Amazon Linux 2:内核,--advisory ALAS2KERNEL-5。10-2026-130 (ALASKERNEL-5.10-2026-130)

high Nessus 插件 ID 341859

简介

远程 Amazon Linux 2 主机缺少安全更新。

描述

远程主机上安装的内核版本低于 5.10.265-265.1078。因此,会受到 ALAS2KERNEL-5.10-2026-130 公告中提及的多个漏洞影响。

在 Linux 内核中,以下漏洞已修复:

tls:将非异步解密请求处理与 async (CVE-2024-58240) 分离

在 Linux 内核中,以下漏洞已修复:

xsk:修复 AF_XDP 通用 RX 路径中的争用条件 (CVE-2025-37920)

在 Linux 内核中,以下漏洞已修复:

libceph:修复认证消息处理中的 slab-out-of-bound 访问 (CVE-2026-46119)

在 Linux 内核中,以下漏洞已修复:

bpf:修复 subprogs (CVE-2026-53090) 中的 ld_{abs,ind} 故障路径分析

在 Linux 内核中,以下漏洞已修复:

nvmet:修复 Discovery Get Log 页面 (CVE-2026-64320) 中的 pre-auth 越界堆读取

在 Linux 内核中,以下漏洞已修复:

tipc:修复 tipc_disc_rcv()CVE-2026-64543 () 中发现者的释放后使用

在 Linux 内核中,以下漏洞已修复:

KVM:nVMX:在 VMCLEAR (CVE-2026-64562) 之后隐藏阴影 VMCS

在 Linux 内核中,以下漏洞已修复:

rhashtable:清除表重新启动 (CVE-2026-64563) 上过时的 iter->p

在 Linux 内核中,以下漏洞已修复:

sctp:不释放 DEL-IP 处理中 ASCONF 自己的传输 (CVE-2026-64564)

在 Linux 内核中,以下漏洞已修复:

btrfs:拒绝条目多于页面 (CVE-2026-64567) 的可用空间缓存

在 Linux 内核中,以下漏洞已修复:

ipv4:fib:通过插入错误路径 (CVE-2026-64572) 上的 kfree_rcu() 释放fib_alias

在 Linux 内核中,以下漏洞已修复:

xfrm:policy:重新插入 xfrm_hash_rebuild 前预先分配不准确的 bin (CVE-2026-64579)

在 Linux 内核中,以下漏洞已修复:

xfrm:修复 xfrm_user_policy() (CVE-2026-64581) 中的sk_dst_cache双重释放

在 Linux 内核中,以下漏洞已修复:

RDMA/rxe:修复 rxe_mmap 中的释放后使用问题 (CVE-2026-64582)

在 Linux 内核中,以下漏洞已修复:

tipc:清除 tipc_sk_create()CVE-2026-68117 () 中 failed-insert 路径上的 sock->sk

在 Linux 内核中,以下漏洞已修复:

pppoe:在 dev_hard_header() () 之后CVE-2026-68121重新加载标头指针

在 Linux 内核中,以下漏洞已修复:

openvswitch:修复 GSO 用户空间截断下溢 (CVE-2026-68123)

在 Linux 内核中,以下漏洞已修复:

ila:在校验和调整 (CVE-2026-68127) 中pskb_may_pull后重新加载 IPv6 标头

在 Linux 内核中,以下漏洞已修复:

rbd:将对象映射更新路径 (CVE-2026-68131) 中的正面结果代码重置为零

在 Linux 内核中,以下漏洞已修复:

net/sched:针对并发 get/put () 序列化 qdisc_rtab_listCVE-2026-68138

在 Linux 内核中,以下漏洞已修复:

geneve:需要设备 netns 中的CAP_NET_ADMIN用于 changelink (CVE-2026-68142)

在 Linux 内核中,以下漏洞已修复:

net:slip:针对缓冲区重新分配 (CVE-2026-68143) 序列化接收

在 Linux 内核中,以下漏洞已修复:

libceph:客户端拆卸前删除 debugfs 文件 (CVE-2026-68153)

