Amazon Linux 2023 : bpftool、kernel、kernel-devel (ALAS2023-2026-2058)

high Nessus プラグイン ID 337226

概要

リモートの Amazon Linux 2023 ホストに、セキュリティ更新プログラムがありません。

説明

したがって、ALAS2023-2026-2058 のアドバイザリに記載されている複数の脆弱性の影響を受けます。

Linux カーネルで、以下の脆弱性が解決されています。

NFSv4/flexfiles: ゼロのファイルハンドルバージョン数の拒否 (CVE-2026-53392)

Linux カーネルで、以下の脆弱性が解決されています。

nfsd: 遅延書き戻しエラーでの書き込み検証機能のリセット (CVE-2026-53393)

Linux カーネルで、以下の脆弱性が解決されています。

i2c: core: アダプター登録競合の修正

アダプターは、埋め込まれた構造体デバイスを参照する i2c_get_adapter() を使用して、ID に基づいて検索できます。

たとえば、NULL ポインターデリファレンスや use-after-free などの原因になる可能性のある初期化されていないデータへのアクセスを避けるため、IDR に追加する前にアダプター (その構造体デバイスを含む) が初期化されていることを確認してください。

バス通知子から登録される i2c-dev chardev は、現在 i2c_get_adapter() を使用しているため、登録前にアダプターを IDR に追加する必要があります。(CVE-2026-53400)

Linux カーネルで、以下の脆弱性が解決されています。

fbdev: fbcon: fbcon_do_set_font() の err_out における領域外読み取りの修正

fbcon_do_set_font() が失敗する場合 (例: 高メモリ圧迫状態での vc_resize() 内部のメモリ割り当て失敗が原因)、「err_out」ラベルにジャンプしてコンソールの状態をロールバックします。ただし、現在のロールバックロジックは「hi_font」状態を復元するのを忘れるため、深刻な状態のマシン破損につながります。

この関数の初期段階で、「vc->vc_hi_font_mask」を変更し、画面バッファを変更するために「set_vc_hi_font()」が呼び出される可能性があります。その後「vc_resize()」が失敗すると、「err_out」パスは「vc_font.charcount」を復元しますが、「vc_hi_font_mask」とスクリーンバッファのロールバックを完全にスキップします。

この不一致により、端末が非同期状態になります。「vc_hi_font_mask」が設定されたままであるため、VT サブシステムはユーザー空間から 255 を超える文字インデックスを受け入れ、これらをスクリーンバッファに書き込みます。その後のレンダリング呼び出し (「fbcon_putcs()」) はこれらの拡大したインデックスを使用して、戻された 256 文字のフォント配列にアクセスするため、決定論的な領域外読み取りとカーネルメモリの漏洩を引き起こす可能性があります。

エラーパスの「hi_font」マスクおよびスクリーンバッファに欠落しているロールバックロジックを追加することで、これを修正します。
(CVE-2026-53402)

Linux カーネルで、以下の脆弱性が解決されています。

KVM: ioeventfd データマッチのゲストトリガー可能な BUG_ON() を get_unaligned() で置換 (CVE-2026-63806)

Linux カーネルで、以下の脆弱性が解決されています。

block: ユーザー空間への bdev 疑似ファイルシステムのマウントの回避 (CVE-2026-63810)

Linux カーネルで、以下の脆弱性が解決されています。

fbdev: store_modes() の use-after-free の修正 (CVE-2026-63826)

Linux カーネルで、以下の脆弱性が解決されています。

net: ip_gre: changelink 用で、デバイス netns の CAP_NET_ADMIN を要求する (CVE-2026-63829)

Linux カーネルで、以下の脆弱性が解決されています。

netfilter :ebtables: 2 段階削除スキームへの移動 (CVE-2026-64077)

Linux カーネルで、以下の脆弱性が解決されています。

xfs: 領域のないコミットされたログ項目でのリカバリの失敗

トランザクションの最初の操作がベアトランザクションヘッダー (len == sizeof(struct xfs_trans_header)) の場合、xlog_recover_add_to_trans() はアイテムを追加しますが、リージョンは追加せず、ri_cnt == 0 および ri_buf == NULL の r_itemq に残します。

ヘッダーは op レコード間で分割できるため、後の ops は引き続き regions を追加できます。トランザクションが None でコミットする場合にのみ、項目は無効になります。ランタイムコミットパスはそのようなトランザクションを決して発行しないため、これは細工されたログでのみ発生します。これは、回復パーサーの AI 支援コード監査から得られたものです。

xlog_recover_reorder_trans() はアイテム上で ITEM_TYPE() を呼び出し、*(unsigned short
*)item->ri_buf[0].iov_base を読み取り、NULLri_buf で失敗します。さらに ri_buf[0] を読み取るコミットハンドラーの前に、そこで拒否します。

KASAN:範囲 [0x0000000000000000-0x0000000000000007] の null-ptr-deref RIP:0010:xlog_recover_reorder_trans (fs/xfs/xfs_log_recover.c:1836)xlog_recover_commit_trans (fs/xfs/xfs_log_recover.c:2043)xlog_recover_process_data (fs/xfs/xfs_log_recover.c:2501)xlog_do_recovery_pass (fs/xfs/xfs_log_recover.c:3244)xlog_recover (fs/xfs/xfs_log_recover.c:3493)xfs_log_mount(fs/xfs/xfs_log.c:618)xfs_mountfs (fs/xfs/xfs_mount.c:1034)xfs_fs_fill_super(fs/xfs/xfs_super.c:1938)vfs_get_tree (fs/super.c:1695)path_mount(fs/namespace.c:4161)__x64_sys_mount (fs/namespace.c:4367) (CVE-2026-64187)

Linux カーネルで、以下の脆弱性が解決されています。

netfilter: ipset: ダンプと ip_set_list のサイズ変更間の競合の修正 (CVE-2026-64189)

Linux カーネルで、以下の脆弱性が解決されています。

fuse: fuse_ref_folio() から戻される前にリクエストの再ロック (CVE-2026-64266)

Linux カーネルで、以下の脆弱性が解決されています。

i2c: core: アダプターの登録解除競合の修正 (CVE-2026-64279)

Linux カーネルで、以下の脆弱性が解決されています。

exfat: exfat_find_dir_entry() での uniname の進行を境界内に制限する (CVE-2026-64296)

Linux カーネルで、以下の脆弱性が解決されています。

NFSv4: O_TRUNC 用のオープンパーミッションマスクに MAY_WRITE を含める (CVE-2026-64298)

Linux カーネルで、以下の脆弱性が解決されています。

tracing: glob マッチングでの領域外読み取りの防止 (CVE-2026-64299)

Linux カーネルで、以下の脆弱性が解決されています。

crypto: drbg - CTR_DRBG の失敗時に成功を戻すことを修正 (CVE-2026-64306)

