https://access.redhat.com/security/updates/classification/#important
Severity: High
ID: 309659
File Name: redhat-RHSA-2026-9254.nasl
Version: 1.1
Type: Local
Agent: unix
Family: Red Hat Local Security Checks
Published: 4/22/2026
Updated: 4/22/2026
Supported Sensors: Agentless Assessment, Continuous Assessment, Frictionless Assessment Agent, Frictionless Assessment AWS, Frictionless Assessment Azure, Nessus Agent, Nessus
Risk Factor: Medium
Score: 6.7
Vendor Severity: Important
Risk Factor: High
Base Score: 7.6
Temporal Score: 6
Vector: CVSS2#AV:N/AC:H/Au:N/C:C/I:C/A:C
CVSS Score Source: CVE-2026-25646
Risk Factor: High
Base Score: 8.1
Temporal Score: 7.3
Vector: CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Temporal Vector: CVSS:3.0/E:P/RL:O/RC:C
Risk Factor: High
Base Score: 8.3
Threat Score: 7
Threat Vector: CVSS:4.0/E:P
Vector: CVSS:4.0/AV:N/AC:H/AT:P/PR:N/UI:N/VC:L/VI:L/VA:H/SC:N/SI:N/SA:N
CPE: p-cpe:/a:redhat:enterprise_linux:java-11-openjdk-static-libs-slowdebug, p-cpe:/a:redhat:enterprise_linux:java-11-openjdk-fastdebug, p-cpe:/a:redhat:enterprise_linux:java-11-openjdk-jmods, p-cpe:/a:redhat:enterprise_linux:java-11-openjdk-jmods-fastdebug, p-cpe:/a:redhat:enterprise_linux:java-11-openjdk-devel-fastdebug, p-cpe:/a:redhat:enterprise_linux:java-11-openjdk-javadoc-zip-debug, p-cpe:/a:redhat:enterprise_linux:java-11-openjdk-debug, p-cpe:/a:redhat:enterprise_linux:java-11-openjdk-src, p-cpe:/a:redhat:enterprise_linux:java-11-openjdk-devel, p-cpe:/a:redhat:enterprise_linux:java-11-openjdk-devel-slowdebug, p-cpe:/a:redhat:enterprise_linux:java-11-openjdk-slowdebug, p-cpe:/a:redhat:enterprise_linux:java-11-openjdk-static-libs, p-cpe:/a:redhat:enterprise_linux:java-11-openjdk-headless-fastdebug, cpe:/o:redhat:enterprise_linux:9, p-cpe:/a:redhat:enterprise_linux:java-11-openjdk-headless-debug, p-cpe:/a:redhat:enterprise_linux:java-11-openjdk-src-slowdebug, p-cpe:/a:redhat:enterprise_linux:java-11-openjdk-static-libs-fastdebug, p-cpe:/a:redhat:enterprise_linux:java-11-openjdk-static-libs-debug, cpe:/o:redhat:enterprise_linux:8, p-cpe:/a:redhat:enterprise_linux:java-11-openjdk-devel-debug, p-cpe:/a:redhat:enterprise_linux:java-11-openjdk, p-cpe:/a:redhat:enterprise_linux:java-11-openjdk-javadoc-debug, p-cpe:/a:redhat:enterprise_linux:java-11-openjdk-jmods-debug, p-cpe:/a:redhat:enterprise_linux:java-11-openjdk-demo-slowdebug, p-cpe:/a:redhat:enterprise_linux:java-11-openjdk-demo-debug, p-cpe:/a:redhat:enterprise_linux:java-11-openjdk-headless-slowdebug, p-cpe:/a:redhat:enterprise_linux:java-11-openjdk-headless, p-cpe:/a:redhat:enterprise_linux:java-11-openjdk-javadoc-zip, p-cpe:/a:redhat:enterprise_linux:java-11-openjdk-javadoc, cpe:/o:redhat:enterprise_linux:7, p-cpe:/a:redhat:enterprise_linux:java-11-openjdk-src-debug, p-cpe:/a:redhat:enterprise_linux:java-11-openjdk-src-fastdebug, p-cpe:/a:redhat:enterprise_linux:java-11-openjdk-demo-fastdebug, p-cpe:/a:redhat:enterprise_linux:java-11-openjdk-demo, p-cpe:/a:redhat:enterprise_linux:java-11-openjdk-jmods-slowdebug
Required KB Items: Host/local_checks_enabled, Host/RedHat/release, Host/RedHat/rpm-list, Host/cpu
Exploit Available: true
Exploit Ease: Exploits are available
Patch Publication Date: 4/22/2026
Vulnerability Publication Date: 12/3/2025
CVE: CVE-2025-66293, CVE-2026-22007, CVE-2026-22013, CVE-2026-22016, CVE-2026-22018, CVE-2026-22021, CVE-2026-22695, CVE-2026-22801, CVE-2026-23865, CVE-2026-25646, CVE-2026-26740, CVE-2026-33416, CVE-2026-33636, CVE-2026-34268, CVE-2026-34282