The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:. Oracle Linux Security Advisory ELSA-2026-6817 http://linux.oracle.com/errata/ELSA-2026-6817.html The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network: x86_64: capstone-5.0.1-7.el10_1.x86_64.rpm capstone-devel-5.0.1-7.el10_1.x86_64.rpm capstone-java-5.0.1-7.el10_1.noarch.rpm python3-capstone-5.0.1-7.el10_1.noarch.rpm aarch64: capstone-5.0.1-7.el10_1.aarch64.rpm capstone-devel-5.0.1-7.el10_1.aarch64.rpm capstone-java-5.0.1-7.el10_1.noarch.rpm python3-capstone-5.0.1-7.el10_1.noarch.rpm SRPMS: http://oss.oracle.com/ol10/SRPMS-updates/capstone-5.0.1-7.el10_1.src.rpm Related CVEs: CVE-2025-67873 CVE-2025-68114 Description of changes: [5.0.1-7] - Fix CVE-2025-67873 (heap buffer overflow) Resolves: RHEL-141551 - Fix CVE-2025-68114 (memory corruption) Resolves: RHEL-137747 _______________________________________________ El-errata mailing list
Important: capstone security update. {"type": "TYPE_SECURITY", "shortCode": "RL", "name": "RLSA-2026:6817", "synopsis": "Important: capstone security update", "severity": "SEVERITY_IMPORTANT", "topic": "An update is available for capstone.\nThis update affects Rocky Linux 10.\nA Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list", "description": "Capstone is a disassembly framework with the target of becoming the ultimate disasm engine for binary analysis and reversing in the security community.\n\nSecurity Fix(es):\n\n* capstone: Capstone: Memory corruption via unchecked vsnprintf return (CVE-2025-68114)\n\n* capstone: Capstone: Heap buffer overflow via skipdata callback allows denial of service or arbitrary code execution. (CVE-2025-67873)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.", "solution": null, "affectedProducts": ["Rocky Linux 10"], "fixes": [{"ticket": "2423416", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2423416", "description": ""}, {"ticket": "2423419", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2423419", "description": ""}], "cves": [{"name": "CVE-2025-67873", "sourceBy": "MITRE", "sourceLink": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-67873", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:H", "cvss3BaseScore": "6.1", "cwe": "CWE-122"}, {"name": "CVE-2025-68114", "sourceBy": "MITRE", "sourceLink": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-68114", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H", "cvss3BaseScore": "7.3", "cwe": "CWE-787"}], "references": [], "publishedAt": "2026-04-09T12:07:05.484110Z", "rpms": {"Rocky Linux 10": {"nvras": ["capstone-java-0:5.0.1-7.el10_1.noarch.rpm","capstone-debuginfo-0:5.0.1-7.el10_1.ppc64le.rpm", "capstone-debuginfo-0:5.0.1-7.el10_1.aarch64.rpm", "capstone-devel-0:5.0.1-7.el10_1.aarch64.rpm", "capstone-debugsource-0:5.0.1-7.el10_1.ppc64le.rpm", "python3-capstone-0:5.0.1-7.el10_1.noarch.rpm", "capstone-0:5.0.1-7.el10_1.x86_64.rpm", "capstone-debuginfo-0:5.0.1-7.el10_1.s390x.rpm", "capstone-debuginfo-0:5.0.1-7.el10_1.x86_64.rpm", "capstone-debugsource-0:5.0.1-7.el10_1.x86_64.rpm", "capstone-0:5.0.1-7.el10_1.src.rpm", "capstone-devel-0:5.0.1-7.el10_1.ppc64le.rpm", "capstone-devel-0:5.0.1-7.el10_1.s390x.rpm", "capstone-0:5.0.1-7.el10_1.ppc64le.rpm", "capstone-0:5.0.1-7.el10_1.aarch64.rpm", "capstone-debugsource-0:5.0.1-7.el10_1.aarch64.rpm", "capstone-0:5.0.1-7.el10_1.s390x.rpm", "capstone-debugsource-0:5.0.1-7.el10_1.s390x.rpm", "capstone-devel-0:5.0.1-7.el10_1.x86_64.rpm"]}}, "rebootSuggested": false, "buildReferences": []}. Stay updated with the important capstone security update for Rocky Linux 10, addressing critical issues related to memory corruption.. Linux security patch, capstone update, Rocky Linux advisory, important security issues. . Severity: Important. LinuxSecurity.com Team
