Issued at: 2026-09-05
Updated at: 2026-09-08
Advisory content derived from Red Hat RHSA-2026:63128, © Red Hat, Inc., used under CC BY 4.0, with modifications.
Synopsis
Important: kernel security update
Description
The kernel packages contain the Linux kernel, the core of any Linux operating system.
Security Fix(es):
* kernel: Bluetooth: hci_ldisc: Clear HCI_UART_PROTO_INIT on error (CVE-2026-53073)
* kernel: exfat: fix potential use-after-free in exfat_find_dir_entry() (CVE-2026-63808)
* kernel: KEYS: fix overflow in keyctl_pkey_params_get_2() (CVE-2026-63824)
* kernel: smb: client: fix query directory replay double-free (CVE-2026-64387)
* kernel: iomap: fix out-of-bounds bitmap_set() with zero-length range (CVE-2026-68145)
* kernel: net: ipv6: use-after-free in fib6_rule_suppress due to stale res->rt6 pointer (CVE-2026-74581)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.