Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2026:19574 - Security Advisory
Issued:
2026-05-20
Updated:
2026-05-20

RHSA-2026:19574 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Important: kpatch-patch-4_18_0-553_109_1, kpatch-patch-4_18_0-553_40_1, kpatch-patch-4_18_0-553_53_1, kpatch-patch-4_18_0-553_72_1, and kpatch-patch-4_18_0-553_85_1 security update

Type/Severity

Security Advisory: Important

Red Hat Lightspeed patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for multiple packages is now available for Red Hat Enterprise Linux 8.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

This is a kernel live patch module which can be loaded by the kpatch command line utility to modify the code of a running kernel. This patch module is targeted for kernel-4.18.0-553.40.1.el8_10.

Security Fix(es):

  • kernel: "Dirty Frag" is a new universal Local Privilege Escalation (LPE) vulnerability in the Linux kernel (CVE-2026-43284)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux for x86_64 8 x86_64
  • Red Hat Enterprise Linux for Power, little endian 8 ppc64le
  • Red Hat Enterprise Linux for x86_64 - Extended Life Cycle 8.10 x86_64
  • Red Hat Enterprise Linux for Power, little endian - Extended Life Cycle 8.10 ppc64le

Fixes

  • BZ - 2467771 - CVE-2026-43284 kernel: "Dirty Frag" ESP XFRM variant is a new universal Local Privilege Escalation (LPE) vulnerability in the Linux kernel

CVEs

  • CVE-2026-43284

References

  • https://access.redhat.com/security/updates/classification/#important
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux for x86_64 8

SRPM
kpatch-patch-4_18_0-553_109_1-1-2.el8_10.src.rpm SHA-256: b0b7ab6209a04448e92ea42a1ea873980c09ad96b8348c3c964a99cbe98b6cf5
kpatch-patch-4_18_0-553_40_1-1-11.el8_10.src.rpm SHA-256: 56f9157b82446ce113bf7b619c482b9d15095b1e7ec580623a77e8d757e26c0f
kpatch-patch-4_18_0-553_53_1-1-9.el8_10.src.rpm SHA-256: c4b838a3748e47981e2a0a78619aad04292b1a5ddcfa19925c00fc8dff84681e
kpatch-patch-4_18_0-553_72_1-1-6.el8_10.src.rpm SHA-256: e515d64d7126d573c37feef3dbc515297cbf281b0f6f0a6c055bba9ea9aa394e
