Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×

Alerts This Week
Warning Icon 1 464
Alerts This Week
Warning Icon 1 464

Rocky Linux pki-deps Important Code Execution Fix RLSA-2026-43218

rocky
Calendar Grey July 22, 2026
Scroller Rockylinux
Important security update available for pki-deps on Rocky Linux, addressing code execution issues. Stay secure and updated.
Rocky Linux 8 has an important security update addressing a vulnerability in the Public Key Infrastructure Core, specifically affecting jackson-databind, allowing potential arbitra...

Summary

An update is available for module.slf4j, velocity, xml-commons-resolver, javassist, relaxngDatatype, module.glassfish-jaxb-api, slf4j, module.apache-commons-lang, xsom, module.bea-stax, module.apache-commons-collections, module.xalan-j2, glassfish-jaxb, xerces-j2, module.glassfish-fastinfoset, module.pki-servlet-engine, glassfish-jaxb-api, xalan-j2, pki-servlet-engine, module.xml-commons-apis, apache-commons-collections, xml-commons-apis, module.stax-ex, module.xml-commons-resolver, module.jakarta-commons-httpclient, stax-ex, xmlstreambuffer, module.velocity, module.relaxngDatatype, module.xerces-j2, glassfish-fastinfoset, bea-stax, module.javassist, module.xmlstreambuffer, jakarta-commons-httpclient, module.xsom, module.glassfish-jaxb, module.apache-commons-net, apache-commons-lang, apache-commons-net. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RPMs

apache-commons-collections-0:3.2.2-10.module+el8.10.0+1763+c7c02164.noarch.rpm

apache-commons-collections-0:3.2.2-10.module+el8.10.0+2052+1b0fb438.noarch.rpm

apache-commons-collections-0:3.2.2-10.module+el8.3.0+74+855e3f5d.noarch.rpm

apache-commons-collections-0:3.2.2-10.module+el8.10.0+2052+1b0fb438.src.rpm

apache-commons-collections-0:3.2.2-10.module+el8.10.0+1763+c7c02164.src.rpm

apache-commons-collections-0:3.2.2-10.module+el8.3.0+74+855e3f5d.src.rpm

apache-commons-lang-0:2.6-21.module+el8.10.0+1763+c7c02164.noarch.rpm

apache-commons-lang-0:2.6-21.module+el8.3.0+74+855e3f5d.noarch.rpm

apache-commons-lang-0:2.6-21.module+el8.10.0+1763+c7c02164.src.rpm

apache-commons-lang-0:2.6-21.module+el8.3.0+74+855e3f5d.src.rpm

apache-commons-net-0:3.6-3.module+el8.10.0+2052+1b0fb438.noarch.rpm

apache-commons-net-0:3.6-3.module+el8.10.0+1763+c7c02164.noarch.rpm

apache-commons-net-0:3.6-3.module+el8.3.0+74+855e3f5d.noarch.rpm

apache-commons-net-0:3.6-3.module+el8.10.0+2052+1b0fb438.src.rpm

Read the Full Advisory

References

No references

CVES

https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-54513

Severity
important
Lowest
Low
Medium
High
Critical

Name: RLSA-2026:43218
Affected Products: Rocky Linux 8

Fixes

https://bugzilla.redhat.com/show_bug.cgi?id=2492010


Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.