Hello,
I am using Rocky Linux 8.10 and would like to confirm the security status of the following CVEs:
- CVE-2026-8924 (using Linux Kernel 4.18.0-553.8.1 and 4.18.0-553.34.1)
- CVE-2026-43503 (using curl 7.61.1-34.el8.x86_64)
Could you please let me know:
- Is Rocky Linux 8.10 affected by these CVEs?
- If affected, which Rocky Linux package version (or release version) contains the fix?
- If Rocky Linux 8.10 is not affected, could you provide the reason (for example, the vulnerable code is not included or the fix has already been backported)?
- Is there a corresponding RLSA/RHSA advisory for these CVEs?
I would appreciate any information you can provide regarding the applicable package versions or security advisories.
Thank you for your support.