Описание
ELSA-2026-25930: postfix security update (IMPORTANT)
[2:3.8.5-10]
- Fix for CVE-2026-43964: buffer over-read via malformed enhanced status code. Resolves: RHEL-176554
Обновленные пакеты
Oracle Linux 10
Oracle Linux aarch64
postfix
3.8.5-10.el10_2
postfix-cdb
3.8.5-10.el10_2
postfix-ldap
3.8.5-10.el10_2
postfix-lmdb
3.8.5-10.el10_2
postfix-mysql
3.8.5-10.el10_2
postfix-pcre
3.8.5-10.el10_2
postfix-perl-scripts
3.8.5-10.el10_2
postfix-pgsql
3.8.5-10.el10_2
postfix-sqlite
3.8.5-10.el10_2
Oracle Linux x86_64
postfix
3.8.5-10.el10_2
postfix-cdb
3.8.5-10.el10_2
postfix-ldap
3.8.5-10.el10_2
postfix-lmdb
3.8.5-10.el10_2
postfix-mysql
3.8.5-10.el10_2
postfix-pcre
3.8.5-10.el10_2
postfix-perl-scripts
3.8.5-10.el10_2
postfix-pgsql
3.8.5-10.el10_2
postfix-sqlite
3.8.5-10.el10_2
Связанные CVE
Связанные уязвимости
Postfix before 3.8.16, 3.9 before 3.9.10, and 3.10 before 3.10.9 sometimes allows a buffer over-read and process crash via an enhanced status code that lacks text after the third number.
Postfix before 3.8.16, 3.9 before 3.9.10, and 3.10 before 3.10.9 sometimes allows a buffer over-read and process crash via an enhanced status code that lacks text after the third number.
Postfix before 3.8.16, 3.9 before 3.9.10, and 3.10 before 3.10.9 sometimes allows a buffer over-read and process crash via an enhanced status code that lacks text after the third number.
Postfix before 3.8.16, 3.9 before 3.9.10, and 3.10 before 3.10.9 sometimes allows a buffer over-read and process crash via an enhanced status code that lacks text after the third number.
Postfix before 3.8.16, 3.9 before 3.9.10, and 3.10 before 3.10.9 somet ...