Red Hat Product Errata RHSA-2026:13734 - Security Advisory Issued: 2026-05-05 Updated: 2026-05-05 RHSA-2026:13734 - Security Advisory Overview Updated Packages Synopsis Important: kernel security update Type/Severity Security Advisory: Important Red Hat Lightspeed patch analysis Identify and remediate systems affected by this advisory. View affected systems Topic An update for kernel is now available for Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. Description The kernel packages contain the Linux kernel, the core of any Linux operating system. Security Fix(es): kernel: nvme: avoid double free special payload (CVE-2024-41073) kernel: Linux kernel: Denial of Service due to a deadlock in hugetlb folio migration (CVE-2026-23097) kernel: scsi: target: iscsi: Fix use-after-free in iscsit_dec_session_usage_count() (CVE-2026-23193) kernel: ALSA: aloop: Fix racy access at PCM trigger (CVE-2026-23191) kernel: nfsd: fix heap overflow in NFSv4.0 LOCK replay cache (CVE-2026-31402) kernel: crypto: algif_aead - Revert to operating out-of-place (CVE-2026-31431) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Solution For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 The system must be rebooted for this update to take effect. Affected Products Red Hat Enterprise Linux Server - AUS 9.2 x86_64 Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.2 ppc64le Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.2 x86_64 Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.2 aarch64 Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.2 s390x Red Hat Enterprise Linux for x86_64 - Extended Life Cycle 9.2 x86_64 Red Hat Enterprise Linux for ARM 64 - Extended Life Cycle 9.2 aarch64 Red Hat Enterprise Linux for Power, little endian - Extended Life Cycle 9.2 ppc64le Red Hat Enterprise Linux for IBM z Systems - Extended Life Cycle 9.2 s390x Fixes BZ - 2301637 - CVE-2024-41073 kernel: nvme: avoid double free special payload BZ - 2436802 - CVE-2026-23097 kernel: Linux kernel: Denial of Service due to a deadlock in hugetlb folio migration BZ - 2439887 - CVE-2026-23193 kernel: scsi: target: iscsi: Fix use-after-free in iscsit_dec_session_usage_count() BZ - 2439947 - CVE-2026-23191 kernel: ALSA: aloop: Fix racy access at PCM trigger BZ - 2454844 - CVE-2026-31402 kernel: nfsd: fix heap overflow in NFSv4.0 LOCK replay cache BZ - 2460538 - CVE-2026-31431 kernel: crypto: algif_aead - Revert to operating out-of-place CVEs CVE-2024-41073 CVE-2026-23097 CVE-2026-23191 CVE-2026-23193 CVE-2026-31402 CVE-2026-31431 References https://access.redhat.com/security/updates/classification/#important Note: More recent versions of these packages may be available. Click a package name for more details. Red Hat Enterprise Linux Server - AUS 9.2 SRPM kernel-5.14.0-284.169.1.el9_2.src.rpm SHA-256: afc044062ce225e677265eb5411c682c7966409022d3f3ad1e687f52bf2383cc x86_64 bpftool-7.0.0-284.169.1.el9_2.x86_64.rpm SHA-256: 791db75636c610a73adac0d651180e59e26d00f9f9374355c8e49a42bbba62bb bpftool-debuginfo-7.0.0-284.169.1.el9_2.x86_64.rpm SHA-256: b5e8678b1dac54c328375f8a30325ee1569dd00bd8494cc0ea946850a14fdbd5 bpftool-debuginfo-7.0.0-284.169.1.el9_2.x86_64.rpm SHA-256: b5e8678b1dac54c328375f8a30325ee1569dd00bd8494cc0ea946850a14fdbd5 kernel-5.14.0-284.169.1.el9_2.x86_64.rpm SHA-256: ffebc3a1728cf544c39bf673366a31e9ad9ec49b4a07cd35d7f582d341b5e2ba kernel-abi-stablelists-5.14.0-284.169.1.el9_2.noarch.rpm SHA-256: a66d767d4c940cfc891cc2f572daab655e1b6c624a9904552df3e2107692e9ed kernel-core-5.14.0-284.169.1.el9_2.x86_64.rpm SHA-256: da4c85832bf7e0d6722ad26bb386ae82518fec41bef61f65525c5d01fe736351 kernel-debug-5.14.0-284.169.1.el9_2.x86_64.rpm SHA-256: 029724a53b7daa2c0c4ee921b9c1044e666adfb1ac37e9b07eb45b8753a4060a kernel-debug-core-5.14.0-284.169.1.el9_2.x86_64.rpm SHA-256: 5717534a430aac1dba3877bf735327297e82778df4d414421db3728729462d9b kernel-debug-debuginfo-5.14.0-284.169.1.el9_2.x86_64.rpm SHA-256: 53fbe14a247c6e43fd181b99a5a06d5854104807a52070f5c555543093f90e6d kernel-debug-debuginfo-5.14.0-284.169.1.el9_2.x86_64.rpm SHA-256: 53fbe14a247c6e43fd181b99a5a06d5854104807a52070f5c555543093f90e6d kernel-debug-devel-5.14.0-284.169.1.el9_2.x86_64.rpm SHA-256: ed092942cfe9ab0adea740cb4170441da5edf5ea1b06c2e95ea4f6732943bd6d kernel-debug-devel-matched-5.14.0-284.169.1.el9_2.x86_64.rpm SHA-256: 46886356ca2d5166d49f952cb33ad467c0257fbea21968a17720be919525252c kernel-debug-modules-5.14.0-284.169.1.el9_2.x86_64.rpm SHA-256: 2059d59990c2385b2a70ae82c5a54322103d34db5f65efc3d98fffd19ee17bff kernel-debug-modules-core-5.14.0-284.169.1.el9_2.x86_64.rpm SHA-256: a1fa9a3287145084c3b410c49cd88d95637f8e28da64bdc8707f075b0396482f kernel-debug-modules-extra-5.14.0-284.169.1.el9_2.x86_64.rpm SHA-256: 91a4749f9d1406d416b676c8e7bcab26b50a09e342f423b27e551bab53e80937 kernel-debug-uki-virt-5.14.0-284.169.1.el9_2.x86_64.rpm SHA-256: fa49282371513fd5173f24584ac568c614cffe91437e40e3853c86c142518fd7 kernel-debuginfo-5.14.0-284.169.1.el9_2.x86_64.rpm SHA-256: dc5090ffd8ca6ea97b35f90538948dd81d4fa1291de046cbab2336b0ab4bf206 kernel-debuginfo-5.14.0-284.169.1.el9_2.x86_64.rpm SHA-256: dc5090ffd8ca6ea97b35f90538948dd81d4fa1291de046cbab2336b0ab4bf206 kernel-debuginfo-common-x86_64-5.14.0-284.169.1.el9_2.x86_64.rpm SHA-256: f86bbfa28332a4996c090d6045488d15049e733afcc454bf62d12cc0663432e0 kernel-debuginfo-common-x86_64-5.14.0-284.169.1.el9_2.x86_64.rpm SHA-256: f86bbfa28332a4996c090d6045488d15049e733afcc454bf62d12cc0663432e0 kernel-devel-5.14.0-284.169.1.el9_2.x86_64.rpm SHA-256: 9f8cb01babbe95953eb066051eac640a780d7d60db261a36263d35cdbc91b3d7 kernel-devel-matched-5.14.0-284.169.1.el9_2.x86_64.rpm SHA-256: 185ac048710ab6f5c90f2a4f05dbb2d759bec78d7f9b18e3aceb007696de19dc kernel-doc-5.14.0-284.169.1.el9_2.noarch.rpm SHA-256: 18a682363426f5fda0dd83b234bbcbb5a7061e65fb5bf8df772a1770dede8ec2 kernel-headers-5.14.0-284.169.1.el9_2.x86_64.rpm SHA-256: f421487355ed0eb58be7de1bfbd9f9c2aa5e1418161b57b7d3d44193c36f20ce kernel-modules-5.14.0-284.169.1.el9_2.x86_64.rpm SHA-256: d8c1dbee3c30dd443fa544df6fb74e081128d80336f482ef974e72b5be02f043 kernel-modules-core-5.14.0-284.169.1.el9_2.x86_64.rpm SHA-256: 27eb75a41922d26ae6bee5725a523a7c480b55180f8710da3743b230851a33b6 kernel-modules-extra-5.14.0-284.169.1.el9_2.x86_64.rpm SHA-256: a78b97518d1db6e267047de63ee3ae24d51cd6682cc5bab90b0088f405449bae kernel-tools-5.14.0-284.169.1.el9_2.x86_64.rpm SHA-256: 5e66780ae0d05312949e5ab07dfe445fabd119a336bb3aae6ba7ab9fce3f9ef5 kernel-tools-debuginfo-5.14.0-284.169.1.el9_2.x86_64.rpm SHA-256: c56677fc8ca5a74587f74a100dd5db4701f9e9b6e9419d96aab065229ebbac7a kernel-tools-debuginfo-5.14.0-284.169.1.el9_2.x86_64.rpm SHA-256: c56677fc8ca5a74587f74a100dd5db4701f9e9b6e9419d96aab065229ebbac7a