RHSA-2026:13932HighCVSS 8.1
Red Hat Security Advisory: kernel security update
🔗 CVE IDs covered (6)
CVE-2025-71238 · pendingCVE-2026-23191 →CVE-2026-23401 →CVE-2026-31431 →CVE-2026-31532 →CVE-2026-43077 →
📋 Description
CVE-2025-71238 — kernel: Linux kernel (qla2xxx): Double free vulnerability leads to denial of service and potential privilege escalation. CVE-2026-23191 — kernel: ALSA: aloop: Fix racy access at PCM trigger CVE-2026-23401 — kernel: Linux kernel KVM: Privilege escalation or denial of service due to improper shadow page table entry handling CVE-2026-31431 — kernel: crypto: algif_aead - Revert to operating out-of-place CVE-2026-31532 — kernel: can: raw: fix ro->uniq use-after-free in raw_rcv() CVE-2026-43077 — kernel: crypto: algif_aead - Fix minimum RX size check for decryption
🔗 References (8)
- selfhttps://access.redhat.com/errata/RHSA-2026:13932
- externalhttps://access.redhat.com/security/updates/classification/#important
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2439947
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2444398
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2453803
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2460538
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2461107
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2026/rhsa-2026_13932.json