Amazon Linux 2:核心 --advisory ALAS2KERNEL-5。10-2026-129 (ALASKERNEL-5.10-2026-129)

medium Nessus Plugin ID 337224

概要

遠端 Amazon Linux 2 主機缺少安全性更新。

說明

遠端主機上安裝的核心版本早於 5.10.262-262.1063。因此,會受到 ALAS2KERNEL-5.10-2026-129 公告中所提及的多個弱點影響。

在 Linux 核心中,下列弱點已解決:

net:刪除 skb_may_tx_timestamp()CVE-2026-43216 () 中的鎖定

在 Linux 核心中,下列弱點已解決:

nvmet-tcp:修正 ICReq 處理與佇列拆卸之間的爭用 (CVE-2026-46135)

在 Linux 核心中,下列弱點已解決:

netfilter: nf_log:在轉儲之前驗證 MAC 標頭的設定 (CVE-2026-52942)

在 Linux 核心中,下列弱點已解決:

NFSv4/flexfiles:拒絕零檔案控點版本計數 (CVE-2026-53392)

在 Linux 核心中,下列弱點已解決:

nfsd:在延遲回寫錯誤時重設寫入驗證程式 (CVE-2026-53393)

在 Linux 核心中,下列弱點已解決:

nfsd:在 setlease 失敗時釋放配置 STID (CVE-2026-53399)

在 Linux 核心中,下列弱點已解決:

i2c:core:修正轉接器註冊爭用

可以使用 i2c_get_adapter() 根據其 ID 查詢配接器,該 () 採用對嵌入式結構裝置的引用。

請確定配接器 (包括其結構裝置) 在將配接器新增至 IDR 之前已初始化,以避免存取 uninitialiseddata,例如可能導致 NULL 指標解除參照或釋放後使用。

請注意,從匯流排通知程式註冊的 i2c-dev chardev 目前使用 i2c_get_adapter(),因此需要在註冊前將轉接器新增至 IDR。(CVE-2026-53400)

在 Linux 核心中,下列弱點已解決:

fbdev: fbcon:修正 fbcon_do_set_font() err_out中的越界讀取

當 fbcon_do_set_font() 失敗時(例如,由於 vc_resize() 內部記憶體配置失敗在記憶體壓力很大的情況下),它會跳到「err_out」標籤以回滾控制台狀態。然而,目前的回滾邏輯忘記還原「hi_font」狀態,導致嚴重的狀態機器損毀。

在函式的前面,可能會呼叫 'set_vc_hi_font()' 來變更 'vc->vc_hi_font_mask' 並改變螢幕緩衝區。如果 'vc_resize()' 隨後失敗,'err_out' 路徑會還原 'vc_font.charcount',但完全跳過回滾 'vc_hi_font_mask' 和 screenbuffer。

此不相符會使終端機處於不同步狀態。因為 'vc_hi_font_mask' 仍會設定,所以 VT 子系統仍會接受來自使用者空間的大於 255 的字元索引,並將它們寫入螢幕緩衝區。隨後的渲染調用(例如「fbcon_putcs()」)將使用這些膨脹的索引來存取還原的 256 個字元字體陣列,從而導致確定性越界讀取和潛在的核心記憶體洩漏。

透過在錯誤路徑中新增「hi_font」遮罩和螢幕緩衝區缺少的復原邏輯來修正此問題。
(CVE-2026-53402)

在 Linux 核心中,下列弱點已解決:

hdlc_ppp:在釋放 HDLC 狀態之前同步每個原型計時器 (CVE-2026-63803)

在 Linux 核心中,下列弱點已解決:

KVM:將 ioeventfd 資料比對中的 guest-triggerable BUG_ON() 替換為 get_unaligned()CVE-2026-63806 ()

在 Linux 核心中,下列弱點已解決:

net: ip_gre:需要在裝置 netns 中CAP_NET_ADMIN以進行 changelink (CVE-2026-63829)

在 Linux 核心中,下列弱點已解決:

net: skmsg:跨 SG 轉換保留 sg.copy (CVE-2026-63830)

在 Linux 核心中,下列弱點已解決:

netfilter: ipset:修正轉儲和ip_set_list調整大小之間的爭用 (CVE-2026-64189)

