An update is available for module.relaxngDatatype, module.jackson-core, apache-commons-collections, module.xml-commons-apis, glassfish-jaxb-api, apache-commons-net, xalan-j2, xmlstreambuffer, xsom, xml-commons-apis, module.slf4j, stax-ex, module.glassfish-jaxb-api, module.bea-stax, relaxngDatatype, module.pki-servlet-engine, velocity, module.jakarta-commons-httpclient, module.xml-commons-resolver, pki-servlet-engine, module.stax-ex, slf4j, jackson-core, jackson-annotations, module.xsom, module.velocity, module.xerces-j2, module.apache-commons-net, module.apache-commons-lang, module.javassist, glassfish-jaxb, apache-commons-lang, bea-stax, jackson-databind, module.glassfish-jaxb, glassfish-fastinfoset, module.jackson-databind, jakarta-commons-httpclient, module.xalan-j2, module.jackson-annotations, xml-commons-resolver, javassist, module.glassfish-fastinfoset, module.xmlstreambuffer, module.apache-commons-collections, xerces-j2. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list
apache-commons-collections-0:3.2.2-10.module+el8.10.0+2052+1b0fb438.noarch.rpm
apache-commons-collections-0:3.2.2-10.module+el8.10.0+1763+c7c02164.noarch.rpm
apache-commons-collections-0:3.2.2-10.module+el8.3.0+74+855e3f5d.noarch.rpm
apache-commons-collections-0:3.2.2-10.module+el8.10.0+1763+c7c02164.src.rpm
apache-commons-collections-0:3.2.2-10.module+el8.10.0+2052+1b0fb438.src.rpm
apache-commons-collections-0:3.2.2-10.module+el8.3.0+74+855e3f5d.src.rpm
bea-stax-api-0:1.2.0-16.module+el8.10.0+1763+c7c02164.noarch.rpm
apache-commons-lang-0:2.6-21.module+el8.10.0+1763+c7c02164.noarch.rpm
apache-commons-lang-0:2.6-21.module+el8.3.0+74+855e3f5d.noarch.rpm
apache-commons-lang-0:2.6-21.module+el8.10.0+1763+c7c02164.src.rpm
apache-commons-lang-0:2.6-21.module+el8.3.0+74+855e3f5d.src.rpm
apache-commons-net-0:3.6-3.module+el8.10.0+2052+1b0fb438.noarch.rpm
apache-commons-net-0:3.6-3.module+el8.10.0+1763+c7c02164.noarch.rpm
apache-commons-net-0:3.6-3.module+el8.3.0+74+855e3f5d.noarch.rpm
Read the Full AdvisoryNo references
https://www.cve.org/CVERecord?id=CVE-2025-52999
https://bugzilla.redhat.com/show_bug.cgi?id=2374804
Get the latest Linux and open source security news straight to your inbox.