Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2026-6817

Опубликовано: 08 апр. 2026
Источник: oracle-oval
Платформа: Oracle Linux 10

Описание

ELSA-2026-6817: capstone security update (IMPORTANT)

[5.0.1-7]

  • Fix CVE-2025-67873 (heap buffer overflow) Resolves: RHEL-141551
  • Fix CVE-2025-68114 (memory corruption) Resolves: RHEL-137747

Обновленные пакеты

Oracle Linux 10

Oracle Linux aarch64

capstone

5.0.1-7.el10_1

capstone-devel

5.0.1-7.el10_1

capstone-java

5.0.1-7.el10_1

python3-capstone

5.0.1-7.el10_1

Oracle Linux x86_64

capstone

5.0.1-7.el10_1

capstone-devel

5.0.1-7.el10_1

capstone-java

5.0.1-7.el10_1

python3-capstone

5.0.1-7.el10_1

Связанные CVE

Связанные уязвимости

suse-cvrf
7 месяцев назад

Security update for capstone

rocky
4 месяца назад

Important: capstone security update

rocky
4 месяца назад

Important: capstone security update

oracle-oval
4 месяца назад

ELSA-2026-4898: capstone security update (MODERATE)

CVSS3: 4.8
ubuntu
8 месяцев назад

Capstone is a disassembly framework. In versions 6.0.0-Alpha5 and prior, an unchecked vsnprintf return in SStream_concat lets a malicious cs_opt_mem.vsnprintf drive SStream’s index negative or past the end, leading to a stack buffer underflow/overflow when the next write occurs. Commit 2c7797182a1618be12017d7d41e0b6581d5d529e fixes the issue.