Red Hat Product Errata RHSA-2026:33219 - Security Advisory Issued: 2026-06-29 Updated: 2026-06-29 RHSA-2026:33219 - Security Advisory Overview Updated Packages Synopsis Important: kpatch-patch-4_18_0-477_107_1, kpatch-patch-4_18_0-477_120_1, kpatch-patch-4_18_0-477_130_1, kpatch-patch-4_18_0-477_143_1, and kpatch-patch-4_18_0-477_97_1 security update Type/Severity Security Advisory: Important Red Hat Lightspeed patch analysis Identify and remediate systems affected by this advisory. View affected systems Topic An update for multiple packages is now available for Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. Description This is a kernel live patch module which can be loaded by the kpatch command line utility to modify the code of a running kernel. This patch module is targeted for kernel-4.18.0-477.97.1.el8_8. Security Fix(es): kernel: net/sched: act_pedit: extend the writable skb range per key (CVE-2026-46331) kernel: Linux kernel: smb: client: reject userspace cifs.spnego descriptions (CVE-2026-46243) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Solution For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 Affected Products Red Hat Enterprise Linux for x86_64 - Extended Update Support Extension 8.8 x86_64 Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 8.8 ppc64le Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 8.8 x86_64 Fixes BZ - 2479492 - CVE-2026-46331 kernel: net/sched: act_pedit: extend the writable skb range per key BZ - 2481486 - CVE-2026-46243 kernel: Linux kernel: smb: client: reject userspace cifs.spnego descriptions CVEs CVE-2026-46243 CVE-2026-46331 References https://access.redhat.com/security/updates/classification/#important Note: More recent versions of these packages may be available. Click a package name for more details. Red Hat Enterprise Linux for x86_64 - Extended Update Support Extension 8.8 SRPM kpatch-patch-4_18_0-477_107_1-1-8.el8_8.src.rpm SHA-256: e67e5430ddb0737fa105176b4ec21bbe093f41f86e40c1755346911b05848bac kpatch-patch-4_18_0-477_120_1-1-7.el8_8.src.rpm SHA-256: c5361f77b2317507c2d9ba40eac97e0ec5ceb8c60d29483c599c2ae723cb0789 kpatch-patch-4_18_0-477_130_1-1-5.el8_8.src.rpm SHA-256: 8da584d517d96642cbfdc2d8ea34ca7159be2f83884f3a7e99616ba9dd53ce6d kpatch-patch-4_18_0-477_143_1-1-2.el8_8.src.rpm SHA-256: 78d0720c51ddd77bd1fdfbba63e89f9f8a5e88ee51712f389a0ff70ee67a0d9c kpatch-patch-4_18_0-477_97_1-1-12.el8_8.src.rpm SHA-256: bcd2e4d01da69d56b433362431e151dc7ce48dfa82c44cb2b8ae6a8adf466725 x86_64 kpatch-patch-4_18_0-477_107_1-1-8.el8_8.x86_64.rpm SHA-256: 90d1b50db5c2f9a182d5301b0660afbf2d9f6a1063de78bc3fc66acbf07c643d kpatch-patch-4_18_0-477_107_1-debuginfo-1-8.el8_8.x86_64.rpm SHA-256: eba7cd21708cf5a0aae2af7d17c6404b9c597c1d36326c5a1c2967d9ad1d9702 kpatch-patch-4_18_0-477_107_1-debugsource-1-8.el8_8.x86_64.rpm SHA-256: 0e326f6db1c9dcca67061f21411630295c5fd3dde95e63291d3c82662ccd06fe kpatch-patch-4_18_0-477_120_1-1-7.el8_8.x86_64.rpm SHA-256: bf61f0e96122155136bd77bae226d25afec04603bb67af218c1b139a7c26dea7 kpatch-patch-4_18_0-477_120_1-debuginfo-1-7.el8_8.x86_64.rpm SHA-256: 574d817f6eb359a94fffa061f10a0b9a652948730d44373d0b6ffa2e2c9be925 kpatch-patch-4_18_0-477_120_1-debugsource-1-7.el8_8.x86_64.rpm SHA-256: ca267ded01e106d1d0ba06d792e05ba975b7b9d890fc754ad28b7d063b51054a kpatch-patch-4_18_0-477_130_1-1-5.el8_8.x86_64.rpm SHA-256: 9ed77a561d77d35d7e857860f3f9d30264e0289e6ab9483db44d245c2e856c1b kpatch-patch-4_18_0-477_130_1-debuginfo-1-5.el8_8.x86_64.rpm SHA-256: eb4654088c1d6158b4686b109c5c1b217b977dae263138ec2d19b59c51725d9e kpatch-patch-4_18_0-477_130_1-debugsource-1-5.el8_8.x86_64.rpm SHA-256: c96b0128ca5441d78568cbca112c2d5fa926bcf054aa0ef1d65ed8b89928f9af kpatch-patch-4_18_0-477_143_1-1-2.el8_8.x86_64.rpm SHA-256: c347a44972cbe623bb8ed47a5f4d0ac4f8041a3e7f0607985bf5592c9579fab7 kpatch-patch-4_18_0-477_143_1-debuginfo-1-2.el8_8.x86_64.rpm SHA-256: 0c341e3c2cfc9b9633d128de415a9c32581546e694ff422a1ae4420f938fad8a kpatch-patch-4_18_0-477_143_1-debugsource-1-2.el8_8.x86_64.rpm SHA-256: 81e806cfb90fd699e27391323825ddf372a37b7a0fb90096748f232c57686a18 kpatch-patch-4_18_0-477_97_1-1-12.el8_8.x86_64.rpm SHA-256: 0aa8904e31aece7c161daccc9cc5ab5ba22e605bc2014e4824bfbd9191c6535f kpatch-patch-4_18_0-477_97_1-debuginfo-1-12.el8_8.x86_64.rpm SHA-256: f8b5ebf7588744c674b693bb4e670cfc3196d5725eac7f6b9a58bed40c47700e kpatch-patch-4_18_0-477_97_1-debugsource-1-12.el8_8.x86_64.rpm SHA-256: 8d925a83bbfa668a7d093294433b09d864df520a90cacc79a524ef94fc1a003f Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 8.8 SRPM kpatch-patch-4_18_0-477_107_1-1-8.el8_8.src.rpm SHA-256: e67e5430ddb0737fa105176b4ec21bbe093f41f86e40c1755346911b05848bac kpatch-patch-4_18_0-477_120_1-1-7.el8_8.src.rpm SHA-256: c5361f77b2317507c2d9ba40eac97e0ec5ceb8c60d29483c599c2ae723cb0789 kpatch-patch-4_18_0-477_130_1-1-5.el8_8.src.rpm SHA-256: 8da584d517d96642cbfdc2d8ea34ca7159be2f83884f3a7e99616ba9dd53ce6d kpatch-patch-4_18_0-477_143_1-1-2.el8_8.src.rpm SHA-256: 78d0720c51ddd77bd1fdfbba63e89f9f8a5e88ee51712f389a0ff70ee67a0d9c kpatch-patch-4_18_0-477_97_1-1-12.el8_8.src.rpm SHA-256: bcd2e4d01da69d56b433362431e151dc7ce48dfa82c44cb2b8ae6a8adf466725 ppc64le kpatch-patch-4_18_0-477_107_1-1-8.el8_8.ppc64le.rpm SHA-256: 4a0020bebd980fa9bf5fd94bd90f76e8cb9aafa9d6eabeddf4e855c6549f2951 kpatch-patch-4_18_0-477_107_1-debuginfo-1-8.el8_8.ppc64le.rpm SHA-256: a151a9b04b460866e02e9273540664ecbe3fe316880a97bdf5d40c8dd840e4c7 kpatch-patch-4_18_0-477_107_1-debugsource-1-8.el8_8.ppc64le.rpm SHA-256: 153293e8d9107df0a55505f1779b5630a6183a6a1e8457eacfb5c9efb98202b3 kpatch-patch-4_18_0-477_120_1-1-7.el8_8.ppc64le.rpm SHA-256: c6c130c800e01ef2367b670c50d5cdcd7b2bdaaa9c635ace985f2a49a771ef49 kpatch-patch-4_18_0-477_120_1-debuginfo-1-7.el8_8.ppc64le.rpm SHA-256: 5e706c17414b276a02ab380cb9e70ec1d29457c4a0db15e4c04fc6a58082f319 kpatch-patch-4_18_0-477_120_1-debugsource-1-7.el8_8.ppc64le.rpm SHA-256: 1789c2fcc2c1c8a89d8716c1680105994be5f474a4c90c34bdd8b554b59bd406 kpatch-patch-4_18_0-477_130_1-1-5.el8_8.ppc64le.rpm SHA-256: 2737628b77fbad32ca73869d797bea6106e77ed3210bbe4fe058ed4b716eae9c kpatch-patch-4_18_0-477_130_1-debuginfo-1-5.el8_8.ppc64le.rpm SHA-256: 7dddab9dc6acaf1fe120689c7192e6cbbab408ae282371c27cf6db713d3eb429 kpatch-patch-4_18_0-477_130_1-debugsource-1-5.el8_8.ppc64le.rpm SHA-256: d053ef369a194e643454239ea8588bb790e50bb08d61163196af4554da163cb2 kpatch-patch-4_18_0-477_143_1-1-2.el8_8.ppc64le.rpm SHA-256: 3816eeb0c90c50fc7664044e5ec112f2d38e3430d464347156c0fe873295747c kpatch-patch-4_18_0-477_143_1-debuginfo-1-2.el8_8.ppc64le.rpm SHA-256: cc03e6775a732c6c4829aa6c1aeabd5cab9e37480e69ae711fc096fc091a208c kpatch-patch-4_18_0-477_143_1-debugsource-1-2.el8_8.ppc64le.rpm SHA-256: 5219ce2940ffb6d196e59cd6c3d39dc89036e0e72c4c2130d4802cf0de331929 kpatch-patch-4_18_0-477_97_1-1-12.el8_8.ppc64le.rpm SHA-256: e19744edc4c93874faec76c69945a25b6dc01a4e71cf9ecfbc0738763dba00d5 kpatch-patch-4_18_0-477_97_1-debuginfo-1-12.el8_8.ppc64le.rpm SHA-256: ed71891c96eb5a910bba171d38f09c80bcd347d2f612c77fa240fd5f43b7f778 kpatch-patch-4_18_0-477_97_1-debugsource-1-12.el8_8.ppc64le.rpm SHA-256: 4fd69ad9c9d2bfaad398aa77d4a6bcdbcad5f94327852ef1eeb9db2275752adf Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 8.8 SRPM kpatch-patch-4_18_0-477_107_1-1-8.el8_8.src.rpm SHA-256: e67e5430ddb0737fa105176b4ec21bbe093f41f86e40c1755346911b05848bac kpatch-patch-4_18_0-477_120_1-1-7.el8_8.src.rpm SHA-256: c5361f77b2317507c2d9ba40eac97e0ec5ceb8c60d29483c599c2ae723cb0789 kpatch-patch-4_18_0-477_130_1-1-5.el8_8.src.rpm SHA-256: 8da584d517d96642cbfdc2d8ea34ca7159be2f83884f3a7e99616ba9dd53ce6d kpatch-patch-4_18_0-477_143_1-1-2.el8_8.src.rpm SHA-256: 78d0720c51ddd77bd1fdfbba63e89f9f8a5e88ee51712f389a0ff70ee67a0d9c kpatch-patch-4_18_0-477_97_1-1-12.el8_8.src.rpm SHA-256: bcd2e4d01da69d56b433362431e151dc7ce48dfa82c44cb2b8ae6a8adf466725 x86_64 kpatch-patch-4_18_0-477_107_1-1-8.el8_8.x86_64.rpm SHA-256: 90d1b50db5c2f9a182d5301b0660afbf2d9f6a1063de78bc3fc66acbf07c643d kpatch-patch-4_18_0-477_107_1-debuginfo-1-8.el8_8.x86_64.rpm SHA-256: eba7cd21708cf5a0aae2af7d17c6404b9c597c1d36326c5a1c2967d9ad1d9702 kpatch-patch-4_18_0-477_107_1-debugsource-1-8.el8_8.x86_64.rpm SHA-256: 0e326f6db1c9dcca67061f21411630295c5fd3dde95e63291d3c82662ccd06fe kpatch-patch-4_18_0-477_120_1-1-7.el8_8.x86_64.rpm SHA-256: bf61f0e96122155136bd77bae226d25afec04603bb67af218c1b139a7c26dea7 kpatch-patch-4_18_0-477_120_1-debuginfo-1-7.el8_8.x86_64.rpm SHA-256: 574d817f6eb359a94fffa061f10a0b9a652948730d44373d0b6ffa2e2c9be925 kpatch-patch-4_18_0-477_120_1-debugsource-1-7.el8_8.x86_64.rpm SHA-256: ca267ded01e106d1d0ba06d792e05ba975b7b9d890fc754ad28b7d063b51054a kpatch-patch-4_18_0-477_130_1-1-5.el8_8.x86_64.rpm SHA-256: 9ed77a561d77d35d7e857860f3f9d30264e0289e6ab9483db44d245c2e856c1b kpatch-patch-4_18_0-477_130_1-debuginfo-1-5.el8_8.x86_64.rpm SHA-256: eb4654088c1d6158b4686b109c5c1b217b977dae263138ec2d19b59c51725d9e kpatch-patch-4_18_0-477_130_1-debugsource-1-5.el8_8.x86_64.rpm SHA-256: c96b0128ca5441d78568cbca112c2d5fa926bcf054aa0ef1d65ed8b89928f9af kpatch-patch-4_18_0-477_143_1-1-2.el8_8.x86_64.rpm SHA-256: c347a44972cbe623bb8ed47a5f4d0ac4f8041a3e7f0607985bf5592c9579fab7 kpatch-patch-4_18_0-477_143_1-debuginfo-1-2.el8_8.x86_64.rpm SHA-256: 0c341e3c2cfc9b9633d128de415a9c32581546e694ff422a1ae4420f938fad8a kpatch-patch-4_18_0-477_143_1-debugsource-1-2.el8_8.x86_64.rpm SHA-256: 81e806cfb90fd699e27391323825ddf3
This Red Hat security advisory addresses two high-severity kernel vulnerabilities (CVE-2026-46331, CVSS 7.8, and CVE-2026-46243, CVSS 7.1) affecting the Linux kernel's traffic classification action and SMB client, respectively. The vulnerabilities affect a wide range of kernel versions from 2.6.24.1 through 6.12.92 across multiple major release streams. Red Hat has released live patch modules for Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions to mitigate these flaws on the running kernel.