AlmaLinux 10 : kernel (ALSA-2026:57251)

high Nessus Plugin ID 339386

Synopsis

The remote AlmaLinux host is missing one or more security updates.

Description

The remote AlmaLinux 10 host has packages installed that are affected by multiple vulnerabilities as referenced in the ALSA-2026:57251 advisory.

* kernel: drm/amdkfd: Fix out-of-bounds write in kfd_event_page_set() (CVE-2026-43206)
* kernel: drm/amdgpu: Refactor amdgpu_gem_va_ioctl for Handling Last Fence Update and Timeline Management v4 (CVE-2026-43237)
* kernel: crypto: pcrypt - Fix handling of MAY_BACKLOG requests (CVE-2026-43493)
* kernel: udf: fix partition descriptor append bookkeeping (CVE-2026-45991)
* kernel: drm/amdkfd: Fix watch_id bounds checking in debug address watch v2 (CVE-2026-45878)
* kernel: smb/client: fix out-of-bounds read in symlink_data() (CVE-2026-46185)
* kernel: sched/psi: fix race between file release and pressure write (CVE-2026-52991)
* kernel: drm/amdkfd: Fix buffer overflow in SDMA queue checkpoint/restore on GFX11 (CVE-2026-53143)
* kernel: drm/amd/display: Clamp VBIOS HDMI retimer register count to array size (CVE-2026-53136)
* kernel: drm/amd/display: Use krealloc_array() in dal_vector_reserve() (CVE-2026-53329)
* kernel: drm/i915/gem: Fix phys BO pread/pwrite with offset (CVE-2026-53356)
* kernel: drm/amdgpu: zero-initialize GART table on allocation (CVE-2026-53374)
* kernel: drm/i915: Fix potential UAF in TTM object purge (CVE-2026-63884)
* kernel: scsi: target: iscsi: Validate CHAP_R length before base64 decode (CVE-2026-63886)
* kernel: memfd: deny writeable mappings when implying SEAL_WRITE (CVE-2026-63952)
* kernel: scsi: target: iscsi: Fix CRC overread and double-free in iscsit_handle_text_cmd() (CVE-2026-63888)
* kernel: blk-mq: pop cached request if it is usable (CVE-2026-64017)
* kernel: drm/amdgpu: fix amdgpu_hmm_range_get_pages (CVE-2026-63879)
* kernel: drm/amd/display: Validate payload length and link_index in dc_process_dmub_aux_transfer_async (CVE-2026-64219)
* kernel: smb: client: fix double-free in SMB2_open() replay (CVE-2026-64382)
* kernel: smb: client: mask server-provided mode to 07777 in modefromsid (CVE-2026-64379)
* kernel: smb: client: fix query_info() replay double-free (CVE-2026-64386)
* kernel: posix-cpu-timers: Prevent UAF caused by non-leader exec() race (CVE-2026-64560)
* kernel: smb/client: handle overlapping allocated ranges in fallocate (CVE-2026-68388)


Bug Fix(es) and Enhancement(s):

* CLONE - AlmaLinux 10.2.z xfs: fix exchange-range reflink flag clearing issue with INO1_WRITTEN (JIRA:AlmaLinux-223954)
* vhost: reset the vring metadata cache on vring reconfiguration [almalinux-10.2.z] (JIRA:AlmaLinux-224545)
* cifs: periodic IO errors when rename races with lease break [almalinux-10.2.z] (JIRA:AlmaLinux-235459)
* cifs: smb1 directory listings from xp server returning EINVAL and EIO [almalinux-10.2.z] (JIRA:AlmaLinux-235812)

Tenable has extracted the preceding description block directly from the AlmaLinux security advisory.

Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.

Solution

Update the affected packages.

See Also

https://access.redhat.com/errata/RHSA-2026:57251

https://errata.almalinux.org/10/ALSA-2026-57251.html

Plugin Details

Severity: High

ID: 339386

File Name: alma_linux_ALSA-2026-57251.nasl

Version: 1.1

Type: Local

Published: 8/25/2026

Updated: 8/25/2026

Supported Sensors: Continuous Assessment, Nessus Agent, Tenable Cloud Security, Tenable Self-Hosted Container Security, Nessus

Risk Information

VPR

Risk Factor: High

Score: 7.9

Percentile: 99.36

CVSS v2

Risk Factor: Medium

Base Score: 6.8

Temporal Score: 5.3

Vector: CVSS2#AV:L/AC:L/Au:S/C:C/I:C/A:C

CVSS Score Source: CVE-2026-53143

CVSS v3

Risk Factor: High

Base Score: 7.8

Temporal Score: 7

Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Temporal Vector: CVSS:3.0/E:P/RL:O/RC:C

