Kernel-Rt Security Update — AlmaLinux 8 (ALSA-2026:50979)
The kernel-rt packages provide the Real Time Linux Kernel, which enables fine-tuning for systems with extremely high determinism requirements. Security Fix(es): * kernel: xen: AMD Zen 2 Processors: Privilege escalation via improper CPU cache isolation (CVE-2025-54518) Bug Fix(es) and Enhancement(s): *…
The kernel-rt packages provide the Real Time Linux Kernel, which enables fine-tuning for systems with extremely high determinism requirements.
Security Fix(es):
* kernel: xen: AMD Zen 2 Processors: Privilege escalation via improper CPU cache isolation (CVE-2025-54518)
Bug Fix(es) and Enhancement(s):
*…
Security Fix(es):
* kernel: xen: AMD Zen 2 Processors: Privilege escalation via improper CPU cache isolation (CVE-2025-54518)
Bug Fix(es) and Enhancement(s):
* Kernel crash in bpf_for_each_array_elem() due to missing backport of upstream commit 4b6313cf99b0 (JIRA:AlmaLinux-191844)
* gfs2: xfstests generic/363 failure [almalinux-8.10.z] (JIRA:AlmaLinux-214099)
* AlmaLinux8: HYPERV hv_storvsc driver can we add additional code to allow PERSISTENT_RESERVE_IN [AlmaLinux 8.10Z] (JIRA:AlmaLinux-188270)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
| Architecture | Package | Checksum |
| x86_64 | kernel-rt-core-4.18.0-553.153.1.rt7.494.el8_10.x86_64.rpm | 45597ae2b2523f8a8737a1d91a42e0804aff58a38ba8781a91056efb810d7a21 |
| x86_64 | kernel-rt-debug-modules-extra-4.18.0-553.153.1.rt7.494.el8_10.x86_64.rpm | 6bbf17f31e8184771c37fdde6f1ea862081a49e467fd72d341355943d4d8d17f |
| x86_64 | kernel-rt-4.18.0-553.153.1.rt7.494.el8_10.x86_64.rpm | 6fbc2156be6d472e199e0e9b47ac9e00ac7521670389d4c9f7874a0b3986a5fb |
| x86_64 | kernel-rt-debug-modules-4.18.0-553.153.1.rt7.494.el8_10.x86_64.rpm | 701576e6594c58c2e28bf740ca866d1fa2c675c538b70ccca04d97e234a63451 |
| x86_64 | kernel-rt-debug-core-4.18.0-553.153.1.rt7.494.el8_10.x86_64.rpm | 7d1c555cfd9e874aefb18bd25282da7775f30bae91a0e792ec43dd07e4ae2ed4 |
| x86_64 | kernel-rt-modules-4.18.0-553.153.1.rt7.494.el8_10.x86_64.rpm | 7e0a8b547d35bce58d1067b61ee9f0bf71ecadd5ac74d14349b123d54a5e1069 |
| x86_64 | kernel-rt-debug-4.18.0-553.153.1.rt7.494.el8_10.x86_64.rpm | 89a71c0015a4568192baf07d53455c8ee3519ed9a77861704ec56fea8c6eceee |
| x86_64 | kernel-rt-devel-4.18.0-553.153.1.rt7.494.el8_10.x86_64.rpm | f3b0b9998dcaaeef64a1d6b6d4fda2aea003b5d28cb5a10c5784e521ba880288 |
| x86_64 | kernel-rt-modules-extra-4.18.0-553.153.1.rt7.494.el8_10.x86_64.rpm | f861dcb4c6a865f844b861f0e29b129670ea866cf51e08aff43bdb06ce2ed103 |
| x86_64 | kernel-rt-debug-devel-4.18.0-553.153.1.rt7.494.el8_10.x86_64.rpm | f9ff6b9051477d5abe9005a2befe78a71e1f3c17d9a6c3b997d70e7481c31ac5 |
How to Apply the Fix
Update the affected packages on your server to the patched release, then restart the relevant services.
sudo dnf update
Check your system for vulnerabilities
Select your product and operating system to see the exact fix commands that apply to you.
Check Your System