Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
An update that solves 2 vulnerabilities and has 2 bug fixes can now be installed.. openSUSE security update: security update for python-pytest-html ------------------------------------------------------------- Announcement ID: openSUSE-SU-2026:21176-1 Rating: important References: * bsc#1268818 * bsc#1269361 Cross-References: * CVE-2026-13311 * CVE-2026-53550 CVSS scores: * CVE-2026-13311 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2026-13311 ( SUSE ): 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X * CVE-2026-53550 ( SUSE ): 5.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L * CVE-2026-53550 ( SUSE ): 6.9 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N Affected Products: openSUSE Leap 16.0 ------------------------------------------------------------- An update that solves 2 vulnerabilities and has 2 bug fixes can now be installed. Description: This update for python-pytest-html fixes the following issues: Changes in python-pytest-html: - Revendor updating shell-quote and js-yaml deps: - CVE-2026-13311: shell-quote: inefficient input parsing can lead to a denial of service (bsc#1269361) - CVE-2026-53550: js-yaml: quadratic complexity when processing a crafted YAML document can lead to CPU exhaustion (bsc#1268818) Patch instructions: To install this openSUSE security update use the suse recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Leap 16.0 zypper in -t patch openSUSE-Leap-16.0-packagehub-371=1 Package List: - openSUSE Leap 16.0: python313-pytest-html-4.1.1-bp160.3.1 References: * https://www.suse.com/security/cve/CVE-2026-13311.html * https://www.suse.com/security/cve/CVE-2026-53550.html . Installation available for openSUSE patch addressing significant issuesin python-pytest-html ensuring system security.. openSUSE update, python-pytest-html fix, security advisory, important vulnerabilities. . Severity: Important. LinuxSecurity.com Team
Important: container-tools:rhel8 security update. {"type": "TYPE_SECURITY", "shortCode": "RL", "name": "RLSA-2026:4672", "synopsis": "Important: container-tools:rhel8 security update", "severity": "SEVERITY_IMPORTANT", "topic": "An update is available for aardvark-dns, crun, module.udica, module.cockpit-podman, module.criu, conmon, python-podman, toolbox, module.oci-seccomp-bpf-hook, module.containers-common, module.aardvark-dns, module.libslirp, fuse-overlayfs, module.python-podman, slirp4netns, module.conmon, module.slirp4netns, criu, container-selinux, module.container-selinux, libslirp, containers-common, module.netavark, oci-seccomp-bpf-hook, module.crun, udica, cockpit-podman, module.toolbox, module.fuse-overlayfs, netavark.\nThis update affects Rocky Linux 8.\nA Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list", "description": "The container-tools module contains tools for working with containers, notably podman, buildah, skopeo, and runc.\n\nSecurity Fix(es):\n\n* golang: archive/zip: Excessive CPU consumption when building archive index in archive/zip (CVE-2025-61728)\n\n* golang: net/url: Memory exhaustion in query parameter parsing in net/url (CVE-2025-61726)\n\n* crypto/tls: Unexpected session resumption in crypto/tls (CVE-2025-68121)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.", "solution": null, "affectedProducts": ["Rocky Linux 8"], "fixes": [{"ticket": "2434431", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2434431", "description": ""}, {"ticket": "2434432", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2434432", "description": ""}, {"ticket": "2437111", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2437111", "description": ""}], "cves":[{"name": "CVE-2025-61726", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2025-61726", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "7.5", "cwe": "CWE-770"}, {"name": "CVE-2025-61728", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2025-61728", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "7.5", "cwe": "CWE-770"}, {"name": "CVE-2025-68121", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2025-68121", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N", "cvss3BaseScore": "7.4", "cwe": null}], "references": [], "publishedAt": "2026-03-17T06:00:31.227794Z", "rpms": {"Rocky Linux 8": {"nvras": ["aardvark-dns-2:1.10.1-2.module+el8.10.0+40047+0c0a73f4.aarch64.rpm", "aardvark-dns-2:1.10.1-2.module+el8.10.0+40047+0c0a73f4.src.rpm", "aardvark-dns-2:1.10.1-2.module+el8.10.0+1880+8e896d1b.src.rpm", "aardvark-dns-2:1.10.1-2.module+el8.10.0+1874+ce489889.src.rpm", "aardvark-dns-2:1.10.1-2.module+el8.10.0+1896+b18fa106.src.rpm", "aardvark-dns-2:1.10.1-2.module+el8.10.0+1948+4b5cd4a9.src.rpm", "aardvark-dns-2:1.10.1-2.module+el8.10.0+2001+6a33db9f.src.rpm", "aardvark-dns-2:1.10.1-2.module+el8.10.0+40047+0c0a73f4.x86_64.rpm", "cockpit-podman-0:84.1-1.module+el8.10.0+40047+0c0a73f4.noarch.rpm", "cockpit-podman-0:84.1-1.module+el8.10.0+1874+ce489889.src.rpm", "cockpit-podman-0:84.1-1.module+el8.10.0+1880+8e896d1b.src.rpm", "cockpit-podman-0:84.1-1.module+el8.10.0+1896+b18fa106.src.rpm", "cockpit-podman-0:84.1-1.module+el8.10.0+1948+4b5cd4a9.src.rpm", "cockpit-podman-0:84.1-1.module+el8.10.0+2001+6a33db9f.src.rpm", "cockpit-podman-0:84.1-1.module+el8.10.0+1843+6892ab28.src.rpm", "cockpit-podman-0:84.1-1.module+el8.10.0+1872+2e18eb19.src.rpm", "cockpit-podman-0:84.1-1.module+el8.10.0+1815+5fe7415e.src.rpm", "cockpit-podman-0:84.1-1.module+el8.10.0+40047+0c0a73f4.src.rpm", "cockpit-podman-0:84.1-1.module+el8.10.0+1825+623b0c20.src.rpm","conmon-3:2.1.10-1.module+el8.10.0+40047+0c0a73f4.aarch64.rpm", "conmon-3:2.1.10-1.module+el8.10.0+1872+2e18eb19.src.rpm", "conmon-3:2.1.10-1.module+el8.10.0+1874+ce489889.src.rpm", "conmon-3:2.1.10-1.module+el8.10.0+1880+8e896d1b.src.rpm", "conmon-3:2.1.10-1.module+el8.10.0+1815+5fe7415e.src.rpm", "conmon-3:2.1.10-1.module+el8.10.0+1896+b18fa106.src.rpm", "conmon-3:2.1.10-1.module+el8.10.0+2001+6a33db9f.src.rpm", "conmon-3:2.1.10-1.module+el8.10.0+1843+6892ab28.src.rpm", "conmon-3:2.1.10-1.module+el8.10.0+40047+0c0a73f4.src.rpm", "conmon-3:2.1.10-1.module+el8.10.0+1948+4b5cd4a9.src.rpm", "conmon-3:2.1.10-1.module+el8.10.0+40047+0c0a73f4.x86_64.rpm", "conmon-debuginfo-3:2.1.10-1.module+el8.10.0+1815+5fe7415e.aarch64.rpm", "conmon-debuginfo-3:2.1.10-1.module+el8.10.0+1872+2e18eb19.aarch64.rpm", "conmon-debuginfo-3:2.1.10-1.module+el8.10.0+1843+6892ab28.aarch64.rpm", "conmon-debuginfo-3:2.1.10-1.module+el8.10.0+1948+4b5cd4a9.aarch64.rpm", "conmon-debuginfo-3:2.1.10-1.module+el8.10.0+1896+b18fa106.aarch64.rpm", "conmon-debuginfo-3:2.1.10-1.module+el8.10.0+1874+ce489889.aarch64.rpm", "conmon-debuginfo-3:2.1.10-1.module+el8.10.0+1880+8e896d1b.aarch64.rpm", "conmon-debuginfo-3:2.1.10-1.module+el8.10.0+2001+6a33db9f.aarch64.rpm", "conmon-debuginfo-3:2.1.10-1.module+el8.10.0+40047+0c0a73f4.aarch64.rpm", "conmon-debuginfo-3:2.1.10-1.module+el8.10.0+40047+0c0a73f4.x86_64.rpm", "conmon-debugsource-3:2.1.10-1.module+el8.10.0+1880+8e896d1b.aarch64.rpm", "conmon-debugsource-3:2.1.10-1.module+el8.10.0+1896+b18fa106.aarch64.rpm", "conmon-debugsource-3:2.1.10-1.module+el8.10.0+2001+6a33db9f.aarch64.rpm", "conmon-debugsource-3:2.1.10-1.module+el8.10.0+40047+0c0a73f4.aarch64.rpm", "conmon-debugsource-3:2.1.10-1.module+el8.10.0+1872+2e18eb19.aarch64.rpm", "conmon-debugsource-3:2.1.10-1.module+el8.10.0+1874+ce489889.aarch64.rpm", "conmon-debugsource-3:2.1.10-1.module+el8.10.0+1815+5fe7415e.aarch64.rpm", "conmon-debugsource-3:2.1.10-1.module+el8.10.0+1948+4b5cd4a9.aarch64.rpm","conmon-debugsource-3:2.1.10-1.module+el8.10.0+1843+6892ab28.aarch64.rpm", "conmon-debugsource-3:2.1.10-1.module+el8.10.0+40047+0c0a73f4.x86_64.rpm", "containers-common-2:1-82.module+el8.10.0+40047+0c0a73f4.aarch64.rpm", "containers-common-2:1-82.module+el8.10.0+1948+4b5cd4a9.src.rpm", "containers-common-2:1-82.module+el8.10.0+1896+b18fa106.src.rpm", "containers-common-2:1-82.module+el8.10.0+2001+6a33db9f.src.rpm", "containers-common-2:1-82.module+el8.10.0+1843+6892ab28.src.rpm", "containers-common-2:1-82.module+el8.10.0+40047+0c0a73f4.src.rpm", "containers-common-2:1-82.module+el8.10.0+1872+2e18eb19.src.rpm", "containers-common-2:1-82.module+el8.10.0+1874+ce489889.src.rpm", "containers-common-2:1-82.module+el8.10.0+1880+8e896d1b.src.rpm", "containers-common-2:1-82.module+el8.10.0+40047+0c0a73f4.x86_64.rpm", "container-selinux-2:2.229.0-2.module+el8.10.0+40047+0c0a73f4.noarch.rpm", "container-selinux-2:2.229.0-2.module+el8.10.0+1815+5fe7415e.src.rpm", "container-selinux-2:2.229.0-2.module+el8.10.0+1825+623b0c20.src.rpm", "container-selinux-2:2.229.0-2.module+el8.10.0+1843+6892ab28.src.rpm", "container-selinux-2:2.229.0-2.module+el8.10.0+1872+2e18eb19.src.rpm", "container-selinux-2:2.229.0-2.module+el8.10.0+40047+0c0a73f4.src.rpm", "container-selinux-2:2.229.0-2.module+el8.10.0+1874+ce489889.src.rpm", "container-selinux-2:2.229.0-2.module+el8.10.0+1880+8e896d1b.src.rpm", "container-selinux-2:2.229.0-2.module+el8.10.0+1948+4b5cd4a9.src.rpm", "container-selinux-2:2.229.0-2.module+el8.10.0+1896+b18fa106.src.rpm", "container-selinux-2:2.229.0-2.module+el8.10.0+2001+6a33db9f.src.rpm", "crit-0:3.18-5.module+el8.10.0+40047+0c0a73f4.aarch64.rpm", "crit-0:3.18-5.module+el8.10.0+40047+0c0a73f4.x86_64.rpm", "criu-0:3.18-5.module+el8.10.0+40047+0c0a73f4.aarch64.rpm", "criu-0:3.18-5.module+el8.10.0+1896+b18fa106.src.rpm", "criu-0:3.18-5.module+el8.10.0+1880+8e896d1b.src.rpm", "criu-0:3.18-5.module+el8.10.0+1874+ce489889.src.rpm", "criu-0:3.18-5.module+el8.10.0+1872+2e18eb19.src.rpm","criu-0:3.18-5.module+el8.10.0+1948+4b5cd4a9.src.rpm", "criu-0:3.18-5.module+el8.10.0+1843+6892ab28.src.rpm", "criu-0:3.18-5.module+el8.10.0+40047+0c0a73f4.src.rpm", "criu-0:3.18-5.module+el8.10.0+2001+6a33db9f.src.rpm", "criu-0:3.18-5.module+el8.10.0+1825+623b0c20.src.rpm", "criu-0:3.18-5.module+el8.10.0+1815+5fe7415e.src.rpm", "criu-0:3.18-5.module+el8.10.0+40047+0c0a73f4.x86_64.rpm", "criu-debuginfo-0:3.18-5.module+el8.10.0+1815+5fe7415e.aarch64.rpm", "criu-debuginfo-0:3.18-5.module+el8.10.0+1825+623b0c20.aarch64.rpm", "criu-debuginfo-0:3.18-5.module+el8.10.0+1896+b18fa106.aarch64.rpm", "criu-debuginfo-0:3.18-5.module+el8.10.0+1872+2e18eb19.aarch64.rpm", "criu-debuginfo-0:3.18-5.module+el8.10.0+1880+8e896d1b.aarch64.rpm", "criu-debuginfo-0:3.18-5.module+el8.10.0+1874+ce489889.aarch64.rpm", "criu-debuginfo-0:3.18-5.module+el8.10.0+1843+6892ab28.aarch64.rpm", "criu-debuginfo-0:3.18-5.module+el8.10.0+1948+4b5cd4a9.aarch64.rpm", "criu-debuginfo-0:3.18-5.module+el8.10.0+40047+0c0a73f4.aarch64.rpm", "criu-debuginfo-0:3.18-5.module+el8.10.0+2001+6a33db9f.aarch64.rpm", "criu-debuginfo-0:3.18-5.module+el8.10.0+40047+0c0a73f4.x86_64.rpm", "criu-debugsource-0:3.18-5.module+el8.10.0+1880+8e896d1b.aarch64.rpm", "criu-debugsource-0:3.18-5.module+el8.10.0+1825+623b0c20.aarch64.rpm", "criu-debugsource-0:3.18-5.module+el8.10.0+1896+b18fa106.aarch64.rpm", "criu-debugsource-0:3.18-5.module+el8.10.0+2001+6a33db9f.aarch64.rpm", "criu-debugsource-0:3.18-5.module+el8.10.0+1874+ce489889.aarch64.rpm", "criu-debugsource-0:3.18-5.module+el8.10.0+1948+4b5cd4a9.aarch64.rpm", "criu-debugsource-0:3.18-5.module+el8.10.0+1815+5fe7415e.aarch64.rpm", "criu-debugsource-0:3.18-5.module+el8.10.0+1843+6892ab28.aarch64.rpm", "criu-debugsource-0:3.18-5.module+el8.10.0+1872+2e18eb19.aarch64.rpm", "criu-debugsource-0:3.18-5.module+el8.10.0+40047+0c0a73f4.aarch64.rpm", "criu-debugsource-0:3.18-5.module+el8.10.0+40047+0c0a73f4.x86_64.rpm", "criu-devel-0:3.18-5.module+el8.10.0+40047+0c0a73f4.aarch64.rpm","criu-devel-0:3.18-5.module+el8.10.0+40047+0c0a73f4.x86_64.rpm", "criu-libs-0:3.18-5.module+el8.10.0+40047+0c0a73f4.aarch64.rpm", "criu-libs-0:3.18-5.module+el8.10.0+40047+0c0a73f4.x86_64.rpm", "criu-libs-debuginfo-0:3.18-5.module+el8.10.0+40047+0c0a73f4.aarch64.rpm", "criu-libs-debuginfo-0:3.18-5.module+el8.10.0+2001+6a33db9f.aarch64.rpm", "criu-libs-debuginfo-0:3.18-5.module+el8.10.0+1815+5fe7415e.aarch64.rpm", "criu-libs-debuginfo-0:3.18-5.module+el8.10.0+1825+623b0c20.aarch64.rpm", "criu-libs-debuginfo-0:3.18-5.module+el8.10.0+1872+2e18eb19.aarch64.rpm", "criu-libs-debuginfo-0:3.18-5.module+el8.10.0+1896+b18fa106.aarch64.rpm", "criu-libs-debuginfo-0:3.18-5.module+el8.10.0+1843+6892ab28.aarch64.rpm", "criu-libs-debuginfo-0:3.18-5.module+el8.10.0+1948+4b5cd4a9.aarch64.rpm", "criu