Amazon Linux 2023:bpftool6.18、kernel6.18、kernel6.18-devel (ALAS2023-2026-1866)

high Nessus Plugin ID 322020

概要

遠端 Amazon Linux 2023 主機缺少一個安全性更新。

說明

因此,會受到 ALAS2023-2026-1866 公告中所提及的多個弱點影響。

在 Linux 核心中,下列弱點已解決:

bpf:修正 cgroup_storage_get_next_key() 中的清單結尾偵測 (CVE-2026-45838)

在 Linux 核心中,下列弱點已解決:

bpf:拒絕 bpf_core_parse_spec() 中的負 CO-RE 存取子索引 (CVE-2026-45839)

在 Linux 核心中,下列弱點已解決:

openvswitch:上限 upcall PID 陣列大小和預先大小 vport 回覆 (CVE-2026-45840)

在 Linux 核心中,下列弱點已解決:

netfilter: nfnetlink_osf:修正 OSF_WSS_MODULO 中的除以零 (CVE-2026-45841)

在 Linux 核心中,下列弱點已解決:

slip:拒絕在沒有 rstate 陣列 (CVE-2026-45842) 的執行個體上接收 VJ 封包

在 Linux 核心中,下列弱點已解決:

slip:bound decode() 讀取壓縮的封包長度 (CVE-2026-45843)

在 Linux 核心中,下列弱點已解決:

netfilter: arp_tables:修正 IEEE1394 ARP 負載剖析 (CVE-2026-45844)

在 Linux 核心中,下列弱點已解決:

bareudp:修正 bareudp_fill_metadata_dst() 中的 NULL 指標解除參照 (CVE-2026-45846)

在 Linux 核心中,下列弱點已解決:

sched_ext:在 cgroup setters (CVE-2026-46154) 中scx_cgroup_ops_rwsem下讀取scx_root

在 Linux 核心中,下列弱點已解決:

btrfs:修正 TOCTOU slot_count可能導致資訊洩露 (CVE-2026-46159) 的 btrfs_ioctl_space_info()

在 Linux 核心中,下列弱點已解決:

btrfs:修正 create_space_info_sub_group() 錯誤路徑中的雙重釋放 (CVE-2026-46164)

在 Linux 核心中,下列弱點已解決:

VSOCK/virtio:修正 tap skb 中非線性緩衝區的空負載 (CVE-2026-46207)

在 Linux 核心中,下列弱點已解決:

drm/gem:修正 drm_gem_fb_init_with_funcs()CVE-2026-46209 () 中不一致的平面尺寸計算

在 Linux 核心中,下列弱點已解決:

vsock/virtio:修正傳輸不相符時的接受佇列計數洩漏 (CVE-2026-46214)

在 Linux 核心中,下列弱點已解決:

drm:在 change_handle (CVE-2026-46215) 中進行主要交換之前,將舊句柄設定為 NULL

在 Linux 核心中,下列弱點已解決:

sctp:在 SCTP_SENDALL (CVE-2026-46227) 中 sctp_sendmsg_to_asoc() 之後重新驗證清單游標

在 Linux 核心中,下列弱點已解決:

VSOCK:修正緩衝區大小限制順序 (CVE-2026-46234)

在 Linux 核心中,下列弱點已解決:

media: rc: xbox_remote:注意 DMA 限制 (CVE-2026-46236)

在 Linux 核心中,下列弱點已解決:

eventpoll:修正ep_remove結構 eventpoll / 結構檔案 UAF (CVE-2026-46242)

在 Linux 核心中,下列弱點已解決:

io-wq:檢查前置任務是否在 io_wq_remove_pending() (CVE-2026-46274) 中雜湊處理

在 Linux 核心中,下列弱點已解決:

netfilter: nf_tables:將 list_del_rcu 用於網路連結鉤子 (CVE-2026-46324)

在 Linux 核心中,下列弱點已解決:

netfilter: xt_policy:修正嚴格模式傳入原則比對 (CVE-2026-52920)

在 Linux 核心中,下列弱點已解決:

vrf:修正從 VRF 移除連接埠時的潛在 NPD (CVE-2026-52925)

在 Linux 核心中,下列弱點已解決:

crypto: jitterentropy - 將長期持有的微調鎖替換為互斥 (CVE-2026-52936)

在 Linux 核心中,下列弱點已解決:

iommu/vt-d:修正由於超出範圍存取 (CVE-2026-52953) 而導致的 oops

在 Linux 核心中,下列弱點已解決:

libceph:處理 decode_choose_args() 中的 rbtree 插入錯誤 (CVE-2026-52954)

在 Linux 核心中,下列弱點已解決:

libceph:修正 crush_decode() 中潛在的越界存取 (CVE-2026-52955)

在 Linux 核心中,下列弱點已解決:

libceph:修正 decode_choose_args() 中潛在的 null-ptr-deref (CVE-2026-52957)

在 Linux 核心中,下列弱點已解決:

libceph:修正 osdmap_decode() 中潛在的越界存取 (CVE-2026-52958)