kpatch-patch-4_18_0-553_85_1-1-4.el8_10.src.rpm SHA-256: 5937e24539ba096f18a700ea1cfaef16e1df139518fcb29d3f257eadbea3dbe6
x86_64
kpatch-patch-4_18_0-553_109_1-1-2.el8_10.x86_64.rpm SHA-256: c81399b9623582604d7467a830f96ae8be4fb4cc5baa7f40a7f9c6d1bd89f017
kpatch-patch-4_18_0-553_109_1-debuginfo-1-2.el8_10.x86_64.rpm SHA-256: 65ee160966f0eb1f12f4698447a7a9e4c30e3e2514945ebb27c9213afcb01ebe
kpatch-patch-4_18_0-553_109_1-debugsource-1-2.el8_10.x86_64.rpm SHA-256: 476f4d843acee4c52ba3213f35b4a152d2b66e9fa4f50696dfcfaeae6117acc2
kpatch-patch-4_18_0-553_40_1-1-11.el8_10.x86_64.rpm SHA-256: cce7a958fe5b4566c67eb171b76c986c46ba268d108cf10198d89ee826e3e0f6
kpatch-patch-4_18_0-553_40_1-debuginfo-1-11.el8_10.x86_64.rpm SHA-256: 038bfd82aa5e6c3d228cf990955bbabde92ae06d8cd8ec51c081cbbedcca5131
kpatch-patch-4_18_0-553_40_1-debugsource-1-11.el8_10.x86_64.rpm SHA-256: a958482abedf1738e2aa498f6b90440ea4b600ea34255d74606374b97892a04e
kpatch-patch-4_18_0-553_53_1-1-9.el8_10.x86_64.rpm SHA-256: 29ba4f089c125d258c1fa6ee9062174e53b9f6c9ebe7eb0d8d1ea24c5cdbf8c9
kpatch-patch-4_18_0-553_53_1-debuginfo-1-9.el8_10.x86_64.rpm SHA-256: 459884d53076dbbc8b843461363d0f8acd4bfded3069431e67b5ec92eacfd45e
kpatch-patch-4_18_0-553_53_1-debugsource-1-9.el8_10.x86_64.rpm SHA-256: c45fad1f225eee593168b67ef2abc7d474541d1230e8aec7018d31ccb69f9f76
kpatch-patch-4_18_0-553_72_1-1-6.el8_10.x86_64.rpm SHA-256: d957bdadf98673e9293a778ebf5e75dd33ccf5f62622dc87a92ac004edd9eb05
kpatch-patch-4_18_0-553_72_1-debuginfo-1-6.el8_10.x86_64.rpm SHA-256: 27c5edadce99a2b8840f2984572c11c69e409036c610cc46ac9d5298f2516cc4
kpatch-patch-4_18_0-553_72_1-debugsource-1-6.el8_10.x86_64.rpm SHA-256: e3d35908a6091526fe33608ef5da67606c30d2ba33be2bc7f43772ccff4f2df4
kpatch-patch-4_18_0-553_85_1-1-4.el8_10.x86_64.rpm SHA-256: e8f1fc591d3ee89b0dc895471e43dc6d147831cad0b614239f941cd9833e204e
kpatch-patch-4_18_0-553_85_1-debuginfo-1-4.el8_10.x86_64.rpm SHA-256: b46e011d33da8fb3b6142f7ddcddcd27a89d7929d4d5cb2c2ebfb668c5746c21
kpatch-patch-4_18_0-553_85_1-debugsource-1-4.el8_10.x86_64.rpm SHA-256: e7b3018e34f4f53428eb33b9af7193a6e8f96dd1c253b67f1cdc2fd2e496d61a

