- What: Security update for Red Hat Enterprise Linux kernel modules
- Impact: Systems running RHEL 9.2 Update Services for SAP Solutions
Red Hat Product Errata RHSA-2026:36532 - Security Advisory Issued: 2026-07-08 Updated: 2026-07-08 RHSA-2026:36532 - Security Advisory Overview Updated Packages Synopsis Important: kpatch-patch-5_14_0-284_117_1, kpatch-patch-5_14_0-284_134_1, kpatch-patch-5_14_0-284_148_1, kpatch-patch-5_14_0-284_158_1, and kpatch-patch-5_14_0-284_172_1 security update Type/Severity Security Advisory: Important Red Hat Lightspeed patch analysis Identify and remediate systems affected by this advisory. View affected systems Topic An update for multiple packages is now available for Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. Description This is a kernel live patch module which can be loaded by the kpatch command line utility to modify the code of a running kernel. This patch module is targeted for kernel-5.14.0-284.117.1.el9_2. Security Fix(es): kernel: Linux kernel KVM: Privilege escalation or denial of service due to improper shadow page table entry handling (CVE-2026-23401) kernel: nfsd: fix heap overflow in NFSv4.0 LOCK replay cache (CVE-2026-31402) kernel: Linux kernel: Use-after-free in bonding driver leads to denial of service (CVE-2026-31419) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Solution For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 Affected Products Red Hat Enterprise Linux Server - AUS 9.2 x86_64 Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.2 ppc64le Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.2 x86_64 Red Hat Enterprise Linux for x86_64 - Extended Life Cycle 9.2 x86_64 Red Hat Enterprise Linux for Power, little endian - Extended Life Cycle 9.2 ppc64le Fixes BZ - 2453803 - CVE-2026-23401 kernel: Linux kernel KVM: Privilege escalation or denial of service due to improper shadow page table entry handling BZ - 2454844 - CVE-2026-31402 kernel: nfsd: fix heap overflow in NFSv4.0 LOCK replay cache BZ - 2457829 - CVE-2026-31419 kernel: Linux kernel: Use-after-free in bonding driver leads to denial of service CVEs CVE-2026-23401 CVE-2026-31402 CVE-2026-31419 References https://access.redhat.com/security/updates/classification/#important Note: More recent versions of these packages may be available. Click a package name for more details. Red Hat Enterprise Linux Server - AUS 9.2 SRPM kpatch-patch-5_14_0-284_117_1-1-16.el9_2.src.rpm SHA-256: a155ffe6b1e33988713b426650f72b1e4900ebe633ba7f47eb3961dc1831ad51 kpatch-patch-5_14_0-284_134_1-1-10.el9_2.src.rpm SHA-256: 84538963c771a1c40cc3d2415f48b0d9c6a2b86b3714af9f7c87e95e40a10334 kpatch-patch-5_14_0-284_148_1-1-8.el9_2.src.rpm SHA-256: 9bbbdde48844a5d635274fd7aa654b69a6cbeb6dd82a1a87621f9b64c9488808 kpatch-patch-5_14_0-284_158_1-1-6.el9_2.src.rpm SHA-256: 490ce01074ddfdad3bd21f462506f569ba540eaf95b2f9b024e8a3c9e2b815b8 kpatch-patch-5_14_0-284_172_1-1-3.el9_2.src.rpm SHA-256: 50dadb820406156fb5d1781c1b6489e1a9e906869ca3d55f540944f2c0637f32 x86_64 kpatch-patch-5_14_0-284_117_1-1-16.el9_2.x86_64.rpm SHA-256: 3e2075da6b406323722998720dcec3fae1f460fcbfd6879a1e5240a5e89ba7f9 kpatch-patch-5_14_0-284_117_1-debuginfo-1-16.el9_2.x86_64.rpm SHA-256: f9db7c6905cae0b2ec8033cdb2a97ba3ecb99efc6723822fb637f7c1896b2f4a kpatch-patch-5_14_0-284_117_1-debugsource-1-16.el9_2.x86_64.rpm SHA-256: e162961078457f36112f447e48e6f216533d640dd980716bd2462a851202d4bb kpatch-patch-5_14_0-284_134_1-1-10.el9_2.x86_64.rpm SHA-256: 5ce11f9fbab13579f476f367509f8f4d44d1891d2337752bd02736e667b3946a kpatch-patch-5_14_0-284_134_1-debuginfo-1-10.el9_2.x86_64.rpm SHA-256: 816a7cd4481562ad70f09aaaca673017507d72a2c2e57cfbcd5b221e844bcd07 kpatch-patch-5_14_0-284_134_1-debugsource-1-10.el9_2.x86_64.rpm SHA-256: 057c099c3b1efdaf4639e0c5450778a5123fed345cdb7bd515c119b89170e378 kpatch-patch-5_14_0-284_148_1-1-8.el9_2.x86_64.rpm SHA-256: da88e194c1720816efed11e14b448d56a38522fe554a0bd885d23946357c173f kpatch-patch-5_14_0-284_148_1-debuginfo-1-8.el9_2.x86_64.rpm SHA-256: 50b39f36b5ca147e8f77c4a81318ae3d7689652af503002bee3ea3431aff79d8 kpatch-patch-5_14_0-284_148_1-debugsource-1-8.el9_2.x86_64.rpm SHA-256: 5e30f379e30c3629fcea2adbd34e335f53f0b380363b57196dc18fc2852ad0d8 kpatch-patch-5_14_0-284_158_1-1-6.el9_2.x86_64.rpm SHA-256: 00a3d1feab957192c27fc2dea50bb745c2110fa2ad91d719079b580d435509db kpatch-patch-5_14_0-284_158_1-debuginfo-1-6.el9_2.x86_64.rpm SHA-256: 7ad98b769dc83e677d4f7d01320781174e2fa01789c191a2a0494001c30816e3 kpatch-patch-5_14_0-284_158_1-debugsource-1-6.el9_2.x86_64.rpm SHA-256: 29e3a57b406972ca8f64c2ad52356bbccf67b1eb5df35a5582127fbab1db1e1c kpatch-patch-5_14_0-284_172_1-1-3.el9_2.x86_64.rpm SHA-256: 4075657d7b9ba75f428f641b5fa9fabd170123bb7120da04f640cfd502d590a8 kpatch-patch-5_14_0-284_172_1-debuginfo-1-3.el9_2.x86_64.rpm SHA-256: a3b23adbbaa0fb0add751fb7b418e7c1747dbf8f4632cae0f0d094b0879787ef kpatch-patch-5_14_0-284_172_1-debugsource-1-3.el9_2.x86_64.rpm SHA-256: d06d73ac95f6872d6d3fbe9a8d5ebe317bd4d7f0757a86cde34a55ca3376968f Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.2 SRPM kpatch-patch-5_14_0-284_117_1-1-16.el9_2.src.rpm SHA-256: a155ffe6b1e33988713b426650f72b1e4900ebe633ba7f47eb3961dc1831ad51 kpatch-patch-5_14_0-284_134_1-1-10.el9_2.src.rpm SHA-256: 84538963c771a1c40cc3d2415f48b0d9c6a2b86b3714af9f7c87e95e40a10334 kpatch-patch-5_14_0-284_148_1-1-8.el9_2.src.rpm SHA-256: 9bbbdde48844a5d635274fd7aa654b69a6cbeb6dd82a1a87621f9b64c9488808 kpatch-patch-5_14_0-284_158_1-1-6.el9_2.src.rpm SHA-256: 490ce01074ddfdad3bd21f462506f569ba540eaf95b2f9b024e8a3c9e2b815b8 kpatch-patch-5_14_0-284_172_1-1-3.el9_2.src.rpm SHA-256: 50dadb820406156fb5d1781c1b6489e1a9e906869ca3d55f540944f2c0637f32 ppc64le kpatch-patch-5_14_0-284_117_1-1-16.el9_2.ppc64le.rpm SHA-256: 4c7cbf5cf99379e187cd26415112a45c08ba479cae126b28c0970cc716716bea kpatch-patch-5_14_0-284_117_1-debuginfo-1-16.el9_2.ppc64le.rpm SHA-256: 2e2fb55090bffad3fd28320fa2ea414bd91f120b668d1bbdc0c612928a191010 kpatch-patch-5_14_0-284_117_1-debugsource-1-16.el9_2.ppc64le.rpm SHA-256: 8224ad4ac2bdec29994e7e0c03843c7087a766bab4f991203c5569d76616b394 kpatch-patch-5_14_0-284_134_1-1-10.el9_2.ppc64le.rpm SHA-256: cc3809e6cc18a3e51b6e29e4680e31dc8302033ee07d23776cee603766b29c0a kpatch-patch-5_14_0-284_134_1-debuginfo-1-10.el9_2.ppc64le.rpm SHA-256: a04426af2b7a20b39d663b36f8e315375165a32aff52bb246a8ef67b56172537 kpatch-patch-5_14_0-284_134_1-debugsource-1-10.el9_2.ppc64le.rpm SHA-256: 1358816d2cdafdccf891989cd43346418afdac06369a33432ed97b0a5a7e6064 kpatch-patch-5_14_0-284_148_1-1-8.el9_2.ppc64le.rpm SHA-256: 8a6f8d4b3f59ce29170475d913571553275574ca250dc9f8b904d0fabf50eef2 kpatch-patch-5_14_0-284_148_1-debuginfo-1-8.el9_2.ppc64le.rpm SHA-256: c0276408139a2d5bb595274a666a0a14f40a3fa3c145d3e884a1515baabe4ed7 kpatch-patch-5_14_0-284_148_1-debugsource-1-8.el9_2.ppc64le.rpm SHA-256: 043282ba661c80fe08155cec77a6ede4ee0b6a12481f30ecbc830fcb5342e2a9 kpatch-patch-5_14_0-284_158_1-1-6.el9_2.ppc64le.rpm SHA-256: 70cf954278ff6e7d4deb8525a6af6557bf9ab7f7c70d028639df7876572c4f0e kpatch-patch-5_14_0-284_158_1-debuginfo-1-6.el9_2.ppc64le.rpm SHA-256: 9349793467c0027b9a95214583ed16bd35be26ccba15b3f8357c665099fdccb5 kpatch-patch-5_14_0-284_158_1-debugsource-1-6.el9_2.ppc64le.rpm SHA-256: a323c18f11c0477fcdb2dd23ef228e160a71e0cf1d2659bb6bc4b655c5f9d41a kpatch-patch-5_14_0-284_172_1-1-3.el9_2.ppc64le.rpm SHA-256: e91dad58ccda62715ea2d76f9ceb4872900e33b14d14c62fda5ee6e4382b197f kpatch-patch-5_14_0-284_172_1-debuginfo-1-3.el9_2.ppc64le.rpm SHA-256: 3fd4c6089a41bbd91dfd6a70c9a08921b5a46531b44540d2eff2fa533ed8fde4 kpatch-patch-5_14_0-284_172_1-debugsource-1-3.el9_2.ppc64le.rpm SHA-256: 150f843a62d510bfc59f04336e96ef622f8473efaffa16b68936bcd4e9fc536c Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.2 SRPM kpatch-patch-5_14_0-284_117_1-1-16.el9_2.src.rpm SHA-256: a155ffe6b1e33988713b426650f72b1e4900ebe633ba7f47eb3961dc1831ad51 kpatch-patch-5_14_0-284_134_1-1-10.el9_2.src.rpm SHA-256: 84538963c771a1c40cc3d2415f48b0d9c6a2b86b3714af9f7c87e95e40a10334 kpatch-patch-5_14_0-284_148_1-1-8.el9_2.src.rpm SHA-256: 9bbbdde48844a5d635274fd7aa654b69a6cbeb6dd82a1a87621f9b64c9488808 kpatch-patch-5_14_0-284_158_1-1-6.el9_2.src.rpm SHA-256: 490ce01074ddfdad3bd21f462506f569ba540eaf95b2f9b024e8a3c9e2b815b8 kpatch-patch-5_14_0-284_172_1-1-3.el9_2.src.rpm SHA-256: 50dadb820406156fb5d1781c1b6489e1a9e906869ca3d55f540944f2c0637f32 x86_64 kpatch-patch-5_14_0-284_117_1-1-16.el9_2.x86_64.rpm SHA-256: 3e2075da6b406323722998720dcec3fae1f460fcbfd6879a1e5240a5e89ba7f9 kpatch-patch-5_14_0-284_117_1-debuginfo-1-16.el9_2.x86_64.rpm SHA-256: f9db7c6905cae0b2ec8033cdb2a97ba3ecb99efc6723822fb637f7c1896b2f4a kpatch-patch-5_14_0-284_117_1-debugsource-1-16.el9_2.x86_64.rpm SHA-256: e162961078457f36112f447e48e6f216533d640dd980716bd2462a851202d4bb kpatch-patch-5_14_0-284_134_1-1-10.el9_2.x86_64.rpm SHA-256: 5ce11f9fbab13579f476f367509f8f4d44d1891d2337752bd02736e667b3946a kpatch-patch-5_14_0-284_134_1-debuginfo-1-10.el9_2.x86_64.rpm SHA-256: 816a7cd4481562ad70f09aaaca673017507d72a2c2e57cfbcd5b221e844bcd07 kpatch-patch-5_14_0-284_134_1-debugsource-1-10.el9_2.x86_64.rpm SHA-256: 057c099c3b1efdaf4639e0c5450778a5123fed345cdb7bd515c119b89170e378 kpatch-patch-5_14_0-284_148_1-1-8.el9_2.x86_64.rpm SHA-256: da88e194c1720816efed11e14b448d56a38522fe554a0bd885d23946357c173f kpatch-patch-5_14_0-284_148_1-debuginfo-1-8.el9_2.x86_64.rpm SHA-256: 50b39f36b5ca147e8f77c4a81318ae3d7689652af503002bee3ea3431aff79d8 kpatch-patch-5_14_0-284_148_1-debugsource-1-8.el9_2.x86_64.rpm SHA-256: 5e30f379e30c3629fcea2adbd3