Important: capstone security update. {"type": "TYPE_SECURITY", "shortCode": "RL", "name": "RLSA-2026:6817", "synopsis": "Important: capstone security update", "severity": "SEVERITY_IMPORTANT", "topic": "An update is available for capstone.\nThis update affects Rocky Linux 10.\nA Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list", "description": "Capstone is a disassembly framework with the target of becoming the ultimate disasm engine for binary analysis and reversing in the security community.\n\nSecurity Fix(es):\n\n* capstone: Capstone: Memory corruption via unchecked vsnprintf return (CVE-2025-68114)\n\n* capstone: Capstone: Heap buffer overflow via skipdata callback allows denial of service or arbitrary code execution. (CVE-2025-67873)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.", "solution": null, "affectedProducts": ["Rocky Linux 10"], "fixes": [{"ticket": "2423416", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2423416", "description": ""}, {"ticket": "2423419", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2423419", "description": ""}], "cves": [{"name": "CVE-2025-67873", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2025-67873", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:H", "cvss3BaseScore": "6.1", "cwe": "CWE-122"}, {"name": "CVE-2025-68114", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2025-68114", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H", "cvss3BaseScore": "7.3", "cwe": "CWE-787"}], "references": [], "publishedAt": "2026-04-09T12:07:05.484110Z", "rpms": {"Rocky Linux 10": {"nvras": ["capstone-java-0:5.0.1-7.el10_1.noarch.rpm", "capstone-debuginfo-0:5.0.1-7.el10_1.ppc64le.rpm","capstone-debuginfo-0:5.0.1-7.el10_1.aarch64.rpm", "capstone-devel-0:5.0.1-7.el10_1.aarch64.rpm", "capstone-debugsource-0:5.0.1-7.el10_1.ppc64le.rpm", "python3-capstone-0:5.0.1-7.el10_1.noarch.rpm", "capstone-0:5.0.1-7.el10_1.x86_64.rpm", "capstone-debuginfo-0:5.0.1-7.el10_1.s390x.rpm", "capstone-debuginfo-0:5.0.1-7.el10_1.x86_64.rpm", "capstone-debugsource-0:5.0.1-7.el10_1.x86_64.rpm", "capstone-0:5.0.1-7.el10_1.src.rpm", "capstone-devel-0:5.0.1-7.el10_1.ppc64le.rpm", "capstone-devel-0:5.0.1-7.el10_1.s390x.rpm", "capstone-0:5.0.1-7.el10_1.ppc64le.rpm", "capstone-0:5.0.1-7.el10_1.aarch64.rpm", "capstone-debugsource-0:5.0.1-7.el10_1.aarch64.rpm", "capstone-0:5.0.1-7.el10_1.s390x.rpm", "capstone-debugsource-0:5.0.1-7.el10_1.s390x.rpm", "capstone-devel-0:5.0.1-7.el10_1.x86_64.rpm"]}}, "rebootSuggested": false, "buildReferences": []}. Important capstone security update for Rocky Linux 10 addressing memory corruption and denial of service issues.. capstone update, Rocky Linux, memory corruption, denial of service. . Severity: Important. LinuxSecurity.com Team
