[El-errata] ELBA-2026-500373 Unbreakable Enterprise kernel bug fix update

Errata Announcements for Oracle Linux el-errata at oss.oracle.com
Thu Oct 8 08:58:41 UTC 2026


Oracle Linux Bug Fix Advisory ELBA-2026-500373

http://linux.oracle.com/errata/ELBA-2026-500373.html

The following updated rpms for have been uploaded to the Unbreakable Linux Network:

x86_64:
kernel-uek-debug-fips-build-support-6.12.0-203.76.7.3.el10uek.x86_64.rpm
kernel-uek-fips-build-support-6.12.0-203.76.7.3.el10uek.x86_64.rpm

aarch64:
kernel-uek-debug-fips-build-support-6.12.0-203.76.7.3.el10uek.aarch64.rpm
kernel-uek-fips-build-support-6.12.0-203.76.7.3.el10uek.aarch64.rpm


SRPMS:
http://oss.oracle.com/ol10/SRPMS-updates/kernel-uek-6.12.0-203.76.7.3.el10uek.src.rpm



Description of changes:

[6.12.0-203.76.7.3]
- arm64: errata: Mitigate TLBI errata on various Arm CPUs (Mark Rutland)  [Orabug: 39017589]  {CVE-2025-10263}
- arm64: tlb: Add ARM64_WORKAROUND_REPEAT_TLBI_SYNC (Mark Rutland)  [Orabug: 39017589]
- arm64: tlb: allow XZR argument to TLBI ops (Mark Rutland)  [Orabug: 39017589]
- arm64: cputype: Add C1-Premium definitions (Mark Rutland)  [Orabug: 39017589]
- arm64: cputype: Add C1-Ultra definitions (Mark Rutland)  [Orabug: 39017589]

[6.12.0-203.76.7.2]
- kabi: update FIPS kABI files (Saeed Mirzamohammadi)  [Orabug: 39489008]
- KEYS: Reserve key usage values (Saeed Mirzamohammadi)  [Orabug: 39489008]
- crypto: keep FIPS MPI helpers private (Saeed Mirzamohammadi)  [Orabug: 39489008]
- crypto: keep FIPS compression helpers private (Saeed Mirzamohammadi)  [Orabug: 39489008]
- crypto: keep FIPS helper library symbols private (Saeed Mirzamohammadi)  [Orabug: 39489008]
- crypto: tcrypt - clamp num_mb to avoid divide-by-zero (Saeed Mirzamohammadi)  [Orabug: 39489008]
- crypto: tcrypt - stop ahash speed tests when setkey fails (Saeed Mirzamohammadi)  [Orabug: 39489008]
- crypto: add x86 GHASH CLMUL to FIPS module (Saeed Mirzamohammadi)  [Orabug: 39489008]
- crypto: add fixed-time AES to FIPS module (Saeed Mirzamohammadi)  [Orabug: 39489008]
- fips: add scatterwalk to FIPS module (Saeed Mirzamohammadi)  [Orabug: 39489008]
- crypto: avoid auto-load for arch specific impls (Saeed Mirzamohammadi)  [Orabug: 39489008]
- arm64/crypto: wire up FIPS aliases and helpers (Saeed Mirzamohammadi)  [Orabug: 39489008]
- crypto: share alg registry between FIPS and base kernel (Saeed Mirzamohammadi)  [Orabug: 39489008]
- crypto: keep crypto_user out of the FIPS module (Saeed Mirzamohammadi)  [Orabug: 39489008]
- crypto: tcrypt - skip retest in FIPS mode (Saeed Mirzamohammadi)  [Orabug: 39489008]
- crypto: skip redundant FIPS self-module signature check (Saeed Mirzamohammadi)  [Orabug: 39489008]
- scripts: fail cleanly on arm64 boot image formats (Saeed Mirzamohammadi)  [Orabug: 39489008]
- crypto/hkdf: Skip tests with keys too short in FIPS mode (Saeed Mirzamohammadi)  [Orabug: 39489008]
- uek-rpm: build module symvers before fips140.ko (Saeed Mirzamohammadi)  [Orabug: 39489008]
- crypto: add crc64_rocksoft_generic to the FIPS module (Saeed Mirzamohammadi)  [Orabug: 39489008]
- crypto: add keywrap to the FIPS module (Saeed Mirzamohammadi)  [Orabug: 39489008]
- crypto: add cts to the FIPS module (Saeed Mirzamohammadi)  [Orabug: 39489008]
- crypto: convert kdf_sp800108 to CRYPTO_API() (Saeed Mirzamohammadi)  [Orabug: 39489008]
- fips: drop ansi_cprng and revert ansi_cprng FIPS hooks (Saeed Mirzamohammadi)  [Orabug: 39489008]
- crypto/testmgr: mark xxhash64 as fips disallowed (Saeed Mirzamohammadi)  [Orabug: 39489008]
- Revert "fips: add xxhash64-generic to FIPS module" (Saeed Mirzamohammadi)  [Orabug: 39489008]
- asm-generic/vmlinux.lds.h: remove unreachable FIPS140 branch (Saeed Mirzamohammadi)  [Orabug: 39489008]
- btrfs: switch to library APIs for checksums (Eric Biggers)  [Orabug: 39489008]
- lib/crypto: blake2b: Add BLAKE2b library functions (Eric Biggers)  [Orabug: 39489008]
- byteorder: Add le64_to_cpu_array() and cpu_to_le64_array() (Eric Biggers)  [Orabug: 39489008]




More information about the El-errata mailing list