Linux カーネルで、以下の脆弱性が解決されています。

crypto: pcrypt - 非パラレルフォールバックのコールバックの復元 (CVE-2026-64312)

Linux カーネルで、以下の脆弱性が解決されています。

crypto: ecc - vli 乗算でのキャリーオーバーフローの修正 (CVE-2026-64313)

Linux カーネルで、以下の脆弱性が解決されています。

isofs: Rock Ridge シンボリックリンクコンポーネントを SL レコードの境界内に制限する (CVE-2026-64317)

Linux カーネルで、以下の脆弱性が解決されています。

udf: バイトカウントではなくエントリカウントとして、スペアリングテーブルの長さを検証 (CVE-2026-64322)

Linux カーネルで、以下の脆弱性が解決されています。

udf: VAT inode サイズに対して VAT ヘッダーの長さを検証 (CVE-2026-64323)

Linux カーネルで、以下の脆弱性が解決されています。

udf: パーティションの長さに対するフリーブロックエクステントを検証 (CVE-2026-64324)

Linux カーネルで、以下の脆弱性が解決されています。

bpf: スリープ可能な BPF プログラムからの LPM マップアクセスの許可 (CVE-2026-64352)

Linux カーネルで、以下の脆弱性が解決されています。

bpf: devmap のフラグメント化されたフレームの拒否 (CVE-2026-64355)

Linux カーネルで、以下の脆弱性が解決されています。

HID: multitouch: mt_io_flags での領域外ビットアクセスの修正 (CVE-2026-64364)

Linux カーネルで、以下の脆弱性が解決されています。

posix-cpu-timers: do_cpu_nanosleep() エラーパスの pid refcount 漏洩の修正 (CVE-2026-64370)

Linux カーネルで、以下の脆弱性が解決されています。

proc: exec_update_lock で ptrace_may_access() の保護 (パート 1) (CVE-2026-64371)

Linux カーネルで、以下の脆弱性が解決されています。

cpufreq: pcc: _OSC 評価における use-after-free および二重解放の修正 (CVE-2026-64372)

Linux カーネルで、以下の脆弱性が解決されています。

cpufreq: 再起動中のホットプラグと一時停止の競合の修正 (CVE-2026-64373)

Linux カーネルで、以下の脆弱性が解決されています。

sched/rt: RT_PUSH_IPI が非 PREEMPT_RT に対してデフォルトでオフにする (CVE-2026-64374)

Linux カーネルで、以下の脆弱性が解決されています。

proc: exec_update_lock で ptrace_may_access() の保護 (FD リンク) (CVE-2026-64375)

Linux カーネルで、以下の脆弱性が解決されています。

writeback: cgroup_writeback_umount() と inode_switch_wbs() の間の競合の修正 (CVE-2026-64378)

Linux カーネルで、以下の脆弱性が解決されています。

smb: client: POSIX SID の長さの解析を強化 (CVE-2026-64380)

Linux カーネルで、以下の脆弱性が解決されています。

smb: client: receive_encrypted_standard() の次のバッファ漏洩の修正 (CVE-2026-64381)

Linux カーネルで、以下の脆弱性が解決されています。

netfilter: ebtables: find_table_lock() の前にテーブル名を終了 (CVE-2026-64411)

Linux カーネルで、以下の脆弱性が解決されています。

netfilter: ebtables: モジュール名は NULL 終端にする必要がある (CVE-2026-64412)

Linux カーネルで、以下の脆弱性が解決されています。

netfilter: ebtables: ゼロチェーンスタック配列 (CVE-2026-64413)

Linux カーネルで、以下の脆弱性が解決されています。

net: ipv4: TCP の並べ替え sysctl 書き込みおよび MTU プローブサイズを境界内に制限する (CVE-2026-64422)

Linux カーネルで、以下の脆弱性が解決されています。

ipv4: igmp: デバイス破壊時に、ハッシュテーブルからマルチキャストグループを削除 (CVE-2026-64423)

Linux カーネルで、以下の脆弱性が解決されています。

io_uring/io-wq: リンクされた各作業項目の IO_WQ_BIT_EXIT を再チェック (CVE-2026-64425)

Linux カーネルで、以下の脆弱性が解決されています。

fs/ntfs3: log_replay copy_lcns のダーティページテーブルの容量を検証 (CVE-2026-64432)

Linux カーネルで、以下の脆弱性が解決されています。

audit: audit_queue 上の skb_queue_len() リーダーのデータ競合を修正 (CVE-2026-64435)

Linux カーネルで、以下の脆弱性が解決されています。

net: af_key: IPComp 状態の alg_key_len の初期化 (CVE-2026-64436)

Linux カーネルで、以下の脆弱性が解決されています。

smb: client: データエリアのない応答に対する暗黙の bcc[0] の除外を制限 (CVE-2026-64448)

Linux カーネルで、以下の脆弱性が解決されています。

tipc: ブロードキャスト Gap ACK ブロックの領域外読み取りを修正 (CVE-2026-64450)

Linux カーネルで、以下の脆弱性が解決されています。

hwrng: virtio: copy_data() でデバイスが報告する used.len をクランプ処理する (CVE-2026-64456)

Linux カーネルで、以下の脆弱性が解決されています。

mm/damon/ops-common: damon_hot_score() における極端な間隔を処理する (CVE-2026-64458)

Linux カーネルで、以下の脆弱性が解決されています。

usb: xhci: xhci_free_streams() 内のアトミックコンテキストのスリープを修正 (CVE-2026-64465)

Linux カーネルで、以下の脆弱性が解決されています。

vfio/mlx5: racy ビットフィールドを修正し、構造体レイアウトを縮小する (CVE-2026-64472)

Linux カーネルで、以下の脆弱性が解決されています。

vfio/pci: register_device() の失敗時に、VGA アービタークライアントを解放 (CVE-2026-64475)

Linux カーネルで、以下の脆弱性が解決されています。

vfio/pci: デバイスごとに disable_idle_d3 をラッチ (CVE-2026-64476)

Linux カーネルで、以下の脆弱性が解決されています。

ACPI: CPPC: フィールドの誤用によって引き起こされる UBSAN 警告の抑制 (CVE-2026-64512)

Linux カーネルで、以下の脆弱性が解決されています。

userfaultfd: must_wait での書き込み可能性チェックを pte_present() でゲートする (CVE-2026-64514)

Linux カーネルで、以下の脆弱性が解決されています。

net/sched: cls_api: tcf_qevent_handle における TC_ACT_CONSUMED の処理 (CVE-2026-64530)

Linux カーネルで、以下の脆弱性が解決されています。

fs/ntfs3: UpdateRecordData{Root,Allocation} の NTFS_DE view.data_off を境界内に制限する (CVE-2026-64532)

Linux カーネルで、以下の脆弱性が解決されています。

fs/ntfs3: log_replay 変換で lcns_follow を検証 (CVE-2026-64533)

