<?xml version="1.0" ?>
<rss version="2.0">
  <channel>
    <title>Rocky Linux 10 riscv64 AppStream</title>
    <link>https://rockylinux.org</link>
    <description>Recently updated packages for Rocky Linux 10 riscv64 AppStream</description>
    <pubDate>Sat, 12 Sep 2026 01:05:43 AM GMT</pubDate>
    <generator>DNF</generator>
    <item>
      <title>gstreamer1-plugins-base-tools-1.26.7-2.el10_2.2.riscv64</title>
      <pubDate>Fri, 11 Sep 2026 04:29:03 AM GMT</pubDate>
      <guid isPermaLink="false">1f5d03394a5aca3ba615efebe336f9e094827d3d6602503de267f4ad86c8d778</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/g/gstreamer1-plugins-base-tools-1.26.7-2.el10_2.2.riscv64.rpm</link>
      <description><p><strong>gstreamer1-plugins-base-tools</strong> - Tools for GStreamer streaming media framework base plugins&lt;br /&gt;</p>

<p>GStreamer is a streaming media framework, based on graphs of filters which&lt;br /&gt;
operate on media data. Applications using this library can do anything&lt;br /&gt;
from real-time sound processing to playing videos, and just about anything&lt;br /&gt;
else media-related.  Its plugin-based architecture means that new data&lt;br /&gt;
types or processing capabilities can be added simply by installing new&lt;br /&gt;
plug-ins.&lt;br /&gt;
&lt;br /&gt;
This package contains the command-line tools for the base plugins.&lt;br /&gt;
These include:&lt;br /&gt;
&lt;br /&gt;
* gst-discoverer</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 09 Sep 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 1.26.7-2.2
- Fix crash in RTSP auth credential parsing (CVE-2026-85150)
  Resolves: RHEL-253746

Sat, 22 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 1.26.7-2.1
- Add patch for CVE-2026-18297
  Resolves: RHEL-246574

Mon, 31 Mar 2025 GMT - Wim Taymans &amp;lt;wtaymans@redhat.com&amp;gt; - 1.26.7-2
- Add patch for CVE-2026-2921
  Resolves: RHEL-156122

&lt;/pre&gt;</description>
    </item>
    <item>
      <title>gstreamer1-plugins-base-devel-1.26.7-2.el10_2.2.riscv64</title>
      <pubDate>Fri, 11 Sep 2026 04:29:03 AM GMT</pubDate>
      <guid isPermaLink="false">9486bef6dc77a391e2a6ac0c182c9a0f2a7388c98b2c4bd98818f2c0fc655007</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/g/gstreamer1-plugins-base-devel-1.26.7-2.el10_2.2.riscv64.rpm</link>
      <description><p><strong>gstreamer1-plugins-base-devel</strong> - GStreamer Base Plugins Development files&lt;br /&gt;</p>

<p>The gstreamer1-plugins-base-devel package contains libraries and header files&lt;br /&gt;
for developing applications that use gstreamer1-plugins-base.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 09 Sep 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 1.26.7-2.2
- Fix crash in RTSP auth credential parsing (CVE-2026-85150)
  Resolves: RHEL-253746

Sat, 22 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 1.26.7-2.1
- Add patch for CVE-2026-18297
  Resolves: RHEL-246574

Mon, 31 Mar 2025 GMT - Wim Taymans &amp;lt;wtaymans@redhat.com&amp;gt; - 1.26.7-2
- Add patch for CVE-2026-2921
  Resolves: RHEL-156122

&lt;/pre&gt;</description>
    </item>
    <item>
      <title>gstreamer1-plugins-base-1.26.7-2.el10_2.2.riscv64</title>
      <pubDate>Fri, 11 Sep 2026 04:29:03 AM GMT</pubDate>
      <guid isPermaLink="false">77991e145726357e75f9fac1f170a87393ee0d78750b031a9c49df24a34ebcf9</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/g/gstreamer1-plugins-base-1.26.7-2.el10_2.2.riscv64.rpm</link>
      <description><p><strong>gstreamer1-plugins-base</strong> - GStreamer streaming media framework base plugins&lt;br /&gt;</p>

<p>GStreamer is a streaming media framework, based on graphs of filters which&lt;br /&gt;
operate on media data. Applications using this library can do anything&lt;br /&gt;
from real-time sound processing to playing videos, and just about anything&lt;br /&gt;
else media-related.  Its plugin-based architecture means that new data&lt;br /&gt;
types or processing capabilities can be added simply by installing new&lt;br /&gt;
plug-ins.&lt;br /&gt;
&lt;br /&gt;
This package contains a set of well-maintained base plug-ins.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 09 Sep 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 1.26.7-2.2
- Fix crash in RTSP auth credential parsing (CVE-2026-85150)
  Resolves: RHEL-253746

Sat, 22 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 1.26.7-2.1
- Add patch for CVE-2026-18297
  Resolves: RHEL-246574

Mon, 31 Mar 2025 GMT - Wim Taymans &amp;lt;wtaymans@redhat.com&amp;gt; - 1.26.7-2
- Add patch for CVE-2026-2921
  Resolves: RHEL-156122

&lt;/pre&gt;</description>
    </item>
    <item>
      <title>kernel-doc-6.12.0-211.54.1.el10_2.noarch</title>
      <pubDate>Thu, 10 Sep 2026 07:58:25 PM GMT</pubDate>
      <guid isPermaLink="false">4aaa3c5b364a739faab61e6d2b898e80f8dac7131f482a8eae2d8dd8c3206f48</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/k/kernel-doc-6.12.0-211.54.1.el10_2.noarch.rpm</link>
      <description><p><strong>kernel-doc</strong> - Various documentation bits found in the kernel source&lt;br /&gt;</p>

<p>This package contains documentation files from the kernel&lt;br /&gt;
source. Various bits of information about the Linux kernel and the&lt;br /&gt;
device drivers shipped with it are documented in these files.&lt;br /&gt;
&lt;br /&gt;
You'll want to install this package if you need a reference to the&lt;br /&gt;
options that can be passed to Linux kernel modules at load time.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 10 Sep 2026 GMT - Release Engineering &amp;lt;releng@rockylinux.org&amp;gt; - 6.12.0-211.54.1
- Add partial riscv64 support for build root
- Provide basic VisionFive 2 support

Mon, 07 Sep 2026 GMT - CKI KWF Bot &amp;lt;cki-ci-bot+kwf-gitlab-com@redhat.com&amp;gt; [6.12.0-211.54.1.el10_2]
- net: bridge: stop fast-leave after deleting a port group (CKI Backport Bot) [RHEL-246933] {CVE-2026-74480}

Mon, 07 Sep 2026 GMT - CKI KWF Bot &amp;lt;cki-ci-bot+kwf-gitlab-com@redhat.com&amp;gt; [6.12.0-211.53.1.el10_2]
- dm-verity: fix buffer overflow in FEC calculation (Benjamin Marzinski) [RHEL-244969] {CVE-2026-72098}
- nvmet-rdma: handle inline data with a nonzero offset (CKI Backport Bot) [RHEL-244928] {CVE-2026-72129}
- rtla/timerlat_top: Fix on-threshold actions firing on signal (Tomas Glozar) [RHEL-193027]
- rtla/timerlat: Exit top main loop on any non-zero wait_retval (Tomas Glozar) [RHEL-193027]
- wifi: mac80211: defer link RX stats percpu free to RCU (Jose Ignacio Tornos Martinez) [RHEL-237706] {CVE-2026-68409}
- wifi: mt76: mt7925: drop TXRX_NOTIFY on non-mmio buses (Jose Ignacio Tornos Martinez) [RHEL-237681] {CVE-2026-68193}
- wifi: mt76: mt7925: fix crash in reset link replay (Jose Ignacio Tornos Martinez) [RHEL-237527] {CVE-2026-68307}
- wifi: iwlwifi: mld: validate sta_mask before ffs() in BA session handlers (Jose Ignacio Tornos Martinez) [RHEL-232015] {CVE-2026-64255}
- wifi: mac80211: capture fast-RX rate before mesh reuses skb-&amp;gt;cb (Jose Ignacio Tornos Martinez) [RHEL-231685] {CVE-2026-64117}
- wifi: mac80211: fix missing RX bitrate update for mesh forwarding path (Jose Ignacio Tornos Martinez) [RHEL-231685] {CVE-2026-64117}
- wifi: iwlwifi: mld: fix TSO segmentation explosion when AMSDU is disabled (Jose Ignacio Tornos Martinez) [RHEL-230977] {CVE-2026-64037}
- wifi: nl80211: reject oversized EMA RNR lists (Jose Ignacio Tornos Martinez) [RHEL-230604] {CVE-2026-53182}
- net: qrtr: fix refcount saturation and potential UAF in qrtr_port_remove (Jose Ignacio Tornos Martinez) [RHEL-229725] {CVE-2026-52947}
- wifi: mac80211: fix multi-link element inheritance (Jose Ignacio Tornos Martinez) [RHEL-227617] {CVE-2026-64515}
- wifi: mac80211: fix MLE defragmentation (Jose Ignacio Tornos Martinez) [RHEL-227617] {CVE-2026-64515}
- Bluetooth: fix locking in hci_conn_request_evt() with HCI_PROTO_DEFER (CKI Backport Bot) [RHEL-232673] {CVE-2026-53072}
- accel/qaic: Add overflow check to remap_pfn_range during mmap (CKI Backport Bot) [RHEL-232178] {CVE-2026-64051}
- Bluetooth: HIDP: fix missing length checks in hidp_input_report() (CKI Backport Bot) [RHEL-231067] {CVE-2026-63947}
- Bluetooth: virtio_bt: validate rx pkt_type header length (CKI Backport Bot) [RHEL-230949] {CVE-2026-46123}
- Bluetooth: virtio_bt: clamp rx length before skb_put (CKI Backport Bot) [RHEL-230949] {CVE-2026-46123}
- Bluetooth: hci_sync: reject oversized Broadcast Announcement prepend (CKI Backport Bot) [RHEL-230076] {CVE-2026-53209}
- Bluetooth: hci_sync: fix UAF in hci_le_create_cis_sync (CKI Backport Bot) [RHEL-230013] {CVE-2026-63944}
- Bluetooth: L2CAP: Fix possible crash on l2cap_ecred_conn_rsp (CKI Backport Bot) [RHEL-228750] {CVE-2026-63975}
- Bluetooth: ISO: serialize iso_sock_clear_timer with socket lock (CKI Backport Bot) [RHEL-227911] {CVE-2026-63946}
- Bluetooth: ISO: fix UAF in iso_recv_frame (CKI Backport Bot) [RHEL-227911] {CVE-2026-63946}
- ixgbevf: fix use-after-free in VEPA multicast source pruning (CKI Backport Bot) [RHEL-227889] {CVE-2026-64113}
- Bluetooth: SMP: force responder MITM requirements before building the pairing response (CKI Backport Bot) [RHEL-227532] {CVE-2026-43334}
- vfio/pci: Check BAR resources before exporting a DMABUF (CKI Backport Bot) [RHEL-227133] {CVE-2026-64042}
- security/keys: fix missed RCU read section on lookup (CKI Backport Bot) [RHEL-225690] {CVE-2026-64015}
- Bluetooth: RFCOMM: validate skb length in MCC handlers (CKI Backport Bot) [RHEL-225653] {CVE-2026-53254}
- Bluetooth: RFCOMM: hold listener socket in rfcomm_connect_ind() (CKI Backport Bot) [RHEL-225574] {CVE-2026-53256}
- Bluetooth: serialize accept_q access (CKI Backport Bot) [RHEL-225552] {CVE-2026-52918}
- xfrm: Don't clobber inner headers when already set (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- net: pull headers in qdisc_pkt_len_segs_init() (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- net: qdisc_pkt_len_segs_init() cleanup (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- net_sched: initialize qdisc_skb_cb(skb)-&amp;gt;pkt_segs in qdisc_pkt_len_init() (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- net: init shinfo-&amp;gt;gso_segs from qdisc_pkt_len_init() (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- net_sched: make room for (struct qdisc_skb_cb)-&amp;gt;pkt_segs (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- net: account for encap headers in qdisc pkt len (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- vfio/pci: Clean up DMABUFs before disabling function (CKI Backport Bot) [RHEL-189549] {CVE-2026-53322}
- KVM: nSVM: Always use vmcb01 in VMLOAD/VMSAVE emulation (CKI Backport Bot) [RHEL-189468] {CVE-2026-43133}

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>osbuild-composer-worker-165.1-5.el10_2.rocky.0.1.riscv64</title>
      <pubDate>Thu, 10 Sep 2026 04:41:44 PM GMT</pubDate>
      <guid isPermaLink="false">b8a4000af5e5190eae3fb27c8dbc3742cef57e3b136893684fe2d976b85dc4d6</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/o/osbuild-composer-worker-165.1-5.el10_2.rocky.0.1.riscv64.rpm</link>
      <description><p><strong>osbuild-composer-worker</strong> - The worker for osbuild-composer&lt;br /&gt;</p>

<p>The worker for osbuild-composer</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 10 Sep 2026 GMT - Release Engineering &amp;lt;releng@rockylinux.org&amp;gt; - 165.1-5.rocky.0.1
- Add support for Rocky Linux

Wed, 09 Sep 2026 GMT - sraymaek &amp;lt;sraymaek@redhat.com&amp;gt; - 165.1-5
- go.mod: bump indirect golang.org/x/net dependency to v0.56.0
  Resolves: RHEL-191094, RHEL-191545, RHEL-223447
- go.mod: update github.com/labstack/echo/v4 to v4.15.3
  Resolves: RHEL-213913
- go.mod: update go.opentelemetry.io/otel to v1.44.0
  Resolves: RHEL-239489

Mon, 31 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 165.1-3.2
- Rebuild for updated golang

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>osbuild-composer-core-165.1-5.el10_2.rocky.0.1.riscv64</title>
      <pubDate>Thu, 10 Sep 2026 04:41:44 PM GMT</pubDate>
      <guid isPermaLink="false">6b17763630d97360f3b11d57facc9456bad85e5b05c47186530d6daaeed3383b</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/o/osbuild-composer-core-165.1-5.el10_2.rocky.0.1.riscv64.rpm</link>
      <description><p><strong>osbuild-composer-core</strong> - The core osbuild-composer binary&lt;br /&gt;</p>

<p>The core osbuild-composer binary. This is suitable both for spawning in containers and by systemd.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 10 Sep 2026 GMT - Release Engineering &amp;lt;releng@rockylinux.org&amp;gt; - 165.1-5.rocky.0.1
- Add support for Rocky Linux

Wed, 09 Sep 2026 GMT - sraymaek &amp;lt;sraymaek@redhat.com&amp;gt; - 165.1-5
- go.mod: bump indirect golang.org/x/net dependency to v0.56.0
  Resolves: RHEL-191094, RHEL-191545, RHEL-223447
- go.mod: update github.com/labstack/echo/v4 to v4.15.3
  Resolves: RHEL-213913
- go.mod: update go.opentelemetry.io/otel to v1.44.0
  Resolves: RHEL-239489

Mon, 31 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 165.1-3.2
- Rebuild for updated golang

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>osbuild-composer-165.1-5.el10_2.rocky.0.1.riscv64</title>
      <pubDate>Thu, 10 Sep 2026 04:41:44 PM GMT</pubDate>
      <guid isPermaLink="false">5783a74a6378eca65a4656e3bddf3394566d18c09c8334928f8aa4b6055d3fde</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/o/osbuild-composer-165.1-5.el10_2.rocky.0.1.riscv64.rpm</link>
      <description><p><strong>osbuild-composer</strong> - An image building service based on osbuild&lt;br /&gt;</p>

<p>&lt;br /&gt;
A service for building customized OS artifacts, such as VM images and OSTree&lt;br /&gt;
commits, that uses osbuild under the hood. Besides building images for local&lt;br /&gt;
usage, it can also upload images directly to cloud.&lt;br /&gt;
&lt;br /&gt;
It is compatible with composer-cli and cockpit-composer clients.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 10 Sep 2026 GMT - Release Engineering &amp;lt;releng@rockylinux.org&amp;gt; - 165.1-5.rocky.0.1
- Add support for Rocky Linux

Wed, 09 Sep 2026 GMT - sraymaek &amp;lt;sraymaek@redhat.com&amp;gt; - 165.1-5
- go.mod: bump indirect golang.org/x/net dependency to v0.56.0
  Resolves: RHEL-191094, RHEL-191545, RHEL-223447
- go.mod: update github.com/labstack/echo/v4 to v4.15.3
  Resolves: RHEL-213913
- go.mod: update go.opentelemetry.io/otel to v1.44.0
  Resolves: RHEL-239489

Mon, 31 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 165.1-3.2
- Rebuild for updated golang

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>scap-security-guide-doc-0.1.82-2.el10_2.rocky.1.1.noarch</title>
      <pubDate>Thu, 10 Sep 2026 04:28:59 PM GMT</pubDate>
      <guid isPermaLink="false">dfc37e634e4742f4787c9d72a82e7afed3135934752e486cfb4dadd218ae4bb7</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/s/scap-security-guide-doc-0.1.82-2.el10_2.rocky.1.1.noarch.rpm</link>
      <description><p><strong>scap-security-guide-doc</strong> - HTML formatted security guides generated from XCCDF benchmarks&lt;br /&gt;</p>

<p>The scap-security-guide-doc package contains HTML formatted documents containing&lt;br /&gt;
hardening guidances that have been generated from XCCDF benchmarks&lt;br /&gt;
present in scap-security-guide package.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 10 Sep 2026 GMT - Release Engineering &amp;lt;releng@rockylinux.org&amp;gt; - 0.1.82-2.rocky.1.1
- Add Rocky Linux as derivative of RHEL

Tue, 08 Sep 2026 GMT - Jan Černý &amp;lt;jcerny@redhat.com&amp;gt; - 0.1.82-2
- Resolve dropped changelog entry

