AlmaLinux 10 : kernel (ALSA-2026:71233)

medium Nessus Plugin ID 362977

Synopsis

The remote AlmaLinux host is missing one or more security updates.

Description

The remote AlmaLinux 10 host has packages installed that are affected by multiple vulnerabilities as referenced in the ALSA-2026:71233 advisory.

* kernel: block: zero non-PI portion of auto integrity buffer (CVE-2026-23007)
* kernel: netfilter: ebtables SNAT target writes to shared memory pages during ARP hardware address rewrite (CVE-2026-53266)
* kernel: mac802154: llsec: add skb_cow_data() before in-place crypto (CVE-2026-63831)
* kernel: blk-cgroup: fix UAF in __blkcg_rstat_flush() (CVE-2026-63802)
* kernel: block: don't overwrite bip_vcnt in bio_integrity_copy_user() (CVE-2026-64053)
* kernel: smb: client: fix double-free in SMB2_flush() replay (CVE-2026-64383)
* kernel: sctp: don't free the ASCONF's own transport in DEL-IP processing (CVE-2026-64564)
* kernel: ALSA: timer: drain a slave's callback before its master detaches it (CVE-2026-68201)
* kernel: selinux: check connect-related permissions on TCP Fast Open (CVE-2026-72243)
* kernel: netfilter: nf_conntrack_sip: widen NAT rewrite delta to s32 in sip_help_tcp() (CVE-2026-74569)
* kernel: xfrm: ah6: validate routing header segments_left (CVE-2026-80844)
* kernel: net: tun: bound receive headroom (CVE-2026-81000)
* kernel: scsi: qla2xxx: Bound rsp_info_len to avoid OOB sense-data read (CVE-2026-89846)


Bug Fix(es) and Enhancement(s):

* kernel module .ko ELF files with non-zero sh_addr section addresses [almalinux-10.2.z] (JIRA:AlmaLinux-159298)
* sctp: prevent peer transport count overflow [almalinux-10.2.z] (JIRA:AlmaLinux-216247)
* [AlmaLinux 10] bnxt_en: RX queue restart failed: err=-95 [almalinux-10.2.z] (JIRA:AlmaLinux-247283)
* RHIVOS - S32G: backport missing fixes to 10.2 (JIRA:AlmaLinux-259788)

Tenable has extracted the preceding description block directly from the AlmaLinux security advisory.

Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.

Solution

Update the affected packages.

See Also

https://access.redhat.com/errata/RHSA-2026:71233

https://errata.almalinux.org/10/ALSA-2026-71233.html

Plugin Details

Severity: Medium

ID: 362977

File Name: alma_linux_ALSA-2026-71233.nasl

Version: 1.1

Type: Local

Published: 10/5/2026

Updated: 10/5/2026

Supported Sensors: Nessus Agent, Continuous Assessment, Nessus

Risk Information

VPR

Risk Factor: Critical

Score: 9.3

Percentile: 99.82

CVSS v2

Risk Factor: Medium

Base Score: 4.6

Temporal Score: 3.8

Vector: CVSS2#AV:L/AC:L/Au:S/C:N/I:N/A:C

CVSS Score Source: CVE-2026-23007

CVSS v3

Risk Factor: Medium

Base Score: 5.5

Temporal Score: 5.1

Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Temporal Vector: CVSS:3.0/E:F/RL:O/RC:C

Vulnerability Information

CPE: cpe:/o:alma:linux:10, cpe:/o:alma:linux:10::appstream, cpe:/o:alma:linux:10::baseos, cpe:/o:alma:linux:10::highavailability, cpe:/o:alma:linux:10::nfv, cpe:/o:alma:linux:10::powertools, cpe:/o:alma:linux:10::realtime, cpe:/o:alma:linux:10::resilientstorage, cpe:/o:alma:linux:10::sap, cpe:/o:alma:linux:10::sap_hana, cpe:/o:alma:linux:10::supplementary, p-cpe:/a:alma:linux:kernel-64k-debug-devel-matched, p-cpe:/a:alma:linux:kernel-64k-debug-devel, p-cpe:/a:alma:linux:kernel-64k-devel-matched, p-cpe:/a:alma:linux:kernel-64k-devel, p-cpe:/a:alma:linux:kernel-debug-devel-matched, p-cpe:/a:alma:linux:kernel-debug-devel, p-cpe:/a:alma:linux:kernel-devel-matched, p-cpe:/a:alma:linux:kernel-devel, p-cpe:/a:alma:linux:kernel-headers, p-cpe:/a:alma:linux:kernel-zfcpdump-devel-matched, p-cpe:/a:alma:linux:kernel-zfcpdump-devel, p-cpe:/a:alma:linux:perf, p-cpe:/a:alma:linux:python3-perf

Required KB Items: Host/local_checks_enabled, Host/cpu, Host/AlmaLinux/release, Host/AlmaLinux/rpm-list

Exploit Available: true

Exploit Ease: Exploits are available

Patch Publication Date: 9/24/2026

Vulnerability Publication Date: 1/25/2026

CISA Known Exploited Vulnerability Due Dates: 9/21/2026

Reference Information

CVE: CVE-2026-23007, CVE-2026-53266, CVE-2026-63802, CVE-2026-63831, CVE-2026-64053, CVE-2026-64383, CVE-2026-64564, CVE-2026-68201, CVE-2026-72243, CVE-2026-74569, CVE-2026-80844, CVE-2026-81000, CVE-2026-89846

CWE: 125, 1341, 551, 787, 805, 820, 825, 908

RHSA: 2026:71233