Linux カーネルで、以下の脆弱性が解決されています。

ipv6: fib6_nh_mtu_change() での null-ptr-deref の修正 (CVE-2026-64538)

Linux カーネルで、以下の脆弱性が解決されています。

crypto: asymmetric_keys - pefile_digest_pe_contents における OOB 読み取りの修正 (CVE-2026-64544)

Linux カーネルで、以下の脆弱性が解決されています。

net、bpf: xdp_master_redirect() 内でマスターが NULL かどうかをチェック (CVE-2026-64545)

Linux カーネルで、以下の脆弱性が解決されています。

drm/edid: drm_parse_tiled_block() での OOB 読み取りの修正 (CVE-2026-64546)

Linux カーネルで、以下の脆弱性が解決されています。

bpf、sockmap: bpf_msg_push_data() でのオーバーフローするコピー + len を拒否 (CVE-2026-64548)

Linux カーネルで、以下の脆弱性が解決されています。

sctp: 期限切れを読み取る前に STALE_COOKIE の原因の長さを検証 (CVE-2026-64551)

Linux カーネルで、以下の脆弱性が解決されています。

virtio-net: receive_big() での len チェックの修正 (CVE-2026-64552)

Linux カーネルで、以下の脆弱性が解決されています。

net: psample: PSAMPLE_ATTR_DATA での情報漏洩の修正 (CVE-2026-64553)

Linux カーネルで、以下の脆弱性が解決されています。

posix-cpu-timers: リーダー以外の exec() 競合による UAF の回避 (CVE-2026-64560)

Linux カーネルで、以下の脆弱性が解決されています。

KVM: x86: MMU ページを利用可能にした *後* の無効または廃止されたルートのチェック

シャドー MMU で MMU ページを利用可能にした後に、期限の切れたページによる障害 (無効および/または廃止された root など) がないかチェックします。シャドーページの再要求によって使用中のルートが破壊される場合、つまり無効としてマークされる場合、KVM はメモリを無効なルートにマッピングしようとします。無効なルートに入力することはそれ自体では問題ありませんが、子シャドーページは親のロールを継承するため、map/fetch 中に作成された子は無効なページとして作成され、無効なページがアクティブな MMU ページのリストに決して載らないという KVM の不変性に違反します。

根本的な欠陥は、KVM が 2008 年に無効なルートの追跡を最初に開始した時点 (コミット 2e53d63acba7、KVM: MMU: zapped rootpagetables を無視) から存在していましたが、真の悪影響が生じたのは、無効なシャドーページをアクティブページのリストに入れることができないという不変条件が導入された 2020 年 (Linux 5.9) になってからでした。

#2 が、子シャドーページの作成時に role.invalid を継承することも理想的とは言えません。この欠陥には別途対処する予定です。(CVE-2026-64561)

Linux カーネルで、以下の脆弱性が解決されています。

btrfs: 書き込み不可のデバイスをトリムしない (CVE-2026-64593)

Linux カーネルで、以下の脆弱性が解決されています。

KVM: VMX: vCPU がゲストモードの場合、CR8 傍受更新で vmcs12 を入手 (CVE-2026-64604)

Linux カーネルで、以下の脆弱性が解決されています。

device property: fwnode_init() の fwnode_handle の残りのフィールドを初期化する (CVE-2026-68461)

Linux カーネルで、以下の脆弱性が解決されています。

ipvs: ipv6 トランスポートオフセットの誤りがるその他の個所を修正する (CVE-2026-68477)

Linux カーネルで、以下の脆弱性が解決されています。

cgroup/cpuset: mm mempolicy のバインド先を mems_allowed ではなく effective_mems に変更する (CVE-2026-72010)

Linux カーネルで、以下の脆弱性が解決されています。

drbd: 範囲外のペイロードサイズのデータ応答を拒否する (CVE-2026-72014)

Linux カーネルで、以下の脆弱性が解決されています。

ipvs: ip_vs_conn_new の完全な ip_vs_seq 構造体をリセットする (CVE-2026-72020)

Linux カーネルで、以下の脆弱性が解決されています。

ipvs: SCTP 状態検索で解析済みのトランスポートオフセットを使用する (CVE-2026-72021)

Linux カーネルで、以下の脆弱性が解決されています。

net/sched: sch_multiq: 直接 dequeue 呼び出しをピークおよび qdisc_dequeue_peeked で置換 (CVE-2026-72036)

Linux カーネルで、以下の脆弱性が解決されています。

net: ip6_gre: changelink で、デバイス netns の CAP_NET_ADMIN を要求する (CVE-2026-72052)

Linux カーネルで、以下の脆弱性が解決されています。

net: ipip: changelink で、デバイス netns の CAP_NET_ADMIN を要求する (CVE-2026-72053)

Linux カーネルで、以下の脆弱性が解決されています。

net: ip_vti: changelink で、デバイス netns の CAP_NET_ADMIN を要求する (CVE-2026-72054)

Linux カーネルで、以下の脆弱性が解決されています。

net: ip6_vti: changelink で、デバイス netns の CAP_NET_ADMIN を要求する (CVE-2026-72055)

Linux カーネルで、以下の脆弱性が解決されています。

net: sit: changelink で、デバイス netns の CAP_NET_ADMIN を要求する (CVE-2026-72061)

Linux カーネルで、以下の脆弱性が解決されています。

cpu: hotplug: sysfs のホットプラグ状態の出力を境界内に制限する (CVE-2026-72066)

Linux カーネルで、以下の脆弱性が解決されています。

cpu: hotplug: インスタンスごとのコールバックエラーを保存する (CVE-2026-72067)

Linux カーネルで、以下の脆弱性が解決されています。

posix-cpu-timers: update_rlimit_cpu() で u64 乗算を使用する (CVE-2026-72068)

Linux カーネルで、以下の脆弱性が解決されています。

net/mlx5e: macsec: RX SC 削除の metadata_dst の use-after-free を修正 (CVE-2026-72072)

Linux カーネルで、以下の脆弱性が解決されています。

scsi: target: core: REGISTER AND MOVE の iSCSI ISID use-after-free を修正 (CVE-2026-72083)

Linux カーネルで、以下の脆弱性が解決されています。

scsi: target: 受信したバッファへの PR-OUT TransportID 解析を境界内に制限する (CVE-2026-72084)

Linux カーネルで、以下の脆弱性が解決されています。

dm-verity: 潜在的な NULL ポインターデリファレンスを修正 (CVE-2026-72097)

Linux カーネルで、以下の脆弱性が解決されています。

dm_early_create: dm_resume 失敗時の使用済みテーブル解放を修正 (CVE-2026-72102)

Linux カーネルで、以下の脆弱性が解決されています。

dm-log: 32 ビットマシンの bitset_size オーバーフローを修正 (CVE-2026-72105)

Linux カーネルで、以下の脆弱性が解決されています。

dm thin metadata: コミット失敗時のメタデータスナップショットの一貫性を修正 (CVE-2026-72108)

Linux カーネルで、以下の脆弱性が解決されています。

can: bcm: 欠落している rcu リストの注釈と操作を追加 (CVE-2026-72120)

Linux カーネルで、以下の脆弱性が解決されています。

can: bcm: ロックのない bound/ifindex の競合と RX_SETUP のサイレントな失敗を修正 (CVE-2026-72122)

Linux カーネルで、以下の脆弱性が解決されています。

can: bcm: 作業キューへの rx_op 割り当て解除を延期し、thrtimer UAF を修正 (CVE-2026-72123)

Linux カーネルで、以下の脆弱性が解決されています。

tpm: TPM 文字デバイスをシーク不可能にする (CVE-2026-72135)

Linux カーネルで、以下の脆弱性が解決されています。

xfrm: xfrm_interface: changelink で、デバイス netns で CAP_NET_ADMIN を要求する (CVE-2026-72136)

Linux カーネルで、以下の脆弱性が解決されています。

xen/gntdev: ioctl でのエラー処理を修正 (CVE-2026-72138)

Linux カーネルで、以下の脆弱性が解決されています。

tpm: tpm_tis_spi: wait_for_tmp_stat() で wait_woken() を使用 (CVE-2026-72152)

Linux カーネルで、以下の脆弱性が解決されています。

mm/damon/sysfs-schemes: access_pattern_add_dirs() での dir put の順序を修正 (CVE-2026-72177)

Linux カーネルで、以下の脆弱性が解決されています。

ntfs3: hdr_insert_head 前の indx_insert_into_root の to_move を境界内に制限する (CVE-2026-72192)

Linux カーネルで、以下の脆弱性が解決されています。

ntfs3: RESTART_TABLE フリーチェイン走査の上限を rt->used に制限する (CVE-2026-72193)

Linux カーネルで、以下の脆弱性が解決されています。

fs/ntfs3: スタックオーバーフローを防ぐため、indx_find_buffer に深さ制限を追加する (CVE-2026-72194)

Linux カーネルで、以下の脆弱性が解決されています。

fs/ntfs3: data_off に対する UpdateResidentValue の attr_off を境界内に制限する (CVE-2026-72195)

Linux カーネルで、以下の脆弱性が解決されています。

fs/ntfs3: 分析パスにおける dp->page_lcns[] インデックスの copy_lcns を境界内に制限する (CVE-2026-72196)

Linux カーネルで、以下の脆弱性が解決されています。

fs/ntfs3: DeleteIndexEntryAllocation memmove の長さを境界内に制限する (CVE-2026-72197)

Linux カーネルで、以下の脆弱性が解決されています。

lockd: キャッシュされた nlm_do_fopen() の失敗時に nlm_file 参照カウントの漏洩をブロックする (CVE-2026-72218)

Linux カーネルで、以下の脆弱性が解決されています。

lockd: nlm_do_fopen() が失敗する際に nlm_file 漏洩をブロックする (CVE-2026-72219)

Linux カーネルで、以下の脆弱性が解決されています。

nvdimm/btt: discover_arenas() エラーパスでのアリーナサブ割り当ての解放 (CVE-2026-72223)

Linux カーネルで、以下の脆弱性が解決されています。

nvdimm/btt: btt_init() エラーパスでのアリーナの解放 (CVE-2026-72224)

Linux カーネルで、以下の脆弱性が解決されています。

jbd2: jbd2_journal_initialize_fast_commit() での整数アンダーフローの修正 (CVE-2026-72225)

Linux カーネルで、以下の脆弱性が解決されています。

selinux: TCP Fast Open での接続関連の権限をチェック (CVE-2026-72243)

Linux カーネルで、以下の脆弱性が解決されています。

netfilter: nf_conncount: tuple dedup でのゾーン比較を修正 (CVE-2026-72247)

Linux カーネルで、以下の脆弱性が解決されています。

netfilter: nf_conntrack_reasm: IPv6 デフラグ後の mac_header 調整の保護 (CVE-2026-72250)

Linux カーネルで、以下の脆弱性が解決されています。

netfilter: nf_nat_sip: 期限が切れている可能性のあるデータポインターの再ロード (CVE-2026-72251)

Linux カーネルで、以下の脆弱性が解決されています。

netfilter: nf_queue: NFQUEUE が偽の dst を保持している間、ブリッジデバイスをピン留めする (CVE-2026-72255)

Linux カーネルで、以下の脆弱性が解決されています。

netfilter: xt_cluster: ハッシュマッチでテンプレート conntrack を拒否する (CVE-2026-72256)

Linux カーネルで、以下の脆弱性が解決されています。

fbdev: hecubafb: hecubafb_probe() での潜在的なメモリリークの修正 (CVE-2026-72274)

Linux カーネルで、以下の脆弱性が解決されています。

fbdev: broadsheetfb: broadsheetfb_probe() での潜在的なメモリリークの修正 (CVE-2026-72275)

Linux カーネルで、以下の脆弱性が解決されています。

fbdev: metronomefb: metronomefb_probe() での潜在的なメモリリークの修正 (CVE-2026-72276)

Linux カーネルで、以下の脆弱性が解決されています。

KVM: kvm_io_bus_get_dev() のロック責任を呼び出し元に移動する (CVE-2026-72282)

Linux カーネルで、以下の脆弱性が解決されています。

KVM: x86: vCPU がその後 PV EOI を無効にした場合、保留中の PV EOI を無視する (CVE-2026-72284)

Linux カーネルで、以下の脆弱性が解決されています。

KVM: arm64: vgic: 割り込みを移行させる前に、割り込みがまだ自身のものであることを確認する (CVE-2026-72289)

Linux カーネルで、以下の脆弱性が解決されています。

KVM: s390: pci: AIF 有効化エラーの GISC 参照カウントの漏洩を修正する (CVE-2026-72290)

Linux カーネルで、以下の脆弱性が解決されています。

net: ife: ETH_HLEN が ife_decode() でプル可能であることを要求する (CVE-2026-72296)

Linux カーネルで、以下の脆弱性が解決されています。

smb: client: パススルー ioctl 境界チェックでのオーバーフローを修正する (CVE-2026-72310)

Linux カーネルで、以下の脆弱性が解決されています。

cifs: DFS 参照文字列のオフセットを検証 (CVE-2026-72318)

Linux カーネルで、以下の脆弱性が解決されています。

ipvs: ICMP エラーの内部ヘッダーがヘッドルーム内にあることを確認する (CVE-2026-72319)

Linux カーネルで、以下の脆弱性が解決されています。

ipv6: mcast: MLD 遅延作業の潜在的な UAF を修正する (CVE-2026-72322)

Linux カーネルで、以下の脆弱性が解決されています。

net/sched: cake: 長さをアンダーフローさせるオーバーヘッド値を拒否する (CVE-2026-72326)

Linux カーネルで、以下の脆弱性が解決されています。

net/mlx5e: HV VHCA 統計エージェント登録競合を修正 (CVE-2026-72342)

Linux カーネルで、以下の脆弱性が解決されています。

net/mlx5e: HV VHCA 統計のゼロサイズバッファ割り当てを修正 (CVE-2026-72343)

Linux カーネルで、以下の脆弱性が解決されています。

netfilter: xt_connmark: 無効なシフトパラメーターを拒否する (CVE-2026-72347)

Linux カーネルで、以下の脆弱性が解決されています。

netfilter: ip6tables: 無効な形式の IPv6 拡張ヘッダーをホットドロップ対象としてマーク (CVE-2026-72348)

Linux カーネルで、以下の脆弱性が解決されています。

netfilter: xt_rateest: xt_rateest_mt() の u64 切り捨てを修正 (CVE-2026-72349)

Linux カーネルで、以下の脆弱性が解決されています。

netfilter: xt_u32: 無効なシフトカウントを拒否 (CVE-2026-72350)

Linux カーネルで、以下の脆弱性が解決されています。

gue: REMCSUM プライベートオプションの長さを検証 (CVE-2026-72351)

Linux カーネルで、以下の脆弱性が解決されています。

bridge: stp: ブリッジを削除する際に発生する可能性のある use-after-free を修正 (CVE-2026-72389)

Linux カーネルで、以下の脆弱性が解決されています。

net/sched: sch_teql: 競合状態および UAF を回避するための slaves_lock を導入 (CVE-2026-72390)

Linux カーネルで、以下の脆弱性が解決されています。

seg6: 固定フィールドを読み込む前に SRH の長さを検証 (CVE-2026-72400)

Linux カーネルで、以下の脆弱性が解決されています。

netfilter: nf_conncount: 早期に確認された ct に対する connlimit のドロップを防止 (CVE-2026-72418)

Linux カーネルで、以下の脆弱性が解決されています。

netfilter: nf_nat: 失敗した nf_nat_init() に対する無効な nat_net ポインターの使用を回避 (CVE-2026-72419)

Linux カーネルで、以下の脆弱性が解決されています。

ipv4: fib: local/main テーブルのエラールートを無視しません。(CVE-2026-72421)

Linux カーネルで、以下の脆弱性が解決されています。

bpf: nospec チェックのスタックスロットインデックスを修正 (CVE-2026-72428)

Linux カーネルで、以下の脆弱性が解決されています。

netfilter: nft_meta_bridge: NFT_META_BRI_IIFPVID スタック漏洩を修正 (CVE-2026-72433)

Linux カーネルで、以下の脆弱性が解決されています。

netfilter: ipset: kfree_rcu() および rcu_assign_pointer() の順序を修正 (CVE-2026-72435)

Linux カーネルで、以下の脆弱性が解決されています。

netfilter: ipset: ハッシュタイプのロックレス RCU リーダーで test_bit() を使用しない (CVE-2026-72436)

Linux カーネルで、以下の脆弱性が解決されています。

md/raid1: REQ_NOWAIT が設定されている場合、r1_bio が解放され、読み取りが再試行時にブロックされる (CVE-2026-72437)

Linux カーネルで、以下の脆弱性が解決されています。

flow_dissector: ETH_ADDRS を読み取る前にデバイスの種類をチェック (CVE-2026-72444)

Linux カーネルで、以下の脆弱性が解決されています。

sctp: sctp_diag でエンドポイントをダンプする際にソケットロックを保持 (CVE-2026-72447)

Linux カーネルで、以下の脆弱性が解決されています。

xfrm: マッチ中にセレクターファミリーとプレフィックス長を検証 (CVE-2026-72450)

Linux カーネルで、以下の脆弱性が解決されています。

xprtrdma: bcall rep の漏洩および制限のないピークを修正 (CVE-2026-72466)

Linux カーネルで、以下の脆弱性が解決されています。

dmaengine: 潜在的な解放後使用を修正 (CVE-2026-72476)

Linux カーネルで、以下の脆弱性が解決されています。

fs/ntfs3: run_get_hi に境界チェックを追加

注意: この説明は、長さの関係上省略されています。詳細については、ベンダーのアドバイザリを参照してください。

Tenable は、前述の記述ブロックをテスト済み製品のセキュリティアドバイザリから直接抽出しています。

Nessus はこれらの問題をテストしておらず、代わりにアプリケーションが自己報告するバージョン番号にのみ依存していることに注意してください。

ソリューション

「dnf update kernel --releasever 2023.12.20260817」または「dnf update --advisory ALAS2023-2026-2058 --releasever 2023.12.20260817」を実行してシステムを更新してください。