Important: capstone security update. {"type": "TYPE_SECURITY", "shortCode": "RL", "name": "RLSA-2026:6817", "synopsis": "Important: capstone security update", "severity": "SEVERITY_IMPORTANT", "topic": "An update is available for capstone.\nThis update affects Rocky Linux 10.\nA Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list", "description": "Capstone is a disassembly framework with the target of becoming the ultimate disasm engine for binary analysis and reversing in the security community.\n\nSecurity Fix(es):\n\n* capstone: Capstone: Memory corruption via unchecked vsnprintf return (CVE-2025-68114)\n\n* capstone: Capstone: Heap buffer overflow via skipdata callback allows denial of service or arbitrary code execution. (CVE-2025-67873)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.", "solution": null, "affectedProducts": ["Rocky Linux 10"], "fixes": [{"ticket": "2423416", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2423416", "description": ""}, {"ticket": "2423419", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2423419", "description": ""}], "cves": [{"name": "CVE-2025-67873", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2025-67873", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:H", "cvss3BaseScore": "6.1", "cwe": "CWE-122"}, {"name": "CVE-2025-68114", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2025-68114", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H", "cvss3BaseScore": "7.3", "cwe": "CWE-787"}], "references": [], "publishedAt": "2026-04-09T12:07:05.484110Z", "rpms": {"Rocky Linux 10": {"nvras": ["capstone-java-0:5.0.1-7.el10_1.noarch.rpm", "capstone-debuginfo-0:5.0.1-7.el10_1.ppc64le.rpm","capstone-debuginfo-0:5.0.1-7.el10_1.aarch64.rpm", "capstone-devel-0:5.0.1-7.el10_1.aarch64.rpm", "capstone-debugsource-0:5.0.1-7.el10_1.ppc64le.rpm", "python3-capstone-0:5.0.1-7.el10_1.noarch.rpm", "capstone-0:5.0.1-7.el10_1.x86_64.rpm", "capstone-debuginfo-0:5.0.1-7.el10_1.s390x.rpm", "capstone-debuginfo-0:5.0.1-7.el10_1.x86_64.rpm", "capstone-debugsource-0:5.0.1-7.el10_1.x86_64.rpm", "capstone-0:5.0.1-7.el10_1.src.rpm", "capstone-devel-0:5.0.1-7.el10_1.ppc64le.rpm", "capstone-devel-0:5.0.1-7.el10_1.s390x.rpm", "capstone-0:5.0.1-7.el10_1.ppc64le.rpm", "capstone-0:5.0.1-7.el10_1.aarch64.rpm", "capstone-debugsource-0:5.0.1-7.el10_1.aarch64.rpm", "capstone-0:5.0.1-7.el10_1.s390x.rpm", "capstone-debugsource-0:5.0.1-7.el10_1.s390x.rpm", "capstone-devel-0:5.0.1-7.el10_1.x86_64.rpm"]}}, "rebootSuggested": false, "buildReferences": []}. Critical capstone security updates for Rocky Linux 10 address memory corruption and denial of service risks effectively.. Rocky Linux, Capstone, Security Update, Important Vulnerability, Memory Corruption. . Severity: Important. LinuxSecurity.com Team
Important: capstone security update. {"type": "TYPE_SECURITY", "shortCode": "RL", "name": "RLSA-2026:6817", "synopsis": "Important: capstone security update", "severity": "SEVERITY_IMPORTANT", "topic": "An update is available for capstone.\nThis update affects Rocky Linux 10.\nA Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list", "description": "Capstone is a disassembly framework with the target of becoming the ultimate disasm engine for binary analysis and reversing in the security community.\n\nSecurity Fix(es):\n\n* capstone: Capstone: Memory corruption via unchecked vsnprintf return (CVE-2025-68114)\n\n* capstone: Capstone: Heap buffer overflow via skipdata callback allows denial of service or arbitrary code execution. (CVE-2025-67873)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.", "solution": null, "affectedProducts": ["Rocky Linux 