ALAS2023-2026-1752


Amazon Linux 2023 Security Advisory: ALAS2023-2026-1752
Advisory Released Date: 2026-05-26
Advisory Updated Date: 2026-05-26
Severity: Important

Issue Overview:

In the Linux kernel, the following vulnerability has been resolved:

ext4: validate p_idx bounds in ext4_ext_correct_indexes (CVE-2026-31449)

In the Linux kernel, the following vulnerability has been resolved:

ptrace: slightly saner 'get_dumpable()' logic (CVE-2026-46333)

PinTheft is a Linux local privilege escalation exploit for an RDS zerocopy double-free that can be turned into a page-cache overwrite through io_uring fixed buffers.


Affected Packages:

kernel


Issue Correction:
Run dnf update kernel --releasever 2023.11.20260526 or dnf update --advisory ALAS2023-2026-1752 --releasever 2023.11.20260526 to update your system.
More information on how to update your system can be found on this page: Amazon Linux 2023 documentation

New Packages:
aarch64:
    python3-perf-6.1.172-216.329.amzn2023.aarch64
    python3-perf-debuginfo-6.1.172-216.329.amzn2023.aarch64
    kernel-modules-extra-common-6.1.172-216.329.amzn2023.aarch64
    kernel-tools-debuginfo-6.1.172-216.329.amzn2023.aarch64
    perf-6.1.172-216.329.amzn2023.aarch64
    bpftool-6.1.172-216.329.amzn2023.aarch64
    kernel-headers-6.1.172-216.329.amzn2023.aarch64
    kernel-modules-extra-6.1.172-216.329.amzn2023.aarch64
    kernel-tools-6.1.172-216.329.amzn2023.aarch64
    kernel-livepatch-6.1.172-216.329-1.0-0.amzn2023.aarch64
    perf-debuginfo-6.1.172-216.329.amzn2023.aarch64
    kernel-tools-devel-6.1.172-216.329.amzn2023.aarch64
    bpftool-debuginfo-6.1.172-216.329.amzn2023.aarch64
    kernel-6.1.172-216.329.amzn2023.aarch64
    kernel-debuginfo-6.1.172-216.329.amzn2023.aarch64
    kernel-debuginfo-common-aarch64-6.1.172-216.329.amzn2023.aarch64
    kernel-devel-6.1.172-216.329.amzn2023.aarch64

src:
    kernel-6.1.172-216.329.amzn2023.src

x86_64:
    python3-perf-debuginfo-6.1.172-216.329.amzn2023.x86_64
    kernel-tools-debuginfo-6.1.172-216.329.amzn2023.x86_64
    bpftool-6.1.172-216.329.amzn2023.x86_64
    bpftool-debuginfo-6.1.172-216.329.amzn2023.x86_64
    kernel-modules-extra-common-6.1.172-216.329.amzn2023.x86_64
    kernel-livepatch-6.1.172-216.329-1.0-0.amzn2023.x86_64
    kernel-tools-6.1.172-216.329.amzn2023.x86_64
    kernel-tools-devel-6.1.172-216.329.amzn2023.x86_64
    perf-debuginfo-6.1.172-216.329.amzn2023.x86_64
    kernel-debuginfo-6.1.172-216.329.amzn2023.x86_64
    kernel-modules-extra-6.1.172-216.329.amzn2023.x86_64
    kernel-6.1.172-216.329.amzn2023.x86_64
    python3-perf-6.1.172-216.329.amzn2023.x86_64
    kernel-headers-6.1.172-216.329.amzn2023.x86_64
    kernel-debuginfo-common-x86_64-6.1.172-216.329.amzn2023.x86_64
    perf-6.1.172-216.329.amzn2023.x86_64
    kernel-devel-6.1.172-216.329.amzn2023.x86_64