参考資料

https://alas.aws.amazon.com//AL2023/ALAS2023-2026-2058.html

https://alas.aws.amazon.com/faqs.html

https://explore.alas.aws.amazon.com/CVE-2026-53392.html

https://explore.alas.aws.amazon.com/CVE-2026-53393.html

https://explore.alas.aws.amazon.com/CVE-2026-53400.html

https://explore.alas.aws.amazon.com/CVE-2026-53402.html

https://explore.alas.aws.amazon.com/CVE-2026-63806.html

https://explore.alas.aws.amazon.com/CVE-2026-63810.html

https://explore.alas.aws.amazon.com/CVE-2026-63826.html

https://explore.alas.aws.amazon.com/CVE-2026-63829.html

https://explore.alas.aws.amazon.com/CVE-2026-64077.html

https://explore.alas.aws.amazon.com/CVE-2026-64187.html

https://explore.alas.aws.amazon.com/CVE-2026-64189.html

https://explore.alas.aws.amazon.com/CVE-2026-64266.html

https://explore.alas.aws.amazon.com/CVE-2026-64279.html

https://explore.alas.aws.amazon.com/CVE-2026-64296.html

https://explore.alas.aws.amazon.com/CVE-2026-64298.html

https://explore.alas.aws.amazon.com/CVE-2026-64299.html

https://explore.alas.aws.amazon.com/CVE-2026-64306.html

https://explore.alas.aws.amazon.com/CVE-2026-64312.html

https://explore.alas.aws.amazon.com/CVE-2026-64313.html

https://explore.alas.aws.amazon.com/CVE-2026-64317.html

https://explore.alas.aws.amazon.com/CVE-2026-64322.html

https://explore.alas.aws.amazon.com/CVE-2026-64323.html

https://explore.alas.aws.amazon.com/CVE-2026-64324.html

https://explore.alas.aws.amazon.com/CVE-2026-64352.html

https://explore.alas.aws.amazon.com/CVE-2026-64355.html

https://explore.alas.aws.amazon.com/CVE-2026-64364.html

https://explore.alas.aws.amazon.com/CVE-2026-64370.html

https://explore.alas.aws.amazon.com/CVE-2026-64371.html

https://explore.alas.aws.amazon.com/CVE-2026-64372.html

https://explore.alas.aws.amazon.com/CVE-2026-64373.html

https://explore.alas.aws.amazon.com/CVE-2026-64374.html

https://explore.alas.aws.amazon.com/CVE-2026-64375.html

https://explore.alas.aws.amazon.com/CVE-2026-64378.html

https://explore.alas.aws.amazon.com/CVE-2026-64380.html

https://explore.alas.aws.amazon.com/CVE-2026-64381.html

https://explore.alas.aws.amazon.com/CVE-2026-64411.html

https://explore.alas.aws.amazon.com/CVE-2026-64412.html

https://explore.alas.aws.amazon.com/CVE-2026-64413.html

https://explore.alas.aws.amazon.com/CVE-2026-64422.html

https://explore.alas.aws.amazon.com/CVE-2026-64423.html

https://explore.alas.aws.amazon.com/CVE-2026-64425.html

https://explore.alas.aws.amazon.com/CVE-2026-64432.html

https://explore.alas.aws.amazon.com/CVE-2026-64435.html

https://explore.alas.aws.amazon.com/CVE-2026-64436.html

https://explore.alas.aws.amazon.com/CVE-2026-64448.html

https://explore.alas.aws.amazon.com/CVE-2026-64450.html

https://explore.alas.aws.amazon.com/CVE-2026-64456.html

https://explore.alas.aws.amazon.com/CVE-2026-64458.html

https://explore.alas.aws.amazon.com/CVE-2026-64465.html

https://explore.alas.aws.amazon.com/CVE-2026-64472.html

https://explore.alas.aws.amazon.com/CVE-2026-64475.html

https://explore.alas.aws.amazon.com/CVE-2026-64476.html

https://explore.alas.aws.amazon.com/CVE-2026-64512.html

https://explore.alas.aws.amazon.com/CVE-2026-64514.html

https://explore.alas.aws.amazon.com/CVE-2026-64530.html

https://explore.alas.aws.amazon.com/CVE-2026-64532.html

https://explore.alas.aws.amazon.com/CVE-2026-64533.html

https://explore.alas.aws.amazon.com/CVE-2026-64538.html

https://explore.alas.aws.amazon.com/CVE-2026-64544.html

https://explore.alas.aws.amazon.com/CVE-2026-64545.html

https://explore.alas.aws.amazon.com/CVE-2026-64546.html

https://explore.alas.aws.amazon.com/CVE-2026-64548.html

https://explore.alas.aws.amazon.com/CVE-2026-64551.html

https://explore.alas.aws.amazon.com/CVE-2026-64552.html

https://explore.alas.aws.amazon.com/CVE-2026-64553.html

https://explore.alas.aws.amazon.com/CVE-2026-64560.html

https://explore.alas.aws.amazon.com/CVE-2026-64561.html

https://explore.alas.aws.amazon.com/CVE-2026-64593.html

https://explore.alas.aws.amazon.com/CVE-2026-64604.html

https://explore.alas.aws.amazon.com/CVE-2026-68461.html

https://explore.alas.aws.amazon.com/CVE-2026-68477.html

https://explore.alas.aws.amazon.com/CVE-2026-72010.html

https://explore.alas.aws.amazon.com/CVE-2026-72014.html

https://explore.alas.aws.amazon.com/CVE-2026-72020.html

https://explore.alas.aws.amazon.com/CVE-2026-72021.html

https://explore.alas.aws.amazon.com/CVE-2026-72036.html

https://explore.alas.aws.amazon.com/CVE-2026-72052.html

https://explore.alas.aws.amazon.com/CVE-2026-72053.html

https://explore.alas.aws.amazon.com/CVE-2026-72054.html

https://explore.alas.aws.amazon.com/CVE-2026-72055.html

https://explore.alas.aws.amazon.com/CVE-2026-72061.html

https://explore.alas.aws.amazon.com/CVE-2026-72066.html

https://explore.alas.aws.amazon.com/CVE-2026-72067.html

https://explore.alas.aws.amazon.com/CVE-2026-72068.html

https://explore.alas.aws.amazon.com/CVE-2026-72072.html

https://explore.alas.aws.amazon.com/CVE-2026-72083.html

https://explore.alas.aws.amazon.com/CVE-2026-72084.html

https://explore.alas.aws.amazon.com/CVE-2026-72097.html

https://explore.alas.aws.amazon.com/CVE-2026-72102.html

https://explore.alas.aws.amazon.com/CVE-2026-72105.html

https://explore.alas.aws.amazon.com/CVE-2026-72108.html

https://explore.alas.aws.amazon.com/CVE-2026-72120.html

https://explore.alas.aws.amazon.com/CVE-2026-72122.html

https://explore.alas.aws.amazon.com/CVE-2026-72123.html

https://explore.alas.aws.amazon.com/CVE-2026-72135.html

https://explore.alas.aws.amazon.com/CVE-2026-72136.html

https://explore.alas.aws.amazon.com/CVE-2026-72138.html

https://explore.alas.aws.amazon.com/CVE-2026-72152.html

https://explore.alas.aws.amazon.com/CVE-2026-72177.html

https://explore.alas.aws.amazon.com/CVE-2026-72192.html

https://explore.alas.aws.amazon.com/CVE-2026-72193.html

https://explore.alas.aws.amazon.com/CVE-2026-72194.html

https://explore.alas.aws.amazon.com/CVE-2026-72195.html

https://explore.alas.aws.amazon.com/CVE-2026-72196.html

https://explore.alas.aws.amazon.com/CVE-2026-72197.html

https://explore.alas.aws.amazon.com/CVE-2026-72218.html

