Errata des produits Red Hat RHSA-2026:19540 - Security Advisory Publié : 2026-05-20 Mis à jour : 2026-05-20 RHSA-2026:19540 - Security Advisory Aperçu général Paquets mis à jour Synopsis Important: kernel security update Type / Sévérité Security Advisory: Important Analyse des correctifs dans Red Hat Insights Identifiez et remédiez aux systèmes concernés par cette alerte. Voir les systèmes concernés Sujet An update for kernel is now available for NVIDIA for RHEL 10. Red Hat Product Security has rated this update as having a security impact of Critical. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. Description The kernel packages contain the Linux kernel, the core of any Linux operating system. Security Fix(es): CVE-2026-46333 kernel: Read root-owned files as an unprivileged user CVE-2026-46300 kernel: "Fragnesia" is a variant of Dirty Frag vulnerability in the ESP/XFRM leading to Local Privilege Escalation (LPE) vulnerability in the Linux kernel For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the NVIDIA for RHEL 10 Release Notes linked from the References section. Solution For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 The system must be rebooted for this update to take effect. Produits concernés Red Hat Enterprise Linux for ARM 64 10 aarch64 Correctifs BZ - 2477015 - CVE-2026-46300 kernel: "Fragnesia" is a variant of Dirty Frag vulnerability in the ESP/XFRM leading to Local Privilege Escalation (LPE) vulnerability in the Linux kernel BZ - 2477802 - CVE-2026-46333 kernel: Read root-owned files as an unprivileged user CVE CVE-2026-46300 CVE-2026-46333 Références https://access.redhat.com/security/updates/classification/#important Remarque: Il existe peut-être des versions plus récentes de ces paquets. Cliquer sur un nom de paquet pour obtenir plus de détails. Red Hat Enterprise Linux for ARM 64 10 SRPM kernel-6.12.0-211.8.el10nv.src.rpm SHA-256: 9d8f239812d7058ae9ab6c555112087121dec1cd27260880164ddbf03b19393a aarch64 kernel-6.12.0-211.8.el10nv.aarch64.rpm SHA-256: 1c751694be764746467b13d42b423f599997999d07aec974dc314fdc0c2f49c8 kernel-64k-6.12.0-211.8.el10nv.aarch64.rpm SHA-256: 6963f2fa9184bf58d40a2ef8a6ca8925765ed7b158be6fea28e73ae4528d630f kernel-64k-core-6.12.0-211.8.el10nv.aarch64.rpm SHA-256: 91e135f3fa64b3f31d2fd7554cac96705aa31da3899566b0de7e8bc52d615527 kernel-64k-debug-6.12.0-211.8.el10nv.aarch64.rpm SHA-256: e906ed673d7a4ef9f7b2e25cdaaeea399f49ba9528ee80f80b21707ff9a6b539 kernel-64k-debug-core-6.12.0-211.8.el10nv.aarch64.rpm SHA-256: 7d620bf9a56c2bf37ecdbef59b5709052167b0e0ed1162cde6acb0de781f22ef kernel-64k-debug-debuginfo-6.12.0-211.8.el10nv.aarch64.rpm SHA-256: 120912e77fb1a6b44b7f08705f5c63c6b87097f3d0c6f9bd9e1e67e22871e408 kernel-64k-debug-modules-6.12.0-211.8.el10nv.aarch64.rpm SHA-256: 03faf7e69d78134f7fb637e6421419e5a5df9b8be17ec0d0d6ae72c636cecff7 kernel-64k-debug-modules-core-6.12.0-211.8.el10nv.aarch64.rpm SHA-256: 00cca35c9c489f0143c2c54e6f3a9f37496453ebc09eb030dea419dabb6169b1 kernel-64k-debug-modules-extra-6.12.0-211.8.el10nv.aarch64.rpm SHA-256: 783f5a9058250f8bbc7ce8ea6797c00d11ae9df9fdf54f8e330e0e826108cbea kernel-64k-debuginfo-6.12.0-211.8.el10nv.aarch64.rpm SHA-256: e9a1b426ed5fabcedc6b1b6abd3c4eb953285c7a13cff6f540cd6a5036965f49 kernel-64k-modules-6.12.0-211.8.el10nv.aarch64.rpm SHA-256: e9ca4e8560b6c79a77c938e803bc0f1c539f246cc8f3f343a59bad8010d50a8a kernel-64k-modules-core-6.12.0-211.8.el10nv.aarch64.rpm SHA-256: c86b26f234674eacb1956cd97ef2d0fbae4b73fb11c7ab7d21a2fb850235726f kernel-64k-modules-extra-6.12.0-211.8.el10nv.aarch64.rpm SHA-256: 3ea6b8421576a773420ff80382d148df09ec354fd6555fc9472b367d577763b4 kernel-abi-stablelists-6.12.0-211.8.el10nv.noarch.rpm SHA-256: df31a4d7e5a971095fc7698433c6d4b3f5f3d6424f1434854e059537d3c41922 kernel-core-6.12.0-211.8.el10nv.aarch64.rpm SHA-256: 9a80859b35aa905005231f796d274d93748e4e1738bce2ffba22578a38199cbe kernel-debug-6.12.0-211.8.el10nv.aarch64.rpm SHA-256: a07815653b9a2a33c1ded1d65e89f4765171e78e5467291604c3f02f1a86c9d0 kernel-debug-core-6.12.0-211.8.el10nv.aarch64.rpm SHA-256: 5b6e22faf6d5a55e6ba8b276e55d8a9399726b1e56db7306c8f0a04eea024b2b kernel-debug-debuginfo-6.12.0-211.8.el10nv.aarch64.rpm SHA-256: b9d651b793fcf500c32c582abae199484c247684faa0de02010175a5bc437351 kernel-debug-devel-6.12.0-211.8.el10nv.aarch64.rpm SHA-256: 7c187a19989793f9e7ffc8a00aa61165d43bc3ffebc3c1fae664632891007542 kernel-debug-devel-matched-6.12.0-211.8.el10nv.aarch64.rpm SHA-256: e38f82d2cd87cd4e13bcbccc7202351ba304277f6978a49b0862b3db0a8614b9 kernel-debug-modules-6.12.0-211.8.el10nv.aarch64.rpm SHA-256: ee4a89c4db20cdb23779db3fdf7a879db6d503ab45d4095d02cbf10527db1e5f kernel-debug-modules-core-6.12.0-211.8.el10nv.aarch64.rpm SHA-256: 18ad9797c14b70dbaf7122c3ee195cf13f9509a2d4c4d3778194c374be3ff8bf kernel-debug-modules-extra-6.12.0-211.8.el10nv.aarch64.rpm SHA-256: d1743ff8b2bbe9b0f52ea5dfbf9d190a6fa1495c8c1a44ace0f2bc7f8ff7515b kernel-debuginfo-6.12.0-211.8.el10nv.aarch64.rpm SHA-256: 201489ac2691650f462d50cb4997be28a79c9c1222768dfad4dac44a4a4cdcf5 kernel-debuginfo-common-aarch64-6.12.0-211.8.el10nv.aarch64.rpm SHA-256: 309dcf3fb2d9cc73a8e89a64330bb6b05a4015e33aabd144675fdc12ba3dc3da kernel-devel-6.12.0-211.8.el10nv.aarch64.rpm SHA-256: 1b2017736c9a3bb53a841d19ffe8ba15ea8e00f28e99eb30a6c66d33416d33fa kernel-devel-matched-6.12.0-211.8.el10nv.aarch64.rpm SHA-256: 9a69fa84327e3ca26583fba1d915dcb57195ce93a9069cf3ef9b20ad62b67f5d kernel-doc-6.12.0-211.8.el10nv.noarch.rpm SHA-256: 26aa1d8fa0561ffe74e09b352c87c6e7816cd8bb0228356aa70bd822f18db93e kernel-headers-6.12.0-211.8.el10nv.aarch64.rpm SHA-256: c8a78e9301cfedc3fc658975ee1c0af473bf51063685bb8b7182b6a1894e3944 kernel-modules-6.12.0-211.8.el10nv.aarch64.rpm SHA-256: 53de7fab070f73d69d478fc7519c01634457d41540bdcb0c184a2ac6c7767fdf kernel-modules-core-6.12.0-211.8.el10nv.aarch64.rpm SHA-256: de1114eb4a223e06e54859f045763e4752ee5b6ee14f524ac4da2ece836c3d34 kernel-modules-extra-6.12.0-211.8.el10nv.aarch64.rpm SHA-256: 8cbcf8aa8b38dd836f8cb35675f911cbdd42b7694f6dda445144bf9103fc111e kernel-modules-extra-matched-6.12.0-211.8.el10nv.aarch64.rpm SHA-256: e0e2252f519d9e2e1d576525bc1627dd710ab83b28a804953d697cf3e82c1c97 kernel-tools-6.12.0-211.8.el10nv.aarch64.rpm SHA-256: 38cfe7cb231549bcf93ac14eaaa88419b06715d90677f08908401e10a914110f kernel-tools-debuginfo-6.12.0-211.8.el10nv.aarch64.rpm SHA-256: 0512f2e2f3d4a30ffdf0e74fe851267853820b85df094a91b37bb63d8a826dd2 kernel-tools-libs-6.12.0-211.8.el10nv.aarch64.rpm SHA-256: c15fedea01db9266cc57e3d5283c75b1d87da25ce2f03a7774e5594d3718b8b1 kernel-uki-virt-6.12.0-211.8.el10nv.aarch64.rpm SHA-256: 1e7ca1624132d5644a98a1d0e1c3275e39f0a7f512a41c1d552e0aa78116d201 kernel-uki-virt-addons-6.12.0-211.8.el10nv.aarch64.rpm SHA-256: c068f3fc3e589332bcd031cd691b2ead57d4594a388a1738b93d2cb0216f7e9e libperf-debuginfo-6.12.0-211.8.el10nv.aarch64.rpm SHA-256: 95e8600e2516ca5d375a310490c512d3d577d5eb65e9f236d44bf316d489573d perf-6.12.0-211.8.el10nv.aarch64.rpm SHA-256: 415710a7726e3796226e0ccb3ef3c6334260351dd5bf0ffcc9b9fc476f4ed673 perf-debuginfo-6.12.0-211.8.el10nv.aarch64.rpm SHA-256: b2c986c943400563cc6494f05b87c17768329320bbde0d77c7e495a99fa94db8 python3-perf-6.12.0-211.8.el10nv.aarch64.rpm SHA-256: 19e3081ceaf2d233735ced729f01a56acf98dcb3fe14293246a666561f4b79b5 python3-perf-debuginfo-6.12.0-211.8.el10nv.aarch64.rpm SHA-256: 8ce6be3236646bd2d45a8862a540de5684bed2de0345df84d69d914b1dcf7d5a rtla-6.12.0-211.8.el10nv.aarch64.rpm SHA-256: f3d92ce6b340b5c8c9f35c8527524934513986b4d1a380b31181452791199280 rv-6.12.0-211.8.el10nv.aarch64.rpm SHA-256: f27253ee7b31d3aeb9f9175945ccd4d734ffa6964f89232e29b7f1fa15df4725 Le contact Red Hat Security est secalert@redhat.com . Plus d'infos contact à https://access.redhat.com/security/team/contact/ .
This Red Hat security advisory addresses two critical Linux kernel vulnerabilities: CVE-2026-46300 ("Fragnesia"), a variant of the Dirty Frag flaw in the ESP/XFRM subsystem leading to local privilege escalation, and CVE-2026-46333, which allows an unprivileged user to read root-owned files. The advisory, rated Important by Red Hat Product Security, applies to the kernel packages for NVIDIA for RHEL 10 on ARM 64 (aarch64). A system reboot is required after applying the update, which includes the kernel packages version 6.12.0-211.8.el10nv.