From f19788f834940f64de6d0dae032e90a9e9b760aa Mon Sep 17 00:00:00 2001 From: CKI KWF Bot Date: Tue, 3 Feb 2026 05:19:20 +0000 Subject: [PATCH] kernel-4.18.0-553.103.1.el8_10 * Tue Feb 03 2026 CKI KWF Bot [4.18.0-553.103.1.el8_10] - ext4: fix use-after-free in ext4_orphan_cleanup (CKI Backport Bot) [RHEL-136000] {CVE-2022-50673} - ext4: lost matching-pair of trace in ext4_truncate (CKI Backport Bot) [RHEL-136000] {CVE-2022-50673} - ALSA: usb-audio: Fix potential overflow of PCM transfer buffer (CKI Backport Bot) [RHEL-136904] {CVE-2025-40269} Resolves: RHEL-136000, RHEL-136904 Signed-off-by: CKI KWF Bot --- kernel.spec | 9 +++++++-- sources | 6 +++--- 2 files changed, 10 insertions(+), 5 deletions(-) diff --git a/kernel.spec b/kernel.spec index 93bd49e51..3ec581cd2 100644 --- a/kernel.spec +++ b/kernel.spec @@ -38,10 +38,10 @@ # define buildid .local %define specversion 4.18.0 -%define pkgrelease 553.102.1.el8_10 +%define pkgrelease 553.103.1.el8_10 # allow pkg_release to have configurable %%{?dist} tag -%define specrelease 553.102.1%{?dist} +%define specrelease 553.103.1%{?dist} %define pkg_release %{specrelease}%{?buildid} @@ -2705,6 +2705,11 @@ fi # # %changelog +* Tue Feb 03 2026 CKI KWF Bot [4.18.0-553.103.1.el8_10] +- ext4: fix use-after-free in ext4_orphan_cleanup (CKI Backport Bot) [RHEL-136000] {CVE-2022-50673} +- ext4: lost matching-pair of trace in ext4_truncate (CKI Backport Bot) [RHEL-136000] {CVE-2022-50673} +- ALSA: usb-audio: Fix potential overflow of PCM transfer buffer (CKI Backport Bot) [RHEL-136904] {CVE-2025-40269} + * Sat Jan 31 2026 CKI KWF Bot [4.18.0-553.102.1.el8_10] - nvme-tcp: fix NULL pointer dereferences in nvmet_tcp_build_pdu_iovec (CKI Backport Bot) [RHEL-144327] {CVE-2026-22998} - NFSv4: ensure the open stateid seqid doesn't go backwards (Scott Mayhew) [RHEL-121683] diff --git a/sources b/sources index fff16f7cf..f72562927 100644 --- a/sources +++ b/sources @@ -1,3 +1,3 @@ -SHA512 (linux-4.18.0-553.102.1.el8_10.tar.xz) = 00e25417b6bee3c0153a9a3a4791d796893a386c7570cc8dfc686a8b7c830ad682f908a2ec53ef255cdf9ed03cd76ac7903b7fb439a3709c3eede53e54351772 -SHA512 (kernel-abi-stablelists-4.18.0-553.tar.bz2) = c3e8933a11a7a923b2b02b81841c8ed441f2ad405cbbd567dbb3396bf528f2a04482f3dc039de34606c3355e4124fa8506d21df7125b5a964117f73ae393da9e -SHA512 (kernel-kabi-dw-4.18.0-553.tar.bz2) = 6b85a8577559a3ad75b736d5a146f53b3885985f548f3c6d604c4c3855d41265d888e701f64d8af5c5dd196921b1f06ebbbf639f0b752a6441f3e200b5129447 +SHA512 (linux-4.18.0-553.103.1.el8_10.tar.xz) = d9ccb020a62746ff45848b55db3f671ca38e1820c84f8724ff555a43262b6b93130412abe5190fb33b4de3e7ebe8789d3958512bc1f0bdc603225bdea19b6fd8 +SHA512 (kernel-abi-stablelists-4.18.0-553.tar.bz2) = e79ca85db58931cd328897a3b19426aa80d32c407573cc256c42de97fc6da544ec06b86d55720da75372e18c06d93f65cc741b64c5a95a1b0f1fbb029f443af9 +SHA512 (kernel-kabi-dw-4.18.0-553.tar.bz2) = 846207dd665ff5d32388f4b498d24b02ad7314749a749e6f8006bdc1f2ab7bad86c8255bb4eb90c5fd75065b2972dd3fe39b3a9235e35ad868462afc20822226