CLSA-2026-1777614769

See a problem?
Import Source
https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos-stream8els/CLSA-2026-1777614769.json
JSON Data
https://api.osv.dev/v1/vulns/CLSA-2026-1777614769
Upstream
Published
2026-05-01T13:12:06Z
Modified
2026-06-01T00:33:14.416745508Z
Summary
kernel: Fix of 13 CVEs
Details
  • crypto: algif_aead - Fix minimum RX size check for decryption
  • crypto: afalg - Fix page reassignment overflow in afalgpulltsgl
  • crypto: authencesn - Fix src offset when decrypting in-place
  • crypto: authencesn - Do not place hiseq at end of dst for out-of-place decryption
  • crypto: authenc - use memcpy_sglist() instead of null skcipher
  • crypto: algif_aead - snapshot IV for async AEAD requests
  • crypto: algif_aead - Revert to operating out-of-place
  • crypto: algifaead - use memcpysglist() instead of null skcipher
  • crypto: scatterwalk - Backport memcpy_sglist()
  • crypto: authencesn - reject too-short AAD (assoclen<8) to match ESP/ESN spec
  • Bluetooth: L2CAP: Fix not validating setsockopt user input {CVE-2024-35965}
  • Bluetooth: RFCOMM: Fix not validating setsockopt user input {CVE-2024-35966}
  • Bluetooth: SCO: Fix not validating setsockopt user input {CVE-2024-35967}
  • asix: fix uninit-value in asixmdioread() {CVE-2021-47101}
  • net/sched: clsu32: use skbheaderpointercareful() {CVE-2026-23204}
  • net: add skbheaderpointer_careful() helper
  • ext4: lost matching-pair of trace in ext4_truncate
  • usb: xhci: Apply the link chain quirk on NEC isoc endpoints {CVE-2025-22022}
  • net/atm: remove the atmdev_ops {get, set}sockopt methods {CVE-2022-50410}
  • perf/core: Exit early on perf_mmap() fail {CVE-2025-38565}
  • fbdev: Fix vmalloc out-of-bounds write in fast_imageblit {CVE-2025-38685}
  • VMCI: fix race between vmcihostsetupnotify and vmcictxunsetnotify {CVE-2025-38102}
  • scsi: libsas: Fix use-after-free bug in smpexecutetask_sg() {CVE-2022-50422}
  • Bluetooth: hci_sock: Prevent race in socket write iter and sock bind {CVE-2025-68305}
  • VMCI: check context->notifypage after call to getuserpagesfast() to avoid GPF {CVE-2023-53259}
  • net/sched: schqfq: Avoid triggering mightsleep in atomic context in qfqdeleteclass
References

Affected packages

TuxCare:CentOS-Stream:8
bpftool

Package

Name
bpftool
Purl
pkg:rpm/tuxcare/bpftool?distro=centos-stream-8

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.0-553.6.1.el8_10.tuxcare.els17

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos-stream8els/CLSA-2026-1777614769.json"
kernel

Package

Name
kernel
Purl
pkg:rpm/tuxcare/kernel?distro=centos-stream-8

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.0-553.6.1.el8_10.tuxcare.els17

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos-stream8els/CLSA-2026-1777614769.json"
kernel-core

Package

Name
kernel-core
Purl
pkg:rpm/tuxcare/kernel-core?distro=centos-stream-8

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.0-553.6.1.el8_10.tuxcare.els17

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos-stream8els/CLSA-2026-1777614769.json"
kernel-cross-headers

Package

Name
kernel-cross-headers
Purl
pkg:rpm/tuxcare/kernel-cross-headers?distro=centos-stream-8

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.0-553.6.1.el8_10.tuxcare.els17

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos-stream8els/CLSA-2026-1777614769.json"
kernel-debug

Package

Name
kernel-debug
Purl
pkg:rpm/tuxcare/kernel-debug?distro=centos-stream-8

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.0-553.6.1.el8_10.tuxcare.els17

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos-stream8els/CLSA-2026-1777614769.json"
kernel-debug-core

Package

Name
kernel-debug-core
Purl
pkg:rpm/tuxcare/kernel-debug-core?distro=centos-stream-8

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.0-553.6.1.el8_10.tuxcare.els17

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos-stream8els/CLSA-2026-1777614769.json"
kernel-debug-devel

Package

Name
kernel-debug-devel
Purl
pkg:rpm/tuxcare/kernel-debug-devel?distro=centos-stream-8

