RHEL 9:核心 (RHSA-2026:71700)

critical Nessus Plugin ID 350192

概要

遠端 Red Hat 主機缺少一個或多個安全性更新。

說明

遠端 Redhat Enterprise Linux 9 主機上安裝的多個套件受到 RHSA-2026:71700 公告中提及的多個弱點影響。

核心套件中包含 Linux 核心,後者是任何 Linux 作業系統的核心。

安全性修正:

* 核心:fbcon:釋放模式時,將 fb_display[i]->mode 設定為 NULL (CVE-2025-40323)

* 核心:smb: smbdirect:引入 smbdirect_socket.recv_io.credits.available (CVE-2026-31539)

* 核心:drm/amdgpu/vcn3:剖析 dec msg (CVE-2026-46230) 時防止 OOB 讀取

* 核心:drm/amdgpu/vcn4:剖析 IB 時防止 OOB 讀取 (CVE-2026-46204)

* 核心:drm/amdgpu/vcn4:剖析 dec msg (CVE-2026-46199) 時防止 OOB 讀取

* 核心:drm/amdgpu/userq:修正對過時 WPTR 映射的存取 (CVE-2026-46311)

* 核心:netfilter: nf_queue:佇列時保持橋接 skb->dev (CVE-2026-52912)

* 核心:accel/ivpu:在 MS get_info_ioctl 中新增緩衝區溢位檢查 (CVE-2026-53203)

* 核心:drm/xe/eustall:修正在關閉 (CVE-2026-53290) 中停用串流之前呼叫的drm_dev_put

* 核心:drm/virtio:使用不間斷的 resv 鎖定進行平面更新 (CVE-2026-64098)

* 核心: Linux 核心:透過過時指標 (CVE-2026-68121) 導致 PPPoE 記憶體損毀

* 核心:drm/amdgpu/vce:修正影像大小中的整數溢位 (CVE-2026-68108)

* 核心:drm/amdkfd:修正 CWSR 總大小計算中的 32 位元溢位 (CVE-2026-68257)

* 核心:drm/xe/rtp:將 RING_FORCE_TO_NONPRIV_DENY 新增至 OA 白名單 (CVE-2026-68267)

* 核心:drm/xe:保留匯入 BO 的 dma-buf 參照 (CVE-2026-68266)

* 核心:drm/amdgpu:修正上下文狀態覆寫處理 (CVE-2026-68273)

* 核心:Linux 核心 IPVS:由於過時的記憶體參照而導致的拒絕服務 (CVE-2026-80714)

錯誤修正和增強功能:

* RHEL 9 中的 MADVISE i/o 大小額外受 read_ahead_kb 限制 - 在 RHEL8 中透過 RHEL-22476 [rhel-9.8.z] 解決 (JIRA:RHEL-260938)

如需安全性問題的詳細資料,包括影響、CVSS 評分、致謝及其他相關資訊,請參閱〈參照〉一節列出的 CVE 頁面。

Tenable 已直接從 Red Hat Enterprise Linux 安全公告擷取前置描述區塊。

請注意,Nessus 並未測試這些問題,而是僅依據應用程式自我報告的版本號碼作出判斷。

解決方案

更新受影響的套件。

另請參閱

https://access.redhat.com/errata/RHSA-2026:71700

https://access.redhat.com/security/updates/classification/#important

https://bugzilla.redhat.com/show_bug.cgi?id=2419883

https://bugzilla.redhat.com/show_bug.cgi?id=2461575

https://bugzilla.redhat.com/show_bug.cgi?id=2482533

https://bugzilla.redhat.com/show_bug.cgi?id=2482543

https://bugzilla.redhat.com/show_bug.cgi?id=2482649

https://bugzilla.redhat.com/show_bug.cgi?id=2486470

https://bugzilla.redhat.com/show_bug.cgi?id=2492105

https://bugzilla.redhat.com/show_bug.cgi?id=2492798

https://bugzilla.redhat.com/show_bug.cgi?id=2493739

https://bugzilla.redhat.com/show_bug.cgi?id=2502536

https://bugzilla.redhat.com/show_bug.cgi?id=2513233

https://bugzilla.redhat.com/show_bug.cgi?id=2513361

https://bugzilla.redhat.com/show_bug.cgi?id=2513372

https://bugzilla.redhat.com/show_bug.cgi?id=2513414

https://bugzilla.redhat.com/show_bug.cgi?id=2513429

https://bugzilla.redhat.com/show_bug.cgi?id=2513434

http://www.nessus.org/u?a950346f

Plugin 詳細資訊

嚴重性: Critical

ID: 350192

檔案名稱: redhat-RHSA-2026-71700.nasl

版本: 1.1

類型: Local

代理程式: unix

已發布: 2026/9/25

已更新: 2026/9/25

支援的感應器: Frictionless Assessment AWS, Frictionless Assessment Azure, Frictionless Assessment Agent, Nessus Agent, Agentless Assessment, Continuous Assessment, Tenable Cloud Security, Tenable Self-Hosted Container Security, Nessus

風險資訊

VPR

風險因素: High

分數: 7.9

百分位數: 99.35

Vendor

Vendor Severity: Important

CVSS v2

風險因素: Critical

基本分數: 10

時間性分數: 7.8

媒介: CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C

CVSS 評分資料來源: CVE-2026-80714

CVSS v3

風險因素: Critical

基本分數: 9.8

時間性分數: 8.8

媒介: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

時間媒介: CVSS:3.0/E:P/RL:O/RC:C

弱點資訊

CPE: cpe:/o:redhat:enterprise_linux:9, cpe:/o:redhat:rhel_eus:9.8, p-cpe:/a:redhat:enterprise_linux:kernel-64k-core, p-cpe:/a:redhat:enterprise_linux:kernel-64k-debug-core, p-cpe:/a:redhat:enterprise_linux:kernel-64k-debug-devel-matched, p-cpe:/a:redhat:enterprise_linux:kernel-64k-debug-devel, p-cpe:/a:redhat:enterprise_linux:kernel-64k-debug-modules-core, p-cpe:/a:redhat:enterprise_linux:kernel-64k-debug-modules-extra, p-cpe:/a:redhat:enterprise_linux:kernel-64k-debug-modules, p-cpe:/a:redhat:enterprise_linux:kernel-64k-debug, p-cpe:/a:redhat:enterprise_linux:kernel-64k-devel-matched, p-cpe:/a:redhat:enterprise_linux:kernel-64k-devel, p-cpe:/a:redhat:enterprise_linux:kernel-64k-modules-core, p-cpe:/a:redhat:enterprise_linux:kernel-64k-modules-extra, p-cpe:/a:redhat:enterprise_linux:kernel-64k-modules, p-cpe:/a:redhat:enterprise_linux:kernel-64k, p-cpe:/a:redhat:enterprise_linux:kernel-core, p-cpe:/a:redhat:enterprise_linux:kernel-debug-core, p-cpe:/a:redhat:enterprise_linux:kernel-debug-devel-matched, p-cpe:/a:redhat:enterprise_linux:kernel-debug-devel, p-cpe:/a:redhat:enterprise_linux:kernel-debug-modules-core, p-cpe:/a:redhat:enterprise_linux:kernel-debug-modules-extra, p-cpe:/a:redhat:enterprise_linux:kernel-debug-modules, p-cpe:/a:redhat:enterprise_linux:kernel-debug-uki-virt, p-cpe:/a:redhat:enterprise_linux:kernel-debug, p-cpe:/a:redhat:enterprise_linux:kernel-devel-matched, p-cpe:/a:redhat:enterprise_linux:kernel-devel, p-cpe:/a:redhat:enterprise_linux:kernel-modules-core, p-cpe:/a:redhat:enterprise_linux:kernel-modules-extra, p-cpe:/a:redhat:enterprise_linux:kernel-modules, p-cpe:/a:redhat:enterprise_linux:kernel-rt-64k-core, p-cpe:/a:redhat:enterprise_linux:kernel-rt-64k-debug-core, p-cpe:/a:redhat:enterprise_linux:kernel-rt-64k-debug-devel, p-cpe:/a:redhat:enterprise_linux:kernel-rt-64k-debug-modules-core, p-cpe:/a:redhat:enterprise_linux:kernel-rt-64k-debug-modules-extra, p-cpe:/a:redhat:enterprise_linux:kernel-rt-64k-debug-modules, p-cpe:/a:redhat:enterprise_linux:kernel-rt-64k-debug, p-cpe:/a:redhat:enterprise_linux:kernel-rt-64k-devel, p-cpe:/a:redhat:enterprise_linux:kernel-rt-64k-modules-core, p-cpe:/a:redhat:enterprise_linux:kernel-rt-64k-modules-extra, p-cpe:/a:redhat:enterprise_linux:kernel-rt-64k-modules, p-cpe:/a:redhat:enterprise_linux:kernel-rt-64k, p-cpe:/a:redhat:enterprise_linux:kernel-rt-core, p-cpe:/a:redhat:enterprise_linux:kernel-rt-debug-core, p-cpe:/a:redhat:enterprise_linux:kernel-rt-debug-devel, p-cpe:/a:redhat:enterprise_linux:kernel-rt-debug-modules-core, p-cpe:/a:redhat:enterprise_linux:kernel-rt-debug-modules-extra, p-cpe:/a:redhat:enterprise_linux:kernel-rt-debug-modules, p-cpe:/a:redhat:enterprise_linux:kernel-rt-debug, p-cpe:/a:redhat:enterprise_linux:kernel-rt-devel, p-cpe:/a:redhat:enterprise_linux:kernel-rt-modules-core, p-cpe:/a:redhat:enterprise_linux:kernel-rt-modules-extra, p-cpe:/a:redhat:enterprise_linux:kernel-rt-modules, p-cpe:/a:redhat:enterprise_linux:kernel-rt, p-cpe:/a:redhat:enterprise_linux:kernel-tools-libs-devel, p-cpe:/a:redhat:enterprise_linux:kernel-tools-libs, p-cpe:/a:redhat:enterprise_linux:kernel-tools, p-cpe:/a:redhat:enterprise_linux:kernel-uki-virt-addons, p-cpe:/a:redhat:enterprise_linux:kernel-uki-virt, p-cpe:/a:redhat:enterprise_linux:kernel-zfcpdump-core, p-cpe:/a:redhat:enterprise_linux:kernel-zfcpdump-devel-matched, p-cpe:/a:redhat:enterprise_linux:kernel-zfcpdump-devel, p-cpe:/a:redhat:enterprise_linux:kernel-zfcpdump-modules-core, p-cpe:/a:redhat:enterprise_linux:kernel-zfcpdump-modules-extra, p-cpe:/a:redhat:enterprise_linux:kernel-zfcpdump-modules, p-cpe:/a:redhat:enterprise_linux:kernel-zfcpdump, p-cpe:/a:redhat:enterprise_linux:kernel, p-cpe:/a:redhat:enterprise_linux:libperf, p-cpe:/a:redhat:enterprise_linux:perf, p-cpe:/a:redhat:enterprise_linux:python3-perf, p-cpe:/a:redhat:enterprise_linux:rtla, p-cpe:/a:redhat:enterprise_linux:rv

必要的 KB 項目: Host/local_checks_enabled, Host/RedHat/release, Host/RedHat/rpm-list, Host/cpu

可被惡意程式利用: true

可輕鬆利用: Exploits are available

修補程式發佈日期: 2026/9/25

弱點發布日期: 2025/12/8

參考資訊

CVE: CVE-2025-40323, CVE-2026-31539, CVE-2026-46199, CVE-2026-46204, CVE-2026-46230, CVE-2026-46311, CVE-2026-52912, CVE-2026-53203, CVE-2026-53290, CVE-2026-64098, CVE-2026-68108, CVE-2026-68121, CVE-2026-68257, CVE-2026-68266, CVE-2026-68267, CVE-2026-68273, CVE-2026-80714

CWE: 1188, 120, 125, 413, 416, 476, 787, 821, 825, 911

RHSA: 2026:71700