AlmaLinux 10 : kernel (ALSA-2026:77690)

medium Nessus Plugin ID 364483

Synopsis

The remote AlmaLinux host is missing one or more security updates.

Description

The remote AlmaLinux 10 host has packages installed that are affected by multiple vulnerabilities as referenced in the ALSA-2026:77690 advisory.

* kernel: ipvlan: Make the addrs_lock be per port (CVE-2026-23103)
* kernel: KVM: SEV: Require in-GHCB scratch area if GHCB v2+ is in use (CVE-2026-53360)
* kernel: vsock/virtio: fix zerocopy completion for multi-skb sends (CVE-2026-53365)
* kernel: NFSD: Fix SECINFO_NO_NAME decode error cleanup (CVE-2026-53398)
* kernel: vsock/virtio: bind uarg before filling zerocopy skb (CVE-2026-63970)
* kernel: igc: set tx buffer type for SMD frames (CVE-2026-64035)
* kernel: vsock/vmci: fix UAF when peer resets connection during handshake (CVE-2026-64115)
* kernel: SUNRPC: pin upper rpc_clnt across the TLS connect_worker (CVE-2026-72317)
* kernel: udp: fix potential use-after-free in tunnel segmentation (CVE-2026-74705)
* kernel: ipvlan: inherit needed_headroom and needed_tailroom from phy_dev (CVE-2026-74744)
* kernel: nfsd: defer vfree of compound ops to fix rpc_status UAF (CVE-2026-89690)
* kernel: nfsd: initialize copy-notify stateid before publishing it (CVE-2026-89669)
* kernel: svcrdma: Reject inline replies that overflow the pull-up buffer (CVE-2026-89530)
* kernel: nfsd: fix stale s2s_cp_stateids IDR entry for async COPY (CVE-2026-89676)
* kernel: nfsd: revoke copy-notify stateids before dropping their reference (CVE-2026-89663)
* kernel: nfsd: fix UAF in async copy cancel and shutdown (CVE-2026-89675)


Bug Fix(es) and Enhancement(s):

* mlxbf_bootctl: driver update to Linux v6.16 [Nvidia 10.2.z FEAT] (JIRA:AlmaLinux-212709)
* [GNR-D] missing interfaces tspll_cfg [almalinux-10.2] (JIRA:AlmaLinux-273805)

Tenable has extracted the preceding description block directly from the AlmaLinux security advisory.

Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.

Solution

Update the affected packages.

See Also

https://access.redhat.com/errata/RHSA-2026:77690

https://errata.almalinux.org/10/ALSA-2026-77690.html

Plugin Details

Severity: Medium

ID: 364483

File Name: alma_linux_ALSA-2026-77690.nasl

Version: 1.1

Type: Local

Published: 10/9/2026

Updated: 10/9/2026

Supported Sensors: Nessus Agent, Continuous Assessment, Nessus

Risk Information

VPR

Risk Factor: High

Score: 7.8

Percentile: 99.34

CVSS v2

Risk Factor: Medium

Base Score: 4.6

Temporal Score: 3.8

Vector: CVSS2#AV:L/AC:L/Au:S/C:N/I:N/A:C

CVSS Score Source: CVE-2026-53365

CVSS v3

Risk Factor: Medium

Base Score: 5.5

Temporal Score: 5.1

Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Temporal Vector: CVSS:3.0/E:F/RL:O/RC:C

Vulnerability Information

CPE: cpe:/o:alma:linux:10, cpe:/o:alma:linux:10::appstream, cpe:/o:alma:linux:10::baseos, cpe:/o:alma:linux:10::highavailability, cpe:/o:alma:linux:10::nfv, cpe:/o:alma:linux:10::powertools, cpe:/o:alma:linux:10::realtime, cpe:/o:alma:linux:10::resilientstorage, cpe:/o:alma:linux:10::sap, cpe:/o:alma:linux:10::sap_hana, cpe:/o:alma:linux:10::supplementary, p-cpe:/a:alma:linux:kernel-64k-core, p-cpe:/a:alma:linux:kernel-64k-debug-core, p-cpe:/a:alma:linux:kernel-64k-debug-devel-matched, p-cpe:/a:alma:linux:kernel-64k-debug-devel, p-cpe:/a:alma:linux:kernel-64k-debug-modules-core, p-cpe:/a:alma:linux:kernel-64k-debug-modules-extra, p-cpe:/a:alma:linux:kernel-64k-debug-modules, p-cpe:/a:alma:linux:kernel-64k-debug, p-cpe:/a:alma:linux:kernel-64k-devel-matched, p-cpe:/a:alma:linux:kernel-64k-devel, p-cpe:/a:alma:linux:kernel-64k-modules-core, p-cpe:/a:alma:linux:kernel-64k-modules-extra, p-cpe:/a:alma:linux:kernel-64k-modules, p-cpe:/a:alma:linux:kernel-64k, p-cpe:/a:alma:linux:kernel-abi-stablelists, p-cpe:/a:alma:linux:kernel-core, p-cpe:/a:alma:linux:kernel-cross-headers, p-cpe:/a:alma:linux:kernel-debug-core, p-cpe:/a:alma:linux:kernel-debug-devel-matched, p-cpe:/a:alma:linux:kernel-debug-devel, p-cpe:/a:alma:linux:kernel-debug-modules-core, p-cpe:/a:alma:linux:kernel-debug-modules-extra, p-cpe:/a:alma:linux:kernel-debug-modules, p-cpe:/a:alma:linux:kernel-debug-uki-virt, p-cpe:/a:alma:linux:kernel-debug, p-cpe:/a:alma:linux:kernel-devel-matched, p-cpe:/a:alma:linux:kernel-devel, p-cpe:/a:alma:linux:kernel-headers, p-cpe:/a:alma:linux:kernel-modules-core, p-cpe:/a:alma:linux:kernel-modules-extra-matched, p-cpe:/a:alma:linux:kernel-modules-extra, p-cpe:/a:alma:linux:kernel-modules, p-cpe:/a:alma:linux:kernel-rt-64k-core, p-cpe:/a:alma:linux:kernel-rt-64k-debug-core, p-cpe:/a:alma:linux:kernel-rt-64k-debug-devel, p-cpe:/a:alma:linux:kernel-rt-64k-debug-modules-core, p-cpe:/a:alma:linux:kernel-rt-64k-debug-modules-extra, p-cpe:/a:alma:linux:kernel-rt-64k-debug-modules, p-cpe:/a:alma:linux:kernel-rt-64k-debug, p-cpe:/a:alma:linux:kernel-rt-64k-devel, p-cpe:/a:alma:linux:kernel-rt-64k-modules-core, p-cpe:/a:alma:linux:kernel-rt-64k-modules-extra, p-cpe:/a:alma:linux:kernel-rt-64k-modules, p-cpe:/a:alma:linux:kernel-rt-64k, p-cpe:/a:alma:linux:kernel-rt-core, p-cpe:/a:alma:linux:kernel-rt-debug-core, p-cpe:/a:alma:linux:kernel-rt-debug-devel, p-cpe:/a:alma:linux:kernel-rt-debug-modules-core, p-cpe:/a:alma:linux:kernel-rt-debug-modules-extra, p-cpe:/a:alma:linux:kernel-rt-debug-modules, p-cpe:/a:alma:linux:kernel-rt-debug, p-cpe:/a:alma:linux:kernel-rt-devel, p-cpe:/a:alma:linux:kernel-rt-modules-core, p-cpe:/a:alma:linux:kernel-rt-modules-extra, p-cpe:/a:alma:linux:kernel-rt-modules, p-cpe:/a:alma:linux:kernel-rt, p-cpe:/a:alma:linux:kernel-tools-libs-devel, p-cpe:/a:alma:linux:kernel-tools-libs, p-cpe:/a:alma:linux:kernel-tools, p-cpe:/a:alma:linux:kernel-uki-virt-addons, p-cpe:/a:alma:linux:kernel-uki-virt, p-cpe:/a:alma:linux:kernel-zfcpdump-core, p-cpe:/a:alma:linux:kernel-zfcpdump-devel-matched, p-cpe:/a:alma:linux:kernel-zfcpdump-devel, p-cpe:/a:alma:linux:kernel-zfcpdump-modules-core, p-cpe:/a:alma:linux:kernel-zfcpdump-modules-extra, p-cpe:/a:alma:linux:kernel-zfcpdump-modules, p-cpe:/a:alma:linux:kernel-zfcpdump, p-cpe:/a:alma:linux:kernel, p-cpe:/a:alma:linux:libperf, p-cpe:/a:alma:linux:perf, p-cpe:/a:alma:linux:python3-perf, p-cpe:/a:alma:linux:rtla, p-cpe:/a:alma:linux:rv

Required KB Items: Host/local_checks_enabled, Host/cpu, Host/AlmaLinux/release, Host/AlmaLinux/rpm-list

Exploit Available: true

Exploit Ease: Exploits are available

Patch Publication Date: 10/7/2026

Vulnerability Publication Date: 2/4/2026

Reference Information

CVE: CVE-2026-23103, CVE-2026-53360, CVE-2026-53365, CVE-2026-53398, CVE-2026-63970, CVE-2026-64035, CVE-2026-64115, CVE-2026-72317, CVE-2026-74705, CVE-2026-74744, CVE-2026-89530, CVE-2026-89663, CVE-2026-89669, CVE-2026-89675, CVE-2026-89676, CVE-2026-89690

CWE: 124, 413, 416, 787, 824, 825, 909, 911

RHSA: 2026:77690