10"], "fixes": [{"ticket": "2423416", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2423416", "description": ""}, {"ticket": "2423419", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2423419", "description": ""}], "cves": [{"name": "CVE-2025-67873", "sourceBy": "MITRE", "sourceLink": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-67873", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:H", "cvss3BaseScore": "6.1", "cwe": "CWE-122"}, {"name": "CVE-2025-68114", "sourceBy": "MITRE", "sourceLink": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-68114", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H", "cvss3BaseScore": "7.3", "cwe": "CWE-787"}], "references": [], "publishedAt": "2026-04-09T12:07:05.484110Z", "rpms": {"Rocky Linux 10": {"nvras": ["capstone-java-0:5.0.1-7.el10_1.noarch.rpm","capstone-debuginfo-0:5.0.1-7.el10_1.ppc64le.rpm", "capstone-debuginfo-0:5.0.1-7.el10_1.aarch64.rpm", "capstone-devel-0:5.0.1-7.el10_1.aarch64.rpm", "capstone-debugsource-0:5.0.1-7.el10_1.ppc64le.rpm", "python3-capstone-0:5.0.1-7.el10_1.noarch.rpm", "capstone-0:5.0.1-7.el10_1.x86_64.rpm", "capstone-debuginfo-0:5.0.1-7.el10_1.s390x.rpm", "capstone-debuginfo-0:5.0.1-7.el10_1.x86_64.rpm", "capstone-debugsource-0:5.0.1-7.el10_1.x86_64.rpm", "capstone-0:5.0.1-7.el10_1.src.rpm", "capstone-devel-0:5.0.1-7.el10_1.ppc64le.rpm", "capstone-devel-0:5.0.1-7.el10_1.s390x.rpm", "capstone-0:5.0.1-7.el10_1.ppc64le.rpm", "capstone-0:5.0.1-7.el10_1.aarch64.rpm", "capstone-debugsource-0:5.0.1-7.el10_1.aarch64.rpm", "capstone-0:5.0.1-7.el10_1.s390x.rpm", "capstone-debugsource-0:5.0.1-7.el10_1.s390x.rpm", "capstone-devel-0:5.0.1-7.el10_1.x86_64.rpm"]}}, "rebootSuggested": false, "buildReferences": []}. Important security update for Capstone on Rocky Linux addresses potential memory corruption and denial of service issues.. Rocky Linux, Capstone, Security Update, Memory Corruption, Denial of Service. . Severity: Important. LinuxSecurity.com Team
An update that solves two vulnerabilities can now be installed.. # Security update for capstone Announcement ID: SUSE-SU-2026:20868-1 Release Date: 2026-03-25T09:32:23Z Rating: moderate References: * bsc#1255309 * bsc#1255310 Cross-References: * CVE-2025-67873 * CVE-2025-68114 CVSS scores: * CVE-2025-67873 ( SUSE ): 2.4 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:A/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N * CVE-2025-67873 ( SUSE ): 4.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:L * CVE-2025-67873 ( NVD ): 4.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:L * CVE-2025-67873 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H * CVE-2025-68114 ( SUSE ): 2.4 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:A/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N * CVE-2025-68114 ( SUSE ): 4.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:L * CVE-2025-68114 ( NVD ): 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H * CVE-2025-68114 ( NVD ): 4.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:L Affected Products: * SUSE Linux Micro 6.0 An update that solves two vulnerabilities can now be installed. ## Description: This update for capstone fixes the following issues: * CVE-2025-67873: Skipdata length unchecked leads to cs_insn.bytes heap buffer overflow (bsc#1255309). * CVE-2025-68114: Unchecked vsnprintf return in SStream_concat allows stack buffer overflow (bsc#1255310). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Micro 6.0 zypper in -t patch SUSE-SLE-Micro-6.0-641=1 ## Package List: * SUSE Linux Micro 6.0 (aarch64 s390x x86_64) * libcapstone4-4.0.2-6.1 * libcapstone4-debuginfo-4.0.2-6.1 * capstone-debugsource-4.0.2-6.1 ## References: * https://www.suse.com/security/cve/CVE-2025-67873.html * https://www.suse.com/security/cve/CVE-2025-68114.html *https://bugzilla.suse.com/show_bug.cgi?id=1255309 * https://bugzilla.suse.com/show_bug.cgi?id=1255310 . Update for capstone addresses two vulnerabilities related to buffer overflows, requiring immediate attention for SUSE users.. SUSE capstone security patch buffer overflow vulnerabilities. . LinuxSecurity.com Team
Important: capstone security update. {"type": "TYPE_SECURITY", "shortCode": "RL", "name": "RLSA-2026:4898", "synopsis": "Important: capstone security update", "severity": "SEVERITY_IMPORTANT", "topic": "An update is available for capstone.\nThis update affects Rocky Linux 9.\nA Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list", "description": "Capstone is a disassembly framework with the target of becoming the ultimate disasm engine for binary analysis and reversing in the security community.\n\nSecurity Fix(es):\n\n* capstone: Capstone: Memory corruption via unchecked vsnprintf return (CVE-2025-68114)\n\n* capstone: Capstone: Heap buffer overflow via skipdata callback allows denial of service or arbitrary code execution. (CVE-2025-67873)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.", "solution": null, "affectedProducts": ["Rocky Linux 9"], "fixes": [{"ticket": "2423416", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2423416", "description": ""}, {"ticket": "2423419", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2423419", "description": ""}], "cves": [{"name": "CVE-2025-67873", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2025-67873", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:H", "cvss3BaseScore": "6.1", "cwe": "CWE-122"}, {"name": "CVE-2025-68114", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2025-68114", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H", "cvss3BaseScore": "7.3", "cwe": "CWE-787"}], "references": [], "publishedAt": "2026-03-26T18:03:52.468416Z", "rpms": {"Rocky Linux 9": {"nvras": ["capstone-0:4.0.2-11.el9_7.aarch64.rpm", "capstone-0:4.0.2-11.el9_7.i686.rpm","capstone-0:4.0.2-11.el9_7.ppc64le.rpm", "capstone-0:4.0.2-11.el9_7.s390x.rpm", "capstone-0:4.0.2-11.el9_7.src.rpm", "capstone-0:4.0.2-11.el9_7.x86_64.rpm", "capstone-debuginfo-0:4.0.2-11.el9_7.aarch64.rpm", "capstone-debuginfo-0:4.0.2-11.el9_7.i686.rpm", "capstone-debuginfo-0:4.0.2-11.el9_7.ppc64le.rpm", "capstone-debuginfo-0:4.0.2-11.el9_7.s390x.rpm", "capstone-debuginfo-0:4.0.2-11.el9_7.x86_64.rpm", "capstone-debugsource-0:4.0.2-11.el9_7.aarch64.rpm", "capstone-debugsource-0:4.0.2-11.el9_7.i686.rpm", "capstone-debugsource-0:4.0.2-11.el9_7.ppc64le.rpm", "capstone-debugsource-0:4.0.2-11.el9_7.s390x.rpm", "capstone-debugsource-0:4.0.2-11.el9_7.x86_64.rpm", "capstone-devel-0:4.0.2-11.el9_7.aarch64.rpm", "capstone-devel-0:4.0.2-11.el9_7.i686.rpm", "capstone-devel-0:4.0.2-11.el9_7.ppc64le.rpm", "capstone-devel-0:4.0.2-11.el9_7.s390x.rpm", "capstone-devel-0:4.0.2-11.el9_7.x86_64.rpm", "capstone-java-0:4.0.2-11.el9_7.noarch.rpm", "python3-capstone-0:4.0.2-11.el9_7.aarch64.rpm", "python3-capstone-0:4.0.2-11.el9_7.ppc64le.rpm", "python3-capstone-0:4.0.2-11.el9_7.s390x.rpm", "python3-capstone-0:4.0.2-11.el9_7.x86_64.rpm", "python3-capstone-debuginfo-0:4.0.2-11.el9_7.aarch64.rpm", "python3-capstone-debuginfo-0:4.0.2-11.el9_7.ppc64le.rpm", "python3-capstone-debuginfo-0:4.0.2-11.el9_7.s390x.rpm", "python3-capstone-debuginfo-0:4.0.2-11.el9_7.x86_64.rpm"]}}, "rebootSuggested": false, "buildReferences": []}. Significant update for capstone addresses critical security issues affecting Rocky Linux 9; immediate action recommended.. security update, capstone update, Rocky Linux vulnerabilities. . Severity: Important. LinuxSecurity.com Team
Important: capstone security update. {"type": "TYPE_SECURITY", "shortCode": "RL", "name": "RLSA-2026:4898", "synopsis": "Important: capstone security update", "severity": "SEVERITY_IMPORTANT", "topic": "An update is available for capstone.\nThis update affects Rocky Linux 9.\nA Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list", "description": "Capstone is a disassembly framework with the target of becoming the ultimate disasm engine for binary analysis and reversing in the security community.\n\nSecurity Fix(es):\n\n* capstone: Capstone: Memory corruption via unchecked vsnprintf return (CVE-2025-68114)\n\n* capstone: Capstone: Heap buffer overflow via skipdata callback allows denial of service or arbitrary code execution. (CVE-2025-67873)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.", "solution": null, "affectedProducts": ["Rocky Linux 9"], "fixes": [{"ticket": "2423416", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2423416", "description": ""}, {"ticket": "2423419", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2423419", "description": ""}], "cves": [{"name": "CVE-2025-67873", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2025-67873", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:H", "cvss3BaseScore": "6.1", "cwe": "CWE-122"}, {"name": "CVE-2025-68114", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2025-68114", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H", "cvss3BaseScore": "7.3", "cwe": "CWE-787"}], "references": [], "publishedAt": "2026-03-26T18:03:52.468416Z", "rpms": {"Rocky Linux 9": {"nvras": ["capstone-0:4.0.2-11.el9_7.aarch64.rpm", "capstone-0:4.0.2-11.el9_7.i686.rpm","capstone-0:4.0.2-11.el9_7.ppc64le.rpm", "capstone-0:4.0.2-11.el9_7.s390x.rpm", "capstone-0:4.0.2-11.el9_7.src.rpm", "capstone-0:4.0.2-11.el9_7.x86_64.rpm", "capstone-debuginfo-0:4.0.2-11.el9_7.aarch64.rpm", "capstone-debuginfo-0:4.0.2-11.el9_7.i686.rpm", "capstone-debuginfo-0:4.0.2-11.el9_7.ppc64le.rpm", "capstone-debuginfo-0:4.0.2-11.el9_7.s390x.rpm", "capstone-debuginfo-0:4.0.2-11.el9_7.x86_64.rpm", "capstone-debugsource-0:4.0.2-11.el9_7.aarch64.rpm", "capstone-debugsource-0:4.0.2-11.el9_7.i686.rpm", "capstone-debugsource-0:4.0.2-11.el9_7.ppc64le.rpm", "capstone-debugsource-0:4.0.2-11.el9_7.s390x.rpm", "capstone-debugsource-0:4.0.2-11.el9_7.x86_64.rpm", "capstone-devel-0:4.0.2-11.el9_7.aarch64.rpm", "capstone-devel-0:4.0.2-11.el9_7.i686.rpm", "capstone-devel-0:4.0.2-11.el9_7.ppc64le.rpm", "capstone-devel-0:4.0.2-11.el9_7.s390x.rpm", "capstone-devel-0:4.0.2-11.el9_7.x86_64.rpm", "capstone-java-0:4.0.2-11.el9_7.noarch.rpm", "python3-capstone-0:4.0.2-11.el9_7.aarch64.rpm", "python3-capstone-0:4.0.2-11.el9_7.ppc64le.rpm", "python3-capstone-0:4.0.2-11.el9_7.s390x.rpm", "python3-capstone-0:4.0.2-11.el9_7.x86_64.rpm", "python3-capstone-debuginfo-0:4.0.2-11.el9_7.aarch64.rpm", "python3-capstone-debuginfo-0:4.0.2-11.el9_7.ppc64le.rpm", "python3-capstone-debuginfo-0:4.0.2-11.el9_7.s390x.rpm", "python3-capstone-debuginfo-0:4.0.2-11.el9_7.x86_64.rpm"]}}, "rebootSuggested": false, "buildReferences": []}. Capstone security fix impacts Rocky Linux 9 with important vulnerabilities including memory corruption and DoS risks.. Rocky Linux 9, capstone, memory corruption, denial of service. . Severity: Important. LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.