• kernel-uek-5.4.17-2011.4.6.el7uek (oel7-uek6)
  • 5.4.17-2136.350.3.2.el7uek
  • 2026-01-20 14:32:00
  • 2026-01-21 13:22:12
  • K20260120_13
  • CVE-2021-20177
  • Description:

    KCARE-12751: Removed this patch as it causes issue with new tcp connections

  • From:
  • CVE-2021-23133
  • Description:

    The patch is reverted in the upstream by 01bfe5e8e4 as introducing a deadlock

  • From:
  • CVE-2021-26401
  • Description:

    An introduction of required changes through KernelCare could cause unavoidable problems to applications which use unprivileged eBPF.

  • From:
  • CVE-2021-26341
  • Description:

    An introduction of required changes through KernelCare could cause unavoidable problems to applications which use unprivileged eBPF.

  • From:
  • CVE-2022-21499
  • Description:

    Not affected without certain conditions - Secure Boot, configured kgdb/kdb. Complex adaptation

  • From:
  • CVE-2022-23816
  • Description:

    Livepatching Retbleed may decrease kernel stability and performance. This vulnerability has medium security impact and applies to certain hardware environments only.

  • From:
  • CVE-2022-23825
  • Description:

    Livepatching Retbleed may decrease kernel stability and performance. This vulnerability has medium security impact and applies to certain hardware environments only.

  • From:
  • CVE-2022-29900
  • Description:

    Livepatching Retbleed may decrease kernel stability and performance. This vulnerability has medium security impact and applies to certain hardware environments only.

  • From:
  • CVE-2023-20569
  • Description:

    A low priority AMD Inception vulnerability that affects Zen3/Zen4 & relates to RetBleed fixes requiring microcode updates, we can't do much about it in KCare Infra.

  • From:
  • CVE-2023-4244
  • Description:

    An introduction of required changes through KernelCare could cause unavoidable problems to applications which use netfilter functionality.

  • From:
  • CVE-2024-38661
  • Description:

    Out of scope as the patch is for s390 arch only, x86_64, arm64 is not affected

  • From:
  • CVE-2024-38635
  • Description:

    soundwire: Skipped as code which CVE fixes doesn't exists in older releaes

  • From:
  • CVE-2024-38613
  • Description:

    Out of scope as the patch is for m68k arch only, x86_64, arm64 is not affected

  • From:
  • CVE-2024-39292
  • Description:

    Out of scope: User-mode Linux isn't supported for current kernel

  • From:
  • CVE-2024-40963
  • Description:

    Out of scope as the patch is for MIPS arch only, x86_64 is not affected

  • From:
  • CVE-2024-40974
  • Description:

    Out of scope as the patch is for powerpc arch only, x86_64 is not affected

  • From:
  • CVE-2024-39502
  • Description:

    Patches a sleepable function, there is a small but non-zero risk of livepatching failure

  • From:
  • CVE-2024-36484
  • Description:

    Patches a sleepable function, there is a small but non-zero risk of livepatching failure

  • From:
  • CVE-2024-41068
  • Description:

    Out of scope as the patch is for s390 arch only, x86_64 is not affected

  • From:
  • CVE-2024-46761
  • Description:

    Out of scope: CVE patch is for PCI Hotplug Driver for PowerPC PowerNV platform

  • From:
  • CVE-2024-26921
  • Description:

    Live-patching will introduce network performance degradation in the best case scenario, or even some more serious issues. N/A or Low cvss3 score from NVD or vendors.

  • From:
  • CVE-2024-50194
  • Description:

    Out of scope as the patch is for arm64 arch only, x86_64 not affected

  • From:
  • CVE-2024-26734
  • Description:

    Affects only boot __init stage, already booted kernels are not affected

  • From:
  • CVE-2024-53097
  • Description:

    in rhel9 blamed commit 1a83a716ec233 is present neither in newest nor in the oldest kernel

  • From:
  • CVE-2024-49963
  • Description:

    Out of scope as the patch is for arm64 arch only, x86_64 not affected

  • From:
  • CVE-2024-53165
  • Description:

    Out of scope: SuperH architecture isn't supported for current kernel

  • From:
  • CVE-2024-53181
  • Description:

    Out of scope: User-mode Linux isn't supported for current kernel

  • From:
  • CVE-2024-53183
  • Description:

    Out of scope: User-mode Linux isn't supported for current kernel

  • From:
  • CVE-2025-22073
  • Description:

    Out of scope: PowerPC architecture isn't supported for current kernel

  • From:
  • CVE-2025-22071
  • Description:

    Out of scope: PowerPC architecture isn't supported for current kernel

  • From:
  • CVE-2025-37991
  • Description:

    Out of scope: PA-RISC architecture isn't supported for current kernel

  • From:
  • CVE-2025-39751
  • Description:

    This CVE has been rejected or withdrawn by its CVE Numbering Authority as per NVD website

  • From:
  • CVE-2025-38395
  • Description:

    The patch needs adaptation and CONFIG_REGULATOR_GPIO isn't enabled on UEK6 x86.

  • From: