The kernel packages contain the Linux kernel, the core of any Linux operating system.
Security Fix(es):
kernel: xfrm: Duplicate SPI Handling (CVE-2025-39797)
kernel: lib/buildid: use _kernelread() for sleepable context (CVE-2026-23002)
kernel: futex: Drop CLONE_THREAD requirement for private default hash alloc (CVE-2026-52973)
kernel: iommu/vt-d: Avoid NULL pointer dereference or refcount corruption (CVE-2026-53281)
kernel: blk-mq: pop cached request if it is usable (CVE-2026-64017)
Bug Fix(es) and Enhancement(s):
general protection fault during exportfs / nfsd4revokestates [rhel-9.8.z] (JIRA:Rocky Linux-188257)
Enable Pretimeout Watchdog Panic Functionality on x86 [rhel-9.8.z] (JIRA:Rocky Linux-193729)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.