[El-errata] ELSA-2026-50253 Important: Oracle Linux 9 Unbreakable Enterprise kernel security update: Copy Fail

Errata Announcements for Oracle Linux el-errata at oss.oracle.com
Mon May 4 17:56:50 UTC 2026


Oracle Linux Security Advisory ELSA-2026-50253

http://linux.oracle.com/errata/ELSA-2026-50253.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:


aarch64:
bpftool-5.15.0-319.201.4.4.el9uek.aarch64.rpm
kernel-uek-5.15.0-319.201.4.4.el9uek.aarch64.rpm
kernel-uek-container-5.15.0-319.201.4.4.el9uek.aarch64.rpm
kernel-uek-container-debug-5.15.0-319.201.4.4.el9uek.aarch64.rpm
kernel-uek-core-5.15.0-319.201.4.4.el9uek.aarch64.rpm
kernel-uek-debug-5.15.0-319.201.4.4.el9uek.aarch64.rpm
kernel-uek-debug-core-5.15.0-319.201.4.4.el9uek.aarch64.rpm
kernel-uek-debug-devel-5.15.0-319.201.4.4.el9uek.aarch64.rpm
kernel-uek-debug-modules-5.15.0-319.201.4.4.el9uek.aarch64.rpm
kernel-uek-debug-modules-extra-5.15.0-319.201.4.4.el9uek.aarch64.rpm
kernel-uek-devel-5.15.0-319.201.4.4.el9uek.aarch64.rpm
kernel-uek-doc-5.15.0-319.201.4.4.el9uek.noarch.rpm
kernel-uek-modules-5.15.0-319.201.4.4.el9uek.aarch64.rpm
kernel-uek-modules-extra-5.15.0-319.201.4.4.el9uek.aarch64.rpm
kernel-uek64k-5.15.0-319.201.4.4.el9uek.aarch64.rpm
kernel-uek64k-core-5.15.0-319.201.4.4.el9uek.aarch64.rpm
kernel-uek64k-devel-5.15.0-319.201.4.4.el9uek.aarch64.rpm
kernel-uek64k-modules-5.15.0-319.201.4.4.el9uek.aarch64.rpm
kernel-uek64k-modules-extra-5.15.0-319.201.4.4.el9uek.aarch64.rpm


SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/kernel-uek-5.15.0-319.201.4.4.el9uek.src.rpm

Related CVEs:

CVE-2026-31431




Description of changes:

[5.15.0-319.201.4.4]
- crypto: algif_aead - Fix minimum RX size check for decryption (Herbert Xu)  [Orabug: 39291961]
- crypto: af_alg - Fix page reassignment overflow in af_alg_pull_tsgl (Herbert Xu)  [Orabug: 39291961]
- crypto: authencesn - Fix src offset when decrypting in-place (Herbert Xu)  [Orabug: 39291961]
- crypto: authencesn - Do not place hiseq at end of dst for out-of-place decryption (Herbert Xu)  [Orabug: 39291961]
- crypto: authenc - use memcpy_sglist() instead of null skcipher (Eric Biggers)  [Orabug: 39291961]
- crypto: algif_aead - snapshot IV for async AEAD requests (Douya Le)  [Orabug: 39291961]
- crypto: algif_aead - Revert to operating out-of-place (Herbert Xu)  [Orabug: 39291961]  {CVE-2026-31431}
- crypto: algif_aead - use memcpy_sglist() instead of null skcipher (Eric Biggers)  [Orabug: 39291961]
- crypto: scatterwalk - Backport memcpy_sglist() (Eric Biggers)  [Orabug: 39291961]
- uek-rpm: Enable FWCTL for aarch64 (Dave Kleikamp)  [Orabug: 39291938]




More information about the El-errata mailing list