Amazon Linux 2:核心 --advisory ALAS2KERNEL-5。10-2026-130 (ALASKERNEL-5.10-2026-130)

high Nessus Plugin ID 341859

概要

遠端 Amazon Linux 2 主機缺少安全性更新。

說明

遠端主機上安裝的核心版本早於 5.10.265-265.1078。因此,會受到 ALAS2KERNEL-5.10-2026-130 公告中所提及的多個弱點影響。

在 Linux 核心中,下列弱點已解決:

TLS:將非同步解密要求處理與非同步 (CVE-2024-58240) 區分開來

在 Linux 核心中,下列弱點已解決:

xsk:修正 AF_XDP 通用 RX 路徑中的爭用情形 (CVE-2025-37920)

在 Linux 核心中,下列弱點已解決:

libceph:修正驗證訊息處理中的 slab-out-of-bounds 存取 (CVE-2026-46119)

在 Linux 核心中,下列弱點已解決:

bpf:修正子程序 (CVE-2026-53090) 中的 ld_{abs,ind} 故障路徑分析

在 Linux 核心中,下列弱點已解決:

nvmet:修正探索取得記錄頁面 () 中的預先驗證越界堆積讀取 (CVE-2026-64320)

在 Linux 核心中,下列弱點已解決:

tipc:修正 tipc_disc_rcv() 中發現器的釋放後使用 (CVE-2026-64543)

在 Linux 核心中,下列弱點已解決:

KVM: nVMX:在 VMCLEAR 之後立即隱藏影子 VMCS (CVE-2026-64562)

在 Linux 核心中,下列弱點已解決:

rhashtable:在表格重新啟動時清除過時的 iter->p (CVE-2026-64563)

在 Linux 核心中,下列弱點已解決:

sctp:不要在 DEL-IP 處理中釋放 ASCONF 自己的傳輸 (CVE-2026-64564)

在 Linux 核心中,下列弱點已解決:

btrfs:拒絕項目多於頁面的可用空間快取 (CVE-2026-64567)

在 Linux 核心中,下列弱點已解決:

ipv4: fib:在插入錯誤路徑上釋放帶有 kfree_rcu() 的fib_alias (CVE-2026-64572)

在 Linux 核心中,下列弱點已解決:

xfrm: policy:在xfrm_hash_rebuild重新插入之前預先配置不精確的 bin (CVE-2026-64579)

在 Linux 核心中,下列弱點已解決:

xfrm:修正 xfrm_user_policy() 中的雙重釋放sk_dst_cache (CVE-2026-64581)

在 Linux 核心中,下列弱點已解決:

RDMA/rxe:修正 rxe_mmap (CVE-2026-64582) 中的釋放後使用問題

在 Linux 核心中,下列弱點已解決:

提示:清除 tipc_sk_create() 中失敗插入路徑上的 sock->sk (CVE-2026-68117)

在 Linux 核心中,下列弱點已解決:

pppoe:在 dev_hard_header() (CVE-2026-68121) 之後重新載入標頭指標

在 Linux 核心中,下列弱點已解決:

openvswitch:修正 GSO 使用者空間截斷反向溢位 (CVE-2026-68123)

在 Linux 核心中,下列弱點已解決:

ila:在總和檢查碼 adjust (CVE-2026-68127) 中pskb_may_pull後重新載入 IPv6 標頭

在 Linux 核心中,下列弱點已解決:

rbd:將物件對應更新路徑中的正結果代碼重設為零 (CVE-2026-68131)

在 Linux 核心中,下列弱點已解決:

net/sched:針對並行 get/put (CVE-2026-68138) 序列化 qdisc_rtab_list

在 Linux 核心中,下列弱點已解決:

geneve:需要在裝置 netns 中CAP_NET_ADMIN以進行 changelink (CVE-2026-68142)

在 Linux 核心中,下列弱點已解決:

net: slip:針對緩衝區重新配置序列化接收 (CVE-2026-68143)

在 Linux 核心中,下列弱點已解決:

libceph:在用戶端拆卸之前移除 debugfs 檔案 (CVE-2026-68153)

在 Linux 核心中,下列弱點已解決:

libceph:拒絕 crush_decode (CVE-2026-68154) 中的零儲存貯體類型

在 Linux 核心中,下列弱點已解決:

libceph:拒絕 monmaps 通告零監視器 (CVE-2026-68155)

在 Linux 核心中,下列弱點已解決:

libceph:授權者更新後重新整理 auth->authorizer_buf{,_len} (CVE-2026-68156)

在 Linux 核心中,下列弱點已解決:

libceph:保護缺少 CRUSH 類型名稱查詢 (CVE-2026-68157)

在 Linux 核心中,下列弱點已解決:

libceph:修正 decode_new_up_state_weight() 中的乘法溢位 (CVE-2026-68158)

在 Linux 核心中,下列弱點已解決:

Ceph:修正 ceph_handle_caps() 中 Snaptrace 上的預先驗證越界讀取 (CVE-2026-68160)

在 Linux 核心中,下列弱點已解決:

cdrom:修正 CDROMVOLCTRL 中的堆疊越界讀取 (CVE-2026-68184)

在 Linux 核心中,下列弱點已解決:

binfmt_misc:僅在解譯器開啟後設定have_execfd (CVE-2026-68186)

在 Linux 核心中,下列弱點已解決:

bpf, sockmap:修正 tcp_bpf_sendmsg() 中的軟木塞釋放後使用 (CVE-2026-68284)

在 Linux 核心中,下列弱點已解決:

tipc:修正媒體和承載 MTU 驗證中的 u16 MTU 截斷 (CVE-2026-68297)

在 Linux 核心中,下列弱點已解決:

vmxnet3:修正 vmxnet3_get_hdr_len() 中對 Geneve 封包的BUG_ON (CVE-2026-68299)

在 Linux 核心中,下列弱點已解決:

sctp: auth:當 auth_chunk 為 NULL 時,驗證驗證要求 (CVE-2026-68300)

在 Linux 核心中,下列弱點已解決:

tipc:修正 __tipc_nl_compat_dumpit (CVE-2026-68313) 中的無限迴圈

在 Linux 核心中,下列弱點已解決:

sctp:驗證 sctp_process_strreset_inreq() 中的資料流計數 (CVE-2026-68315)

在 Linux 核心中,下列弱點已解決:

sctp:修正 sctp_auth_ep_add_chunkid (CVE-2026-68320) 中的auth_chunk_list容量檢查

在 Linux 核心中,下列弱點已解決:

rds:修正停用 IPv6 時inet6_addr_lst NULL 解除參照 (CVE-2026-68322)

在 Linux 核心中,下列弱點已解決:

iommu/amd:繫結早期 ACPI HID 對應 (CVE-2026-68325)

在 Linux 核心中,下列弱點已解決:

rds:丟棄跨網路命名空間邊界的傳入訊息 (CVE-2026-68335)

在 Linux 核心中,下列弱點已解決:

net/packet:避免取消註冊 (CVE-2026-68338) 後的 fanout hook 重新註冊

在 Linux 核心中,下列弱點已解決:

USB:序列:io_edgeport:上限接收的傳輸積分 (CVE-2026-68365)

在 Linux 核心中,下列弱點已解決:

sctp:修正 struct sctp_cookieCVE-2026-68376 () 中的 auth_hmacs 陣列大小

在 Linux 核心中,下列弱點已解決:

net/sched: act_tunnel_key:將 dst_release 延遲至 RCU 回呼 (CVE-2026-68377)

在 Linux 核心中,下列弱點已解決:

smb/client:處理 fallocate (CVE-2026-68388) 中重疊的分配範圍

在 Linux 核心中,下列弱點已解決:

ppp:將可用通道推遲到 RCU 寬限期,以修正 pppol2tp RX UAF (CVE-2026-68398)

在 Linux 核心中,下列弱點已解決:

bpf:修正 sock 複製早期救助中的 UAF (CVE-2026-68399)

在 Linux 核心中,下列弱點已解決:

IB/mad:在重組之前刪除不相符的 RMPP 回應 (CVE-2026-68425)

在 Linux 核心中,下列弱點已解決:

KVM:x86/mmu:修正廠商模組重新載入時的釋放後使用 (CVE-2026-68428)

在 Linux 核心中,下列弱點已解決:

vxlan:需要在裝置 netns 中CAP_NET_ADMIN以進行 changelink (CVE-2026-68432)

在 Linux 核心中,下列弱點已解決:

libceph:綁定get_version回覆解碼到前面的 len (CVE-2026-68433)

在 Linux 核心中,下列弱點已解決:

x86/錯誤:使 Safe-RET 加強中斷插入 (CVE-2026-68480)

在 Linux 核心中,下列弱點已解決:

macsec:不要讀取 macsec_encrypt() 中未設定的 MAC 標頭 (CVE-2026-72019)

在 Linux 核心中,下列弱點已解決:

net: ip6_tunnel:需要在裝置 netns 中CAP_NET_ADMIN以進行 changelink (CVE-2026-72051)

在 Linux 核心中,下列弱點已解決:

net: ipip:需要在裝置 netns 中CAP_NET_ADMIN以進行 changelink (CVE-2026-72053)

在 Linux 核心中,下列弱點已解決:

cpu: hotplug:綁定的熱插拔狀態 sysfs 輸出 (CVE-2026-72066)

在 Linux 核心中,下列弱點已解決:

can: bcm:新增缺少的裝置參照計數以移除 CAN 篩選器 (CVE-2026-72113)

在 Linux 核心中,下列弱點已解決:

can: bcm:驗證 RTR 回覆的 bcm_rx_setup() 中的框架長度 (CVE-2026-72114)

在 Linux 核心中,下列弱點已解決:

can: bcm:追蹤單一來源介面的 ANYDEV 逾時/節流操作 (CVE-2026-72115)

在 Linux 核心中,下列弱點已解決:

can: bcm:移除裝置後修正過時的 rx/tx 操作 (CVE-2026-72116)

在 Linux 核心中,下列弱點已解決:

can: bcm:修正 bcm_rx_handler() 中 rx_stamp/rx_ifindex 上的資料爭用 (CVE-2026-72117)

在 Linux 核心中,下列弱點已解決:

can: bcm:修正 CAN 框架 rx/tx 統計資料 (CVE-2026-72118)

在 Linux 核心中,下列弱點已解決:

can: bcm:擴充資料和計時器更新的 bcm_tx_lock 使用 (CVE-2026-72119)

在 Linux 核心中,下列弱點已解決:

can: bcm:更新篩選器和計時器值時新增鎖定 (CVE-2026-72121)

在 Linux 核心中,下列弱點已解決:

can: bcm:將rx_op解除分配延遲到工作佇列以修正 thrtimer UAF (CVE-2026-72123)

在 Linux 核心中,下列弱點已解決:

ipv6: fib6:修正多批次轉儲 () 上 fib6_walk_continue() 中的 NULL 解除參照 (CVE-2026-72392)

在 Linux 核心中,下列弱點已解決:

TIPC:拒絕來自對等繫結的反轉服務範圍 (CVE-2026-74281)

在 Linux 核心中,下列弱點已解決:

net: openvswitch:修正 CT 期間流程金鑰更新失敗時的 skb 洩漏 (CVE-2026-74464)

在 Linux 核心中,下列弱點已解決:

net: openvswitch:修正儀表連接失敗時的潛在 UAF (CVE-2026-74465)

在 Linux 核心中,下列弱點已解決:

sctp:防止對等傳輸計數溢位 (CVE-2026-74469)

在 Linux 核心中,下列弱點已解決:

tracing:檢查 trace_module_add_events() 中 __register_event() 的傳回值 (CVE-2026-74471)

在 Linux 核心中,下列弱點已解決:

vxlan:在 route_shortcircuit() 中使用 pskb_network_may_pull()CVE-2026-74473

在 Linux 核心中,下列弱點已解決:

vxlan:在 route_shortcircuit() 中使用 neigh_ha_snapshot()CVE-2026-74475 ()

在 Linux 核心中,下列弱點已解決:

net: bridge:刪除連接埠群組後停止快速離開 (CVE-2026-74480)

在 Linux 核心中,下列弱點已解決:

mm/page_reporting:在暫停期間使用 system_freezable_wq 修正 UAF (CVE-2026-74481)

在 Linux 核心中,下列弱點已解決:

mm/huge_memory:在釋放分割後對開本之前解除鎖定i_mmap_rwsem (CVE-2026-74482)

在 Linux 核心中,下列弱點已解決:

binfmt_misc:拒絕旗標字元作為欄位分隔符號 (CVE-2026-74485)

在 Linux 核心中,下列弱點已解決:

提示:避免輪詢追蹤佇列轉儲中的釋放後使用 (CVE-2026-74490)

在 Linux 核心中,下列弱點已解決:

netfilter: ipset:不要更新來自核心端雜湊新增 (CVE-2026-74492) 的註解

在 Linux 核心中,下列弱點已解決:

igbvf:修正 TX DMA 錯誤清除中的洩漏 (CVE-2026-74495)

在 Linux 核心中,下列弱點已解決:

audit:修正 audit_del_rule() 中潛在的釋放後使用 (CVE-2026-74512)

在 Linux 核心中,下列弱點已解決:

mm/hugetlb:修正 allocate_file_region_entries()CVE-2026-74518 () 中的清單損毀

在 Linux 核心中,下列弱點已解決:

pinctrl: devicetree:不要釋放錯誤路徑上的未初始化dev_name (CVE-2026-74519)

在 Linux 核心中,下列弱點已解決:

qede:同步復原路徑中 qede_lock 之外的 udp_tunnel 連接埠 (CVE-2026-74523)

在 Linux 核心中,下列弱點已解決:

hwmon:(adt7470) 修正更新執行緒 (CVE-2026-74547) 中的忙碌迴圈和 I2C 溢流

在 Linux 核心中,下列弱點已解決:

hwmon:(nct6775-core) 防止存取不支援的權重暫存器 (CVE-2026-74549)

在 Linux 核心中,下列弱點已解決:

scsi: libiscsi_tcp:將 SCSI 回應資料區段繫結至連線緩衝區 (CVE-2026-74556)

在 Linux 核心中,下列弱點已解決:

scsi: libiscsi:修正 SCSI 感應緩衝區中的過時資料洩漏 (CVE-2026-74557)

在 Linux 核心中,下列弱點已解決:

rds: tcp:在 rds_tcp_laddr_check() 中跨 ipv6_chk_addr() 保持 RCU 鎖定 (CVE-2026-74563)

在 Linux 核心中,下列弱點已解決:

netfilter: xt_hashlimit:驗證雜湊表是否支援 XT_HASHLIMIT_RATE_MATCH (CVE-2026-74564)

在 Linux 核心中,下列弱點已解決:

keys:使金鑰環金鑰區塊位元組順序與 keyring_diff_objects() (CVE-2026-74566) 一致

在 Linux 核心中,下列弱點已解決:

KEYS:修正 keyring_get_key_chunk()CVE-2026-74567 () 中的越界讀取

在 Linux 核心中,下列弱點已解決:

netfilter: nf_conntrack_sip:在 sip_help_tcp()CVE-2026-74569 () 中將 NAT 重寫差異擴大到 s32

在 Linux 核心中,下列弱點已解決:

net: mpls:在 mpls_getroute() 中初始化 rtm_tos (CVE-2026-74577)

在 Linux 核心中,下列弱點已解決:

netfilter: nft_payload:修正部分欄位卸載的遮罩構建 (CVE-2026-74579)

在 Linux 核心中,下列弱點已解決:

vhost:在 VRING 重新設定時重設 VRING 中繼資料快取 (CVE-2026-74580)

在 Linux 核心中,下列弱點已解決:

netfilter: bridge:在非 IP 路徑上釋放範本 ct (CVE-2026-74625)

Tenable 已直接從所測試產品的安全公告擷取前置描述區塊。

請注意,Nessus 並未測試這些問題,而是僅依據應用程式自我報告的版本號碼作出判斷。

解決方案

執行「yum update 核心」或「yum update --advisory ALAS2KERNEL-5.10-2026-130」以更新系統。

另請參閱

https://alas.aws.amazon.com//AL2/ALAS2KERNEL-5.10-2026-130.html

https://alas.aws.amazon.com/faqs.html

https://explore.alas.aws.amazon.com/CVE-2024-58240.html

https://explore.alas.aws.amazon.com/CVE-2025-37920.html

https://explore.alas.aws.amazon.com/CVE-2026-46119.html

https://explore.alas.aws.amazon.com/CVE-2026-53090.html

https://explore.alas.aws.amazon.com/CVE-2026-64320.html

https://explore.alas.aws.amazon.com/CVE-2026-64543.html

https://explore.alas.aws.amazon.com/CVE-2026-64562.html

https://explore.alas.aws.amazon.com/CVE-2026-64563.html

https://explore.alas.aws.amazon.com/CVE-2026-64564.html

https://explore.alas.aws.amazon.com/CVE-2026-64567.html

https://explore.alas.aws.amazon.com/CVE-2026-64572.html

https://explore.alas.aws.amazon.com/CVE-2026-64579.html

https://explore.alas.aws.amazon.com/CVE-2026-64581.html

https://explore.alas.aws.amazon.com/CVE-2026-64582.html

https://explore.alas.aws.amazon.com/CVE-2026-68117.html

https://explore.alas.aws.amazon.com/CVE-2026-68121.html

https://explore.alas.aws.amazon.com/CVE-2026-68123.html

https://explore.alas.aws.amazon.com/CVE-2026-68127.html

https://explore.alas.aws.amazon.com/CVE-2026-68131.html

https://explore.alas.aws.amazon.com/CVE-2026-68138.html

https://explore.alas.aws.amazon.com/CVE-2026-68142.html

https://explore.alas.aws.amazon.com/CVE-2026-68143.html

https://explore.alas.aws.amazon.com/CVE-2026-68153.html

https://explore.alas.aws.amazon.com/CVE-2026-68154.html

https://explore.alas.aws.amazon.com/CVE-2026-68155.html

https://explore.alas.aws.amazon.com/CVE-2026-68156.html

https://explore.alas.aws.amazon.com/CVE-2026-68157.html

https://explore.alas.aws.amazon.com/CVE-2026-68158.html

https://explore.alas.aws.amazon.com/CVE-2026-68160.html

https://explore.alas.aws.amazon.com/CVE-2026-68184.html

https://explore.alas.aws.amazon.com/CVE-2026-68186.html

https://explore.alas.aws.amazon.com/CVE-2026-68284.html

https://explore.alas.aws.amazon.com/CVE-2026-68297.html

https://explore.alas.aws.amazon.com/CVE-2026-68299.html

https://explore.alas.aws.amazon.com/CVE-2026-68300.html

https://explore.alas.aws.amazon.com/CVE-2026-68313.html

https://explore.alas.aws.amazon.com/CVE-2026-68315.html

https://explore.alas.aws.amazon.com/CVE-2026-68320.html

https://explore.alas.aws.amazon.com/CVE-2026-68322.html

https://explore.alas.aws.amazon.com/CVE-2026-68325.html

https://explore.alas.aws.amazon.com/CVE-2026-68335.html

https://explore.alas.aws.amazon.com/CVE-2026-68338.html

https://explore.alas.aws.amazon.com/CVE-2026-68365.html

https://explore.alas.aws.amazon.com/CVE-2026-68376.html

https://explore.alas.aws.amazon.com/CVE-2026-68377.html

https://explore.alas.aws.amazon.com/CVE-2026-68388.html

https://explore.alas.aws.amazon.com/CVE-2026-68398.html

https://explore.alas.aws.amazon.com/CVE-2026-68399.html

https://explore.alas.aws.amazon.com/CVE-2026-68425.html

https://explore.alas.aws.amazon.com/CVE-2026-68428.html

https://explore.alas.aws.amazon.com/CVE-2026-68432.html

https://explore.alas.aws.amazon.com/CVE-2026-68433.html

https://explore.alas.aws.amazon.com/CVE-2026-68480.html

https://explore.alas.aws.amazon.com/CVE-2026-72019.html

https://explore.alas.aws.amazon.com/CVE-2026-72051.html

https://explore.alas.aws.amazon.com/CVE-2026-72053.html

https://explore.alas.aws.amazon.com/CVE-2026-72066.html

https://explore.alas.aws.amazon.com/CVE-2026-72113.html

https://explore.alas.aws.amazon.com/CVE-2026-72114.html

https://explore.alas.aws.amazon.com/CVE-2026-72115.html

https://explore.alas.aws.amazon.com/CVE-2026-72116.html

https://explore.alas.aws.amazon.com/CVE-2026-72117.html

https://explore.alas.aws.amazon.com/CVE-2026-72118.html

https://explore.alas.aws.amazon.com/CVE-2026-72119.html

https://explore.alas.aws.amazon.com/CVE-2026-72121.html

https://explore.alas.aws.amazon.com/CVE-2026-72123.html

https://explore.alas.aws.amazon.com/CVE-2026-72392.html

https://explore.alas.aws.amazon.com/CVE-2026-74281.html

https://explore.alas.aws.amazon.com/CVE-2026-74464.html

https://explore.alas.aws.amazon.com/CVE-2026-74465.html

https://explore.alas.aws.amazon.com/CVE-2026-74469.html

https://explore.alas.aws.amazon.com/CVE-2026-74471.html

https://explore.alas.aws.amazon.com/CVE-2026-74473.html

https://explore.alas.aws.amazon.com/CVE-2026-74475.html

https://explore.alas.aws.amazon.com/CVE-2026-74480.html

https://explore.alas.aws.amazon.com/CVE-2026-74481.html

https://explore.alas.aws.amazon.com/CVE-2026-74482.html

https://explore.alas.aws.amazon.com/CVE-2026-74485.html

https://explore.alas.aws.amazon.com/CVE-2026-74490.html

https://explore.alas.aws.amazon.com/CVE-2026-74492.html

https://explore.alas.aws.amazon.com/CVE-2026-74495.html

https://explore.alas.aws.amazon.com/CVE-2026-74512.html

https://explore.alas.aws.amazon.com/CVE-2026-74518.html

https://explore.alas.aws.amazon.com/CVE-2026-74519.html

https://explore.alas.aws.amazon.com/CVE-2026-74523.html

https://explore.alas.aws.amazon.com/CVE-2026-74547.html

https://explore.alas.aws.amazon.com/CVE-2026-74549.html

https://explore.alas.aws.amazon.com/CVE-2026-74556.html

https://explore.alas.aws.amazon.com/CVE-2026-74557.html

https://explore.alas.aws.amazon.com/CVE-2026-74563.html

https://explore.alas.aws.amazon.com/CVE-2026-74564.html

https://explore.alas.aws.amazon.com/CVE-2026-74566.html

https://explore.alas.aws.amazon.com/CVE-2026-74567.html

https://explore.alas.aws.amazon.com/CVE-2026-74569.html

https://explore.alas.aws.amazon.com/CVE-2026-74577.html

https://explore.alas.aws.amazon.com/CVE-2026-74579.html

https://explore.alas.aws.amazon.com/CVE-2026-74580.html

https://explore.alas.aws.amazon.com/CVE-2026-74581.html

https://explore.alas.aws.amazon.com/CVE-2026-74583.html

https://explore.alas.aws.amazon.com/CVE-2026-74625.html

https://explore.alas.aws.amazon.com/CVE-2026-74654.html

https://explore.alas.aws.amazon.com/CVE-2026-74658.html

https://explore.alas.aws.amazon.com/CVE-2026-74664.html

https://explore.alas.aws.amazon.com/CVE-2026-74697.html

https://explore.alas.aws.amazon.com/CVE-2026-74705.html

https://explore.alas.aws.amazon.com/CVE-2026-74720.html

Plugin 詳細資訊

嚴重性: High

ID: 341859

檔案名稱: al2_ALASKERNEL-5_10-2026-130.nasl

版本: 1.2

類型: Local

代理程式: unix

已發布: 2026/8/31

已更新: 2026/9/1

支援的感應器: Agentless Assessment, Continuous Assessment, Frictionless Assessment Agent, Frictionless Assessment AWS, Nessus Agent, Tenable Cloud Security, Tenable Self-Hosted Container Security, Nessus

風險資訊

VPR

風險因素: High

分數: 7.9

百分位數: 99.36

CVSS v2

風險因素: Medium

基本分數: 6.8

時間性分數: 5.3

媒介: CVSS2#AV:L/AC:L/Au:S/C:C/I:C/A:C

CVSS 評分資料來源: CVE-2024-58240

CVSS v3

風險因素: High

基本分數: 7.8

時間性分數: 7

媒介: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

時間媒介: CVSS:3.0/E:P/RL:O/RC:C

弱點資訊

CPE: cpe:/o:amazon:linux:2, p-cpe:/a:amazon:linux:bpftool-debuginfo, p-cpe:/a:amazon:linux:bpftool, p-cpe:/a:amazon:linux:kernel-debuginfo-common-aarch64, p-cpe:/a:amazon:linux:kernel-debuginfo-common-x86_64, p-cpe:/a:amazon:linux:kernel-debuginfo, p-cpe:/a:amazon:linux:kernel-devel, p-cpe:/a:amazon:linux:kernel-headers, p-cpe:/a:amazon:linux:kernel-livepatch-5.10.265-265.1078, p-cpe:/a:amazon:linux:kernel-tools-debuginfo, p-cpe:/a:amazon:linux:kernel-tools-devel, p-cpe:/a:amazon:linux:kernel-tools, p-cpe:/a:amazon:linux:kernel, p-cpe:/a:amazon:linux:perf-debuginfo, p-cpe:/a:amazon:linux:perf, p-cpe:/a:amazon:linux:python-perf-debuginfo, p-cpe:/a:amazon:linux:python-perf

必要的 KB 項目: Host/local_checks_enabled, Host/AmazonLinux/release, Host/AmazonLinux/rpm-list

可被惡意程式利用: true

可輕鬆利用: Exploits are available

修補程式發佈日期: 2026/8/31

弱點發布日期: 2025/5/20

參考資訊

CVE: CVE-2024-58240, CVE-2025-37920, CVE-2026-46119, CVE-2026-53090, CVE-2026-64320, CVE-2026-64543, CVE-2026-64562, CVE-2026-64563, CVE-2026-64564, CVE-2026-64567, CVE-2026-64572, CVE-2026-64579, CVE-2026-64581, CVE-2026-64582, CVE-2026-68117, CVE-2026-68121, CVE-2026-68123, CVE-2026-68127, CVE-2026-68131, CVE-2026-68138, CVE-2026-68142, CVE-2026-68143, CVE-2026-68153, CVE-2026-68154, CVE-2026-68155, CVE-2026-68156, CVE-2026-68157, CVE-2026-68158, CVE-2026-68160, CVE-2026-68184, CVE-2026-68186, CVE-2026-68284, CVE-2026-68297, CVE-2026-68299, CVE-2026-68300, CVE-2026-68313, CVE-2026-68315, CVE-2026-68320, CVE-2026-68322, CVE-2026-68325, CVE-2026-68335, CVE-2026-68338, CVE-2026-68365, CVE-2026-68376, CVE-2026-68377, CVE-2026-68388, CVE-2026-68398, CVE-2026-68399, CVE-2026-68425, CVE-2026-68428, CVE-2026-68432, CVE-2026-68433, CVE-2026-68480, CVE-2026-72019, CVE-2026-72051, CVE-2026-72053, CVE-2026-72066, CVE-2026-72113, CVE-2026-72114, CVE-2026-72115, CVE-2026-72116, CVE-2026-72117, CVE-2026-72118, CVE-2026-72119, CVE-2026-72121, CVE-2026-72123, CVE-2026-72392, CVE-2026-74281, CVE-2026-74464, CVE-2026-74465, CVE-2026-74469, CVE-2026-74471, CVE-2026-74473, CVE-2026-74475, CVE-2026-74480, CVE-2026-74481, CVE-2026-74482, CVE-2026-74485, CVE-2026-74490, CVE-2026-74492, CVE-2026-74495, CVE-2026-74512, CVE-2026-74518, CVE-2026-74519, CVE-2026-74523, CVE-2026-74547, CVE-2026-74549, CVE-2026-74556, CVE-2026-74557, CVE-2026-74563, CVE-2026-74564, CVE-2026-74566, CVE-2026-74567, CVE-2026-74569, CVE-2026-74577, CVE-2026-74579, CVE-2026-74580, CVE-2026-74581, CVE-2026-74583, CVE-2026-74625, CVE-2026-74654, CVE-2026-74658, CVE-2026-74664, CVE-2026-74697, CVE-2026-74705, CVE-2026-74720