kernel-tools-libs-5.14.0-284.169.1.el9_2.x86_64.rpm SHA-256: 1511ef3e50798e1309a65102cf20e5789780d574f45b8616ee09203126692c3f kernel-uki-virt-5.14.0-284.169.1.el9_2.x86_64.rpm SHA-256: b01a2012f09bdbeb61526069d4476a504ced675642e2b4ed9d53340d754c910d perf-5.14.0-284.169.1.el9_2.x86_64.rpm SHA-256: e33354a237ffb919a4d0c271e497b32b3e921e28b35c7491bcf88f3bd189b48a perf-debuginfo-5.14.0-284.169.1.el9_2.x86_64.rpm SHA-256: a077a630f073ce3e379aa4eb847d7acbcce871f0057deb8ff8daf60097ac441f perf-debuginfo-5.14.0-284.169.1.el9_2.x86_64.rpm SHA-256: a077a630f073ce3e379aa4eb847d7acbcce871f0057deb8ff8daf60097ac441f python3-perf-5.14.0-284.169.1.el9_2.x86_64.rpm SHA-256: fe57a1d5b16a69488d341ea526b0bc4e391c02c357e2e449797635ca581f92ca python3-perf-debuginfo-5.14.0-284.169.1.el9_2.x86_64.rpm SHA-256: 2f845b25e8ee397b5c29e0fcb6391d2546f6e04bb34528dce0ee92c4bf826a3a python3-perf-debuginfo-5.14.0-284.169.1.el9_2.x86_64.rpm SHA-256: 2f845b25e8ee397b5c29e0fcb6391d2546f6e04bb34528dce0ee92c4bf826a3a rtla-5.14.0-284.169.1.el9_2.x86_64.rpm SHA-256: 584a6f1cca1975805d45d4b07afdc18591790a0618bbf4102ca3fbe471d227c7 Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.2 SRPM kernel-5.14.0-284.169.1.el9_2.src.rpm SHA-256: afc044062ce225e677265eb5411c682c7966409022d3f3ad1e687f52bf2383cc ppc64le bpftool-7.0.0-284.169.1.el9_2.ppc64le.rpm SHA-256: c90564b8315b7e56e85af87b17d130cb9b0166a841143f7cd35e4aa24edd1854 bpftool-debuginfo-7.0.0-284.169.1.el9_2.ppc64le.rpm SHA-256: e27c3898f469bb5ae7334f4d4fad010351d8ca73dafb2aeac5636127be0468a4 bpftool-debuginfo-7.0.0-284.169.1.el9_2.ppc64le.rpm SHA-256: e27c3898f469bb5ae7334f4d4fad010351d8ca73dafb2aeac5636127be0468a4 kernel-5.14.0-284.169.1.el9_2.ppc64le.rpm SHA-256: 47030d84ff4d1f4918cf9914bc2368c91b205ec612f2371e673cc8cb65dd8c9c kernel-abi-stablelists-5.14.0-284.169.1.el9_2.noarch.rpm SHA-256: a66d767d4c940cfc891cc2f572daab655e1b6c624a9904552df3e2107692e9ed kernel-core-5.14.0-284.169.1.el9_2.ppc64le.rpm SHA-256: 8d9b26acc0c73f6b196ba7a85a638a8f3a4f35ef86f265e4bb110ff9b95e71e4 kernel-debug-5.14.0-284.169.1.el9_2.ppc64le.rpm SHA-256: 2f5a7673cf9e2201592570f793eb91eb1f0b19d3c475b687d162360dc4e3d757 kernel-debug-core-5.14.0-284.169.1.el9_2.ppc64le.rpm SHA-256: 2aff3bb8f9bdaac8117b49efdda065796d588950d667634cf198e9027bade34d kernel-debug-debuginfo-5.14.0-284.169.1.el9_2.ppc64le.rpm SHA-256: f9b92c106e5d70f9d4dcab9be15a41d13b59dac6aaa55edb17ba706aa5cd021e kernel-debug-debuginfo-5.14.0-284.169.1.el9_2.ppc64le.rpm SHA-256: f9b92c106e5d70f9d4dcab9be15a41d13b59dac6aaa55edb17ba706aa5cd021e kernel-debug-devel-5.14.0-284.169.1.el9_2.ppc64le.rpm SHA-256: 8b595f8cec085368fb3db75637b3b77d795419ba37386c9ea43535cb80d10b93 kernel-debug-devel-matched-5.14.0
This Red Hat security advisory addresses multiple Important-severity kernel vulnerabilities, including a high-severity use-after-free in the iSCSI target subsystem (CVE-2026-23193, CVSS 8.8) allowing potential code execution, a denial-of-service deadlock in hugetlb folio migration (CVE-2026-23097, CVSS 5.5), and a heap overflow in the NFS server (CVE-2026-31402). The affected systems are specifically Red Hat Enterprise Linux 9.2 under various Update Services and Extended Life Cycle support programs. The update requires a kernel package upgrade and a system reboot, with remediation details available via the provided Red Hat Knowledgebase article.