The kernel packages contain the Linux kernel, the core of any Linux operating system.
Security Fix(es):
kernel: fs/smb/client: fix out-of-bounds read in cifssanitizeprepath (CVE-2026-43112)
kernel: net: mana: Fix double destroy_workqueue on service rescan PCI path (CVE-2026-43276)
kernel: Linux kernel: Use-After-Free in net/gro due to improper handling of zerocopy skbs (CVE-2026-46323)
kernel: xfrm: defensively unhash xfrm_state lists in __xfrmstatedelete (CVE-2026-46116)
kernel: sctp: revalidate list cursor after sctpsendmsgtoasoc() in SCTPSENDALL (CVE-2026-46227)
kernel: drm/gem: Fix inconsistent plane dimension calculation in drmgemfbinitwith_funcs() (CVE-2026-46209)
kernel: smb/client: fix out-of-bounds read in smb2compoundop() (CVE-2026-46155)
kernel: netfilter: nftinner: Fix IPv6 innerthoff desync (CVE-2026-46244)
kernel: procfs: fix missing RCU protection when reading realparent in dotask_stat() (CVE-2026-46259)
kernel: Arm Processors: Privilege escalation or information disclosure via writes to higher exception level resources (CVE-2025-10263)
kernel: KVM: arm64: vgic-its: Drop the translation cache reference only for the erased entry (CVE-2026-46316)
Bug Fix(es) and Enhancement(s):
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.