Red Hat Product Errata RHSA-2026:14823 - Security Advisory Issued: 2026-05-07 Updated: 2026-05-07 RHSA-2026:14823 - Security Advisory Overview Updated Packages Synopsis Important: kernel security update Type/Severity Security Advisory: Important Red Hat Lightspeed patch analysis Identify and remediate systems affected by this advisory. View affected systems Topic An update for kernel is now available for Red Hat Enterprise Linux 6 Extended Lifecycle Support - EXTENSION. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. Description The kernel packages contain the Linux kernel, the core of any Linux operating system. Security Fix(es): kernel: out-of-bound read in memcpy_fromiovecend() (CVE-2018-16885) kernel: nfsd: fix heap overflow in NFSv4.0 LOCK replay cache (CVE-2026-31402) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Solution For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 The system must be rebooted for this update to take effect. Affected Products Red Hat Enterprise Linux Server - Extended Life Cycle Support Extension 6 x86_64 Red Hat Enterprise Linux Server - Extended Life Cycle Support Extension 6 i386 Red Hat Enterprise Linux Server - Extended Life Cycle Support Extension (for IBM z Systems) 6 s390x Fixes BZ - 1661503 - CVE-2018-16885 kernel: out-of-bound read in memcpy_fromiovecend() BZ - 2454844 - CVE-2026-31402 kernel: nfsd: fix heap overflow in NFSv4.0 LOCK replay cache CVEs CVE-2018-16885 CVE-2026-31402 References https://access.redhat.com/security/updates/classification/#important Note: More recent versions of these packages may be available. Click a package name for more details. Red Hat Enterprise Linux Server - Extended Life Cycle Support Extension 6 SRPM kernel-2.6.32-754.60.1.el6.src.rpm SHA-256: f76d97b9738928dc41e33f814cf5b60d9c5d879301f396cc75289a779a04482f x86_64 kernel-2.6.32-754.60.1.el6.x86_64.rpm SHA-256: e794bb4a115592215c26905dd4122806c0cebfafd2e909fbfeea34335b4d86e7 kernel-abi-whitelists-2.6.32-754.60.1.el6.noarch.rpm SHA-256: 25ea9b7ce91d584361633a1d88574536377f1183b64387cadbfa7ed58dbdd1ac kernel-debug-2.6.32-754.60.1.el6.x86_64.rpm SHA-256: 975a900e53a092a94b5cfdbb3d3826b56e3864c9932f930645a939cd833f65da kernel-debug-debuginfo-2.6.32-754.60.1.el6.i686.rpm SHA-256: ff7f5eac9f1b0528acb68cde196895b65ee56dea58dd7cc5e7f54b9fb267c8df kernel-debug-debuginfo-2.6.32-754.60.1.el6.x86_64.rpm SHA-256: d586a5b156a95221fb434933d521aa818426246df12615b196570ddc5985523c kernel-debug-debuginfo-2.6.32-754.60.1.el6.x86_64.rpm SHA-256: d586a5b156a95221fb434933d521aa818426246df12615b196570ddc5985523c kernel-debug-devel-2.6.32-754.60.1.el6.i686.rpm SHA-256: 466dae49bcc5fc9001f6650482d33184e2c27e9372603a3d2c38a0b96d66c0d9 kernel-debug-devel-2.6.32-754.60.1.el6.x86_64.rpm SHA-256: 6a8acd60405c55eb1224794118cb39ebb4da19dab6fe203474c0d91b17278172 kernel-debuginfo-2.6.32-754.60.1.el6.i686.rpm SHA-256: bf4b5cabb922f7a9f393f890e57c9ab7074286b63f7bac2582a9b2fe78330504 kernel-debuginfo-2.6.32-754.60.1.el6.x86_64.rpm SHA-256: d30be0a0cd520a3c88b0de173af11e84b1273534348e350b4533d3864cf3446a kernel-debuginfo-2.6.32-754.60.1.el6.x86_64.rpm SHA-256: d30be0a0cd520a3c88b0de173af11e84b1273534348e350b4533d3864cf3446a kernel-debuginfo-common-i686-2.6.32-754.60.1.el6.i686.rpm SHA-256: f83b7d1c44c9fd359dbdcf95e1b4053b3bcf361d33e1952a45e1f2c85c46a719 kernel-debuginfo-common-x86_64-2.6.32-754.60.1.el6.x86_64.rpm SHA-256: 878e24f9d33adad2d1f47a977fb50695324661539a016dd58a2adff00a10af23 kernel-debuginfo-common-x86_64-2.6.32-754.60.1.el6.x86_64.rpm SHA-256: 878e24f9d33adad2d1f47a977fb50695324661539a016dd58a2adff00a10af23 kernel-devel-2.6.32-754.60.1.el6.x86_64.rpm SHA-256: 3e56eaca83937fd66bffd2f2788b6c17db979d99549ef13c64208154e07dfc88 kernel-doc-2.6.32-754.60.1.el6.noarch.rpm SHA-256: af319a3d018ccda3b89fcc0d22ce8dfaefd7b648278b4f6cdf4738eb45df506e kernel-firmware-2.6.32-754.60.1.el6.noarch.rpm SHA-256: 4026d8be6b71b19e989eac3ee522f1f9681e74a4d988b7296bb4861c31179d15 kernel-headers-2.6.32-754.60.1.el6.x86_64.rpm SHA-256: 966fad50c32eae3d03e4e7c858aad2a0dca78c10fccf34b3755055b67c90057c perf-2.6.32-754.60.1.el6.x86_64.rpm SHA-256: a0bf2072013c9535733f1749f295cafb332bfff5951e627ffbaf9ef6854501d2 perf-debuginfo-2.6.32-754.60.1.el6.i686.rpm SHA-256: d5db379dec117e23fa762b66c06402f871d06851ee7fe643994fbda4eeb5609c perf-debuginfo-2.6.32-754.60.1.el6.x86_64.rpm SHA-256: 8e5ed4f7020cd517ce72113c07d2577da1fe8752baac9e2e1e80f1edbc09a361 perf-debuginfo-2.6.32-754.60.1.el6.x86_64.rpm SHA-256: 8e5ed4f7020cd517ce72113c07d2577da1fe8752baac9e2e1e80f1edbc09a361 python-perf-2.6.32-754.60.1.el6.x86_64.rpm SHA-256: 03eeac0eaedfcf0c47f1e3aae26998142ea3d0a28df0ed411c9be163a4c8f441 python-perf-debuginfo-2.6.32-754.60.1.el6.i686.rpm SHA-256: c5123b76dcc59cd634d77a2e90486c7628e7c0f44fc545d1eb2c903c6a772caf python-perf-debuginfo-2.6.32-754.60.1.el6.x86_64.rpm SHA-256: 9c4d06601649557f05e7b4be5ac3f07e82312c607353f842e4349f1685438159 python-perf-debuginfo-2.6.32-754.60.1.el6.x86_64.rpm SHA-256: 9c4d06601649557f05e7b4be5ac3f07e82312c607353f842e4349f1685438159 i386 kernel-2.6.32-754.60.1.el6.i686.rpm SHA-256: 0ba1a277d427128846fd9b7b829b3220d3980e85e03a046bbca8c29d0da88b3c kernel-abi-whitelists-2.6.32-754.60.1.el6.noarch.rpm SHA-256: 25ea9b7ce91d584361633a1d88574536377f1183b64387cadbfa7ed58dbdd1ac kernel-debug-2.6.32-754.60.1.el6.i686.rpm SHA-256: 8eacf16ca36f9737fae25c945dd993060cf46221e6072943d9ef2327666d0497 kernel-debug-debuginfo-2.6.32-754.60.1.el6.i686.rpm SHA-256: ff7f5eac9f1b0528acb68cde196895b65ee56dea58dd7cc5e7f54b9fb267c8df kernel-debug-debuginfo-2.6.32-754.60.1.el6.i686.rpm SHA-256: ff7f5eac9f1b0528acb68cde196895b65ee56dea58dd7cc5e7f54b9fb267c8df kernel-debug-devel-2.6.32-754.60.1.el6.i686.rpm SHA-256: 466dae49bcc5fc9001f6650482d33184e2c27e9372603a3d2c38a0b96d66c0d9 kernel-debuginfo-2.6.32-754.60.1.el6.i686.rpm SHA-256: bf4b5cabb922f7a9f393f890e57c9ab7074286b63f7bac2582a9b2fe78330504 kernel-debuginfo-2.6.32-754.60.1.el6.i686.rpm SHA-256: bf4b5cabb922f7a9f393f890e57c9ab7074286b63f7bac2582a9b2fe78330504 kernel-debuginfo-common-i686-2.6.32-754.60.1.el6.i686.rpm SHA-256: f83b7d1c44c9fd359dbdcf95e1b4053b3bcf361d33e1952a45e1f2c85c46a719 kernel-debuginfo-common-i686-2.6.32-754.60.1.el6.i686.rpm SHA-256: f83b7d1c44c9fd359dbdcf95e1b4053b3bcf361d33e1952a45e1f2c85c46a719 kernel-devel-2.6.32-754.60.1.el6.i686.rpm SHA-256: c66ef191ea51d9e0804a24ecf25c50480f53a07675c08fabcd375efcbc4323e8 kernel-doc-2.6.32-754.60.1.el6.noarch.rpm SHA-256: af319a3d018ccda3b89fcc0d22ce8dfaefd7b648278b4f6cdf4738eb45df506e kernel-firmware-2.6.32-754.60.1.el6.noarch.rpm SHA-256: 4026d8be6b71b19e989eac3ee522f1f9681e74a4d988b7296bb4861c31179d15 kernel-headers-2.6.32-754.60.1.el6.i686.rpm SHA-256: 3e9f7e6e792a56eb50076d249d4fdbc1436bc14c8ed973e777eccb94e6592fa9 perf-2.6.32-754.60.1.el6.i686.rpm SHA-256: 126214b95a8f74342e3866d423517469e5131a58ae54fa771f7cf162a1255188 perf-debuginfo-2.6.32-754.60.1.el6.i686.rpm SHA-256: d5db379dec117e23fa762b66c06402f871d06851ee7fe643994fbda4eeb5609c perf-debuginfo-2.6.32-754.60.1.el6.i686.rpm SHA-256: d5db379dec117e23fa762b66c06402f871d06851ee7fe643994fbda4eeb5609c python-perf-2.6.32-754.60.1.el6.i686.rpm SHA-256: 8209ad6a95bf445466b07a8c61d06382353c6424031ef1bdf084bdf51ddc85ab python-perf-debuginfo-2.6.32-754.60.1.el6.i686.rpm SHA-256: c5123b76dcc59cd634d77a2e90486c7628e7c0f44fc545d1eb2c903c6a772caf python-perf-debuginfo-2.6.32-754.60.1.el6.i686.rpm SHA-256: c5123b76dcc59cd634d77a2e90486c7628e7c0f44fc545d1eb2c903c6a772caf Red Hat Enterprise Linux Server - Extended Life Cycle Support Extension (for IBM z Systems) 6 SRPM kernel-2.6.32-754.60.1.el6.src.rpm SHA-256: f76d97b9738928dc41e33f814cf5b60d9c5d879301f396cc75289a779a04482f s390x kernel-2.6.32-754.60.1.el6.s390x.rpm SHA-256: 133be54d0e6b703aa2af1a0febe9550df79f44a1b37098d2e292aa83d05792b4 kernel-abi-whitelists-2.6.32-754.60.1.el6.noarch.rpm SHA-256: 25ea9b7ce91d584361633a1d88574536377f1183b64387cadbfa7ed58dbdd1ac kernel-debug-2.6.32-754.60.1.el6.s390x.rpm SHA-256: d581c5c91a74c6a73258e489418c881140cc98c07086dee909fc7d48859d105a kernel-debug-debuginfo-2.6.32-754.60.1.el6.s390x.rpm SHA-256: cf9ee4e58fded23bc42c6e3c0023e5a290b845196873ada07bbe7e0f897b490d kernel-debug-debuginfo-2.6.32-754.60.1.el6.s390x.rpm SHA-256: cf9ee4e58fded23bc42c6e3c0023e5a290b845196873ada07bbe7e0f897b490d kernel-debug-devel-2.6.32-754.60.1.el6.s390x.rpm SHA-256: ffd2a42b2d5a59bdf8b504e207f66ee34f7bd25e921e48940578b17b601dca2e kernel-debuginfo-2.6.32-754.60.1.el6.s390x.rpm SHA-256: b1bacd2b976e5f410e73f9f24ef470226dc5e9a8125d9caceff09ff31e7d4f2b kernel-debuginfo-2.6.32-754.60.1.el6.s390x.rpm SHA-256: b1bacd2b976e5f410e73f9f24ef470226dc5e9a8125d9caceff09ff31e7d4f2b kernel-debuginfo-common-s390x-2.6.32-754.60.1.el6.s390x.rpm SHA-256: 510875f2a7a0b939fe4f9d1be84a03a611233005fb616bfbee09d74836f461cf kernel-debuginfo-common-s390x-2.6.32-754.60.1.el6.s390x.rpm SHA-256: 510875f2a7a0b939fe4f9d1be84a03a611233005fb616bfbee09d74836f461cf kernel-devel-2.6.32-754.60.1.el6.s390x.rpm SHA-256: f32e62458043a6026d90698aa45ecd95e0341bba4ba508d722721d962fb8c364 kernel-doc-2.6.32-754.60.1.el6.noarch.rpm SHA-256: af319a3d018ccda3b89fcc0d22ce8dfaefd7b648278b4f6cdf4738eb45df506e kernel-firmware-2.6.32-754.60.1.el6.noarch.rpm SHA-256: 4026d8be6b71b19e989eac3ee522f1f9681e74a4d988b7296bb4861c31179d15 kernel-headers-2.6.32-754.60.1.el6.s390x.rpm SHA-256: 6bb368d95afb6cd0e3ec41a5224e52e878ba00d8c617d8f8cdfe5bddcd78e3ed kernel-kdump-2.6.32-754.60.1.el6.s390x.rpm SHA-256: 871fe457e26c0bb7de6664359c3466e853c571c509c65c104e386157fdb9bc63 kernel-kdump-debuginfo-2.6.32-754.60.1.el6.s390x.rpm SHA-256: 0aa3
This Red Hat security advisory addresses two Important-rated kernel vulnerabilities: an out-of-bound read in `memcpy_fromiovecend()` (CVE-2018-16885) and a heap overflow in the NFSv4.0 LOCK replay cache within `nfsd` (CVE-2026-31402). The update applies to Red Hat Enterprise Linux 6 Extended Lifecycle Support Extension, and affected systems must be rebooted after applying the patch. Specific fixed package versions are provided, such as kernel-2.6.32-754.60.1.el6 for the x86_64 architecture.