Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2026:39573

Опубликовано: 15 июл. 2026
Источник: rocky
Оценка: Important

Описание

Important: yggdrasil security update

yggdrasil is a system daemon that subscribes to topics on an MQTT broker and routes any data received on the topics to an appropriate child "worker" process, exchanging data with its worker processes through a D-Bus message broker.

Security Fix(es):

  • net: golang: Go net package: Denial of Service via long CNAME response in LookupCNAME (CVE-2026-33811)

  • golang.org/x/net/idna: golang: golang.org/x/net/idna: Privilege escalation via incorrect Punycode label processing (CVE-2026-39821)

  • crypto/x509: golang: golang crypto/x509: Denial of Service via excessive processing of DNS SAN entries (CVE-2026-27145)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Затронутые продукты

  • Rocky Linux 10

НаименованиеАрхитектураРелизRPM
yggdrasilaarch641.el10_2yggdrasil-0.4.9.2-1.el10_2.aarch64.rpm

Показывать по

Связанные уязвимости

oracle-oval
2 месяца назад

ELSA-2026-39573: yggdrasil security update (IMPORTANT)

rocky
2 месяца назад

Important: opentelemetry-collector security update

rocky
2 месяца назад

Important: opentelemetry-collector security update

rocky
2 месяца назад

Important: golang-github-openprinting-ipp-usb security update

oracle-oval
2 месяца назад

ELSA-2026-35832: golang-github-openprinting-ipp-usb security update (IMPORTANT)