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.0-553.6.1.el8_10.tuxcare.els17

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos-stream8els/CLSA-2026-1777614769.json"
kernel-debug-modules

Package

Name
kernel-debug-modules
Purl
pkg:rpm/tuxcare/kernel-debug-modules?distro=centos-stream-8

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.0-553.6.1.el8_10.tuxcare.els17

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos-stream8els/CLSA-2026-1777614769.json"
kernel-debug-modules-extra

Package

Name
kernel-debug-modules-extra
Purl
pkg:rpm/tuxcare/kernel-debug-modules-extra?distro=centos-stream-8

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.0-553.6.1.el8_10.tuxcare.els17

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos-stream8els/CLSA-2026-1777614769.json"
kernel-debug-modules-internal

Package

Name
kernel-debug-modules-internal
Purl
pkg:rpm/tuxcare/kernel-debug-modules-internal?distro=centos-stream-8

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.0-553.6.1.el8_10.tuxcare.els17

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos-stream8els/CLSA-2026-1777614769.json"
kernel-devel

Package

Name
kernel-devel
Purl
pkg:rpm/tuxcare/kernel-devel?distro=centos-stream-8

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.0-553.6.1.el8_10.tuxcare.els17

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos-stream8els/CLSA-2026-1777614769.json"
kernel-headers

Package

Name
kernel-headers
Purl
pkg:rpm/tuxcare/kernel-headers?distro=centos-stream-8

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.0-553.6.1.el8_10.tuxcare.els17

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos-stream8els/CLSA-2026-1777614769.json"
kernel-ipaclones-internal

Package

Name
kernel-ipaclones-internal
Purl
pkg:rpm/tuxcare/kernel-ipaclones-internal?distro=centos-stream-8

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.0-553.6.1.el8_10.tuxcare.els17

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos-stream8els/CLSA-2026-1777614769.json"
kernel-modules

Package

Name
kernel-modules
Purl
pkg:rpm/tuxcare/kernel-modules?distro=centos-stream-8

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.0-553.6.1.el8_10.tuxcare.els17

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos-stream8els/CLSA-2026-1777614769.json"
kernel-modules-extra

Package

Name
kernel-modules-extra
Purl
pkg:rpm/tuxcare/kernel-modules-extra?distro=centos-stream-8

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.0-553.6.1.el8_10.tuxcare.els17

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos-stream8els/CLSA-2026-1777614769.json"
kernel-modules-internal

Package

Name
kernel-modules-internal
Purl
pkg:rpm/tuxcare/kernel-modules-internal?distro=centos-stream-8

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.0-553.6.1.el8_10.tuxcare.els17

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos-stream8els/CLSA-2026-1777614769.json"
kernel-selftests-internal

Package

Name
kernel-selftests-internal
Purl
pkg:rpm/tuxcare/kernel-selftests-internal?distro=centos-stream-8

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.0-553.6.1.el8_10.tuxcare.els17

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos-stream8els/CLSA-2026-1777614769.json"
kernel-tools

Package

Name
kernel-tools
Purl
pkg:rpm/tuxcare/kernel-tools?distro=centos-stream-8

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.0-553.6.1.el8_10.tuxcare.els17

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos-stream8els/CLSA-2026-1777614769.json"
kernel-tools-libs

Package

Name
kernel-tools-libs
Purl
pkg:rpm/tuxcare/kernel-tools-libs?distro=centos-stream-8

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.0-553.6.1.el8_10.tuxcare.els17

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos-stream8els/CLSA-2026-1777614769.json"
kernel-tools-libs-devel

Package

Name
kernel-tools-libs-devel
Purl
pkg:rpm/tuxcare/kernel-tools-libs-devel?distro=centos-stream-8

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.0-553.6.1.el8_10.tuxcare.els17

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos-stream8els/CLSA-2026-1777614769.json"
perf

Package

Name
perf
Purl
pkg:rpm/tuxcare/perf?distro=centos-stream-8

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.0-553.6.1.el8_10.tuxcare.els17

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos-stream8els/CLSA-2026-1777614769.json"
python3-perf

Package

Name
python3-perf
Purl
pkg:rpm/tuxcare/python3-perf?distro=centos-stream-8

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.0-553.6.1.el8_10.tuxcare.els17

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos-stream8els/CLSA-2026-1777614769.json"