在 Linux 内核中,以下漏洞已修复:

libceph:拒绝 crush_decode (CVE-2026-68154) 中的零存储桶类型

在 Linux 内核中,以下漏洞已修复:

libceph:拒绝公告零监控器的 monmaps (CVE-2026-68155)

在 Linux 内核中,以下漏洞已修复:

libceph:授权者更新CVE-2026-68156后刷新 auth->authorizer_buf{,_len}

在 Linux 内核中,以下漏洞已修复:

libceph:保护缺少的 CRUSH 类型名称查找 (CVE-2026-68157)

在 Linux 内核中,以下漏洞已修复:

libceph:修复 decode_new_up_state_weight() (CVE-2026-68158) 中的乘法溢出

在 Linux 内核中,以下漏洞已修复:

ceph:修复 ceph_handle_caps() (CVE-2026-68160) 中 snaptrace 上的预认证越界读取

在 Linux 内核中,以下漏洞已修复:

cdrom:修复 CDROMVOLCTRL (CVE-2026-68184) 中的堆栈越界读取

在 Linux 内核中,以下漏洞已修复:

binfmt_misc:仅在打开解释器时设置 have_execfd (CVE-2026-68186)

在 Linux 内核中,以下漏洞已修复:

bpf、sockmap:修复 tcp_bpf_sendmsg() 中的软木塞释放后使用 (CVE-2026-68284)

在 Linux 内核中,以下漏洞已修复:

tipc:修复媒体和承载 MTU 验证中的 u16 MTU 截断 (CVE-2026-68297)

在 Linux 内核中,以下漏洞已修复:

vmxnet3:修复 Geneve 数据包 (CVE-2026-68299) 的 vmxnet3_get_hdr_len() 中的BUG_ON

在 Linux 内核中,以下漏洞已修复:

sctp: auth:验证 auth_chunk 为 NULL 时的认证要求 (CVE-2026-68300)

在 Linux 内核中,以下漏洞已修复:

tipc:修复 __tipc_nl_compat_dumpit (CVE-2026-68313) 中的无限循环

在 Linux 内核中,以下漏洞已修复:

sctp:验证 sctp_process_strreset_inreq() 中的流计数 (CVE-2026-68315)

在 Linux 内核中,以下漏洞已修复:

sctp:修复 sctp_auth_ep_add_chunkid (CVE-2026-68320) 中的auth_chunk_list容量检查

在 Linux 内核中,以下漏洞已修复:

rds:修复禁用 IPv6 时inet6_addr_lst空取消引用 (CVE-2026-68322)

在 Linux 内核中,以下漏洞已修复:

iommu/amd:绑定早期 ACPI HID 映射 (CVE-2026-68325)

在 Linux 内核中,以下漏洞已修复:

rds:丢弃跨网络命名空间边界的传入消息 (CVE-2026-68335)

在 Linux 内核中,以下漏洞已修复:

net/packet:避免 unregister (CVE-2026-68338) 之后的扇出挂钩重新注册

在 Linux 内核中,以下漏洞已修复:

USB:serial:io_edgeport:上限接收的传输积分 (CVE-2026-68365)

在 Linux 内核中,以下漏洞已修复:

sctp:修复 struct sctp_cookie 中的 auth_hmacs 数组大小 (CVE-2026-68376)

在 Linux 内核中,以下漏洞已修复:

net/sched: act_tunnel_key: 延迟 dst_release 至 RCU 回调 (CVE-2026-68377)

在 Linux 内核中,以下漏洞已修复:

smb/client:处理 fallocate (CVE-2026-68388) 中重叠的已分配范围

在 Linux 内核中,以下漏洞已修复:

ppp:将通道释放延迟为 RCU 宽限期以修复 pppol2tp RX UAF (CVE-2026-68398)

在 Linux 内核中,以下漏洞已修复:

bpf:修复 sock 克隆早期救助中的 UAF (CVE-2026-68399)

在 Linux 内核中,以下漏洞已修复:

IB/mad:重组前终止不匹配的 RMPP 响应 (CVE-2026-68425)

在 Linux 内核中,以下漏洞已修复:

KVM:x86/mmu:修复供应商模块重新加载时的释放后使用 (CVE-2026-68428)

在 Linux 内核中,以下漏洞已修复:

vxlan:需要设备 netns 中的CAP_NET_ADMIN用于 changelink (CVE-2026-68432)

在 Linux 内核中,以下漏洞已修复:

libceph:绑定get_version回复解码到前 len (CVE-2026-68433)

在 Linux 内核中,以下漏洞已修复:

x86/缺陷:使 Safe-RET 加强防御中断注入 (CVE-2026-68480)

在 Linux 内核中,以下漏洞已修复:

macsec:不读取 macsec_encrypt() (CVE-2026-72019) 中未设置的 MAC 标头

在 Linux 内核中,以下漏洞已修复:

net:ip6_tunnel:需要设备 netns 中的CAP_NET_ADMIN用于 changelink (CVE-2026-72051)

在 Linux 内核中,以下漏洞已修复:

net:ipip:需要设备 netns 中的CAP_NET_ADMIN用于 changelink (CVE-2026-72053)

在 Linux 内核中,以下漏洞已修复:

cpu:hotplug:绑定热插拔状态 sysfs 输出 (CVE-2026-72066)

在 Linux 内核中,以下漏洞已修复:

can:bcm:添加缺失的设备引用计数以进行 CAN 过滤器删除 (CVE-2026-72113)

在 Linux 内核中,以下漏洞已修复:

can:bcm:验证 RTR 回复的 bcm_rx_setup() 中的帧长度 (CVE-2026-72114)

在 Linux 内核中,以下漏洞已修复:

can:bcm:跟踪 ANYDEV 超时/节流操作的单一源接口 (CVE-2026-72115)

在 Linux 内核中,以下漏洞已修复:

can:bcm:修复设备删除后过时的 rx/tx ops (CVE-2026-72116)

在 Linux 内核中,以下漏洞已修复:

can:bcm:修复 bcm_rx_handler()CVE-2026-72117 () 中 rx_stamp/rx_ifindex 上的数据争用

在 Linux 内核中,以下漏洞已修复:

can:bcm:修复 CAN 帧 rx/tx 统计数据 (CVE-2026-72118)

在 Linux 内核中,以下漏洞已修复:

can:bcm:扩展数据和定时器更新的 bcm_tx_lock 使用 (CVE-2026-72119)

在 Linux 内核中,以下漏洞已修复:

can:bcm:更新过滤器和定时器值时添加锁定 (CVE-2026-72121)

在 Linux 内核中,以下漏洞已修复:

can:bcm:推迟rx_op对工作队列的解除分配,以修复 thrtimer UAF (CVE-2026-72123)

在 Linux 内核中,以下漏洞已修复:

ipv6:fib6:修复多批次转储 (CVE-2026-72392) 的 fib6_walk_continue() 中的空取消引用

在 Linux 内核中,以下漏洞已修复:

tipc:拒绝对等机绑定中的反转服务范围 (CVE-2026-74281)

在 Linux 内核中,以下漏洞已修复:

net:openvswitch:修复 ct (CVE-2026-74464) 期间流密钥更新失败时的 skb 泄漏

在 Linux 内核中,以下漏洞已修复:

net:openvswitch:修复仪表连接失败 (CVE-2026-74465) 中潜在的 UAF

在 Linux 内核中,以下漏洞已修复:

sctp:防止对等机传输计数溢出 (CVE-2026-74469)

在 Linux 内核中,以下漏洞已修复:

tracing:检查 trace_module_add_events()CVE-2026-74471 中 __register_event() 的返回值

在 Linux 内核中,以下漏洞已修复:

vxlan:在 route_shortcircuit()CVE-2026-74473 中使用 pskb_network_may_pull()

在 Linux 内核中,以下漏洞已修复:

vxlan:在 route_shortcircuit()CVE-2026-74475 中使用 neigh_ha_snapshot()

在 Linux 内核中,以下漏洞已修复:

net:bridge:删除端口组后停止快速离开 (CVE-2026-74480)

在 Linux 内核中,以下漏洞已修复:

mm/page_reporting:使用 system_freezable_wq 修复暂停期间的 UAF (CVE-2026-74481)