Tue, 01 Sep 2026 GMT - Jan Černý &amp;lt;jcerny@redhat.com&amp;gt; - 0.1.82-1
- Rebase scap-security-guide to 0.1.82 in RHEL 10.2.z (RHEL-242530)
- Explicitly set file owner and permissions when creating new files or directories (RHEL-182657)
- Add a rationale text for rule package_sssd_installed (RHEL-178437)
- Align RHEL 10 STIG profile with official RHEL 10 DISA STIG V1R2 (RHEL-164451)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>scap-security-guide-0.1.82-2.el10_2.rocky.1.1.noarch</title>
      <pubDate>Thu, 10 Sep 2026 04:28:59 PM GMT</pubDate>
      <guid isPermaLink="false">84975731baf34495f3f466e9ebb8c4be6315e7810e3bbc75f01b42761261a473</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/s/scap-security-guide-0.1.82-2.el10_2.rocky.1.1.noarch.rpm</link>
      <description><p><strong>scap-security-guide</strong> - Security guidance and baselines in SCAP formats&lt;br /&gt;</p>

<p>The scap-security-guide project provides a guide for configuration of the&lt;br /&gt;
system from the final system's security point of view. The guidance is specified&lt;br /&gt;
in the Security Content Automation Protocol (SCAP) format and constitutes&lt;br /&gt;
a catalog of practical hardening advice, linked to government requirements&lt;br /&gt;
where applicable. The project bridges the gap between generalized policy&lt;br /&gt;
requirements and specific implementation guidelines. The system&lt;br /&gt;
administrator can use the oscap CLI tool from openscap-scanner package, or the&lt;br /&gt;
scap-workbench GUI tool from scap-workbench package to verify that the system&lt;br /&gt;
conforms to provided guideline. Refer to scap-security-guide(8) manual page for&lt;br /&gt;
further information.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 10 Sep 2026 GMT - Release Engineering &amp;lt;releng@rockylinux.org&amp;gt; - 0.1.82-2.rocky.1.1
- Add Rocky Linux as derivative of RHEL

Tue, 08 Sep 2026 GMT - Jan Černý &amp;lt;jcerny@redhat.com&amp;gt; - 0.1.82-2
- Resolve dropped changelog entry

Tue, 01 Sep 2026 GMT - Jan Černý &amp;lt;jcerny@redhat.com&amp;gt; - 0.1.82-1
- Rebase scap-security-guide to 0.1.82 in RHEL 10.2.z (RHEL-242530)
- Explicitly set file owner and permissions when creating new files or directories (RHEL-182657)
- Add a rationale text for rule package_sssd_installed (RHEL-178437)
- Align RHEL 10 STIG profile with official RHEL 10 DISA STIG V1R2 (RHEL-164451)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>apr-util-sqlite-1.6.3-23.el10_2.1.riscv64</title>
      <pubDate>Thu, 10 Sep 2026 03:13:48 PM GMT</pubDate>
      <guid isPermaLink="false">a41e09359e9bba893d3cc6f5e3f60ab3842e4cb543b7169dd11474577fd53800</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/a/apr-util-sqlite-1.6.3-23.el10_2.1.riscv64.rpm</link>
      <description><p><strong>apr-util-sqlite</strong> - APR utility library SQLite DBD driver&lt;br /&gt;</p>

<p>This package provides the SQLite driver for the apr-util DBD&lt;br /&gt;
(database abstraction) interface.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 02 Sep 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 1.6.3-23.1
- Resolves: RHEL-236629 - apr-util: Apache Portable Runtime Utility: Information
  disclosure via timing attack in password validation (CVE-2025-49506)
- Resolves: RHEL-236264 - apr-util: Apache Portable Runtime Utility: Heap buffer
  overflow in APR memcached client (CVE-2026-34502)
- Resolves: RHEL-236469 - apr-util: Apache Portable Runtime Utility: Heap buffer
  overflow in redis client (CVE-2026-34501)
- Resolves: RHEL-235667 - apr-util: APR-util: Denial of Service via XML stack
  recursion attack (CVE-2026-32327)

Fri, 05 Dec 2025 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 1.6.3-23
- Resolves: RHEL-117419 - apr-util lmdb prevent htdbm to remove user

Tue, 29 Oct 2024 GMT - Troy Dawson &amp;lt;tdawson@redhat.com&amp;gt; - 1.6.3-21
- Bump release for October 2024 mass rebuild:
  Resolves: RHEL-64018

&lt;/pre&gt;</description>
    </item>
    <item>
      <title>apr-util-pgsql-1.6.3-23.el10_2.1.riscv64</title>
      <pubDate>Thu, 10 Sep 2026 03:13:48 PM GMT</pubDate>
      <guid isPermaLink="false">10b9a4836108118936212678a4a665037b8419647546e129deb2e9057a93578b</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/a/apr-util-pgsql-1.6.3-23.el10_2.1.riscv64.rpm</link>
      <description><p><strong>apr-util-pgsql</strong> - APR utility library PostgreSQL DBD driver&lt;br /&gt;</p>

<p>This package provides the PostgreSQL driver for the apr-util&lt;br /&gt;
DBD (database abstraction) interface.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 02 Sep 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 1.6.3-23.1
- Resolves: RHEL-236629 - apr-util: Apache Portable Runtime Utility: Information
  disclosure via timing attack in password validation (CVE-2025-49506)
- Resolves: RHEL-236264 - apr-util: Apache Portable Runtime Utility: Heap buffer
  overflow in APR memcached client (CVE-2026-34502)
- Resolves: RHEL-236469 - apr-util: Apache Portable Runtime Utility: Heap buffer
  overflow in redis client (CVE-2026-34501)
- Resolves: RHEL-235667 - apr-util: APR-util: Denial of Service via XML stack
  recursion attack (CVE-2026-32327)

Fri, 05 Dec 2025 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 1.6.3-23
- Resolves: RHEL-117419 - apr-util lmdb prevent htdbm to remove user

Tue, 29 Oct 2024 GMT - Troy Dawson &amp;lt;tdawson@redhat.com&amp;gt; - 1.6.3-21
- Bump release for October 2024 mass rebuild:
  Resolves: RHEL-64018

&lt;/pre&gt;</description>
    </item>
    <item>
      <title>apr-util-openssl-1.6.3-23.el10_2.1.riscv64</title>
      <pubDate>Thu, 10 Sep 2026 03:13:48 PM GMT</pubDate>
      <guid isPermaLink="false">6667075a7fc0d3d4414a87e6f58fa7b2950f7f0bd8dd0f5a03af7ac4b8e214c4</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/a/apr-util-openssl-1.6.3-23.el10_2.1.riscv64.rpm</link>
      <description><p><strong>apr-util-openssl</strong> - APR utility library OpenSSL crypto support&lt;br /&gt;</p>

<p>This package provides the OpenSSL crypto support for the apr-util.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 02 Sep 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 1.6.3-23.1
- Resolves: RHEL-236629 - apr-util: Apache Portable Runtime Utility: Information
  disclosure via timing attack in password validation (CVE-2025-49506)
- Resolves: RHEL-236264 - apr-util: Apache Portable Runtime Utility: Heap buffer
  overflow in APR memcached client (CVE-2026-34502)
- Resolves: RHEL-236469 - apr-util: Apache Portable Runtime Utility: Heap buffer
  overflow in redis client (CVE-2026-34501)
- Resolves: RHEL-235667 - apr-util: APR-util: Denial of Service via XML stack
  recursion attack (CVE-2026-32327)

Fri, 05 Dec 2025 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 1.6.3-23
- Resolves: RHEL-117419 - apr-util lmdb prevent htdbm to remove user

Tue, 29 Oct 2024 GMT - Troy Dawson &amp;lt;tdawson@redhat.com&amp;gt; - 1.6.3-21
- Bump release for October 2024 mass rebuild:
  Resolves: RHEL-64018

&lt;/pre&gt;</description>
    </item>
    <item>
      <title>apr-util-odbc-1.6.3-23.el10_2.1.riscv64</title>
      <pubDate>Thu, 10 Sep 2026 03:13:48 PM GMT</pubDate>
      <guid isPermaLink="false">07cb25975bf8da299aab6289ba4ad9d727b8a509a7390659946e645d6a9eb90a</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/a/apr-util-odbc-1.6.3-23.el10_2.1.riscv64.rpm</link>
      <description><p><strong>apr-util-odbc</strong> - APR utility library ODBC DBD driver&lt;br /&gt;</p>

<p>This package provides the ODBC driver for the apr-util DBD&lt;br /&gt;
(database abstraction) interface.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 02 Sep 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 1.6.3-23.1
- Resolves: RHEL-236629 - apr-util: Apache Portable Runtime Utility: Information
  disclosure via timing attack in password validation (CVE-2025-49506)
- Resolves: RHEL-236264 - apr-util: Apache Portable Runtime Utility: Heap buffer
  overflow in APR memcached client (CVE-2026-34502)
- Resolves: RHEL-236469 - apr-util: Apache Portable Runtime Utility: Heap buffer
  overflow in redis client (CVE-2026-34501)
- Resolves: RHEL-235667 - apr-util: APR-util: Denial of Service via XML stack
  recursion attack (CVE-2026-32327)

Fri, 05 Dec 2025 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 1.6.3-23
- Resolves: RHEL-117419 - apr-util lmdb prevent htdbm to remove user

Tue, 29 Oct 2024 GMT - Troy Dawson &amp;lt;tdawson@redhat.com&amp;gt; - 1.6.3-21
- Bump release for October 2024 mass rebuild:
  Resolves: RHEL-64018

&lt;/pre&gt;</description>
    </item>
    <item>
      <title>apr-util-mysql-1.6.3-23.el10_2.1.riscv64</title>
      <pubDate>Thu, 10 Sep 2026 03:13:48 PM GMT</pubDate>
      <guid isPermaLink="false">6b343199da7c2ed8b106a559472c565ba09893580061a820209dc8127e177586</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/a/apr-util-mysql-1.6.3-23.el10_2.1.riscv64.rpm</link>
      <description><p><strong>apr-util-mysql</strong> - APR utility library MySQL DBD driver&lt;br /&gt;</p>

<p>This package provides the MySQL driver for the apr-util DBD&lt;br /&gt;
(database abstraction) interface.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 02 Sep 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 1.6.3-23.1
- Resolves: RHEL-236629 - apr-util: Apache Portable Runtime Utility: Information
  disclosure via timing attack in password validation (CVE-2025-49506)
- Resolves: RHEL-236264 - apr-util: Apache Portable Runtime Utility: Heap buffer
  overflow in APR memcached client (CVE-2026-34502)
- Resolves: RHEL-236469 - apr-util: Apache Portable Runtime Utility: Heap buffer
  overflow in redis client (CVE-2026-34501)
- Resolves: RHEL-235667 - apr-util: APR-util: Denial of Service via XML stack
  recursion attack (CVE-2026-32327)

Fri, 05 Dec 2025 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 1.6.3-23
- Resolves: RHEL-117419 - apr-util lmdb prevent htdbm to remove user

Tue, 29 Oct 2024 GMT - Troy Dawson &amp;lt;tdawson@redhat.com&amp;gt; - 1.6.3-21
- Bump release for October 2024 mass rebuild:
  Resolves: RHEL-64018

&lt;/pre&gt;</description>
    </item>
    <item>
      <title>apr-util-lmdb-1.6.3-23.el10_2.1.riscv64</title>
      <pubDate>Thu, 10 Sep 2026 03:13:48 PM GMT</pubDate>
      <guid isPermaLink="false">b4da35d092e56a4e58841efdf40e1b197d4fab9b15bf7bf374b193cc1051735e</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/a/apr-util-lmdb-1.6.3-23.el10_2.1.riscv64.rpm</link>
      <description><p><strong>apr-util-lmdb</strong> - APR utility library LMDB driver&lt;br /&gt;</p>

<p>This package provides the LMDB driver for the apr-util&lt;br /&gt;
DBM (database abstraction) interface.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 02 Sep 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 1.6.3-23.1
- Resolves: RHEL-236629 - apr-util: Apache Portable Runtime Utility: Information
  disclosure via timing attack in password validation (CVE-2025-49506)
- Resolves: RHEL-236264 - apr-util: Apache Portable Runtime Utility: Heap buffer
  overflow in APR memcached client (CVE-2026-34502)
- Resolves: RHEL-236469 - apr-util: Apache Portable Runtime Utility: Heap buffer
  overflow in redis client (CVE-2026-34501)
- Resolves: RHEL-235667 - apr-util: APR-util: Denial of Service via XML stack
  recursion attack (CVE-2026-32327)

Fri, 05 Dec 2025 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 1.6.3-23
- Resolves: RHEL-117419 - apr-util lmdb prevent htdbm to remove user

Tue, 29 Oct 2024 GMT - Troy Dawson &amp;lt;tdawson@redhat.com&amp;gt; - 1.6.3-21
- Bump release for October 2024 mass rebuild:
  Resolves: RHEL-64018

&lt;/pre&gt;</description>
    </item>
    <item>
      <title>apr-util-ldap-1.6.3-23.el10_2.1.riscv64</title>
      <pubDate>Thu, 10 Sep 2026 03:13:48 PM GMT</pubDate>
      <guid isPermaLink="false">43e1f38892a827fed4e0ffd4f803256e5f2e3634f984c0c6f84a4ab91bd03a25</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/a/apr-util-ldap-1.6.3-23.el10_2.1.riscv64.rpm</link>
      <description><p><strong>apr-util-ldap</strong> - APR utility library LDAP support&lt;br /&gt;</p>

<p>This package provides the LDAP support for the apr-util.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 02 Sep 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 1.6.3-23.1
- Resolves: RHEL-236629 - apr-util: Apache Portable Runtime Utility: Information
  disclosure via timing attack in password validation (CVE-2025-49506)
- Resolves: RHEL-236264 - apr-util: Apache Portable Runtime Utility: Heap buffer
  overflow in APR memcached client (CVE-2026-34502)
- Resolves: RHEL-236469 - apr-util: Apache Portable Runtime Utility: Heap buffer
  overflow in redis client (CVE-2026-34501)
- Resolves: RHEL-235667 - apr-util: APR-util: Denial of Service via XML stack
  recursion attack (CVE-2026-32327)

Fri, 05 Dec 2025 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 1.6.3-23
- Resolves: RHEL-117419 - apr-util lmdb prevent htdbm to remove user

Tue, 29 Oct 2024 GMT - Troy Dawson &amp;lt;tdawson@redhat.com&amp;gt; - 1.6.3-21
- Bump release for October 2024 mass rebuild:
  Resolves: RHEL-64018

&lt;/pre&gt;</description>
    </item>
    <item>
      <title>apr-util-devel-1.6.3-23.el10_2.1.riscv64</title>
      <pubDate>Thu, 10 Sep 2026 03:13:48 PM GMT</pubDate>
      <guid isPermaLink="false">f69b6970deb9c1c5bd3cb8898379afc801db71b9546131b5b4387b090a1fe1f2</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/a/apr-util-devel-1.6.3-23.el10_2.1.riscv64.rpm</link>
      <description><p><strong>apr-util-devel</strong> - APR utility library development kit&lt;br /&gt;</p>

<p>This package provides the support files which can be used to&lt;br /&gt;
build applications using the APR utility library.  The mission&lt;br /&gt;
of the Apache Portable Runtime (APR) is to provide a free&lt;br /&gt;
library of C data structures and routines.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 02 Sep 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 1.6.3-23.1
- Resolves: RHEL-236629 - apr-util: Apache Portable Runtime Utility: Information
  disclosure via timing attack in password validation (CVE-2025-49506)
- Resolves: RHEL-236264 - apr-util: Apache Portable Runtime Utility: Heap buffer
  overflow in APR memcached client (CVE-2026-34502)
- Resolves: RHEL-236469 - apr-util: Apache Portable Runtime Utility: Heap buffer
  overflow in redis client (CVE-2026-34501)
- Resolves: RHEL-235667 - apr-util: APR-util: Denial of Service via XML stack
  recursion attack (CVE-2026-32327)

Fri, 05 Dec 2025 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 1.6.3-23
- Resolves: RHEL-117419 - apr-util lmdb prevent htdbm to remove user

Tue, 29 Oct 2024 GMT - Troy Dawson &amp;lt;tdawson@redhat.com&amp;gt; - 1.6.3-21
- Bump release for October 2024 mass rebuild:
  Resolves: RHEL-64018

&lt;/pre&gt;</description>
    </item>
    <item>
      <title>apr-util-1.6.3-23.el10_2.1.riscv64</title>
      <pubDate>Thu, 10 Sep 2026 03:13:48 PM GMT</pubDate>
      <guid isPermaLink="false">76fb11e2518b4681483e969d6aca2355d3b8e4349203b83d7af8898355c86640</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/a/apr-util-1.6.3-23.el10_2.1.riscv64.rpm</link>
      <description><p><strong>apr-util</strong> - Apache Portable Runtime Utility library&lt;br /&gt;</p>

<p>The mission of the Apache Portable Runtime (APR) is to provide a&lt;br /&gt;
free library of C data structures and routines.  This library&lt;br /&gt;
contains additional utility interfaces for APR; including support&lt;br /&gt;
for XML, LDAP, database interfaces, URI parsing and more.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 02 Sep 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 1.6.3-23.1
- Resolves: RHEL-236629 - apr-util: Apache Portable Runtime Utility: Information
  disclosure via timing attack in password validation (CVE-2025-49506)
- Resolves: RHEL-236264 - apr-util: Apache Portable Runtime Utility: Heap buffer
  overflow in APR memcached client (CVE-2026-34502)
- Resolves: RHEL-236469 - apr-util: Apache Portable Runtime Utility: Heap buffer
  overflow in redis client (CVE-2026-34501)
- Resolves: RHEL-235667 - apr-util: APR-util: Denial of Service via XML stack
  recursion attack (CVE-2026-32327)

Fri, 05 Dec 2025 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 1.6.3-23
- Resolves: RHEL-117419 - apr-util lmdb prevent htdbm to remove user

Tue, 29 Oct 2024 GMT - Troy Dawson &amp;lt;tdawson@redhat.com&amp;gt; - 1.6.3-21
- Bump release for October 2024 mass rebuild:
  Resolves: RHEL-64018

&lt;/pre&gt;</description>
    </item>
    <item>
      <title>libwinpr-2:3.10.3-12.el10_2.11.riscv64</title>
      <pubDate>Thu, 10 Sep 2026 03:13:38 PM GMT</pubDate>
      <guid isPermaLink="false">a0c5b6be4dffb3c058b1f5d1f2f5d9c340be03dd325ab073467e183ae9b25a7e</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/l/libwinpr-3.10.3-12.el10_2.11.riscv64.rpm</link>
      <description><p><strong>libwinpr</strong> - Windows Portable Runtime&lt;br /&gt;</p>

<p>WinPR provides API compatibility for applications targeting non-Windows&lt;br /&gt;
environments. When on Windows, the original native API is being used instead of&lt;br /&gt;
the equivalent WinPR implementation, without having to modify the code using it.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Tue, 25 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 2:3.10.3-12.11
- Fix RPC gateway fragment size and capacity checks (CVE-2026-55193)
  Resolves: RHEL-247346

Tue, 25 Aug 2026 GMT - Ondrej Holy &amp;lt;oholy@redhat.com&amp;gt; - 2:3.10.3-12.10
- Backport several CVE fixes (CVE-2026-55194, CVE-2026-63633, CVE-2026-63652,
  CVE-2026-67288, CVE-2026-67291, CVE-2026-67296, CVE-2026-67297,
  CVE-2026-67301, CVE-2026-67304, CVE-2026-69159, CVE-2026-73241)
  Resolves: RHEL-245652, RHEL-245635, RHEL-245599, RHEL-245539, RHEL-238534
  Resolves: RHEL-236056, RHEL-227734, RHEL-225225, RHEL-225097, RHEL-224250
  Resolves: RHEL-224185

Mon, 17 Aug 2026 GMT - RHEL Ondrej Holy &amp;lt;oholy@redhat.com&amp;gt; - 2:3.10.3-12.9
- Backport several CVE fixes (CVE-2026-67298, CVE-2026-73242)
  Resolves: RHEL-224050, RHEL-238931

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>freerdp-libs-2:3.10.3-12.el10_2.11.riscv64</title>
      <pubDate>Thu, 10 Sep 2026 03:13:38 PM GMT</pubDate>
      <guid isPermaLink="false">6620d23c8ec80c305b92175fc07492e1b2e7395d7c9969adc7dbf21d20c42780</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/f/freerdp-libs-3.10.3-12.el10_2.11.riscv64.rpm</link>
      <description><p><strong>freerdp-libs</strong> - Core libraries implementing the RDP protocol&lt;br /&gt;</p>

<p>libfreerdp-core can be embedded in applications.&lt;br /&gt;
&lt;br /&gt;
libfreerdp-channels and libfreerdp-kbd might be convenient to use in X&lt;br /&gt;
applications together with libfreerdp-core.&lt;br /&gt;
&lt;br /&gt;
libfreerdp-core can be extended with plugins handling RDP channels.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Tue, 25 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 2:3.10.3-12.11
- Fix RPC gateway fragment size and capacity checks (CVE-2026-55193)
  Resolves: RHEL-247346

Tue, 25 Aug 2026 GMT - Ondrej Holy &amp;lt;oholy@redhat.com&amp;gt; - 2:3.10.3-12.10
- Backport several CVE fixes (CVE-2026-55194, CVE-2026-63633, CVE-2026-63652,
  CVE-2026-67288, CVE-2026-67291, CVE-2026-67296, CVE-2026-67297,
  CVE-2026-67301, CVE-2026-67304, CVE-2026-69159, CVE-2026-73241)
  Resolves: RHEL-245652, RHEL-245635, RHEL-245599, RHEL-245539, RHEL-238534
  Resolves: RHEL-236056, RHEL-227734, RHEL-225225, RHEL-225097, RHEL-224250
  Resolves: RHEL-224185

Mon, 17 Aug 2026 GMT - RHEL Ondrej Holy &amp;lt;oholy@redhat.com&amp;gt; - 2:3.10.3-12.9
- Backport several CVE fixes (CVE-2026-67298, CVE-2026-73242)
  Resolves: RHEL-224050, RHEL-238931

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>freerdp-2:3.10.3-12.el10_2.11.riscv64</title>
      <pubDate>Thu, 10 Sep 2026 03:13:38 PM GMT</pubDate>
      <guid isPermaLink="false">a6e4f1c097134d66499daa5e3501aa507b4899916f1b62899bc3017dcca2e86f</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/f/freerdp-3.10.3-12.el10_2.11.riscv64.rpm</link>
      <description><p><strong>freerdp</strong> - Free implementation of the Remote Desktop Protocol (RDP)&lt;br /&gt;</p>

<p>The xfreerdp &amp; wlfreerdp Remote Desktop Protocol (RDP) clients from the FreeRDP&lt;br /&gt;
project.&lt;br /&gt;
&lt;br /&gt;
xfreerdp &amp; wlfreerdp can connect to RDP servers such as Microsoft Windows&lt;br /&gt;
machines, xrdp and VirtualBox.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Tue, 25 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 2:3.10.3-12.11
- Fix RPC gateway fragment size and capacity checks (CVE-2026-55193)
  Resolves: RHEL-247346

Tue, 25 Aug 2026 GMT - Ondrej Holy &amp;lt;oholy@redhat.com&amp;gt; - 2:3.10.3-12.10
- Backport several CVE fixes (CVE-2026-55194, CVE-2026-63633, CVE-2026-63652,
  CVE-2026-67288, CVE-2026-67291, CVE-2026-67296, CVE-2026-67297,
  CVE-2026-67301, CVE-2026-67304, CVE-2026-69159, CVE-2026-73241)
  Resolves: RHEL-245652, RHEL-245635, RHEL-245599, RHEL-245539, RHEL-238534
  Resolves: RHEL-236056, RHEL-227734, RHEL-225225, RHEL-225097, RHEL-224250
  Resolves: RHEL-224185

Mon, 17 Aug 2026 GMT - RHEL Ondrej Holy &amp;lt;oholy@redhat.com&amp;gt; - 2:3.10.3-12.9
- Backport several CVE fixes (CVE-2026-67298, CVE-2026-73242)
  Resolves: RHEL-224050, RHEL-238931

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>xxd-2:9.1.083-9.el10_2.20.riscv64</title>
      <pubDate>Thu, 10 Sep 2026 09:22:35 AM GMT</pubDate>
      <guid isPermaLink="false">bed48787a62f4a1609b71d86dd2f0fe6410f31f198fc6e8ff353545609d3268b</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/x/xxd-9.1.083-9.el10_2.20.riscv64.rpm</link>
      <description><p><strong>xxd</strong> - A hex dump utility&lt;br /&gt;</p>

<p>xxd creates a hex dump of a given file or standard input.  It can also convert&lt;br /&gt;
a hex dump back to its original binary form.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 04 Sep 2026 GMT - Zdenek Dohnal &amp;lt;zdohnal@redhat.com&amp;gt; - 2:9.1.083-9.20
- RHEL-253668 CVE-2026-28420 buffer overflow in terminal emulator

Fri, 04 Sep 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 2:9.1.083-9.19
- RHEL-215660 CVE-2026-55892 vim: stack out-of-bounds write in
  dump_prefixes()

Fri, 04 Sep 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 2:9.1.083-9.18
- RHEL-215683 CVE-2026-59857 vim: stack out-of-bounds write in
  spell_soundfold_sal()

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>vim-enhanced-2:9.1.083-9.el10_2.20.riscv64</title>
      <pubDate>Thu, 10 Sep 2026 09:22:35 AM GMT</pubDate>
      <guid isPermaLink="false">756d121876536a64bd3d9c3f32d365ba7878ff4f4eeb74a61c558cb3bd18b3c9</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/v/vim-enhanced-9.1.083-9.el10_2.20.riscv64.rpm</link>
      <description><p><strong>vim-enhanced</strong> - A version of the VIM editor which includes recent enhancements&lt;br /&gt;</p>

<p>VIM (VIsual editor iMproved) is an updated and improved version of the&lt;br /&gt;
vi editor.  Vi was the first real screen-based editor for UNIX, and is&lt;br /&gt;
still very popular.  VIM improves on vi by adding new features:&lt;br /&gt;
multiple windows, multi-level undo, block highlighting and more.  The&lt;br /&gt;
vim-enhanced package contains a version of VIM with extra, recently&lt;br /&gt;
introduced features like Python and Perl interpreters.&lt;br /&gt;
&lt;br /&gt;
Install the vim-enhanced package if you'd like to use a version of the&lt;br /&gt;
VIM editor which includes recently added enhancements like&lt;br /&gt;
interpreters for the Python and Perl scripting languages.  You'll also&lt;br /&gt;
need to install the vim-common package.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 04 Sep 2026 GMT - Zdenek Dohnal &amp;lt;zdohnal@redhat.com&amp;gt; - 2:9.1.083-9.20
- RHEL-253668 CVE-2026-28420 buffer overflow in terminal emulator

Fri, 04 Sep 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 2:9.1.083-9.19
- RHEL-215660 CVE-2026-55892 vim: stack out-of-bounds write in
  dump_prefixes()

Fri, 04 Sep 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 2:9.1.083-9.18
- RHEL-215683 CVE-2026-59857 vim: stack out-of-bounds write in
  spell_soundfold_sal()

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>vim-common-2:9.1.083-9.el10_2.20.riscv64</title>
      <pubDate>Thu, 10 Sep 2026 09:22:35 AM GMT</pubDate>
      <guid isPermaLink="false">eafe62376353f0c368d22bd97ef07ffb25594ebd0d198f96523d8017d8bf484b</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/v/vim-common-9.1.083-9.el10_2.20.riscv64.rpm</link>
      <description><p><strong>vim-common</strong> - The common files needed by any version of the VIM editor&lt;br /&gt;</p>

<p>VIM (VIsual editor iMproved) is an updated and improved version of the&lt;br /&gt;
vi editor.  Vi was the first real screen-based editor for UNIX, and is&lt;br /&gt;
still very popular.  VIM improves on vi by adding new features:&lt;br /&gt;
multiple windows, multi-level undo, block highlighting and more.  The&lt;br /&gt;
vim-common package contains files which every VIM binary will need in&lt;br /&gt;
order to run.&lt;br /&gt;
&lt;br /&gt;
If you are installing vim-enhanced or vim-X11, you'll also need&lt;br /&gt;
to install the vim-common package.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 04 Sep 2026 GMT - Zdenek Dohnal &amp;lt;zdohnal@redhat.com&amp;gt; - 2:9.1.083-9.20
- RHEL-253668 CVE-2026-28420 buffer overflow in terminal emulator

Fri, 04 Sep 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 2:9.1.083-9.19
- RHEL-215660 CVE-2026-55892 vim: stack out-of-bounds write in
  dump_prefixes()

Fri, 04 Sep 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 2:9.1.083-9.18
- RHEL-215683 CVE-2026-59857 vim: stack out-of-bounds write in
  spell_soundfold_sal()

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>vim-X11-2:9.1.083-9.el10_2.20.riscv64</title>
      <pubDate>Thu, 10 Sep 2026 09:22:35 AM GMT</pubDate>
      <guid isPermaLink="false">8f410f069bce133f61171457de0c9fc34d880ae086c50edc75050ab5ffcf07e7</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/v/vim-X11-9.1.083-9.el10_2.20.riscv64.rpm</link>
      <description><p><strong>vim-X11</strong> - The VIM version of the vi editor for the X Window System - GVim&lt;br /&gt;</p>

<p>VIM (VIsual editor iMproved) is an updated and improved version of the&lt;br /&gt;
vi editor.  Vi was the first real screen-based editor for UNIX, and is&lt;br /&gt;
still very popular.  VIM improves on vi by adding new features:&lt;br /&gt;
multiple windows, multi-level undo, block highlighting and&lt;br /&gt;
more. VIM-X11 is a version of the VIM editor which will run within the&lt;br /&gt;
X Window System.  If you install this package, you can run VIM as an X&lt;br /&gt;
application with a full GUI interface and mouse support by command gvim.&lt;br /&gt;
&lt;br /&gt;
Install the vim-X11 package if you'd like to try out a version of vi&lt;br /&gt;
with graphics and mouse capabilities.  You'll also need to install the&lt;br /&gt;
vim-common package.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 04 Sep 2026 GMT - Zdenek Dohnal &amp;lt;zdohnal@redhat.com&amp;gt; - 2:9.1.083-9.20
- RHEL-253668 CVE-2026-28420 buffer overflow in terminal emulator

Fri, 04 Sep 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 2:9.1.083-9.19
- RHEL-215660 CVE-2026-55892 vim: stack out-of-bounds write in
  dump_prefixes()

Fri, 04 Sep 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 2:9.1.083-9.18
- RHEL-215683 CVE-2026-59857 vim: stack out-of-bounds write in
  spell_soundfold_sal()

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>perl-DBI-1.643-26.el10_2.4.riscv64</title>
      <pubDate>Wed, 09 Sep 2026 01:55:41 PM GMT</pubDate>
      <guid isPermaLink="false">fabc3b3c135c770564855685604088e874c6c217ddf3812bc3136347b337474c</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/perl-DBI-1.643-26.el10_2.4.riscv64.rpm</link>
      <description><p><strong>perl-DBI</strong> - A database access API for perl&lt;br /&gt;</p>

<p>DBI is a database access Application Programming Interface (API) for&lt;br /&gt;
the Perl Language. The DBI API Specification defines a set of&lt;br /&gt;
functions, variables and conventions that provide a consistent&lt;br /&gt;
database interface independent of the actual database being used.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 12 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 1.643-26.4
- Fix CVE-2026-19546: incomplete fix for CVE-2026-14380 in
  DBI::Profile
  Resolves: RHEL-236830

Thu, 16 Jul 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 1.643-26.3
- Fix CVE-2026-14380: unsafe string eval in DBI::Profile
- Resolves: RHEL-211146

Fri, 10 Jul 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 1.643-26.2
- Fix CVE-2026-14739: set a hard limit of 99999 on '?' placeholders
- Resolves: RHEL-193293

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>postgis-utils-3.5.3-4.el10_2.1.riscv64</title>
      <pubDate>Wed, 09 Sep 2026 01:51:58 PM GMT</pubDate>
      <guid isPermaLink="false">a4bb2f827525a4755248c06dfc043ea42ff4f4c05cfd680ad618cf6f673a0c75</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/postgis-utils-3.5.3-4.el10_2.1.riscv64.rpm</link>
      <description><p><strong>postgis-utils</strong> - The utils for PostGIS&lt;br /&gt;</p>

<p>The postgis-utils package provides the utilities for PostGIS.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Sun, 16 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 3.5.3-4.1
- Fix CVE-2026-73515: validate flatgeobuf input buffers before decoding

Wed, 22 Oct 2025 GMT - Petr Khartskhaev &amp;lt;pkhartsk@redhat.com&amp;gt; - 3.5.3-4
- Avoid perl(Pg) dependency on RHEL, adapted from
  the Fedora spec change from yselkowi@redhat.com

Tue, 29 Jul 2025 GMT - Sandro Mani &amp;lt;manisandro@gmail.com&amp;gt; - 3.5.3-3
- Rebuild (gdal)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>postgis-upgrade-3.5.3-4.el10_2.1.riscv64</title>
      <pubDate>Wed, 09 Sep 2026 01:51:58 PM GMT</pubDate>
      <guid isPermaLink="false">950d00bfd97a6e3e1d6a9d09e148a57b1c3427816fa1addc62ed18e62a212320</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/postgis-upgrade-3.5.3-4.el10_2.1.riscv64.rpm</link>
      <description><p><strong>postgis-upgrade</strong> - Support for upgrading Postgis&lt;br /&gt;</p>

<p>&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
The postgis-upgrade package contains the current version of Postgis built&lt;br /&gt;
against the previous version of PostgreSQL necessary for correct dump of schema&lt;br /&gt;
from the previous version of PostgreSQL.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Sun, 16 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 3.5.3-4.1
- Fix CVE-2026-73515: validate flatgeobuf input buffers before decoding

Wed, 22 Oct 2025 GMT - Petr Khartskhaev &amp;lt;pkhartsk@redhat.com&amp;gt; - 3.5.3-4
- Avoid perl(Pg) dependency on RHEL, adapted from
  the Fedora spec change from yselkowi@redhat.com

Tue, 29 Jul 2025 GMT - Sandro Mani &amp;lt;manisandro@gmail.com&amp;gt; - 3.5.3-3
- Rebuild (gdal)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>postgis-docs-3.5.3-4.el10_2.1.riscv64</title>
      <pubDate>Wed, 09 Sep 2026 01:51:58 PM GMT</pubDate>
      <guid isPermaLink="false">36fa266980b4a30b8c8e8e7e232b21218cc28ff8cdbaa888678c0dc130590163</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/postgis-docs-3.5.3-4.el10_2.1.riscv64.rpm</link>
      <description><p><strong>postgis-docs</strong> - Extra documentation for PostGIS&lt;br /&gt;</p>

<p>The postgis-docs package includes PDF documentation of PostGIS.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Sun, 16 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 3.5.3-4.1
- Fix CVE-2026-73515: validate flatgeobuf input buffers before decoding

Wed, 22 Oct 2025 GMT - Petr Khartskhaev &amp;lt;pkhartsk@redhat.com&amp;gt; - 3.5.3-4
- Avoid perl(Pg) dependency on RHEL, adapted from
  the Fedora spec change from yselkowi@redhat.com

Tue, 29 Jul 2025 GMT - Sandro Mani &amp;lt;manisandro@gmail.com&amp;gt; - 3.5.3-3
- Rebuild (gdal)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>postgis-client-3.5.3-4.el10_2.1.riscv64</title>
      <pubDate>Wed, 09 Sep 2026 01:51:58 PM GMT</pubDate>
      <guid isPermaLink="false">458a4100daf762dc469a668323d428866b7f9731fa9571a87f6715d5ec71dd6c</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/postgis-client-3.5.3-4.el10_2.1.riscv64.rpm</link>
      <description><p><strong>postgis-client</strong> - The CLI clients for PostGIS&lt;br /&gt;</p>

<p>The client package provides shp2pgsql, raster2pgsql and pgsql2shp for PostGIS.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Sun, 16 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 3.5.3-4.1
- Fix CVE-2026-73515: validate flatgeobuf input buffers before decoding

Wed, 22 Oct 2025 GMT - Petr Khartskhaev &amp;lt;pkhartsk@redhat.com&amp;gt; - 3.5.3-4
- Avoid perl(Pg) dependency on RHEL, adapted from
  the Fedora spec change from yselkowi@redhat.com

Tue, 29 Jul 2025 GMT - Sandro Mani &amp;lt;manisandro@gmail.com&amp;gt; - 3.5.3-3
- Rebuild (gdal)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>postgis-3.5.3-4.el10_2.1.riscv64</title>
      <pubDate>Wed, 09 Sep 2026 01:51:58 PM GMT</pubDate>
      <guid isPermaLink="false">1a3e857d2df25ea34e4ef46bb4c0ec530244ccb47c3747c8c8b39d93c35a04dc</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/postgis-3.5.3-4.el10_2.1.riscv64.rpm</link>
      <description><p><strong>postgis</strong> - Geographic Information Systems Extensions to PostgreSQL&lt;br /&gt;</p>

<p>PostGIS adds support for geographic objects to the PostgreSQL object-relational&lt;br /&gt;
database. In effect, PostGIS "spatially enables" the PostgreSQL server,&lt;br /&gt;
allowing it to be used as a backend spatial database for geographic information&lt;br /&gt;
systems (GIS), much like ESRI's SDE or Oracle's Spatial extension. PostGIS&lt;br /&gt;
follows the OpenGIS "Simple Features Specification for SQL" and has been&lt;br /&gt;
certified as compliant with the "Types and Functions" profile.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Sun, 16 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 3.5.3-4.1
- Fix CVE-2026-73515: validate flatgeobuf input buffers before decoding

Wed, 22 Oct 2025 GMT - Petr Khartskhaev &amp;lt;pkhartsk@redhat.com&amp;gt; - 3.5.3-4
- Avoid perl(Pg) dependency on RHEL, adapted from
  the Fedora spec change from yselkowi@redhat.com

Tue, 29 Jul 2025 GMT - Sandro Mani &amp;lt;manisandro@gmail.com&amp;gt; - 3.5.3-3
- Rebuild (gdal)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>qt6-qt5compat-devel-6.10.1-1.el10_2.1.riscv64</title>
      <pubDate>Wed, 09 Sep 2026 11:19:31 AM GMT</pubDate>
      <guid isPermaLink="false">147fcc4294443315c121e2d01e2f110762c298fc571e5d5406dba18c5f007cb4</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/q/qt6-qt5compat-devel-6.10.1-1.el10_2.1.riscv64.rpm</link>
      <description><p><strong>qt6-qt5compat-devel</strong> - Development files for qt6-qt5compat&lt;br /&gt;</p>

<p>Development files for qt6-qt5compat.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Tue, 25 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 6.10.1-1.1
- Fix out-of-bounds read in QTextCodec::codecForName() (CVE-2026-9499)
  Resolves: RHEL-247204

Mon, 24 Nov 2025 GMT - Jan Grulich &amp;lt;jgrulich@redhat.com&amp;gt; - 6.10.1-1
- 6.10.1
  Resolves: RHEL-109197

Fri, 06 Jun 2025 GMT - Jan Grulich &amp;lt;jgrulich@redhat.com&amp;gt; - 6.9.1-2
- Rebuild (broken buildroot)
  Resolves: RHEL-78530

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>qt6-qt5compat-6.10.1-1.el10_2.1.riscv64</title>
      <pubDate>Wed, 09 Sep 2026 11:19:31 AM GMT</pubDate>
      <guid isPermaLink="false">8f20ebb5c1d83b442979ba0697e06a096d7beb1c606c39c01059e77fb88def8b</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/q/qt6-qt5compat-6.10.1-1.el10_2.1.riscv64.rpm</link>
      <description><p><strong>qt6-qt5compat</strong> - Qt6 - Qt 5 Compatibility Libraries&lt;br /&gt;</p>

<p>Qt6 - Qt 5 Compatibility Libraries.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Tue, 25 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 6.10.1-1.1
- Fix out-of-bounds read in QTextCodec::codecForName() (CVE-2026-9499)
  Resolves: RHEL-247204

Mon, 24 Nov 2025 GMT - Jan Grulich &amp;lt;jgrulich@redhat.com&amp;gt; - 6.10.1-1
- 6.10.1
  Resolves: RHEL-109197

Fri, 06 Jun 2025 GMT - Jan Grulich &amp;lt;jgrulich@redhat.com&amp;gt; - 6.9.1-2
- Rebuild (broken buildroot)
  Resolves: RHEL-78530

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>image-builder-52.1-1.el10_2.2.rocky.0.1.riscv64</title>
      <pubDate>Wed, 09 Sep 2026 11:17:04 AM GMT</pubDate>
      <guid isPermaLink="false">0d361396e1c10740eaccfb10b6c9bb805e511a83d03e26614c53c09c8bd0debc</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/i/image-builder-52.1-1.el10_2.2.rocky.0.1.riscv64.rpm</link>
      <description><p><strong>image-builder</strong> - An image building executable using osbuild&lt;br /&gt;</p>

<p>&lt;br /&gt;
A local binary for building customized OS artifacts such as VM images and&lt;br /&gt;
OSTree commits. Uses osbuild under the hood.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 09 Sep 2026 GMT - Release Engineering &amp;lt;releng@rockylinux.org&amp;gt; - 52.1-1.2.rocky.0.1
- Disable riscv64 tests

Mon, 31 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 52.1-1.2
- Rebuild for updated golang

Wed, 08 Jul 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 52.1-1.1
- Rebuild for updated golang
- Resolves: RHEL-175286, RHEL-187127, RHEL-177125

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>rv-6.12.0-211.53.1.el10_2.riscv64</title>
      <pubDate>Tue, 08 Sep 2026 09:26:07 PM GMT</pubDate>
      <guid isPermaLink="false">b4c89f9c71f20cd523a37f4a126b13267fa2610fafd03cc4380b81a5e8b1b371</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/r/rv-6.12.0-211.53.1.el10_2.riscv64.rpm</link>
      <description><p><strong>rv</strong> - RV: Runtime Verification&lt;br /&gt;</p>

<p>Runtime Verification (RV) is a lightweight (yet rigorous) method that&lt;br /&gt;
complements classical exhaustive verification techniques (such as model&lt;br /&gt;
checking and theorem proving) with a more practical approach for&lt;br /&gt;
complex systems.&lt;br /&gt;
The rv tool is the interface for a collection of monitors that aim&lt;br /&gt;
analysing the logical and timing behavior of Linux.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Tue, 08 Sep 2026 GMT - Release Engineering &amp;lt;releng@rockylinux.org&amp;gt; - 6.12.0-211.53.1
- Add partial riscv64 support for build root
- Provide basic VisionFive 2 support

Mon, 07 Sep 2026 GMT - CKI KWF Bot &amp;lt;cki-ci-bot+kwf-gitlab-com@redhat.com&amp;gt; [6.12.0-211.53.1.el10_2]
- dm-verity: fix buffer overflow in FEC calculation (Benjamin Marzinski) [RHEL-244969] {CVE-2026-72098}
- nvmet-rdma: handle inline data with a nonzero offset (CKI Backport Bot) [RHEL-244928] {CVE-2026-72129}
- rtla/timerlat_top: Fix on-threshold actions firing on signal (Tomas Glozar) [RHEL-193027]
- rtla/timerlat: Exit top main loop on any non-zero wait_retval (Tomas Glozar) [RHEL-193027]
- wifi: mac80211: defer link RX stats percpu free to RCU (Jose Ignacio Tornos Martinez) [RHEL-237706] {CVE-2026-68409}
- wifi: mt76: mt7925: drop TXRX_NOTIFY on non-mmio buses (Jose Ignacio Tornos Martinez) [RHEL-237681] {CVE-2026-68193}
- wifi: mt76: mt7925: fix crash in reset link replay (Jose Ignacio Tornos Martinez) [RHEL-237527] {CVE-2026-68307}
- wifi: iwlwifi: mld: validate sta_mask before ffs() in BA session handlers (Jose Ignacio Tornos Martinez) [RHEL-232015] {CVE-2026-64255}
- wifi: mac80211: capture fast-RX rate before mesh reuses skb-&amp;gt;cb (Jose Ignacio Tornos Martinez) [RHEL-231685] {CVE-2026-64117}
- wifi: mac80211: fix missing RX bitrate update for mesh forwarding path (Jose Ignacio Tornos Martinez) [RHEL-231685] {CVE-2026-64117}
- wifi: iwlwifi: mld: fix TSO segmentation explosion when AMSDU is disabled (Jose Ignacio Tornos Martinez) [RHEL-230977] {CVE-2026-64037}
- wifi: nl80211: reject oversized EMA RNR lists (Jose Ignacio Tornos Martinez) [RHEL-230604] {CVE-2026-53182}
- net: qrtr: fix refcount saturation and potential UAF in qrtr_port_remove (Jose Ignacio Tornos Martinez) [RHEL-229725] {CVE-2026-52947}
- wifi: mac80211: fix multi-link element inheritance (Jose Ignacio Tornos Martinez) [RHEL-227617] {CVE-2026-64515}
- wifi: mac80211: fix MLE defragmentation (Jose Ignacio Tornos Martinez) [RHEL-227617] {CVE-2026-64515}
- Bluetooth: fix locking in hci_conn_request_evt() with HCI_PROTO_DEFER (CKI Backport Bot) [RHEL-232673] {CVE-2026-53072}
- accel/qaic: Add overflow check to remap_pfn_range during mmap (CKI Backport Bot) [RHEL-232178] {CVE-2026-64051}
- Bluetooth: HIDP: fix missing length checks in hidp_input_report() (CKI Backport Bot) [RHEL-231067] {CVE-2026-63947}
- Bluetooth: virtio_bt: validate rx pkt_type header length (CKI Backport Bot) [RHEL-230949] {CVE-2026-46123}
- Bluetooth: virtio_bt: clamp rx length before skb_put (CKI Backport Bot) [RHEL-230949] {CVE-2026-46123}
- Bluetooth: hci_sync: reject oversized Broadcast Announcement prepend (CKI Backport Bot) [RHEL-230076] {CVE-2026-53209}
- Bluetooth: hci_sync: fix UAF in hci_le_create_cis_sync (CKI Backport Bot) [RHEL-230013] {CVE-2026-63944}
- Bluetooth: L2CAP: Fix possible crash on l2cap_ecred_conn_rsp (CKI Backport Bot) [RHEL-228750] {CVE-2026-63975}
- Bluetooth: ISO: serialize iso_sock_clear_timer with socket lock (CKI Backport Bot) [RHEL-227911] {CVE-2026-63946}
- Bluetooth: ISO: fix UAF in iso_recv_frame (CKI Backport Bot) [RHEL-227911] {CVE-2026-63946}
- ixgbevf: fix use-after-free in VEPA multicast source pruning (CKI Backport Bot) [RHEL-227889] {CVE-2026-64113}
- Bluetooth: SMP: force responder MITM requirements before building the pairing response (CKI Backport Bot) [RHEL-227532] {CVE-2026-43334}
- vfio/pci: Check BAR resources before exporting a DMABUF (CKI Backport Bot) [RHEL-227133] {CVE-2026-64042}
- security/keys: fix missed RCU read section on lookup (CKI Backport Bot) [RHEL-225690] {CVE-2026-64015}
- Bluetooth: RFCOMM: validate skb length in MCC handlers (CKI Backport Bot) [RHEL-225653] {CVE-2026-53254}
- Bluetooth: RFCOMM: hold listener socket in rfcomm_connect_ind() (CKI Backport Bot) [RHEL-225574] {CVE-2026-53256}
- Bluetooth: serialize accept_q access (CKI Backport Bot) [RHEL-225552] {CVE-2026-52918}
- xfrm: Don't clobber inner headers when already set (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- net: pull headers in qdisc_pkt_len_segs_init() (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- net: qdisc_pkt_len_segs_init() cleanup (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- net_sched: initialize qdisc_skb_cb(skb)-&amp;gt;pkt_segs in qdisc_pkt_len_init() (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- net: init shinfo-&amp;gt;gso_segs from qdisc_pkt_len_init() (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- net_sched: make room for (struct qdisc_skb_cb)-&amp;gt;pkt_segs (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- net: account for encap headers in qdisc pkt len (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- vfio/pci: Clean up DMABUFs before disabling function (CKI Backport Bot) [RHEL-189549] {CVE-2026-53322}
- KVM: nSVM: Always use vmcb01 in VMLOAD/VMSAVE emulation (CKI Backport Bot) [RHEL-189468] {CVE-2026-43133}

Thu, 03 Sep 2026 GMT - CKI KWF Bot &amp;lt;cki-ci-bot+kwf-gitlab-com@redhat.com&amp;gt; [6.12.0-211.52.1.el10_2]
- fuse: fix race between interrupt and resend (Miklos Szeredi) [RHEL-218495] {CVE-2026-64265}
- fuse: clear intr_entry in fuse_resend and fuse_remove_pending_req (Miklos Szeredi) [RHEL-218495] {CVE-2026-64265}
- rhashtable: clear stale iter-&amp;gt;p on table restart (CKI Backport Bot) [RHEL-248457] {CVE-2026-64563}
- udp: Fix wildcard bind conflict check when using hash2 (Felix Maurer) [RHEL-218016] {CVE-2026-31503}
- tcp: optimize inet_use_bhash2_on_bind() (Felix Maurer) [RHEL-218016]
- tcp: call sk_data_ready() after listener migration (Felix Maurer) [RHEL-232246] {CVE-2026-46015}
- flow_dissector: do not dissect PPPoE PFC frames (Felix Maurer) [RHEL-232629] {CVE-2026-46306}
- inet: RAW sockets using IPPROTO_RAW MUST drop incoming ICMP (Felix Maurer) [RHEL-226125] {CVE-2026-46266}
- ipv6: anycast: insert aca into global hash under idev-&amp;gt;lock (Felix Maurer) [RHEL-230763] {CVE-2026-53259}
- ipv6: mcast: Fix use-after-free when processing MLD queries (Felix Maurer) [RHEL-226073] {CVE-2026-53275}
- ipv6: prevent possible UaF in addrconf_permanent_addr() (Felix Maurer) [RHEL-225606] {CVE-2026-43339}
- net: guard timestamp cmsgs to real error queue skbs (Felix Maurer) [RHEL-225864] {CVE-2026-53223}
- net: add pskb_may_pull() to skb_gro_receive_list() (Felix Maurer) [RHEL-229309] {CVE-2026-53235}
- can: bcm: extend bcm_tx_lock usage for data and timer updates (Abhishek Rawal) [RHEL-216700] {CVE-2025-38004}
- can: bcm: add locking when updating filter and timer values (Abhishek Rawal) [RHEL-216700] {CVE-2025-38004}
- can: bcm: fix locking for bcm_op runtime updates (Abhishek Rawal) [RHEL-216700] {CVE-2025-38004}
- can: bcm: add locking for bcm_op runtime updates (Abhishek Rawal) [RHEL-216700] {CVE-2025-38004}
- smb: client: fix double-free in SMB2_close() replay (Paulo Alcantara) [RHEL-240056] {CVE-2026-64597}
- selftests: nft_queue.sh: add a parallel stress test (Florian Westphal) [RHEL-132852]
- selftests: netfilter: nft_queue.sh: avoid flakes on debug kernels (Florian Westphal) [RHEL-132852]
- netfilter: nfnetlink_queue: make hash table per queue (Florian Westphal) [RHEL-132852] {CVE-2026-43084}
- netfilter: nfnetlink_queue: optimize verdict lookup with hash table (Florian Westphal) [RHEL-132852]
- netfilter: nfnetlink_queue: nfqnl_instance GFP_ATOMIC -&amp;gt; GFP_KERNEL_ACCOUNT allocation (Florian Westphal) [RHEL-132852]
- ppp: require CAP_NET_ADMIN in target netns for unattached ioctls (Abhishek Rawal) [RHEL-228009] {CVE-2026-53075}
- vxlan: do not reuse cached ip_hdr() value after skb_tunnel_check_pmtu() (Abhishek Rawal) [RHEL-231711] {CVE-2026-63993}
- ipv6: sit: reload inner IPv6 header after GSO offloads (Abhishek Rawal) [RHEL-225920] {CVE-2026-53228}
- ipv6: add NULL checks for idev in SRv6 paths (Abhishek Rawal) [RHEL-218012] {CVE-2026-23442}
- nvmet-auth: validate reply message payload bounds against transfer length (CKI Backport Bot) [RHEL-234153] {CVE-2026-64319}
- KVM: arm64: Bound used_lrs when flushing the pKVM hyp vCPU (CKI Backport Bot) [RHEL-234204] {CVE-2026-64287}
- KVM: arm64: Take the SRCU lock for page table walks in fault injection and AT emulation (CKI Backport Bot) [RHEL-229347] {CVE-2026-53277}
- ipv4: free net-&amp;gt;ipv4.sysctl_local_reserved_ports after unregister_net_sysctl_table() (CKI Backport Bot) [RHEL-227269] {CVE-2026-64002}
- io_uring/poll: fix signed comparison in io_poll_get_ownership() (CKI Backport Bot) [RHEL-227111] {CVE-2026-52933}

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>rtla-6.12.0-211.53.1.el10_2.riscv64</title>
      <pubDate>Tue, 08 Sep 2026 09:26:07 PM GMT</pubDate>
      <guid isPermaLink="false">dc6a275bafa047c73edd040c3c426aa86140b62c42900e367013e325e89290c7</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/r/rtla-6.12.0-211.53.1.el10_2.riscv64.rpm</link>
      <description><p><strong>rtla</strong> - Real-Time Linux Analysis tools&lt;br /&gt;</p>

<p>The rtla meta-tool includes a set of commands that aims to analyze&lt;br /&gt;
the real-time properties of Linux. Instead of testing Linux as a black box,&lt;br /&gt;
rtla leverages kernel tracing capabilities to provide precise information&lt;br /&gt;
about the properties and root causes of unexpected results.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Tue, 08 Sep 2026 GMT - Release Engineering &amp;lt;releng@rockylinux.org&amp;gt; - 6.12.0-211.53.1
- Add partial riscv64 support for build root
- Provide basic VisionFive 2 support

Mon, 07 Sep 2026 GMT - CKI KWF Bot &amp;lt;cki-ci-bot+kwf-gitlab-com@redhat.com&amp;gt; [6.12.0-211.53.1.el10_2]
- dm-verity: fix buffer overflow in FEC calculation (Benjamin Marzinski) [RHEL-244969] {CVE-2026-72098}
- nvmet-rdma: handle inline data with a nonzero offset (CKI Backport Bot) [RHEL-244928] {CVE-2026-72129}
- rtla/timerlat_top: Fix on-threshold actions firing on signal (Tomas Glozar) [RHEL-193027]
- rtla/timerlat: Exit top main loop on any non-zero wait_retval (Tomas Glozar) [RHEL-193027]
- wifi: mac80211: defer link RX stats percpu free to RCU (Jose Ignacio Tornos Martinez) [RHEL-237706] {CVE-2026-68409}
- wifi: mt76: mt7925: drop TXRX_NOTIFY on non-mmio buses (Jose Ignacio Tornos Martinez) [RHEL-237681] {CVE-2026-68193}
- wifi: mt76: mt7925: fix crash in reset link replay (Jose Ignacio Tornos Martinez) [RHEL-237527] {CVE-2026-68307}
- wifi: iwlwifi: mld: validate sta_mask before ffs() in BA session handlers (Jose Ignacio Tornos Martinez) [RHEL-232015] {CVE-2026-64255}
- wifi: mac80211: capture fast-RX rate before mesh reuses skb-&amp;gt;cb (Jose Ignacio Tornos Martinez) [RHEL-231685] {CVE-2026-64117}
- wifi: mac80211: fix missing RX bitrate update for mesh forwarding path (Jose Ignacio Tornos Martinez) [RHEL-231685] {CVE-2026-64117}
- wifi: iwlwifi: mld: fix TSO segmentation explosion when AMSDU is disabled (Jose Ignacio Tornos Martinez) [RHEL-230977] {CVE-2026-64037}
- wifi: nl80211: reject oversized EMA RNR lists (Jose Ignacio Tornos Martinez) [RHEL-230604] {CVE-2026-53182}
- net: qrtr: fix refcount saturation and potential UAF in qrtr_port_remove (Jose Ignacio Tornos Martinez) [RHEL-229725] {CVE-2026-52947}
- wifi: mac80211: fix multi-link element inheritance (Jose Ignacio Tornos Martinez) [RHEL-227617] {CVE-2026-64515}
- wifi: mac80211: fix MLE defragmentation (Jose Ignacio Tornos Martinez) [RHEL-227617] {CVE-2026-64515}
- Bluetooth: fix locking in hci_conn_request_evt() with HCI_PROTO_DEFER (CKI Backport Bot) [RHEL-232673] {CVE-2026-53072}
- accel/qaic: Add overflow check to remap_pfn_range during mmap (CKI Backport Bot) [RHEL-232178] {CVE-2026-64051}
- Bluetooth: HIDP: fix missing length checks in hidp_input_report() (CKI Backport Bot) [RHEL-231067] {CVE-2026-63947}
- Bluetooth: virtio_bt: validate rx pkt_type header length (CKI Backport Bot) [RHEL-230949] {CVE-2026-46123}
- Bluetooth: virtio_bt: clamp rx length before skb_put (CKI Backport Bot) [RHEL-230949] {CVE-2026-46123}
- Bluetooth: hci_sync: reject oversized Broadcast Announcement prepend (CKI Backport Bot) [RHEL-230076] {CVE-2026-53209}
- Bluetooth: hci_sync: fix UAF in hci_le_create_cis_sync (CKI Backport Bot) [RHEL-230013] {CVE-2026-63944}
- Bluetooth: L2CAP: Fix possible crash on l2cap_ecred_conn_rsp (CKI Backport Bot) [RHEL-228750] {CVE-2026-63975}
- Bluetooth: ISO: serialize iso_sock_clear_timer with socket lock (CKI Backport Bot) [RHEL-227911] {CVE-2026-63946}
- Bluetooth: ISO: fix UAF in iso_recv_frame (CKI Backport Bot) [RHEL-227911] {CVE-2026-63946}
- ixgbevf: fix use-after-free in VEPA multicast source pruning (CKI Backport Bot) [RHEL-227889] {CVE-2026-64113}
- Bluetooth: SMP: force responder MITM requirements before building the pairing response (CKI Backport Bot) [RHEL-227532] {CVE-2026-43334}
- vfio/pci: Check BAR resources before exporting a DMABUF (CKI Backport Bot) [RHEL-227133] {CVE-2026-64042}
- security/keys: fix missed RCU read section on lookup (CKI Backport Bot) [RHEL-225690] {CVE-2026-64015}
- Bluetooth: RFCOMM: validate skb length in MCC handlers (CKI Backport Bot) [RHEL-225653] {CVE-2026-53254}
- Bluetooth: RFCOMM: hold listener socket in rfcomm_connect_ind() (CKI Backport Bot) [RHEL-225574] {CVE-2026-53256}
- Bluetooth: serialize accept_q access (CKI Backport Bot) [RHEL-225552] {CVE-2026-52918}
- xfrm: Don't clobber inner headers when already set (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- net: pull headers in qdisc_pkt_len_segs_init() (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- net: qdisc_pkt_len_segs_init() cleanup (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- net_sched: initialize qdisc_skb_cb(skb)-&amp;gt;pkt_segs in qdisc_pkt_len_init() (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- net: init shinfo-&amp;gt;gso_segs from qdisc_pkt_len_init() (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- net_sched: make room for (struct qdisc_skb_cb)-&amp;gt;pkt_segs (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- net: account for encap headers in qdisc pkt len (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- vfio/pci: Clean up DMABUFs before disabling function (CKI Backport Bot) [RHEL-189549] {CVE-2026-53322}
- KVM: nSVM: Always use vmcb01 in VMLOAD/VMSAVE emulation (CKI Backport Bot) [RHEL-189468] {CVE-2026-43133}

Thu, 03 Sep 2026 GMT - CKI KWF Bot &amp;lt;cki-ci-bot+kwf-gitlab-com@redhat.com&amp;gt; [6.12.0-211.52.1.el10_2]
- fuse: fix race between interrupt and resend (Miklos Szeredi) [RHEL-218495] {CVE-2026-64265}
- fuse: clear intr_entry in fuse_resend and fuse_remove_pending_req (Miklos Szeredi) [RHEL-218495] {CVE-2026-64265}
- rhashtable: clear stale iter-&amp;gt;p on table restart (CKI Backport Bot) [RHEL-248457] {CVE-2026-64563}
- udp: Fix wildcard bind conflict check when using hash2 (Felix Maurer) [RHEL-218016] {CVE-2026-31503}
- tcp: optimize inet_use_bhash2_on_bind() (Felix Maurer) [RHEL-218016]
- tcp: call sk_data_ready() after listener migration (Felix Maurer) [RHEL-232246] {CVE-2026-46015}
- flow_dissector: do not dissect PPPoE PFC frames (Felix Maurer) [RHEL-232629] {CVE-2026-46306}
- inet: RAW sockets using IPPROTO_RAW MUST drop incoming ICMP (Felix Maurer) [RHEL-226125] {CVE-2026-46266}
- ipv6: anycast: insert aca into global hash under idev-&amp;gt;lock (Felix Maurer) [RHEL-230763] {CVE-2026-53259}
- ipv6: mcast: Fix use-after-free when processing MLD queries (Felix Maurer) [RHEL-226073] {CVE-2026-53275}
- ipv6: prevent possible UaF in addrconf_permanent_addr() (Felix Maurer) [RHEL-225606] {CVE-2026-43339}
- net: guard timestamp cmsgs to real error queue skbs (Felix Maurer) [RHEL-225864] {CVE-2026-53223}
- net: add pskb_may_pull() to skb_gro_receive_list() (Felix Maurer) [RHEL-229309] {CVE-2026-53235}
- can: bcm: extend bcm_tx_lock usage for data and timer updates (Abhishek Rawal) [RHEL-216700] {CVE-2025-38004}
- can: bcm: add locking when updating filter and timer values (Abhishek Rawal) [RHEL-216700] {CVE-2025-38004}
- can: bcm: fix locking for bcm_op runtime updates (Abhishek Rawal) [RHEL-216700] {CVE-2025-38004}
- can: bcm: add locking for bcm_op runtime updates (Abhishek Rawal) [RHEL-216700] {CVE-2025-38004}
- smb: client: fix double-free in SMB2_close() replay (Paulo Alcantara) [RHEL-240056] {CVE-2026-64597}
- selftests: nft_queue.sh: add a parallel stress test (Florian Westphal) [RHEL-132852]
- selftests: netfilter: nft_queue.sh: avoid flakes on debug kernels (Florian Westphal) [RHEL-132852]
- netfilter: nfnetlink_queue: make hash table per queue (Florian Westphal) [RHEL-132852] {CVE-2026-43084}
- netfilter: nfnetlink_queue: optimize verdict lookup with hash table (Florian Westphal) [RHEL-132852]
- netfilter: nfnetlink_queue: nfqnl_instance GFP_ATOMIC -&amp;gt; GFP_KERNEL_ACCOUNT allocation (Florian Westphal) [RHEL-132852]
- ppp: require CAP_NET_ADMIN in target netns for unattached ioctls (Abhishek Rawal) [RHEL-228009] {CVE-2026-53075}
- vxlan: do not reuse cached ip_hdr() value after skb_tunnel_check_pmtu() (Abhishek Rawal) [RHEL-231711] {CVE-2026-63993}
- ipv6: sit: reload inner IPv6 header after GSO offloads (Abhishek Rawal) [RHEL-225920] {CVE-2026-53228}
- ipv6: add NULL checks for idev in SRv6 paths (Abhishek Rawal) [RHEL-218012] {CVE-2026-23442}
- nvmet-auth: validate reply message payload bounds against transfer length (CKI Backport Bot) [RHEL-234153] {CVE-2026-64319}
- KVM: arm64: Bound used_lrs when flushing the pKVM hyp vCPU (CKI Backport Bot) [RHEL-234204] {CVE-2026-64287}
- KVM: arm64: Take the SRCU lock for page table walks in fault injection and AT emulation (CKI Backport Bot) [RHEL-229347] {CVE-2026-53277}
- ipv4: free net-&amp;gt;ipv4.sysctl_local_reserved_ports after unregister_net_sysctl_table() (CKI Backport Bot) [RHEL-227269] {CVE-2026-64002}
- io_uring/poll: fix signed comparison in io_poll_get_ownership() (CKI Backport Bot) [RHEL-227111] {CVE-2026-52933}

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>python3-perf-6.12.0-211.53.1.el10_2.riscv64</title>
      <pubDate>Tue, 08 Sep 2026 09:26:07 PM GMT</pubDate>
      <guid isPermaLink="false">8a264f2db20ebe44637e9551e6c3270398e227988e6df4066949de37afe21880</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/python3-perf-6.12.0-211.53.1.el10_2.riscv64.rpm</link>
      <description><p><strong>python3-perf</strong> - Python bindings for apps which will manipulate perf events&lt;br /&gt;</p>

<p>The python3-perf package contains a module that permits applications&lt;br /&gt;
written in the Python programming language to use the interface&lt;br /&gt;
to manipulate perf events.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Tue, 08 Sep 2026 GMT - Release Engineering &amp;lt;releng@rockylinux.org&amp;gt; - 6.12.0-211.53.1
- Add partial riscv64 support for build root
- Provide basic VisionFive 2 support

Mon, 07 Sep 2026 GMT - CKI KWF Bot &amp;lt;cki-ci-bot+kwf-gitlab-com@redhat.com&amp;gt; [6.12.0-211.53.1.el10_2]
- dm-verity: fix buffer overflow in FEC calculation (Benjamin Marzinski) [RHEL-244969] {CVE-2026-72098}
- nvmet-rdma: handle inline data with a nonzero offset (CKI Backport Bot) [RHEL-244928] {CVE-2026-72129}
- rtla/timerlat_top: Fix on-threshold actions firing on signal (Tomas Glozar) [RHEL-193027]
- rtla/timerlat: Exit top main loop on any non-zero wait_retval (Tomas Glozar) [RHEL-193027]
- wifi: mac80211: defer link RX stats percpu free to RCU (Jose Ignacio Tornos Martinez) [RHEL-237706] {CVE-2026-68409}
- wifi: mt76: mt7925: drop TXRX_NOTIFY on non-mmio buses (Jose Ignacio Tornos Martinez) [RHEL-237681] {CVE-2026-68193}
- wifi: mt76: mt7925: fix crash in reset link replay (Jose Ignacio Tornos Martinez) [RHEL-237527] {CVE-2026-68307}
- wifi: iwlwifi: mld: validate sta_mask before ffs() in BA session handlers (Jose Ignacio Tornos Martinez) [RHEL-232015] {CVE-2026-64255}
- wifi: mac80211: capture fast-RX rate before mesh reuses skb-&amp;gt;cb (Jose Ignacio Tornos Martinez) [RHEL-231685] {CVE-2026-64117}
- wifi: mac80211: fix missing RX bitrate update for mesh forwarding path (Jose Ignacio Tornos Martinez) [RHEL-231685] {CVE-2026-64117}
- wifi: iwlwifi: mld: fix TSO segmentation explosion when AMSDU is disabled (Jose Ignacio Tornos Martinez) [RHEL-230977] {CVE-2026-64037}
- wifi: nl80211: reject oversized EMA RNR lists (Jose Ignacio Tornos Martinez) [RHEL-230604] {CVE-2026-53182}
- net: qrtr: fix refcount saturation and potential UAF in qrtr_port_remove (Jose Ignacio Tornos Martinez) [RHEL-229725] {CVE-2026-52947}
- wifi: mac80211: fix multi-link element inheritance (Jose Ignacio Tornos Martinez) [RHEL-227617] {CVE-2026-64515}
- wifi: mac80211: fix MLE defragmentation (Jose Ignacio Tornos Martinez) [RHEL-227617] {CVE-2026-64515}
- Bluetooth: fix locking in hci_conn_request_evt() with HCI_PROTO_DEFER (CKI Backport Bot) [RHEL-232673] {CVE-2026-53072}
- accel/qaic: Add overflow check to remap_pfn_range during mmap (CKI Backport Bot) [RHEL-232178] {CVE-2026-64051}
- Bluetooth: HIDP: fix missing length checks in hidp_input_report() (CKI Backport Bot) [RHEL-231067] {CVE-2026-63947}
- Bluetooth: virtio_bt: validate rx pkt_type header length (CKI Backport Bot) [RHEL-230949] {CVE-2026-46123}
- Bluetooth: virtio_bt: clamp rx length before skb_put (CKI Backport Bot) [RHEL-230949] {CVE-2026-46123}
- Bluetooth: hci_sync: reject oversized Broadcast Announcement prepend (CKI Backport Bot) [RHEL-230076] {CVE-2026-53209}
- Bluetooth: hci_sync: fix UAF in hci_le_create_cis_sync (CKI Backport Bot) [RHEL-230013] {CVE-2026-63944}
- Bluetooth: L2CAP: Fix possible crash on l2cap_ecred_conn_rsp (CKI Backport Bot) [RHEL-228750] {CVE-2026-63975}
- Bluetooth: ISO: serialize iso_sock_clear_timer with socket lock (CKI Backport Bot) [RHEL-227911] {CVE-2026-63946}
- Bluetooth: ISO: fix UAF in iso_recv_frame (CKI Backport Bot) [RHEL-227911] {CVE-2026-63946}
- ixgbevf: fix use-after-free in VEPA multicast source pruning (CKI Backport Bot) [RHEL-227889] {CVE-2026-64113}
- Bluetooth: SMP: force responder MITM requirements before building the pairing response (CKI Backport Bot) [RHEL-227532] {CVE-2026-43334}
- vfio/pci: Check BAR resources before exporting a DMABUF (CKI Backport Bot) [RHEL-227133] {CVE-2026-64042}
- security/keys: fix missed RCU read section on lookup (CKI Backport Bot) [RHEL-225690] {CVE-2026-64015}
- Bluetooth: RFCOMM: validate skb length in MCC handlers (CKI Backport Bot) [RHEL-225653] {CVE-2026-53254}
- Bluetooth: RFCOMM: hold listener socket in rfcomm_connect_ind() (CKI Backport Bot) [RHEL-225574] {CVE-2026-53256}
- Bluetooth: serialize accept_q access (CKI Backport Bot) [RHEL-225552] {CVE-2026-52918}
- xfrm: Don't clobber inner headers when already set (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- net: pull headers in qdisc_pkt_len_segs_init() (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- net: qdisc_pkt_len_segs_init() cleanup (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- net_sched: initialize qdisc_skb_cb(skb)-&amp;gt;pkt_segs in qdisc_pkt_len_init() (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- net: init shinfo-&amp;gt;gso_segs from qdisc_pkt_len_init() (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- net_sched: make room for (struct qdisc_skb_cb)-&amp;gt;pkt_segs (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- net: account for encap headers in qdisc pkt len (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- vfio/pci: Clean up DMABUFs before disabling function (CKI Backport Bot) [RHEL-189549] {CVE-2026-53322}
- KVM: nSVM: Always use vmcb01 in VMLOAD/VMSAVE emulation (CKI Backport Bot) [RHEL-189468] {CVE-2026-43133}

Thu, 03 Sep 2026 GMT - CKI KWF Bot &amp;lt;cki-ci-bot+kwf-gitlab-com@redhat.com&amp;gt; [6.12.0-211.52.1.el10_2]
- fuse: fix race between interrupt and resend (Miklos Szeredi) [RHEL-218495] {CVE-2026-64265}
- fuse: clear intr_entry in fuse_resend and fuse_remove_pending_req (Miklos Szeredi) [RHEL-218495] {CVE-2026-64265}
- rhashtable: clear stale iter-&amp;gt;p on table restart (CKI Backport Bot) [RHEL-248457] {CVE-2026-64563}
- udp: Fix wildcard bind conflict check when using hash2 (Felix Maurer) [RHEL-218016] {CVE-2026-31503}
- tcp: optimize inet_use_bhash2_on_bind() (Felix Maurer) [RHEL-218016]
- tcp: call sk_data_ready() after listener migration (Felix Maurer) [RHEL-232246] {CVE-2026-46015}
- flow_dissector: do not dissect PPPoE PFC frames (Felix Maurer) [RHEL-232629] {CVE-2026-46306}
- inet: RAW sockets using IPPROTO_RAW MUST drop incoming ICMP (Felix Maurer) [RHEL-226125] {CVE-2026-46266}
- ipv6: anycast: insert aca into global hash under idev-&amp;gt;lock (Felix Maurer) [RHEL-230763] {CVE-2026-53259}
- ipv6: mcast: Fix use-after-free when processing MLD queries (Felix Maurer) [RHEL-226073] {CVE-2026-53275}
- ipv6: prevent possible UaF in addrconf_permanent_addr() (Felix Maurer) [RHEL-225606] {CVE-2026-43339}
- net: guard timestamp cmsgs to real error queue skbs (Felix Maurer) [RHEL-225864] {CVE-2026-53223}
- net: add pskb_may_pull() to skb_gro_receive_list() (Felix Maurer) [RHEL-229309] {CVE-2026-53235}
- can: bcm: extend bcm_tx_lock usage for data and timer updates (Abhishek Rawal) [RHEL-216700] {CVE-2025-38004}
- can: bcm: add locking when updating filter and timer values (Abhishek Rawal) [RHEL-216700] {CVE-2025-38004}
- can: bcm: fix locking for bcm_op runtime updates (Abhishek Rawal) [RHEL-216700] {CVE-2025-38004}
- can: bcm: add locking for bcm_op runtime updates (Abhishek Rawal) [RHEL-216700] {CVE-2025-38004}
- smb: client: fix double-free in SMB2_close() replay (Paulo Alcantara) [RHEL-240056] {CVE-2026-64597}
- selftests: nft_queue.sh: add a parallel stress test (Florian Westphal) [RHEL-132852]
- selftests: netfilter: nft_queue.sh: avoid flakes on debug kernels (Florian Westphal) [RHEL-132852]
- netfilter: nfnetlink_queue: make hash table per queue (Florian Westphal) [RHEL-132852] {CVE-2026-43084}
- netfilter: nfnetlink_queue: optimize verdict lookup with hash table (Florian Westphal) [RHEL-132852]
- netfilter: nfnetlink_queue: nfqnl_instance GFP_ATOMIC -&amp;gt; GFP_KERNEL_ACCOUNT allocation (Florian Westphal) [RHEL-132852]
- ppp: require CAP_NET_ADMIN in target netns for unattached ioctls (Abhishek Rawal) [RHEL-228009] {CVE-2026-53075}
- vxlan: do not reuse cached ip_hdr() value after skb_tunnel_check_pmtu() (Abhishek Rawal) [RHEL-231711] {CVE-2026-63993}
- ipv6: sit: reload inner IPv6 header after GSO offloads (Abhishek Rawal) [RHEL-225920] {CVE-2026-53228}
- ipv6: add NULL checks for idev in SRv6 paths (Abhishek Rawal) [RHEL-218012] {CVE-2026-23442}
- nvmet-auth: validate reply message payload bounds against transfer length (CKI Backport Bot) [RHEL-234153] {CVE-2026-64319}
- KVM: arm64: Bound used_lrs when flushing the pKVM hyp vCPU (CKI Backport Bot) [RHEL-234204] {CVE-2026-64287}
- KVM: arm64: Take the SRCU lock for page table walks in fault injection and AT emulation (CKI Backport Bot) [RHEL-229347] {CVE-2026-53277}
- ipv4: free net-&amp;gt;ipv4.sysctl_local_reserved_ports after unregister_net_sysctl_table() (CKI Backport Bot) [RHEL-227269] {CVE-2026-64002}
- io_uring/poll: fix signed comparison in io_poll_get_ownership() (CKI Backport Bot) [RHEL-227111] {CVE-2026-52933}

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>kernel-headers-6.12.0-211.53.1.el10_2.riscv64</title>
      <pubDate>Tue, 08 Sep 2026 09:26:07 PM GMT</pubDate>
      <guid isPermaLink="false">b68346d1c509d5efe41a3e89167e426ce9e4b1575414f70c1455560a5ca7a3bf</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/k/kernel-headers-6.12.0-211.53.1.el10_2.riscv64.rpm</link>
      <description><p><strong>kernel-headers</strong> - Header files for the Linux kernel for use by glibc&lt;br /&gt;</p>

<p>Kernel-headers includes the C header files that specify the interface&lt;br /&gt;
between the Linux kernel and userspace libraries and programs.  The&lt;br /&gt;
header files define structures and constants that are needed for&lt;br /&gt;
building most standard programs and are also needed for rebuilding the&lt;br /&gt;
glibc package.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Tue, 08 Sep 2026 GMT - Release Engineering &amp;lt;releng@rockylinux.org&amp;gt; - 6.12.0-211.53.1
- Add partial riscv64 support for build root
- Provide basic VisionFive 2 support

Mon, 07 Sep 2026 GMT - CKI KWF Bot &amp;lt;cki-ci-bot+kwf-gitlab-com@redhat.com&amp;gt; [6.12.0-211.53.1.el10_2]
- dm-verity: fix buffer overflow in FEC calculation (Benjamin Marzinski) [RHEL-244969] {CVE-2026-72098}
- nvmet-rdma: handle inline data with a nonzero offset (CKI Backport Bot) [RHEL-244928] {CVE-2026-72129}
- rtla/timerlat_top: Fix on-threshold actions firing on signal (Tomas Glozar) [RHEL-193027]
- rtla/timerlat: Exit top main loop on any non-zero wait_retval (Tomas Glozar) [RHEL-193027]
- wifi: mac80211: defer link RX stats percpu free to RCU (Jose Ignacio Tornos Martinez) [RHEL-237706] {CVE-2026-68409}
- wifi: mt76: mt7925: drop TXRX_NOTIFY on non-mmio buses (Jose Ignacio Tornos Martinez) [RHEL-237681] {CVE-2026-68193}
- wifi: mt76: mt7925: fix crash in reset link replay (Jose Ignacio Tornos Martinez) [RHEL-237527] {CVE-2026-68307}
- wifi: iwlwifi: mld: validate sta_mask before ffs() in BA session handlers (Jose Ignacio Tornos Martinez) [RHEL-232015] {CVE-2026-64255}
- wifi: mac80211: capture fast-RX rate before mesh reuses skb-&amp;gt;cb (Jose Ignacio Tornos Martinez) [RHEL-231685] {CVE-2026-64117}
- wifi: mac80211: fix missing RX bitrate update for mesh forwarding path (Jose Ignacio Tornos Martinez) [RHEL-231685] {CVE-2026-64117}
- wifi: iwlwifi: mld: fix TSO segmentation explosion when AMSDU is disabled (Jose Ignacio Tornos Martinez) [RHEL-230977] {CVE-2026-64037}
- wifi: nl80211: reject oversized EMA RNR lists (Jose Ignacio Tornos Martinez) [RHEL-230604] {CVE-2026-53182}
- net: qrtr: fix refcount saturation and potential UAF in qrtr_port_remove (Jose Ignacio Tornos Martinez) [RHEL-229725] {CVE-2026-52947}
- wifi: mac80211: fix multi-link element inheritance (Jose Ignacio Tornos Martinez) [RHEL-227617] {CVE-2026-64515}
- wifi: mac80211: fix MLE defragmentation (Jose Ignacio Tornos Martinez) [RHEL-227617] {CVE-2026-64515}
- Bluetooth: fix locking in hci_conn_request_evt() with HCI_PROTO_DEFER (CKI Backport Bot) [RHEL-232673] {CVE-2026-53072}
- accel/qaic: Add overflow check to remap_pfn_range during mmap (CKI Backport Bot) [RHEL-232178] {CVE-2026-64051}
- Bluetooth: HIDP: fix missing length checks in hidp_input_report() (CKI Backport Bot) [RHEL-231067] {CVE-2026-63947}
- Bluetooth: virtio_bt: validate rx pkt_type header length (CKI Backport Bot) [RHEL-230949] {CVE-2026-46123}
- Bluetooth: virtio_bt: clamp rx length before skb_put (CKI Backport Bot) [RHEL-230949] {CVE-2026-46123}
- Bluetooth: hci_sync: reject oversized Broadcast Announcement prepend (CKI Backport Bot) [RHEL-230076] {CVE-2026-53209}
- Bluetooth: hci_sync: fix UAF in hci_le_create_cis_sync (CKI Backport Bot) [RHEL-230013] {CVE-2026-63944}
- Bluetooth: L2CAP: Fix possible crash on l2cap_ecred_conn_rsp (CKI Backport Bot) [RHEL-228750] {CVE-2026-63975}
- Bluetooth: ISO: serialize iso_sock_clear_timer with socket lock (CKI Backport Bot) [RHEL-227911] {CVE-2026-63946}
- Bluetooth: ISO: fix UAF in iso_recv_frame (CKI Backport Bot) [RHEL-227911] {CVE-2026-63946}
- ixgbevf: fix use-after-free in VEPA multicast source pruning (CKI Backport Bot) [RHEL-227889] {CVE-2026-64113}
- Bluetooth: SMP: force responder MITM requirements before building the pairing response (CKI Backport Bot) [RHEL-227532] {CVE-2026-43334}
- vfio/pci: Check BAR resources before exporting a DMABUF (CKI Backport Bot) [RHEL-227133] {CVE-2026-64042}
- security/keys: fix missed RCU read section on lookup (CKI Backport Bot) [RHEL-225690] {CVE-2026-64015}
- Bluetooth: RFCOMM: validate skb length in MCC handlers (CKI Backport Bot) [RHEL-225653] {CVE-2026-53254}
- Bluetooth: RFCOMM: hold listener socket in rfcomm_connect_ind() (CKI Backport Bot) [RHEL-225574] {CVE-2026-53256}
- Bluetooth: serialize accept_q access (CKI Backport Bot) [RHEL-225552] {CVE-2026-52918}
- xfrm: Don't clobber inner headers when already set (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- net: pull headers in qdisc_pkt_len_segs_init() (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- net: qdisc_pkt_len_segs_init() cleanup (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- net_sched: initialize qdisc_skb_cb(skb)-&amp;gt;pkt_segs in qdisc_pkt_len_init() (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- net: init shinfo-&amp;gt;gso_segs from qdisc_pkt_len_init() (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- net_sched: make room for (struct qdisc_skb_cb)-&amp;gt;pkt_segs (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- net: account for encap headers in qdisc pkt len (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- vfio/pci: Clean up DMABUFs before disabling function (CKI Backport Bot) [RHEL-189549] {CVE-2026-53322}
- KVM: nSVM: Always use vmcb01 in VMLOAD/VMSAVE emulation (CKI Backport Bot) [RHEL-189468] {CVE-2026-43133}

Thu, 03 Sep 2026 GMT - CKI KWF Bot &amp;lt;cki-ci-bot+kwf-gitlab-com@redhat.com&amp;gt; [6.12.0-211.52.1.el10_2]
- fuse: fix race between interrupt and resend (Miklos Szeredi) [RHEL-218495] {CVE-2026-64265}
- fuse: clear intr_entry in fuse_resend and fuse_remove_pending_req (Miklos Szeredi) [RHEL-218495] {CVE-2026-64265}
- rhashtable: clear stale iter-&amp;gt;p on table restart (CKI Backport Bot) [RHEL-248457] {CVE-2026-64563}
- udp: Fix wildcard bind conflict check when using hash2 (Felix Maurer) [RHEL-218016] {CVE-2026-31503}
- tcp: optimize inet_use_bhash2_on_bind() (Felix Maurer) [RHEL-218016]
- tcp: call sk_data_ready() after listener migration (Felix Maurer) [RHEL-232246] {CVE-2026-46015}
- flow_dissector: do not dissect PPPoE PFC frames (Felix Maurer) [RHEL-232629] {CVE-2026-46306}
- inet: RAW sockets using IPPROTO_RAW MUST drop incoming ICMP (Felix Maurer) [RHEL-226125] {CVE-2026-46266}
- ipv6: anycast: insert aca into global hash under idev-&amp;gt;lock (Felix Maurer) [RHEL-230763] {CVE-2026-53259}
- ipv6: mcast: Fix use-after-free when processing MLD queries (Felix Maurer) [RHEL-226073] {CVE-2026-53275}
- ipv6: prevent possible UaF in addrconf_permanent_addr() (Felix Maurer) [RHEL-225606] {CVE-2026-43339}
- net: guard timestamp cmsgs to real error queue skbs (Felix Maurer) [RHEL-225864] {CVE-2026-53223}
- net: add pskb_may_pull() to skb_gro_receive_list() (Felix Maurer) [RHEL-229309] {CVE-2026-53235}
- can: bcm: extend bcm_tx_lock usage for data and timer updates (Abhishek Rawal) [RHEL-216700] {CVE-2025-38004}
- can: bcm: add locking when updating filter and timer values (Abhishek Rawal) [RHEL-216700] {CVE-2025-38004}
- can: bcm: fix locking for bcm_op runtime updates (Abhishek Rawal) [RHEL-216700] {CVE-2025-38004}
- can: bcm: add locking for bcm_op runtime updates (Abhishek Rawal) [RHEL-216700] {CVE-2025-38004}
- smb: client: fix double-free in SMB2_close() replay (Paulo Alcantara) [RHEL-240056] {CVE-2026-64597}
- selftests: nft_queue.sh: add a parallel stress test (Florian Westphal) [RHEL-132852]
- selftests: netfilter: nft_queue.sh: avoid flakes on debug kernels (Florian Westphal) [RHEL-132852]
- netfilter: nfnetlink_queue: make hash table per queue (Florian Westphal) [RHEL-132852] {CVE-2026-43084}
- netfilter: nfnetlink_queue: optimize verdict lookup with hash table (Florian Westphal) [RHEL-132852]
- netfilter: nfnetlink_queue: nfqnl_instance GFP_ATOMIC -&amp;gt; GFP_KERNEL_ACCOUNT allocation (Florian Westphal) [RHEL-132852]
- ppp: require CAP_NET_ADMIN in target netns for unattached ioctls (Abhishek Rawal) [RHEL-228009] {CVE-2026-53075}
- vxlan: do not reuse cached ip_hdr() value after skb_tunnel_check_pmtu() (Abhishek Rawal) [RHEL-231711] {CVE-2026-63993}
- ipv6: sit: reload inner IPv6 header after GSO offloads (Abhishek Rawal) [RHEL-225920] {CVE-2026-53228}
- ipv6: add NULL checks for idev in SRv6 paths (Abhishek Rawal) [RHEL-218012] {CVE-2026-23442}
- nvmet-auth: validate reply message payload bounds against transfer length (CKI Backport Bot) [RHEL-234153] {CVE-2026-64319}
- KVM: arm64: Bound used_lrs when flushing the pKVM hyp vCPU (CKI Backport Bot) [RHEL-234204] {CVE-2026-64287}
- KVM: arm64: Take the SRCU lock for page table walks in fault injection and AT emulation (CKI Backport Bot) [RHEL-229347] {CVE-2026-53277}
- ipv4: free net-&amp;gt;ipv4.sysctl_local_reserved_ports after unregister_net_sysctl_table() (CKI Backport Bot) [RHEL-227269] {CVE-2026-64002}
- io_uring/poll: fix signed comparison in io_poll_get_ownership() (CKI Backport Bot) [RHEL-227111] {CVE-2026-52933}

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>kernel-devel-matched-6.12.0-211.53.1.el10_2.riscv64</title>
      <pubDate>Tue, 08 Sep 2026 09:26:07 PM GMT</pubDate>
      <guid isPermaLink="false">327bcaa101ae10dbefcd952b8c8c259795577d45543ca236b88762b1ab28b4eb</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/k/kernel-devel-matched-6.12.0-211.53.1.el10_2.riscv64.rpm</link>
      <description><p><strong>kernel-devel-matched</strong> - Meta package to install matching core and devel packages for a given kernel&lt;br /&gt;</p>

<p>This meta package is used to install matching core and devel packages for a given kernel.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Tue, 08 Sep 2026 GMT - Release Engineering &amp;lt;releng@rockylinux.org&amp;gt; - 6.12.0-211.53.1
- Add partial riscv64 support for build root
- Provide basic VisionFive 2 support

Mon, 07 Sep 2026 GMT - CKI KWF Bot &amp;lt;cki-ci-bot+kwf-gitlab-com@redhat.com&amp;gt; [6.12.0-211.53.1.el10_2]
- dm-verity: fix buffer overflow in FEC calculation (Benjamin Marzinski) [RHEL-244969] {CVE-2026-72098}
- nvmet-rdma: handle inline data with a nonzero offset (CKI Backport Bot) [RHEL-244928] {CVE-2026-72129}
- rtla/timerlat_top: Fix on-threshold actions firing on signal (Tomas Glozar) [RHEL-193027]
- rtla/timerlat: Exit top main loop on any non-zero wait_retval (Tomas Glozar) [RHEL-193027]
- wifi: mac80211: defer link RX stats percpu free to RCU (Jose Ignacio Tornos Martinez) [RHEL-237706] {CVE-2026-68409}
- wifi: mt76: mt7925: drop TXRX_NOTIFY on non-mmio buses (Jose Ignacio Tornos Martinez) [RHEL-237681] {CVE-2026-68193}
- wifi: mt76: mt7925: fix crash in reset link replay (Jose Ignacio Tornos Martinez) [RHEL-237527] {CVE-2026-68307}
- wifi: iwlwifi: mld: validate sta_mask before ffs() in BA session handlers (Jose Ignacio Tornos Martinez) [RHEL-232015] {CVE-2026-64255}
- wifi: mac80211: capture fast-RX rate before mesh reuses skb-&amp;gt;cb (Jose Ignacio Tornos Martinez) [RHEL-231685] {CVE-2026-64117}
- wifi: mac80211: fix missing RX bitrate update for mesh forwarding path (Jose Ignacio Tornos Martinez) [RHEL-231685] {CVE-2026-64117}
- wifi: iwlwifi: mld: fix TSO segmentation explosion when AMSDU is disabled (Jose Ignacio Tornos Martinez) [RHEL-230977] {CVE-2026-64037}
- wifi: nl80211: reject oversized EMA RNR lists (Jose Ignacio Tornos Martinez) [RHEL-230604] {CVE-2026-53182}
- net: qrtr: fix refcount saturation and potential UAF in qrtr_port_remove (Jose Ignacio Tornos Martinez) [RHEL-229725] {CVE-2026-52947}
- wifi: mac80211: fix multi-link element inheritance (Jose Ignacio Tornos Martinez) [RHEL-227617] {CVE-2026-64515}
- wifi: mac80211: fix MLE defragmentation (Jose Ignacio Tornos Martinez) [RHEL-227617] {CVE-2026-64515}
- Bluetooth: fix locking in hci_conn_request_evt() with HCI_PROTO_DEFER (CKI Backport Bot) [RHEL-232673] {CVE-2026-53072}
- accel/qaic: Add overflow check to remap_pfn_range during mmap (CKI Backport Bot) [RHEL-232178] {CVE-2026-64051}
- Bluetooth: HIDP: fix missing length checks in hidp_input_report() (CKI Backport Bot) [RHEL-231067] {CVE-2026-63947}
- Bluetooth: virtio_bt: validate rx pkt_type header length (CKI Backport Bot) [RHEL-230949] {CVE-2026-46123}
- Bluetooth: virtio_bt: clamp rx length before skb_put (CKI Backport Bot) [RHEL-230949] {CVE-2026-46123}
- Bluetooth: hci_sync: reject oversized Broadcast Announcement prepend (CKI Backport Bot) [RHEL-230076] {CVE-2026-53209}
- Bluetooth: hci_sync: fix UAF in hci_le_create_cis_sync (CKI Backport Bot) [RHEL-230013] {CVE-2026-63944}
- Bluetooth: L2CAP: Fix possible crash on l2cap_ecred_conn_rsp (CKI Backport Bot) [RHEL-228750] {CVE-2026-63975}
- Bluetooth: ISO: serialize iso_sock_clear_timer with socket lock (CKI Backport Bot) [RHEL-227911] {CVE-2026-63946}
- Bluetooth: ISO: fix UAF in iso_recv_frame (CKI Backport Bot) [RHEL-227911] {CVE-2026-63946}
- ixgbevf: fix use-after-free in VEPA multicast source pruning (CKI Backport Bot) [RHEL-227889] {CVE-2026-64113}
- Bluetooth: SMP: force responder MITM requirements before building the pairing response (CKI Backport Bot) [RHEL-227532] {CVE-2026-43334}
- vfio/pci: Check BAR resources before exporting a DMABUF (CKI Backport Bot) [RHEL-227133] {CVE-2026-64042}
- security/keys: fix missed RCU read section on lookup (CKI Backport Bot) [RHEL-225690] {CVE-2026-64015}
- Bluetooth: RFCOMM: validate skb length in MCC handlers (CKI Backport Bot) [RHEL-225653] {CVE-2026-53254}
- Bluetooth: RFCOMM: hold listener socket in rfcomm_connect_ind() (CKI Backport Bot) [RHEL-225574] {CVE-2026-53256}
- Bluetooth: serialize accept_q access (CKI Backport Bot) [RHEL-225552] {CVE-2026-52918}
- xfrm: Don't clobber inner headers when already set (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- net: pull headers in qdisc_pkt_len_segs_init() (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- net: qdisc_pkt_len_segs_init() cleanup (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- net_sched: initialize qdisc_skb_cb(skb)-&amp;gt;pkt_segs in qdisc_pkt_len_init() (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- net: init shinfo-&amp;gt;gso_segs from qdisc_pkt_len_init() (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- net_sched: make room for (struct qdisc_skb_cb)-&amp;gt;pkt_segs (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- net: account for encap headers in qdisc pkt len (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- vfio/pci: Clean up DMABUFs before disabling function (CKI Backport Bot) [RHEL-189549] {CVE-2026-53322}
- KVM: nSVM: Always use vmcb01 in VMLOAD/VMSAVE emulation (CKI Backport Bot) [RHEL-189468] {CVE-2026-43133}

Thu, 03 Sep 2026 GMT - CKI KWF Bot &amp;lt;cki-ci-bot+kwf-gitlab-com@redhat.com&amp;gt; [6.12.0-211.52.1.el10_2]
- fuse: fix race between interrupt and resend (Miklos Szeredi) [RHEL-218495] {CVE-2026-64265}
- fuse: clear intr_entry in fuse_resend and fuse_remove_pending_req (Miklos Szeredi) [RHEL-218495] {CVE-2026-64265}
- rhashtable: clear stale iter-&amp;gt;p on table restart (CKI Backport Bot) [RHEL-248457] {CVE-2026-64563}
- udp: Fix wildcard bind conflict check when using hash2 (Felix Maurer) [RHEL-218016] {CVE-2026-31503}
- tcp: optimize inet_use_bhash2_on_bind() (Felix Maurer) [RHEL-218016]
- tcp: call sk_data_ready() after listener migration (Felix Maurer) [RHEL-232246] {CVE-2026-46015}
- flow_dissector: do not dissect PPPoE PFC frames (Felix Maurer) [RHEL-232629] {CVE-2026-46306}
- inet: RAW sockets using IPPROTO_RAW MUST drop incoming ICMP (Felix Maurer) [RHEL-226125] {CVE-2026-46266}
- ipv6: anycast: insert aca into global hash under idev-&amp;gt;lock (Felix Maurer) [RHEL-230763] {CVE-2026-53259}
- ipv6: mcast: Fix use-after-free when processing MLD queries (Felix Maurer) [RHEL-226073] {CVE-2026-53275}
- ipv6: prevent possible UaF in addrconf_permanent_addr() (Felix Maurer) [RHEL-225606] {CVE-2026-43339}
- net: guard timestamp cmsgs to real error queue skbs (Felix Maurer) [RHEL-225864] {CVE-2026-53223}
- net: add pskb_may_pull() to skb_gro_receive_list() (Felix Maurer) [RHEL-229309] {CVE-2026-53235}
- can: bcm: extend bcm_tx_lock usage for data and timer updates (Abhishek Rawal) [RHEL-216700] {CVE-2025-38004}
- can: bcm: add locking when updating filter and timer values (Abhishek Rawal) [RHEL-216700] {CVE-2025-38004}
- can: bcm: fix locking for bcm_op runtime updates (Abhishek Rawal) [RHEL-216700] {CVE-2025-38004}
- can: bcm: add locking for bcm_op runtime updates (Abhishek Rawal) [RHEL-216700] {CVE-2025-38004}
- smb: client: fix double-free in SMB2_close() replay (Paulo Alcantara) [RHEL-240056] {CVE-2026-64597}
- selftests: nft_queue.sh: add a parallel stress test (Florian Westphal) [RHEL-132852]
- selftests: netfilter: nft_queue.sh: avoid flakes on debug kernels (Florian Westphal) [RHEL-132852]
- netfilter: nfnetlink_queue: make hash table per queue (Florian Westphal) [RHEL-132852] {CVE-2026-43084}
- netfilter: nfnetlink_queue: optimize verdict lookup with hash table (Florian Westphal) [RHEL-132852]
- netfilter: nfnetlink_queue: nfqnl_instance GFP_ATOMIC -&amp;gt; GFP_KERNEL_ACCOUNT allocation (Florian Westphal) [RHEL-132852]
- ppp: require CAP_NET_ADMIN in target netns for unattached ioctls (Abhishek Rawal) [RHEL-228009] {CVE-2026-53075}
- vxlan: do not reuse cached ip_hdr() value after skb_tunnel_check_pmtu() (Abhishek Rawal) [RHEL-231711] {CVE-2026-63993}
- ipv6: sit: reload inner IPv6 header after GSO offloads (Abhishek Rawal) [RHEL-225920] {CVE-2026-53228}
- ipv6: add NULL checks for idev in SRv6 paths (Abhishek Rawal) [RHEL-218012] {CVE-2026-23442}
- nvmet-auth: validate reply message payload bounds against transfer length (CKI Backport Bot) [RHEL-234153] {CVE-2026-64319}
- KVM: arm64: Bound used_lrs when flushing the pKVM hyp vCPU (CKI Backport Bot) [RHEL-234204] {CVE-2026-64287}
- KVM: arm64: Take the SRCU lock for page table walks in fault injection and AT emulation (CKI Backport Bot) [RHEL-229347] {CVE-2026-53277}
- ipv4: free net-&amp;gt;ipv4.sysctl_local_reserved_ports after unregister_net_sysctl_table() (CKI Backport Bot) [RHEL-227269] {CVE-2026-64002}
- io_uring/poll: fix signed comparison in io_poll_get_ownership() (CKI Backport Bot) [RHEL-227111] {CVE-2026-52933}

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>kernel-devel-6.12.0-211.53.1.el10_2.riscv64</title>
      <pubDate>Tue, 08 Sep 2026 09:26:07 PM GMT</pubDate>
      <guid isPermaLink="false">bc28e27d489ccac50af99d6cab004d68c211c6b4ff2759e2bf667cc1bf52f5f9</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/k/kernel-devel-6.12.0-211.53.1.el10_2.riscv64.rpm</link>
      <description><p><strong>kernel-devel</strong> - Development package for building kernel modules to match the kernel&lt;br /&gt;</p>

<p>This package provides kernel headers and makefiles sufficient to build modules&lt;br /&gt;
against the kernel package.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Tue, 08 Sep 2026 GMT - Release Engineering &amp;lt;releng@rockylinux.org&amp;gt; - 6.12.0-211.53.1
- Add partial riscv64 support for build root
- Provide basic VisionFive 2 support

Mon, 07 Sep 2026 GMT - CKI KWF Bot &amp;lt;cki-ci-bot+kwf-gitlab-com@redhat.com&amp;gt; [6.12.0-211.53.1.el10_2]
- dm-verity: fix buffer overflow in FEC calculation (Benjamin Marzinski) [RHEL-244969] {CVE-2026-72098}
- nvmet-rdma: handle inline data with a nonzero offset (CKI Backport Bot) [RHEL-244928] {CVE-2026-72129}
- rtla/timerlat_top: Fix on-threshold actions firing on signal (Tomas Glozar) [RHEL-193027]
- rtla/timerlat: Exit top main loop on any non-zero wait_retval (Tomas Glozar) [RHEL-193027]
- wifi: mac80211: defer link RX stats percpu free to RCU (Jose Ignacio Tornos Martinez) [RHEL-237706] {CVE-2026-68409}
- wifi: mt76: mt7925: drop TXRX_NOTIFY on non-mmio buses (Jose Ignacio Tornos Martinez) [RHEL-237681] {CVE-2026-68193}
- wifi: mt76: mt7925: fix crash in reset link replay (Jose Ignacio Tornos Martinez) [RHEL-237527] {CVE-2026-68307}
- wifi: iwlwifi: mld: validate sta_mask before ffs() in BA session handlers (Jose Ignacio Tornos Martinez) [RHEL-232015] {CVE-2026-64255}
- wifi: mac80211: capture fast-RX rate before mesh reuses skb-&amp;gt;cb (Jose Ignacio Tornos Martinez) [RHEL-231685] {CVE-2026-64117}
- wifi: mac80211: fix missing RX bitrate update for mesh forwarding path (Jose Ignacio Tornos Martinez) [RHEL-231685] {CVE-2026-64117}
- wifi: iwlwifi: mld: fix TSO segmentation explosion when AMSDU is disabled (Jose Ignacio Tornos Martinez) [RHEL-230977] {CVE-2026-64037}
- wifi: nl80211: reject oversized EMA RNR lists (Jose Ignacio Tornos Martinez) [RHEL-230604] {CVE-2026-53182}
- net: qrtr: fix refcount saturation and potential UAF in qrtr_port_remove (Jose Ignacio Tornos Martinez) [RHEL-229725] {CVE-2026-52947}
- wifi: mac80211: fix multi-link element inheritance (Jose Ignacio Tornos Martinez) [RHEL-227617] {CVE-2026-64515}
- wifi: mac80211: fix MLE defragmentation (Jose Ignacio Tornos Martinez) [RHEL-227617] {CVE-2026-64515}
- Bluetooth: fix locking in hci_conn_request_evt() with HCI_PROTO_DEFER (CKI Backport Bot) [RHEL-232673] {CVE-2026-53072}
- accel/qaic: Add overflow check to remap_pfn_range during mmap (CKI Backport Bot) [RHEL-232178] {CVE-2026-64051}
- Bluetooth: HIDP: fix missing length checks in hidp_input_report() (CKI Backport Bot) [RHEL-231067] {CVE-2026-63947}
- Bluetooth: virtio_bt: validate rx pkt_type header length (CKI Backport Bot) [RHEL-230949] {CVE-2026-46123}
- Bluetooth: virtio_bt: clamp rx length before skb_put (CKI Backport Bot) [RHEL-230949] {CVE-2026-46123}
- Bluetooth: hci_sync: reject oversized Broadcast Announcement prepend (CKI Backport Bot) [RHEL-230076] {CVE-2026-53209}
- Bluetooth: hci_sync: fix UAF in hci_le_create_cis_sync (CKI Backport Bot) [RHEL-230013] {CVE-2026-63944}
- Bluetooth: L2CAP: Fix possible crash on l2cap_ecred_conn_rsp (CKI Backport Bot) [RHEL-228750] {CVE-2026-63975}
- Bluetooth: ISO: serialize iso_sock_clear_timer with socket lock (CKI Backport Bot) [RHEL-227911] {CVE-2026-63946}
- Bluetooth: ISO: fix UAF in iso_recv_frame (CKI Backport Bot) [RHEL-227911] {CVE-2026-63946}
- ixgbevf: fix use-after-free in VEPA multicast source pruning (CKI Backport Bot) [RHEL-227889] {CVE-2026-64113}
- Bluetooth: SMP: force responder MITM requirements before building the pairing response (CKI Backport Bot) [RHEL-227532] {CVE-2026-43334}
- vfio/pci: Check BAR resources before exporting a DMABUF (CKI Backport Bot) [RHEL-227133] {CVE-2026-64042}
- security/keys: fix missed RCU read section on lookup (CKI Backport Bot) [RHEL-225690] {CVE-2026-64015}
- Bluetooth: RFCOMM: validate skb length in MCC handlers (CKI Backport Bot) [RHEL-225653] {CVE-2026-53254}
- Bluetooth: RFCOMM: hold listener socket in rfcomm_connect_ind() (CKI Backport Bot) [RHEL-225574] {CVE-2026-53256}
- Bluetooth: serialize accept_q access (CKI Backport Bot) [RHEL-225552] {CVE-2026-52918}
- xfrm: Don't clobber inner headers when already set (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- net: pull headers in qdisc_pkt_len_segs_init() (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- net: qdisc_pkt_len_segs_init() cleanup (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- net_sched: initialize qdisc_skb_cb(skb)-&amp;gt;pkt_segs in qdisc_pkt_len_init() (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- net: init shinfo-&amp;gt;gso_segs from qdisc_pkt_len_init() (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- net_sched: make room for (struct qdisc_skb_cb)-&amp;gt;pkt_segs (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- net: account for encap headers in qdisc pkt len (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- vfio/pci: Clean up DMABUFs before disabling function (CKI Backport Bot) [RHEL-189549] {CVE-2026-53322}
- KVM: nSVM: Always use vmcb01 in VMLOAD/VMSAVE emulation (CKI Backport Bot) [RHEL-189468] {CVE-2026-43133}

Thu, 03 Sep 2026 GMT - CKI KWF Bot &amp;lt;cki-ci-bot+kwf-gitlab-com@redhat.com&amp;gt; [6.12.0-211.52.1.el10_2]
- fuse: fix race between interrupt and resend (Miklos Szeredi) [RHEL-218495] {CVE-2026-64265}
- fuse: clear intr_entry in fuse_resend and fuse_remove_pending_req (Miklos Szeredi) [RHEL-218495] {CVE-2026-64265}
- rhashtable: clear stale iter-&amp;gt;p on table restart (CKI Backport Bot) [RHEL-248457] {CVE-2026-64563}
- udp: Fix wildcard bind conflict check when using hash2 (Felix Maurer) [RHEL-218016] {CVE-2026-31503}
- tcp: optimize inet_use_bhash2_on_bind() (Felix Maurer) [RHEL-218016]
- tcp: call sk_data_ready() after listener migration (Felix Maurer) [RHEL-232246] {CVE-2026-46015}
- flow_dissector: do not dissect PPPoE PFC frames (Felix Maurer) [RHEL-232629] {CVE-2026-46306}
- inet: RAW sockets using IPPROTO_RAW MUST drop incoming ICMP (Felix Maurer) [RHEL-226125] {CVE-2026-46266}
- ipv6: anycast: insert aca into global hash under idev-&amp;gt;lock (Felix Maurer) [RHEL-230763] {CVE-2026-53259}
- ipv6: mcast: Fix use-after-free when processing MLD queries (Felix Maurer) [RHEL-226073] {CVE-2026-53275}
- ipv6: prevent possible UaF in addrconf_permanent_addr() (Felix Maurer) [RHEL-225606] {CVE-2026-43339}
- net: guard timestamp cmsgs to real error queue skbs (Felix Maurer) [RHEL-225864] {CVE-2026-53223}
- net: add pskb_may_pull() to skb_gro_receive_list() (Felix Maurer) [RHEL-229309] {CVE-2026-53235}
- can: bcm: extend bcm_tx_lock usage for data and timer updates (Abhishek Rawal) [RHEL-216700] {CVE-2025-38004}
- can: bcm: add locking when updating filter and timer values (Abhishek Rawal) [RHEL-216700] {CVE-2025-38004}
- can: bcm: fix locking for bcm_op runtime updates (Abhishek Rawal) [RHEL-216700] {CVE-2025-38004}
- can: bcm: add locking for bcm_op runtime updates (Abhishek Rawal) [RHEL-216700] {CVE-2025-38004}
- smb: client: fix double-free in SMB2_close() replay (Paulo Alcantara) [RHEL-240056] {CVE-2026-64597}
- selftests: nft_queue.sh: add a parallel stress test (Florian Westphal) [RHEL-132852]
- selftests: netfilter: nft_queue.sh: avoid flakes on debug kernels (Florian Westphal) [RHEL-132852]
- netfilter: nfnetlink_queue: make hash table per queue (Florian Westphal) [RHEL-132852] {CVE-2026-43084}
- netfilter: nfnetlink_queue: optimize verdict lookup with hash table (Florian Westphal) [RHEL-132852]
- netfilter: nfnetlink_queue: nfqnl_instance GFP_ATOMIC -&amp;gt; GFP_KERNEL_ACCOUNT allocation (Florian Westphal) [RHEL-132852]
- ppp: require CAP_NET_ADMIN in target netns for unattached ioctls (Abhishek Rawal) [RHEL-228009] {CVE-2026-53075}
- vxlan: do not reuse cached ip_hdr() value after skb_tunnel_check_pmtu() (Abhishek Rawal) [RHEL-231711] {CVE-2026-63993}
- ipv6: sit: reload inner IPv6 header after GSO offloads (Abhishek Rawal) [RHEL-225920] {CVE-2026-53228}
- ipv6: add NULL checks for idev in SRv6 paths (Abhishek Rawal) [RHEL-218012] {CVE-2026-23442}
- nvmet-auth: validate reply message payload bounds against transfer length (CKI Backport Bot) [RHEL-234153] {CVE-2026-64319}
- KVM: arm64: Bound used_lrs when flushing the pKVM hyp vCPU (CKI Backport Bot) [RHEL-234204] {CVE-2026-64287}
- KVM: arm64: Take the SRCU lock for page table walks in fault injection and AT emulation (CKI Backport Bot) [RHEL-229347] {CVE-2026-53277}
- ipv4: free net-&amp;gt;ipv4.sysctl_local_reserved_ports after unregister_net_sysctl_table() (CKI Backport Bot) [RHEL-227269] {CVE-2026-64002}
- io_uring/poll: fix signed comparison in io_poll_get_ownership() (CKI Backport Bot) [RHEL-227111] {CVE-2026-52933}

