Language:
https://access.redhat.com/security/updates/classification/#important
https://bugzilla.redhat.com/show_bug.cgi?id=2383404
https://bugzilla.redhat.com/show_bug.cgi?id=2383487
https://bugzilla.redhat.com/show_bug.cgi?id=2394601
https://bugzilla.redhat.com/show_bug.cgi?id=2395805
https://bugzilla.redhat.com/show_bug.cgi?id=2404121
https://bugzilla.redhat.com/show_bug.cgi?id=2419837
https://bugzilla.redhat.com/show_bug.cgi?id=2420347
https://bugzilla.redhat.com/show_bug.cgi?id=2424880
https://bugzilla.redhat.com/show_bug.cgi?id=2436791
Severity: High
ID: 300840
File Name: redhat-RHSA-2026-3685.nasl
Version: 1.1
Type: local
Agent: unix
Family: Red Hat Local Security Checks
Published: 3/5/2026
Updated: 3/5/2026
Supported Sensors: Agentless Assessment, Continuous Assessment, Frictionless Assessment Agent, Frictionless Assessment AWS, Frictionless Assessment Azure, Nessus Agent, Nessus
Risk Factor: Medium
Score: 6.7
Vendor Severity: Important
Risk Factor: Medium
Base Score: 6.8
Temporal Score: 5
Vector: CVSS2#AV:L/AC:L/Au:S/C:C/I:C/A:C
CVSS Score Source: CVE-2025-38459
Risk Factor: High
Base Score: 7.8
Temporal Score: 6.8
Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Temporal Vector: CVSS:3.0/E:U/RL:O/RC:C
CPE: cpe:/o:redhat:rhel_els:7, p-cpe:/a:redhat:enterprise_linux:bpftool, p-cpe:/a:redhat:enterprise_linux:kernel-tools, cpe:/o:redhat:enterprise_linux:7, p-cpe:/a:redhat:enterprise_linux:kernel-devel, p-cpe:/a:redhat:enterprise_linux:kernel-tools-libs-devel, p-cpe:/a:redhat:enterprise_linux:kernel-debug-devel, p-cpe:/a:redhat:enterprise_linux:kernel-kdump, p-cpe:/a:redhat:enterprise_linux:kernel-bootwrapper, p-cpe:/a:redhat:enterprise_linux:kernel-tools-libs, p-cpe:/a:redhat:enterprise_linux:python-perf, p-cpe:/a:redhat:enterprise_linux:kernel-kdump-devel, p-cpe:/a:redhat:enterprise_linux:kernel, p-cpe:/a:redhat:enterprise_linux:kernel-debug, p-cpe:/a:redhat:enterprise_linux:perf
Required KB Items: Host/local_checks_enabled, Host/RedHat/release, Host/RedHat/rpm-list, Host/cpu
Exploit Ease: No known exploits are available
Patch Publication Date: 3/3/2026
Vulnerability Publication Date: 7/21/2021
CVE: CVE-2022-50673, CVE-2025-38415, CVE-2025-38459, CVE-2025-39760, CVE-2025-39817, CVE-2025-39993, CVE-2025-40271, CVE-2025-68349, CVE-2026-23074