RLSA-2026:64770
Dashboard / Vulnerabilities / RLSA-2026:64770
RLSA-2026:64770
Summary: Important: kernel-rt security update
Details: The kernel-rt packages provide the Real Time Linux Kernel, which enables fine-tuning for systems with extremely high determinism requirements. Security Fix(es): * kernel: crypto: pcrypt - Fix handling of MAY_BACKLOG requests (CVE-2026-43493) * kernel: netfilter: conntrack: remove sprintf usage (CVE-2026-53002) * kernel: netfilter: synproxy: refresh tcphdr after skb_ensure_writable (CVE-2026-64007) * kernel: rhashtable: clear stale iter->p on table restart (CVE-2026-64563) * kernel: smb: client: validate DFS referral PathConsumed (CVE-2026-68343) * kernel: nvmet-rdma: handle inline data with a nonzero offset (CVE-2026-72129) * kernel: net: bridge: stop fast-leave after deleting a port group (CVE-2026-74480) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
References: https://errata.rockylinux.org/RLSA-2026:64770, https://bugzilla.redhat.com/show_bug.cgi?id=2479812, https://bugzilla.redhat.com/show_bug.cgi?id=2492329, https://bugzilla.redhat.com/show_bug.cgi?id=2502361, https://bugzilla.redhat.com/show_bug.cgi?id=2510892, https://bugzilla.redhat.com/show_bug.cgi?id=2513373, https://bugzilla.redhat.com/show_bug.cgi?id=2516731, https://bugzilla.redhat.com/show_bug.cgi?id=2517046, https://access.redhat.com/errata/RHSA-2026:64770
Affected packages
Package
Name: kernel-rt
Purl: pkg:rpm/rocky-linux/kernel-rt?distro=rocky-linux-8&epoch=0
Affected ranges
Type: ECOSYSTEM
Events:
