Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2026:3298

Опубликовано: 26 фев. 2026
Источник: rocky
Оценка: Important

Описание

Important: buildah security update

The buildah package provides a tool for facilitating building OCI container images. Among other things, buildah enables you to: Create a working container, either from scratch or using an image as a starting point; Create an image, either from a working container or using the instructions in a Dockerfile; Build both Docker and OCI images.

Security Fix(es):

  • crypto/x509: golang: Denial of Service due to excessive resource consumption via crafted certificate (CVE-2025-61729)

  • golang: net/url: Memory exhaustion in query parameter parsing in net/url (CVE-2025-61726)

  • crypto/tls: Unexpected session resumption in crypto/tls (CVE-2025-68121)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Затронутые продукты

  • Rocky Linux 9

НаименованиеАрхитектураРелизRPM
buildahx86_642.el9_7buildah-1.41.8-2.el9_7.x86_64.rpm
buildah-testsx86_642.el9_7buildah-tests-1.41.8-2.el9_7.x86_64.rpm

Показывать по

Связанные уязвимости

rocky
15 дней назад

Important: git-lfs security update

rocky
20 дней назад

Important: git-lfs security update

rocky
19 дней назад

Important: delve security update

rocky
28 дней назад

Important: skopeo security update

rocky
28 дней назад

Important: containernetworking-plugins security update