在 Linux 核心中,下列弱點已解決:

virt: sev-guest:不要在清理路徑中使用主機控制的頁面順序 (CVE-2026-52959)

在 Linux 核心中,下列弱點已解決:

ceph:修正 __ceph_build_xattrs_blob() 中由於 blob 大小過時而造成的BUG_ON (CVE-2026-52961)

在 Linux 核心中,下列弱點已解決:

Ceph:修正 __ceph_setxattr()CVE-2026-52962 () 中的緩衝區洩漏

在 Linux 核心中,下列弱點已解決:

SMB/用戶端:修正 symlink_data()CVE-2026-52967 () 中可能的無限迴圈和 OOB 讀取

在 Linux 核心中,下列弱點已解決:

KVM:拒絕 kvm_reset_dirty_gfn() 中的包裝偏移 (CVE-2026-52969)

在 Linux 核心中,下列弱點已解決:

netfilter: nft_ct:修正 obj eval (CVE-2026-52970) 中缺少的預期 put

在 Linux 核心中,下列弱點已解決:

crypto: af_alg - 將 AEAD AD 長度限制為 0x80000000 (CVE-2026-52972)

在 Linux 核心中,下列弱點已解決:

futex:刪除私有預設雜湊配置的CLONE_THREAD要求 (CVE-2026-52973)

在 Linux 核心中,下列弱點已解決:

net: tls:修正卸載 RX 設定失敗時的 strparser 錨點 skb 洩漏 (CVE-2026-52974)

在 Linux 核心中,下列弱點已解決:

bonding: 3ad:針對 port->aggregator (CVE-2026-52975) 實施適當的 RCU 規則

在 Linux 核心中,下列弱點已解決:

futex:在訊號/逾時喚醒期間,防止在 requeue-PI 中鎖定 (CVE-2026-52977)

在 Linux 核心中,下列弱點已解決:

net: psp:需要 dev-set 和 key-rotate (CVE-2026-52978) 的管理員權限

在 Linux 核心中,下列弱點已解決:

net: psp:建立 assoc (CVE-2026-52979) 時檢查裝置是否取消註冊

在 Linux 核心中,下列弱點已解決:

sched/fair:初始化分叉實體時清除rel_deadline (CVE-2026-52980)

在 Linux 核心中,下列弱點已解決:

neigh:讓neigh_xmit取得 skb 所有權 (CVE-2026-52981)

在 Linux 核心中,下列弱點已解決:

net/sched: netem:修正佇列限制檢查以包含重新排序的封包

netem_enqueue() 中的佇列限制檢查使用 q->t_len,它僅計算內部 tfifo 中的封包。
透過重新排序路徑 (__qdisc_enqueue_head) 放置在 sch->q 中的封包不會被計算在內,因此重新排序時允許總佇列佔用率超過 sch->limit。

在限制檢查中包括 sch->q.qlen。(CVE-2026-52984)

在 Linux 核心中,下列弱點已解決:

netdevsim:在虛擬sk_buff中初始化結構 iphdr 的零 (CVE-2026-52985)

在 Linux 核心中,下列弱點已解決:

netfilter: nf_conntrack_sip:不要使用 simple_strtoul (CVE-2026-52986)

在 Linux 核心中,下列弱點已解決:

fsnotify:修正 fsnotify_recalc_mask()CVE-2026-52990 () 中的 inode 參照洩漏

在 Linux 核心中,下列弱點已解決:

sched/psi:修正檔案釋放和壓力寫入 (CVE-2026-52991) 之間的爭用

在 Linux 核心中,下列弱點已解決:

tipc:修正 tipc_buf_append() 中的雙重釋放 (CVE-2026-52993)

在 Linux 核心中,下列弱點已解決:

vsock/virtio:修正MSG_ZEROCOPY固定頁面帳戶處理 (CVE-2026-52994)

在 Linux 核心中,下列弱點已解決:

net/rds:在將項目資訊交給訪客之前,每個項目的資訊緩衝區為零 (CVE-2026-52995)

在 Linux 核心中,下列弱點已解決:

net/sched: sch_dualpi2:清空 dualpi2_change() 中的 C 佇列和 L 佇列 (CVE-2026-52997)

在 Linux 核心中,下列弱點已解決:

netfilter: nfnetlink_osf:修正 ttl 檢查 () 中潛在的空取消參照 (CVE-2026-52998)

在 Linux 核心中,下列弱點已解決:

netfilter: nfnetlink_osf:修正選項比對 (CVE-2026-52999) 的越界讀取

在 Linux 核心中,下列弱點已解決:

netfilter: nat:使用 kfree_rcu 釋放操作 (CVE-2026-53000)

在 Linux 核心中,下列弱點已解決:

netfilter: xtables:將多個比對項限制為 inet 系列 (CVE-2026-53001)

在 Linux 核心中,下列弱點已解決:

netfilter: conntrack:移除 sprintf 用法 (CVE-2026-53002)

在 Linux 核心中,下列弱點已解決:

pppoe:丟棄 PFC 框架 (CVE-2026-53003)

在 Linux 核心中,下列弱點已解決:

sctp:修正 sctp_getsockopt_peer_auth_chunks (CVE-2026-53004) 中對使用者空間的 OOB 寫入

在 Linux 核心中,下列弱點已解決:

ipv6:修正 icmpv6_rcv()CVE-2026-53006 () 中可能的 UAF

在 Linux 核心中,下列弱點已解決:

ice:修正 skb tx_buf的雙重釋放 (CVE-2026-53009)

在 Linux 核心中,下列弱點已解決:

net/sched: taprio:在排程切換 (CVE-2026-53011) 上修正 advance_sched() 中的釋放後使用

在 Linux 核心中,下列弱點已解決:

nexthop:修正參照 IPv4 nexthop (CVE-2026-53012) 的 IPv6 路由

在 Linux 核心中,下列弱點已解決:

macvlan:修正 macvlan_get_size() 未為IFLA_MACVLAN_BC_CUTOFF保留空間的問題 (CVE-2026-53013)

在 Linux 核心中,下列弱點已解決:

net/sched: act_mirred:修正錯誤的裝置以進行mac_header_xmit簽入 tcf_blockcast_redir (CVE-2026-53014)

在 Linux 核心中,下列弱點已解決:

erofs:將 LCN 統一為 u64,適用於 32 位元平台 (CVE-2026-53015)

在 Linux 核心中,下列弱點已解決:

scsi: target: core:修正 UNMAP 邊界檢查中的整數溢位 (CVE-2026-53021)

在 Linux 核心中,下列弱點已解決:

fs/ntfs3:在 UTF-8 轉換後終止快取的磁碟區標籤 (CVE-2026-53023)

在 Linux 核心中,下列弱點已解決:

NFSD:修正 nfsd4_add_rdaccess_to_wrdeleg 中的nfs4_file存取額外計數 (CVE-2026-53026)

在 Linux 核心中,下列弱點已解決:

bpf:驗證 arena_alloc_pages() 中的node_id (CVE-2026-53031)

在 Linux 核心中,下列弱點已解決:

bpf:修正 map_kptr_match_type 中純量 regs 的 NULL 解除參照 (CVE-2026-53032)

在 Linux 核心中,下列弱點已解決:

bpf, sockmap:對 af_unix iter (CVE-2026-53033) 進行狀態鎖定

在 Linux 核心中,下列弱點已解決:

bpf, sockmap:修正原型更新 (CVE-2026-53034) 中的 null-ptr-deref af_unix

在 Linux 核心中,下列弱點已解決:

bpf, sockmap:修正 af_unix iter 鎖死 (CVE-2026-53035)

在 Linux 核心中,下列弱點已解決:

bpf, arm64: 修正帶正負號範圍檢查 (CVE-2026-53036) check_imm中的差一錯誤

在 Linux 核心中,下列弱點已解決:

HID: usbhid:修正 hid_post_reset() 中的鎖死 (CVE-2026-53037)

在 Linux 核心中,下列弱點已解決:

ima_fs:為不支援的雜湊演算法正確建立 securityfs 檔案 (CVE-2026-53038)

在 Linux 核心中,下列弱點已解決:

efi/capsule-loader:修正 phys 陣列重新分配 (CVE-2026-53047) 中不正確的 sizeof

在 Linux 核心中,下列弱點已解決:

quota:透過停用配額修正 dquot_scan_active() 的爭用 (CVE-2026-53050)

在 Linux 核心中,下列弱點已解決:

iommu/amd:修正 clone_alias() 以使用原始裝置的 devid (CVE-2026-53053)

在 Linux 核心中,下列弱點已解決:

dm log:修正由於 region_count 溢位而導致的越界寫入 (CVE-2026-53059)

在 Linux 核心中,下列弱點已解決:

dm 快取中繼資料:修正中繼資料中止重試時的記憶體洩漏 (CVE-2026-53060)

在 Linux 核心中,下列弱點已解決:

dm 快取:修正直通模式切換中的髒映射檢查 (CVE-2026-53061)

在 Linux 核心中,下列弱點已解決:

dm 快取原則 smq:修正快取區塊無效時遺失的鎖定 (CVE-2026-53062)

在 Linux 核心中,下列弱點已解決:

dm 快取:修正直通模式下的寫入懸置 (CVE-2026-53063)

在 Linux 核心中,下列弱點已解決:

dm 快取:在直通模式下修正並發寫入的 null-deref (CVE-2026-53064)

在 Linux 核心中,下列弱點已解決:

PCI: 端點:pci-ep-msi:修正錯誤解除並防止重複配置 (CVE-2026-53067)

在 Linux 核心中,下列弱點已解決:

net, bpf:修正 xdp_master_redirect() 中對關閉主機 (CVE-2026-53069) 的 null-ptr-deref

在 Linux 核心中,下列弱點已解決:

bpf:拒絕 bpf_prog_test_run_skb (CVE-2026-53074) 中的短 IPv4/IPv6 輸入

在 Linux 核心中,下列弱點已解決:

ppp:需要在未連接的 ioctl 的目標 netn 中CAP_NET_ADMIN (CVE-2026-53075)

在 Linux 核心中,下列弱點已解決:

bpf:修正 pcpu_init_value (CVE-2026-53076) 中的 OOB

在 Linux 核心中,下列弱點已解決:

net/rds:將 RDS/IB 的使用限制在初始網路命名空間 (CVE-2026-53077)

在 Linux 核心中,下列弱點已解決:

bpf:對BPF_ADD_CONST純量強制執行 regsafe 基底 ID 一致性 (CVE-2026-53081)

在 Linux 核心中,下列弱點已解決:

bpf:修正 bpf_fd_array_map_clear()CVE-2026-53083 () 中的 RCU 停止

在 Linux 核心中,下列弱點已解決:

bpf:從task_vma迭代器傳回 VMA 快照 (CVE-2026-53084)

在 Linux 核心中,下列弱點已解決:

bpf:修正開放編碼 task_vma 迭代器中的 mm 生命週期 (CVE-2026-53085)

在 Linux 核心中,下列弱點已解決:

bpf:修正 src_reg == dst_reg (CVE-2026-53092) 時連結的 reg delta 追蹤

在 Linux 核心中,下列弱點已解決:

bpf:修正常數致盲後過時的 offload->prog 指標 (CVE-2026-53094)

在 Linux 核心中,下列弱點已解決:

bpf:透過 freplace (CVE-2026-53095) 修正濫用 kprobe_write_ctx

在 Linux 核心中,下列弱點已解決:

bpf:在 dev_map_redirect_multi() SKB 路徑中使用 RCU 安全反覆運算 (CVE-2026-53096)

在 Linux 核心中,下列弱點已解決:

s390/bpf:零擴充 bpf prog 傳回值和 kfunc 引數 (CVE-2026-53110)

在 Linux 核心中,下列弱點已解決:

bpf: test_run:修正 bpf_lwt_xmit_push_encap (CVE-2026-53111) 中的 null 指標解除參照問題

在 Linux 核心中,下列弱點已解決:

perf/amd/ibs:避免從 IBS NMI 處理常式CVE-2026-53114呼叫 perf_allow_kernel() ()

在 Linux 核心中,下列弱點已解決:

匯流排:fsl-mc:使用通用driver_override基礎架構 (CVE-2026-53115)

在 Linux 核心中,下列弱點已解決:

平台/WMI:使用通用driver_override基礎架構 (CVE-2026-53119)

在 Linux 核心中,下列弱點已解決:

PCI:使用通用driver_override基礎架構 (CVE-2026-53120)

在 Linux 核心中,下列弱點已解決:

amd-pstate:修正 amd_pstate_epp_cpu_init() 中的記憶體洩漏 (CVE-2026-53121)

在 Linux 核心中,下列弱點已解決:

Btrfs:修正使用 flushoncommit (CVE-2026-53122) 時 reflink 和事務提交之間的鎖死

在 Linux 核心中,下列弱點已解決:

md:在暫停前喚醒 raid456 重塑服務員 (CVE-2026-53123)

在 Linux 核心中,下列弱點已解決:

md:修正 array_state=clear sysfs 鎖死 (CVE-2026-53125)

在 Linux 核心中,下列弱點已解決:

blk-cgroup:修正 blkcg_maybe_throttle_current() 中的磁碟參照洩漏 (CVE-2026-53126)

在 Linux 核心中,下列弱點已解決:

drbd:平衡 drbd_adm_dump_devices() 中的 RCU 呼叫 (CVE-2026-53128)

在 Linux 核心中,下列弱點已解決:

fs/mbcache:在破壞快取之前取消壓縮工作 (CVE-2026-53129)

在 Linux 核心中,下列弱點已解決:

iommu/vt-d:避免 NULL 指標解除參照或參照計數損毀

提交 60f030f7418d (iommu/vt-d:避免在 WARN_ON_ONCE)後使用 NULL)在不太可能的情況下部分修正了 NULL 指標解除參照。

如果在dev_pasids清單中找不到dev_pasid,則它會保持 NULL。不過,拆卸作業會無條件執行,這會導致 NULL 指標解除參照或參照計數損毀。

如果網域從未附加至此 IOMMU,則資訊會為 NULL,這會在檢查 --info->refcnt 時造成立即取消參照。

即使資訊不是 NULL,在未移除有效 PASID 的情況下遞減參照計數也可能會使計數不平衡。這可能會導致參照計數過早下降為 0,進而可能導致共用網域的其餘作用中裝置出現釋放後使用。

如果dev_pasid為 NULL,請在執行拆卸作業之前提前返回來修正它。

AI 審查發現的問題,並由 Kevin Tian 提出。https://sashiko.dev/#/patchset/20260421031347.1408890-1-zhenzhong.duan%40intel.com (CVE-2026-53281)

在 Linux 核心中,下列弱點已解決:

x86/kexec:即使對於非 kjump kexec,也推送 kjump 傳回位址 (CVE-2026-53282)

