Alerts This Week
Warning Icon 1 562
Alerts This Week
Warning Icon 1 562

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found 5 articles for you...
219

Rocky Linux 9 Security Update RLSA-2023-9483 Major Upgrade for NET Core 9.1

Important: .NET 9.0 security update. {"type": "TYPE_SECURITY", "shortCode": "RL", "name": "RLSA-2026:8474", "synopsis": "Important: .NET 9.0 security update", "severity": "SEVERITY_IMPORTANT", "topic": "An update is available for dotnet9.0.\nThis update affects Rocky Linux 9.\nA Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list", "description": ".NET is a managed-software framework. It implements a subset of the .NET framework APIs and several new APIs, and it includes a CLR implementation.\n\nNew versions of .NET that address a security vulnerability are now available. The updated versions are .NET SDK 9.0.116 and .NET Runtime 9.0.15.Security Fix(es):\n\n* dotnet: .NET: Security Bypass and Denial of Service Vulnerability (CVE-2026-26171)\n\n* dotnet: .NET: Denial of Service via stack overflow (CVE-2026-32203)\n\n* dotnet: .NET: Denial of Service via Infinite Recursion in XmlDecryptionTransform (CVE-2026-33116)\n\n* dotnet: Dotnet: SMTP Command Injection and Header Injection via MailAddress parsing flaw (CVE-2026-32178)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.", "solution": null, "affectedProducts": ["Rocky Linux 9"], "fixes": [{"ticket": "2457739", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2457739", "description": ""}, {"ticket": "2457740", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2457740", "description": ""}, {"ticket": "2457741", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2457741", "description": ""}, {"ticket": "2457781", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2457781", "description": ""}], "cves": [{"name": "CVE-2026-26171", "sourceBy": "MITRE", "sourceLink":"https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-26171", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "7.5", "cwe": "CWE-776"}, {"name": "CVE-2026-32178", "sourceBy": "MITRE", "sourceLink": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-32178", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N", "cvss3BaseScore": "7.5", "cwe": "CWE-138"}, {"name": "CVE-2026-32203", "sourceBy": "MITRE", "sourceLink": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-32203", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "7.5", "cwe": "CWE-787"}, {"name": "CVE-2026-33116", "sourceBy": "MITRE", "sourceLink": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-33116", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "7.5", "cwe": "CWE-776"}], "references": [], "publishedAt": "2026-04-19T00:04:03.622890Z", "rpms": {"Rocky Linux 9": {"nvras": ["aspnetcore-runtime-9.0-0:9.0.15-1.el9_7.aarch64.rpm", "aspnetcore-runtime-9.0-0:9.0.15-1.el9_7.ppc64le.rpm", "aspnetcore-runtime-9.0-0:9.0.15-1.el9_7.s390x.rpm", "aspnetcore-runtime-9.0-0:9.0.15-1.el9_7.x86_64.rpm", "aspnetcore-runtime-dbg-9.0-0:9.0.15-1.el9_7.aarch64.rpm", "aspnetcore-runtime-dbg-9.0-0:9.0.15-1.el9_7.ppc64le.rpm", "aspnetcore-runtime-dbg-9.0-0:9.0.15-1.el9_7.s390x.rpm", "aspnetcore-runtime-dbg-9.0-0:9.0.15-1.el9_7.x86_64.rpm", "aspnetcore-targeting-pack-9.0-0:9.0.15-1.el9_7.aarch64.rpm", "aspnetcore-targeting-pack-9.0-0:9.0.15-1.el9_7.ppc64le.rpm", "aspnetcore-targeting-pack-9.0-0:9.0.15-1.el9_7.s390x.rpm", "aspnetcore-targeting-pack-9.0-0:9.0.15-1.el9_7.x86_64.rpm", "dotnet9.0-0:9.0.116-1.el9_7.src.rpm", "dotnet9.0-debuginfo-0:9.0.116-1.el9_7.aarch64.rpm", "dotnet9.0-debuginfo-0:9.0.116-1.el9_7.ppc64le.rpm", "dotnet9.0-debuginfo-0:9.0.116-1.el9_7.s390x.rpm", "dotnet9.0-debuginfo-0:9.0.116-1.el9_7.x86_64.rpm", "dotnet9.0-debugsource-0:9.0.116-1.el9_7.aarch64.rpm","dotnet9.0-debugsource-0:9.0.116-1.el9_7.ppc64le.rpm", "dotnet9.0-debugsource-0:9.0.116-1.el9_7.s390x.rpm", "dotnet9.0-debugsource-0:9.0.116-1.el9_7.x86_64.rpm", "dotnet-apphost-pack-9.0-0:9.0.15-1.el9_7.aarch64.rpm", "dotnet-apphost-pack-9.0-0:9.0.15-1.el9_7.ppc64le.rpm", "dotnet-apphost-pack-9.0-0:9.0.15-1.el9_7.s390x.rpm", "dotnet-apphost-pack-9.0-0:9.0.15-1.el9_7.x86_64.rpm", "dotnet-apphost-pack-9.0-debuginfo-0:9.0.15-1.el9_7.aarch64.rpm", "dotnet-apphost-pack-9.0-debuginfo-0:9.0.15-1.el9_7.ppc64le.rpm", "dotnet-apphost-pack-9.0-debuginfo-0:9.0.15-1.el9_7.s390x.rpm", "dotnet-apphost-pack-9.0-debuginfo-0:9.0.15-1.el9_7.x86_64.rpm", "dotnet-hostfxr-9.0-0:9.0.15-1.el9_7.aarch64.rpm", "dotnet-hostfxr-9.0-0:9.0.15-1.el9_7.ppc64le.rpm", "dotnet-hostfxr-9.0-0:9.0.15-1.el9_7.s390x.rpm", "dotnet-hostfxr-9.0-0:9.0.15-1.el9_7.x86_64.rpm", "dotnet-hostfxr-9.0-debuginfo-0:9.0.15-1.el9_7.aarch64.rpm", "dotnet-hostfxr-9.0-debuginfo-0:9.0.15-1.el9_7.ppc64le.rpm", "dotnet-hostfxr-9.0-debuginfo-0:9.0.15-1.el9_7.s390x.rpm", "dotnet-hostfxr-9.0-debuginfo-0:9.0.15-1.el9_7.x86_64.rpm", "dotnet-runtime-9.0-0:9.0.15-1.el9_7.aarch64.rpm", "dotnet-runtime-9.0-0:9.0.15-1.el9_7.ppc64le.rpm", "dotnet-runtime-9.0-0:9.0.15-1.el9_7.s390x.rpm", "dotnet-runtime-9.0-0:9.0.15-1.el9_7.x86_64.rpm", "dotnet-runtime-9.0-debuginfo-0:9.0.15-1.el9_7.aarch64.rpm", "dotnet-runtime-9.0-debuginfo-0:9.0.15-1.el9_7.ppc64le.rpm", "dotnet-runtime-9.0-debuginfo-0:9.0.15-1.el9_7.s390x.rpm", "dotnet-runtime-9.0-debuginfo-0:9.0.15-1.el9_7.x86_64.rpm", "dotnet-runtime-dbg-9.0-0:9.0.15-1.el9_7.aarch64.rpm", "dotnet-runtime-dbg-9.0-0:9.0.15-1.el9_7.ppc64le.rpm", "dotnet-runtime-dbg-9.0-0:9.0.15-1.el9_7.s390x.rpm", "dotnet-runtime-dbg-9.0-0:9.0.15-1.el9_7.x86_64.rpm", "dotnet-sdk-9.0-0:9.0.116-1.el9_7.aarch64.rpm", "dotnet-sdk-9.0-0:9.0.116-1.el9_7.ppc64le.rpm", "dotnet-sdk-9.0-0:9.0.116-1.el9_7.s390x.rpm", "dotnet-sdk-9.0-0:9.0.116-1.el9_7.x86_64.rpm", "dotnet-sdk-9.0-debuginfo-0:9.0.116-1.el9_7.aarch64.rpm","dotnet-sdk-9.0-debuginfo-0:9.0.116-1.el9_7.ppc64le.rpm", "dotnet-sdk-9.0-debuginfo-0:9.0.116-1.el9_7.s390x.rpm", "dotnet-sdk-9.0-debuginfo-0:9.0.116-1.el9_7.x86_64.rpm", "dotnet-sdk-9.0-source-built-artifacts-0:9.0.116-1.el9_7.aarch64.rpm", "dotnet-sdk-9.0-source-built-artifacts-0:9.0.116-1.el9_7.ppc64le.rpm", "dotnet-sdk-9.0-source-built-artifacts-0:9.0.116-1.el9_7.s390x.rpm", "dotnet-sdk-9.0-source-built-artifacts-0:9.0.116-1.el9_7.x86_64.rpm", "dotnet-sdk-aot-9.0-0:9.0.116-1.el9_7.aarch64.rpm", "dotnet-sdk-aot-9.0-0:9.0.116-1.el9_7.x86_64.rpm", "dotnet-sdk-aot-9.0-debuginfo-0:9.0.116-1.el9_7.aarch64.rpm", "dotnet-sdk-aot-9.0-debuginfo-0:9.0.116-1.el9_7.x86_64.rpm", "dotnet-sdk-dbg-9.0-0:9.0.116-1.el9_7.aarch64.rpm", "dotnet-sdk-dbg-9.0-0:9.0.116-1.el9_7.ppc64le.rpm", "dotnet-sdk-dbg-9.0-0:9.0.116-1.el9_7.s390x.rpm", "dotnet-sdk-dbg-9.0-0:9.0.116-1.el9_7.x86_64.rpm", "dotnet-targeting-pack-9.0-0:9.0.15-1.el9_7.aarch64.rpm", "dotnet-targeting-pack-9.0-0:9.0.15-1.el9_7.ppc64le.rpm", "dotnet-targeting-pack-9.0-0:9.0.15-1.el9_7.s390x.rpm", "dotnet-targeting-pack-9.0-0:9.0.15-1.el9_7.x86_64.rpm", "dotnet-templates-9.0-0:9.0.116-1.el9_7.aarch64.rpm", "dotnet-templates-9.0-0:9.0.116-1.el9_7.ppc64le.rpm", "dotnet-templates-9.0-0:9.0.116-1.el9_7.s390x.rpm", "dotnet-templates-9.0-0:9.0.116-1.el9_7.x86_64.rpm", "netstandard-targeting-pack-2.1-0:9.0.116-1.el9_7.aarch64.rpm", "netstandard-targeting-pack-2.1-0:9.0.116-1.el9_7.ppc64le.rpm", "netstandard-targeting-pack-2.1-0:9.0.116-1.el9_7.s390x.rpm", "netstandard-targeting-pack-2.1-0:9.0.116-1.el9_7.x86_64.rpm"]}}, "rebootSuggested": false, "buildReferences": []}. Discover the latest important .NET 9.0 security updates for Rocky Linux, addressing critical security concerns.. Rocky Linux security,.NET updates,denial of service,SMTP injection,important updates. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Apr 19, 2026 Important Rocky Linux
219

Rocky Linux 9 .NET 9.0 Vital Security Patch RLSA-2026-8576

Important: .NET 9.0 security update. {"type": "TYPE_SECURITY", "shortCode": "RL", "name": "RLSA-2026:8474", "synopsis": "Important: .NET 9.0 security update", "severity": "SEVERITY_IMPORTANT", "topic": "An update is available for dotnet9.0.\nThis update affects Rocky Linux 9.\nA Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list", "description": ".NET is a managed-software framework. It implements a subset of the .NET framework APIs and several new APIs, and it includes a CLR implementation.\n\nNew versions of .NET that address a security vulnerability are now available. The updated versions are .NET SDK 9.0.116 and .NET Runtime 9.0.15.Security Fix(es):\n\n* dotnet: .NET: Security Bypass and Denial of Service Vulnerability (CVE-2026-26171)\n\n* dotnet: .NET: Denial of Service via stack overflow (CVE-2026-32203)\n\n* dotnet: .NET: Denial of Service via Infinite Recursion in XmlDecryptionTransform (CVE-2026-33116)\n\n* dotnet: Dotnet: SMTP Command Injection and Header Injection via MailAddress parsing flaw (CVE-2026-32178)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.", "solution": null, "affectedProducts": ["Rocky Linux 9"], "fixes": [{"ticket": "2457739", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2457739", "description": ""}, {"ticket": "2457740", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2457740", "description": ""}, {"ticket": "2457741", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2457741", "description": ""}, {"ticket": "2457781", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2457781", "description": ""}], "cves": [{"name": "CVE-2026-26171", "sourceBy": "MITRE", "sourceLink":"https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-26171", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "7.5", "cwe": "CWE-776"}, {"name": "CVE-2026-32178", "sourceBy": "MITRE", "sourceLink": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-32178", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N", "cvss3BaseScore": "7.5", "cwe": "CWE-138"}, {"name": "CVE-2026-32203", "sourceBy": "MITRE", "sourceLink": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-32203", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "7.5", "cwe": "CWE-787"}, {"name": "CVE-2026-33116", "sourceBy": "MITRE", "sourceLink": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-33116", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "7.5", "cwe": "CWE-776"}], "references": [], "publishedAt": "2026-04-19T00:04:03.622890Z", "rpms": {"Rocky Linux 9": {"nvras": ["aspnetcore-runtime-9.0-0:9.0.15-1.el9_7.aarch64.rpm", "aspnetcore-runtime-9.0-0:9.0.15-1.el9_7.ppc64le.rpm", "aspnetcore-runtime-9.0-0:9.0.15-1.el9_7.s390x.rpm", "aspnetcore-runtime-9.0-0:9.0.15-1.el9_7.x86_64.rpm", "aspnetcore-runtime-dbg-9.0-0:9.0.15-1.el9_7.aarch64.rpm", "aspnetcore-runtime-dbg-9.0-0:9.0.15-1.el9_7.ppc64le.rpm", "aspnetcore-runtime-dbg-9.0-0:9.0.15-1.el9_7.s390x.rpm", "aspnetcore-runtime-dbg-9.0-0:9.0.15-1.el9_7.x86_64.rpm", "aspnetcore-targeting-pack-9.0-0:9.0.15-1.el9_7.aarch64.rpm", "aspnetcore-targeting-pack-9.0-0:9.0.15-1.el9_7.ppc64le.rpm", "aspnetcore-targeting-pack-9.0-0:9.0.15-1.el9_7.s390x.rpm", "aspnetcore-targeting-pack-9.0-0:9.0.15-1.el9_7.x86_64.rpm", "dotnet9.0-0:9.0.116-1.el9_7.src.rpm", "dotnet9.0-debuginfo-0:9.0.116-1.el9_7.aarch64.rpm", "dotnet9.0-debuginfo-0:9.0.116-1.el9_7.ppc64le.rpm", "dotnet9.0-debuginfo-0:9.0.116-1.el9_7.s390x.rpm", "dotnet9.0-debuginfo-0:9.0.116-1.el9_7.x86_64.rpm", "dotnet9.0-debugsource-0:9.0.116-1.el9_7.aarch64.rpm","dotnet9.0-debugsource-0:9.0.116-1.el9_7.ppc64le.rpm", "dotnet9.0-debugsource-0:9.0.116-1.el9_7.s390x.rpm", "dotnet9.0-debugsource-0:9.0.116-1.el9_7.x86_64.rpm", "dotnet-apphost-pack-9.0-0:9.0.15-1.el9_7.aarch64.rpm", "dotnet-apphost-pack-9.0-0:9.0.15-1.el9_7.ppc64le.rpm", "dotnet-apphost-pack-9.0-0:9.0.15-1.el9_7.s390x.rpm", "dotnet-apphost-pack-9.0-0:9.0.15-1.el9_7.x86_64.rpm", "dotnet-apphost-pack-9.0-debuginfo-0:9.0.15-1.el9_7.aarch64.rpm", "dotnet-apphost-pack-9.0-debuginfo-0:9.0.15-1.el9_7.ppc64le.rpm", "dotnet-apphost-pack-9.0-debuginfo-0:9.0.15-1.el9_7.s390x.rpm", "dotnet-apphost-pack-9.0-debuginfo-0:9.0.15-1.el9_7.x86_64.rpm", "dotnet-hostfxr-9.0-0:9.0.15-1.el9_7.aarch64.rpm", "dotnet-hostfxr-9.0-0:9.0.15-1.el9_7.ppc64le.rpm", "dotnet-hostfxr-9.0-0:9.0.15-1.el9_7.s390x.rpm", "dotnet-hostfxr-9.0-0:9.0.15-1.el9_7.x86_64.rpm", "dotnet-hostfxr-9.0-debuginfo-0:9.0.15-1.el9_7.aarch64.rpm", "dotnet-hostfxr-9.0-debuginfo-0:9.0.15-1.el9_7.ppc64le.rpm", "dotnet-hostfxr-9.0-debuginfo-0:9.0.15-1.el9_7.s390x.rpm", "dotnet-hostfxr-9.0-debuginfo-0:9.0.15-1.el9_7.x86_64.rpm", "dotnet-runtime-9.0-0:9.0.15-1.el9_7.aarch64.rpm", "dotnet-runtime-9.0-0:9.0.15-1.el9_7.ppc64le.rpm", "dotnet-runtime-9.0-0:9.0.15-1.el9_7.s390x.rpm", "dotnet-runtime-9.0-0:9.0.15-1.el9_7.x86_64.rpm", "dotnet-runtime-9.0-debuginfo-0:9.0.15-1.el9_7.aarch64.rpm", "dotnet-runtime-9.0-debuginfo-0:9.0.15-1.el9_7.ppc64le.rpm", "dotnet-runtime-9.0-debuginfo-0:9.0.15-1.el9_7.s390x.rpm", "dotnet-runtime-9.0-debuginfo-0:9.0.15-1.el9_7.x86_64.rpm", "dotnet-runtime-dbg-9.0-0:9.0.15-1.el9_7.aarch64.rpm", "dotnet-runtime-dbg-9.0-0:9.0.15-1.el9_7.ppc64le.rpm", "dotnet-runtime-dbg-9.0-0:9.0.15-1.el9_7.s390x.rpm", "dotnet-runtime-dbg-9.0-0:9.0.15-1.el9_7.x86_64.rpm", "dotnet-sdk-9.0-0:9.0.116-1.el9_7.aarch64.rpm", "dotnet-sdk-9.0-0:9.0.116-1.el9_7.ppc64le.rpm", "dotnet-sdk-9.0-0:9.0.116-1.el9_7.s390x.rpm", "dotnet-sdk-9.0-0:9.0.116-1.el9_7.x86_64.rpm", "dotnet-sdk-9.0-debuginfo-0:9.0.116-1.el9_7.aarch64.rpm","dotnet-sdk-9.0-debuginfo-0:9.0.116-1.el9_7.ppc64le.rpm", "dotnet-sdk-9.0-debuginfo-0:9.0.116-1.el9_7.s390x.rpm", "dotnet-sdk-9.0-debuginfo-0:9.0.116-1.el9_7.x86_64.rpm", "dotnet-sdk-9.0-source-built-artifacts-0:9.0.116-1.el9_7.aarch64.rpm", "dotnet-sdk-9.0-source-built-artifacts-0:9.0.116-1.el9_7.ppc64le.rpm", "dotnet-sdk-9.0-source-built-artifacts-0:9.0.116-1.el9_7.s390x.rpm", "dotnet-sdk-9.0-source-built-artifacts-0:9.0.116-1.el9_7.x86_64.rpm", "dotnet-sdk-aot-9.0-0:9.0.116-1.el9_7.aarch64.rpm", "dotnet-sdk-aot-9.0-0:9.0.116-1.el9_7.x86_64.rpm", "dotnet-sdk-aot-9.0-debuginfo-0:9.0.116-1.el9_7.aarch64.rpm", "dotnet-sdk-aot-9.0-debuginfo-0:9.0.116-1.el9_7.x86_64.rpm", "dotnet-sdk-dbg-9.0-0:9.0.116-1.el9_7.aarch64.rpm", "dotnet-sdk-dbg-9.0-0:9.0.116-1.el9_7.ppc64le.rpm", "dotnet-sdk-dbg-9.0-0:9.0.116-1.el9_7.s390x.rpm", "dotnet-sdk-dbg-9.0-0:9.0.116-1.el9_7.x86_64.rpm", "dotnet-targeting-pack-9.0-0:9.0.15-1.el9_7.aarch64.rpm", "dotnet-targeting-pack-9.0-0:9.0.15-1.el9_7.ppc64le.rpm", "dotnet-targeting-pack-9.0-0:9.0.15-1.el9_7.s390x.rpm", "dotnet-targeting-pack-9.0-0:9.0.15-1.el9_7.x86_64.rpm", "dotnet-templates-9.0-0:9.0.116-1.el9_7.aarch64.rpm", "dotnet-templates-9.0-0:9.0.116-1.el9_7.ppc64le.rpm", "dotnet-templates-9.0-0:9.0.116-1.el9_7.s390x.rpm", "dotnet-templates-9.0-0:9.0.116-1.el9_7.x86_64.rpm", "netstandard-targeting-pack-2.1-0:9.0.116-1.el9_7.aarch64.rpm", "netstandard-targeting-pack-2.1-0:9.0.116-1.el9_7.ppc64le.rpm", "netstandard-targeting-pack-2.1-0:9.0.116-1.el9_7.s390x.rpm", "netstandard-targeting-pack-2.1-0:9.0.116-1.el9_7.x86_64.rpm"]}}, "rebootSuggested": false, "buildReferences": []}. Critical .NET 9.0 security update for Rocky Linux fixes multiple issues including DoS and SMTP injection threats.. Rocky Linux Security Update,.NET 9.0 Security Fixes,Important Security Advisory. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Apr 19, 2026 Important Rocky Linux
219