在 Linux 内核中,以下漏洞已修复:

mm/huge_memory:释放拆分后作品集 () 之前解锁 i_mmap_rwsemCVE-2026-74482

在 Linux 内核中,以下漏洞已修复:

binfmt_misc:拒绝将标记字符作为字段分隔符 (CVE-2026-74485)

在 Linux 内核中,以下漏洞已修复:

tipc:避免轮询跟踪队列转储 (CVE-2026-74490) 中的释放后使用

在 Linux 内核中,以下漏洞已修复:

netfilter:ipset:不更新来自内核端哈希添加 (CVE-2026-74492) 的注释

在 Linux 内核中,以下漏洞已修复:

igbvf:修复 TX DMA 错误清理 (CVE-2026-74495) 中的泄漏

在 Linux 内核中,以下漏洞已修复:

audit:修复 audit_del_rule() (CVE-2026-74512) 中潜在的释放后使用

在 Linux 内核中,以下漏洞已修复:

mm/hugetlb:修复 allocate_file_region_entries() (CVE-2026-74518) 中的列表损坏

在 Linux 内核中,以下漏洞已修复:

pinctrl:devicetree:不释放错误路径 (CVE-2026-74519) 上的未初始化dev_name

在 Linux 内核中,以下漏洞已修复:

qede:同步恢复路径 (CVE-2026-74523) 中 qede_lock 之外的 udp_tunnel 端口

在 Linux 内核中,以下漏洞已修复:

hwmon:(adt7470) 修复更新线程 (CVE-2026-74547) 中的忙循环和 I2C 洪流

在 Linux 内核中,以下漏洞已修复:

hwmon:(nct6775-core) 阻止访问不受支持的权重寄存器 (CVE-2026-74549)

在 Linux 内核中,以下漏洞已修复:

scsi:libiscsi_tcp:将 SCSI 响应数据段绑定到连接缓冲区 (CVE-2026-74556)

在 Linux 内核中,以下漏洞已修复:

scsi:libiscsi:修复过时数据泄漏到 SCSI 感知缓冲区 (CVE-2026-74557)

在 Linux 内核中,以下漏洞已修复:

rds:tcp:在 rds_tcp_laddr_check()CVE-2026-74563 () 中的 ipv6_chk_addr() 上保持 RCU 锁定

在 Linux 内核中,以下漏洞已修复:

netfilter:xt_hashlimit:验证哈希表支持 XT_HASHLIMIT_RATE_MATCH (CVE-2026-74564)

在 Linux 内核中,以下漏洞已修复:

keys:使 keyring 密钥区块字节顺序与 keyring_diff_objects() (CVE-2026-74566) 一致

在 Linux 内核中,以下漏洞已修复:

keys:修复 keyring_get_key_chunk() (CVE-2026-74567) 中的越界读取

在 Linux 内核中,以下漏洞已修复:

netfilter:nf_conntrack_sip:在 sip_help_tcp() (CVE-2026-74569) 中将 NAT 重写增量加宽到 s32

在 Linux 内核中,以下漏洞已修复:

net:mpls:初始化 mpls_getroute()CVE-2026-74577 () 中的 rtm_tos

在 Linux 内核中,以下漏洞已修复:

netfilter:nft_payload:修复部分字段卸载的掩码构建 (CVE-2026-74579)

在 Linux 内核中,以下漏洞已修复:

vhost:重置 vring reconfiguration (CVE-2026-74580) 上的 vring 元数据缓存

在 Linux 内核中,以下漏洞已修复:

