Skip to content
VulniPulse
Highest advisory severityHigh 1 vendor · 2 advisories

CVE-2026-23111

CVE-2026-23111: 2 tracked advisory records across Red Hat. Compare source-reported impact, fixes and remediation.

Compare the source-linked records below. Ratings and product/version details belong to each advisory; they are not a single CVE-wide score or proof that every listed product is affected. How VulniPulse collects and checks evidence.

Vendor advisory comparison

Red Hat

2 advisories
  • Advisory severityHigh7.8

    High [CVE-2026-23111] Privilege escalation or denial of service in nf_tables via inverted element activity check

    CVE-2026-23111Source published

    Privilege escalation or denial of service in nf_tables via inverted element activity check. Red Hat rates this important (CVSS 7.8). Weakness: CWE-672. Affected package(s): kernel. Resolved in Red Hat advisory RHSA-2026:9112 — update the affected packages (`sudo dnf update`).

    Affected products in this advisory
    • Red Hat Enterprise Linux AppStream EUS (v. 10.0)
    • Red Hat Enterprise Linux AppStream (v. 10)
    • Red Hat Enterprise Linux AppStream EUS (v.9.4)
    • Red Hat Enterprise Linux AppStream EUS (v.9.6)

    24 more entries in the full advisory.

    Source-reported affected versions
    • kernel-0:6.12.0-55.70.1.el10_0
    • kernel-0:5.14.0-570.108.1.el9_6
    • kernel-0:6.12.0-211.7.1.el10_2
    • kernel-0:5.14.0-427.121.1.el9_4

    1 more entries in the full advisory.

    Source-reported fixed versions
    • RHSA-2026:9112
    Mitigation guidance
    • Update the affected package(s) to the fixed version shipped in RHSA-2026:9112 (`sudo dnf update` / `yum update`).
  • Advisory severityUnrated

    Advisory [CVE-2024-56581 +7] Kernel Live Patch Security Notice

    LSN-0119-1Source published

    This bulletin covers 8 CVEs. The products, versions, score and guidance below describe the bulletin; check its source for applicability to this specific CVE.

    In the Linux kernel, the following vulnerability has been resolved: btrfs: ref-verify: fix use-after-free after invalid ref action At btrfs_ref_tree_mod() after we successfully inserted the new ref entry (local variable 'ref') into the respective block entry's rbtree (local variable 'be'), if we find an unexpected action of BTRFS_DROP_DELAYED_REF, we error out and free the ref entry without removing it from the block entry's rbtree. In the Linux kernel, the following vulnerability has been resolved: wifi: brcmfmac: Fix oops due to NULL pointer dereference in brcmf_sdiod_sglist_rw() This patch fixes a NULL pointer dereference bug in brcmfmac that occurs when a high 'sd_sgentry_align' value applies (e.g. 512) and a lot of queued SKBs are sent from the pkt queue. In the Linux kernel, the…

    Related products — impact not confirmed
    • Ubuntu 25.10
    • Ubuntu 24.04
    • Ubuntu 22.04
    • Ubuntu 20.04

    3 more entries in the full advisory.

    Source-reported affected versions
    • Ubuntu 25.10
    • Ubuntu 24.04
    • Ubuntu 22.04
    • Ubuntu 20.04

    2 more entries in the full advisory.

    Source-reported fixed versions
    No fixed-version detail extracted. This does not mean no fix exists.
    Mitigation guidance
    • Apply available updates: `sudo apt update && sudo apt upgrade` (a standard system update installs the fix).

Android app · Google Play

Monitor future Red Hat CVEs from your phone.

Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.

Matching phone alertsOptional email delivery