Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:. Oracle Linux Security Advisory ELSA-2026-20568 http://linux.oracle.com/errata/ELSA-2026-20568.html The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network: x86_64: jmc-8.2.0-19.el9_8.2.x86_64.rpm SRPMS: http://oss.oracle.com/ol9/SRPMS-updates/jmc-8.2.0-19.el9_8.2.src.rpm Related CVEs: CVE-2025-66566 CVE-2026-2332 Description of changes: [8.2.0-5] - Remove the websocket plugin. Related: RHEL-168615 [8.2.0-4] - Bump LZ4 Version to 1.10.2. Related: RHEL-135478 _______________________________________________ El-errata mailing list
Important: jmc security update. {"type": "TYPE_SECURITY", "shortCode": "RL", "name": "RLSA-2026:0752", "synopsis": "Important: jmc security update", "severity": "SEVERITY_IMPORTANT", "topic": "An update is available for jmc.\nThis update affects Rocky Linux 9.\nA Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list", "description": "JDK Mission Control is a powerful profiler for HotSpot JVMs and has an advanced set of tools that enables efficient and detailed analysis of the extensive data collected by JDK Flight Recorder. The tool chain enables developers and administrators to collect and analyze data from Java applications running locally or deployed in production environments.\n\nSecurity Fix(es):\n\n* lz4-java: lz4-java: Information Disclosure via Insufficient Output Buffer Clearing (CVE-2025-66566)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.", "solution": null, "affectedProducts": ["Rocky Linux 9"], "fixes": [{"ticket": "2419500", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2419500", "description": ""}], "cves": [{"name": "CVE-2025-66566", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2025-66566", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N", "cvss3BaseScore": "7.5", "cwe": "CWE-908"}], "references": [], "publishedAt": "2026-01-21T09:04:37.263586Z", "rpms": {"Rocky Linux 9": {"nvras": ["jmc-0:8.2.0-18.el9_7.2.src.rpm", "jmc-0:8.2.0-18.el9_7.2.x86_64.rpm"]}}, "rebootSuggested": false, "buildReferences": []}. Update available for jmc on Rocky Linux 9 addressing important information disclosure issue with CVE-2025-66566.. JDK Mission Control, Rocky Linux 9, jmc update, CVE-2025-66566, security patch. . Severity: Important. LinuxSecurity.com Team
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:. Oracle Linux Security Advisory ELSA-2026-0752 http://linux.oracle.com/errata/ELSA-2026-0752.html The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network: x86_64: jmc-8.2.0-18.el9_7.2.x86_64.rpm SRPMS: http://oss.oracle.com/ol9/SRPMS-updates/jmc-8.2.0-18.el9_7.2.src.rpm Related CVEs: CVE-2025-66566 Description of changes: [8.2.0-4] - Bump LZ4 Version to 1.10.2. Related: RHEL-135478 _______________________________________________ El-errata mailing list
Get the latest Linux and open source security news straight to your inbox.