{"cves":["CVE-2026-31663","CVE-2026-46316","CVE-2026-53362"],"cvss":0.0,"database_specific":{"severity":"IMPORTANT"},"description":"[6.12.0-204.92.4.3]\n- xfrm: hold dev ref until after transport_finish NF_HOOK (Qi Tang)  [Orabug: 39727259]  {CVE-2026-31663}\n- xfrm: hold device only for the asynchronous decryption (Jianbo Liu)  [Orabug: 39727259] \n- KVM: arm64: vgic-its: Drop the translation cache reference only for the erased entry (Hyunwoo Kim)  [Orabug: 39727258]  {CVE-2026-46316}\n- ipv6: account for fraggap on the paged allocation path (Wongi Lee)  [Orabug: 39727239]  {CVE-2026-53362}","id":"ELSA-2026-500004","ovalId":"oval:com.oracle.elsa:def:2026500004","source":"oracle_linux","title":"ELSA-2026-500004: Unbreakable Enterprise kernel security update (IMPORTANT)","url":"https://linux.oracle.com/errata/ELSA-2026-500004.html"}