Rocky Linux 9 RLSA-2026-8471 - Access .NET 8.1 Essential Security Update

Important: .NET 8.0 security update. {"type": "TYPE_SECURITY", "shortCode": "RL", "name": "RLSA-2026:8469", "synopsis": "Important: .NET 8.0 security update", "severity": "SEVERITY_IMPORTANT", "topic": "An update is available for dotnet8.0.\nThis update affects Rocky Linux 9.\nA Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list", "description": ".NET is a managed-software framework. It implements a subset of the .NET framework APIs and several new APIs, and it includes a CLR implementation.\n\nNew versions of .NET that address a security vulnerability are now available. The updated versions are .NET SDK 8.0.126 and .NET Runtime 8.0.26.Security Fix(es):\n\n* dotnet: .NET: Security Bypass and Denial of Service Vulnerability (CVE-2026-26171)\n\n* dotnet: .NET: Denial of Service via stack overflow (CVE-2026-32203)\n\n* dotnet: .NET: Denial of Service via Infinite Recursion in XmlDecryptionTransform (CVE-2026-33116)\n\n* dotnet: Dotnet: SMTP Command Injection and Header Injection via MailAddress parsing flaw (CVE-2026-32178)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.", "solution": null, "affectedProducts": ["Rocky Linux 9"], "fixes": [{"ticket": "2457739", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2457739", "description": ""}, {"ticket": "2457740", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2457740", "description": ""}, {"ticket": "2457741", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2457741", "description": ""}, {"ticket": "2457781", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2457781", "description": ""}], "cves": [{"name": "CVE-2026-26171", "sourceBy": "MITRE", "sourceLink":"https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-26171", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "7.5", "cwe": "CWE-776"}, {"name": "CVE-2026-32178", "sourceBy": "MITRE", "sourceLink": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-32178", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N", "cvss3BaseScore": "7.5", "cwe": "CWE-138"}, {"name": "CVE-2026-32203", "sourceBy": "MITRE", "sourceLink": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-32203", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "7.5", "cwe": "CWE-787"}, {"name": "CVE-2026-33116", "sourceBy": "MITRE", "sourceLink": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-33116", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "7.5", "cwe": "CWE-776"}], "references": [], "publishedAt": "2026-04-19T00:04:03.622890Z", "rpms": {"Rocky Linux 9": {"nvras": ["aspnetcore-runtime-8.0-0:8.0.26-1.el9_7.aarch64.rpm", "aspnetcore-runtime-8.0-0:8.0.26-1.el9_7.ppc64le.rpm", "aspnetcore-runtime-8.0-0:8.0.26-1.el9_7.s390x.rpm", "aspnetcore-runtime-8.0-0:8.0.26-1.el9_7.x86_64.rpm", "aspnetcore-runtime-dbg-8.0-0:8.0.26-1.el9_7.aarch64.rpm", "aspnetcore-runtime-dbg-8.0-0:8.0.26-1.el9_7.ppc64le.rpm", "aspnetcore-runtime-dbg-8.0-0:8.0.26-1.el9_7.s390x.rpm", "aspnetcore-runtime-dbg-8.0-0:8.0.26-1.el9_7.x86_64.rpm", "aspnetcore-targeting-pack-8.0-0:8.0.26-1.el9_7.aarch64.rpm", "aspnetcore-targeting-pack-8.0-0:8.0.26-1.el9_7.ppc64le.rpm", "aspnetcore-targeting-pack-8.0-0:8.0.26-1.el9_7.s390x.rpm", "aspnetcore-targeting-pack-8.0-0:8.0.26-1.el9_7.x86_64.rpm", "dotnet8.0-0:8.0.126-1.el9_7.src.rpm", "dotnet8.0-debuginfo-0:8.0.126-1.el9_7.aarch64.rpm", "dotnet8.0-debuginfo-0:8.0.126-1.el9_7.ppc64le.rpm", "dotnet8.0-debuginfo-0:8.0.126-1.el9_7.s390x.rpm", "dotnet8.0-debuginfo-0:8.0.126-1.el9_7.x86_64.rpm", "dotnet8.0-debugsource-0:8.0.126-1.el9_7.aarch64.rpm","dotnet8.0-debugsource-0:8.0.126-1.el9_7.ppc64le.rpm", "dotnet8.0-debugsource-0:8.0.126-1.el9_7.s390x.rpm", "dotnet8.0-debugsource-0:8.0.126-1.el9_7.x86_64.rpm", "dotnet-apphost-pack-8.0-0:8.0.26-1.el9_7.aarch64.rpm", "dotnet-apphost-pack-8.0-0:8.0.26-1.el9_7.ppc64le.rpm", "dotnet-apphost-pack-8.0-0:8.0.26-1.el9_7.s390x.rpm", "dotnet-apphost-pack-8.0-0:8.0.26-1.el9_7.x86_64.rpm", "dotnet-apphost-pack-8.0-debuginfo-0:8.0.26-1.el9_7.aarch64.rpm", "dotnet-apphost-pack-8.0-debuginfo-0:8.0.26-1.el9_7.ppc64le.rpm", "dotnet-apphost-pack-8.0-debuginfo-0:8.0.26-1.el9_7.s390x.rpm", "dotnet-apphost-pack-8.0-debuginfo-0:8.0.26-1.el9_7.x86_64.rpm", "dotnet-hostfxr-8.0-0:8.0.26-1.el9_7.aarch64.rpm", "dotnet-hostfxr-8.0-0:8.0.26-1.el9_7.ppc64le.rpm", "dotnet-hostfxr-8.0-0:8.0.26-1.el9_7.s390x.rpm", "dotnet-hostfxr-8.0-0:8.0.26-1.el9_7.x86_64.rpm", "dotnet-hostfxr-8.0-debuginfo-0:8.0.26-1.el9_7.aarch64.rpm", "dotnet-hostfxr-8.0-debuginfo-0:8.0.26-1.el9_7.ppc64le.rpm", "dotnet-hostfxr-8.0-debuginfo-0:8.0.26-1.el9_7.s390x.rpm", "dotnet-hostfxr-8.0-debuginfo-0:8.0.26-1.el9_7.x86_64.rpm", "dotnet-runtime-8.0-0:8.0.26-1.el9_7.aarch64.rpm", "dotnet-runtime-8.0-0:8.0.26-1.el9_7.ppc64le.rpm", "dotnet-runtime-8.0-0:8.0.26-1.el9_7.s390x.rpm", "dotnet-runtime-8.0-0:8.0.26-1.el9_7.x86_64.rpm", "dotnet-runtime-8.0-debuginfo-0:8.0.26-1.el9_7.aarch64.rpm", "dotnet-runtime-8.0-debuginfo-0:8.0.26-1.el9_7.ppc64le.rpm", "dotnet-runtime-8.0-debuginfo-0:8.0.26-1.el9_7.s390x.rpm", "dotnet-runtime-8.0-debuginfo-0:8.0.26-1.el9_7.x86_64.rpm", "dotnet-runtime-dbg-8.0-0:8.0.26-1.el9_7.aarch64.rpm", "dotnet-runtime-dbg-8.0-0:8.0.26-1.el9_7.ppc64le.rpm", "dotnet-runtime-dbg-8.0-0:8.0.26-1.el9_7.s390x.rpm", "dotnet-runtime-dbg-8.0-0:8.0.26-1.el9_7.x86_64.rpm", "dotnet-sdk-8.0-0:8.0.126-1.el9_7.aarch64.rpm", "dotnet-sdk-8.0-0:8.0.126-1.el9_7.ppc64le.rpm", "dotnet-sdk-8.0-0:8.0.126-1.el9_7.s390x.rpm", "dotnet-sdk-8.0-0:8.0.126-1.el9_7.x86_64.rpm", "dotnet-sdk-8.0-debuginfo-0:8.0.126-1.el9_7.aarch64.rpm","dotnet-sdk-8.0-debuginfo-0:8.0.126-1.el9_7.ppc64le.rpm", "dotnet-sdk-8.0-debuginfo-0:8.0.126-1.el9_7.s390x.rpm", "dotnet-sdk-8.0-debuginfo-0:8.0.126-1.el9_7.x86_64.rpm", "dotnet-sdk-8.0-source-built-artifacts-0:8.0.126-1.el9_7.aarch64.rpm", "dotnet-sdk-8.0-source-built-artifacts-0:8.0.126-1.el9_7.ppc64le.rpm", "dotnet-sdk-8.0-source-built-artifacts-0:8.0.126-1.el9_7.s390x.rpm", "dotnet-sdk-8.0-source-built-artifacts-0:8.0.126-1.el9_7.x86_64.rpm", "dotnet-sdk-dbg-8.0-0:8.0.126-1.el9_7.aarch64.rpm", "dotnet-sdk-dbg-8.0-0:8.0.126-1.el9_7.ppc64le.rpm", "dotnet-sdk-dbg-8.0-0:8.0.126-1.el9_7.s390x.rpm", "dotnet-sdk-dbg-8.0-0:8.0.126-1.el9_7.x86_64.rpm", "dotnet-targeting-pack-8.0-0:8.0.26-1.el9_7.aarch64.rpm", "dotnet-targeting-pack-8.0-0:8.0.26-1.el9_7.ppc64le.rpm", "dotnet-targeting-pack-8.0-0:8.0.26-1.el9_7.s390x.rpm", "dotnet-targeting-pack-8.0-0:8.0.26-1.el9_7.x86_64.rpm", "dotnet-templates-8.0-0:8.0.126-1.el9_7.aarch64.rpm", "dotnet-templates-8.0-0:8.0.126-1.el9_7.ppc64le.rpm", "dotnet-templates-8.0-0:8.0.126-1.el9_7.s390x.rpm", "dotnet-templates-8.0-0:8.0.126-1.el9_7.x86_64.rpm"]}}, "rebootSuggested": false, "buildReferences": []}. Critical .NET 8.0 update resolves significant security issues for Rocky Linux 9 users. Immediate action encouraged.. Rocky Linux security update, .NET 8.0 vulnerabilities, important security fixes. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Apr 19, 2026 Important Rocky Linux
219