-libs-debuginfo-0:3.18-5.module+el8.10.0+1880+8e896d1b.aarch64.rpm", "criu-libs-debuginfo-0:3.18-5.module+el8.10.0+1874+ce489889.aarch64.rpm", "criu-libs-debuginfo-0:3.18-5.module+el8.10.0+40047+0c0a73f4.x86_64.rpm", "crun-0:1.14.3-2.module+el8.10.0+40047+0c0a73f4.aarch64.rpm", "crun-0:1.14.3-2.module+el8.10.0+40047+0c0a73f4.src.rpm", "crun-0:1.14.3-2.module+el8.10.0+2001+6a33db9f.src.rpm", "crun-0:1.14.3-2.module+el8.10.0+1948+4b5cd4a9.src.rpm", "crun-0:1.14.3-2.module+el8.10.0+1825+623b0c20.src.rpm", "crun-0:1.14.3-2.module+el8.10.0+1896+b18fa106.src.rpm", "crun-0:1.14.3-2.module+el8.10.0+1815+5fe7415e.src.rpm", "crun-0:1.14.3-2.module+el8.10.0+1880+8e896d1b.src.rpm", "crun-0:1.14.3-2.module+el8.10.0+1872+2e18eb19.src.rpm", "crun-0:1.14.3-2.module+el8.10.0+1843+6892ab28.src.rpm", "crun-0:1.14.3-2.module+el8.10.0+1874+ce489889.src.rpm", "crun-0:1.14.3-2.module+el8.10.0+40047+0c0a73f4.x86_64.rpm", "crun-debuginfo-0:1.14.3-2.module+el8.10.0+1843+6892ab28.aarch64.rpm", "crun-debuginfo-0:1.14.3-2.module+el8.10.0+1815+5fe7415e.aarch64.rpm", "crun-debuginfo-0:1.14.3-2.module+el8.10.0+1825+623b0c20.aarch64.rpm", "crun-debuginfo-0:1.14.3-2.module+el8.10.0+1896+b18fa106.aarch64.rpm","crun-debuginfo-0:1.14.3-2.module+el8.10.0+40047+0c0a73f4.aarch64.rpm", "crun-debuginfo-0:1.14.3-2.module+el8.10.0+1948+4b5cd4a9.aarch64.rpm", "crun-debuginfo-0:1.14.3-2.module+el8.10.0+1880+8e896d1b.aarch64.rpm", "crun-debuginfo-0:1.14.3-2.module+el8.10.0+1872+2e18eb19.aarch64.rpm", "crun-debuginfo-0:1.14.3-2.module+el8.10.0+2001+6a33db9f.aarch64.rpm", "crun-debuginfo-0:1.14.3-2.module+el8.10.0+1874+ce489889.aarch64.rpm", "crun-debuginfo-0:1.14.3-2.module+el8.10.0+40047+0c0a73f4.x86_64.rpm", "crun-debugsource-0:1.14.3-2.module+el8.10.0+1948+4b5cd4a9.aarch64.rpm", "crun-debugsource-0:1.14.3-2.module+el8.10.0+1872+2e18eb19.aarch64.rpm", "crun-debugsource-0:1.14.3-2.module+el8.10.0+1874+ce489889.aarch64.rpm", "crun-debugsource-0:1.14.3-2.module+el8.10.0+2001+6a33db9f.aarch64.rpm", "crun-debugsource-0:1.14.3-2.module+el8.10.0+1880+8e896d1b.aarch64.rpm", "crun-debugsource-0:1.14.3-2.module+el8.10.0+1843+6892ab28.aarch64.rpm", "crun-debugsource-0:1.14.3-2.module+el8.10.0+40047+0c0a73f4.aarch64.rpm", "crun-debugsource-0:1.14.3-2.module+el8.10.0+1896+b18fa106.aarch64.rpm", "crun-debugsource-0:1.14.3-2.module+el8.10.0+1825+623b0c20.aarch64.rpm", "crun-debugsource-0:1.14.3-2.module+el8.10.0+1815+5fe7415e.aarch64.rpm", "crun-debugsource-0:1.14.3-2.module+el8.10.0+40047+0c0a73f4.x86_64.rpm", "fuse-overlayfs-0:1.13-1.module+el8.10.0+40047+0c0a73f4.aarch64.rpm", "fuse-overlayfs-0:1.13-1.module+el8.10.0+40047+0c0a73f4.src.rpm", "fuse-overlayfs-0:1.13-1.module+el8.10.0+1948+4b5cd4a9.src.rpm", "fuse-overlayfs-0:1.13-1.module+el8.10.0+2001+6a33db9f.src.rpm", "fuse-overlayfs-0:1.13-1.module+el8.10.0+1880+8e896d1b.src.rpm", "fuse-overlayfs-0:1.13-1.module+el8.10.0+1896+b18fa106.src.rpm", "fuse-overlayfs-0:1.13-1.module+el8.10.0+1815+5fe7415e.src.rpm", "fuse-overlayfs-0:1.13-1.module+el8.10.0+1874+ce489889.src.rpm", "fuse-overlayfs-0:1.13-1.module+el8.10.0+1825+623b0c20.src.rpm", "fuse-overlayfs-0:1.13-1.module+el8.10.0+1843+6892ab28.src.rpm", "fuse-overlayfs-0:1.13-1.module+el8.10.0+1872+2e18eb19.src.rpm","fuse-overlayfs-0:1.13-1.module+el8.10.0+40047+0c0a73f4.x86_64.rpm", "fuse-overlayfs-debuginfo-0:1.13-1.module+el8.10.0+1825+623b0c20.aarch64.rpm", "fuse-overlayfs-debuginfo-0:1.13-1.module+el8.10.0+1872+2e18eb19.aarch64.rpm", "fuse-overlayfs-debuginfo-0:1.13-1.module+el8.10.0+1896+b18fa106.aarch64.rpm", "fuse-overlayfs-debuginfo-0:1.13-1.module+el8.10.0+1843+6892ab28.aarch64.rpm", "fuse-overlayfs-debuginfo-0:1.13-1.module+el8.10.0+40047+0c0a73f4.aarch64.rpm", "fuse-overlayfs-debuginfo-0:1.13-1.module+el8.10.0+2001+6a33db9f.aarch64.rpm", "fuse-overlayfs-debuginfo-0:1.13-1.module+el8.10.0+1948+4b5cd4a9.aarch64.rpm", "fuse-overlayfs-debuginfo-0:1.13-1.module+el8.10.0+1815+5fe7415e.aarch64.rpm", "fuse-overlayfs-debuginfo-0:1.13-1.module+el8.10.0+1874+ce489889.aarch64.rpm", "fuse-overlayfs-debuginfo-0:1.13-1.module+el8.10.0+1880+8e896d1b.aarch64.rpm", "fuse-overlayfs-debuginfo-0:1.13-1.module+el8.10.0+40047+0c0a73f4.x86_64.rpm", "fuse-overlayfs-debugsource-0:1.13-1.module+el8.10.0+40047+0c0a73f4.aarch64.rpm", "fuse-overlayfs-debugsource-0:1.13-1.module+el8.10.0+1874+ce489889.aarch64.rpm", "fuse-overlayfs-debugsource-0:1.13-1.module+el8.10.0+1825+623b0c20.aarch64.rpm", "fuse-overlayfs-debugsource-0:1.13-1.module+el8.10.0+1880+8e896d1b.aarch64.rpm", "fuse-overlayfs-debugsource-0:1.13-1.module+el8.10.0+2001+6a33db9f.aarch64.rpm", "fuse-overlayfs-debugsource-0:1.13-1.module+el8.10.0+1896+b18fa106.aarch64.rpm", "fuse-overlayfs-debugsource-0:1.13-1.module+el8.10.0+1948+4b5cd4a9.aarch64.rpm", "fuse-overlayfs-debugsource-0:1.13-1.module+el8.10.0+1815+5fe7415e.aarch64.rpm", "fuse-overlayfs-debugsource-0:1.13-1.module+el8.10.0+1843+6892ab28.aarch64.rpm", "fuse-overlayfs-debugsource-0:1.13-1.module+el8.10.0+1872+2e18eb19.aarch64.rpm", "fuse-overlayfs-debugsource-0:1.13-1.module+el8.10.0+40047+0c0a73f4.x86_64.rpm", "libslirp-0:4.4.0-2.module+el8.10.0+40047+0c0a73f4.aarch64.rpm", "libslirp-0:4.4.0-2.module+el8.10.0+1948+4b5cd4a9.src.rpm", "libslirp-0:4.4.0-2.module+el8.10.0+2001+6a33db9f.src.rpm","libslirp-0:4.4.0-2.module+el8.10.0+1825+623b0c20.src.rpm", "libslirp-0:4.4.0-2.module+el8.10.0+1880+8e896d1b.src.rpm", "libslirp-0:4.4.0-2.module+el8.10.0+1843+6892ab28.src.rpm", "libslirp-0:4.4.0-2.module+el8.10.0+1896+b18fa106.src.rpm", "libslirp-0:4.4.0-2.module+el8.10.0+1874+ce489889.src.rpm", "libslirp-0:4.4.0-2.module+el8.10.0+1872+2e18eb19.src.rpm", "libslirp-0:4.4.0-2.module+el8.10.0+40047+0c0a73f4.src.rpm", "libslirp-0:4.4.0-2.module+el8.10.0+1815+5fe7415e.src.rpm", "libslirp-0:4.4.0-2.module+el8.10.0+40047+0c0a73f4.x86_64.rpm", "libslirp-debuginfo-0:4.4.0-2.module+el8.10.0+1825+623b0c20.aarch64.rpm", "libslirp-debuginfo-0:4.4.0-2.module+el8.10.0+40047+0c0a73f4.aarch64.rpm", "libslirp-debuginfo-0:4.4.0-2.module+el8.10.0+1880+8e896d1b.aarch64.rpm", "libslirp-debuginfo-0:4.4.0-2.module+el8.10.0+1874+ce489889.aarch64.rpm", "libslirp-debuginfo-0:4.4.0-2.module+el8.10.0+1815+5fe7415e.aarch64.rpm", "libslirp-debuginfo-0:4.4.0-2.module+el8.10.0+1896+b18fa106.aarch64.rpm", "libslirp-debuginfo-0:4.4.0-2.module+el8.10.0+1843+6892ab28.aarch64.rpm", "libslirp-debuginfo-0:4.4.0-2.module+el8.10.0+1872+2e18eb19.aarch64.rpm", "libslirp-debuginfo-0:4.4.0-2.module+el8.10.0+1948+4b5cd4a9.aarch64.rpm", "libslirp-debuginfo-0:4.4.0-2.module+el8.10.0+2001+6a33db9f.aarch64.rpm", "libslirp-debuginfo-0:4.4.0-2.module+el8.10.0+40047+0c0a73f4.x86_64.rpm", "libslirp-debugsource-0:4.4.0-2.module+el8.10.0+40047+0c0a73f4.aarch64.rpm", "libslirp-debugsource-0:4.4.0-2.module+el8.10.0+1815+5fe7415e.aarch64.rpm", "libslirp-debugsource-0:4.4.0-2.module+el8.10.0+1843+6892ab28.aarch64.rpm", "libslirp-debugsource-0:4.4.0-2.module+el8.10.0+1872+2e18eb19.aarch64.rpm", "libslirp-debugsource-0:4.4.0-2.module+el8.10.0+1825+623b0c20.aarch64.rpm", "libslirp-debugsource-0:4.4.0-2.module+el8.10.0+1896+b18fa106.aarch64.rpm", "libslirp-debugsource-0:4.4.0-2.module+el8.10.0+1948+4b5cd4a9.aarch64.rpm", "libslirp-debugsource-0:4.4.0-2.module+el8.10.0+1874+ce489889.aarch64.rpm", "libslirp-debugsource-0:4.4.0-2.module+el8.10.0+2001+6a33db9f.aarch64.rpm","libslirp-debugsource-0:4.4.0-2.module+el8.10.0+1880+8e896d1b.aarch64.rpm", "libslirp-debugsource-0:4.4.0-2.module+el8.10.0+40047+0c0a73f4.x86_64.rpm", "libslirp-devel-0:4.4.0-2.module+el8.10.0+40047+0c0a73f4.aarch64.rpm", "libslirp-devel-0:4.4.0-2.module+el8.10.0+40047+0c0a73f4.x86_64.rpm", "netavark-2:1.10.3-1.module+el8.10.0+40047+0c0a73f4.aarch64.rpm", "netavark-2:1.10.3-1.module+el8.10.0+40047+0c0a73f4.src.rpm", "netavark-2:1.10.3-1.module+el8.10.0+1880+8e896d1b.src.rpm", "netavark-2:1.10.3-1.module+el8.10.0+1896+b18fa106.src.rpm", "netavark-2:1.10.3-1.module+el8.10.0+2001+6a33db9f.src.rpm", "netavark-2:1.10.3-1.module+el8.10.0+1948+4b5cd4a9.src.rpm", "netavark-2:1.10.3-1.module+el8.10.0+1843+6892ab28.src.rpm", "netavark-2:1.10.3-1.module+el8.10.0+1825+623b0c20.src.rpm", "netavark-2:1.10.3-1.module+el8.10.0+1815+5fe7415e.src.rpm", "netavark-2:1.10.3-1.module+el8.10.0+1872+2e18eb19.src.rpm", "netavark-2:1.10.3-1.module+el8.10.0+1874+ce489889.src.rpm", "netavark-2:1.10.3-1.module+el8.10.0+40047+0c0a73f4.x86_64.rpm", "oci-seccomp-bpf-hook-0:1.2.10-1.module+el8.10.0+40047+0c0a73f4.aarch64.rpm", "oci-seccomp-bpf-hook-0:1.2.10-1.module+el8.10.0+1825+623b0c20.src.rpm", "oci-seccomp-bpf-hook-0:1.2.10-1.module+el8.10.0+1843+6892ab28.src.rpm", "oci-seccomp-bpf-hook-0:1.2.10-1.module+el8.10.0+1815+5fe7415e.src.rpm", "oci-seccomp-bpf-hook-0:1.2.10-1.module+el8.10.0+1872+2e18eb19.src.rpm", "oci-seccomp-bpf-hook-0:1.2.10-1.module+el8.10.0+1948+4b5cd4a9.src.rpm", "oci-seccomp-bpf-hook-0:1.2.10-1.module+el8.10.0+2001+6a33db9f.src.rpm", "oci-seccomp-bpf-hook-0:1.2.10-1.module+el8.10.0+1874+ce489889.src.rpm", "oci-seccomp-bpf-hook-0:1.2.10-1.module+el8.10.0+40047+0c0a73f4.src.rpm", "oci-seccomp-bpf-hook-0:1.2.10-1.module+el8.10.0+1880+8e896d1b.src.rpm", "oci-seccomp-bpf-hook-0:1.2.10-1.module+el8.10.0+1896+b18fa106.src.rpm", "oci-seccomp-bpf-hook-0:1.2.10-1.module+el8.10.0+40047+0c0a73f4.x86_64.rpm", "oci-seccomp-bpf-hook-debuginfo-0:1.2.10-1.module+el8.10.0+1815+5fe7415e.aarch64.rpm","oci-seccomp-bpf-hook-debuginfo-0:1.2.10-1.module+el8.10.0+1825+623b0c20.aarch64.rpm", "oci-seccomp-bpf-hook-debuginfo-0:1.2.10-1.module+el8.10.0+1843+6892ab28.aarch64.rpm", "oci-seccomp-bpf-hook-debuginfo-0:1.2.10-1.module+el8.10.0+1896+b18fa106.aarch64.rpm", "oci-seccomp-bpf-hook-debuginfo-0:1.2.10-1.module+el8.10.0+1948+4b5cd4a9.aarch64.rpm", "oci-seccomp-bpf-hook-debuginfo-0:1.2.10-1.module+el8.10.0+1872+2e18eb19.aarch64.rpm", "oci-seccomp-bpf-hook-debuginfo-0:1.2.10-1.module+el8.10.0+40047+0c0a73f4.aarch64.rpm", "oci-seccomp-bpf-hook-debuginfo-0:1.2.10-1.module+el8.10.0+1874+ce489889.aarch64.rpm", "oci-seccomp-bpf-hook-debuginfo-0:1.2.10-1.module+el8.10.0+1880+8e896d1b.aarch64.rpm", "oci-seccomp-bpf-hook-debuginfo-0:1.2.10-1.module+el8.10.0+2001+6a33db9f.aarch64.rpm", "oci-seccomp-bpf-hook-debuginfo-0:1.2.10-1.module+el8.10.0+40047+0c0a73f4.x86_64.rpm", "oci-seccomp-bpf-hook-debugsource-0:1.2.10-1.module+el8.10.0+1815+5fe7415e.aarch64.rpm", "oci-seccomp-bpf-hook-debugsource-0:1.2.10-1.module+el8.10.0+1825+623b0c20.aarch64.rpm", "oci-seccomp-bpf-hook-debugsource-0:1.2.10-1.module+el8.10.0+1874+ce489889.aarch64.rpm", "oci-seccomp-bpf-hook-debugsource-0:1.2.10-1.module+el8.10.0+1872+2e18eb19.aarch64.rpm", "oci-seccomp-bpf-hook-debugsource-0:1.2.10-1.module+el8.10.0+1880+8e896d1b.aarch64.rpm", "oci-seccomp-bpf-hook-debugsource-0:1.2.10-1.module+el8.10.0+1843+6892ab28.aarch64.rpm", "oci-seccomp-bpf-hook-debugsource-0:1.2.10-1.module+el8.10.0+2001+6a33db9f.aarch64.rpm", "oci-seccomp-bpf-hook-debugsource-0:1.2.10-1.module+el8.10.0+40047+0c0a73f4.aarch64.rpm", "oci-seccomp-bpf-hook-debugsource-0:1.2.10-1.module+el8.10.0+1896+b18fa106.aarch64.rpm", "oci-seccomp-bpf-hook-debugsource-0:1.2.10-1.module+el8.10.0+1948+4b5cd4a9.aarch64.rpm", "oci-seccomp-bpf-hook-debugsource-0:1.2.10-1.module+el8.10.0+40047+0c0a73f4.x86_64.rpm", "python3-criu-0:3.18-5.module+el8.10.0+40047+0c0a73f4.aarch64.rpm", "python3-criu-0:3.18-5.module+el8.10.0+40047+0c0a73f4.x86_64.rpm","python3-podman-0:4.9.0-3.module+el8.10.0+40047+0c0a73f4.noarch.rpm", "python-podman-0:4.9.0-3.module+el8.10.0+40047+0c0a73f4.src.rpm", "python-podman-0:4.9.0-3.module+el8.10.0+1896+b18fa106.src.rpm", "python-podman-0:4.9.0-3.module+el8.10.0+2001+6a33db9f.src.rpm", "python-podman-0:4.9.0-3.module+el8.10.0+1948+4b5cd4a9.src.rpm", "slirp4netns-0:1.2.3-1.module+el8.10.0+40047+0c0a73f4.aarch64.rpm", "slirp4netns-0:1.2.3-1.module+el8.10.0+1815+5fe7415e.src.rpm", "slirp4netns-0:1.2.3-1.module+el8.10.0+1874+ce489889.src.rpm", "slirp4netns-0:1.2.3-1.module+el8.10.0+2001+6a33db9f.src.rpm", "slirp4netns-0:1.2.3-1.module+el8.10.0+1825+623b0c20.src.rpm", "slirp4netns-0:1.2.3-1.module+el8.10.0+40047+0c0a73f4.src.rpm", "slirp4netns-0:1.2.3-1.module+el8.10.0+1843+6892ab28.src.rpm", "slirp4netns-0:1.2.3-1.module+el8.10.0+1948+4b5cd4a9.src.rpm", "slirp4netns-0:1.2.3-1.module+el8.10.0+1872+2e18eb19.src.rpm", "slirp4netns-0:1.2.3-1.module+el8.10.0+1880+8e896d1b.src.rpm", "slirp4netns-0:1.2.3-1.module+el8.10.0+1896+b18fa106.src.rpm", "slirp4netns-0:1.2.3-1.module+el8.10.0+40047+0c0a73f4.x86_64.rpm", "slirp4netns-debuginfo-0:1.2.3-1.module+el8.10.0+2001+6a33db9f.aarch64.rpm", "slirp4netns-debuginfo-0:1.2.3-1.module+el8.10.0+1896+b18fa106.aarch64.rpm", "slirp4netns-debuginfo-0:1.2.3-1.module+el8.10.0+40047+0c0a73f4.aarch64.rpm", "slirp4netns-debuginfo-0:1.2.3-1.module+el8.10.0+1825+623b0c20.aarch64.rpm", "slirp4netns-debuginfo-0:1.2.3-1.module+el8.10.0+1843+6892ab28.aarch64.rpm", "slirp4netns-debuginfo-0:1.2.3-1.module+el8.10.0+1874+ce489889.aarch64.rpm", "slirp4netns-debuginfo-0:1.2.3-1.module+el8.10.0+1872+2e18eb19.aarch64.rpm", "slirp4netns-debuginfo-0:1.2.3-1.module+el8.10.0+1880+8e896d1b.aarch64.rpm", "slirp4netns-debuginfo-0:1.2.3-1.module+el8.10.0+1815+5fe7415e.aarch64.rpm", "slirp4netns-debuginfo-0:1.2.3-1.module+el8.10.0+1948+4b5cd4a9.aarch64.rpm", "slirp4netns-debuginfo-0:1.2.3-1.module+el8.10.0+40047+0c0a73f4.x86_64.rpm", "slirp4netns-debugsource-0:1.2.3-1.module+el8.10.0+2001+6a33db9f.aarch64.rpm","slirp4netns-debugsource-0:1.2.3-1.module+el8.10.0+40047+0c0a73f4.aarch64.rpm", "slirp4netns-debugsource-0:1.2.3-1.module+el8.10.0+1815+5fe7415e.aarch64.rpm", "slirp4netns-debugsource-0:1.2.3-1.module+el8.10.0+1896+b18fa106.aarch64.rpm", "slirp4netns-debugsource-0:1.2.3-1.module+el8.10.0+1880+8e896d1b.aarch64.rpm", "slirp4netns-debugsource-0:1.2.3-1.module+el8.10.0+1948+4b5cd4a9.aarch64.rpm", "slirp4netns-debugsource-0:1.2.3-1.module+el8.10.0+1825+623b0c20.aarch64.rpm", "slirp4netns-debugsource-0:1.2.3-1.module+el8.10.0+1843+6892ab28.aarch64.rpm", "slirp4netns-debugsource-0:1.2.3-1.module+el8.10.0+1872+2e18eb19.aarch64.rpm", "slirp4netns-debugsource-0:1.2.3-1.module+el8.10.0+1874+ce489889.aarch64.rpm", "slirp4netns-debugsource-0:1.2.3-1.module+el8.10.0+40047+0c0a73f4.x86_64.rpm", "toolbox-0:0.0.99.5.1-1.module+el8.10.0+40087+cfe9c127.rocky.0.2.aarch64.rpm", "toolbox-0:0.0.99.5.1-1.module+el8.10.0+40087+cfe9c127.rocky.0.2.src.rpm", "toolbox-0:0.0.99.5.1-1.module+el8.10.0+40087+cfe9c127.rocky.0.2.x86_64.rpm", "toolbox-debuginfo-0:0.0.99.5.1-1.module+el8.10.0+40087+cfe9c127.rocky.0.2.aarch64.rpm", "toolbox-debuginfo-0:0.0.99.5.1-1.module+el8.10.0+40087+cfe9c127.rocky.0.2.x86_64.rpm", "toolbox-debugsource-0:0.0.99.5.1-1.module+el8.10.0+40087+cfe9c127.rocky.0.2.aarch64.rpm", "toolbox-debugsource-0:0.0.99.5.1-1.module+el8.10.0+40087+cfe9c127.rocky.0.2.x86_64.rpm", "toolbox-tests-0:0.0.99.5.1-1.module+el8.10.0+40087+cfe9c127.rocky.0.2.aarch64.rpm", "toolbox-tests-0:0.0.99.5.1-1.module+el8.10.0+40087+cfe9c127.rocky.0.2.x86_64.rpm", "udica-0:0.2.6-21.module+el8.10.0+40047+0c0a73f4.noarch.rpm", "udica-0:0.2.6-21.module+el8.10.0+1896+b18fa106.src.rpm", "udica-0:0.2.6-21.module+el8.10.0+1948+4b5cd4a9.src.rpm", "udica-0:0.2.6-21.module+el8.10.0+1815+5fe7415e.src.rpm", "udica-0:0.2.6-21.module+el8.10.0+1874+ce489889.src.rpm", "udica-0:0.2.6-21.module+el8.10.0+1825+623b0c20.src.rpm", "udica-0:0.2.6-21.module+el8.10.0+1880+8e896d1b.src.rpm", "udica-0:0.2.6-21.module+el8.10.0+2001+6a33db9f.src.rpm","udica-0:0.2.6-21.module+el8.10.0+40047+0c0a73f4.src.rpm", "udica-0:0.2.6-21.module+el8.10.0+1843+6892ab28.src.rpm", "udica-0:0.2.6-21.module+el8.10.0+1872+2e18eb19.src.rpm"]}}, "rebootSuggested": false, "buildReferences": []}. Important container-tools security updates for Rocky Linux 8, addressing key issues related to excessive CPU and memory consumption.. container-tools updates, rocky linux security, security advisories, cpu exhaustion exploit. . Severity: Important. LinuxSecurity.com Team
Important: golang security update. {"type": "TYPE_SECURITY", "shortCode": "RL", "name": "RLSA-2026:2709", "synopsis": "Important: golang security update", "severity": "SEVERITY_IMPORTANT", "topic": "An update is available for golang.\nThis update affects Rocky Linux 9.\nA Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list", "description": "The golang packages provide the Go programming language compiler.\n\nSecurity Fix(es):\n\n* golang: archive/zip: Excessive CPU consumption when building archive index in archive/zip (CVE-2025-61728)\n\n* golang: net/url: Memory exhaustion in query parameter parsing in net/url (CVE-2025-61726)\n\n* cmd/cgo: Potential code smuggling via doc comments in cmd/cgo (CVE-2025-61732)\n\n* crypto/tls: Unexpected session resumption in crypto/tls (CVE-2025-68121)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.", "solution": null, "affectedProducts": ["Rocky Linux 9"], "fixes": [{"ticket": "2434431", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2434431", "description": ""}, {"ticket": "2434432", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2434432", "description": ""}, {"ticket": "2437016", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2437016", "description": ""}, {"ticket": "2437111", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2437111", "description": ""}], "cves": [{"name": "CVE-2025-61726", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2025-61726", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "7.5", "cwe": "CWE-770"}, {"name": "CVE-2025-61728", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2025-61728","cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "7.5", "cwe": "CWE-770"}, {"name": "CVE-2025-61732", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2025-61732", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N", "cvss3BaseScore": "7.4", "cwe": null}, {"name": "CVE-2025-68121", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2025-68121", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N", "cvss3BaseScore": "7.4", "cwe": null}], "references": [], "publishedAt": "2026-02-17T09:05:35.877759Z", "rpms": {"Rocky Linux 9": {"nvras": ["golang-src-0:1.25.7-1.el9_7.noarch.rpm", "golang-0:1.25.7-1.el9_7.aarch64.rpm", "golang-0:1.25.7-1.el9_7.ppc64le.rpm", "golang-0:1.25.7-1.el9_7.s390x.rpm", "golang-0:1.25.7-1.el9_7.src.rpm", "golang-0:1.25.7-1.el9_7.x86_64.rpm", "golang-bin-0:1.25.7-1.el9_7.aarch64.rpm", "golang-bin-0:1.25.7-1.el9_7.ppc64le.rpm", "golang-bin-0:1.25.7-1.el9_7.s390x.rpm", "golang-bin-0:1.25.7-1.el9_7.x86_64.rpm", "golang-docs-0:1.25.7-1.el9_7.noarch.rpm", "golang-misc-0:1.25.7-1.el9_7.noarch.rpm", "golang-race-0:1.25.7-1.el9_7.aarch64.rpm", "golang-race-0:1.25.7-1.el9_7.ppc64le.rpm", "golang-race-0:1.25.7-1.el9_7.s390x.rpm", "golang-race-0:1.25.7-1.el9_7.x86_64.rpm", "golang-tests-0:1.25.7-1.el9_7.noarch.rpm", "go-toolset-0:1.25.7-1.el9_7.aarch64.rpm", "go-toolset-0:1.25.7-1.el9_7.ppc64le.rpm", "go-toolset-0:1.25.7-1.el9_7.s390x.rpm", "go-toolset-0:1.25.7-1.el9_7.x86_64.rpm"]}}, "rebootSuggested": false, "buildReferences": []}. Golang security update for Rocky Linux addresses critical performance issues including CPU and memory consumption. Learn more.. Golang Security Update, Rocky Linux Advisory, CPU Exhaustion Issue, Security Fix for Golang. . Severity: Important. LinuxSecurity.com Team
* bsc#1236596 Cross-References: * CVE-2024-11187 . # Security update for bind Announcement ID: SUSE-SU-2025:0389-1 Release Date: 2025-02-10T07:33:42Z Rating: important References: * bsc#1236596 Cross-References: * CVE-2024-11187 CVSS scores: * CVE-2024-11187 ( SUSE ): 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N * CVE-2024-11187 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2024-11187 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H Affected Products: * SUSE Linux Enterprise High Performance Computing 12 SP5 * SUSE Linux Enterprise Server 12 SP5 * SUSE Linux Enterprise Server 12 SP5 LTSS * SUSE Linux Enterprise Server 12 SP5 LTSS Extended Security * SUSE Linux Enterprise Server for SAP Applications 12 SP5 An update that solves one vulnerability can now be installed. ## Description: This update for bind fixes the following issues: * CVE-2024-11187: Fixes CPU exhaustion caused by many records in the additional section (bsc#1236596) ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Enterprise Server 12 SP5 LTSS Extended Security zypper in -t patch SUSE-SLE-SERVER-12-SP5-LTSS-EXTENDED-SECURITY-2025-389=1 * SUSE Linux Enterprise Server 12 SP5 LTSS zypper in -t patch SUSE-SLE-SERVER-12-SP5-LTSS-2025-389=1 ## Package List: * SUSE Linux Enterprise Server 12 SP5 LTSS Extended Security (x86_64) * libisc1107-debuginfo-9.11.22-3.60.2 * libisccc161-9.11.22-3.60.2 * libisccc161-debuginfo-9.11.22-3.60.2 * libisc1107-9.11.22-3.60.2 * bind-utils-9.11.22-3.60.2 * bind-9.11.22-3.60.2 * libisccfg163-9.11.22-3.60.2 * bind-chrootenv-9.11.22-3.60.2 * libdns1110-9.11.22-3.60.2 * libirs161-9.11.22-3.60.2 * bind-utils-debuginfo-9.11.22-3.60.2 * liblwres161-debuginfo-9.11.22-3.60.2 * libirs161-debuginfo-9.11.22-3.60.2 * bind-debugsource-9.11.22-3.60.2 * libisc1107-32bit-9.11.22-3.60.2 * libisc1107-debuginfo-32bit-9.11.22-3.60.2 * bind-debuginfo-9.11.22-3.60.2 * libisccfg163-debuginfo-9.11.22-3.60.2 * libbind9-161-9.11.22-3.60.2 * bind-devel-9.11.22-3.60.2 * liblwres161-9.11.22-3.60.2 * libdns1110-debuginfo-9.11.22-3.60.2 * libbind9-161-debuginfo-9.11.22-3.60.2 * SUSE Linux Enterprise Server 12 SP5 LTSS Extended Security (noarch) * python-bind-9.11.22-3.60.2 * bind-doc-9.11.22-3.60.2 * SUSE Linux Enterprise Server 12 SP5 LTSS (aarch64 ppc64le s390x x86_64) * libisc1107-debuginfo-9.11.22-3.60.2 * libisccc161-9.11.22-3.60.2 * libisccc161-debuginfo-9.11.22-3.60.2 * libisc1107-9.11.22-3.60.2 * bind-utils-9.11.22-3.60.2 * bind-9.11.22-3.60.2 * libisccfg163-9.11.22-3.60.2 * bind-chrootenv-9.11.22-3.60.2 * libdns1110-9.11.22-3.60.2 * libirs161-9.11.22-3.60.2 * bind-utils-debuginfo-9.11.22-3.60.2 * liblwres161-debuginfo-9.11.22-3.60.2 * libirs161-debuginfo-9.11.22-3.60.2 * bind-debugsource-9.11.22-3.60.2 * bind-debuginfo-9.11.22-3.60.2 * libisccfg163-debuginfo-9.11.22-3.60.2 * libbind9-161-9.11.22-3.60.2 * bind-devel-9.11.22-3.60.2 * liblwres161-9.11.22-3.60.2 * libdns1110-debuginfo-9.11.22-3.60.2 * libbind9-161-debuginfo-9.11.22-3.60.2 * SUSE Linux Enterprise Server 12 SP5 LTSS (noarch) * python-bind-9.11.22-3.60.2 * bind-doc-9.11.22-3.60.2 * SUSE Linux Enterprise Server 12 SP5 LTSS (s390x x86_64) * libisc1107-debuginfo-32bit-9.11.22-3.60.2 * libisc1107-32bit-9.11.22-3.60.2 ## References: * https://www.suse.com/security/cve/CVE-2024-11187.html * https://bugzilla.suse.com/show_bug.cgi?id=1236596 . Essential SUSE patch resolves CPU overload in bind. Prompt installation is advised for vulnerable systems.. SUSE Linux, bind security, server patch, software update, system security. . Severity: Critical. LinuxSecurity.com Team
An update that fixes one vulnerability is now available.. openSUSE Security Update: Security update for libqt5-qtimageformats ______________________________________________________________________________ Announcement ID: openSUSE-SU-2019:1115-1 Rating: moderate References: #1118598 Cross-References: CVE-2018-19871 Affected Products: openSUSE Leap 15.0 ______________________________________________________________________________ An update that fixes one vulnerability is now available. Description: This update for libqt5-qtimageformats fixes the following issues: Security issues fixed: - CVE-2018-19871: Fixed CPU exhaustion in QTgaFile (bsc#1118598) This update was imported from the SUSE:SLE-15:Update update project. Patch Instructions: To install this openSUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Leap 15.0: zypper in -t patch openSUSE-2019-1115=1 Package List: - openSUSE Leap 15.0 (i586 x86_64): libqt5-qtimageformats-5.9.4-lp150.2.3.2 libqt5-qtimageformats-debuginfo-5.9.4-lp150.2.3.2 libqt5-qtimageformats-debugsource-5.9.4-lp150.2.3.2 libqt5-qtimageformats-devel-5.9.4-lp150.2.3.2 - openSUSE Leap 15.0 (x86_64): libqt5-qtimageformats-32bit-5.9.4-lp150.2.3.2 libqt5-qtimageformats-32bit-debuginfo-5.9.4-lp150.2.3.2 References: https://www.suse.com/security/cve/CVE-2018-19871.html https://bugzilla.suse.com/1118598 -- . A new update for libqt5-qtimageformats has been released to resolve a moderate CPU usage problem in openSUSE Leap 15.0.. libqt5, openSUSE Leap, security update, CPU exhaustion, moderate threat. . LinuxSecurity.com Team
An update that fixes one vulnerability is now available. . SUSE Security Update: Security update for libqt5-qtimageformats ______________________________________________________________________________ Announcement ID: SUSE-SU-2019:0705-1 Rating: moderate References: #1118598 Cross-References: CVE-2018-19871 Affected Products: SUSE Linux Enterprise Module for Desktop Applications 15 ______________________________________________________________________________ An update that fixes one vulnerability is now available. Description: This update for libqt5-qtimageformats fixes the following issues: Security issues fixed: - CVE-2018-19871: Fixed CPU exhaustion in QTgaFile (bsc#1118598) Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - SUSE Linux Enterprise Module for Desktop Applications 15: zypper in -t patch SUSE-SLE-Module-Desktop-Applications-15-2019-705=1 Package List: - SUSE Linux Enterprise Module for Desktop Applications 15 (aarch64 ppc64le s390x x86_64): libqt5-qtimageformats-5.9.4-3.3.17 libqt5-qtimageformats-debuginfo-5.9.4-3.3.17 libqt5-qtimageformats-debugsource-5.9.4-3.3.17 libqt5-qtimageformats-devel-5.9.4-3.3.17 References: https://www.suse.com/security/cve/CVE-2018-19871.html https://bugzilla.suse.com/1118598 _______________________________________________ sle-security-updates mailing list
Update to mingw-qt5-*-5.11.3, see https://www.qt.io/blog for details. Update to mingw-sip-4.19.13, see for details.. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2019-3c45bd2cc3 2019-01-30 02:06:12.445690 --------------------------------------------------------------------------------Name : mingw-qt5-qtwinextras Product : Fedora 29 Version : 5.11.3 Release : 1.fc29 URL : https://www.qt.io/ Summary : Qt5 for Windows - QtWinExtras component Description : This package contains the Qt software toolkit for developing cross-platform applications. This is the Windows version of Qt, for use in conjunction with the Fedora Windows cross-compiler. --------------------------------------------------------------------------------Update Information: Update to mingw-qt5-*-5.11.3, see https://www.qt.io/blog for details. Update to mingw-sip-4.19.13, see for details. --------------------------------------------------------------------------------ChangeLog: * Mon Jan 14 2019 Sandro Mani - 5.11.3-1 - Update to 5.11.3 * Sun Sep 23 2018 Sandro Mani - 5.11.2-1 - Update to 5.11.2 --------------------------------------------------------------------------------References: [ 1 ] Bug #1659001 - CVE-2018-15518 CVE-2018-19870 CVE-2018-19873 mingw-qt5-qtbase: various flaws [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1659001 [ 2 ] Bug #1661461 - CVE-2018-19869 mingw-qt5-qtsvg: qt5-qtsvg: Invalid parsing of malformed url reference resulting in a denial of service [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1661461 [ 3 ] Bug #1661466 - CVE-2018-19871 mingw-qt5-qtimageformats: qt5-qtimageformats: QTgaFile CPU exhaustion [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1661466 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade--advisory FEDORA-2019-3c45bd2cc3' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list --
Andreas Solberg discovered that libxml2 did not handle recursive entities safely. If an application linked against libxml2 were made to process a specially crafted XML document, a remote attacker could exhaust the system's CPU resources, leading to a denial of service. . =========================================================== Ubuntu Security Notice USN-640-1 September 03, 2008 libxml2 vulnerability CVE-2008-3281 ========================================================== A security issue affects the following Ubuntu releases: Ubuntu 6.06 LTS Ubuntu 7.04 Ubuntu 7.10 Ubuntu 8.04 LTS This advisory also applies to the corresponding versions of Kubuntu, Edubuntu, and Xubuntu. The problem can be corrected by upgrading your system to the following package versions: Ubuntu 6.06 LTS: libxml2 2.6.24.dfsg-1ubuntu1.2 Ubuntu 7.04: libxml2 2.6.27.dfsg-1ubuntu3.2 Ubuntu 7.10: libxml2 2.6.30.dfsg-2ubuntu1.2 Ubuntu 8.04 LTS: libxml2 2.6.31.dfsg-2ubuntu1.1 In general, a standard system upgrade is sufficient to effect the necessary changes. Details follow: Andreas Solberg discovered that libxml2 did not handle recursive entities safely. If an application linked against libxml2 were made to process a specially crafted XML document, a remote attacker could exhaust the system's CPU resources, leading to a denial of service. Updated packages for Ubuntu 6.06 LTS: Source archives: Size/MD5: 60191 6a214b689f58040545ff197fe4163255 Size/MD5: 940 c5fc18917961e09df890c01c325f123d Size/MD5: 3293814 461eb1bf7f0c845f7ff7d9b1a4c4eac8 Architecture independent packages: Size/MD5: 1252772 d820db218e3f2fee1a6a1318379d6ee7 Size/MD5: 18988 4ce9dd93fe5ad4ec0547c1f2d24020ee amd64 architecture (Athlon64, Opteron, EM64T Xeon): Size/MD5: 918232 14b5fa19b5a025fb76bedc0c42c74132 Size/MD5: 737156 eab5587f1f6c46ee8efa4c3ae49e3245 Size/MD5: 36692 2220b5e79eebdb14ae8e95ce4743db8c Size/MD5: 752360 9adf37be52a761a6989349e64566c71c Size/MD5: 181658 b4e527c71c64a06573368ca395ec6076 i386 architecture (x86 compatible Intel/AMD): Size/MD5: 765570 eae8c86ee5e0408c44d34752c56f7894 Size/MD5: 641600 500367c779b75de2885e887a6d46d6df Size/MD5: 32976 14135212c4b907c97b134521acd2fcc7 Size/MD5: 684460 d1a1199d59e399b1dd70b601707d4cef Size/MD5: 166422 25f5289cd6f7a312a94560e30d9aa9a1 powerpc architecture (Apple Macintosh G3/G4/G5): Size/MD5: 904190 d1aafd718b903d24c12a8ef8940062fa Size/MD5: 760864 67a7e5075b1b4b2ed69b805525236903 Size/MD5: 37424 f3a634f8a137b00d93b817e0b5b3c05f Size/MD5: 733294 bd50c0fed7a540607d7e28ccb5db8e21 Size/MD5: 170820 84353c8e07095ae7dfc0cdadeef4c70e sparc architecture (Sun SPARC/UltraSPARC): Size/MD5: 745178 0e88615626fab9d24c45500bb36d7117 Size/MD5: 703220 e3fa546314d80b857c524c8a1ad18ce5 Size/MD5: 34306 07189657822d4b4a24f0821a42388904 Size/MD5: 716374 ac7e64beace4d313237373d2cc50d745 Size/MD5: 174780 cf3278be2f270a75e7864d13a35b4856 Updated packages for Ubuntu 7.04: Source archives: Size/MD5: 146205 327b7dcc16dd41b735a8abbe84f94241 Size/MD5: 1109 244fa5269dfbf1fd1af1ebf226fb04ae Size/MD5: 3416175 5ff71b22f6253a6dd9afc1c34778dec3 Architecture independent packages: Size/MD5: 1293138 63f851f149d97e458842857887680b08 amd64 architecture (Athlon64, Opteron, EM64T Xeon): Size/MD5: 894700 5f757978b789b2c4d134a1c4c4979d15 Size/MD5: 747622 b48287a92fc3da9bd4a1272ff6d9e72f Size/MD5: 575288 608bb2e2d67635e9d050e398f17ed594 Size/MD5: 37138 2c71a708a1514402c3bd0881af6293ee Size/MD5: 809572ec87d03e38b5bd7ae5788b4d0862ade8 Size/MD5: 862306 32dd3c4ccb9459c6dab7c40c91230953 Size/MD5: 292858 76ac76d74921f9b26c13e1b3a217fec1 i386 architecture (x86 compatible Intel/AMD): Size/MD5: 850664 1e8c355c8380437bd80220a63540519b Size/MD5: 672718 1aaca4b39cabec020fd3ae37a0e9e10a Size/MD5: 527126 4f4c5788ee5f92af4b1deebf54d5ec5e Size/MD5: 34232 3f7580b929b08b1ce51461e8df4ef87b Size/MD5: 761286 8aa414c05ab13b164d0ebe478cf9d250 Size/MD5: 788794 78ebe0956b541cb125028d03d75b9bf0 Size/MD5: 262452 a37121d006462557743f7518059c74d6 powerpc architecture (Apple Macintosh G3/G4/G5): Size/MD5: 895858 9ecdee5e7d792f93795bef204f132256 Size/MD5: 774336 3b760fda601d50785eb78683dad9635e Size/MD5: 559728 cbb92482b752b00d1df0459d26d07c2b Size/MD5: 42338 c813dfd770ca3d103a4929f144564832 Size/MD5: 794508 0dbda1b2c17461e2a160458b10fe2394 Size/MD5: 856114 eafc1a3a6e92b8dadfef317905a5c81a Size/MD5: 286514 be5355b5a55df77bc5b380c3a47822de sparc architecture (Sun SPARC/UltraSPARC): Size/MD5: 787800 402ccd3b713dfc52d03c4af9bb88afc5 Size/MD5: 715350 245c6244696d804f26343e4f42ff4ade Size/MD5: 538886 b73764fd8acc8290a75d4c4eaf48ded0 Size/MD5: 36394 506372bd37985bc6dd0532f79d0bb437 Size/MD5: 773492 19960be81230e2f53c40140b09a92cc7 Size/MD5: 816310 b89752d772f2ced1eed09ce8e93b9615 Size/MD5: 278880 205a4f13c6b2ebcd31d9e64524cf4457 Updated packages for Ubuntu 7.10: Source archives: Size/MD5: 178818 77dd1f98bf183b11f3f97a134ab0bf39 Size/MD5: 1109 588e007509ea87254c730c52cb9f5ca4 Size/MD5: 3433982 fe52a06fd8f104308271eb7093a0b644 Architecture independent packages: Size/MD5: 1300148 72a2b0f0f281b7a9eb26dfc86c15d533 amd64 architecture (Athlon64, Opteron, EM64TXeon): Size/MD5: 895172 a3765c87a0eed80efed465a9cd7a577d Size/MD5: 752786 f510e178ab5ca44a088f6a9941feaa88 Size/MD5: 578414 585590746e1174feae78b05e48c1c3c2 Size/MD5: 37180 cc74418be746fdf0259f2168aab0be6b Size/MD5: 818792 022e40c4156cc04890054ebf7ac3b7b1 Size/MD5: 863906 419ae7d77cf0088942cb200a545c3dd9 Size/MD5: 293814 35832922ab8429c19008c2f2a19b4f6e i386 architecture (x86 compatible Intel/AMD): Size/MD5: 853970 f2117b1e3a5de1e213a8054f524be7ce Size/MD5: 675252 9ee0ad03a7d9c203e70bc167f2acc43b Size/MD5: 529026 64903f5b14c3f24c960e96ab2e71a2f1 Size/MD5: 34254 c06a55656107e446ed5b94d85cbae364 Size/MD5: 770118 5cd1d37b516334cb75919f58f4e55c1d Size/MD5: 792528 66bc6a0f7a64aa540b35ff969207e493 Size/MD5: 263078 863919afaf2c3b8c710e3ee7373fba4b lpia architecture (Low Power Intel Architecture): Size/MD5: 929776 b55d7dd7f45f18c7f3afbcf1c703ce9e Size/MD5: 679106 8dfd3a8a5762febbdb359fe7226da3b1 Size/MD5: 529034 7dedfa1e999b52d89c0a5959b6ba43ab Size/MD5: 34526 8c45330b6d2af115043911cf69425c80 Size/MD5: 770232 e3d1ca84b7d9c01fe477813f1e598ba8 Size/MD5: 788080 bb8cf4cd7197b8a82fd60ff0081619f5 Size/MD5: 259678 1c327b8809443d353013fc757edbfc9d powerpc architecture (Apple Macintosh G3/G4/G5): Size/MD5: 896444 5ff597f4020d7325094b89fc8f3c9507 Size/MD5: 777268 9feb05e7cb40d7bc3c409dde19fa03f1 Size/MD5: 561644 63986fb94f3629d5c82acd2383dd9b29 Size/MD5: 42350 b9c1026c57bf661ee98879c7adeb10ab Size/MD5: 802244 0d5e3d4e2f3882349f40d4b8fec0a483 Size/MD5: 857862 0ef43bb8deb0bc1fbc9e4ac84ad0d419 Size/MD5: 287272 f98059e171281fe73c65c573cf3e252f sparc architecture (Sun SPARC/UltraSPARC): Size/MD5: 7869101cd704514114beef814df88317d7924c Size/MD5: 718288 07844b3e88ec93af62ab50ba9e99b8a9 Size/MD5: 541390 c2da24a6c928d2c1a799738b75b9c7ae Size/MD5: 36498 866364008170a6824f4d122c9b00a9f1 Size/MD5: 781352 3d6c5d0f50c2df7773f3ca431bc1ccb1 Size/MD5: 815996 0c811fecca83247dfa40e977964d0dc4 Size/MD5: 279510 d16d97e4915d021f259191ba35fc9244 Updated packages for Ubuntu 8.04 LTS: Source archives: Size/MD5: 64396 01a0b6f8cc4212ea13ff40932b020bc7 Size/MD5: 1110 88ee4eb3f7a214112fd64efe9cf78af2 Size/MD5: 3442959 8498d4e6f284d2f0a01560f089cb5a3e Architecture independent packages: Size/MD5: 1302230 6086b009e176b010ae1845f2445e5dc0 amd64 architecture (Athlon64, Opteron, EM64T Xeon): Size/MD5: 939106 e7bc5b67fcadb2c77f05b149ff61fbf3 Size/MD5: 753526 919a1cc44e5c144861fdf25f7db18e98 Size/MD5: 580050 413c39297aec531026b9977770e0ae4c Size/MD5: 37054 83ba40304914ad952035f34aa371fb8d Size/MD5: 831902 65df7a8169b85121e89e5c63e90079af Size/MD5: 872904 430a7c21fc29f6575bd3ad37591eaec3 Size/MD5: 297974 1d0e5c41fed847b5abb46cbde2161e1b i386 architecture (x86 compatible Intel/AMD): Size/MD5: 904844 e4d058cb8c45c75004642ce435a0d001 Size/MD5: 676046 f99a3d75094888d30c7883c60cb2d69e Size/MD5: 532798 d0a9588361fd30ff387723849e22c247 Size/MD5: 34050 a6bae002d015bea458f3fcacb4deec99 Size/MD5: 785396 fa2b9dfa062667138ef9eff748132301 Size/MD5: 796222 095b2733a48adf7959be6c96670e9ba9 Size/MD5: 262972 66673fdddbfa8e41acc4020ffe565494 lpia architecture (Low Power Intel Architecture): Size/MD5: 930530 7bcc05bd11dbf8d90542512ca1caf4dd Size/MD5: 679132 f43f12fc4a6404e71dc222e439270b4e Size/MD5: 528668 93961d14f15d935829a55f273f7d9435 Size/MD5: 34498ec405a518c482f62cdd5d2edbd3c3bcb Size/MD5: 780742 ea05aca1919347860ec2796761c0c17d Size/MD5: 788506 cb3909087b0e915f9e85970b2199e7e8 Size/MD5: 259634 bad001b19aaa6a3c06d518f8be02273c powerpc architecture (Apple Macintosh G3/G4/G5): Size/MD5: 922482 fbf1caf4e58eb7c2beda992d1f9d28b8 Size/MD5: 775678 14ff35624f61779ec8c03c8b54fc7e0f Size/MD5: 563516 c43b62cc44962f00523fe965f8db0e73 Size/MD5: 42062 855016ce88595d7e5e310b91de0baa67 Size/MD5: 815508 b5260005ea0b25678f4e96a12a1b6715 Size/MD5: 841262 ef1027246949de19103e2fdea6a4d69e Size/MD5: 285368 15d700fd21c2fb8a9f2e365aa4456817 sparc architecture (Sun SPARC/UltraSPARC): Size/MD5: 824842 f507543302feb3b628f75591f7257ff1 Size/MD5: 719258 a34c62b0caaeb0aa181b3db76d382bcc Size/MD5: 540722 ee04422f1b0d440f4d8513edf1efb09c Size/MD5: 36186 a08df0439ab046d7614a73f6a5c05ce7 Size/MD5: 792522 c50ba8e8379fb6c0e8437c3ae18e8c5d Size/MD5: 807752 9ab94dffa20f9bd7a80bf170c76d9061 Size/MD5: 277516 f498f07cdc37d09fc8f263fcfdc7a327 . A critical libxml2 flaw can lead to CPU overload due to harmful XML on Ubuntu platforms. Ensure protection by applying updates promptly.. libxml2, denial of service, ubuntu update, security patch. . Severity: Critical. LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.