RHSA-2026:0535HighCVSS 7.5

Red Hat Security Advisory: kernel security update

Published
January 14, 2026
Last Modified
June 29, 2026

🔗 CVE IDs covered (11)

📋 Description

CVE-2022-50447 — kernel: Bluetooth: hci_conn: Fix crash on hci_create_cis_sync CVE-2023-53539 — kernel: RDMA/rxe: Fix incomplete state save in rxe_requester CVE-2023-53675 — kernel: scsi: ses: Fix possible desc_ptr out-of-bounds accesses CVE-2023-53680 — kernel: NFSD: Avoid calling OPDESC() with ops->opnum == OP_ILLEGAL CVE-2025-38724 — kernel: nfsd: handle get_client_locked() failure in nfsd4_setclientid_confirm() CVE-2025-39825 — kernel: smb: client: fix race with concurrent opens in rename(2) CVE-2025-39925 — kernel: can: j1939: implement NETDEV_UNREGISTER notification handler CVE-2025-39982 — kernel: Bluetooth: hci_event: Fix UAF in hci_acl_create_conn_sync CVE-2025-40176 — kernel: tls: wait for pending async decryptions if tls_strp_msg_hold fails CVE-2025-68285 — kernel: libceph: fix potential use-after-free in have_mon_and_osd_map() CVE-2025-68287 — kernel: usb: dwc3: Fix race condition between concurrent dwc3_remove_requests() call paths

🔗 References (14)