Ubuntu Server 22 - Major Java 17 Enhancements - RLSA-2026-9641 Bulletin

Important: .NET 8.0 security update. {"type": "TYPE_SECURITY", "shortCode": "RL", "name": "RLSA-2026:8469", "synopsis": "Important: .NET 8.0 security update", "severity": "SEVERITY_IMPORTANT", "topic": "An update is available for dotnet8.0.\nThis update affects Rocky Linux 9.\nA Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list", "description": ".NET is a managed-software framework. It implements a subset of the .NET framework APIs and several new APIs, and it includes a CLR implementation.\n\nNew versions of .NET that address a security vulnerability are now available. The updated versions are .NET SDK 8.0.126 and .NET Runtime 8.0.26.Security Fix(es):\n\n* dotnet: .NET: Security Bypass and Denial of Service Vulnerability (CVE-2026-26171)\n\n* dotnet: .NET: Denial of Service via stack overflow (CVE-2026-32203)\n\n* dotnet: .NET: Denial of Service via Infinite Recursion in XmlDecryptionTransform (CVE-2026-33116)\n\n* dotnet: Dotnet: SMTP Command Injection and Header Injection via MailAddress parsing flaw (CVE-2026-32178)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.", "solution": null, "affectedProducts": ["Rocky Linux 9"], "fixes": [{"ticket": "2457739", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2457739", "description": ""}, {"ticket": "2457740", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2457740", "description": ""}, {"ticket": "2457741", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2457741", "description": ""}, {"ticket": "2457781", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2457781", "description": ""}], "cves": [{"name": "CVE-2026-26171", "sourceBy": "MITRE", "sourceLink":"https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-26171", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "7.5", "cwe": "CWE-776"}, {"name": "CVE-2026-32178", "sourceBy": "MITRE", "sourceLink": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-32178", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N", "cvss3BaseScore": "7.5", "cwe": "CWE-138"}, {"name": "CVE-2026-32203", "sourceBy": "MITRE", "sourceLink": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-32203", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "7.5", "cwe": "CWE-787"}, {"name": "CVE-2026-33116", "sourceBy": "MITRE", "sourceLink": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-33116", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "7.5", "cwe": "CWE-776"}], "references": [], "publishedAt": "2026-04-19T00:04:03.622890Z", "rpms": {"Rocky Linux 9": {"nvras": ["aspnetcore-runtime-8.0-0:8.0.26-1.el9_7.aarch64.rpm", "aspnetcore-runtime-8.0-0:8.0.26-1.el9_7.ppc64le.rpm", "aspnetcore-runtime-8.0-0:8.0.26-1.el9_7.s390x.rpm", "aspnetcore-runtime-8.0-0:8.0.26-1.el9_7.x86_64.rpm", "aspnetcore-runtime-dbg-8.0-0:8.0.26-1.el9_7.aarch64.rpm", "aspnetcore-runtime-dbg-8.0-0:8.0.26-1.el9_7.ppc64le.rpm", "aspnetcore-runtime-dbg-8.0-0:8.0.26-1.el9_7.s390x.rpm", "aspnetcore-runtime-dbg-8.0-0:8.0.26-1.el9_7.x86_64.rpm", "aspnetcore-targeting-pack-8.0-0:8.0.26-1.el9_7.aarch64.rpm", "aspnetcore-targeting-pack-8.0-0:8.0.26-1.el9_7.ppc64le.rpm", "aspnetcore-targeting-pack-8.0-0:8.0.26-1.el9_7.s390x.rpm", "aspnetcore-targeting-pack-8.0-0:8.0.26-1.el9_7.x86_64.rpm", "dotnet8.0-0:8.0.126-1.el9_7.src.rpm", "dotnet8.0-debuginfo-0:8.0.126-1.el9_7.aarch64.rpm", "dotnet8.0-debuginfo-0:8.0.126-1.el9_7.ppc64le.rpm", "dotnet8.0-debuginfo-0:8.0.126-1.el9_7.s390x.rpm", "dotnet8.0-debuginfo-0:8.0.126-1.el9_7.x86_64.rpm", "dotnet8.0-debugsource-0:8.0.126-1.el9_7.aarch64.rpm","dotnet8.0-debugsource-0:8.0.126-1.el9_7.ppc64le.rpm", "dotnet8.0-debugsource-0:8.0.126-1.el9_7.s390x.rpm", "dotnet8.0-debugsource-0:8.0.126-1.el9_7.x86_64.rpm", "dotnet-apphost-pack-8.0-0:8.0.26-1.el9_7.aarch64.rpm", "dotnet-apphost-pack-8.0-0:8.0.26-1.el9_7.ppc64le.rpm", "dotnet-apphost-pack-8.0-0:8.0.26-1.el9_7.s390x.rpm", "dotnet-apphost-pack-8.0-0:8.0.26-1.el9_7.x86_64.rpm", "dotnet-apphost-pack-8.0-debuginfo-0:8.0.26-1.el9_7.aarch64.rpm", "dotnet-apphost-pack-8.0-debuginfo-0:8.0.26-1.el9_7.ppc64le.rpm", "dotnet-apphost-pack-8.0-debuginfo-0:8.0.26-1.el9_7.s390x.rpm", "dotnet-apphost-pack-8.0-debuginfo-0:8.0.26-1.el9_7.x86_64.rpm", "dotnet-hostfxr-8.0-0:8.0.26-1.el9_7.aarch64.rpm", "dotnet-hostfxr-8.0-0:8.0.26-1.el9_7.ppc64le.rpm", "dotnet-hostfxr-8.0-0:8.0.26-1.el9_7.s390x.rpm", "dotnet-hostfxr-8.0-0:8.0.26-1.el9_7.x86_64.rpm", "dotnet-hostfxr-8.0-debuginfo-0:8.0.26-1.el9_7.aarch64.rpm", "dotnet-hostfxr-8.0-debuginfo-0:8.0.26-1.el9_7.ppc64le.rpm", "dotnet-hostfxr-8.0-debuginfo-0:8.0.26-1.el9_7.s390x.rpm", "dotnet-hostfxr-8.0-debuginfo-0:8.0.26-1.el9_7.x86_64.rpm", "dotnet-runtime-8.0-0:8.0.26-1.el9_7.aarch64.rpm", "dotnet-runtime-8.0-0:8.0.26-1.el9_7.ppc64le.rpm", "dotnet-runtime-8.0-0:8.0.26-1.el9_7.s390x.rpm", "dotnet-runtime-8.0-0:8.0.26-1.el9_7.x86_64.rpm", "dotnet-runtime-8.0-debuginfo-0:8.0.26-1.el9_7.aarch64.rpm", "dotnet-runtime-8.0-debuginfo-0:8.0.26-1.el9_7.ppc64le.rpm", "dotnet-runtime-8.0-debuginfo-0:8.0.26-1.el9_7.s390x.rpm", "dotnet-runtime-8.0-debuginfo-0:8.0.26-1.el9_7.x86_64.rpm", "dotnet-runtime-dbg-8.0-0:8.0.26-1.el9_7.aarch64.rpm", "dotnet-runtime-dbg-8.0-0:8.0.26-1.el9_7.ppc64le.rpm", "dotnet-runtime-dbg-8.0-0:8.0.26-1.el9_7.s390x.rpm", "dotnet-runtime-dbg-8.0-0:8.0.26-1.el9_7.x86_64.rpm", "dotnet-sdk-8.0-0:8.0.126-1.el9_7.aarch64.rpm", "dotnet-sdk-8.0-0:8.0.126-1.el9_7.ppc64le.rpm", "dotnet-sdk-8.0-0:8.0.126-1.el9_7.s390x.rpm", "dotnet-sdk-8.0-0:8.0.126-1.el9_7.x86_64.rpm", "dotnet-sdk-8.0-debuginfo-0:8.0.126-1.el9_7.aarch64.rpm","dotnet-sdk-8.0-debuginfo-0:8.0.126-1.el9_7.ppc64le.rpm", "dotnet-sdk-8.0-debuginfo-0:8.0.126-1.el9_7.s390x.rpm", "dotnet-sdk-8.0-debuginfo-0:8.0.126-1.el9_7.x86_64.rpm", "dotnet-sdk-8.0-source-built-artifacts-0:8.0.126-1.el9_7.aarch64.rpm", "dotnet-sdk-8.0-source-built-artifacts-0:8.0.126-1.el9_7.ppc64le.rpm", "dotnet-sdk-8.0-source-built-artifacts-0:8.0.126-1.el9_7.s390x.rpm", "dotnet-sdk-8.0-source-built-artifacts-0:8.0.126-1.el9_7.x86_64.rpm", "dotnet-sdk-dbg-8.0-0:8.0.126-1.el9_7.aarch64.rpm", "dotnet-sdk-dbg-8.0-0:8.0.126-1.el9_7.ppc64le.rpm", "dotnet-sdk-dbg-8.0-0:8.0.126-1.el9_7.s390x.rpm", "dotnet-sdk-dbg-8.0-0:8.0.126-1.el9_7.x86_64.rpm", "dotnet-targeting-pack-8.0-0:8.0.26-1.el9_7.aarch64.rpm", "dotnet-targeting-pack-8.0-0:8.0.26-1.el9_7.ppc64le.rpm", "dotnet-targeting-pack-8.0-0:8.0.26-1.el9_7.s390x.rpm", "dotnet-targeting-pack-8.0-0:8.0.26-1.el9_7.x86_64.rpm", "dotnet-templates-8.0-0:8.0.126-1.el9_7.aarch64.rpm", "dotnet-templates-8.0-0:8.0.126-1.el9_7.ppc64le.rpm", "dotnet-templates-8.0-0:8.0.126-1.el9_7.s390x.rpm", "dotnet-templates-8.0-0:8.0.126-1.el9_7.x86_64.rpm"]}}, "rebootSuggested": false, "buildReferences": []}. Critical .NET 8.0 security update for Rocky Linux 9 addresses multiple risks including denial of service and command injection.. Rocky Linux security update, .NET framework, denial of service risk, SMTP command injection, CVSS score. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Apr 19, 2026 Important Rocky Linux
219

