Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2026:23471 - Security Advisory
Issued:
2026-06-04
Updated:
2026-06-04

RHSA-2026:23471 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Important: kpatch-patch-4_18_0-477_107_1, kpatch-patch-4_18_0-477_120_1, kpatch-patch-4_18_0-477_130_1, kpatch-patch-4_18_0-477_89_1, and kpatch-patch-4_18_0-477_97_1 security update

Type/Severity

Security Advisory: Important

Red Hat Lightspeed patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for multiple packages is now available for Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

This is a kernel live patch module which can be loaded by the kpatch command line utility to modify the code of a running kernel. This patch module is targeted for kernel-4.18.0-477.89.1.el8_8.

Security Fix(es):

  • kernel: "Fragnesia" is a variant of Dirty Frag vulnerability in the ESP/XFRM leading to Local Privilege Escalation (LPE) vulnerability in the Linux kernel (CVE-2026-46300)
  • kernel: Read root-owned files as an unprivileged user (CVE-2026-46333)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux for x86_64 - Extended Update Support Extension 8.8 x86_64
  • Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 8.8 ppc64le
  • Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 8.8 x86_64

Fixes

  • BZ - 2477015 - CVE-2026-46300 kernel: "Fragnesia" is a variant of Dirty Frag vulnerability in the ESP/XFRM leading to Local Privilege Escalation (LPE) vulnerability in the Linux kernel
  • BZ - 2477802 - CVE-2026-46333 kernel: Read root-owned files as an unprivileged user

CVEs

  • CVE-2026-46300
  • CVE-2026-46333

References

  • https://access.redhat.com/security/updates/classification/#important
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux for x86_64 - Extended Update Support Extension 8.8

SRPM
kpatch-patch-4_18_0-477_107_1-1-6.el8_8.src.rpm SHA-256: 0b37c851afccad11ec76a8b588b4368337b846e225589a946371437cc812aa54
kpatch-patch-4_18_0-477_120_1-1-5.el8_8.src.rpm SHA-256: b0ce6b286903d32eaf86b214aca66bc8a5e60f1532d2fb90fa0df03caa8e35b4
kpatch-patch-4_18_0-477_130_1-1-3.el8_8.src.rpm SHA-256: eedc222a4be67a4418112e694cbab5263b3997edd2ef65f6134b688e2df5990f
kpatch-patch-4_18_0-477_89_1-1-12.el8_8.src.rpm SHA-256: eadba72de000b6e176e9b3f2249211755e2aeedbcf55b7a25ded99d05a883cb4
kpatch-patch-4_18_0-477_97_1-1-10.el8_8.src.rpm SHA-256: 12e7a04f4b6fec5b7e457295466eae5bfade6efdfe8dfd40ba73bd3885fa5d0f
x86_64
kpatch-patch-4_18_0-477_107_1-1-6.el8_8.x86_64.rpm SHA-256: 3cbc247cfed757551e59cc60ae271d41c08006a928992ed94e4a1fe89401115b
kpatch-patch-4_18_0-477_107_1-debuginfo-1-6.el8_8.x86_64.rpm SHA-256: 9f4ad8161871d0fbcf679229d9c00e37ca986e0e5dc82938a3d60497ec4679aa
kpatch-patch-4_18_0-477_107_1-debugsource-1-6.el8_8.x86_64.rpm SHA-256: ab18aacf36dcfc19887810b97624b931f9696c3cc085387e71c7f565421feac5
kpatch-patch-4_18_0-477_120_1-1-5.el8_8.x86_64.rpm SHA-256: e4571f9728879f0792ea25702170a8cc749dba94f61642a87b1c2989cf0f77b7
kpatch-patch-4_18_0-477_120_1-debuginfo-1-5.el8_8.x86_64.rpm SHA-256: 48b092ba1486c0c4de0cbf773d1acf57a04bc6adb9763b0ddc846b03a56a7d0a
kpatch-patch-4_18_0-477_120_1-debugsource-1-5.el8_8.x86_64.rpm SHA-256: 6955329e7b441c237f4975dc06c6cd38770328d94488faf34261f4f88139ebeb
kpatch-patch-4_18_0-477_130_1-1-3.el8_8.x86_64.rpm SHA-256: bd26a05c75824c05172832da4034116ed82bd196e5deeda0283b40f303e45a85
kpatch-patch-4_18_0-477_130_1-debuginfo-1-3.el8_8.x86_64.rpm SHA-256: 68c42493904f6c1001c52c2119363ff66b288d7b78766413e107eaf21e605194
kpatch-patch-4_18_0-477_130_1-debugsource-1-3.el8_8.x86_64.rpm SHA-256: 18092a99d03b98f978724c4be913af84396a171868bdf3a8ba95892722a1d7e4
kpatch-patch-4_18_0-477_89_1-1-12.el8_8.x86_64.rpm SHA-256: 0a0fc567615b63e36c05f44c0fcfc8b6c3eed898c0feb1ebb3b66590f7918321
kpatch-patch-4_18_0-477_89_1-debuginfo-1-12.el8_8.x86_64.rpm SHA-256: 09bc4e089dedd39add717a29430b682a1c047cad2cc83482a1a0a64957b77403
kpatch-patch-4_18_0-477_89_1-debugsource-1-12.el8_8.x86_64.rpm SHA-256: c82187fff339cc1e3c7fc37b927357786c7afbeaed2f76b10bf35c136c676994
kpatch-patch-4_18_0-477_97_1-1-10.el8_8.x86_64.rpm SHA-256: 1656adb63222adde4499a0a4bb611ee6c243c6769158b3285eb578a03e78b491
kpatch-patch-4_18_0-477_97_1-debuginfo-1-10.el8_8.x86_64.rpm SHA-256: a827cc4cf1a2c7dde7ad31db78d24f4a46288ccf372d482daf07129fc8b69f47
kpatch-patch-4_18_0-477_97_1-debugsource-1-10.el8_8.x86_64.rpm SHA-256: 57c899deb10557459a590203b8e31e3d634f66f5eefc14b06be9e986eee96800

Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 8.8

SRPM
kpatch-patch-4_18_0-477_107_1-1-6.el8_8.src.rpm SHA-256: 0b37c851afccad11ec76a8b588b4368337b846e225589a946371437cc812aa54
kpatch-patch-4_18_0-477_120_1-1-5.el8_8.src.rpm SHA-256: b0ce6b286903d32eaf86b214aca66bc8a5e60f1532d2fb90fa0df03caa8e35b4
kpatch-patch-4_18_0-477_130_1-1-3.el8_8.src.rpm SHA-256: eedc222a4be67a4418112e694cbab5263b3997edd2ef65f6134b688e2df5990f
kpatch-patch-4_18_0-477_89_1-1-12.el8_8.src.rpm SHA-256: eadba72de000b6e176e9b3f2249211755e2aeedbcf55b7a25ded99d05a883cb4
kpatch-patch-4_18_0-477_97_1-1-10.el8_8.src.rpm SHA-256: 12e7a04f4b6fec5b7e457295466eae5bfade6efdfe8dfd40ba73bd3885fa5d0f
ppc64le
kpatch-patch-4_18_0-477_107_1-1-6.el8_8.ppc64le.rpm SHA-256: e5869a4ab6854e262742af489f985a251e1e1f7969aab7be77b738948a2a5fa2
kpatch-patch-4_18_0-477_107_1-debuginfo-1-6.el8_8.ppc64le.rpm SHA-256: ebc40102b901b19f4be1ccc20bc5bb638cf3efb51ad05b06a1eb3c4ddab24250
kpatch-patch-4_18_0-477_107_1-debugsource-1-6.el8_8.ppc64le.rpm SHA-256: 87a314a734d8a8c5f62d0ca5c577f1dd4cb48cbc24fd7856636aec8352b61463
kpatch-patch-4_18_0-477_120_1-1-5.el8_8.ppc64le.rpm SHA-256: 822438d9d232c61a14c56943204d5dd5a54b6562837f33c410837e310f2f1759
kpatch-patch-4_18_0-477_120_1-debuginfo-1-5.el8_8.ppc64le.rpm SHA-256: ef8068e36975e08ea63ec8cb29e2b0d8a65bd1a46ae91cf44bc181fcb95c4df1
kpatch-patch-4_18_0-477_120_1-debugsource-1-5.el8_8.ppc64le.rpm SHA-256: 50db3ce4b85afbd6c7170b28d507035c80a8baf430b27ec3056eddc63e828460
kpatch-patch-4_18_0-477_130_1-1-3.el8_8.ppc64le.rpm SHA-256: 9115725ed219ae688cb6a8d0f37a9d9ceb7c8f3ecc36f42c493d5c50eb6567f7
kpatch-patch-4_18_0-477_130_1-debuginfo-1-3.el8_8.ppc64le.rpm SHA-256: ad486cbf1ff1a768f8c4b7244dacf13ef88521a29007bb0abf451d68f547b7a7
kpatch-patch-4_18_0-477_130_1-debugsource-1-3.el8_8.ppc64le.rpm SHA-256: 4c46746d4e156e4854bfa809cdf4d8574c4eb85fe041344b9f6b7821f4ff8d99
kpatch-patch-4_18_0-477_89_1-1-12.el8_8.ppc64le.rpm SHA-256: 6db952627bd41cb63a8fa567301d73d0fa5bef9184bbf3882b8863a074191237
kpatch-patch-4_18_0-477_89_1-debuginfo-1-12.el8_8.ppc64le.rpm SHA-256: c88313c1f0c977bfd48515a9c2d6d2276cc13f00d48e0fff601f6e4709363efe
kpatch-patch-4_18_0-477_89_1-debugsource-1-12.el8_8.ppc64le.rpm SHA-256: aad616b9923b9ff4b3779fc6d5b72a70b419bad56c0bd9c974e77a1c98819252
kpatch-patch-4_18_0-477_97_1-1-10.el8_8.ppc64le.rpm SHA-256: 5d59e2e514676f65ca1c2794b2422be4806acb53d7ca457e16dfcc69f9aa57f4
kpatch-patch-4_18_0-477_97_1-debuginfo-1-10.el8_8.ppc64le.rpm SHA-256: c0620d6e1e38787dc360578b42a105c4f9cdb79a503621ca4e6ad1388035a1bf
kpatch-patch-4_18_0-477_97_1-debugsource-1-10.el8_8.ppc64le.rpm SHA-256: cb413a39d7e0ce4bd127079818c8ee6e0caba8e52bf4a6e5513670cadd17a47b

Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 8.8

SRPM
kpatch-patch-4_18_0-477_107_1-1-6.el8_8.src.rpm SHA-256: 0b37c851afccad11ec76a8b588b4368337b846e225589a946371437cc812aa54
kpatch-patch-4_18_0-477_120_1-1-5.el8_8.src.rpm SHA-256: b0ce6b286903d32eaf86b214aca66bc8a5e60f1532d2fb90fa0df03caa8e35b4
kpatch-patch-4_18_0-477_130_1-1-3.el8_8.src.rpm SHA-256: eedc222a4be67a4418112e694cbab5263b3997edd2ef65f6134b688e2df5990f
kpatch-patch-4_18_0-477_89_1-1-12.el8_8.src.rpm SHA-256: eadba72de000b6e176e9b3f2249211755e2aeedbcf55b7a25ded99d05a883cb4
kpatch-patch-4_18_0-477_97_1-1-10.el8_8.src.rpm SHA-256: 12e7a04f4b6fec5b7e457295466eae5bfade6efdfe8dfd40ba73bd3885fa5d0f
x86_64
kpatch-patch-4_18_0-477_107_1-1-6.el8_8.x86_64.rpm SHA-256: 3cbc247cfed757551e59cc60ae271d41c08006a928992ed94e4a1fe89401115b
kpatch-patch-4_18_0-477_107_1-debuginfo-1-6.el8_8.x86_64.rpm SHA-256: 9f4ad8161871d0fbcf679229d9c00e37ca986e0e5dc82938a3d60497ec4679aa
kpatch-patch-4_18_0-477_107_1-debugsource-1-6.el8_8.x86_64.rpm SHA-256: ab18aacf36dcfc19887810b97624b931f9696c3cc085387e71c7f565421feac5
kpatch-patch-4_18_0-477_120_1-1-5.el8_8.x86_64.rpm SHA-256: e4571f9728879f0792ea25702170a8cc749dba94f61642a87b1c2989cf0f77b7
kpatch-patch-4_18_0-477_120_1-debuginfo-1-5.el8_8.x86_64.rpm SHA-256: 48b092ba1486c0c4de0cbf773d1acf57a04bc6adb9763b0ddc846b03a56a7d0a
kpatch-patch-4_18_0-477_120_1-debugsource-1-5.el8_8.x86_64.rpm SHA-256: 6955329e7b441c237f4975dc06c6cd38770328d94488faf34261f4f88139ebeb
kpatch-patch-4_18_0-477_130_1-1-3.el8_8.x86_64.rpm SHA-256: bd26a05c75824c05172832da4034116ed82bd196e5deeda0283b40f303e45a85
kpatch-patch-4_18_0-477_130_1-debuginfo-1-3.el8_8.x86_64.rpm SHA-256: 68c42493904f6c1001c52c2119363ff66b288d7b78766413e107eaf21e605194
kpatch-patch-4_18_0-477_130_1-debugsource-1-3.el8_8.x86_64.rpm SHA-256: 18092a99d03b98f978724c4be913af84396a171868bdf3a8ba95892722a1d7e4
kpatch-patch-4_18_0-477_89_1-1-12.el8_8.x86_64.rpm SHA-256: 0a0fc567615b63e36c05f44c0fcfc8b6c3eed898c0feb1ebb3b66590f7918321
kpatch-patch-4_18_0-477_89_1-debuginfo-1-12.el8_8.x86_64.rpm SHA-256: 09bc4e089dedd39add717a29430b682a1c047cad2cc83482a1a0a64957b77403
kpatch-patch-4_18_0-477_89_1-debugsource-1-12.el8_8.x86_64.rpm SHA-256: c82187fff339cc1e3c7fc37b927357786c7afbeaed2f76b10bf35c136c676994
kpatch-patch-4_18_0-477_97_1-1-10.el8_8.x86_64.rpm SHA-256: 1656adb63222adde4499a0a4bb611ee6c243c6769158b3285eb578a03e78b491
kpatch-patch-4_18_0-477_97_1-debuginfo-1-10.el8_8.x86_64.rpm SHA-256: a827cc4cf1a2c7dde7ad31db78d24f4a46288ccf372d482daf07129fc8b69f47
kpatch-patch-4_18_0-477_97_1-debugsource-1-10.el8_8.x86_64.rpm SHA-256: 57c899deb10557459a590203b8e31e3d634f66f5eefc14b06be9e986eee96800

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2026 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility