Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2026:59142 - Security Advisory
Issued:
2026-08-24
Updated:
2026-08-24

RHSA-2026:59142 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Important: kpatch-patch-4_18_0-477_107_1, kpatch-patch-4_18_0-477_120_1, kpatch-patch-4_18_0-477_130_1, kpatch-patch-4_18_0-477_143_1, and kpatch-patch-4_18_0-477_97_1 security update

Type/Severity

Security Advisory: Important

Red Hat Lightspeed patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for multiple packages is now available for Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

This is a kernel live patch module which can be loaded by the kpatch command line utility to modify the code of a running kernel. This patch module is targeted for kernel-4.18.0-477.97.1.el8_8.

Security Fix(es):

  • kernel: rtmutex: Use waiter::task instead of current in remove_waiter() (CVE-2026-43499)
  • kernel: gfs2: Fix use-after-free in iomap inline data write path (CVE-2026-45984)
  • kernel: xfrm: defensively unhash xfrm_state lists in __xfrm_state_delete (CVE-2026-46116)
  • kernel: sctp: revalidate list cursor after sctp_sendmsg_to_asoc() in SCTP_SENDALL (CVE-2026-46227)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux for x86_64 - Extended Life Cycle Long Life 8.8 x86_64
  • Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 8.8 ppc64le
  • Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 8.8 x86_64

Fixes

  • BZ - 2480453 - CVE-2026-43499 kernel: rtmutex: Use waiter::task instead of current in remove_waiter()
  • BZ - 2481922 - CVE-2026-45984 kernel: gfs2: Fix use-after-free in iomap inline data write path
  • BZ - 2482523 - CVE-2026-46116 kernel: xfrm: defensively unhash xfrm_state lists in __xfrm_state_delete
  • BZ - 2482564 - CVE-2026-46227 kernel: sctp: revalidate list cursor after sctp_sendmsg_to_asoc() in SCTP_SENDALL

CVEs

  • CVE-2026-43499
  • CVE-2026-45984
  • CVE-2026-46116
  • CVE-2026-46227

References

  • https://access.redhat.com/security/updates/classification/#important
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux for x86_64 - Extended Life Cycle Long Life 8.8

SRPM
kpatch-patch-4_18_0-477_107_1-1-13.el8_8.src.rpm SHA-256: 31d148d0841adbf2ead9453d6b11a545d5e15779d19c272bb5a0337c0a807300
kpatch-patch-4_18_0-477_120_1-1-12.el8_8.src.rpm SHA-256: 1c4a04a3822f35a6bebf554f8e84f5fb58e7c1d1e8bedb1eb6a284de079b374b
kpatch-patch-4_18_0-477_130_1-1-10.el8_8.src.rpm SHA-256: c7173657404413da289780892d61a05d47dce26e04acf1db9449a947dd2e6c1d
kpatch-patch-4_18_0-477_143_1-1-6.el8_8.src.rpm SHA-256: a3ca147727621164bd9f263d1b0de2822184d55d6c39624fbeac8458d6508c7b
kpatch-patch-4_18_0-477_97_1-1-17.el8_8.src.rpm SHA-256: a40dc73d9323c0c7bd9fd7628782780e4eb7491c3c25ab87a38aaf46a0bf43e0
x86_64
kpatch-patch-4_18_0-477_107_1-1-13.el8_8.x86_64.rpm SHA-256: 386c8de437287a4ccb535198d63efa7a16855479b816baab82c3cd63f43a234d
kpatch-patch-4_18_0-477_107_1-debuginfo-1-13.el8_8.x86_64.rpm SHA-256: 8696a135ab3093c1e2c99ed76ddee0c26c68a29063e9c249691d985bf4727cf0
kpatch-patch-4_18_0-477_107_1-debugsource-1-13.el8_8.x86_64.rpm SHA-256: 9e7ed2c1e096a2ebc9efe3be054da6fdea9137f14856465465df5ab3d27dce94
kpatch-patch-4_18_0-477_120_1-1-12.el8_8.x86_64.rpm SHA-256: b7d78923483f0637b635425f5c773d3ef363cb4cad9a8a574b9384026e6fdd5f
kpatch-patch-4_18_0-477_120_1-debuginfo-1-12.el8_8.x86_64.rpm SHA-256: 369be4386e998bba929b3ead30645ac2f46c76f78b1bb042273cdae7cd725414
kpatch-patch-4_18_0-477_120_1-debugsource-1-12.el8_8.x86_64.rpm SHA-256: de71fb1aa660000166f88afd1d12e55b66da9372a54ecba1443b8ca75282c30c
kpatch-patch-4_18_0-477_130_1-1-10.el8_8.x86_64.rpm SHA-256: 20479a5812c629aa549c019a4b9498289fe5880ef2760db495ca5e6986099d8f
kpatch-patch-4_18_0-477_130_1-debuginfo-1-10.el8_8.x86_64.rpm SHA-256: 842caff11a0234be714f6b002d7f9f5fa5ea706294fc3feba884c7786b611104
kpatch-patch-4_18_0-477_130_1-debugsource-1-10.el8_8.x86_64.rpm SHA-256: 792794a11f11ed9af8a339be1a2738e852e63595e0f9db0bf44b67bcf44928be
kpatch-patch-4_18_0-477_143_1-1-6.el8_8.x86_64.rpm SHA-256: 75cab2cf6aae6750b121f31a16e31de005f5b76297563f8e4706f6fe4c5b2eed
kpatch-patch-4_18_0-477_143_1-debuginfo-1-6.el8_8.x86_64.rpm SHA-256: 1844ec48be092097db6281a07f5345a9dd95f2b0e0d1926c950b61678faf89b7
kpatch-patch-4_18_0-477_143_1-debugsource-1-6.el8_8.x86_64.rpm SHA-256: 4935277496638a4e3743721b62df9c2b0d2f95e23ae998b5ba17aba2bcd3529b
kpatch-patch-4_18_0-477_97_1-1-17.el8_8.x86_64.rpm SHA-256: a3c035e64aef82bff18d926acccef5e7452b7f0bfbb1622c2d13659ae48c7f5d
kpatch-patch-4_18_0-477_97_1-debuginfo-1-17.el8_8.x86_64.rpm SHA-256: 5eb7358e88b500f33f390661d25b9b8c9ff43ea03d2409b5d99183130b7907a4
kpatch-patch-4_18_0-477_97_1-debugsource-1-17.el8_8.x86_64.rpm SHA-256: b29be99e7f92772b8c48dc92b0ec273492a0384686337184c68b021ee5ce8f48

Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 8.8

SRPM
kpatch-patch-4_18_0-477_107_1-1-13.el8_8.src.rpm SHA-256: 31d148d0841adbf2ead9453d6b11a545d5e15779d19c272bb5a0337c0a807300
kpatch-patch-4_18_0-477_120_1-1-12.el8_8.src.rpm SHA-256: 1c4a04a3822f35a6bebf554f8e84f5fb58e7c1d1e8bedb1eb6a284de079b374b
kpatch-patch-4_18_0-477_130_1-1-10.el8_8.src.rpm SHA-256: c7173657404413da289780892d61a05d47dce26e04acf1db9449a947dd2e6c1d
kpatch-patch-4_18_0-477_143_1-1-6.el8_8.src.rpm SHA-256: a3ca147727621164bd9f263d1b0de2822184d55d6c39624fbeac8458d6508c7b
kpatch-patch-4_18_0-477_97_1-1-17.el8_8.src.rpm SHA-256: a40dc73d9323c0c7bd9fd7628782780e4eb7491c3c25ab87a38aaf46a0bf43e0
ppc64le
kpatch-patch-4_18_0-477_107_1-1-13.el8_8.ppc64le.rpm SHA-256: 4816e8f2e463b264b24b82cadaf71ce56e8e35c088b03f868ce0913f35bd5575
kpatch-patch-4_18_0-477_107_1-debuginfo-1-13.el8_8.ppc64le.rpm SHA-256: 6d22e2bad870c8d3a23fc61f9840760da913036207682615455968c4ede3bbee
kpatch-patch-4_18_0-477_107_1-debugsource-1-13.el8_8.ppc64le.rpm SHA-256: 9b2ee1108715e1349eb57ee5d68cdb11556885ebefd41fc4d5d40cf5583ed0c3
kpatch-patch-4_18_0-477_120_1-1-12.el8_8.ppc64le.rpm SHA-256: af1919ec3ff82b807cd38cca604650d09a9b39ab84adaa334a8fe31f9c768555
kpatch-patch-4_18_0-477_120_1-debuginfo-1-12.el8_8.ppc64le.rpm SHA-256: 52154e0abac6b61cf408d78dc243a54dffd673f60409fda226478c45cf5e591f
kpatch-patch-4_18_0-477_120_1-debugsource-1-12.el8_8.ppc64le.rpm SHA-256: 45d35abf7030c1cd21ac0a25fcc620497a6392fca6f43645460bd6b67c6778f5
kpatch-patch-4_18_0-477_130_1-1-10.el8_8.ppc64le.rpm SHA-256: 15a6d81d132fa9026fcde1d4cebb13cbaec334b20ac0bd823a8533b65269d51f
kpatch-patch-4_18_0-477_130_1-debuginfo-1-10.el8_8.ppc64le.rpm SHA-256: 9febbe0ff8923b54dc34e3f32894f50e50d2bdd03ac859279a08a03729d410d4
kpatch-patch-4_18_0-477_130_1-debugsource-1-10.el8_8.ppc64le.rpm SHA-256: 13f1c22e6ac7d86a1b9443d96edd6154a7121196058f10b8f40beabf45bbddd4
kpatch-patch-4_18_0-477_143_1-1-6.el8_8.ppc64le.rpm SHA-256: ea353c03fc873ea1c74cb866a67c922510fe49599443766348b8a511db1cb59f
kpatch-patch-4_18_0-477_143_1-debuginfo-1-6.el8_8.ppc64le.rpm SHA-256: 67d0d98a8412ce79a126c24153b9a9a5374697763880dd048f7adff61647ed1d
kpatch-patch-4_18_0-477_143_1-debugsource-1-6.el8_8.ppc64le.rpm SHA-256: b1cff69e405d5a35fa352acc3713aa63cf6eee4cc8dd13b3fefae6b00e29e97a
kpatch-patch-4_18_0-477_97_1-1-17.el8_8.ppc64le.rpm SHA-256: 01d6e8aaaea7b9cff1c76cf1dda605755cd98e46f72c54132e3ba3a4f929cfec
kpatch-patch-4_18_0-477_97_1-debuginfo-1-17.el8_8.ppc64le.rpm SHA-256: fa4d04ef8c3b92997efc38e7e24a13718fcc8d2f30cba30476ea1a12881ac018
kpatch-patch-4_18_0-477_97_1-debugsource-1-17.el8_8.ppc64le.rpm SHA-256: 1f22404222ad215ed11dc5e746a08a9a9399474a554a7d30613f8481a1c56334

Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 8.8

SRPM
kpatch-patch-4_18_0-477_107_1-1-13.el8_8.src.rpm SHA-256: 31d148d0841adbf2ead9453d6b11a545d5e15779d19c272bb5a0337c0a807300
kpatch-patch-4_18_0-477_120_1-1-12.el8_8.src.rpm SHA-256: 1c4a04a3822f35a6bebf554f8e84f5fb58e7c1d1e8bedb1eb6a284de079b374b
kpatch-patch-4_18_0-477_130_1-1-10.el8_8.src.rpm SHA-256: c7173657404413da289780892d61a05d47dce26e04acf1db9449a947dd2e6c1d
kpatch-patch-4_18_0-477_143_1-1-6.el8_8.src.rpm SHA-256: a3ca147727621164bd9f263d1b0de2822184d55d6c39624fbeac8458d6508c7b
kpatch-patch-4_18_0-477_97_1-1-17.el8_8.src.rpm SHA-256: a40dc73d9323c0c7bd9fd7628782780e4eb7491c3c25ab87a38aaf46a0bf43e0
x86_64
kpatch-patch-4_18_0-477_107_1-1-13.el8_8.x86_64.rpm SHA-256: 386c8de437287a4ccb535198d63efa7a16855479b816baab82c3cd63f43a234d
kpatch-patch-4_18_0-477_107_1-debuginfo-1-13.el8_8.x86_64.rpm SHA-256: 8696a135ab3093c1e2c99ed76ddee0c26c68a29063e9c249691d985bf4727cf0
kpatch-patch-4_18_0-477_107_1-debugsource-1-13.el8_8.x86_64.rpm SHA-256: 9e7ed2c1e096a2ebc9efe3be054da6fdea9137f14856465465df5ab3d27dce94
kpatch-patch-4_18_0-477_120_1-1-12.el8_8.x86_64.rpm SHA-256: b7d78923483f0637b635425f5c773d3ef363cb4cad9a8a574b9384026e6fdd5f
kpatch-patch-4_18_0-477_120_1-debuginfo-1-12.el8_8.x86_64.rpm SHA-256: 369be4386e998bba929b3ead30645ac2f46c76f78b1bb042273cdae7cd725414
kpatch-patch-4_18_0-477_120_1-debugsource-1-12.el8_8.x86_64.rpm SHA-256: de71fb1aa660000166f88afd1d12e55b66da9372a54ecba1443b8ca75282c30c
kpatch-patch-4_18_0-477_130_1-1-10.el8_8.x86_64.rpm SHA-256: 20479a5812c629aa549c019a4b9498289fe5880ef2760db495ca5e6986099d8f
kpatch-patch-4_18_0-477_130_1-debuginfo-1-10.el8_8.x86_64.rpm SHA-256: 842caff11a0234be714f6b002d7f9f5fa5ea706294fc3feba884c7786b611104
kpatch-patch-4_18_0-477_130_1-debugsource-1-10.el8_8.x86_64.rpm SHA-256: 792794a11f11ed9af8a339be1a2738e852e63595e0f9db0bf44b67bcf44928be
kpatch-patch-4_18_0-477_143_1-1-6.el8_8.x86_64.rpm SHA-256: 75cab2cf6aae6750b121f31a16e31de005f5b76297563f8e4706f6fe4c5b2eed
kpatch-patch-4_18_0-477_143_1-debuginfo-1-6.el8_8.x86_64.rpm SHA-256: 1844ec48be092097db6281a07f5345a9dd95f2b0e0d1926c950b61678faf89b7
kpatch-patch-4_18_0-477_143_1-debugsource-1-6.el8_8.x86_64.rpm SHA-256: 4935277496638a4e3743721b62df9c2b0d2f95e23ae998b5ba17aba2bcd3529b
kpatch-patch-4_18_0-477_97_1-1-17.el8_8.x86_64.rpm SHA-256: a3c035e64aef82bff18d926acccef5e7452b7f0bfbb1622c2d13659ae48c7f5d
kpatch-patch-4_18_0-477_97_1-debuginfo-1-17.el8_8.x86_64.rpm SHA-256: 5eb7358e88b500f33f390661d25b9b8c9ff43ea03d2409b5d99183130b7907a4
kpatch-patch-4_18_0-477_97_1-debugsource-1-17.el8_8.x86_64.rpm SHA-256: b29be99e7f92772b8c48dc92b0ec273492a0384686337184c68b021ee5ce8f48

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2026 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility