Amazon Linux 2023 Security Advisory: ALAS2023-2026-1752
Advisory Released Date: 2026-05-26
Advisory Updated Date: 2026-05-26
Severity:
Important
Issue Overview:
In the Linux kernel, the following vulnerability has been resolved:
ext4: validate p_idx bounds in ext4_ext_correct_indexes (CVE-2026-31449)
In the Linux kernel, the following vulnerability has been resolved:
ptrace: slightly saner 'get_dumpable()' logic (CVE-2026-46333)
PinTheft is a Linux local privilege escalation exploit for an RDS zerocopy double-free that can be turned into a page-cache overwrite through io_uring fixed buffers.
Affected Packages:
kernel
Issue Correction:
Run dnf update kernel --releasever 2023.11.20260526 or dnf update --advisory ALAS2023-2026-1752 --releasever 2023.11.20260526 to update your system.
More information on how to update your system can be found on this page: Amazon Linux 2023 documentation
New Packages:
aarch64:
python3-perf-6.1.172-216.329.amzn2023.aarch64
python3-perf-debuginfo-6.1.172-216.329.amzn2023.aarch64
kernel-modules-extra-common-6.1.172-216.329.amzn2023.aarch64
kernel-tools-debuginfo-6.1.172-216.329.amzn2023.aarch64
perf-6.1.172-216.329.amzn2023.aarch64
bpftool-6.1.172-216.329.amzn2023.aarch64
kernel-headers-6.1.172-216.329.amzn2023.aarch64
kernel-modules-extra-6.1.172-216.329.amzn2023.aarch64
kernel-tools-6.1.172-216.329.amzn2023.aarch64
kernel-livepatch-6.1.172-216.329-1.0-0.amzn2023.aarch64
perf-debuginfo-6.1.172-216.329.amzn2023.aarch64
kernel-tools-devel-6.1.172-216.329.amzn2023.aarch64
bpftool-debuginfo-6.1.172-216.329.amzn2023.aarch64
kernel-6.1.172-216.329.amzn2023.aarch64
kernel-debuginfo-6.1.172-216.329.amzn2023.aarch64
kernel-debuginfo-common-aarch64-6.1.172-216.329.amzn2023.aarch64
kernel-devel-6.1.172-216.329.amzn2023.aarch64
src:
kernel-6.1.172-216.329.amzn2023.src
x86_64:
python3-perf-debuginfo-6.1.172-216.329.amzn2023.x86_64
kernel-tools-debuginfo-6.1.172-216.329.amzn2023.x86_64
bpftool-6.1.172-216.329.amzn2023.x86_64
bpftool-debuginfo-6.1.172-216.329.amzn2023.x86_64
kernel-modules-extra-common-6.1.172-216.329.amzn2023.x86_64
kernel-livepatch-6.1.172-216.329-1.0-0.amzn2023.x86_64
kernel-tools-6.1.172-216.329.amzn2023.x86_64
kernel-tools-devel-6.1.172-216.329.amzn2023.x86_64
perf-debuginfo-6.1.172-216.329.amzn2023.x86_64
kernel-debuginfo-6.1.172-216.329.amzn2023.x86_64
kernel-modules-extra-6.1.172-216.329.amzn2023.x86_64
kernel-6.1.172-216.329.amzn2023.x86_64
python3-perf-6.1.172-216.329.amzn2023.x86_64
kernel-headers-6.1.172-216.329.amzn2023.x86_64
kernel-debuginfo-common-x86_64-6.1.172-216.329.amzn2023.x86_64
perf-6.1.172-216.329.amzn2023.x86_64
kernel-devel-6.1.172-216.329.amzn2023.x86_64