Red Hat Enterprise Linux for Power, little endian 8

SRPM
kpatch-patch-4_18_0-553_109_1-1-2.el8_10.src.rpm SHA-256: b0b7ab6209a04448e92ea42a1ea873980c09ad96b8348c3c964a99cbe98b6cf5
kpatch-patch-4_18_0-553_40_1-1-11.el8_10.src.rpm SHA-256: 56f9157b82446ce113bf7b619c482b9d15095b1e7ec580623a77e8d757e26c0f
kpatch-patch-4_18_0-553_53_1-1-9.el8_10.src.rpm SHA-256: c4b838a3748e47981e2a0a78619aad04292b1a5ddcfa19925c00fc8dff84681e
kpatch-patch-4_18_0-553_72_1-1-6.el8_10.src.rpm SHA-256: e515d64d7126d573c37feef3dbc515297cbf281b0f6f0a6c055bba9ea9aa394e
kpatch-patch-4_18_0-553_85_1-1-4.el8_10.src.rpm SHA-256: 5937e24539ba096f18a700ea1cfaef16e1df139518fcb29d3f257eadbea3dbe6
ppc64le
kpatch-patch-4_18_0-553_109_1-1-2.el8_10.ppc64le.rpm SHA-256: 29f3ee81046ec692b5e4c3c0b7e25e5ca59181780041b7e404cb9f0828a04859
kpatch-patch-4_18_0-553_109_1-debuginfo-1-2.el8_10.ppc64le.rpm SHA-256: 2bd39cde835086cfaf507782fa1cc1aa7ed775d4924d650b142eab97378ab433
kpatch-patch-4_18_0-553_109_1-debugsource-1-2.el8_10.ppc64le.rpm SHA-256: 2f6f62547119f5498f65c02e529255d33544165aee58d292a2c692d7d281d8f0
kpatch-patch-4_18_0-553_40_1-1-11.el8_10.ppc64le.rpm SHA-256: de117dde09257112a2ca5b66ce7173e4528b9f938f085d76f9669650ca1c7b92
kpatch-patch-4_18_0-553_40_1-debuginfo-1-11.el8_10.ppc64le.rpm SHA-256: c1feec1296c0a9a90740a592bcda43a4c2e6bc7779b07e869a563a5d6447b13d
kpatch-patch-4_18_0-553_40_1-debugsource-1-11.el8_10.ppc64le.rpm SHA-256: 71526c4c81a60c9f29a9a78f759552207c15903ed3263350152b2473468e6e48
kpatch-patch-4_18_0-553_53_1-1-9.el8_10.ppc64le.rpm SHA-256: 07e941fe0037c0e5061a83fcbe736f2db251977f3a9a6375f9b0d6ac901152b0
kpatch-patch-4_18_0-553_53_1-debuginfo-1-9.el8_10.ppc64le.rpm SHA-256: cb1538b5476aaa75e4cf3d6202b48d0839f52b76afe544b66dbd41df8321b135
kpatch-patch-4_18_0-553_53_1-debugsource-1-9.el8_10.ppc64le.rpm SHA-256: 8ea8b4044b5928e25d3ff801ce4a911a4cfa86b0fea9b9610f27e5d4f8ab5ef1
kpatch-patch-4_18_0-553_72_1-1-6.el8_10.ppc64le.rpm SHA-256: af595aeaad5ce12bec139e201d8f3487f9ce9b8d32ed9dd122d9637258e1c0bc
kpatch-patch-4_18_0-553_72_1-debuginfo-1-6.el8_10.ppc64le.rpm SHA-256: 4743d79f6844af7f6cb0ce3e9354dc19e92ccb8a97af26744f0bf733d2ad9622
kpatch-patch-4_18_0-553_72_1-debugsource-1-6.el8_10.ppc64le.rpm SHA-256: c4d2436d0ed46b767895ecd3080883c9248758db85e43761065f8d7b4cc28ff8
kpatch-patch-4_18_0-553_85_1-1-4.el8_10.ppc64le.rpm SHA-256: ed3fff93cc6485cd91de834f4baa2b4286cf5a8884bf762645cce0637d357ea5
kpatch-patch-4_18_0-553_85_1-debuginfo-1-4.el8_10.ppc64le.rpm SHA-256: 4e1e13f576ed2e3d5b7e2cad769c5644fb771c88c3c405a682a7057e9cb8b067
kpatch-patch-4_18_0-553_85_1-debugsource-1-4.el8_10.ppc64le.rpm SHA-256: 296fa74ff983e9ff2f4b99b7a4045eaa96ae5639a0a06df7521827469ef465fa

Red Hat Enterprise Linux for x86_64 - Extended Life Cycle 8.10

SRPM
kpatch-patch-4_18_0-553_109_1-1-2.el8_10.src.rpm SHA-256: b0b7ab6209a04448e92ea42a1ea873980c09ad96b8348c3c964a99cbe98b6cf5
kpatch-patch-4_18_0-553_40_1-1-11.el8_10.src.rpm SHA-256: 56f9157b82446ce113bf7b619c482b9d15095b1e7ec580623a77e8d757e26c0f
kpatch-patch-4_18_0-553_53_1-1-9.el8_10.src.rpm SHA-256: c4b838a3748e47981e2a0a78619aad04292b1a5ddcfa19925c00fc8dff84681e
kpatch-patch-4_18_0-553_72_1-1-6.el8_10.src.rpm SHA-256: e515d64d7126d573c37feef3dbc515297cbf281b0f6f0a6c055bba9ea9aa394e
kpatch-patch-4_18_0-553_85_1-1-4.el8_10.src.rpm SHA-256: 5937e24539ba096f18a700ea1cfaef16e1df139518fcb29d3f257eadbea3dbe6
x86_64
kpatch-patch-4_18_0-553_109_1-1-2.el8_10.x86_64.rpm SHA-256: c81399b9623582604d7467a830f96ae8be4fb4cc5baa7f40a7f9c6d1bd89f017
kpatch-patch-4_18_0-553_109_1-debuginfo-1-2.el8_10.x86_64.rpm SHA-256: 65ee160966f0eb1f12f4698447a7a9e4c30e3e2514945ebb27c9213afcb01ebe
kpatch-patch-4_18_0-553_109_1-debugsource-1-2.el8_10.x86_64.rpm SHA-256: 476f4d843acee4c52ba3213f35b4a152d2b66e9fa4f50696dfcfaeae6117acc2
kpatch-patch-4_18_0-553_40_1-1-11.el8_10.x86_64.rpm SHA-256: cce7a958fe5b4566c67eb171b76c986c46ba268d108cf10198d89ee826e3e0f6
kpatch-patch-4_18_0-553_40_1-debuginfo-1-11.el8_10.x86_64.rpm SHA-256: 038bfd82aa5e6c3d228cf990955bbabde92ae06d8cd8ec51c081cbbedcca5131
kpatch-patch-4_18_0-553_40_1-debugsource-1-11.el8_10.x86_64.rpm SHA-256: a958482abedf1738e2aa498f6b90440ea4b600ea34255d74606374b97892a04e
kpatch-patch-4_18_0-553_53_1-1-9.el8_10.x86_64.rpm SHA-256: 29ba4f089c125d258c1fa6ee9062174e53b9f6c9ebe7eb0d8d1ea24c5cdbf8c9
kpatch-patch-4_18_0-553_53_1-debuginfo-1-9.el8_10.x86_64.rpm SHA-256: 459884d53076dbbc8b843461363d0f8acd4bfded3069431e67b5ec92eacfd45e
kpatch-patch-4_18_0-553_53_1-debugsource-1-9.el8_10.x86_64.rpm SHA-256: c45fad1f225eee593168b67ef2abc7d474541d1230e8aec7018d31ccb69f9f76
kpatch-patch-4_18_0-553_72_1-1-6.el8_10.x86_64.rpm SHA-256: d957bdadf98673e9293a778ebf5e75dd33ccf5f62622dc87a92ac004edd9eb05
kpatch-patch-4_18_0-553_72_1-debuginfo-1-6.el8_10.x86_64.rpm SHA-256: 27c5edadce99a2b8840f2984572c11c69e409036c610cc46ac9d5298f2516cc4
kpatch-patch-4_18_0-553_72_1-debugsource-1-6.el8_10.x86_64.rpm SHA-256: e3d35908a6091526fe33608ef5da67606c30d2ba33be2bc7f43772ccff4f2df4
kpatch-patch-4_18_0-553_85_1-1-4.el8_10.x86_64.rpm SHA-256: e8f1fc591d3ee89b0dc895471e43dc6d147831cad0b614239f941cd9833e204e
kpatch-patch-4_18_0-553_85_1-debuginfo-1-4.el8_10.x86_64.rpm SHA-256: b46e011d33da8fb3b6142f7ddcddcd27a89d7929d4d5cb2c2ebfb668c5746c21
kpatch-patch-4_18_0-553_85_1-debugsource-1-4.el8_10.x86_64.rpm SHA-256: e7b3018e34f4f53428eb33b9af7193a6e8f96dd1c253b67f1cdc2fd2e496d61a

Red Hat Enterprise Linux for Power, little endian - Extended Life Cycle 8.10

SRPM
kpatch-patch-4_18_0-553_109_1-1-2.el8_10.src.rpm SHA-256: b0b7ab6209a04448e92ea42a1ea873980c09ad96b8348c3c964a99cbe98b6cf5
kpatch-patch-4_18_0-553_40_1-1-11.el8_10.src.rpm SHA-256: 56f9157b82446ce113bf7b619c482b9d15095b1e7ec580623a77e8d757e26c0f
kpatch-patch-4_18_0-553_53_1-1-9.el8_10.src.rpm SHA-256: c4b838a3748e47981e2a0a78619aad04292b1a5ddcfa19925c00fc8dff84681e
kpatch-patch-4_18_0-553_72_1-1-6.el8_10.src.rpm SHA-256: e515d64d7126d573c37feef3dbc515297cbf281b0f6f0a6c055bba9ea9aa394e
kpatch-patch-4_18_0-553_85_1-1-4.el8_10.src.rpm SHA-256: 5937e24539ba096f18a700ea1cfaef16e1df139518fcb29d3f257eadbea3dbe6
ppc64le
kpatch-patch-4_18_0-553_109_1-1-2.el8_10.ppc64le.rpm SHA-256: 29f3ee81046ec692b5e4c3c0b7e25e5ca59181780041b7e404cb9f0828a04859
kpatch-patch-4_18_0-553_109_1-debuginfo-1-2.el8_10.ppc64le.rpm SHA-256: 2bd39cde835086cfaf507782fa1cc1aa7ed775d4924d650b142eab97378ab433
kpatch-patch-4_18_0-553_109_1-debugsource-1-2.el8_10.ppc64le.rpm SHA-256: 2f6f62547119f5498f65c02e529255d33544165aee58d292a2c692d7d281d8f0
kpatch-patch-4_18_0-553_40_1-1-11.el8_10.ppc64le.rpm SHA-256: de117dde09257112a2ca5b66ce7173e4528b9f938f085d76f9669650ca1c7b92
kpatch-patch-4_18_0-553_40_1-debuginfo-1-11.el8_10.ppc64le.rpm SHA-256: c1feec1296c0a9a90740a592bcda43a4c2e6bc7779b07e869a563a5d6447b13d
kpatch-patch-4_18_0-553_40_1-debugsource-1-11.el8_10.ppc64le.rpm SHA-256: 71526c4c81a60c9f29a9a78f759552207c15903ed3263350152b2473468e6e48
kpatch-patch-4_18_0-553_53_1-1-9.el8_10.ppc64le.rpm SHA-256: 07e941fe0037c0e5061a83fcbe736f2db251977f3a9a6375f9b0d6ac901152b0
kpatch-patch-4_18_0-553_53_1-debuginfo-1-9.el8_10.ppc64le.rpm SHA-256: cb1538b5476aaa75e4cf3d6202b48d0839f52b76afe544b66dbd41df8321b135
kpatch-patch-4_18_0-553_53_1-debugsource-1-9.el8_10.ppc64le.rpm SHA-256: 8ea8b4044b5928e25d3ff801ce4a911a4cfa86b0fea9b9610f27e5d4f8ab5ef1
kpatch-patch-4_18_0-553_72_1-1-6.el8_10.ppc64le.rpm SHA-256: af595aeaad5ce12bec139e201d8f3487f9ce9b8d32ed9dd122d9637258e1c0bc
kpatch-patch-4_18_0-553_72_1-debuginfo-1-6.el8_10.ppc64le.rpm SHA-256: 4743d79f6844af7f6cb0ce3e9354dc19e92ccb8a97af26744f0bf733d2ad9622
kpatch-patch-4_18_0-553_72_1-debugsource-1-6.el8_10.ppc64le.rpm SHA-256: c4d2436d0ed46b767895ecd3080883c9248758db85e43761065f8d7b4cc28ff8
kpatch-patch-4_18_0-553_85_1-1-4.el8_10.ppc64le.rpm SHA-256: ed3fff93cc6485cd91de834f4baa2b4286cf5a8884bf762645cce0637d357ea5
kpatch-patch-4_18_0-553_85_1-debuginfo-1-4.el8_10.ppc64le.rpm SHA-256: 4e1e13f576ed2e3d5b7e2cad769c5644fb771c88c3c405a682a7057e9cb8b067
kpatch-patch-4_18_0-553_85_1-debugsource-1-4.el8_10.ppc64le.rpm SHA-256: 296fa74ff983e9ff2f4b99b7a4045eaa96ae5639a0a06df7521827469ef465fa

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2026 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility