Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2026:7100 - Security Advisory
Issued:
2026-04-08
Updated:
2026-04-08

RHSA-2026:7100 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Moderate: kernel-rt security update

Type/Severity

Security Advisory: Moderate

Red Hat Lightspeed patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for kernel-rt is now available for Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions.

Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

The kernel-rt packages provide the Real Time Linux Kernel, which enables fine-tuning for systems with extremely high determinism requirements.

Security Fix(es):

  • kernel: Linux kernel: Use-after-free in BPF sockmap can lead to denial of service and privilege escalation (CVE-2025-38154)
  • kernel: Linux kernel: Use-After-Free vulnerability in ATM subsystem (CVE-2025-38180)
  • kernel: Kernel: Double free vulnerability in exFAT filesystem can lead to denial of service (CVE-2025-38206)
  • kernel: Linux kernel:A use-after-free in bridge multicast in br_multicast_port_ctx_init (CVE-2025-38248)
  • kernel: macvlan: fix error recovery in macvlan_common_newlink() (CVE-2026-23209)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

The system must be rebooted for this update to take effect.

Affected Products

  • Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.0 x86_64

Fixes

  • BZ - 2376056 - CVE-2025-38154 kernel: Linux kernel: Use-after-free in BPF sockmap can lead to denial of service and privilege escalation
  • BZ - 2376376 - CVE-2025-38180 kernel: Linux kernel: Use-After-Free vulnerability in ATM subsystem
  • BZ - 2376377 - CVE-2025-38206 kernel: Kernel: Double free vulnerability in exFAT filesystem can lead to denial of service
  • BZ - 2378981 - CVE-2025-38248 kernel: Linux kernel:A use-after-free in bridge multicast in br_multicast_port_ctx_init
  • BZ - 2439900 - CVE-2026-23209 kernel: macvlan: fix error recovery in macvlan_common_newlink()

CVEs

  • CVE-2025-38154
  • CVE-2025-38180
  • CVE-2025-38206
  • CVE-2025-38248
  • CVE-2026-23209

References

  • https://access.redhat.com/security/updates/classification/#moderate
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.0

SRPM
kernel-rt-5.14.0-70.173.1.rt21.245.el9_0.src.rpm SHA-256: 4dd6ee75392bbec256c10df24c9e3120ed3f47b07153231aff5fcb2f1008076f
x86_64
kernel-rt-5.14.0-70.173.1.rt21.245.el9_0.x86_64.rpm SHA-256: a1b5abffd4ce8add0f76dcea30ae5b4210db66b10836fb174f1fe021f3e853a2
kernel-rt-5.14.0-70.173.1.rt21.245.el9_0.x86_64.rpm SHA-256: a1b5abffd4ce8add0f76dcea30ae5b4210db66b10836fb174f1fe021f3e853a2
kernel-rt-core-5.14.0-70.173.1.rt21.245.el9_0.x86_64.rpm SHA-256: b78ec5be83ff36122d30a56fb28e809fc8823d98720ea5a9b823eef41806b044
kernel-rt-core-5.14.0-70.173.1.rt21.245.el9_0.x86_64.rpm SHA-256: b78ec5be83ff36122d30a56fb28e809fc8823d98720ea5a9b823eef41806b044
kernel-rt-debug-5.14.0-70.173.1.rt21.245.el9_0.x86_64.rpm SHA-256: 8f1b3d63ce28e9828e4428e4110626deb78e77bba6b9e08397c8db41e77c466e
kernel-rt-debug-5.14.0-70.173.1.rt21.245.el9_0.x86_64.rpm SHA-256: 8f1b3d63ce28e9828e4428e4110626deb78e77bba6b9e08397c8db41e77c466e
kernel-rt-debug-core-5.14.0-70.173.1.rt21.245.el9_0.x86_64.rpm SHA-256: 5e6c25f8e93014ff26b4ea5752b250e5eb5b8305c0c8def2908dca4e002acedd
kernel-rt-debug-core-5.14.0-70.173.1.rt21.245.el9_0.x86_64.rpm SHA-256: 5e6c25f8e93014ff26b4ea5752b250e5eb5b8305c0c8def2908dca4e002acedd
kernel-rt-debug-debuginfo-5.14.0-70.173.1.rt21.245.el9_0.x86_64.rpm SHA-256: 734a5baf0c376a92e09eed36141d1a3e20c6755cd98dcfcc3962e0632713c4da
kernel-rt-debug-debuginfo-5.14.0-70.173.1.rt21.245.el9_0.x86_64.rpm SHA-256: 734a5baf0c376a92e09eed36141d1a3e20c6755cd98dcfcc3962e0632713c4da
kernel-rt-debug-devel-5.14.0-70.173.1.rt21.245.el9_0.x86_64.rpm SHA-256: 826b185a3fcc943b196c3970c1b86a9eda85461cac9d883905b8b6a39c102d02
kernel-rt-debug-devel-5.14.0-70.173.1.rt21.245.el9_0.x86_64.rpm SHA-256: 826b185a3fcc943b196c3970c1b86a9eda85461cac9d883905b8b6a39c102d02
kernel-rt-debug-kvm-5.14.0-70.173.1.rt21.245.el9_0.x86_64.rpm SHA-256: 0af471338a00a919bda87a1594e32f876db768d740285d58da7b685294f42814
kernel-rt-debug-modules-5.14.0-70.173.1.rt21.245.el9_0.x86_64.rpm SHA-256: 03d1a39ade94ae358e887342b2b8b4053f7dec3f4481af3d5143894938e9825f
kernel-rt-debug-modules-5.14.0-70.173.1.rt21.245.el9_0.x86_64.rpm SHA-256: 03d1a39ade94ae358e887342b2b8b4053f7dec3f4481af3d5143894938e9825f
kernel-rt-debug-modules-extra-5.14.0-70.173.1.rt21.245.el9_0.x86_64.rpm SHA-256: dea9652b23657f8bd128e4ffc8a6bc552890bfd52865e3b54684e47fdd040cb9
kernel-rt-debug-modules-extra-5.14.0-70.173.1.rt21.245.el9_0.x86_64.rpm SHA-256: dea9652b23657f8bd128e4ffc8a6bc552890bfd52865e3b54684e47fdd040cb9
kernel-rt-debuginfo-5.14.0-70.173.1.rt21.245.el9_0.x86_64.rpm SHA-256: dd11898c45946ddbfb0d9bbc0ca8b79a46c23628e426a3891ae282163e01799f
kernel-rt-debuginfo-5.14.0-70.173.1.rt21.245.el9_0.x86_64.rpm SHA-256: dd11898c45946ddbfb0d9bbc0ca8b79a46c23628e426a3891ae282163e01799f
kernel-rt-debuginfo-common-x86_64-5.14.0-70.173.1.rt21.245.el9_0.x86_64.rpm SHA-256: 66075ff0be58a21076bd6d898e3f8fe69de94020430dcc5e367f8564447974a2
kernel-rt-debuginfo-common-x86_64-5.14.0-70.173.1.rt21.245.el9_0.x86_64.rpm SHA-256: 66075ff0be58a21076bd6d898e3f8fe69de94020430dcc5e367f8564447974a2
kernel-rt-devel-5.14.0-70.173.1.rt21.245.el9_0.x86_64.rpm SHA-256: 1d43b0bfb38f5ea73877f9cca31708ba71926f5d854b5e44cd4e80bcd0e65806
kernel-rt-devel-5.14.0-70.173.1.rt21.245.el9_0.x86_64.rpm SHA-256: 1d43b0bfb38f5ea73877f9cca31708ba71926f5d854b5e44cd4e80bcd0e65806
kernel-rt-kvm-5.14.0-70.173.1.rt21.245.el9_0.x86_64.rpm SHA-256: b540348c273890fdde87a3c22251ea8b0412e056a37bb546f20da13ecb81c137
kernel-rt-modules-5.14.0-70.173.1.rt21.245.el9_0.x86_64.rpm SHA-256: e8bdaf666211ee458090974f83657c01923995bdffef0fcf8dccfbcb830d2c37
kernel-rt-modules-5.14.0-70.173.1.rt21.245.el9_0.x86_64.rpm SHA-256: e8bdaf666211ee458090974f83657c01923995bdffef0fcf8dccfbcb830d2c37
kernel-rt-modules-extra-5.14.0-70.173.1.rt21.245.el9_0.x86_64.rpm SHA-256: 9a140b47e1676f7133272122f0ab887c9051e8914733450fd5edd3dd2e836a37
kernel-rt-modules-extra-5.14.0-70.173.1.rt21.245.el9_0.x86_64.rpm SHA-256: 9a140b47e1676f7133272122f0ab887c9051e8914733450fd5edd3dd2e836a37

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2026 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility