Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2026:39573

Опубликовано: 15 июл. 2026
Источник: rocky
Оценка: Important

Описание

Important: yggdrasil security update

yggdrasil is a system daemon that subscribes to topics on an MQTT broker and routes any data received on the topics to an appropriate child "worker" process, exchanging data with its worker processes through a D-Bus message broker.

Security Fix(es):

  • net: golang: Go net package: Denial of Service via long CNAME response in LookupCNAME (CVE-2026-33811)

  • golang.org/x/net/idna: golang: golang.org/x/net/idna: Privilege escalation via incorrect Punycode label processing (CVE-2026-39821)

  • crypto/x509: golang: golang crypto/x509: Denial of Service via excessive processing of DNS SAN entries (CVE-2026-27145)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Затронутые продукты

  • Rocky Linux 10

НаименованиеАрхитектураРелизRPM
yggdrasilx86_641.el10_2yggdrasil-0.4.9.2-1.el10_2.x86_64.rpm

Показывать по

Связанные уязвимости

rocky
26 дней назад

Important: opentelemetry-collector security update

rocky
24 дня назад

Important: opentelemetry-collector security update

rocky
24 дня назад

Important: golang-github-openprinting-ipp-usb security update

oracle-oval
15 дней назад

ELSA-2026-35832: golang-github-openprinting-ipp-usb security update (IMPORTANT)

rocky
16 дней назад

Important: go-toolset:rhel8 security, bug fix, and enhancement update