在 Linux 核心中,下列弱點已解決:

fuse:從 fuse_ref_folio()CVE-2026-64266 () 返回之前重新鎖定要求

在 Linux 核心中,下列弱點已解決:

輸入:synaptics-rmi4 - 將鍵盤映射綁定 F30 到 GPIO/LED 計數 (CVE-2026-64276)

在 Linux 核心中,下列弱點已解決:

exfat:在 exfat_find_dir_entry() 中綁定 uniname advance (CVE-2026-64296)

在 Linux 核心中,下列弱點已解決:

NFSv4:在 O_TRUNC 的開放權限遮罩中包含MAY_WRITE (CVE-2026-64298)

在 Linux 核心中,下列弱點已解決:

跟蹤:防止 glob 比對中的越界讀取 (CVE-2026-64299)

在 Linux 核心中,下列弱點已解決:

crypto: drbg - 修正 CTR_DRBG 中失敗時傳回的成功 (CVE-2026-64306)

在 Linux 核心中,下列弱點已解決:

crypto: pcrypt - 還原回呼以進行非平行後援 (CVE-2026-64312)

在 Linux 核心中,下列弱點已解決:

crypto: ecc - 修正 vli 乘法中的進位溢位 (CVE-2026-64313)

在 Linux 核心中,下列弱點已解決:

isofs:將 Rock Ridge 符號連結元件綁定到 SL 記錄 (CVE-2026-64317)

在 Linux 核心中,下列弱點已解決:

udf:驗證備用表長度作為項目計數,而不是位元組計數 (CVE-2026-64322)

在 Linux 核心中,下列弱點已解決:

udf:根據 VAT inode 大小 () 驗證 VAT 標頭長度 (CVE-2026-64323)

在 Linux 核心中,下列弱點已解決:

udf:根據分割區長度 () 驗證可用區塊範圍 (CVE-2026-64324)

在 Linux 核心中,下列弱點已解決:

USB: ulpi:修正註冊失敗時的記憶體洩漏 (CVE-2026-64332)

在 Linux 核心中,下列弱點已解決:

USB:serial:digi_acceleport:修正寫入緩衝區損毀 (CVE-2026-64333)

在 Linux 核心中,下列弱點已解決:

USB: serial: digi_acceleport:修正斷開連接時的硬鎖定 (CVE-2026-64334)

在 Linux 核心中,下列弱點已解決:

USB:serial:digi_acceleport:修正節流後損毀的 rx (CVE-2026-64335)

在 Linux 核心中,下列弱點已解決:

USB:legousbtower:修正斷開連接爭用 (CVE-2026-64340) 上的釋放後使用

在 Linux 核心中,下列弱點已解決:

USB: iowarrior:修正斷開連接時的釋放後使用 (CVE-2026-64342)

在 Linux 核心中,下列弱點已解決:

USB: ldusb:修正中斷連接爭用 (CVE-2026-64343) 上的釋放後使用

在 Linux 核心中,下列弱點已解決:

USB: idmouse:修正中斷連接爭用上的釋放後使用 (CVE-2026-64344)

在 Linux 核心中,下列弱點已解決:

USB:提交失敗時的釋放 ISO 排程 (CVE-2026-64348)

在 Linux 核心中,下列弱點已解決:

net: usb: kalmia:以 kalmia_rx_fixup()CVE-2026-64351 () 為單位的綁定 RX 框架長度

在 Linux 核心中,下列弱點已解決:

nilfs2:拒絕具有超出範圍區段編號CLEAN_SEGMENTS ioctl (CVE-2026-64359)

在 Linux 核心中,下列弱點已解決:

hfs/hfsplus:hfs_bnode_read (CVE-2026-64360) 中的零初始化緩衝區

在 Linux 核心中,下列弱點已解決:

hfs/hfsplus:修正 check_and_correct_requested_length 中的 u32 溢位 (CVE-2026-64361)

在 Linux 核心中,下列弱點已解決:

HID: lg-g15:取消移除的擱置工作,以修正釋放後使用 (CVE-2026-64362)

在 Linux 核心中,下列弱點已解決:

HID: appleir:修正 remove()CVE-2026-64363 () 中擱置key_up_timer上的 UAF

在 Linux 核心中,下列弱點已解決:

HID:多點觸控:修正 mt_io_flags 上的越界位元存取 (CVE-2026-64364)

在 Linux 核心中,下列弱點已解決:

posix-cpu-timers:修正 do_cpu_nanosleep() 錯誤路徑中的 pid 參照計數洩漏 (CVE-2026-64370)

在 Linux 核心中,下列弱點已解決:

proc:使用 exec_update_lock 保護 ptrace_may_access() (第 1 部分) (CVE-2026-64371)

在 Linux 核心中,下列弱點已解決:

cpufreq: pcc:修正 _OSC 評估中的釋放後使用和雙重釋放 (CVE-2026-64372)

在 Linux 核心中,下列弱點已解決:

cpufreq:修正重新開機期間的熱插拔-暫停爭用 (CVE-2026-64373)

在 Linux 核心中,下列弱點已解決:

sched/rt:必須RT_PUSH_IPI非PREEMPT_RT預設關閉 (CVE-2026-64374)

在 Linux 核心中,下列弱點已解決:

proc:使用 exec_update_lock 保護 ptrace_may_access() (FD 連結) (CVE-2026-64375)

在 Linux 核心中,下列弱點已解決:

writeback:修正 cgroup_writeback_umount() 和 inode_switch_wbs() 之間的爭用 (CVE-2026-64378)

在 Linux 核心中,下列弱點已解決:

smb:用戶端:強化 POSIX SID 長度剖析 (CVE-2026-64380)

在 Linux 核心中,下列弱點已解決:

smb: client:修正 receive_encrypted_standard()CVE-2026-64381 () 中的下一個緩衝區洩漏

在 Linux 核心中,下列弱點已解決:

netfilter: ebtables:在 find_table_lock()CVE-2026-64411 () 之前終止表名

在 Linux 核心中,下列弱點已解決:

netfilter: ebtables:模組名稱必須以 null 結尾 (CVE-2026-64412)

在 Linux 核心中,下列弱點已解決:

netfilter: ebtables:零鏈堆疊陣列 (CVE-2026-64413)

在 Linux 核心中,下列弱點已解決:

net: ipv4:綁定的 TCP 重新排序 sysctl 寫入和 MTU 探查大小 (CVE-2026-64422)

在 Linux 核心中,下列弱點已解決:

ipv4: igmp:在裝置損毀時從雜湊表中移除多點傳播群組 (CVE-2026-64423)

在 Linux 核心中,下列弱點已解決:

io_uring/io-wq:重新檢查每個連結工作專案的IO_WQ_BIT_EXIT (CVE-2026-64425)

在 Linux 核心中,下列弱點已解決:

audit:修正 audit_queue (CVE-2026-64435) 上 skb_queue_len() 讀取器的資料爭用

在 Linux 核心中,下列弱點已解決:

net: af_key:初始化 IPComp 狀態的 alg_key_len (CVE-2026-64436)

在 Linux 核心中,下列弱點已解決:

SMB: client:將隱含的 BCC[0] 豁免限制為沒有資料區域 (CVE-2026-64448) 的回應

在 Linux 核心中,下列弱點已解決:

tipc:修正廣播間隙 ACK 區塊中的越界讀取 (CVE-2026-64450)

在 Linux 核心中,下列弱點已解決:

USB: chaoskey:修正 chaoskey_release() 中的 slab-use-after-free (CVE-2026-64455)

在 Linux 核心中,下列弱點已解決:

hwrng: virtio:在 copy_data()CVE-2026-64456 () 處 clamp device-reported used.len

在 Linux 核心中,下列弱點已解決:

usb: xhci: 修正 xhci_free_streams() 中原子上下文中的睡眠 (CVE-2026-64465)

在 Linux 核心中,下列弱點已解決:

vfio/pci: register_device() 失敗時釋放 VGA 仲裁器用戶端 (CVE-2026-64475)

在 Linux 核心中,下列弱點已解決:

userfaultfd:對 pte_present() 進行門must_wait可寫性檢查 (CVE-2026-64514)

在 Linux 核心中,下列弱點已解決:

nvmet-tcp:在摘要錯誤路徑 (CVE-2026-64534) 中nvmet_req_uninit前檢查INIT_FAILED

在 Linux 核心中,下列弱點已解決:

ipv6:修正 fib6_nh_mtu_change() 中的 null-ptr-deref。(CVE-2026-64538)

在 Linux 核心中,下列弱點已解決:

USBNET: GL620A:修正 genelink_rx_fixup() 中的越界讀取 (CVE-2026-64540)

在 Linux 核心中,下列弱點已解決:

crypto: asymmetric_keys - 修正 pefile_digest_pe_contents 中的 OOB 讀取 (CVE-2026-64544)

在 Linux 核心中,下列弱點已解決:

drm/edid:修正 drm_parse_tiled_block() 中的 OOB 讀取 (CVE-2026-64546)

在 Linux 核心中,下列弱點已解決:

net:usb:net1080:在 rx_fixup (CVE-2026-64547) 中進行 pad-byte 存取之前驗證packet_len

在 Linux 核心中,下列弱點已解決:

bpf, sockmap:拒絕 bpf_msg_push_data()CVE-2026-64548 () 中的溢位副本 + len

在 Linux 核心中,下列弱點已解決:

sctp:在讀取過時之前驗證STALE_COOKIE原因長度 (CVE-2026-64551)

在 Linux 核心中,下列弱點已解決:

net: psample:修正 PSAMPLE_ATTR_DATA (CVE-2026-64553) 中的資訊洩露

在 Linux 核心中,下列弱點已解決:

posix-cpu-timers:防止由非 leader exec() 爭用 (CVE-2026-64560) 引起的 UAF

在 Linux 核心中,下列弱點已解決:

btrfs:不要修剪不可寫入的裝置 (CVE-2026-64593)

在 Linux 核心中,下列弱點已解決:

KVM: VMX:如果 vCPU 處於客體模式,則在 CR8 攔截更新上獲取 vmcs12 (CVE-2026-64604)

在 Linux 核心中,下列弱點已解決:

HID: wacom:啟動後探棒失敗後停止硬體 (CVE-2026-68091)

Tenable 已直接從所測試產品的安全公告擷取前置描述區塊。

請注意,Nessus 並未測試這些問題,而是僅依據應用程式自我報告的版本號碼作出判斷。

解決方案

執行「yum update 核心」或「yum update --advisory ALAS2KERNEL-5.10-2026-129」以更新系統。

另請參閱

https://alas.aws.amazon.com//AL2/ALAS2KERNEL-5.10-2026-129.html

https://alas.aws.amazon.com/faqs.html

https://explore.alas.aws.amazon.com/CVE-2026-43216.html

https://explore.alas.aws.amazon.com/CVE-2026-43329.html

https://explore.alas.aws.amazon.com/CVE-2026-46135.html

https://explore.alas.aws.amazon.com/CVE-2026-52942.html

https://explore.alas.aws.amazon.com/CVE-2026-53388.html

https://explore.alas.aws.amazon.com/CVE-2026-53392.html

https://explore.alas.aws.amazon.com/CVE-2026-53393.html

https://explore.alas.aws.amazon.com/CVE-2026-53399.html

https://explore.alas.aws.amazon.com/CVE-2026-53400.html

https://explore.alas.aws.amazon.com/CVE-2026-53402.html

https://explore.alas.aws.amazon.com/CVE-2026-63803.html

https://explore.alas.aws.amazon.com/CVE-2026-63806.html

https://explore.alas.aws.amazon.com/CVE-2026-63826.html

https://explore.alas.aws.amazon.com/CVE-2026-63829.html

https://explore.alas.aws.amazon.com/CVE-2026-63830.html

https://explore.alas.aws.amazon.com/CVE-2026-64015.html

https://explore.alas.aws.amazon.com/CVE-2026-64189.html

https://explore.alas.aws.amazon.com/CVE-2026-64266.html

https://explore.alas.aws.amazon.com/CVE-2026-64276.html

https://explore.alas.aws.amazon.com/CVE-2026-64296.html

https://explore.alas.aws.amazon.com/CVE-2026-64298.html

https://explore.alas.aws.amazon.com/CVE-2026-64299.html

https://explore.alas.aws.amazon.com/CVE-2026-64306.html

https://explore.alas.aws.amazon.com/CVE-2026-64312.html

https://explore.alas.aws.amazon.com/CVE-2026-64313.html

https://explore.alas.aws.amazon.com/CVE-2026-64317.html

https://explore.alas.aws.amazon.com/CVE-2026-64322.html

https://explore.alas.aws.amazon.com/CVE-2026-64323.html

https://explore.alas.aws.amazon.com/CVE-2026-64324.html

https://explore.alas.aws.amazon.com/CVE-2026-64332.html

https://explore.alas.aws.amazon.com/CVE-2026-64333.html

https://explore.alas.aws.amazon.com/CVE-2026-64334.html

https://explore.alas.aws.amazon.com/CVE-2026-64335.html

https://explore.alas.aws.amazon.com/CVE-2026-64340.html

https://explore.alas.aws.amazon.com/CVE-2026-64342.html

https://explore.alas.aws.amazon.com/CVE-2026-64343.html

https://explore.alas.aws.amazon.com/CVE-2026-64344.html

https://explore.alas.aws.amazon.com/CVE-2026-64348.html

https://explore.alas.aws.amazon.com/CVE-2026-64351.html

https://explore.alas.aws.amazon.com/CVE-2026-64359.html

https://explore.alas.aws.amazon.com/CVE-2026-64360.html

https://explore.alas.aws.amazon.com/CVE-2026-64361.html

https://explore.alas.aws.amazon.com/CVE-2026-64362.html

https://explore.alas.aws.amazon.com/CVE-2026-64363.html

https://explore.alas.aws.amazon.com/CVE-2026-64364.html

https://explore.alas.aws.amazon.com/CVE-2026-64370.html

https://explore.alas.aws.amazon.com/CVE-2026-64371.html

https://explore.alas.aws.amazon.com/CVE-2026-64372.html

https://explore.alas.aws.amazon.com/CVE-2026-64373.html

https://explore.alas.aws.amazon.com/CVE-2026-64374.html

https://explore.alas.aws.amazon.com/CVE-2026-64375.html

https://explore.alas.aws.amazon.com/CVE-2026-64378.html

https://explore.alas.aws.amazon.com/CVE-2026-64380.html

https://explore.alas.aws.amazon.com/CVE-2026-64381.html

https://explore.alas.aws.amazon.com/CVE-2026-64411.html

https://explore.alas.aws.amazon.com/CVE-2026-64412.html

https://explore.alas.aws.amazon.com/CVE-2026-64413.html

https://explore.alas.aws.amazon.com/CVE-2026-64422.html

https://explore.alas.aws.amazon.com/CVE-2026-64423.html

https://explore.alas.aws.amazon.com/CVE-2026-64425.html

https://explore.alas.aws.amazon.com/CVE-2026-64435.html

https://explore.alas.aws.amazon.com/CVE-2026-64436.html

https://explore.alas.aws.amazon.com/CVE-2026-64448.html

https://explore.alas.aws.amazon.com/CVE-2026-64450.html

https://explore.alas.aws.amazon.com/CVE-2026-64455.html

https://explore.alas.aws.amazon.com/CVE-2026-64456.html

https://explore.alas.aws.amazon.com/CVE-2026-64465.html

https://explore.alas.aws.amazon.com/CVE-2026-64475.html

https://explore.alas.aws.amazon.com/CVE-2026-64514.html

https://explore.alas.aws.amazon.com/CVE-2026-64534.html

https://explore.alas.aws.amazon.com/CVE-2026-64538.html

https://explore.alas.aws.amazon.com/CVE-2026-64540.html

https://explore.alas.aws.amazon.com/CVE-2026-64544.html

https://explore.alas.aws.amazon.com/CVE-2026-64546.html

https://explore.alas.aws.amazon.com/CVE-2026-64547.html

https://explore.alas.aws.amazon.com/CVE-2026-64548.html

https://explore.alas.aws.amazon.com/CVE-2026-64551.html

https://explore.alas.aws.amazon.com/CVE-2026-64553.html

https://explore.alas.aws.amazon.com/CVE-2026-64560.html

https://explore.alas.aws.amazon.com/CVE-2026-64561.html

https://explore.alas.aws.amazon.com/CVE-2026-64593.html

https://explore.alas.aws.amazon.com/CVE-2026-64604.html

https://explore.alas.aws.amazon.com/CVE-2026-68091.html

https://explore.alas.aws.amazon.com/CVE-2026-72218.html

https://explore.alas.aws.amazon.com/CVE-2026-74262.html

Plugin 詳細資訊

嚴重性: Medium

ID: 337224

檔案名稱: al2_ALASKERNEL-5_10-2026-129.nasl

版本: 1.2

類型: Local

代理程式: unix

已發布: 2026/8/18

已更新: 2026/8/19

支援的感應器: Frictionless Assessment AWS, Frictionless Assessment Agent, Nessus Agent, Agentless Assessment, Continuous Assessment, Tenable Cloud Security, Tenable Self-Hosted Container Security, Nessus

風險資訊

VPR

風險因素: High

分數: 8

百分位數: 99.68

CVSS v2

風險因素: Medium

基本分數: 4.6

時間性分數: 3.6

媒介: CVSS2#AV:L/AC:L/Au:S/C:N/I:N/A:C

CVSS 評分資料來源: CVE-2026-53393

CVSS v3

風險因素: Medium

基本分數: 5.5

時間性分數: 5

媒介: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

時間媒介: CVSS:3.0/E:P/RL:O/RC:C

弱點資訊

CPE: cpe:/o:amazon:linux:2, p-cpe:/a:amazon:linux:bpftool-debuginfo, p-cpe:/a:amazon:linux:bpftool, p-cpe:/a:amazon:linux:kernel-debuginfo-common-aarch64, p-cpe:/a:amazon:linux:kernel-debuginfo-common-x86_64, p-cpe:/a:amazon:linux:kernel-debuginfo, p-cpe:/a:amazon:linux:kernel-devel, p-cpe:/a:amazon:linux:kernel-headers, p-cpe:/a:amazon:linux:kernel-livepatch-5.10.262-262.1063, p-cpe:/a:amazon:linux:kernel-tools-debuginfo, p-cpe:/a:amazon:linux:kernel-tools-devel, p-cpe:/a:amazon:linux:kernel-tools, p-cpe:/a:amazon:linux:kernel, p-cpe:/a:amazon:linux:perf-debuginfo, p-cpe:/a:amazon:linux:perf, p-cpe:/a:amazon:linux:python-perf-debuginfo, p-cpe:/a:amazon:linux:python-perf

必要的 KB 項目: Host/local_checks_enabled, Host/AmazonLinux/release, Host/AmazonLinux/rpm-list

可被惡意程式利用: true

可輕鬆利用: Exploits are available

修補程式發佈日期: 2026/8/17

弱點發布日期: 2026/5/6

參考資訊

CVE: CVE-2026-43216, CVE-2026-43329, CVE-2026-46135, CVE-2026-52942, CVE-2026-53388, CVE-2026-53392, CVE-2026-53393, CVE-2026-53399, CVE-2026-53400, CVE-2026-53402, CVE-2026-63803, CVE-2026-63806, CVE-2026-63826, CVE-2026-63829, CVE-2026-63830, CVE-2026-64015, CVE-2026-64189, CVE-2026-64266, CVE-2026-64276, CVE-2026-64296, CVE-2026-64298, CVE-2026-64299, CVE-2026-64306, CVE-2026-64312, CVE-2026-64313, CVE-2026-64317, CVE-2026-64322, CVE-2026-64323, CVE-2026-64324, CVE-2026-64332, CVE-2026-64333, CVE-2026-64334, CVE-2026-64335, CVE-2026-64340, CVE-2026-64342, CVE-2026-64343, CVE-2026-64344, CVE-2026-64348, CVE-2026-64351, CVE-2026-64359, CVE-2026-64360, CVE-2026-64361, CVE-2026-64362, CVE-2026-64363, CVE-2026-64364, CVE-2026-64370, CVE-2026-64371, CVE-2026-64372, CVE-2026-64373, CVE-2026-64374, CVE-2026-64375, CVE-2026-64378, CVE-2026-64380, CVE-2026-64381, CVE-2026-64411, CVE-2026-64412, CVE-2026-64413, CVE-2026-64422, CVE-2026-64423, CVE-2026-64425, CVE-2026-64435, CVE-2026-64436, CVE-2026-64448, CVE-2026-64450, CVE-2026-64455, CVE-2026-64456, CVE-2026-64465, CVE-2026-64475, CVE-2026-64514, CVE-2026-64534, CVE-2026-64538, CVE-2026-64540, CVE-2026-64544, CVE-2026-64546, CVE-2026-64547, CVE-2026-64548, CVE-2026-64551, CVE-2026-64553, CVE-2026-64560, CVE-2026-64561, CVE-2026-64593, CVE-2026-64604, CVE-2026-68091, CVE-2026-72218, CVE-2026-74262