Red Hat Updates the RHEL 10.0 EUS Kernel for 19 Vulnerabilities

P1 — VALIDATE AND UPDATEMedium to High · 5.5 / 6.3 / 7.0 / 7.1 / 7.3 / 7.8 / 8.8 (official CVSS v3.1)EXPLOITATION: NOT STATED

Quick Answer

RHSA-2026:75560 provides RHEL 10.0 EUS kernel 6.12.0-55.108.1.el10_0 packages for 19 vulnerabilities. Inventory entitled EUS, Real Time, and NFV systems, install from the correct repository, reboot into the updated kernel, and validate workload, driver, and cluster behavior.

Install The EUS Kernel And Reboot Into It

What to do now: Confirm the entitled RHEL 10.0 EUS stream and architecture, install Red Hat's advisory packages, reboot through change control, verify the running kernel, and validate drivers, networking, storage, real-time behavior, clustering, and rollback readiness.

Open the authoritative advisory

Last verified: 2026-10-05 UTC. Recheck the authoritative advisory and supported distribution channel before changing production.

Scope And Authority

Product scopeRed Hat Enterprise Linux 10.0 EUS kernel, including Real Time and NFV EUS streams
AdvisoryRHSA-2026:75560
CVEsCVE-2026-22984, CVE-2026-31467, CVE-2026-31581, CVE-2026-31663, CVE-2026-43493, CVE-2026-52993, CVE-2026-53239, CVE-2026-63917, CVE-2026-63919, CVE-2026-63921, CVE-2026-64017, CVE-2026-64191, CVE-2026-64368, CVE-2026-64438, CVE-2026-68294, CVE-2026-68426, CVE-2026-72098, CVE-2026-72130, CVE-2026-74746
Authoritative release date2026-10-05 01:27:08 UTC
Authority revision date2026-10-05 03:34:48 UTC
Affected versionsEntitled RHEL 10.0 EUS BaseOS, AppStream, CRB, Real Time, and NFV systems using kernel builds before the advisory-listed packages.
Fixed versionkernel family 6.12.0-55.108.1.el10_0 from the entitled RHEL 10.0 EUS repositories
CVSS base score5.5 / 6.3 / 7.0 / 7.1 / 7.3 / 7.8 / 8.8 (official CVSS v3.1)
CVSS severityMedium to High
Exploitation statusNot stated by Red Hat; no exploitation claim is inferred.

What Changed

Red Hat published an Important-impact RHEL 10.0 EUS kernel update covering 19 CVEs across networking, filesystems, audio, crypto, drivers, and other kernel subsystems. The replacement kernel requires a reboot into the updated build.

What To Validate Now

  1. Inventory. Locate Red Hat Enterprise Linux 10.0 EUS kernel, including Real Time and NFV EUS streams deployments, versions, enabled features, exposure paths, owners, and dependent services.
  2. Establish applicability. Compare each deployment with the authority's affected-version statement: Entitled RHEL 10.0 EUS BaseOS, AppStream, CRB, Real Time, and NFV systems using kernel builds before the advisory-listed packages. Do not infer applicability from product family or severity alone.
  3. Remediate. Use the entitled RHEL 10.0 EUS repositories to install the RHSA-2026:75560 package set, including kernel family 6.12.0-55.108.1.el10_0, then reboot into the updated kernel.
  4. Validate. Verify uname -r reports the intended updated kernel, confirm the previous kernel remains available for approved rollback, and exercise representative drivers, storage, networking, real-time or NFV workloads, and cluster recovery paths.
  5. Retain evidence. Preserve asset and owner identifiers, the applicability decision, before-and-after versions, change approval, installation output, validation results, and any exception or rollback record.

Operational Cautions

A package transaction alone does not activate a new kernel. Schedule the reboot, account for third-party kernel modules and Secure Boot signing, verify repository entitlement, and avoid mixing nonmatching streams.

Evidence To Retain

  • Exact product, release stream, package or application version, enabled feature, environment, and accountable owner.
  • UTC timestamps, authority revision, approved change record, installer or package-manager output, and resulting version.
  • Relevant logs and monitoring evidence, test results, exceptions, compensating controls, and rollback decisions.

Related TechGeeks Resources

Authoritative References

Correction policy: If the authority changes affected versions, fixed versions, severity, exploitation information, mitigations, or required action, TechGeeks will update this notice and its verification date.