在 Linux 核心中,下列弱點已解決:

iommu/amd: __rlookup_amd_iommu() 中的邊界檢查 devid (CVE-2026-53283)

在 Linux 核心中,下列弱點已解決:

btrfs:僅在寫入成功後釋放髒頁面 IO 樹狀結構 (CVE-2026-53284)

在 Linux 核心中,下列弱點已解決:

audit:修正 CAPSET 記錄中不正確的可繼承功能

__audit_log_capset() 會記錄由於複製貼上錯誤而設定到可繼承欄位中的有效功能。因此,每個 CAPSET auditrecord 都會以 cap_effective 而不是 cap_inheritable 的值報告cap_pi(進程可繼承)。

這會無訊息地損毀用於合規性和鑑識分析的稽核資料:修改可繼承功能以準備特權提升執行人員的攻擊者,會在稽核追蹤中遮罩變更。

自 2008 年首次引入 CAPSETaudit 記錄以來,該錯誤就一直存在。(CVE-2026-53287)

在 Linux 核心中,下列弱點已解決:

arm64:為早期核心映射保留額外的頁面 (CVE-2026-53288)

在 Linux 核心中,下列弱點已解決:

ice:修正 ice_reset_all_vfs() 中的 NULL 指標解除參照 (CVE-2026-53289)

在 Linux 核心中,下列弱點已解決:

mailbox:新增通道陣列的健全性檢查

如果沒有連結至 mailboxcontroller 的通道陣列,則正常失敗。否則,稍後的取消參照會導致可能看不到的 OOPS,因為信箱控制器可能會每年實例化。刪除解釋顯而易見的事情的評論。(CVE-2026-53295)

在 Linux 核心中,下列弱點已解決:

scsi:sg:解決開啟 /dev/sgX 時的軟鎖定問題 (CVE-2026-53304)

在 Linux 核心中,下列弱點已解決:

pinctrl: pinconf-generic: 完全驗證 'pinmux' 屬性 (CVE-2026-53307)

在 Linux 核心中,下列弱點已解決:

padata:將 CPU 離線回呼放在 ONLINE 區段以允許失敗

syzbot 報告了以下警告:

CPU1WARNING 的 DEAD 回呼錯誤:kernel/cpu.c:1463 在 _cpu_down+0x759/0x1020 kernel/cpu.c:1463, CPU#0:
syz.0.1960/14614

在提交 4ae12d8bd9a8 (合併標籤 'kbuild-fixes-7.0-2' of git://git.kernel.org/pub/scm/linux/kernel/git/kbuild/linux)時,TGLX 追蹤到 padata_cpu_dead(),因為它是唯一傳回錯誤的子CPUHP_TEARDOWN_CPU回呼。

在熱插拔狀態下不允許失敗CPUHP_TEARDOWN_CPUso將 CPU 離線回呼移至可能失敗的 ONLINE 區段。(CVE-2026-53314)

在 Linux 核心中,下列弱點已解決:

io_uring/napi:上限busy_poll_to 10 毫秒

目前,如果未找到任何事件,則允許 napi 輪詢的最大時間量沒有上限,這可能會導致 kernelcomplaints 對任務陷入困境,因為該迴圈中沒有有條件的重新排程完成。

只需將其總計限制為 10 毫秒,這已經遠遠高於任何可以獲得任何好處的理智值,但又低到足以引發先發制人的投訴。
(CVE-2026-53321)

在 Linux 核心中,下列弱點已解決:

net: dsa:從導管 ethtool ops (CVE-2026-53323) 中移除多餘的 netdev_lock_ops()

在 Linux 核心中,下列弱點已解決:

RDMA/core:首選 NLA_NUL_STRING

這些屬性會評估為 c-string (傳遞至 strcmp),butNLA_STRING不會檢查是否存在 \0 終止字元。

這需要切換到 nla_strcmp() 並需要調整 printf fmtspecifier 以不使用純 %s,或者這需要使用 NLA_NUL_STRING。

由於代碼已經這樣很長時間了,在我看來,用戶空間確實包含終止 nul,甚至到目前為止還沒有強制執行,因此NLA_NUL_STRING使用是更簡單的解決方案。
(CVE-2026-63860)

在 Linux 核心中,下列弱點已解決:

bpf:從 lsm 可休眠掛鉤中刪除 task_to_inode 和inet_conn_established (CVE-2026-63865)

Tenable 已直接從所測試產品的安全公告擷取前置描述區塊。

請注意,Nessus 並未測試這些問題,而是僅依據應用程式自我報告的版本號碼作出判斷。

解決方案

執行「dnf update kernel6.18 --releasever 2023.12.20260622」或「dnf update --advisory ALAS2023-2026-1866 --releasever 2023.12.20260622」以更新系統。

