Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×

Alerts This Week
Warning Icon 1 418
Alerts This Week
Warning Icon 1 418

Rocky Linux 9 RLSA-2026-7649 libcurl Serious Vulnerability Status Update

rocky
Calendar Grey April 15, 2026
Scroller Rockylinux
Important update available for nghttp2 to address denial of service issues on Rocky Linux 9. Act now to secure systems.
Important: nghttp2 security update

Summary

An update is available for nghttp2. This update affects Rocky Linux 9. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RPMs

libnghttp2-0:1.43.0-6.el9_7.1.aarch64.rpm

libnghttp2-0:1.43.0-6.el9_7.1.i686.rpm

libnghttp2-0:1.43.0-6.el9_7.1.ppc64le.rpm

libnghttp2-0:1.43.0-6.el9_7.1.s390x.rpm

libnghttp2-0:1.43.0-6.el9_7.1.x86_64.rpm

libnghttp2-debuginfo-0:1.43.0-6.el9_7.1.aarch64.rpm

libnghttp2-debuginfo-0:1.43.0-6.el9_7.1.i686.rpm

libnghttp2-debuginfo-0:1.43.0-6.el9_7.1.ppc64le.rpm

libnghttp2-debuginfo-0:1.43.0-6.el9_7.1.s390x.rpm

libnghttp2-debuginfo-0:1.43.0-6.el9_7.1.x86_64.rpm

libnghttp2-devel-0:1.43.0-6.el9_7.1.aarch64.rpm

libnghttp2-devel-0:1.43.0-6.el9_7.1.i686.rpm

libnghttp2-devel-0:1.43.0-6.el9_7.1.ppc64le.rpm

libnghttp2-devel-0:1.43.0-6.el9_7.1.s390x.rpm

libnghttp2-devel-0:1.43.0-6.el9_7.1.x86_64.rpm

nghttp2-0:1.43.0-6.el9_7.1.aarch64.rpm

nghttp2-0:1.43.0-6.el9_7.1.ppc64le.rpm

nghttp2-0:1.43.0-6.el9_7.1.s390x.rpm

nghttp2-0:1.43.0-6.el9_7.1.src.rpm

nghttp2-0:1.43.0-6.el9_7.1.x86_64.rpm

nghttp2-debuginfo-0:1.43.0-6.el9_7.1.aarch64.rpm

nghttp2-debuginfo-0:1.43.0-6.el9_7.1.i686.rpm

Read the Full Advisory

References

No references

CVES

https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-27135

Severity
important
Lowest
Low
Medium
High
Critical

Name: RLSA-2026:7668
Affected Products: Rocky Linux 9

Fixes

https://bugzilla.redhat.com/show_bug.cgi?id=2448754


Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.