Issued at: 2026-08-06
Updated at: 2026-08-08
Synopsis
Moderate: kernel security, bug fix, and enhancement update
Description
The kernel packages contain the Linux kernel, the core of any Linux operating system.
Security Fix(es):
* kernel: futex: Fix UaF between futex_key_to_node_opt() and vma_replace_policy() (CVE-2026-23415)
* kernel: netfilter: nfnetlink_cthelper: fix OOB read in nfnl_cthelper_dump_table() (CVE-2026-43450)
Bug Fix(es) and Enhancement(s):
* kernel panics caused by NULL pointer dereferences within octeon_ep_vf [rhel-9.8.z] (JIRA:Rocky Linux SIG Cloud-186331)
* [Rocky Linux SIG Cloud 9.4] Kernel memory reclaim bug [rhel-9.8.z] (JIRA:Rocky Linux SIG Cloud-211058)
* Bond network interface is not coming up with MTU 9000 while vPMEM is enabled [rhel-9.8.z] (JIRA:Rocky Linux SIG Cloud-215575)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.