另請參閱

https://alas.aws.amazon.com//AL2023/ALAS2023-2026-1866.html

https://alas.aws.amazon.com/faqs.html

https://explore.alas.aws.amazon.com/CVE-2026-45838.html

https://explore.alas.aws.amazon.com/CVE-2026-45839.html

https://explore.alas.aws.amazon.com/CVE-2026-45840.html

https://explore.alas.aws.amazon.com/CVE-2026-45841.html

https://explore.alas.aws.amazon.com/CVE-2026-45842.html

https://explore.alas.aws.amazon.com/CVE-2026-45843.html

https://explore.alas.aws.amazon.com/CVE-2026-45844.html

https://explore.alas.aws.amazon.com/CVE-2026-45846.html

https://explore.alas.aws.amazon.com/CVE-2026-46154.html

https://explore.alas.aws.amazon.com/CVE-2026-46159.html

https://explore.alas.aws.amazon.com/CVE-2026-46164.html

https://explore.alas.aws.amazon.com/CVE-2026-46207.html

https://explore.alas.aws.amazon.com/CVE-2026-46209.html

https://explore.alas.aws.amazon.com/CVE-2026-46214.html

https://explore.alas.aws.amazon.com/CVE-2026-46215.html

https://explore.alas.aws.amazon.com/CVE-2026-46227.html

https://explore.alas.aws.amazon.com/CVE-2026-46234.html

https://explore.alas.aws.amazon.com/CVE-2026-46236.html

https://explore.alas.aws.amazon.com/CVE-2026-46242.html

https://explore.alas.aws.amazon.com/CVE-2026-46274.html

https://explore.alas.aws.amazon.com/CVE-2026-46324.html

https://explore.alas.aws.amazon.com/CVE-2026-52920.html

https://explore.alas.aws.amazon.com/CVE-2026-52925.html

https://explore.alas.aws.amazon.com/CVE-2026-52936.html

https://explore.alas.aws.amazon.com/CVE-2026-52953.html

https://explore.alas.aws.amazon.com/CVE-2026-52954.html

https://explore.alas.aws.amazon.com/CVE-2026-52955.html

https://explore.alas.aws.amazon.com/CVE-2026-52957.html

https://explore.alas.aws.amazon.com/CVE-2026-52958.html

https://explore.alas.aws.amazon.com/CVE-2026-52959.html

https://explore.alas.aws.amazon.com/CVE-2026-52961.html

https://explore.alas.aws.amazon.com/CVE-2026-52962.html

https://explore.alas.aws.amazon.com/CVE-2026-52967.html

https://explore.alas.aws.amazon.com/CVE-2026-52969.html

https://explore.alas.aws.amazon.com/CVE-2026-52970.html

https://explore.alas.aws.amazon.com/CVE-2026-52972.html

https://explore.alas.aws.amazon.com/CVE-2026-52973.html

https://explore.alas.aws.amazon.com/CVE-2026-52974.html

https://explore.alas.aws.amazon.com/CVE-2026-52975.html

https://explore.alas.aws.amazon.com/CVE-2026-52977.html

https://explore.alas.aws.amazon.com/CVE-2026-52978.html

https://explore.alas.aws.amazon.com/CVE-2026-52979.html

https://explore.alas.aws.amazon.com/CVE-2026-52980.html

https://explore.alas.aws.amazon.com/CVE-2026-52981.html

https://explore.alas.aws.amazon.com/CVE-2026-52984.html

https://explore.alas.aws.amazon.com/CVE-2026-52985.html

https://explore.alas.aws.amazon.com/CVE-2026-52986.html

https://explore.alas.aws.amazon.com/CVE-2026-52990.html

https://explore.alas.aws.amazon.com/CVE-2026-52991.html

https://explore.alas.aws.amazon.com/CVE-2026-52993.html

https://explore.alas.aws.amazon.com/CVE-2026-52994.html

https://explore.alas.aws.amazon.com/CVE-2026-52995.html

https://explore.alas.aws.amazon.com/CVE-2026-52997.html

https://explore.alas.aws.amazon.com/CVE-2026-52998.html

https://explore.alas.aws.amazon.com/CVE-2026-52999.html

https://explore.alas.aws.amazon.com/CVE-2026-53000.html

https://explore.alas.aws.amazon.com/CVE-2026-53001.html

https://explore.alas.aws.amazon.com/CVE-2026-53002.html

https://explore.alas.aws.amazon.com/CVE-2026-53003.html

https://explore.alas.aws.amazon.com/CVE-2026-53004.html

https://explore.alas.aws.amazon.com/CVE-2026-53006.html

https://explore.alas.aws.amazon.com/CVE-2026-53009.html

https://explore.alas.aws.amazon.com/CVE-2026-53011.html

https://explore.alas.aws.amazon.com/CVE-2026-53012.html

https://explore.alas.aws.amazon.com/CVE-2026-53013.html

https://explore.alas.aws.amazon.com/CVE-2026-53014.html

https://explore.alas.aws.amazon.com/CVE-2026-53015.html

https://explore.alas.aws.amazon.com/CVE-2026-53021.html

https://explore.alas.aws.amazon.com/CVE-2026-53023.html

https://explore.alas.aws.amazon.com/CVE-2026-53026.html

https://explore.alas.aws.amazon.com/CVE-2026-53031.html

https://explore.alas.aws.amazon.com/CVE-2026-53032.html

https://explore.alas.aws.amazon.com/CVE-2026-53033.html

https://explore.alas.aws.amazon.com/CVE-2026-53034.html

https://explore.alas.aws.amazon.com/CVE-2026-53035.html

https://explore.alas.aws.amazon.com/CVE-2026-53036.html

https://explore.alas.aws.amazon.com/CVE-2026-53037.html

https://explore.alas.aws.amazon.com/CVE-2026-53038.html

https://explore.alas.aws.amazon.com/CVE-2026-53047.html

https://explore.alas.aws.amazon.com/CVE-2026-53050.html

https://explore.alas.aws.amazon.com/CVE-2026-53053.html

https://explore.alas.aws.amazon.com/CVE-2026-53059.html

https://explore.alas.aws.amazon.com/CVE-2026-53060.html

https://explore.alas.aws.amazon.com/CVE-2026-53061.html

https://explore.alas.aws.amazon.com/CVE-2026-53062.html

https://explore.alas.aws.amazon.com/CVE-2026-53063.html

https://explore.alas.aws.amazon.com/CVE-2026-53064.html

https://explore.alas.aws.amazon.com/CVE-2026-53067.html

https://explore.alas.aws.amazon.com/CVE-2026-53069.html

https://explore.alas.aws.amazon.com/CVE-2026-53074.html

https://explore.alas.aws.amazon.com/CVE-2026-53075.html

https://explore.alas.aws.amazon.com/CVE-2026-53076.html

https://explore.alas.aws.amazon.com/CVE-2026-53077.html

https://explore.alas.aws.amazon.com/CVE-2026-53081.html

https://explore.alas.aws.amazon.com/CVE-2026-53083.html

https://explore.alas.aws.amazon.com/CVE-2026-53084.html

https://explore.alas.aws.amazon.com/CVE-2026-53085.html

https://explore.alas.aws.amazon.com/CVE-2026-53092.html

https://explore.alas.aws.amazon.com/CVE-2026-53094.html

https://explore.alas.aws.amazon.com/CVE-2026-53095.html

https://explore.alas.aws.amazon.com/CVE-2026-53096.html

https://explore.alas.aws.amazon.com/CVE-2026-53110.html

https://explore.alas.aws.amazon.com/CVE-2026-53111.html

https://explore.alas.aws.amazon.com/CVE-2026-53114.html

https://explore.alas.aws.amazon.com/CVE-2026-53115.html

https://explore.alas.aws.amazon.com/CVE-2026-53119.html

https://explore.alas.aws.amazon.com/CVE-2026-53120.html

https://explore.alas.aws.amazon.com/CVE-2026-53121.html

https://explore.alas.aws.amazon.com/CVE-2026-53122.html

https://explore.alas.aws.amazon.com/CVE-2026-53123.html

https://explore.alas.aws.amazon.com/CVE-2026-53125.html

https://explore.alas.aws.amazon.com/CVE-2026-53126.html

https://explore.alas.aws.amazon.com/CVE-2026-53128.html

https://explore.alas.aws.amazon.com/CVE-2026-53129.html

https://explore.alas.aws.amazon.com/CVE-2026-53281.html

https://explore.alas.aws.amazon.com/CVE-2026-53282.html

https://explore.alas.aws.amazon.com/CVE-2026-53283.html

https://explore.alas.aws.amazon.com/CVE-2026-53284.html

https://explore.alas.aws.amazon.com/CVE-2026-53287.html

https://explore.alas.aws.amazon.com/CVE-2026-53288.html

https://explore.alas.aws.amazon.com/CVE-2026-53289.html

https://explore.alas.aws.amazon.com/CVE-2026-53295.html

https://explore.alas.aws.amazon.com/CVE-2026-53304.html

https://explore.alas.aws.amazon.com/CVE-2026-53307.html

https://explore.alas.aws.amazon.com/CVE-2026-53314.html

https://explore.alas.aws.amazon.com/CVE-2026-53321.html

https://explore.alas.aws.amazon.com/CVE-2026-53323.html

https://explore.alas.aws.amazon.com/CVE-2026-63860.html

https://explore.alas.aws.amazon.com/CVE-2026-63865.html

Plugin 詳細資訊

嚴重性: High

ID: 322020

檔案名稱: al2023_ALAS2023-2026-1866.nasl

版本: 1.4

類型: Local

代理程式: unix

已發布: 2026/6/22

已更新: 2026/7/31

支援的感應器: Agentless Assessment, Continuous Assessment, Frictionless Assessment Agent, Frictionless Assessment AWS, Nessus Agent, Tenable Cloud Security, Tenable Self-Hosted Container Security, Nessus