Vulnerability Information

CPE: cpe:/o:alma:linux:10, cpe:/o:alma:linux:10::appstream, cpe:/o:alma:linux:10::baseos, cpe:/o:alma:linux:10::highavailability, cpe:/o:alma:linux:10::nfv, cpe:/o:alma:linux:10::powertools, cpe:/o:alma:linux:10::realtime, cpe:/o:alma:linux:10::resilientstorage, cpe:/o:alma:linux:10::sap, cpe:/o:alma:linux:10::sap_hana, cpe:/o:alma:linux:10::supplementary, p-cpe:/a:alma:linux:kernel-64k-core, p-cpe:/a:alma:linux:kernel-64k-debug-core, p-cpe:/a:alma:linux:kernel-64k-debug-devel-matched, p-cpe:/a:alma:linux:kernel-64k-debug-devel, p-cpe:/a:alma:linux:kernel-64k-debug-modules-core, p-cpe:/a:alma:linux:kernel-64k-debug-modules-extra, p-cpe:/a:alma:linux:kernel-64k-debug-modules, p-cpe:/a:alma:linux:kernel-64k-debug, p-cpe:/a:alma:linux:kernel-64k-devel-matched, p-cpe:/a:alma:linux:kernel-64k-devel, p-cpe:/a:alma:linux:kernel-64k-modules-core, p-cpe:/a:alma:linux:kernel-64k-modules-extra, p-cpe:/a:alma:linux:kernel-64k-modules, p-cpe:/a:alma:linux:kernel-64k, p-cpe:/a:alma:linux:kernel-abi-stablelists, p-cpe:/a:alma:linux:kernel-core, p-cpe:/a:alma:linux:kernel-cross-headers, p-cpe:/a:alma:linux:kernel-debug-core, p-cpe:/a:alma:linux:kernel-debug-devel-matched, p-cpe:/a:alma:linux:kernel-debug-devel, p-cpe:/a:alma:linux:kernel-debug-modules-core, p-cpe:/a:alma:linux:kernel-debug-modules-extra, p-cpe:/a:alma:linux:kernel-debug-modules, p-cpe:/a:alma:linux:kernel-debug-uki-virt, p-cpe:/a:alma:linux:kernel-debug, p-cpe:/a:alma:linux:kernel-devel-matched, p-cpe:/a:alma:linux:kernel-devel, p-cpe:/a:alma:linux:kernel-headers, p-cpe:/a:alma:linux:kernel-modules-core, p-cpe:/a:alma:linux:kernel-modules-extra-matched, p-cpe:/a:alma:linux:kernel-modules-extra, p-cpe:/a:alma:linux:kernel-modules, p-cpe:/a:alma:linux:kernel-rt-64k-core, p-cpe:/a:alma:linux:kernel-rt-64k-debug-core, p-cpe:/a:alma:linux:kernel-rt-64k-debug-devel, p-cpe:/a:alma:linux:kernel-rt-64k-debug-modules-core, p-cpe:/a:alma:linux:kernel-rt-64k-debug-modules-extra, p-cpe:/a:alma:linux:kernel-rt-64k-debug-modules, p-cpe:/a:alma:linux:kernel-rt-64k-debug, p-cpe:/a:alma:linux:kernel-rt-64k-devel, p-cpe:/a:alma:linux:kernel-rt-64k-modules-core, p-cpe:/a:alma:linux:kernel-rt-64k-modules-extra, p-cpe:/a:alma:linux:kernel-rt-64k-modules, p-cpe:/a:alma:linux:kernel-rt-64k, p-cpe:/a:alma:linux:kernel-rt-core, p-cpe:/a:alma:linux:kernel-rt-debug-core, p-cpe:/a:alma:linux:kernel-rt-debug-devel, p-cpe:/a:alma:linux:kernel-rt-debug-modules-core, p-cpe:/a:alma:linux:kernel-rt-debug-modules-extra, p-cpe:/a:alma:linux:kernel-rt-debug-modules, p-cpe:/a:alma:linux:kernel-rt-debug, p-cpe:/a:alma:linux:kernel-rt-devel, p-cpe:/a:alma:linux:kernel-rt-modules-core, p-cpe:/a:alma:linux:kernel-rt-modules-extra, p-cpe:/a:alma:linux:kernel-rt-modules, p-cpe:/a:alma:linux:kernel-rt, p-cpe:/a:alma:linux:kernel-tools-libs-devel, p-cpe:/a:alma:linux:kernel-tools-libs, p-cpe:/a:alma:linux:kernel-tools, p-cpe:/a:alma:linux:kernel-uki-virt-addons, p-cpe:/a:alma:linux:kernel-uki-virt, p-cpe:/a:alma:linux:kernel-zfcpdump-core, p-cpe:/a:alma:linux:kernel-zfcpdump-devel-matched, p-cpe:/a:alma:linux:kernel-zfcpdump-devel, p-cpe:/a:alma:linux:kernel-zfcpdump-modules-core, p-cpe:/a:alma:linux:kernel-zfcpdump-modules-extra, p-cpe:/a:alma:linux:kernel-zfcpdump-modules, p-cpe:/a:alma:linux:kernel-zfcpdump, p-cpe:/a:alma:linux:kernel, p-cpe:/a:alma:linux:libperf, p-cpe:/a:alma:linux:perf, p-cpe:/a:alma:linux:python3-perf, p-cpe:/a:alma:linux:rtla, p-cpe:/a:alma:linux:rv

Required KB Items: Host/local_checks_enabled, Host/AlmaLinux/release, Host/AlmaLinux/rpm-list, Host/cpu

Exploit Available: true

Exploit Ease: Exploits are available

Patch Publication Date: 8/20/2026

Vulnerability Publication Date: 5/6/2026

Reference Information

CVE: CVE-2026-43206, CVE-2026-43237, CVE-2026-43493, CVE-2026-45878, CVE-2026-45991, CVE-2026-46185, CVE-2026-52991, CVE-2026-53136, CVE-2026-53143, CVE-2026-53329, CVE-2026-53356, CVE-2026-53374, CVE-2026-63879, CVE-2026-63884, CVE-2026-63886, CVE-2026-63888, CVE-2026-63952, CVE-2026-64017, CVE-2026-64219, CVE-2026-64379, CVE-2026-64382, CVE-2026-64386, CVE-2026-64560, CVE-2026-68388

CWE: 120, 125, 1284, 131, 1341, 266, 279, 364, 367, 681, 770, 787, 805, 823, 824, 825, 911

RHSA: 2026:57251