[ALSA-2026:2721] Moderate: kernel security update
Type:
security
Severity:
moderate
Release date:
2026-02-23
Description:
The kernel packages contain the Linux kernel, the core of any Linux operating system. Security Fix(es): * kernel: ntb_hw_switchtec: Fix shift-out-of-bounds in switchtec_ntb_mw_set_trans (CVE-2023-53034) * kernel: Linux kernel erofs: Use-After-Free due to device type mismatch (CVE-2025-38172) * kernel: smc: Fix use-after-free in __pnet_find_base_ndev() (CVE-2025-40064) * kernel: Bluetooth: ISO: Fix possible UAF on iso_conn_free (CVE-2025-40141) * kernel: Linux kernel ALSA USB audio driver: Buffer overflow leading to information disclosure and denial of service (CVE-2025-40269) * kernel: NFSv4/pNFS: Clear NFS_INO_LAYOUTCOMMIT in pnfs_mark_layout_stateid_invalid (CVE-2025-68349) * kernel: nvme-tcp: fix NULL pointer dereferences in nvmet_tcp_build_pdu_iovec (CVE-2026-22998) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Updated packages listed below:
Architecture Package Checksum
noarch kernel-abi-stablelists-6.12.0-124.38.1.el10_1.noarch.rpm 03d2a5269f3c4062b70c5c3a3ec1b2ad8fdc7a3425bafc37b0bb733c5e920b61
noarch kernel-doc-6.12.0-124.38.1.el10_1.noarch.rpm cd53ec22f6d48cf58650651d72047729c863dd3c759913cf6638aa2148c36ece
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.