https://explore.alas.aws.amazon.com/CVE-2026-72219.html

https://explore.alas.aws.amazon.com/CVE-2026-72223.html

https://explore.alas.aws.amazon.com/CVE-2026-72224.html

https://explore.alas.aws.amazon.com/CVE-2026-72225.html

https://explore.alas.aws.amazon.com/CVE-2026-72243.html

https://explore.alas.aws.amazon.com/CVE-2026-72247.html

https://explore.alas.aws.amazon.com/CVE-2026-72250.html

https://explore.alas.aws.amazon.com/CVE-2026-72251.html

https://explore.alas.aws.amazon.com/CVE-2026-72255.html

https://explore.alas.aws.amazon.com/CVE-2026-72256.html

https://explore.alas.aws.amazon.com/CVE-2026-72274.html

https://explore.alas.aws.amazon.com/CVE-2026-72275.html

https://explore.alas.aws.amazon.com/CVE-2026-72276.html

https://explore.alas.aws.amazon.com/CVE-2026-72282.html

https://explore.alas.aws.amazon.com/CVE-2026-72284.html

https://explore.alas.aws.amazon.com/CVE-2026-72289.html

https://explore.alas.aws.amazon.com/CVE-2026-72290.html

https://explore.alas.aws.amazon.com/CVE-2026-72296.html

https://explore.alas.aws.amazon.com/CVE-2026-72310.html

https://explore.alas.aws.amazon.com/CVE-2026-72318.html

https://explore.alas.aws.amazon.com/CVE-2026-72319.html

https://explore.alas.aws.amazon.com/CVE-2026-72322.html

https://explore.alas.aws.amazon.com/CVE-2026-72326.html

https://explore.alas.aws.amazon.com/CVE-2026-72342.html

https://explore.alas.aws.amazon.com/CVE-2026-72343.html

https://explore.alas.aws.amazon.com/CVE-2026-72347.html

https://explore.alas.aws.amazon.com/CVE-2026-72348.html

https://explore.alas.aws.amazon.com/CVE-2026-72349.html

https://explore.alas.aws.amazon.com/CVE-2026-72350.html

https://explore.alas.aws.amazon.com/CVE-2026-72351.html

https://explore.alas.aws.amazon.com/CVE-2026-72389.html

https://explore.alas.aws.amazon.com/CVE-2026-72390.html

https://explore.alas.aws.amazon.com/CVE-2026-72400.html

https://explore.alas.aws.amazon.com/CVE-2026-72418.html

https://explore.alas.aws.amazon.com/CVE-2026-72419.html

https://explore.alas.aws.amazon.com/CVE-2026-72421.html

https://explore.alas.aws.amazon.com/CVE-2026-72428.html

https://explore.alas.aws.amazon.com/CVE-2026-72433.html

https://explore.alas.aws.amazon.com/CVE-2026-72435.html

https://explore.alas.aws.amazon.com/CVE-2026-72436.html

https://explore.alas.aws.amazon.com/CVE-2026-72437.html

https://explore.alas.aws.amazon.com/CVE-2026-72444.html

https://explore.alas.aws.amazon.com/CVE-2026-72447.html

https://explore.alas.aws.amazon.com/CVE-2026-72450.html

https://explore.alas.aws.amazon.com/CVE-2026-72466.html

https://explore.alas.aws.amazon.com/CVE-2026-72476.html

https://explore.alas.aws.amazon.com/CVE-2026-72478.html

https://explore.alas.aws.amazon.com/CVE-2026-72487.html

https://explore.alas.aws.amazon.com/CVE-2026-72502.html

https://explore.alas.aws.amazon.com/CVE-2026-74255.html

https://explore.alas.aws.amazon.com/CVE-2026-74256.html

https://explore.alas.aws.amazon.com/CVE-2026-74259.html

https://explore.alas.aws.amazon.com/CVE-2026-74262.html

https://explore.alas.aws.amazon.com/CVE-2026-74267.html

https://explore.alas.aws.amazon.com/CVE-2026-74271.html

https://explore.alas.aws.amazon.com/CVE-2026-74281.html

https://explore.alas.aws.amazon.com/CVE-2026-74282.html

https://explore.alas.aws.amazon.com/CVE-2026-74283.html

https://explore.alas.aws.amazon.com/CVE-2026-74284.html

https://explore.alas.aws.amazon.com/CVE-2026-74287.html

https://explore.alas.aws.amazon.com/CVE-2026-74288.html

https://explore.alas.aws.amazon.com/CVE-2026-74290.html

https://explore.alas.aws.amazon.com/CVE-2026-74296.html

https://explore.alas.aws.amazon.com/CVE-2026-74297.html

https://explore.alas.aws.amazon.com/CVE-2026-74305.html

https://explore.alas.aws.amazon.com/CVE-2026-74310.html

https://explore.alas.aws.amazon.com/CVE-2026-74321.html

https://explore.alas.aws.amazon.com/CVE-2026-74327.html

https://explore.alas.aws.amazon.com/CVE-2026-74329.html

https://explore.alas.aws.amazon.com/CVE-2026-74330.html

https://explore.alas.aws.amazon.com/CVE-2026-74331.html

https://explore.alas.aws.amazon.com/CVE-2026-74346.html

https://explore.alas.aws.amazon.com/CVE-2026-74359.html

https://explore.alas.aws.amazon.com/CVE-2026-74363.html

https://explore.alas.aws.amazon.com/CVE-2026-74365.html

https://explore.alas.aws.amazon.com/CVE-2026-74376.html

https://explore.alas.aws.amazon.com/CVE-2026-74379.html

https://explore.alas.aws.amazon.com/CVE-2026-74380.html

https://explore.alas.aws.amazon.com/CVE-2026-74382.html

https://explore.alas.aws.amazon.com/CVE-2026-74384.html

https://explore.alas.aws.amazon.com/CVE-2026-74395.html

https://explore.alas.aws.amazon.com/CVE-2026-74398.html

https://explore.alas.aws.amazon.com/CVE-2026-74399.html

https://explore.alas.aws.amazon.com/CVE-2026-74406.html

https://explore.alas.aws.amazon.com/CVE-2026-74424.html

https://explore.alas.aws.amazon.com/CVE-2026-74578.html

https://explore.alas.aws.amazon.com/CVE-2026-80598.html

https://explore.alas.aws.amazon.com/CVE-2026-80603.html

https://explore.alas.aws.amazon.com/CVE-2026-80604.html

https://explore.alas.aws.amazon.com/CVE-2026-80613.html

https://explore.alas.aws.amazon.com/CVE-2026-80620.html

https://explore.alas.aws.amazon.com/CVE-2026-80630.html

https://explore.alas.aws.amazon.com/CVE-2026-80646.html

https://explore.alas.aws.amazon.com/CVE-2026-80664.html

https://explore.alas.aws.amazon.com/CVE-2026-80669.html

https://explore.alas.aws.amazon.com/CVE-2026-80677.html

https://explore.alas.aws.amazon.com/CVE-2026-80865.html

https://explore.alas.aws.amazon.com/CVE-2026-80867.html

https://explore.alas.aws.amazon.com/CVE-2026-80875.html

https://explore.alas.aws.amazon.com/CVE-2026-80876.html

https://explore.alas.aws.amazon.com/CVE-2026-80880.html

プラグインの詳細

深刻度: High

ID: 337226

ファイル名: al2023_ALAS2023-2026-2058.nasl

バージョン: 1.7

タイプ: Local

エージェント: unix

公開日: 2026/8/18

更新日: 2026/9/10

サポートされているセンサー: Frictionless Assessment AWS, Frictionless Assessment Agent, Nessus Agent, Agentless Assessment, Continuous Assessment, Tenable Cloud Security, Tenable Self-Hosted Container Security, Nessus

リスク情報

VPR

リスクファクター: High

スコア: 8

パーセンタイル: 99.69

CVSS v2

リスクファクター: Medium

基本値: 6.8

現状値: 5.3

ベクトル: CVSS2#AV:L/AC:L/Au:S/C:C/I:C/A:C

CVSS スコアのソース: CVE-2026-64381

CVSS v3

リスクファクター: High

基本値: 7.8

現状値: 7

ベクトル: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

現状ベクトル: CVSS:3.0/E:P/RL:O/RC:C

脆弱性情報

CPE: cpe:/o:amazon:linux:2023, p-cpe:/a:amazon:linux:bpftool-debuginfo, p-cpe:/a:amazon:linux:bpftool, p-cpe:/a:amazon:linux:kernel-debuginfo-common-aarch64, p-cpe:/a:amazon:linux:kernel-debuginfo-common-x86_64, p-cpe:/a:amazon:linux:kernel-debuginfo, p-cpe:/a:amazon:linux:kernel-devel, p-cpe:/a:amazon:linux:kernel-headers, p-cpe:/a:amazon:linux:kernel-livepatch-6.1.180-225.360, p-cpe:/a:amazon:linux:kernel-modules-extra-common, p-cpe:/a:amazon:linux:kernel-modules-extra, p-cpe:/a:amazon:linux:kernel-tools-debuginfo, p-cpe:/a:amazon:linux:kernel-tools-devel, p-cpe:/a:amazon:linux:kernel-tools, p-cpe:/a:amazon:linux:kernel, p-cpe:/a:amazon:linux:perf-debuginfo, p-cpe:/a:amazon:linux:perf, p-cpe:/a:amazon:linux:python3-perf-debuginfo, p-cpe:/a:amazon:linux:python3-perf

必要な KB アイテム: Host/local_checks_enabled, Host/AmazonLinux/release, Host/AmazonLinux/rpm-list

エクスプロイトが利用可能: true

エクスプロイトの容易さ: Exploits are available

パッチ公開日: 2026/8/17

脆弱性公開日: 2026/7/8

参照情報

CVE: CVE-2026-53392, CVE-2026-53393, CVE-2026-53400, CVE-2026-53402, CVE-2026-63806, CVE-2026-63810, CVE-2026-63826, CVE-2026-63829, CVE-2026-64077, CVE-2026-64187, CVE-2026-64189, CVE-2026-64266, CVE-2026-64279, CVE-2026-64296, CVE-2026-64298, CVE-2026-64299, CVE-2026-64306, CVE-2026-64312, CVE-2026-64313, CVE-2026-64317, CVE-2026-64322, CVE-2026-64323, CVE-2026-64324, CVE-2026-64352, CVE-2026-64355, CVE-2026-64364, CVE-2026-64370, CVE-2026-64371, CVE-2026-64372, CVE-2026-64373, CVE-2026-64374, CVE-2026-64375, CVE-2026-64378, CVE-2026-64380, CVE-2026-64381, CVE-2026-64411, CVE-2026-64412, CVE-2026-64413, CVE-2026-64422, CVE-2026-64423, CVE-2026-64425, CVE-2026-64432, CVE-2026-64435, CVE-2026-64436, CVE-2026-64448, CVE-2026-64450, CVE-2026-64456, CVE-2026-64458, CVE-2026-64465, CVE-2026-64472, CVE-2026-64475, CVE-2026-64476, CVE-2026-64512, CVE-2026-64514, CVE-2026-64530, CVE-2026-64532, CVE-2026-64533, CVE-2026-64538, CVE-2026-64544, CVE-2026-64545, CVE-2026-64546, CVE-2026-64548, CVE-2026-64551, CVE-2026-64552, CVE-2026-64553, CVE-2026-64560, CVE-2026-64561, CVE-2026-64593, CVE-2026-64604, CVE-2026-68461, CVE-2026-68477, CVE-2026-72010, CVE-2026-72014, CVE-2026-72020, CVE-2026-72021, CVE-2026-72036, CVE-2026-72052, CVE-2026-72053, CVE-2026-72054, CVE-2026-72055, CVE-2026-72061, CVE-2026-72066, CVE-2026-72067, CVE-2026-72068, CVE-2026-72072, CVE-2026-72083, CVE-2026-72084, CVE-2026-72097, CVE-2026-72102, CVE-2026-72105, CVE-2026-72108, CVE-2026-72120, CVE-2026-72122, CVE-2026-72123, CVE-2026-72135, CVE-2026-72136, CVE-2026-72138, CVE-2026-72152, CVE-2026-72177, CVE-2026-72192, CVE-2026-72193, CVE-2026-72194, CVE-2026-72195, CVE-2026-72196, CVE-2026-72197, CVE-2026-72218, CVE-2026-72219, CVE-2026-72223, CVE-2026-72224, CVE-2026-72225, CVE-2026-72243, CVE-2026-72247, CVE-2026-72250, CVE-2026-72251, CVE-2026-72255, CVE-2026-72256, CVE-2026-72274, CVE-2026-72275, CVE-2026-72276, CVE-2026-72282, CVE-2026-72284, CVE-2026-72289, CVE-2026-72290, CVE-2026-72296, CVE-2026-72310, CVE-2026-72318, CVE-2026-72319, CVE-2026-72322, CVE-2026-72326, CVE-2026-72342, CVE-2026-72343, CVE-2026-72347, CVE-2026-72348, CVE-2026-72349, CVE-2026-72350, CVE-2026-72351, CVE-2026-72389, CVE-2026-72390, CVE-2026-72400, CVE-2026-72418, CVE-2026-72419, CVE-2026-72421, CVE-2026-72428, CVE-2026-72433, CVE-2026-72435, CVE-2026-72436, CVE-2026-72437, CVE-2026-72444, CVE-2026-72447, CVE-2026-72450, CVE-2026-72466, CVE-2026-72476, CVE-2026-72478, CVE-2026-72487, CVE-2026-72502, CVE-2026-74255, CVE-2026-74256, CVE-2026-74259, CVE-2026-74262, CVE-2026-74267, CVE-2026-74271, CVE-2026-74281, CVE-2026-74282, CVE-2026-74283, CVE-2026-74284, CVE-2026-74287, CVE-2026-74288, CVE-2026-74290, CVE-2026-74296, CVE-2026-74297, CVE-2026-74305, CVE-2026-74310, CVE-2026-74321, CVE-2026-74327, CVE-2026-74329, CVE-2026-74330, CVE-2026-74331, CVE-2026-74346, CVE-2026-74359, CVE-2026-74363, CVE-2026-74365, CVE-2026-74376, CVE-2026-74379, CVE-2026-74380, CVE-2026-74382, CVE-2026-74384, CVE-2026-74395, CVE-2026-74398, CVE-2026-74399, CVE-2026-74406, CVE-2026-74424, CVE-2026-74578, CVE-2026-80598, CVE-2026-80603, CVE-2026-80604, CVE-2026-80613, CVE-2026-80620, CVE-2026-80630, CVE-2026-80646, CVE-2026-80664, CVE-2026-80669, CVE-2026-80677, CVE-2026-80865, CVE-2026-80867, CVE-2026-80875, CVE-2026-80876, CVE-2026-80880