Issued at: 2026-08-13
Updated at: 2026-08-13
Advisory content derived from Red Hat RHSA-2026:54343, © Red Hat, Inc., used under CC BY 4.0, with modifications.
Synopsis
Important: kernel security, bug fix, and enhancement update
Description
The kernel packages contain the Linux kernel, the core of any Linux operating system.
Security Fix(es):
* kernel: accel/ivpu: Fix signed integer truncation in IPC receive (CVE-2026-53202)
* kernel: net/sched: act_api: use RCU with deferred freeing for action lifecycle (CVE-2026-53264)
* kernel: scsi: target: iscsi: Bound iscsi_encode_text_output() appends to rsp_buf (CVE-2026-63887)
* kernel: perf/aux: Fix page UAF in map_range() (CVE-2026-64300)
Bug Fix(es) and Enhancement(s):
* netfilter: CVE backports for Rocky Linux 10.2.z (JIRA:Rocky Linux-185311)
* tlbflush - Windows Driver Verifier catches FLTMGR/Ntfs crashes during KVM 42-VM soak test on AMD EPYC Turin [rhel-10.2.z] (JIRA:Rocky Linux-214436)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.