netfilter:bridge:在非 IP 路径 (CVE-2026-74625) 上释放模板 ct

Tenable 已直接从测试产品的安全公告中提取上述描述块。

请注意,Nessus 尚未测试这些问题,而是只依据应用程序自我报告的版本号进行判断。

解决方案

运行“yum update kernel”或“yum update --advisory ALAS2KERNEL-5.10-2026-130”以更新系统。

另见

https://alas.aws.amazon.com//AL2/ALAS2KERNEL-5.10-2026-130.html

https://alas.aws.amazon.com/faqs.html

https://explore.alas.aws.amazon.com/CVE-2024-58240.html

https://explore.alas.aws.amazon.com/CVE-2025-37920.html

https://explore.alas.aws.amazon.com/CVE-2026-46119.html

https://explore.alas.aws.amazon.com/CVE-2026-53090.html

https://explore.alas.aws.amazon.com/CVE-2026-64320.html

https://explore.alas.aws.amazon.com/CVE-2026-64543.html

https://explore.alas.aws.amazon.com/CVE-2026-64562.html

https://explore.alas.aws.amazon.com/CVE-2026-64563.html

https://explore.alas.aws.amazon.com/CVE-2026-64564.html

https://explore.alas.aws.amazon.com/CVE-2026-64567.html

https://explore.alas.aws.amazon.com/CVE-2026-64572.html

https://explore.alas.aws.amazon.com/CVE-2026-64579.html

https://explore.alas.aws.amazon.com/CVE-2026-64581.html

https://explore.alas.aws.amazon.com/CVE-2026-64582.html

https://explore.alas.aws.amazon.com/CVE-2026-68117.html

https://explore.alas.aws.amazon.com/CVE-2026-68121.html

https://explore.alas.aws.amazon.com/CVE-2026-68123.html

https://explore.alas.aws.amazon.com/CVE-2026-68127.html

https://explore.alas.aws.amazon.com/CVE-2026-68131.html

https://explore.alas.aws.amazon.com/CVE-2026-68138.html

https://explore.alas.aws.amazon.com/CVE-2026-68142.html

https://explore.alas.aws.amazon.com/CVE-2026-68143.html

https://explore.alas.aws.amazon.com/CVE-2026-68153.html

https://explore.alas.aws.amazon.com/CVE-2026-68154.html

https://explore.alas.aws.amazon.com/CVE-2026-68155.html

https://explore.alas.aws.amazon.com/CVE-2026-68156.html

https://explore.alas.aws.amazon.com/CVE-2026-68157.html

https://explore.alas.aws.amazon.com/CVE-2026-68158.html

https://explore.alas.aws.amazon.com/CVE-2026-68160.html

https://explore.alas.aws.amazon.com/CVE-2026-68184.html

https://explore.alas.aws.amazon.com/CVE-2026-68186.html

https://explore.alas.aws.amazon.com/CVE-2026-68284.html

https://explore.alas.aws.amazon.com/CVE-2026-68297.html

https://explore.alas.aws.amazon.com/CVE-2026-68299.html

https://explore.alas.aws.amazon.com/CVE-2026-68300.html

https://explore.alas.aws.amazon.com/CVE-2026-68313.html

https://explore.alas.aws.amazon.com/CVE-2026-68315.html

https://explore.alas.aws.amazon.com/CVE-2026-68320.html

https://explore.alas.aws.amazon.com/CVE-2026-68322.html

https://explore.alas.aws.amazon.com/CVE-2026-68325.html

https://explore.alas.aws.amazon.com/CVE-2026-68335.html

https://explore.alas.aws.amazon.com/CVE-2026-68338.html

https://explore.alas.aws.amazon.com/CVE-2026-68365.html

https://explore.alas.aws.amazon.com/CVE-2026-68376.html

https://explore.alas.aws.amazon.com/CVE-2026-68377.html

https://explore.alas.aws.amazon.com/CVE-2026-68388.html

https://explore.alas.aws.amazon.com/CVE-2026-68398.html

https://explore.alas.aws.amazon.com/CVE-2026-68399.html

https://explore.alas.aws.amazon.com/CVE-2026-68425.html

https://explore.alas.aws.amazon.com/CVE-2026-68428.html

https://explore.alas.aws.amazon.com/CVE-2026-68432.html

https://explore.alas.aws.amazon.com/CVE-2026-68433.html

https://explore.alas.aws.amazon.com/CVE-2026-68480.html

https://explore.alas.aws.amazon.com/CVE-2026-72019.html

https://explore.alas.aws.amazon.com/CVE-2026-72051.html

https://explore.alas.aws.amazon.com/CVE-2026-72053.html

https://explore.alas.aws.amazon.com/CVE-2026-72066.html

https://explore.alas.aws.amazon.com/CVE-2026-72113.html

https://explore.alas.aws.amazon.com/CVE-2026-72114.html

https://explore.alas.aws.amazon.com/CVE-2026-72115.html

https://explore.alas.aws.amazon.com/CVE-2026-72116.html

https://explore.alas.aws.amazon.com/CVE-2026-72117.html

https://explore.alas.aws.amazon.com/CVE-2026-72118.html

https://explore.alas.aws.amazon.com/CVE-2026-72119.html

https://explore.alas.aws.amazon.com/CVE-2026-72121.html

https://explore.alas.aws.amazon.com/CVE-2026-72123.html

https://explore.alas.aws.amazon.com/CVE-2026-72392.html

https://explore.alas.aws.amazon.com/CVE-2026-74281.html

https://explore.alas.aws.amazon.com/CVE-2026-74464.html

https://explore.alas.aws.amazon.com/CVE-2026-74465.html

https://explore.alas.aws.amazon.com/CVE-2026-74469.html

https://explore.alas.aws.amazon.com/CVE-2026-74471.html

https://explore.alas.aws.amazon.com/CVE-2026-74473.html

https://explore.alas.aws.amazon.com/CVE-2026-74475.html

https://explore.alas.aws.amazon.com/CVE-2026-74480.html

https://explore.alas.aws.amazon.com/CVE-2026-74481.html

https://explore.alas.aws.amazon.com/CVE-2026-74482.html

https://explore.alas.aws.amazon.com/CVE-2026-74485.html

https://explore.alas.aws.amazon.com/CVE-2026-74490.html

https://explore.alas.aws.amazon.com/CVE-2026-74492.html

https://explore.alas.aws.amazon.com/CVE-2026-74495.html

https://explore.alas.aws.amazon.com/CVE-2026-74512.html

https://explore.alas.aws.amazon.com/CVE-2026-74518.html

https://explore.alas.aws.amazon.com/CVE-2026-74519.html

https://explore.alas.aws.amazon.com/CVE-2026-74523.html

https://explore.alas.aws.amazon.com/CVE-2026-74547.html

https://explore.alas.aws.amazon.com/CVE-2026-74549.html

https://explore.alas.aws.amazon.com/CVE-2026-74556.html

https://explore.alas.aws.amazon.com/CVE-2026-74557.html

https://explore.alas.aws.amazon.com/CVE-2026-74563.html

https://explore.alas.aws.amazon.com/CVE-2026-74564.html

https://explore.alas.aws.amazon.com/CVE-2026-74566.html

https://explore.alas.aws.amazon.com/CVE-2026-74567.html

https://explore.alas.aws.amazon.com/CVE-2026-74569.html

https://explore.alas.aws.amazon.com/CVE-2026-74577.html

https://explore.alas.aws.amazon.com/CVE-2026-74579.html

https://explore.alas.aws.amazon.com/CVE-2026-74580.html

https://explore.alas.aws.amazon.com/CVE-2026-74581.html

https://explore.alas.aws.amazon.com/CVE-2026-74583.html

https://explore.alas.aws.amazon.com/CVE-2026-74625.html

https://explore.alas.aws.amazon.com/CVE-2026-74654.html

https://explore.alas.aws.amazon.com/CVE-2026-74658.html

https://explore.alas.aws.amazon.com/CVE-2026-74664.html

https://explore.alas.aws.amazon.com/CVE-2026-74697.html

https://explore.alas.aws.amazon.com/CVE-2026-74705.html

https://explore.alas.aws.amazon.com/CVE-2026-74720.html

插件详情

严重性: High

ID: 341859

文件名: al2_ALASKERNEL-5_10-2026-130.nasl

版本: 1.2

类型: Local

代理: unix

发布时间: 2026/8/31

最近更新时间: 2026/9/1

支持的传感器: Agentless Assessment, Continuous Assessment, Frictionless Assessment Agent, Frictionless Assessment AWS, Nessus Agent, Tenable Cloud Security, Tenable Self-Hosted Container Security, Nessus

