Kernel-Rt Security Update — AlmaLinux 8 (ALSA-2026:45116)
This is a security release for AlmaLinux 8. The fix ships in the current release line (referenced builds: 18.0-553, 147.1). Update the product on every affected server to the patched release — there is no workaround, and unpatched servers remain exposed until updated.
Команды исправления
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
Что это значит по лицензии SharedLicense
Your SharedLicense license itself is not affected — this is a change in AlmaLinux 8 software, not in licensing. Update the product through its standard update channel. Licenses keep working through updates; nothing needs re-issuing or re-activating.
The kernel-rt packages provide the Real Time Linux Kernel, which enables
fine-tuning for systems with extremely high determinism requirements.
Security Fix(es):
* kernel: KVM: x86: Don’t (re)check L1 intercepts when completing userspace I/O (CVE-2025-40026)
* kernel: xfrm single-frag length not properly …
The kernel-rt packages provide the Real Time Linux Kernel, which enables
fine-tuning for systems with extremely high determinism requirements.
Security Fix(es):
* kernel: KVM: x86: Don’t (re)check L1 intercepts when completing userspace I/O (CVE-2025-40026)
* kernel: xfrm single-frag length not properly …
The kernel-rt packages provide the Real Time Linux Kernel, which enables
fine-tuning for systems with extremely high determinism requirements.
Security Fix(es):
* kernel: KVM: x86: Don’t (re)check L1 intercepts when completing userspace I/O (CVE-2025-40026)
* kernel: xfrm single-frag length not properly …
The kernel-rt packages provide the Real Time Linux Kernel, which enables
fine-tuning for systems with extremely high determinism requirements.
Security Fix(es):
* kernel: KVM: x86: Don’t (re)check L1 intercepts when completing userspace I/O (CVE-2025-40026)
* kernel: xfrm single-frag length not properly …
Type:
security
Severity:
important
Release date:
2026-08-07
Description:
The kernel-rt packages provide the Real Time Linux Kernel, which enables
fine-tuning for systems with extremely high determinism requirements.
Security Fix(es):
* kernel: KVM: x86: Don’t (re)check L1 intercepts when completing userspace I/O (CVE-2025-40026)
* kernel: xfrm single-frag length not properly limited
* kernel: dm log: fix out-of-bounds write due to region_count overflow (CVE-2026-53059)
* kernel: tipc: fix double-free in tipc_buf_append() (CVE-2026-52993)
References:
Updated packages listed below:
| Architecture | Package | Checksum |
| x86_64 | kernel-rt-debug-modules-4.18.0-553.147.1.rt7.488.el8_10.x86_64.rpm | 053533f448fc63e4586d316215a55f2339a29b41a59f982b4a023f8e9c8be71a |
| x86_64 | kernel-rt-devel-4.18.0-553.147.1.rt7.488.el8_10.x86_64.rpm | 18a3d8819c23c41e609e8cbbea197285ef64aba5e61dc9289aa1bc4987e00d7e |
| x86_64 | kernel-rt-debug-core-4.18.0-553.147.1.rt7.488.el8_10.x86_64.rpm | 27ac7bfec2781314b0921012a7ce64d3ab8a91b9c71ab903ec3c3ff310425f35 |
| x86_64 | kernel-rt-modules-4.18.0-553.147.1.rt7.488.el8_10.x86_64.rpm | 2ed4cd837a4de4700555e5ccffabfec867d2716d543705ae9315e0a5cb264f7e |
| x86_64 | kernel-rt-4.18.0-553.147.1.rt7.488.el8_10.x86_64.rpm | 4b3b0e5e5d8f83f898f8b27823e64ecdf2212c248d5f61ba853c8cb58f78e182 |
| x86_64 | kernel-rt-debug-modules-extra-4.18.0-553.147.1.rt7.488.el8_10.x86_64.rpm | 9cea3a45fdbf0528de9bdd704d5fcbbebc72994875b9dbdd667a42ceb83b8e7e |
| x86_64 | kernel-rt-debug-4.18.0-553.147.1.rt7.488.el8_10.x86_64.rpm | a04b6753ec401623c0b4d406c8b7fef348f07bf481c4195fd231c5e9aa10f50e |
| x86_64 | kernel-rt-debug-devel-4.18.0-553.147.1.rt7.488.el8_10.x86_64.rpm | b3bdf8b8e7868ac120c6a303db8c21c84f6cfd55b488b3a35833df92935e6b03 |
| x86_64 | kernel-rt-modules-extra-4.18.0-553.147.1.rt7.488.el8_10.x86_64.rpm | ba868a7b40b1244fcbede39a4bb22d12b817b6d0ad0ec047311a86ee898f2b64 |
| x86_64 | kernel-rt-core-4.18.0-553.147.1.rt7.488.el8_10.x86_64.rpm | ed9e2d91584b9ebe3ba5ef3ed1a84a3686009535638faf55b1bc86b7460e12b2 |
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.
Источники
Предупреждения о безопасности
Похожие предупреждения
Проверьте систему на уязвимости
Выберите продукт и операционную систему, чтобы увидеть точные команды исправления.
Проверьте свою систему