Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2026:19575 - Security Advisory
Issued:
2026-05-20
Updated:
2026-05-20

RHSA-2026:19575 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Important: kpatch-patch-5_14_0-70_124_1, kpatch-patch-5_14_0-70_132_1, kpatch-patch-5_14_0-70_144_1, kpatch-patch-5_14_0-70_155_1, and kpatch-patch-5_14_0-70_167_1 security update

Type/Severity

Security Advisory: Important

Red Hat Lightspeed patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for multiple packages is now available for Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

This is a kernel live patch module which can be loaded by the kpatch command line utility to modify the code of a running kernel. This patch module is targeted for kernel-5.14.0-70.124.1.el9_0.

Security Fix(es):

  • kernel: "Dirty Frag" is a new universal Local Privilege Escalation (LPE) vulnerability in the Linux kernel (CVE-2026-43284)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.0 ppc64le
  • Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.0 x86_64

Fixes

  • BZ - 2467771 - CVE-2026-43284 kernel: "Dirty Frag" ESP XFRM variant is a new universal Local Privilege Escalation (LPE) vulnerability in the Linux kernel

CVEs

  • CVE-2026-43284

References

  • https://access.redhat.com/security/updates/classification/#important
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.0

SRPM
kpatch-patch-5_14_0-70_124_1-1-13.el9_0.src.rpm SHA-256: 2f4a01810e05f2432fc9beb0b57c4d7185006f901643bc1ae7f7e26556b4a4ef
kpatch-patch-5_14_0-70_132_1-1-9.el9_0.src.rpm SHA-256: f8dcf71f22673447e0fbb44d0d7c2cc5272a44746ac53b0b30b9107b8a9ed1ee
kpatch-patch-5_14_0-70_144_1-1-5.el9_0.src.rpm SHA-256: 7c7c6bdf17e0488bc631bb2410342d90deb822538062939f0fa4c7d9fbc95969
kpatch-patch-5_14_0-70_155_1-1-4.el9_0.src.rpm SHA-256: 2559ff9628293f9cddf80662c1e511a067191228b77f3a2c6a65d85e04123e18
kpatch-patch-5_14_0-70_167_1-1-2.el9_0.src.rpm SHA-256: 86cb6ca1f4078b3cf5b3c38f05a1cd0b89f46e608a8ad95da9ebc89f6ee95d7a
ppc64le
kpatch-patch-5_14_0-70_124_1-1-13.el9_0.ppc64le.rpm SHA-256: f32644f549ed50ab468da53e63b0149d417cb885a20ec8d6b20a887357b1932b
kpatch-patch-5_14_0-70_124_1-debuginfo-1-13.el9_0.ppc64le.rpm SHA-256: 2cf44b532439dfc87d623e40aa228666fbb5361a9010d7a33d757f113813c063
kpatch-patch-5_14_0-70_124_1-debugsource-1-13.el9_0.ppc64le.rpm SHA-256: 21fe68fca0d6e1bd20ace3df0aeb831ee377857aad9b969b9203286fe0722903
kpatch-patch-5_14_0-70_132_1-1-9.el9_0.ppc64le.rpm SHA-256: af5c7d9765ea48aebfe422ec2e66202abfe20bfa56a4c33eef6dd1d3006f688a
kpatch-patch-5_14_0-70_132_1-debuginfo-1-9.el9_0.ppc64le.rpm SHA-256: ca13c93bdd1cdaf245ff1bdb4b4cb1064f12ce98bb1ca46fa95d4d0c8319bf8e
kpatch-patch-5_14_0-70_132_1-debugsource-1-9.el9_0.ppc64le.rpm SHA-256: 3d89d6fc6bcd3669222cad84a53bf8c9e973423484694fd8f4130294aa173170
kpatch-patch-5_14_0-70_144_1-1-5.el9_0.ppc64le.rpm SHA-256: ec675047522a4c612a0ef25fc91c1b650c06c45f3641998679b7f8a56caaaabe
kpatch-patch-5_14_0-70_144_1-debuginfo-1-5.el9_0.ppc64le.rpm SHA-256: 76004566412e72a6788849ddb62e5745de321d39747fddcf5769bde1cfc238e7
kpatch-patch-5_14_0-70_144_1-debugsource-1-5.el9_0.ppc64le.rpm SHA-256: 3ccf137b9934f8b065d9de3b083ec485283fc6570ff1af07f5d553d0bd332b86
kpatch-patch-5_14_0-70_155_1-1-4.el9_0.ppc64le.rpm SHA-256: c54a50740be66b724a98e75cff841ddaad1cec930bf560c2856015700bcf31e6
kpatch-patch-5_14_0-70_155_1-debuginfo-1-4.el9_0.ppc64le.rpm SHA-256: 770daca3684dfaacada3a074c6551ad097fd25bb19987ca532d7f3ad3956f6ac
kpatch-patch-5_14_0-70_155_1-debugsource-1-4.el9_0.ppc64le.rpm SHA-256: f12d47f7c95948fa130567522d047270f8425ca22962f6e26aeaf691fb397112
kpatch-patch-5_14_0-70_167_1-1-2.el9_0.ppc64le.rpm SHA-256: f7ceb4ceae4fdd427706dd9fcd8363ec11dcbfc8e2bd105f76aa8f86dec9c347
kpatch-patch-5_14_0-70_167_1-debuginfo-1-2.el9_0.ppc64le.rpm SHA-256: 05890124ae417b1bcc6fbd72fa097207b6b91b42213b09965b84f10194bad25a
kpatch-patch-5_14_0-70_167_1-debugsource-1-2.el9_0.ppc64le.rpm SHA-256: 20747a3402cabe79f52d7910a4a70e40e58c659a880f4f68256899f4604906ea

Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.0

SRPM
kpatch-patch-5_14_0-70_124_1-1-13.el9_0.src.rpm SHA-256: 2f4a01810e05f2432fc9beb0b57c4d7185006f901643bc1ae7f7e26556b4a4ef
kpatch-patch-5_14_0-70_132_1-1-9.el9_0.src.rpm SHA-256: f8dcf71f22673447e0fbb44d0d7c2cc5272a44746ac53b0b30b9107b8a9ed1ee
kpatch-patch-5_14_0-70_144_1-1-5.el9_0.src.rpm SHA-256: 7c7c6bdf17e0488bc631bb2410342d90deb822538062939f0fa4c7d9fbc95969
kpatch-patch-5_14_0-70_155_1-1-4.el9_0.src.rpm SHA-256: 2559ff9628293f9cddf80662c1e511a067191228b77f3a2c6a65d85e04123e18
kpatch-patch-5_14_0-70_167_1-1-2.el9_0.src.rpm SHA-256: 86cb6ca1f4078b3cf5b3c38f05a1cd0b89f46e608a8ad95da9ebc89f6ee95d7a
x86_64
kpatch-patch-5_14_0-70_124_1-1-13.el9_0.x86_64.rpm SHA-256: 9b56787c88063cc7e71c55dcfe2c3651b84691933abd63cf0f54939d5b6192cb
kpatch-patch-5_14_0-70_124_1-debuginfo-1-13.el9_0.x86_64.rpm SHA-256: 01587b915f65529158ee3978bd636ae39a81d3697e70281b23cdb1d80a558202
kpatch-patch-5_14_0-70_124_1-debugsource-1-13.el9_0.x86_64.rpm SHA-256: 0df8d2bdfe340e254a28dc3c9a6598c0adca29a18b1db7aba532f416c1c89eba
kpatch-patch-5_14_0-70_132_1-1-9.el9_0.x86_64.rpm SHA-256: 7cf64ca5d4599d55a1840a88c1172a4454d65fe0ea084ab598befb78d318927e
kpatch-patch-5_14_0-70_132_1-debuginfo-1-9.el9_0.x86_64.rpm SHA-256: 8dc9e730e98c7fd1618103665f252d3ae817f3fa04c7d7a0071a993c290012e0
kpatch-patch-5_14_0-70_132_1-debugsource-1-9.el9_0.x86_64.rpm SHA-256: 08ac653c817cadd1a4f670c395f8bc4239457b1640e7fd2a0d60c63758ad3476
kpatch-patch-5_14_0-70_144_1-1-5.el9_0.x86_64.rpm SHA-256: 19b19da1017dc2fc1f655ea539ad37dca5d20080c3d7ccabc7c832dd31d3f177
kpatch-patch-5_14_0-70_144_1-debuginfo-1-5.el9_0.x86_64.rpm SHA-256: 6cc86e8809db6fe1d7f55fbc35e9558d35f3f19d9d4295f521636aa562baa126
kpatch-patch-5_14_0-70_144_1-debugsource-1-5.el9_0.x86_64.rpm SHA-256: 06ddf5d45fc30805cba90b956efa979257dbcd50ab1f2d2aa21ce73ad031be4b
kpatch-patch-5_14_0-70_155_1-1-4.el9_0.x86_64.rpm SHA-256: f82111406e58fce758e535b898c961d5aa9a283b880ed5cf821161b69df15bc6
kpatch-patch-5_14_0-70_155_1-debuginfo-1-4.el9_0.x86_64.rpm SHA-256: 80a57addf571552275a590e45f9a3b6996a21022240dd859f956b384eb0f03e6
kpatch-patch-5_14_0-70_155_1-debugsource-1-4.el9_0.x86_64.rpm SHA-256: 129844de08c61b262b7a68b5a2cee5ca718d66ef0914b11dbf2652b24aceb47d
kpatch-patch-5_14_0-70_167_1-1-2.el9_0.x86_64.rpm SHA-256: 5aa17d4aeee99a27e1fbcdc1f0ba1cbe8f91cc7356311185f90b6238af2798f0
kpatch-patch-5_14_0-70_167_1-debuginfo-1-2.el9_0.x86_64.rpm SHA-256: f6bea84c130c2ea0d1f84e822093189ee4aa18d95ee73c1065014936bb784d65
kpatch-patch-5_14_0-70_167_1-debugsource-1-2.el9_0.x86_64.rpm SHA-256: 4974bdf8683fbf3c6c8c473e086e40e23a026cdd3f7ca0313cf7a6191fa681be

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2026 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility