Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
红帽产品勘误 RHSA-2026:23470 - Security Advisory
发布:
2026-06-04
已更新:
2026-06-04

RHSA-2026:23470 - Security Advisory

  • 概述
  • 更新的软件包

概述

Important: kpatch-patch-4_18_0-553_109_1, kpatch-patch-4_18_0-553_40_1, kpatch-patch-4_18_0-553_53_1, kpatch-patch-4_18_0-553_72_1, and kpatch-patch-4_18_0-553_85_1 security update

类型/严重性

Security Advisory: Important

Red Hat Insights 补丁分析

识别并修复受此公告影响的系统。

查看受影响的系统

标题

An update for multiple packages is now available for Red Hat Enterprise Linux 8.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

描述

This is a kernel live patch module which can be loaded by the kpatch command line utility to modify the code of a running kernel. This patch module is targeted for kernel-4.18.0-553.40.1.el8_10.

Security Fix(es):

  • kernel: "Fragnesia" is a variant of Dirty Frag vulnerability in the ESP/XFRM leading to Local Privilege Escalation (LPE) vulnerability in the Linux kernel (CVE-2026-46300)
  • kernel: Read root-owned files as an unprivileged user (CVE-2026-46333)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

解决方案

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

受影响的产品

  • Red Hat Enterprise Linux for x86_64 8 x86_64
  • Red Hat Enterprise Linux for Power, little endian 8 ppc64le
  • Red Hat Enterprise Linux for x86_64 - Extended Life Cycle 8.10 x86_64
  • Red Hat Enterprise Linux for Power, little endian - Extended Life Cycle 8.10 ppc64le

修复

  • BZ - 2477015 - CVE-2026-46300 kernel: "Fragnesia" is a variant of Dirty Frag vulnerability in the ESP/XFRM leading to Local Privilege Escalation (LPE) vulnerability in the Linux kernel
  • BZ - 2477802 - CVE-2026-46333 kernel: Read root-owned files as an unprivileged user

CVE

  • CVE-2026-46300
  • CVE-2026-46333

参考

  • https://access.redhat.com/security/updates/classification/#important
备注: 可能有这些软件包的更新版本。 点击软件包名称查看详情。

Red Hat Enterprise Linux for x86_64 8

SRPM
kpatch-patch-4_18_0-553_109_1-1-3.el8_10.src.rpm SHA-256: bcca1e9d520c77175432c5d193fe0b409f2de971361f814a3d8a54c6c289bb00
kpatch-patch-4_18_0-553_40_1-1-12.el8_10.src.rpm SHA-256: 6ee15ef326d081fb9c714e214c11132c92f68f50a1823cc4a879de790b1e15df
kpatch-patch-4_18_0-553_53_1-1-10.el8_10.src.rpm SHA-256: 7e79996db22a6c3cbc20d98d987f0f3e1190a6541c0d457183d9957295312541
kpatch-patch-4_18_0-553_72_1-1-7.el8_10.src.rpm SHA-256: d1a86924696184f041bd19366c9ddf62055d42792911edad29c15250608e008e
kpatch-patch-4_18_0-553_85_1-1-5.el8_10.src.rpm SHA-256: 9aaa12145058c1a2548bdb785980eb7a76c887f96fb57dc1dd0ab2155ae4c19d
x86_64
kpatch-patch-4_18_0-553_109_1-1-3.el8_10.x86_64.rpm SHA-256: 3cb61201191ecefced46071418d9e8ccdf0647d3c2e0357b7781db9940053635
kpatch-patch-4_18_0-553_109_1-debuginfo-1-3.el8_10.x86_64.rpm SHA-256: 9d29585caf0beffd80779f95fdccb6f04d6063cfe6936263814f78ec50775e14
kpatch-patch-4_18_0-553_109_1-debugsource-1-3.el8_10.x86_64.rpm SHA-256: f73296bcc97b563377ba6edda1b24c46073c6de0da522656b4d9043836434cfb
kpatch-patch-4_18_0-553_40_1-1-12.el8_10.x86_64.rpm SHA-256: 19e0dd3acd8ae4a92a8e47754e17186825e4622af57402c20e8bdbb6839319a4
kpatch-patch-4_18_0-553_40_1-debuginfo-1-12.el8_10.x86_64.rpm SHA-256: d4098159edc4f99a053931cca9f24c4557629aff4a814d007ce77033e83b1503
kpatch-patch-4_18_0-553_40_1-debugsource-1-12.el8_10.x86_64.rpm SHA-256: a16e000d28747e0e5cba5d381ade0098b6e6540d32945948802b4ef6307433fa
kpatch-patch-4_18_0-553_53_1-1-10.el8_10.x86_64.rpm SHA-256: c4e95eae9b3216ffa40b5ca6e1a54560d85c14be5a92baf83e5e6287b968ccb6
kpatch-patch-4_18_0-553_53_1-debuginfo-1-10.el8_10.x86_64.rpm SHA-256: ccb78066e07d34e7e33e34ea2fefca98e55934e1313c487664b2057353638e07
kpatch-patch-4_18_0-553_53_1-debugsource-1-10.el8_10.x86_64.rpm SHA-256: 73c0f5d2df0094c9c8761bb596f3e857d965db949980dc39750028c74087dfbb
kpatch-patch-4_18_0-553_72_1-1-7.el8_10.x86_64.rpm SHA-256: 16b8b0742c908dc83ef9b760be192130f0564182e81aa05fbb2acc6c5be4cff2
kpatch-patch-4_18_0-553_72_1-debuginfo-1-7.el8_10.x86_64.rpm SHA-256: 0066648a51143ef254d87e9356a4721aac0dcf5ddfa56afb64c2553dba4677c1
kpatch-patch-4_18_0-553_72_1-debugsource-1-7.el8_10.x86_64.rpm SHA-256: 095437b4a6a96ac7d5c950d23d1564c33a75c44ba50798ac17ff6478eb4f9333
kpatch-patch-4_18_0-553_85_1-1-5.el8_10.x86_64.rpm SHA-256: def55397a23191440dba5cd7d74e0bb510d4e4467f1440824b23bb870b9655ae
kpatch-patch-4_18_0-553_85_1-debuginfo-1-5.el8_10.x86_64.rpm SHA-256: 409a01f9a85404336615d51ac1d45f5c62817b6b1d1bb741245aac2a30b7f5e8
kpatch-patch-4_18_0-553_85_1-debugsource-1-5.el8_10.x86_64.rpm SHA-256: 5c5761acbecdc02efc0d279d04ae84b8758bb1041a9e7ba321e6f98091ac3b2d

Red Hat Enterprise Linux for Power, little endian 8

SRPM
kpatch-patch-4_18_0-553_109_1-1-3.el8_10.src.rpm SHA-256: bcca1e9d520c77175432c5d193fe0b409f2de971361f814a3d8a54c6c289bb00
kpatch-patch-4_18_0-553_40_1-1-12.el8_10.src.rpm SHA-256: 6ee15ef326d081fb9c714e214c11132c92f68f50a1823cc4a879de790b1e15df
kpatch-patch-4_18_0-553_53_1-1-10.el8_10.src.rpm SHA-256: 7e79996db22a6c3cbc20d98d987f0f3e1190a6541c0d457183d9957295312541
kpatch-patch-4_18_0-553_72_1-1-7.el8_10.src.rpm SHA-256: d1a86924696184f041bd19366c9ddf62055d42792911edad29c15250608e008e
kpatch-patch-4_18_0-553_85_1-1-5.el8_10.src.rpm SHA-256: 9aaa12145058c1a2548bdb785980eb7a76c887f96fb57dc1dd0ab2155ae4c19d
ppc64le
kpatch-patch-4_18_0-553_109_1-1-3.el8_10.ppc64le.rpm SHA-256: 38f5206704035091ccfac6f02a8e8f6fc3eb41c4fb4aed434d08fe5fefb66173
kpatch-patch-4_18_0-553_109_1-debuginfo-1-3.el8_10.ppc64le.rpm SHA-256: 39d5cff0e4af31eb882672976834a39fc7824141deb5dbdd303796093a0fe240
kpatch-patch-4_18_0-553_109_1-debugsource-1-3.el8_10.ppc64le.rpm SHA-256: 14061caf0ea5125f34b729e442ec9b8b3e44bf78a881e9fc14403084294976d0
kpatch-patch-4_18_0-553_40_1-1-12.el8_10.ppc64le.rpm SHA-256: 758bb309f611415551f96bfd1294632286ad7fdda12e8abe00273e218c48c797
kpatch-patch-4_18_0-553_40_1-debuginfo-1-12.el8_10.ppc64le.rpm SHA-256: 7c397a26370d94bef724bf00339c9b3d0e62bf02107bbd572a61b0604091833d
kpatch-patch-4_18_0-553_40_1-debugsource-1-12.el8_10.ppc64le.rpm SHA-256: 506a38a591f02d580e6b5a8a6264e1b6a1587cb11e26638c0326266864173a63
kpatch-patch-4_18_0-553_53_1-1-10.el8_10.ppc64le.rpm SHA-256: 2d7019cf906cbc6e209734edc70b417dc7f4f8fb4b5ea385f08b4a85c4ae93ec
kpatch-patch-4_18_0-553_53_1-debuginfo-1-10.el8_10.ppc64le.rpm SHA-256: 6a6a23be703b62cd7c802b9cac45388ac783348d7950571dd8b8d2d8e994fa3c
kpatch-patch-4_18_0-553_53_1-debugsource-1-10.el8_10.ppc64le.rpm SHA-256: f468e6dc4c7794463fb0336d54fa4e23dd53ac83ec996508767708b3581c099c
kpatch-patch-4_18_0-553_72_1-1-7.el8_10.ppc64le.rpm SHA-256: 5ccb2aa3188529a1815caaece4da7855d835123accf1ed24fd4063b3a9f2db9d
kpatch-patch-4_18_0-553_72_1-debuginfo-1-7.el8_10.ppc64le.rpm SHA-256: 3bdbb2203a1151122887c8a6c629558f5e53a1b0b42c499ca2f57865fc4d5cfc
kpatch-patch-4_18_0-553_72_1-debugsource-1-7.el8_10.ppc64le.rpm SHA-256: 6bf1d5193ee2de47522264919ee5cc12ca3beaeb35f2393522c8b4bb71bccf7a
kpatch-patch-4_18_0-553_85_1-1-5.el8_10.ppc64le.rpm SHA-256: b7b58faa0f1bfa338a22a2806398cf5689eeea4e727a4f469052e1dbdb0fdc5e
kpatch-patch-4_18_0-553_85_1-debuginfo-1-5.el8_10.ppc64le.rpm SHA-256: 9d21fd044f852cb9b98350840789f76d0bd6d8faebd4712071edcd835de85964
kpatch-patch-4_18_0-553_85_1-debugsource-1-5.el8_10.ppc64le.rpm SHA-256: 39793a203ebd3780fe71ca7fc5c6d75f5603096a0bf0b48a61e32ea8620db774

Red Hat Enterprise Linux for x86_64 - Extended Life Cycle 8.10

SRPM
kpatch-patch-4_18_0-553_109_1-1-3.el8_10.src.rpm SHA-256: bcca1e9d520c77175432c5d193fe0b409f2de971361f814a3d8a54c6c289bb00
kpatch-patch-4_18_0-553_40_1-1-12.el8_10.src.rpm SHA-256: 6ee15ef326d081fb9c714e214c11132c92f68f50a1823cc4a879de790b1e15df
kpatch-patch-4_18_0-553_53_1-1-10.el8_10.src.rpm SHA-256: 7e79996db22a6c3cbc20d98d987f0f3e1190a6541c0d457183d9957295312541
kpatch-patch-4_18_0-553_72_1-1-7.el8_10.src.rpm SHA-256: d1a86924696184f041bd19366c9ddf62055d42792911edad29c15250608e008e
kpatch-patch-4_18_0-553_85_1-1-5.el8_10.src.rpm SHA-256: 9aaa12145058c1a2548bdb785980eb7a76c887f96fb57dc1dd0ab2155ae4c19d
x86_64
kpatch-patch-4_18_0-553_109_1-1-3.el8_10.x86_64.rpm SHA-256: 3cb61201191ecefced46071418d9e8ccdf0647d3c2e0357b7781db9940053635
kpatch-patch-4_18_0-553_109_1-debuginfo-1-3.el8_10.x86_64.rpm SHA-256: 9d29585caf0beffd80779f95fdccb6f04d6063cfe6936263814f78ec50775e14
kpatch-patch-4_18_0-553_109_1-debugsource-1-3.el8_10.x86_64.rpm SHA-256: f73296bcc97b563377ba6edda1b24c46073c6de0da522656b4d9043836434cfb
kpatch-patch-4_18_0-553_40_1-1-12.el8_10.x86_64.rpm SHA-256: 19e0dd3acd8ae4a92a8e47754e17186825e4622af57402c20e8bdbb6839319a4
kpatch-patch-4_18_0-553_40_1-debuginfo-1-12.el8_10.x86_64.rpm SHA-256: d4098159edc4f99a053931cca9f24c4557629aff4a814d007ce77033e83b1503
kpatch-patch-4_18_0-553_40_1-debugsource-1-12.el8_10.x86_64.rpm SHA-256: a16e000d28747e0e5cba5d381ade0098b6e6540d32945948802b4ef6307433fa
kpatch-patch-4_18_0-553_53_1-1-10.el8_10.x86_64.rpm SHA-256: c4e95eae9b3216ffa40b5ca6e1a54560d85c14be5a92baf83e5e6287b968ccb6
kpatch-patch-4_18_0-553_53_1-debuginfo-1-10.el8_10.x86_64.rpm SHA-256: ccb78066e07d34e7e33e34ea2fefca98e55934e1313c487664b2057353638e07
kpatch-patch-4_18_0-553_53_1-debugsource-1-10.el8_10.x86_64.rpm SHA-256: 73c0f5d2df0094c9c8761bb596f3e857d965db949980dc39750028c74087dfbb
kpatch-patch-4_18_0-553_72_1-1-7.el8_10.x86_64.rpm SHA-256: 16b8b0742c908dc83ef9b760be192130f0564182e81aa05fbb2acc6c5be4cff2
kpatch-patch-4_18_0-553_72_1-debuginfo-1-7.el8_10.x86_64.rpm SHA-256: 0066648a51143ef254d87e9356a4721aac0dcf5ddfa56afb64c2553dba4677c1
kpatch-patch-4_18_0-553_72_1-debugsource-1-7.el8_10.x86_64.rpm SHA-256: 095437b4a6a96ac7d5c950d23d1564c33a75c44ba50798ac17ff6478eb4f9333
kpatch-patch-4_18_0-553_85_1-1-5.el8_10.x86_64.rpm SHA-256: def55397a23191440dba5cd7d74e0bb510d4e4467f1440824b23bb870b9655ae
kpatch-patch-4_18_0-553_85_1-debuginfo-1-5.el8_10.x86_64.rpm SHA-256: 409a01f9a85404336615d51ac1d45f5c62817b6b1d1bb741245aac2a30b7f5e8
kpatch-patch-4_18_0-553_85_1-debugsource-1-5.el8_10.x86_64.rpm SHA-256: 5c5761acbecdc02efc0d279d04ae84b8758bb1041a9e7ba321e6f98091ac3b2d

