterprise Linux for x86_64, Red Hat Enterprise Linux Server, and Red Hat Enterprise Linux for Power LE among others.
What type of issue does RHSA-2026:52649 address?
RHSA-2026:52649 addresses important kernel security vulnerabilities.
When was RHSA-2026:52649 published?
RHSA-2026:52649 was published on August 10, 2026.