風險資訊

VPR

風險因素: High

分數: 8.9

百分位數: 99.7

CVSS v2

風險因素: Medium

基本分數: 6.8

時間性分數: 5.3

媒介: CVSS2#AV:L/AC:L/Au:S/C:C/I:C/A:C

CVSS 評分資料來源: CVE-2026-53129

CVSS v3

風險因素: High

基本分數: 7.8

時間性分數: 7

媒介: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

時間媒介: CVSS:3.0/E:P/RL:O/RC:C

弱點資訊

CPE: cpe:/o:amazon:linux:2023, p-cpe:/a:amazon:linux:bpftool6.18-debuginfo, p-cpe:/a:amazon:linux:bpftool6.18, p-cpe:/a:amazon:linux:kernel-livepatch-6.18.33-63.124, p-cpe:/a:amazon:linux:kernel6.18-debuginfo-common-aarch64, p-cpe:/a:amazon:linux:kernel6.18-debuginfo-common-x86_64, p-cpe:/a:amazon:linux:kernel6.18-debuginfo, p-cpe:/a:amazon:linux:kernel6.18-devel, p-cpe:/a:amazon:linux:kernel6.18-headers, p-cpe:/a:amazon:linux:kernel6.18-modules-extra-common, p-cpe:/a:amazon:linux:kernel6.18-modules-extra, p-cpe:/a:amazon:linux:kernel6.18-tools-debuginfo, p-cpe:/a:amazon:linux:kernel6.18-tools-devel, p-cpe:/a:amazon:linux:kernel6.18-tools, p-cpe:/a:amazon:linux:kernel6.18, p-cpe:/a:amazon:linux:perf6.18-debuginfo, p-cpe:/a:amazon:linux:perf6.18, p-cpe:/a:amazon:linux:python3-perf6.18-debuginfo, p-cpe:/a:amazon:linux:python3-perf6.18

必要的 KB 項目: Host/local_checks_enabled, Host/AmazonLinux/release, Host/AmazonLinux/rpm-list

可被惡意程式利用: true

可輕鬆利用: Exploits are available

修補程式發佈日期: 2026/6/22

弱點發布日期: 2026/5/27

參考資訊

CVE: CVE-2026-45838, CVE-2026-45839, CVE-2026-45840, CVE-2026-45841, CVE-2026-45842, CVE-2026-45843, CVE-2026-45844, CVE-2026-45846, CVE-2026-46154, CVE-2026-46159, CVE-2026-46164, CVE-2026-46207, CVE-2026-46209, CVE-2026-46214, CVE-2026-46215, CVE-2026-46227, CVE-2026-46234, CVE-2026-46236, CVE-2026-46242, CVE-2026-46274, CVE-2026-46324, CVE-2026-52920, CVE-2026-52925, CVE-2026-52936, CVE-2026-52953, CVE-2026-52954, CVE-2026-52955, CVE-2026-52957, CVE-2026-52958, CVE-2026-52959, CVE-2026-52961, CVE-2026-52962, CVE-2026-52967, CVE-2026-52969, CVE-2026-52970, CVE-2026-52972, CVE-2026-52973, CVE-2026-52974, CVE-2026-52975, CVE-2026-52977, CVE-2026-52978, CVE-2026-52979, CVE-2026-52980, CVE-2026-52981, CVE-2026-52984, CVE-2026-52985, CVE-2026-52986, CVE-2026-52990, CVE-2026-52991, CVE-2026-52993, CVE-2026-52994, CVE-2026-52995, CVE-2026-52997, CVE-2026-52998, CVE-2026-52999, CVE-2026-53000, CVE-2026-53001, CVE-2026-53002, CVE-2026-53003, CVE-2026-53004, CVE-2026-53006, CVE-2026-53009, CVE-2026-53011, CVE-2026-53012, CVE-2026-53013, CVE-2026-53014, CVE-2026-53015, CVE-2026-53021, CVE-2026-53023, CVE-2026-53026, CVE-2026-53031, CVE-2026-53032, CVE-2026-53033, CVE-2026-53034, CVE-2026-53035, CVE-2026-53036, CVE-2026-53037, CVE-2026-53038, CVE-2026-53047, CVE-2026-53050, CVE-2026-53053, CVE-2026-53059, CVE-2026-53060, CVE-2026-53061, CVE-2026-53062, CVE-2026-53063, CVE-2026-53064, CVE-2026-53067, CVE-2026-53069, CVE-2026-53074, CVE-2026-53075, CVE-2026-53076, CVE-2026-53077, CVE-2026-53081, CVE-2026-53083, CVE-2026-53084, CVE-2026-53085, CVE-2026-53092, CVE-2026-53094, CVE-2026-53095, CVE-2026-53096, CVE-2026-53110, CVE-2026-53111, CVE-2026-53114, CVE-2026-53115, CVE-2026-53119, CVE-2026-53120, CVE-2026-53121, CVE-2026-53122, CVE-2026-53123, CVE-2026-53125, CVE-2026-53126, CVE-2026-53128, CVE-2026-53129, CVE-2026-53281, CVE-2026-53282, CVE-2026-53283, CVE-2026-53284, CVE-2026-53287, CVE-2026-53288, CVE-2026-53289, CVE-2026-53295, CVE-2026-53304, CVE-2026-53307, CVE-2026-53314, CVE-2026-53321, CVE-2026-53323, CVE-2026-63860, CVE-2026-63865