Rocky Linux 9 RLSA-2026-8471 - .NET 8.1 Major Service Disruption Overview

Important: .NET 8.0 security update. {"type": "TYPE_SECURITY", "shortCode": "RL", "name": "RLSA-2026:8469", "synopsis": "Important: .NET 8.0 security update", "severity": "SEVERITY_IMPORTANT", "topic": "An update is available for dotnet8.0.\nThis update affects Rocky Linux 9.\nA Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list", "description": ".NET is a managed-software framework. It implements a subset of the .NET framework APIs and several new APIs, and it includes a CLR implementation.\n\nNew versions of .NET that address a security vulnerability are now available. The updated versions are .NET SDK 8.0.126 and .NET Runtime 8.0.26.Security Fix(es):\n\n* dotnet: .NET: Security Bypass and Denial of Service Vulnerability (CVE-2026-26171)\n\n* dotnet: .NET: Denial of Service via stack overflow (CVE-2026-32203)\n\n* dotnet: .NET: Denial of Service via Infinite Recursion in XmlDecryptionTransform (CVE-2026-33116)\n\n* dotnet: Dotnet: SMTP Command Injection and Header Injection via MailAddress parsing flaw (CVE-2026-32178)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.", "solution": null, "affectedProducts": ["Rocky Linux 9"], "fixes": [{"ticket": "2457739", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2457739", "description": ""}, {"ticket": "2457740", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2457740", "description": ""}, {"ticket": "2457741", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2457741", "description": ""}, {"ticket": "2457781", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2457781", "description": ""}], "cves": [{"name": "CVE-2026-26171", "sourceBy": "MITRE", "sourceLink":"https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-26171", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "7.5", "cwe": "CWE-776"}, {"name": "CVE-2026-32178", "sourceBy": "MITRE", "sourceLink": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-32178", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N", "cvss3BaseScore": "7.5", "cwe": "CWE-138"}, {"name": "CVE-2026-32203", "sourceBy": "MITRE", "sourceLink": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-32203", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "7.5", "cwe": "CWE-787"}, {"name": "CVE-2026-33116", "sourceBy": "MITRE", "sourceLink": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-33116", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "7.5", "cwe": "CWE-776"}], "references": [], "publishedAt": "2026-04-19T00:04:03.622890Z", "rpms": {"Rocky Linux 9": {"nvras": ["aspnetcore-runtime-8.0-0:8.0.26-1.el9_7.aarch64.rpm", "aspnetcore-runtime-8.0-0:8.0.26-1.el9_7.ppc64le.rpm", "aspnetcore-runtime-8.0-0:8.0.26-1.el9_7.s390x.rpm", "aspnetcore-runtime-8.0-0:8.0.26-1.el9_7.x86_64.rpm", "aspnetcore-runtime-dbg-8.0-0:8.0.26-1.el9_7.aarch64.rpm", "aspnetcore-runtime-dbg-8.0-0:8.0.26-1.el9_7.ppc64le.rpm", "aspnetcore-runtime-dbg-8.0-0:8.0.26-1.el9_7.s390x.rpm", "aspnetcore-runtime-dbg-8.0-0:8.0.26-1.el9_7.x86_64.rpm", "aspnetcore-targeting-pack-8.0-0:8.0.26-1.el9_7.aarch64.rpm", "aspnetcore-targeting-pack-8.0-0:8.0.26-1.el9_7.ppc64le.rpm", "aspnetcore-targeting-pack-8.0-0:8.0.26-1.el9_7.s390x.rpm", "aspnetcore-targeting-pack-8.0-0:8.0.26-1.el9_7.x86_64.rpm", "dotnet8.0-0:8.0.126-1.el9_7.src.rpm", "dotnet8.0-debuginfo-0:8.0.126-1.el9_7.aarch64.rpm", "dotnet8.0-debuginfo-0:8.0.126-1.el9_7.ppc64le.rpm", "dotnet8.0-debuginfo-0:8.0.126-1.el9_7.s390x.rpm", "dotnet8.0-debuginfo-0:8.0.126-1.el9_7.x86_64.rpm", "dotnet8.0-debugsource-0:8.0.126-1.el9_7.aarch64.rpm","dotnet8.0-debugsource-0:8.0.126-1.el9_7.ppc64le.rpm", "dotnet8.0-debugsource-0:8.0.126-1.el9_7.s390x.rpm", "dotnet8.0-debugsource-0:8.0.126-1.el9_7.x86_64.rpm", "dotnet-apphost-pack-8.0-0:8.0.26-1.el9_7.aarch64.rpm", "dotnet-apphost-pack-8.0-0:8.0.26-1.el9_7.ppc64le.rpm", "dotnet-apphost-pack-8.0-0:8.0.26-1.el9_7.s390x.rpm", "dotnet-apphost-pack-8.0-0:8.0.26-1.el9_7.x86_64.rpm", "dotnet-apphost-pack-8.0-debuginfo-0:8.0.26-1.el9_7.aarch64.rpm", "dotnet-apphost-pack-8.0-debuginfo-0:8.0.26-1.el9_7.ppc64le.rpm", "dotnet-apphost-pack-8.0-debuginfo-0:8.0.26-1.el9_7.s390x.rpm", "dotnet-apphost-pack-8.0-debuginfo-0:8.0.26-1.el9_7.x86_64.rpm", "dotnet-hostfxr-8.0-0:8.0.26-1.el9_7.aarch64.rpm", "dotnet-hostfxr-8.0-0:8.0.26-1.el9_7.ppc64le.rpm", "dotnet-hostfxr-8.0-0:8.0.26-1.el9_7.s390x.rpm", "dotnet-hostfxr-8.0-0:8.0.26-1.el9_7.x86_64.rpm", "dotnet-hostfxr-8.0-debuginfo-0:8.0.26-1.el9_7.aarch64.rpm", "dotnet-hostfxr-8.0-debuginfo-0:8.0.26-1.el9_7.ppc64le.rpm", "dotnet-hostfxr-8.0-debuginfo-0:8.0.26-1.el9_7.s390x.rpm", "dotnet-hostfxr-8.0-debuginfo-0:8.0.26-1.el9_7.x86_64.rpm", "dotnet-runtime-8.0-0:8.0.26-1.el9_7.aarch64.rpm", "dotnet-runtime-8.0-0:8.0.26-1.el9_7.ppc64le.rpm", "dotnet-runtime-8.0-0:8.0.26-1.el9_7.s390x.rpm", "dotnet-runtime-8.0-0:8.0.26-1.el9_7.x86_64.rpm", "dotnet-runtime-8.0-debuginfo-0:8.0.26-1.el9_7.aarch64.rpm", "dotnet-runtime-8.0-debuginfo-0:8.0.26-1.el9_7.ppc64le.rpm", "dotnet-runtime-8.0-debuginfo-0:8.0.26-1.el9_7.s390x.rpm", "dotnet-runtime-8.0-debuginfo-0:8.0.26-1.el9_7.x86_64.rpm", "dotnet-runtime-dbg-8.0-0:8.0.26-1.el9_7.aarch64.rpm", "dotnet-runtime-dbg-8.0-0:8.0.26-1.el9_7.ppc64le.rpm", "dotnet-runtime-dbg-8.0-0:8.0.26-1.el9_7.s390x.rpm", "dotnet-runtime-dbg-8.0-0:8.0.26-1.el9_7.x86_64.rpm", "dotnet-sdk-8.0-0:8.0.126-1.el9_7.aarch64.rpm", "dotnet-sdk-8.0-0:8.0.126-1.el9_7.ppc64le.rpm", "dotnet-sdk-8.0-0:8.0.126-1.el9_7.s390x.rpm", "dotnet-sdk-8.0-0:8.0.126-1.el9_7.x86_64.rpm", "dotnet-sdk-8.0-debuginfo-0:8.0.126-1.el9_7.aarch64.rpm","dotnet-sdk-8.0-debuginfo-0:8.0.126-1.el9_7.ppc64le.rpm", "dotnet-sdk-8.0-debuginfo-0:8.0.126-1.el9_7.s390x.rpm", "dotnet-sdk-8.0-debuginfo-0:8.0.126-1.el9_7.x86_64.rpm", "dotnet-sdk-8.0-source-built-artifacts-0:8.0.126-1.el9_7.aarch64.rpm", "dotnet-sdk-8.0-source-built-artifacts-0:8.0.126-1.el9_7.ppc64le.rpm", "dotnet-sdk-8.0-source-built-artifacts-0:8.0.126-1.el9_7.s390x.rpm", "dotnet-sdk-8.0-source-built-artifacts-0:8.0.126-1.el9_7.x86_64.rpm", "dotnet-sdk-dbg-8.0-0:8.0.126-1.el9_7.aarch64.rpm", "dotnet-sdk-dbg-8.0-0:8.0.126-1.el9_7.ppc64le.rpm", "dotnet-sdk-dbg-8.0-0:8.0.126-1.el9_7.s390x.rpm", "dotnet-sdk-dbg-8.0-0:8.0.126-1.el9_7.x86_64.rpm", "dotnet-targeting-pack-8.0-0:8.0.26-1.el9_7.aarch64.rpm", "dotnet-targeting-pack-8.0-0:8.0.26-1.el9_7.ppc64le.rpm", "dotnet-targeting-pack-8.0-0:8.0.26-1.el9_7.s390x.rpm", "dotnet-targeting-pack-8.0-0:8.0.26-1.el9_7.x86_64.rpm", "dotnet-templates-8.0-0:8.0.126-1.el9_7.aarch64.rpm", "dotnet-templates-8.0-0:8.0.126-1.el9_7.ppc64le.rpm", "dotnet-templates-8.0-0:8.0.126-1.el9_7.s390x.rpm", "dotnet-templates-8.0-0:8.0.126-1.el9_7.x86_64.rpm"]}}, "rebootSuggested": false, "buildReferences": []}. Critical updates for .NET 8.0 addressing serious security flaws, with solutions available for Rocky Linux 9 users.. dotnet security update, Rocky Linux update, .NET vulnerabilities, dotnet 8.0 patch, Denial of Service issues. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Apr 19, 2026 Important Rocky Linux
219

