Important: fence-agents security update. {"type": "TYPE_SECURITY", "shortCode": "RL", "name": "RLSA-2026:12176", "synopsis": "Important: fence-agents security update", "severity": "SEVERITY_IMPORTANT", "topic": "An update is available for fence-agents.\nThis update affects Rocky Linux 8.\nA Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list", "description": "The fence-agents packages provide a collection of scripts for handling remote power management for cluster devices. They allow failed or unreachable nodes to be forcibly restarted and removed from the cluster. \n\nSecurity Fix(es):\n\n* cryptography: cryptography Subgroup Attack Due to Missing Subgroup Validation for SECT Curves (CVE-2026-26007)\n\n* pyjwt: PyJWT accepts unknown `crit` header extensions (RFC 7515 ?4.1.11 MUST violation) (CVE-2026-32597)\n\n* pyasn1: pyasn1 Vulnerable to Denial of Service via Unbounded Recursion (CVE-2026-30922)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.", "solution": null, "affectedProducts": ["Rocky Linux 8"], "fixes": [{"ticket": "2438762", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2438762", "description": ""}, {"ticket": "2447194", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2447194", "description": ""}, {"ticket": "2448553", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2448553", "description": ""}], "cves": [{"name": "CVE-2026-26007", "sourceBy": "MITRE", "sourceLink": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-26007", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N", "cvss3BaseScore": "7.4", "cwe": "CWE-354"}, {"name": "CVE-2026-30922", "sourceBy": "MITRE", "sourceLink":"https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-30922", "cvss3ScoringVector": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "7.5", "cwe": "CWE-835"}, {"name": "CVE-2026-32597", "sourceBy": "MITRE", "sourceLink": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-32597", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N", "cvss3BaseScore": "7.5", "cwe": "CWE-347"}], "references": [], "publishedAt": "2026-04-30T18:01:05.380956Z", "rpms": {"Rocky Linux 8": {"nvras": ["fence-agents-0:4.2.1-129.el8_10.25.src.rpm", "fence-agents-aliyun-0:4.2.1-129.el8_10.25.x86_64.rpm", "fence-agents-aliyun-debuginfo-0:4.2.1-129.el8_10.25.x86_64.rpm", "fence-agents-all-0:4.2.1-129.el8_10.25.aarch64.rpm", "fence-agents-all-0:4.2.1-129.el8_10.25.x86_64.rpm", "fence-agents-amt-ws-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-apc-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-apc-snmp-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-aws-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-azure-arm-0:4.2.1-129.el8_10.25.x86_64.rpm", "fence-agents-azure-arm-debuginfo-0:4.2.1-129.el8_10.25.x86_64.rpm", "fence-agents-bladecenter-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-brocade-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-cisco-mds-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-cisco-ucs-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-common-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-compute-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-debuginfo-0:4.2.1-129.el8_10.25.aarch64.rpm", "fence-agents-debuginfo-0:4.2.1-129.el8_10.25.x86_64.rpm", "fence-agents-debugsource-0:4.2.1-129.el8_10.25.aarch64.rpm", "fence-agents-debugsource-0:4.2.1-129.el8_10.25.x86_64.rpm", "fence-agents-drac5-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-eaton-snmp-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-emerson-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-eps-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-gce-0:4.2.1-129.el8_10.25.noarch.rpm","fence-agents-heuristics-ping-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-hpblade-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-ibmblade-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-ibm-powervs-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-ibm-vpc-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-ifmib-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-ilo2-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-ilo-moonshot-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-ilo-mp-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-ilo-ssh-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-intelmodular-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-ipdu-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-ipmilan-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-kdump-0:4.2.1-129.el8_10.25.aarch64.rpm", "fence-agents-kdump-0:4.2.1-129.el8_10.25.x86_64.rpm", "