Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2025:10585

Опубликовано: 04 окт. 2025
Источник: rocky
Оценка: Moderate

Описание

Moderate: jq security update

jq is a lightweight and flexible command-line JSON processor. jq is like sed for JSON data. You can use it to slice, filter, map, or transform structured data with the same ease that sed, awk, grep, or similar applications allow you to manipulate text.

Security Fix(es):

  • jq: jq has signed integer overflow in jv.c:jvp_array_write (CVE-2024-23337)

  • jq: AddressSanitizer: stack-buffer-overflow in jq_fuzz_execute (jv_string_vfmt) (CVE-2025-48060)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Затронутые продукты

  • Rocky Linux 9

НаименованиеАрхитектураРелизRPM
jqi68617.el9_6.2jq-1.6-17.el9_6.2.i686.rpm
jqx86_6417.el9_6.2jq-1.6-17.el9_6.2.x86_64.rpm

Показывать по

Связанные CVE

Связанные уязвимости

rocky
4 месяца назад

Moderate: jq security update

rocky
6 месяцев назад

Moderate: jq security update

oracle-oval
6 месяцев назад

ELSA-2025-12882: jq security update (MODERATE)

oracle-oval
7 месяцев назад

ELSA-2025-10618: jq security update (MODERATE)

oracle-oval
7 месяцев назад

ELSA-2025-10585: jq security update (MODERATE)