Rocky Linux 9 RLSA-2026-8474 Python 3.9 Major Security Vulnerability

Important: .NET 10.0 security update. {"type": "TYPE_SECURITY", "shortCode": "RL", "name": "RLSA-2026:8471", "synopsis": "Important: .NET 10.0 security update", "severity": "SEVERITY_IMPORTANT", "topic": "An update is available for dotnet10.0.\nThis update affects Rocky Linux 9.\nA Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list", "description": ".NET is a managed-software framework. It implements a subset of the .NET framework APIs and several new APIs, and it includes a CLR implementation.\n\nNew versions of .NET that address a security vulnerability are now available. The updated versions are .NET SDK 10.0.106 and .NET Runtime 10.0.6.Security Fix(es):\n\n* dotnet: .NET: Security Bypass and Denial of Service Vulnerability (CVE-2026-26171)\n\n* dotnet: .NET: Denial of Service via stack overflow (CVE-2026-32203)\n\n* dotnet: .NET: Denial of Service via Infinite Recursion in XmlDecryptionTransform (CVE-2026-33116)\n\n* dotnet: Dotnet: SMTP Command Injection and Header Injection via MailAddress parsing flaw (CVE-2026-32178)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.", "solution": null, "affectedProducts": ["Rocky Linux 9"], "fixes": [{"ticket": "2457739", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2457739", "description": ""}, {"ticket": "2457740", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2457740", "description": ""}, {"ticket": "2457741", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2457741", "description": ""}, {"ticket": "2457781", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2457781", "description": ""}], "cves": [{"name": "CVE-2026-26171", "sourceBy": "MITRE", "sourceLink":"https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-26171", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "7.5", "cwe": "CWE-776"}, {"name": "CVE-2026-32178", "sourceBy": "MITRE", "sourceLink": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-32178", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N", "cvss3BaseScore": "7.5", "cwe": "CWE-138"}, {"name": "CVE-2026-32203", "sourceBy": "MITRE", "sourceLink": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-32203", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "7.5", "cwe": "CWE-787"}, {"name": "CVE-2026-33116", "sourceBy": "MITRE", "sourceLink": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-33116", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "7.5", "cwe": "CWE-776"}], "references": [], "publishedAt": "2026-04-19T00:04:03.622890Z", "rpms": {"Rocky Linux 9": {"nvras": ["aspnetcore-runtime-10.0-0:10.0.6-1.el9_7.aarch64.rpm", "aspnetcore-runtime-10.0-0:10.0.6-1.el9_7.ppc64le.rpm", "aspnetcore-runtime-10.0-0:10.0.6-1.el9_7.s390x.rpm", "aspnetcore-runtime-10.0-0:10.0.6-1.el9_7.x86_64.rpm", "aspnetcore-runtime-dbg-10.0-0:10.0.6-1.el9_7.aarch64.rpm", "aspnetcore-runtime-dbg-10.0-0:10.0.6-1.el9_7.ppc64le.rpm", "aspnetcore-runtime-dbg-10.0-0:10.0.6-1.el9_7.s390x.rpm", "aspnetcore-runtime-dbg-10.0-0:10.0.6-1.el9_7.x86_64.rpm", "aspnetcore-targeting-pack-10.0-0:10.0.6-1.el9_7.aarch64.rpm", "aspnetcore-targeting-pack-10.0-0:10.0.6-1.el9_7.ppc64le.rpm", "aspnetcore-targeting-pack-10.0-0:10.0.6-1.el9_7.s390x.rpm", "aspnetcore-targeting-pack-10.0-0:10.0.6-1.el9_7.x86_64.rpm", "dotnet10.0-0:10.0.106-1.el9_7.src.rpm", "dotnet10.0-debuginfo-0:10.0.106-1.el9_7.aarch64.rpm", "dotnet10.0-debuginfo-0:10.0.106-1.el9_7.ppc64le.rpm", "dotnet10.0-debuginfo-0:10.0.106-1.el9_7.s390x.rpm", "dotnet10.0-debuginfo-0:10.0.106-1.el9_7.x86_64.rpm", "dotnet10.0-debugsource-0:10.0.106-1.el9_7.aarch64.rpm","dotnet10.0-debugsource-0:10.0.106-1.el9_7.ppc64le.rpm", "dotnet10.0-debugsource-0:10.0.106-1.el9_7.s390x.rpm", "dotnet10.0-debugsource-0:10.0.106-1.el9_7.x86_64.rpm", "dotnet-apphost-pack-10.0-0:10.0.6-1.el9_7.aarch64.rpm", "dotnet-apphost-pack-10.0-0:10.0.6-1.el9_7.ppc64le.rpm", "dotnet-apphost-pack-10.0-0:10.0.6-1.el9_7.s390x.rpm", "dotnet-apphost-pack-10.0-0:10.0.6-1.el9_7.x86_64.rpm", "dotnet-apphost-pack-10.0-debuginfo-0:10.0.6-1.el9_7.aarch64.rpm", "dotnet-apphost-pack-10.0-debuginfo-0:10.0.6-1.el9_7.ppc64le.rpm", "dotnet-apphost-pack-10.0-debuginfo-0:10.0.6-1.el9_7.s390x.rpm", "dotnet-apphost-pack-10.0-debuginfo-0:10.0.6-1.el9_7.x86_64.rpm", "dotnet-host-0:10.0.6-1.el9_7.aarch64.rpm", "dotnet-host-0:10.0.6-1.el9_7.ppc64le.rpm", "dotnet-host-0:10.0.6-1.el9_7.s390x.rpm", "dotnet-host-0:10.0.6-1.el9_7.x86_64.rpm", "dotnet-host-debuginfo-0:10.0.6-1.el9_7.aarch64.rpm", "dotnet-host-debuginfo-0:10.0.6-1.el9_7.ppc64le.rpm", "dotnet-host-debuginfo-0:10.0.6-1.el9_7.s390x.rpm", "dotnet-host-debuginfo-0:10.0.6-1.el9_7.x86_64.rpm", "dotnet-hostfxr-10.0-0:10.0.6-1.el9_7.aarch64.rpm", "dotnet-hostfxr-10.0-0:10.0.6-1.el9_7.ppc64le.rpm", "dotnet-hostfxr-10.0-0:10.0.6-1.el9_7.s390x.rpm", "dotnet-hostfxr-10.0-0:10.0.6-1.el9_7.x86_64.rpm", "dotnet-hostfxr-10.0-debuginfo-0:10.0.6-1.el9_7.aarch64.rpm", "dotnet-hostfxr-10.0-debuginfo-0:10.0.6-1.el9_7.ppc64le.rpm", "dotnet-hostfxr-10.0-debuginfo-0:10.0.6-1.el9_7.s390x.rpm", "dotnet-hostfxr-10.0-debuginfo-0:10.0.6-1.el9_7.x86_64.rpm", "dotnet-runtime-10.0-0:10.0.6-1.el9_7.aarch64.rpm", "dotnet-runtime-10.0-0:10.0.6-1.el9_7.ppc64le.rpm", "dotnet-runtime-10.0-0:10.0.6-1.el9_7.s390x.rpm", "dotnet-runtime-10.0-0:10.0.6-1.el9_7.x86_64.rpm", "dotnet-runtime-10.0-debuginfo-0:10.0.6-1.el9_7.aarch64.rpm", "dotnet-runtime-10.0-debuginfo-0:10.0.6-1.el9_7.ppc64le.rpm", "dotnet-runtime-10.0-debuginfo-0:10.0.6-1.el9_7.s390x.rpm", "dotnet-runtime-10.0-debuginfo-0:10.0.6-1.el9_7.x86_64.rpm", "dotnet-runtime-dbg-10.0-0:10.0.6-1.el9_7.aarch64.rpm","dotnet-runtime-dbg-10.0-0:10.0.6-1.el9_7.ppc64le.rpm", "dotnet-runtime-dbg-10.0-0:10.0.6-1.el9_7.s390x.rpm", "dotnet-runtime-dbg-10.0-0:10.0.6-1.el9_7.x86_64.rpm", "dotnet-sdk-10.0-0:10.0.106-1.el9_7.aarch64.rpm", "dotnet-sdk-10.0-0:10.0.106-1.el9_7.ppc64le.rpm", "dotnet-sdk-10.0-0:10.0.106-1.el9_7.s390x.rpm", "dotnet-sdk-10.0-0:10.0.106-1.el9_7.x86_64.rpm", "dotnet-sdk-10.0-debuginfo-0:10.0.106-1.el9_7.aarch64.rpm", "dotnet-sdk-10.0-debuginfo-0:10.0.106-1.el9_7.ppc64le.rpm", "dotnet-sdk-10.0-debuginfo-0:10.0.106-1.el9_7.s390x.rpm", "dotnet-sdk-10.0-debuginfo-0:10.0.106-1.el9_7.x86_64.rpm", "dotnet-sdk-10.0-source-built-artifacts-0:10.0.106-1.el9_7.aarch64.rpm", "dotnet-sdk-10.0-source-built-artifacts-0:10.0.106-1.el9_7.ppc64le.rpm", "dotnet-sdk-10.0-source-built-artifacts-0:10.0.106-1.el9_7.s390x.rpm", "dotnet-sdk-10.0-source-built-artifacts-0:10.0.106-1.el9_7.x86_64.rpm", "dotnet-sdk-aot-10.0-0:10.0.106-1.el9_7.aarch64.rpm", "dotnet-sdk-aot-10.0-0:10.0.106-1.el9_7.x86_64.rpm", "dotnet-sdk-aot-10.0-debuginfo-0:10.0.106-1.el9_7.aarch64.rpm", "dotnet-sdk-aot-10.0-debuginfo-0:10.0.106-1.el9_7.x86_64.rpm", "dotnet-sdk-dbg-10.0-0:10.0.106-1.el9_7.aarch64.rpm", "dotnet-sdk-dbg-10.0-0:10.0.106-1.el9_7.ppc64le.rpm", "dotnet-sdk-dbg-10.0-0:10.0.106-1.el9_7.s390x.rpm", "dotnet-sdk-dbg-10.0-0:10.0.106-1.el9_7.x86_64.rpm", "dotnet-targeting-pack-10.0-0:10.0.6-1.el9_7.aarch64.rpm", "dotnet-targeting-pack-10.0-0:10.0.6-1.el9_7.ppc64le.rpm", "dotnet-targeting-pack-10.0-0:10.0.6-1.el9_7.s390x.rpm", "dotnet-targeting-pack-10.0-0:10.0.6-1.el9_7.x86_64.rpm", "dotnet-templates-10.0-0:10.0.106-1.el9_7.aarch64.rpm", "dotnet-templates-10.0-0:10.0.106-1.el9_7.ppc64le.rpm", "dotnet-templates-10.0-0:10.0.106-1.el9_7.s390x.rpm", "dotnet-templates-10.0-0:10.0.106-1.el9_7.x86_64.rpm"]}}, "rebootSuggested": false, "buildReferences": []}. Important .NET 10.0 update available for Rocky Linux 9 addressing multiple security risks including denial of service.. dotnet 10.0 security update, Rocky Linux security advisories, important .NETvulnerabilities. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Apr 19, 2026 Important Rocky Linux
219

RHEL 8 RLSA-2026-8476 .NET 10.3 Significant Security Upgrade

Important: .NET 10.0 security update. {"type": "TYPE_SECURITY", "shortCode": "RL", "name": "RLSA-2026:8473", "synopsis": "Important: .NET 10.0 security update", "severity": "SEVERITY_IMPORTANT", "topic": "An update is available for dotnet10.0.\nThis update affects Rocky Linux 8.\nA Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list", "description": ".NET is a managed-software framework. It implements a subset of the .NET framework APIs and several new APIs, and it includes a CLR implementation.\n\nNew versions of .NET that address a security vulnerability are now available. The updated versions are .NET SDK 10.0.106 and .NET Runtime 10.0.6.Security Fix(es):\n\n* dotnet: .NET: Security Bypass and Denial of Service Vulnerability (CVE-2026-26171)\n\n* dotnet: .NET: Denial of Service via stack overflow (CVE-2026-32203)\n\n* dotnet: .NET: Denial of Service via Infinite Recursion in XmlDecryptionTransform (CVE-2026-33116)\n\n* dotnet: Dotnet: SMTP Command Injection and Header Injection via MailAddress parsing flaw (CVE-2026-32178)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.", "solution": null, "affectedProducts": ["Rocky Linux 8"], "fixes": [{"ticket": "2457739", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2457739", "description": ""}, {"ticket": "2457740", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2457740", "description": ""}, {"ticket": "2457741", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2457741", "description": ""}, {"ticket": "2457781", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2457781", "description": ""}], "cves": [{"name": "CVE-2026-26171", "sourceBy": "MITRE", "sourceLink":"https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-26171", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "7.5", "cwe": "CWE-776"}, {"name": "CVE-2026-32178", "sourceBy": "MITRE", "sourceLink": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-32178", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N", "cvss3BaseScore": "7.5", "cwe": "CWE-138"}, {"name": "CVE-2026-32203", "sourceBy": "MITRE", "sourceLink": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-32203", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "7.5", "cwe": "CWE-787"}, {"name": "CVE-2026-33116", "sourceBy": "MITRE", "sourceLink": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-33116", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "7.5", "cwe": "CWE-776"}], "references": [], "publishedAt": "2026-04-18T12:01:11.830950Z", "rpms": {"Rocky Linux 8": {"nvras": ["aspnetcore-runtime-10.0-0:10.0.6-1.el8_10.aarch64.rpm", "aspnetcore-runtime-10.0-0:10.0.6-1.el8_10.x86_64.rpm", "aspnetcore-runtime-dbg-10.0-0:10.0.6-1.el8_10.aarch64.rpm", "aspnetcore-runtime-dbg-10.0-0:10.0.6-1.el8_10.x86_64.rpm", "aspnetcore-targeting-pack-10.0-0:10.0.6-1.el8_10.aarch64.rpm", "aspnetcore-targeting-pack-10.0-0:10.0.6-1.el8_10.x86_64.rpm", "dotnet-0:10.0.106-1.el8_10.aarch64.rpm", "dotnet-0:10.0.106-1.el8_10.x86_64.rpm", "dotnet10.0-0:10.0.106-1.el8_10.src.rpm", "dotnet10.0-debuginfo-0:10.0.106-1.el8_10.aarch64.rpm", "dotnet10.0-debuginfo-0:10.0.106-1.el8_10.x86_64.rpm", "dotnet10.0-debugsource-0:10.0.106-1.el8_10.aarch64.rpm", "dotnet10.0-debugsource-0:10.0.106-1.el8_10.x86_64.rpm", "dotnet-apphost-pack-10.0-0:10.0.6-1.el8_10.aarch64.rpm", "dotnet-apphost-pack-10.0-0:10.0.6-1.el8_10.x86_64.rpm", "dotnet-apphost-pack-10.0-debuginfo-0:10.0.6-1.el8_10.aarch64.rpm", "dotnet-apphost-pack-10.0-debuginfo-0:10.0.6-1.el8_10.x86_64.rpm", "dotnet-host-0:10.0.6-1.el8_10.aarch64.rpm","dotnet-host-0:10.0.6-1.el8_10.x86_64.rpm", "dotnet-host-debuginfo-0:10.0.6-1.el8_10.aarch64.rpm", "dotnet-host-debuginfo-0:10.0.6-1.el8_10.x86_64.rpm", "dotnet-hostfxr-10.0-0:10.0.6-1.el8_10.aarch64.rpm", "dotnet-hostfxr-10.0-0:10.0.6-1.el8_10.x86_64.rpm", "dotnet-hostfxr-10.0-debuginfo-0:10.0.6-1.el8_10.aarch64.rpm", "dotnet-hostfxr-10.0-debuginfo-0:10.0.6-1.el8_10.x86_64.rpm", "dotnet-runtime-10.0-0:10.0.6-1.el8_10.aarch64.rpm", "dotnet-runtime-10.0-0:10.0.6-1.el8_10.x86_64.rpm", "dotnet-runtime-10.0-debuginfo-0:10.0.6-1.el8_10.aarch64.rpm", "dotnet-runtime-10.0-debuginfo-0:10.0.6-1.el8_10.x86_64.rpm", "dotnet-runtime-dbg-10.0-0:10.0.6-1.el8_10.aarch64.rpm", "dotnet-runtime-dbg-10.0-0:10.0.6-1.el8_10.x86_64.rpm", "dotnet-sdk-10.0-0:10.0.106-1.el8_10.aarch64.rpm", "dotnet-sdk-10.0-0:10.0.106-1.el8_10.x86_64.rpm", "dotnet-sdk-10.0-debuginfo-0:10.0.106-1.el8_10.aarch64.rpm", "dotnet-sdk-10.0-debuginfo-0:10.0.106-1.el8_10.x86_64.rpm", "dotnet-sdk-10.0-source-built-artifacts-0:10.0.106-1.el8_10.aarch64.rpm", "dotnet-sdk-10.0-source-built-artifacts-0:10.0.106-1.el8_10.x86_64.rpm", "dotnet-sdk-aot-10.0-0:10.0.106-1.el8_10.aarch64.rpm", "dotnet-sdk-aot-10.0-0:10.0.106-1.el8_10.x86_64.rpm", "dotnet-sdk-aot-10.0-debuginfo-0:10.0.106-1.el8_10.aarch64.rpm", "dotnet-sdk-aot-10.0-debuginfo-0:10.0.106-1.el8_10.x86_64.rpm", "dotnet-sdk-dbg-10.0-0:10.0.106-1.el8_10.aarch64.rpm", "dotnet-sdk-dbg-10.0-0:10.0.106-1.el8_10.x86_64.rpm", "dotnet-targeting-pack-10.0-0:10.0.6-1.el8_10.aarch64.rpm", "dotnet-targeting-pack-10.0-0:10.0.6-1.el8_10.x86_64.rpm", "dotnet-templates-10.0-0:10.0.106-1.el8_10.aarch64.rpm", "dotnet-templates-10.0-0:10.0.106-1.el8_10.x86_64.rpm"]}}, "rebootSuggested": false, "buildReferences": []}. Critical update for .NET 10.0 on Rocky Linux address security risks including Denial of Service and SMTP Injection.. Rocky Linux security update .NET Denial of Service SMTP Injection. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Apr 18, 2026 Important Rocky Linux
219

Rocky Linux 8 .NET 9.1 Key Security Update RLSA-2026-9490

Important: .NET 9.0 security update. {"type": "TYPE_SECURITY", "shortCode": "RL", "name": "RLSA-2026:8475", "synopsis": "Important: .NET 9.0 security update", "severity": "SEVERITY_IMPORTANT", "topic": "An update is available for dotnet9.0.\nThis update affects Rocky Linux 8.\nA Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list", "description": ".NET is a managed-software framework. It implements a subset of the .NET framework APIs and several new APIs, and it includes a CLR implementation.\n\nNew versions of .NET that address a security vulnerability are now available. The updated versions are .NET SDK 9.0.116 and .NET Runtime 9.0.15.Security Fix(es):\n\n* dotnet: .NET: Security Bypass and Denial of Service Vulnerability (CVE-2026-26171)\n\n* dotnet: .NET: Denial of Service via stack overflow (CVE-2026-32203)\n\n* dotnet: .NET: Denial of Service via Infinite Recursion in XmlDecryptionTransform (CVE-2026-33116)\n\n* dotnet: Dotnet: SMTP Command Injection and Header Injection via MailAddress parsing flaw (CVE-2026-32178)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.", "solution": null, "affectedProducts": ["Rocky Linux 8"], "fixes": [{"ticket": "2457739", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2457739", "description": ""}, {"ticket": "2457740", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2457740", "description": ""}, {"ticket": "2457741", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2457741", "description": ""}, {"ticket": "2457781", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2457781", "description": ""}], "cves": [{"name": "CVE-2026-26171", "sourceBy": "MITRE", "sourceLink":"https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-26171", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "7.5", "cwe": "CWE-776"}, {"name": "CVE-2026-32178", "sourceBy": "MITRE", "sourceLink": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-32178", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N", "cvss3BaseScore": "7.5", "cwe": "CWE-138"}, {"name": "CVE-2026-32203", "sourceBy": "MITRE", "sourceLink": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-32203", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "7.5", "cwe": "CWE-787"}, {"name": "CVE-2026-33116", "sourceBy": "MITRE", "sourceLink": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-33116", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "7.5", "cwe": "CWE-776"}], "references": [], "publishedAt": "2026-04-18T12:01:11.830950Z", "rpms": {"Rocky Linux 8": {"nvras": ["aspnetcore-runtime-9.0-0:9.0.15-1.el8_10.aarch64.rpm", "aspnetcore-runtime-9.0-0:9.0.15-1.el8_10.x86_64.rpm", "aspnetcore-runtime-dbg-9.0-0:9.0.15-1.el8_10.aarch64.rpm", "aspnetcore-runtime-dbg-9.0-0:9.0.15-1.el8_10.x86_64.rpm", "aspnetcore-targeting-pack-9.0-0:9.0.15-1.el8_10.aarch64.rpm", "aspnetcore-targeting-pack-9.0-0:9.0.15-1.el8_10.x86_64.rpm", "dotnet9.0-0:9.0.116-1.el8_10.src.rpm", "dotnet9.0-debuginfo-0:9.0.116-1.el8_10.aarch64.rpm", "dotnet9.0-debuginfo-0:9.0.116-1.el8_10.x86_64.rpm", "dotnet9.0-debugsource-0:9.0.116-1.el8_10.aarch64.rpm", "dotnet9.0-debugsource-0:9.0.116-1.el8_10.x86_64.rpm", "dotnet-apphost-pack-9.0-0:9.0.15-1.el8_10.aarch64.rpm", "dotnet-apphost-pack-9.0-0:9.0.15-1.el8_10.x86_64.rpm", "dotnet-apphost-pack-9.0-debuginfo-0:9.0.15-1.el8_10.aarch64.rpm", "dotnet-apphost-pack-9.0-debuginfo-0:9.0.15-1.el8_10.x86_64.rpm", "dotnet-hostfxr-9.0-0:9.0.15-1.el8_10.aarch64.rpm", "dotnet-hostfxr-9.0-0:9.0.15-1.el8_10.x86_64.rpm", "dotnet-hostfxr-9.0-debuginfo-0:9.0.15-1.el8_10.aarch64.rpm","dotnet-hostfxr-9.0-debuginfo-0:9.0.15-1.el8_10.x86_64.rpm", "dotnet-runtime-9.0-0:9.0.15-1.el8_10.aarch64.rpm", "dotnet-runtime-9.0-0:9.0.15-1.el8_10.x86_64.rpm", "dotnet-runtime-9.0-debuginfo-0:9.0.15-1.el8_10.aarch64.rpm", "dotnet-runtime-9.0-debuginfo-0:9.0.15-1.el8_10.x86_64.rpm", "dotnet-runtime-dbg-9.0-0:9.0.15-1.el8_10.aarch64.rpm", "dotnet-runtime-dbg-9.0-0:9.0.15-1.el8_10.x86_64.rpm", "dotnet-sdk-9.0-0:9.0.116-1.el8_10.aarch64.rpm", "dotnet-sdk-9.0-0:9.0.116-1.el8_10.x86_64.rpm", "dotnet-sdk-9.0-debuginfo-0:9.0.116-1.el8_10.aarch64.rpm", "dotnet-sdk-9.0-debuginfo-0:9.0.116-1.el8_10.x86_64.rpm", "dotnet-sdk-9.0-source-built-artifacts-0:9.0.116-1.el8_10.aarch64.rpm", "dotnet-sdk-9.0-source-built-artifacts-0:9.0.116-1.el8_10.x86_64.rpm", "dotnet-sdk-aot-9.0-0:9.0.116-1.el8_10.aarch64.rpm", "dotnet-sdk-aot-9.0-0:9.0.116-1.el8_10.x86_64.rpm", "dotnet-sdk-aot-9.0-debuginfo-0:9.0.116-1.el8_10.aarch64.rpm", "dotnet-sdk-aot-9.0-debuginfo-0:9.0.116-1.el8_10.x86_64.rpm", "dotnet-sdk-dbg-9.0-0:9.0.116-1.el8_10.aarch64.rpm", "dotnet-sdk-dbg-9.0-0:9.0.116-1.el8_10.x86_64.rpm", "dotnet-targeting-pack-9.0-0:9.0.15-1.el8_10.aarch64.rpm", "dotnet-targeting-pack-9.0-0:9.0.15-1.el8_10.x86_64.rpm", "dotnet-templates-9.0-0:9.0.116-1.el8_10.aarch64.rpm", "dotnet-templates-9.0-0:9.0.116-1.el8_10.x86_64.rpm", "netstandard-targeting-pack-2.1-0:9.0.116-1.el8_10.aarch64.rpm", "netstandard-targeting-pack-2.1-0:9.0.116-1.el8_10.x86_64.rpm"]}}, "rebootSuggested": false, "buildReferences": []}. Discover critical updates for .NET 9.0 on Rocky Linux, addressing important security threats including DoS vulnerabilities.. Rocky Linux .NET security patch, Denial of Service fix, Critical .NET update, .NET 9.0 vulnerabilities, .NET security updates. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Apr 18, 2026 Important Rocky Linux
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here