fence-agents-kdump-debuginfo-0:4.2.1-129.el8_10.25.aarch64.rpm", "fence-agents-kdump-debuginfo-0:4.2.1-129.el8_10.25.x86_64.rpm", "fence-agents-kubevirt-0:4.2.1-129.el8_10.25.aarch64.rpm", "fence-agents-kubevirt-0:4.2.1-129.el8_10.25.x86_64.rpm", "fence-agents-kubevirt-debuginfo-0:4.2.1-129.el8_10.25.aarch64.rpm", "fence-agents-kubevirt-debuginfo-0:4.2.1-129.el8_10.25.x86_64.rpm", "fence-agents-lpar-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-mpath-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-openstack-0:4.2.1-129.el8_10.25.x86_64.rpm", "fence-agents-redfish-0:4.2.1-129.el8_10.25.aarch64.rpm", "fence-agents-redfish-0:4.2.1-129.el8_10.25.x86_64.rpm", "fence-agents-rhevm-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-rsa-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-rsb-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-sbd-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-scsi-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-virsh-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-vmware-rest-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-vmware-soap-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-wti-0:4.2.1-129.el8_10.25.noarch.rpm"]}},"rebootSuggested": false, "buildReferences": []}. Security update for fence-agents on Rocky Linux 8 addresses several important issues. Immediate action is required.. fence-agents update, Rocky Linux security, CVSS score, Denial of Service, subgroup attack. . Severity: Important. LinuxSecurity.com Team
Important: fence-agents security update. {"type": "TYPE_SECURITY", "shortCode": "RL", "name": "RLSA-2026:12176", "synopsis": "Important: fence-agents security update", "severity": "SEVERITY_IMPORTANT", "topic": "An update is available for fence-agents.\nThis update affects Rocky Linux 8.\nA Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list", "description": "The fence-agents packages provide a collection of scripts for handling remote power management for cluster devices. They allow failed or unreachable nodes to be forcibly restarted and removed from the cluster. \n\nSecurity Fix(es):\n\n* cryptography: cryptography Subgroup Attack Due to Missing Subgroup Validation for SECT Curves (CVE-2026-26007)\n\n* pyjwt: PyJWT accepts unknown `crit` header extensions (RFC 7515 ?4.1.11 MUST violation) (CVE-2026-32597)\n\n* pyasn1: pyasn1 Vulnerable to Denial of Service via Unbounded Recursion (CVE-2026-30922)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.", "solution": null, "affectedProducts": ["Rocky Linux 8"], "fixes": [{"ticket": "2438762", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2438762", "description": ""}, {"ticket": "2447194", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2447194", "description": ""}, {"ticket": "2448553", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2448553", "description": ""}], "cves": [{"name": "CVE-2026-26007", "sourceBy": "MITRE", "sourceLink": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-26007", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N", "cvss3BaseScore": "7.4", "cwe": "CWE-354"}, {"name": "CVE-2026-30922", "sourceBy": "MITRE", "sourceLink":"https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-30922", "cvss3ScoringVector": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "7.5", "cwe": "CWE-835"}, {"name": "CVE-2026-32597", "sourceBy": "MITRE", "sourceLink": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-32597", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N", "cvss3BaseScore": "7.5", "cwe": "CWE-347"}], "references": [], "publishedAt": "2026-04-30T18:01:05.380956Z", "rpms": {"Rocky Linux 8": {"nvras": ["fence-agents-0:4.2.1-129.el8_10.25.src.rpm", "fence-agents-aliyun-0:4.2.1-129.el8_10.25.x86_64.rpm", "fence-agents-aliyun-debuginfo-0:4.2.1-129.el8_10.25.x86_64.rpm", "fence-agents-all-0:4.2.1-129.el8_10.25.aarch64.rpm", "fence-agents-all-0:4.2.1-129.el8_10.25.x86_64.rpm", "fence-agents-amt-ws-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-apc-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-apc-snmp-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-aws-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-azure-arm-0:4.2.1-129.el8_10.25.x86_64.rpm", "fence-agents-azure-arm-debuginfo-0:4.2.1-129.el8_10.25.x86_64.rpm", "fence-agents-bladecenter-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-brocade-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-cisco-mds-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-cisco-ucs-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-common-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-compute-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-debuginfo-0:4.2.1-129.el8_10.25.aarch64.rpm", "fence-agents-debuginfo-0:4.2.1-129.el8_10.25.x86_64.rpm", "fence-agents-debugsource-0:4.2.1-129.el8_10.25.aarch64.rpm", "fence-agents-debugsource-0:4.2.1-129.el8_10.25.x86_64.rpm", "fence-agents-drac5-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-eaton-snmp-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-emerson-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-eps-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-gce-0:4.2.1-129.el8_10.25.noarch.rpm","fence-agents-heuristics-ping-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-hpblade-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-ibmblade-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-ibm-powervs-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-ibm-vpc-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-ifmib-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-ilo2-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-ilo-moonshot-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-ilo-mp-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-ilo-ssh-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-intelmodular-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-ipdu-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-ipmilan-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-kdump-0:4.2.1-129.el8_10.25.aarch64.rpm", "fence-agents-kdump-0:4.2.1-129.el8_10.25.x86_64.rpm", "fence-agents-kdump-debuginfo-0:4.2.1-129.el8_10.25.aarch64.rpm", "fence-agents-kdump-debuginfo-0:4.2.1-129.el8_10.25.x86_64.rpm", "fence-agents-kubevirt-0:4.2.1-129.el8_10.25.aarch64.rpm", "fence-agents-kubevirt-0:4.2.1-129.el8_10.25.x86_64.rpm", "fence-agents-kubevirt-debuginfo-0:4.2.1-129.el8_10.25.aarch64.rpm", "fence-agents-kubevirt-debuginfo-0:4.2.1-129.el8_10.25.x86_64.rpm", "fence-agents-lpar-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-mpath-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-openstack-0:4.2.1-129.el8_10.25.x86_64.rpm", "fence-agents-redfish-0:4.2.1-129.el8_10.25.aarch64.rpm", "fence-agents-redfish-0:4.2.1-129.el8_10.25.x86_64.rpm", "fence-agents-rhevm-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-rsa-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-rsb-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-sbd-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-scsi-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-virsh-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-vmware-rest-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-vmware-soap-0:4.2.1-129.el8_10.25.noarch.rpm", "fence-agents-wti-0:4.2.1-129.el8_10.25.noarch.rpm"]}},"rebootSuggested": false, "buildReferences": []}. Rocky Linux users should apply the important fence-agents update addressing several security issues promptly to protect their systems.. Rocky Linux updates,fence-agents security,important security fix. . Severity: Important. LinuxSecurity.com Team
python-cryptography could be made to expose sensitive information over the network.. ========================================================================== Ubuntu Security Notice USN-8087-1 March 12, 2026 python-cryptography vulnerability ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 25.10 - Ubuntu 24.04 LTS - Ubuntu 22.04 LTS Summary: python-cryptography could be made to expose sensitive information over the network. Software Description: - python-cryptography: Cryptography Python library Details: It was discovered that python-cryptography incorrectly handled subgroup validation for SECT curves. A remote attacker could use this issue to perform a subgroup attack and possibly recover the least significant bits of private keys. Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 25.10 python3-cryptography 43.0.0-1ubuntu1.1 Ubuntu 24.04 LTS python3-cryptography 41.0.7-4ubuntu0.3 Ubuntu 22.04 LTS python3-cryptography 3.4.8-1ubuntu2.3 In general, a standard system update will make all the necessary changes. References: https://ubuntu.com/security/notices/USN-8087-1 CVE-2026-26007 Package Information: https://launchpad.net/ubuntu/+source/python-cryptography/43.0.0-1ubuntu1.1 https://launchpad.net/ubuntu/+source/python-cryptography/41.0.7-4ubuntu0.3 https://launchpad.net/ubuntu/+source/python-cryptography/3.4.8-1ubuntu2.3 . python-cryptography on Ubuntu exposes sensitive information over the network. Learn about the update for protection.. python-cryptography update security Ubuntu exposure. . Severity: Critical. LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.