风险信息

VPR

风险因素: High

分数: 7.9

百分位: 99.36

CVSS v2

风险因素: Medium

基本分数: 6.8

时间分数: 5.3

矢量: CVSS2#AV:L/AC:L/Au:S/C:C/I:C/A:C

CVSS 分数来源: CVE-2024-58240

CVSS v3

风险因素: High

基本分数: 7.8

时间分数: 7

矢量: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

时间矢量: CVSS:3.0/E:P/RL:O/RC:C

漏洞信息

CPE: cpe:/o:amazon:linux:2, p-cpe:/a:amazon:linux:bpftool-debuginfo, p-cpe:/a:amazon:linux:bpftool, p-cpe:/a:amazon:linux:kernel-debuginfo-common-aarch64, p-cpe:/a:amazon:linux:kernel-debuginfo-common-x86_64, p-cpe:/a:amazon:linux:kernel-debuginfo, p-cpe:/a:amazon:linux:kernel-devel, p-cpe:/a:amazon:linux:kernel-headers, p-cpe:/a:amazon:linux:kernel-livepatch-5.10.265-265.1078, p-cpe:/a:amazon:linux:kernel-tools-debuginfo, p-cpe:/a:amazon:linux:kernel-tools-devel, p-cpe:/a:amazon:linux:kernel-tools, p-cpe:/a:amazon:linux:kernel, p-cpe:/a:amazon:linux:perf-debuginfo, p-cpe:/a:amazon:linux:perf, p-cpe:/a:amazon:linux:python-perf-debuginfo, p-cpe:/a:amazon:linux:python-perf

必需的 KB 项: Host/local_checks_enabled, Host/AmazonLinux/release, Host/AmazonLinux/rpm-list

可利用: true

易利用性: Exploits are available

补丁发布日期: 2026/8/31

漏洞发布日期: 2025/5/20

参考资料信息

CVE: CVE-2024-58240, CVE-2025-37920, CVE-2026-46119, CVE-2026-53090, CVE-2026-64320, CVE-2026-64543, CVE-2026-64562, CVE-2026-64563, CVE-2026-64564, CVE-2026-64567, CVE-2026-64572, CVE-2026-64579, CVE-2026-64581, CVE-2026-64582, CVE-2026-68117, CVE-2026-68121, CVE-2026-68123, CVE-2026-68127, CVE-2026-68131, CVE-2026-68138, CVE-2026-68142, CVE-2026-68143, CVE-2026-68153, CVE-2026-68154, CVE-2026-68155, CVE-2026-68156, CVE-2026-68157, CVE-2026-68158, CVE-2026-68160, CVE-2026-68184, CVE-2026-68186, CVE-2026-68284, CVE-2026-68297, CVE-2026-68299, CVE-2026-68300, CVE-2026-68313, CVE-2026-68315, CVE-2026-68320, CVE-2026-68322, CVE-2026-68325, CVE-2026-68335, CVE-2026-68338, CVE-2026-68365, CVE-2026-68376, CVE-2026-68377, CVE-2026-68388, CVE-2026-68398, CVE-2026-68399, CVE-2026-68425, CVE-2026-68428, CVE-2026-68432, CVE-2026-68433, CVE-2026-68480, CVE-2026-72019, CVE-2026-72051, CVE-2026-72053, CVE-2026-72066, CVE-2026-72113, CVE-2026-72114, CVE-2026-72115, CVE-2026-72116, CVE-2026-72117, CVE-2026-72118, CVE-2026-72119, CVE-2026-72121, CVE-2026-72123, CVE-2026-72392, CVE-2026-74281, CVE-2026-74464, CVE-2026-74465, CVE-2026-74469, CVE-2026-74471, CVE-2026-74473, CVE-2026-74475, CVE-2026-74480, CVE-2026-74481, CVE-2026-74482, CVE-2026-74485, CVE-2026-74490, CVE-2026-74492, CVE-2026-74495, CVE-2026-74512, CVE-2026-74518, CVE-2026-74519, CVE-2026-74523, CVE-2026-74547, CVE-2026-74549, CVE-2026-74556, CVE-2026-74557, CVE-2026-74563, CVE-2026-74564, CVE-2026-74566, CVE-2026-74567, CVE-2026-74569, CVE-2026-74577, CVE-2026-74579, CVE-2026-74580, CVE-2026-74581, CVE-2026-74583, CVE-2026-74625, CVE-2026-74654, CVE-2026-74658, CVE-2026-74664, CVE-2026-74697, CVE-2026-74705, CVE-2026-74720