Kernel-Rt Security Update — AlmaLinux 8 (ALSA-2026:49213)
This is a security release for AlmaLinux 8. The fix ships in the current release line (referenced builds: 18.0-553, 150.1). Update the product on every affected server to the patched release — there is no workaround, and unpatched servers remain exposed until updated.
Команды исправления
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
Что это значит по лицензии SharedLicense
Your SharedLicense license itself is not affected — this is a change in AlmaLinux 8 software, not in licensing. Update the product through its standard update channel. Licenses keep working through updates; nothing needs re-issuing or re-activating.
The kernel-rt packages provide the Real Time Linux Kernel, which enables fine-tuning for systems with extremely high determinism requirements.
Security Fix(es):
* kernel: rtnetlink: add missing netlink_ns_capable() check for peer netns (CVE-2026-31692)
* kernel: netfilter: ctnetlink: ensure safe access to …
Type:
security
Severity:
important
Release date:
2026-08-02
Description:
The kernel-rt packages provide the Real Time Linux Kernel, which enables fine-tuning for systems with extremely high determinism requirements.
Security Fix(es):
* kernel: rtnetlink: add missing netlink_ns_capable() check for peer netns (CVE-2026-31692)
* kernel: netfilter: ctnetlink: ensure safe access to master conntrack (CVE-2026-43116)
* kernel: fanotify: fix false positive on permission events (CVE-2026-46150)
* kernel: net: sched: UAF via missing handler for TC_ACT_CONSUMED in tcf_qevent_handle ()
* kernel: net/sched: cls_api: Handle TC_ACT_CONSUMED in tcf_qevent_handle (CVE-2026-64530)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
References:
Updated packages listed below:
| Architecture | Package | Checksum |
| x86_64 | kernel-rt-debug-core-4.18.0-553.150.1.rt7.491.el8_10.x86_64.rpm | 4337c4d2ea9e07e1c02965c15ff6cf429dc7f0b4552075027dacc65951975418 |
| x86_64 | kernel-rt-core-4.18.0-553.150.1.rt7.491.el8_10.x86_64.rpm | 4ccd63bef56db655afc10a243bc5ae78d37777fe31496faeddadb7dabf156fbb |
| x86_64 | kernel-rt-debug-devel-4.18.0-553.150.1.rt7.491.el8_10.x86_64.rpm | 5eb39f93047e46bd5e8304f5f1d7583138475faa60d8802f09b083ea73a92e85 |
| x86_64 | kernel-rt-debug-4.18.0-553.150.1.rt7.491.el8_10.x86_64.rpm | 9e9c94ebccd8a6007e607f1d1ae3506e9d6ec912a67d5d9e136ebe3323a41718 |
| x86_64 | kernel-rt-debug-modules-extra-4.18.0-553.150.1.rt7.491.el8_10.x86_64.rpm | b0445a703a0ee688edac1fc6832b0427276b482dc2a64252d18ac3e790871028 |
| x86_64 | kernel-rt-modules-extra-4.18.0-553.150.1.rt7.491.el8_10.x86_64.rpm | bd3aeddba490013026dfbd87a9441903f7507d81303bc8264d1b72690a30af4c |
| x86_64 | kernel-rt-devel-4.18.0-553.150.1.rt7.491.el8_10.x86_64.rpm | ce52c2a8ecbb29c1a0eb3152cc99ea5adcbb33f21bc4529865b3d7648ee5f5fc |
| x86_64 | kernel-rt-4.18.0-553.150.1.rt7.491.el8_10.x86_64.rpm | d53c31bad7718fdb5a2a46e6cf8339687429d993e659b1257fbbbb4174f7b405 |
| x86_64 | kernel-rt-debug-modules-4.18.0-553.150.1.rt7.491.el8_10.x86_64.rpm | f3b1c0f03b647819c5d038ecb09a84acc09e0c656b309cf822a22eed719b8e64 |
| x86_64 | kernel-rt-modules-4.18.0-553.150.1.rt7.491.el8_10.x86_64.rpm | fa486b96188223bbcc2a7757993e178a27159763f75b8f1d51bb8ff78eb2c005 |
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.
Источники
Предупреждения о безопасности
Похожие предупреждения
Проверьте систему на уязвимости
Выберите продукт и операционную систему, чтобы увидеть точные команды исправления.
Проверьте свою систему