Red Hat Enterprise Linux for Power, little endian - Extended Life Cycle 8.10

SRPM
kpatch-patch-4_18_0-553_109_1-1-3.el8_10.src.rpm SHA-256: bcca1e9d520c77175432c5d193fe0b409f2de971361f814a3d8a54c6c289bb00
kpatch-patch-4_18_0-553_40_1-1-12.el8_10.src.rpm SHA-256: 6ee15ef326d081fb9c714e214c11132c92f68f50a1823cc4a879de790b1e15df
kpatch-patch-4_18_0-553_53_1-1-10.el8_10.src.rpm SHA-256: 7e79996db22a6c3cbc20d98d987f0f3e1190a6541c0d457183d9957295312541
kpatch-patch-4_18_0-553_72_1-1-7.el8_10.src.rpm SHA-256: d1a86924696184f041bd19366c9ddf62055d42792911edad29c15250608e008e
kpatch-patch-4_18_0-553_85_1-1-5.el8_10.src.rpm SHA-256: 9aaa12145058c1a2548bdb785980eb7a76c887f96fb57dc1dd0ab2155ae4c19d
ppc64le
kpatch-patch-4_18_0-553_109_1-1-3.el8_10.ppc64le.rpm SHA-256: 38f5206704035091ccfac6f02a8e8f6fc3eb41c4fb4aed434d08fe5fefb66173
kpatch-patch-4_18_0-553_109_1-debuginfo-1-3.el8_10.ppc64le.rpm SHA-256: 39d5cff0e4af31eb882672976834a39fc7824141deb5dbdd303796093a0fe240
kpatch-patch-4_18_0-553_109_1-debugsource-1-3.el8_10.ppc64le.rpm SHA-256: 14061caf0ea5125f34b729e442ec9b8b3e44bf78a881e9fc14403084294976d0
kpatch-patch-4_18_0-553_40_1-1-12.el8_10.ppc64le.rpm SHA-256: 758bb309f611415551f96bfd1294632286ad7fdda12e8abe00273e218c48c797
kpatch-patch-4_18_0-553_40_1-debuginfo-1-12.el8_10.ppc64le.rpm SHA-256: 7c397a26370d94bef724bf00339c9b3d0e62bf02107bbd572a61b0604091833d
kpatch-patch-4_18_0-553_40_1-debugsource-1-12.el8_10.ppc64le.rpm SHA-256: 506a38a591f02d580e6b5a8a6264e1b6a1587cb11e26638c0326266864173a63
kpatch-patch-4_18_0-553_53_1-1-10.el8_10.ppc64le.rpm SHA-256: 2d7019cf906cbc6e209734edc70b417dc7f4f8fb4b5ea385f08b4a85c4ae93ec
kpatch-patch-4_18_0-553_53_1-debuginfo-1-10.el8_10.ppc64le.rpm SHA-256: 6a6a23be703b62cd7c802b9cac45388ac783348d7950571dd8b8d2d8e994fa3c
kpatch-patch-4_18_0-553_53_1-debugsource-1-10.el8_10.ppc64le.rpm SHA-256: f468e6dc4c7794463fb0336d54fa4e23dd53ac83ec996508767708b3581c099c
kpatch-patch-4_18_0-553_72_1-1-7.el8_10.ppc64le.rpm SHA-256: 5ccb2aa3188529a1815caaece4da7855d835123accf1ed24fd4063b3a9f2db9d
kpatch-patch-4_18_0-553_72_1-debuginfo-1-7.el8_10.ppc64le.rpm SHA-256: 3bdbb2203a1151122887c8a6c629558f5e53a1b0b42c499ca2f57865fc4d5cfc
kpatch-patch-4_18_0-553_72_1-debugsource-1-7.el8_10.ppc64le.rpm SHA-256: 6bf1d5193ee2de47522264919ee5cc12ca3beaeb35f2393522c8b4bb71bccf7a
kpatch-patch-4_18_0-553_85_1-1-5.el8_10.ppc64le.rpm SHA-256: b7b58faa0f1bfa338a22a2806398cf5689eeea4e727a4f469052e1dbdb0fdc5e
kpatch-patch-4_18_0-553_85_1-debuginfo-1-5.el8_10.ppc64le.rpm SHA-256: 9d21fd044f852cb9b98350840789f76d0bd6d8faebd4712071edcd835de85964
kpatch-patch-4_18_0-553_85_1-debugsource-1-5.el8_10.ppc64le.rpm SHA-256: 39793a203ebd3780fe71ca7fc5c6d75f5603096a0bf0b48a61e32ea8620db774

Red Hat 安全团队联络方式为 secalert@redhat.com。 更多联络细节请参考 https://access.redhat.com/security/team/contact/。

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2026 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility