Security News

Cybersecurity news aggregator

🔄
CRITICAL Updates Red Hat Errata

RHSA-2026:28750: Critical: kpatch-patch-5_14_0-284_117_1, kpatch-patch-5_14_0-284_134_1, kpatch-patch-5_14_0-284_148_1, kpatch-patch-5_14_0-284_158_1, and kpatch-patch-5_14_0-284_172_1 security update

A critical vulnerability (CVE-2026-43037, CVSS 9.8) in the Linux kernel's `ip6_tunnel` module allows exploitation due to failure to clear the `skb2->cb[]` buffer in the `ip4ip6_err()` function. The vulnerability affects a wide range of kernel versions from 2.6.22 up to but not including 5.10.253, 5.11 up to 5.15.203, 5.16 up to 6.1.168, 6.2 up to 6.6.134, and 6.7 up to 6.12.81. Red Hat has released live patch modules for its Enterprise Linux 9.2 Update Services for SAP Solutions kernels to address this issue.
Read Full Article →

Red Hat Product Errata RHSA-2026:28750 - Security Advisory Issued: 2026-06-24 Updated: 2026-06-24 RHSA-2026:28750 - Security Advisory Overview Updated Packages Synopsis Critical: kpatch-patch-5_14_0-284_117_1, kpatch-patch-5_14_0-284_134_1, kpatch-patch-5_14_0-284_148_1, kpatch-patch-5_14_0-284_158_1, and kpatch-patch-5_14_0-284_172_1 security update Type/Severity Security Advisory: Critical Red Hat Lightspeed patch analysis Identify and remediate systems affected by this advisory. View affected systems Topic An update for multiple packages is now available for Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions. Red Hat Product Security has rated this update as having a security impact of Critical. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. Description This is a kernel live patch module which can be loaded by the kpatch command line utility to modify the code of a running kernel. This patch module is targeted for kernel-5.14.0-284.117.1.el9_2. Security Fix(es): kernel: ip6_tunnel: clear skb2->cb[] in ip4ip6_err() (CVE-2026-43037) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Solution For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 Affected Products Red Hat Enterprise Linux Server - AUS 9.2 x86_64 Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.2 ppc64le Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.2 x86_64 Red Hat Enterprise Linux for x86_64 - Extended Life Cycle 9.2 x86_64 Red Hat Enterprise Linux for Power, little endian - Extended Life Cycle 9.2 ppc64le Fixes BZ - 2464351 - CVE-2026-43037 kernel: ip6_tunnel: clear skb2->cb[] in ip4ip6_err() CVEs CVE-2026-43037 References https://access.redhat.com/security/updates/classification/#critical Note: More recent versions of these packages may be available. Click a package name for more details. Red Hat Enterprise Linux Server - AUS 9.2 SRPM kpatch-patch-5_14_0-284_117_1-1-14.el9_2.src.rpm SHA-256: 01c3faf678913e9ee8fce21f7bcc96d4ac93eb8c85890a1accaca72ca49f043d kpatch-patch-5_14_0-284_134_1-1-8.el9_2.src.rpm SHA-256: 9837341a9f75b4636687730ebfb7f479ea627e3171d59c9e98b5b3aed29d164f kpatch-patch-5_14_0-284_148_1-1-6.el9_2.src.rpm SHA-256: c3b3074b0f37cc1bac7ed16bcadf504a869e748d269512e55f5460b1878f23f5 kpatch-patch-5_14_0-284_158_1-1-4.el9_2.src.rpm SHA-256: 5172c42aadb3a28a752a7386915ae925042d35bacafb8fb0f023bd57bd9e6b29 kpatch-patch-5_14_0-284_172_1-1-1.el9_2.src.rpm SHA-256: 9e705bd36e761d226c4d26edbabe0ed169317f3b3d95def9d4f3837e516bef8e x86_64 kpatch-patch-5_14_0-284_117_1-1-14.el9_2.x86_64.rpm SHA-256: 1b8533693be52e8eeef9c4366cd3a2c1bf8d79023f87f8e475775caafc579eca kpatch-patch-5_14_0-284_117_1-debuginfo-1-14.el9_2.x86_64.rpm SHA-256: 7048bf4329c4ed359e8a13613793799c16804b1255e70bfe2c5d251fdcf01f9a kpatch-patch-5_14_0-284_117_1-debugsource-1-14.el9_2.x86_64.rpm SHA-256: 426fe7ed7048568243118c89c8e0f068481fd19a6ea415d547797bd500588087 kpatch-patch-5_14_0-284_134_1-1-8.el9_2.x86_64.rpm SHA-256: 0e16013a343fe35d11562b95a7f8363f0b8aed3e6d876d1c2cbd61356191ab29 kpatch-patch-5_14_0-284_134_1-debuginfo-1-8.el9_2.x86_64.rpm SHA-256: 99dd3db34c2f829b7f8e0cd530b3a9e64a03f9f1d79e12d525f4025fcf52794c kpatch-patch-5_14_0-284_134_1-debugsource-1-8.el9_2.x86_64.rpm SHA-256: 7755d716f10d804678b5de933c671d1fa153f11d339ee9f5a3c83bcd060b630d kpatch-patch-5_14_0-284_148_1-1-6.el9_2.x86_64.rpm SHA-256: b0e3ec616cb0a6aa1bc75db4ba5b3174f50f4cc6ac9caacb168640060689833c kpatch-patch-5_14_0-284_148_1-debuginfo-1-6.el9_2.x86_64.rpm SHA-256: 143320a97a94cd8d1a5587a1e169207fb46eaaef4854ce9033a788a5f7676929 kpatch-patch-5_14_0-284_148_1-debugsource-1-6.el9_2.x86_64.rpm SHA-256: 10c32735d55c4fbff113c42cd2b44b5b2eecd23351d049d0ba8b5c1157b421ae kpatch-patch-5_14_0-284_158_1-1-4.el9_2.x86_64.rpm SHA-256: 10c9d5bf1a4af341147127a1272cea7922a4e7ebb0d0ec8ddeb5b1ba32bca73b kpatch-patch-5_14_0-284_158_1-debuginfo-1-4.el9_2.x86_64.rpm SHA-256: 862dc7a2ced6e9ecfd8dff3a8b8808d9f5326618cd246e9727345879c57f7eb7 kpatch-patch-5_14_0-284_158_1-debugsource-1-4.el9_2.x86_64.rpm SHA-256: 36b043fe04b7c82ecba26be706f8df08921e57d714ec960593688dc4f42d84f8 kpatch-patch-5_14_0-284_172_1-1-1.el9_2.x86_64.rpm SHA-256: 08ff183999fe5bba5ed1093748f9d10ef6adde6d9b860f5b18018f802940cd85 kpatch-patch-5_14_0-284_172_1-debuginfo-1-1.el9_2.x86_64.rpm SHA-256: 6d6a1e4b47053306edb5d502b9afce86b286edd36a5cebc95dcf970248a87584 kpatch-patch-5_14_0-284_172_1-debugsource-1-1.el9_2.x86_64.rpm SHA-256: 355ee60e2472e8a6de301691ed6565c3d8092a50f3d894a1bba148455ab64542 Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.2 SRPM kpatch-patch-5_14_0-284_117_1-1-14.el9_2.src.rpm SHA-256: 01c3faf678913e9ee8fce21f7bcc96d4ac93eb8c85890a1accaca72ca49f043d kpatch-patch-5_14_0-284_134_1-1-8.el9_2.src.rpm SHA-256: 9837341a9f75b4636687730ebfb7f479ea627e3171d59c9e98b5b3aed29d164f kpatch-patch-5_14_0-284_148_1-1-6.el9_2.src.rpm SHA-256: c3b3074b0f37cc1bac7ed16bcadf504a869e748d269512e55f5460b1878f23f5 kpatch-patch-5_14_0-284_158_1-1-4.el9_2.src.rpm SHA-256: 5172c42aadb3a28a752a7386915ae925042d35bacafb8fb0f023bd57bd9e6b29 kpatch-patch-5_14_0-284_172_1-1-1.el9_2.src.rpm SHA-256: 9e705bd36e761d226c4d26edbabe0ed169317f3b3d95def9d4f3837e516bef8e ppc64le kpatch-patch-5_14_0-284_117_1-1-14.el9_2.ppc64le.rpm SHA-256: f4a67aa952c93c59085006dc802bebc560b556d8888c31c22a951dab0fc84d1d kpatch-patch-5_14_0-284_117_1-debuginfo-1-14.el9_2.ppc64le.rpm SHA-256: e0285ce03d87786354f26d0bd4fc3006edbbbc43aae4a2e6aac313a291804acd kpatch-patch-5_14_0-284_117_1-debugsource-1-14.el9_2.ppc64le.rpm SHA-256: 56bb17750c68caceaa8d1dafc1c9fd93f8531fd5b9e5e8c8c16e17144dd04da3 kpatch-patch-5_14_0-284_134_1-1-8.el9_2.ppc64le.rpm SHA-256: ebfdbff4d3fa4113ce479df97fc1b22dcf406ffe273cc9185b1298b15c4744e0 kpatch-patch-5_14_0-284_134_1-debuginfo-1-8.el9_2.ppc64le.rpm SHA-256: e0629b4d035343840a5b7f9c7e8bb201ece603ea3d453bf9ec52e3b23311e9f7 kpatch-patch-5_14_0-284_134_1-debugsource-1-8.el9_2.ppc64le.rpm SHA-256: 6b4cb5791aecb6eb7059ad1ee73dbc043e65208ead609935bfa9e922f62be9cb kpatch-patch-5_14_0-284_148_1-1-6.el9_2.ppc64le.rpm SHA-256: 6eac9ca7f61924002a885a73c4cc6b8f792e0348e149e7fbecba0f89b01e02cf kpatch-patch-5_14_0-284_148_1-debuginfo-1-6.el9_2.ppc64le.rpm SHA-256: 3954c7c5d92036ca23e3e2423ea597983f558a42e849388f9bdbb0486456aef7 kpatch-patch-5_14_0-284_148_1-debugsource-1-6.el9_2.ppc64le.rpm SHA-256: 1d8dc600abe5f97354167124a55f93b0d84d7f6842c5ac65fb871ee86bab4baf kpatch-patch-5_14_0-284_158_1-1-4.el9_2.ppc64le.rpm SHA-256: ce10c744e5988269d15bbf4f91e7c85d8676787877454cdfae2ca4f30c37f8c0 kpatch-patch-5_14_0-284_158_1-debuginfo-1-4.el9_2.ppc64le.rpm SHA-256: 4f21ed9a2fec4884176ff3411bbe7a350d639b575d440a0496a889f25d59014e kpatch-patch-5_14_0-284_158_1-debugsource-1-4.el9_2.ppc64le.rpm SHA-256: ffef989dd1ee435f112ef5f1cc67551b57cb47a22e33fb3042783682a09ee2bf kpatch-patch-5_14_0-284_172_1-1-1.el9_2.ppc64le.rpm SHA-256: ff9fdc3fae83b74e47c3dc7fb80ca2688825d9389f16785a12a7141dd5e0bdb1 kpatch-patch-5_14_0-284_172_1-debuginfo-1-1.el9_2.ppc64le.rpm SHA-256: 30d64a781aae9bff3d1a9540bb1b63e9925b10ae5faac0982e2ad3d40c993220 kpatch-patch-5_14_0-284_172_1-debugsource-1-1.el9_2.ppc64le.rpm SHA-256: f984b0e72365bba6292b060f967504a4462ea23bc73a569b009b9f721d7cc58a Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.2 SRPM kpatch-patch-5_14_0-284_117_1-1-14.el9_2.src.rpm SHA-256: 01c3faf678913e9ee8fce21f7bcc96d4ac93eb8c85890a1accaca72ca49f043d kpatch-patch-5_14_0-284_134_1-1-8.el9_2.src.rpm SHA-256: 9837341a9f75b4636687730ebfb7f479ea627e3171d59c9e98b5b3aed29d164f kpatch-patch-5_14_0-284_148_1-1-6.el9_2.src.rpm SHA-256: c3b3074b0f37cc1bac7ed16bcadf504a869e748d269512e55f5460b1878f23f5 kpatch-patch-5_14_0-284_158_1-1-4.el9_2.src.rpm SHA-256: 5172c42aadb3a28a752a7386915ae925042d35bacafb8fb0f023bd57bd9e6b29 kpatch-patch-5_14_0-284_172_1-1-1.el9_2.src.rpm SHA-256: 9e705bd36e761d226c4d26edbabe0ed169317f3b3d95def9d4f3837e516bef8e x86_64 kpatch-patch-5_14_0-284_117_1-1-14.el9_2.x86_64.rpm SHA-256: 1b8533693be52e8eeef9c4366cd3a2c1bf8d79023f87f8e475775caafc579eca kpatch-patch-5_14_0-284_117_1-debuginfo-1-14.el9_2.x86_64.rpm SHA-256: 7048bf4329c4ed359e8a13613793799c16804b1255e70bfe2c5d251fdcf01f9a kpatch-patch-5_14_0-284_117_1-debugsource-1-14.el9_2.x86_64.rpm SHA-256: 426fe7ed7048568243118c89c8e0f068481fd19a6ea415d547797bd500588087 kpatch-patch-5_14_0-284_134_1-1-8.el9_2.x86_64.rpm SHA-256: 0e16013a343fe35d11562b95a7f8363f0b8aed3e6d876d1c2cbd61356191ab29 kpatch-patch-5_14_0-284_134_1-debuginfo-1-8.el9_2.x86_64.rpm SHA-256: 99dd3db34c2f829b7f8e0cd530b3a9e64a03f9f1d79e12d525f4025fcf52794c kpatch-patch-5_14_0-284_134_1-debugsource-1-8.el9_2.x86_64.rpm SHA-256: 7755d716f10d804678b5de933c671d1fa153f11d339ee9f5a3c83bcd060b630d kpatch-patch-5_14_0-284_148_1-1-6.el9_2.x86_64.rpm SHA-256: b0e3ec616cb0a6aa1bc75db4ba5b3174f50f4cc6ac9caacb168640060689833c kpatch-patch-5_14_0-284_148_1-debuginfo-1-6.el9_2.x86_64.rpm SHA-256: 143320a97a94cd8d1a5587a1e169207fb46eaaef4854ce9033a788a5f7676929 kpatch-patch-5_14_0-284_148_1-debugsource-1-6.el9_2.x86_64.rpm SHA-256: 10c32735d55c4fbff113c42cd2b44b5b2eecd23351d049d0ba8b5c1157b421ae kpatch-patch-5_14_0-284_158_1-1-4.el9_2.x86_64.rpm SHA-256: 10c9d5bf1a4af341147127a1272cea7922a4e7ebb0d0ec8ddeb5b1ba32bca73b kpatch-patch-5_14_0-284_158_1-debuginfo-1-4.el9_2.x86_64.rpm SHA-256: 862dc7a2ced6e9ecfd8dff3a8b8808d9f5326618cd246e9727345879c57f7eb7 kpatch-patch-5_14_0-284_158_1-debugsource-1-4.el9_2.x86_64.rpm SHA-256: 36b043fe04b7c82ecba26be706f8df08921e57d714ec960593688dc4f42d84f8 kpatch-patch-5_14_0-284_172_1-1-1.el9_2.x86_64.rpm SHA-256: 08ff183999fe5bba5ed1093748f9d10ef6adde6d9b860f5b18018f8029

Share this article