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>kernel-debug-devel-matched-6.12.0-211.53.1.el10_2.riscv64</title>
      <pubDate>Tue, 08 Sep 2026 09:26:07 PM GMT</pubDate>
      <guid isPermaLink="false">970679f5f4717f2b0afe0f4c75f36b30f732b3a5e202480971b6bddc2f43f36b</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/k/kernel-debug-devel-matched-6.12.0-211.53.1.el10_2.riscv64.rpm</link>
      <description><p><strong>kernel-debug-devel-matched</strong> - Meta package to install matching core and devel packages for a given kernel&lt;br /&gt;</p>

<p>This meta package is used to install matching core and devel packages for a given kernel.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Tue, 08 Sep 2026 GMT - Release Engineering &amp;lt;releng@rockylinux.org&amp;gt; - 6.12.0-211.53.1
- Add partial riscv64 support for build root
- Provide basic VisionFive 2 support

Mon, 07 Sep 2026 GMT - CKI KWF Bot &amp;lt;cki-ci-bot+kwf-gitlab-com@redhat.com&amp;gt; [6.12.0-211.53.1.el10_2]
- dm-verity: fix buffer overflow in FEC calculation (Benjamin Marzinski) [RHEL-244969] {CVE-2026-72098}
- nvmet-rdma: handle inline data with a nonzero offset (CKI Backport Bot) [RHEL-244928] {CVE-2026-72129}
- rtla/timerlat_top: Fix on-threshold actions firing on signal (Tomas Glozar) [RHEL-193027]
- rtla/timerlat: Exit top main loop on any non-zero wait_retval (Tomas Glozar) [RHEL-193027]
- wifi: mac80211: defer link RX stats percpu free to RCU (Jose Ignacio Tornos Martinez) [RHEL-237706] {CVE-2026-68409}
- wifi: mt76: mt7925: drop TXRX_NOTIFY on non-mmio buses (Jose Ignacio Tornos Martinez) [RHEL-237681] {CVE-2026-68193}
- wifi: mt76: mt7925: fix crash in reset link replay (Jose Ignacio Tornos Martinez) [RHEL-237527] {CVE-2026-68307}
- wifi: iwlwifi: mld: validate sta_mask before ffs() in BA session handlers (Jose Ignacio Tornos Martinez) [RHEL-232015] {CVE-2026-64255}
- wifi: mac80211: capture fast-RX rate before mesh reuses skb-&amp;gt;cb (Jose Ignacio Tornos Martinez) [RHEL-231685] {CVE-2026-64117}
- wifi: mac80211: fix missing RX bitrate update for mesh forwarding path (Jose Ignacio Tornos Martinez) [RHEL-231685] {CVE-2026-64117}
- wifi: iwlwifi: mld: fix TSO segmentation explosion when AMSDU is disabled (Jose Ignacio Tornos Martinez) [RHEL-230977] {CVE-2026-64037}
- wifi: nl80211: reject oversized EMA RNR lists (Jose Ignacio Tornos Martinez) [RHEL-230604] {CVE-2026-53182}
- net: qrtr: fix refcount saturation and potential UAF in qrtr_port_remove (Jose Ignacio Tornos Martinez) [RHEL-229725] {CVE-2026-52947}
- wifi: mac80211: fix multi-link element inheritance (Jose Ignacio Tornos Martinez) [RHEL-227617] {CVE-2026-64515}
- wifi: mac80211: fix MLE defragmentation (Jose Ignacio Tornos Martinez) [RHEL-227617] {CVE-2026-64515}
- Bluetooth: fix locking in hci_conn_request_evt() with HCI_PROTO_DEFER (CKI Backport Bot) [RHEL-232673] {CVE-2026-53072}
- accel/qaic: Add overflow check to remap_pfn_range during mmap (CKI Backport Bot) [RHEL-232178] {CVE-2026-64051}
- Bluetooth: HIDP: fix missing length checks in hidp_input_report() (CKI Backport Bot) [RHEL-231067] {CVE-2026-63947}
- Bluetooth: virtio_bt: validate rx pkt_type header length (CKI Backport Bot) [RHEL-230949] {CVE-2026-46123}
- Bluetooth: virtio_bt: clamp rx length before skb_put (CKI Backport Bot) [RHEL-230949] {CVE-2026-46123}
- Bluetooth: hci_sync: reject oversized Broadcast Announcement prepend (CKI Backport Bot) [RHEL-230076] {CVE-2026-53209}
- Bluetooth: hci_sync: fix UAF in hci_le_create_cis_sync (CKI Backport Bot) [RHEL-230013] {CVE-2026-63944}
- Bluetooth: L2CAP: Fix possible crash on l2cap_ecred_conn_rsp (CKI Backport Bot) [RHEL-228750] {CVE-2026-63975}
- Bluetooth: ISO: serialize iso_sock_clear_timer with socket lock (CKI Backport Bot) [RHEL-227911] {CVE-2026-63946}
- Bluetooth: ISO: fix UAF in iso_recv_frame (CKI Backport Bot) [RHEL-227911] {CVE-2026-63946}
- ixgbevf: fix use-after-free in VEPA multicast source pruning (CKI Backport Bot) [RHEL-227889] {CVE-2026-64113}
- Bluetooth: SMP: force responder MITM requirements before building the pairing response (CKI Backport Bot) [RHEL-227532] {CVE-2026-43334}
- vfio/pci: Check BAR resources before exporting a DMABUF (CKI Backport Bot) [RHEL-227133] {CVE-2026-64042}
- security/keys: fix missed RCU read section on lookup (CKI Backport Bot) [RHEL-225690] {CVE-2026-64015}
- Bluetooth: RFCOMM: validate skb length in MCC handlers (CKI Backport Bot) [RHEL-225653] {CVE-2026-53254}
- Bluetooth: RFCOMM: hold listener socket in rfcomm_connect_ind() (CKI Backport Bot) [RHEL-225574] {CVE-2026-53256}
- Bluetooth: serialize accept_q access (CKI Backport Bot) [RHEL-225552] {CVE-2026-52918}
- xfrm: Don't clobber inner headers when already set (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- net: pull headers in qdisc_pkt_len_segs_init() (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- net: qdisc_pkt_len_segs_init() cleanup (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- net_sched: initialize qdisc_skb_cb(skb)-&amp;gt;pkt_segs in qdisc_pkt_len_init() (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- net: init shinfo-&amp;gt;gso_segs from qdisc_pkt_len_init() (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- net_sched: make room for (struct qdisc_skb_cb)-&amp;gt;pkt_segs (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- net: account for encap headers in qdisc pkt len (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- vfio/pci: Clean up DMABUFs before disabling function (CKI Backport Bot) [RHEL-189549] {CVE-2026-53322}
- KVM: nSVM: Always use vmcb01 in VMLOAD/VMSAVE emulation (CKI Backport Bot) [RHEL-189468] {CVE-2026-43133}

Thu, 03 Sep 2026 GMT - CKI KWF Bot &amp;lt;cki-ci-bot+kwf-gitlab-com@redhat.com&amp;gt; [6.12.0-211.52.1.el10_2]
- fuse: fix race between interrupt and resend (Miklos Szeredi) [RHEL-218495] {CVE-2026-64265}
- fuse: clear intr_entry in fuse_resend and fuse_remove_pending_req (Miklos Szeredi) [RHEL-218495] {CVE-2026-64265}
- rhashtable: clear stale iter-&amp;gt;p on table restart (CKI Backport Bot) [RHEL-248457] {CVE-2026-64563}
- udp: Fix wildcard bind conflict check when using hash2 (Felix Maurer) [RHEL-218016] {CVE-2026-31503}
- tcp: optimize inet_use_bhash2_on_bind() (Felix Maurer) [RHEL-218016]
- tcp: call sk_data_ready() after listener migration (Felix Maurer) [RHEL-232246] {CVE-2026-46015}
- flow_dissector: do not dissect PPPoE PFC frames (Felix Maurer) [RHEL-232629] {CVE-2026-46306}
- inet: RAW sockets using IPPROTO_RAW MUST drop incoming ICMP (Felix Maurer) [RHEL-226125] {CVE-2026-46266}
- ipv6: anycast: insert aca into global hash under idev-&amp;gt;lock (Felix Maurer) [RHEL-230763] {CVE-2026-53259}
- ipv6: mcast: Fix use-after-free when processing MLD queries (Felix Maurer) [RHEL-226073] {CVE-2026-53275}
- ipv6: prevent possible UaF in addrconf_permanent_addr() (Felix Maurer) [RHEL-225606] {CVE-2026-43339}
- net: guard timestamp cmsgs to real error queue skbs (Felix Maurer) [RHEL-225864] {CVE-2026-53223}
- net: add pskb_may_pull() to skb_gro_receive_list() (Felix Maurer) [RHEL-229309] {CVE-2026-53235}
- can: bcm: extend bcm_tx_lock usage for data and timer updates (Abhishek Rawal) [RHEL-216700] {CVE-2025-38004}
- can: bcm: add locking when updating filter and timer values (Abhishek Rawal) [RHEL-216700] {CVE-2025-38004}
- can: bcm: fix locking for bcm_op runtime updates (Abhishek Rawal) [RHEL-216700] {CVE-2025-38004}
- can: bcm: add locking for bcm_op runtime updates (Abhishek Rawal) [RHEL-216700] {CVE-2025-38004}
- smb: client: fix double-free in SMB2_close() replay (Paulo Alcantara) [RHEL-240056] {CVE-2026-64597}
- selftests: nft_queue.sh: add a parallel stress test (Florian Westphal) [RHEL-132852]
- selftests: netfilter: nft_queue.sh: avoid flakes on debug kernels (Florian Westphal) [RHEL-132852]
- netfilter: nfnetlink_queue: make hash table per queue (Florian Westphal) [RHEL-132852] {CVE-2026-43084}
- netfilter: nfnetlink_queue: optimize verdict lookup with hash table (Florian Westphal) [RHEL-132852]
- netfilter: nfnetlink_queue: nfqnl_instance GFP_ATOMIC -&amp;gt; GFP_KERNEL_ACCOUNT allocation (Florian Westphal) [RHEL-132852]
- ppp: require CAP_NET_ADMIN in target netns for unattached ioctls (Abhishek Rawal) [RHEL-228009] {CVE-2026-53075}
- vxlan: do not reuse cached ip_hdr() value after skb_tunnel_check_pmtu() (Abhishek Rawal) [RHEL-231711] {CVE-2026-63993}
- ipv6: sit: reload inner IPv6 header after GSO offloads (Abhishek Rawal) [RHEL-225920] {CVE-2026-53228}
- ipv6: add NULL checks for idev in SRv6 paths (Abhishek Rawal) [RHEL-218012] {CVE-2026-23442}
- nvmet-auth: validate reply message payload bounds against transfer length (CKI Backport Bot) [RHEL-234153] {CVE-2026-64319}
- KVM: arm64: Bound used_lrs when flushing the pKVM hyp vCPU (CKI Backport Bot) [RHEL-234204] {CVE-2026-64287}
- KVM: arm64: Take the SRCU lock for page table walks in fault injection and AT emulation (CKI Backport Bot) [RHEL-229347] {CVE-2026-53277}
- ipv4: free net-&amp;gt;ipv4.sysctl_local_reserved_ports after unregister_net_sysctl_table() (CKI Backport Bot) [RHEL-227269] {CVE-2026-64002}
- io_uring/poll: fix signed comparison in io_poll_get_ownership() (CKI Backport Bot) [RHEL-227111] {CVE-2026-52933}

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>kernel-debug-devel-6.12.0-211.53.1.el10_2.riscv64</title>
      <pubDate>Tue, 08 Sep 2026 09:26:07 PM GMT</pubDate>
      <guid isPermaLink="false">7a84803a489391d387b9dce580549bf3a65e45ddfca6ef1675eecf64b073da60</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/k/kernel-debug-devel-6.12.0-211.53.1.el10_2.riscv64.rpm</link>
      <description><p><strong>kernel-debug-devel</strong> - Development package for building kernel modules to match the kernel&lt;br /&gt;</p>

<p>This package provides kernel headers and makefiles sufficient to build modules&lt;br /&gt;
against the kernel package.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Tue, 08 Sep 2026 GMT - Release Engineering &amp;lt;releng@rockylinux.org&amp;gt; - 6.12.0-211.53.1
- Add partial riscv64 support for build root
- Provide basic VisionFive 2 support

Mon, 07 Sep 2026 GMT - CKI KWF Bot &amp;lt;cki-ci-bot+kwf-gitlab-com@redhat.com&amp;gt; [6.12.0-211.53.1.el10_2]
- dm-verity: fix buffer overflow in FEC calculation (Benjamin Marzinski) [RHEL-244969] {CVE-2026-72098}
- nvmet-rdma: handle inline data with a nonzero offset (CKI Backport Bot) [RHEL-244928] {CVE-2026-72129}
- rtla/timerlat_top: Fix on-threshold actions firing on signal (Tomas Glozar) [RHEL-193027]
- rtla/timerlat: Exit top main loop on any non-zero wait_retval (Tomas Glozar) [RHEL-193027]
- wifi: mac80211: defer link RX stats percpu free to RCU (Jose Ignacio Tornos Martinez) [RHEL-237706] {CVE-2026-68409}
- wifi: mt76: mt7925: drop TXRX_NOTIFY on non-mmio buses (Jose Ignacio Tornos Martinez) [RHEL-237681] {CVE-2026-68193}
- wifi: mt76: mt7925: fix crash in reset link replay (Jose Ignacio Tornos Martinez) [RHEL-237527] {CVE-2026-68307}
- wifi: iwlwifi: mld: validate sta_mask before ffs() in BA session handlers (Jose Ignacio Tornos Martinez) [RHEL-232015] {CVE-2026-64255}
- wifi: mac80211: capture fast-RX rate before mesh reuses skb-&amp;gt;cb (Jose Ignacio Tornos Martinez) [RHEL-231685] {CVE-2026-64117}
- wifi: mac80211: fix missing RX bitrate update for mesh forwarding path (Jose Ignacio Tornos Martinez) [RHEL-231685] {CVE-2026-64117}
- wifi: iwlwifi: mld: fix TSO segmentation explosion when AMSDU is disabled (Jose Ignacio Tornos Martinez) [RHEL-230977] {CVE-2026-64037}
- wifi: nl80211: reject oversized EMA RNR lists (Jose Ignacio Tornos Martinez) [RHEL-230604] {CVE-2026-53182}
- net: qrtr: fix refcount saturation and potential UAF in qrtr_port_remove (Jose Ignacio Tornos Martinez) [RHEL-229725] {CVE-2026-52947}
- wifi: mac80211: fix multi-link element inheritance (Jose Ignacio Tornos Martinez) [RHEL-227617] {CVE-2026-64515}
- wifi: mac80211: fix MLE defragmentation (Jose Ignacio Tornos Martinez) [RHEL-227617] {CVE-2026-64515}
- Bluetooth: fix locking in hci_conn_request_evt() with HCI_PROTO_DEFER (CKI Backport Bot) [RHEL-232673] {CVE-2026-53072}
- accel/qaic: Add overflow check to remap_pfn_range during mmap (CKI Backport Bot) [RHEL-232178] {CVE-2026-64051}
- Bluetooth: HIDP: fix missing length checks in hidp_input_report() (CKI Backport Bot) [RHEL-231067] {CVE-2026-63947}
- Bluetooth: virtio_bt: validate rx pkt_type header length (CKI Backport Bot) [RHEL-230949] {CVE-2026-46123}
- Bluetooth: virtio_bt: clamp rx length before skb_put (CKI Backport Bot) [RHEL-230949] {CVE-2026-46123}
- Bluetooth: hci_sync: reject oversized Broadcast Announcement prepend (CKI Backport Bot) [RHEL-230076] {CVE-2026-53209}
- Bluetooth: hci_sync: fix UAF in hci_le_create_cis_sync (CKI Backport Bot) [RHEL-230013] {CVE-2026-63944}
- Bluetooth: L2CAP: Fix possible crash on l2cap_ecred_conn_rsp (CKI Backport Bot) [RHEL-228750] {CVE-2026-63975}
- Bluetooth: ISO: serialize iso_sock_clear_timer with socket lock (CKI Backport Bot) [RHEL-227911] {CVE-2026-63946}
- Bluetooth: ISO: fix UAF in iso_recv_frame (CKI Backport Bot) [RHEL-227911] {CVE-2026-63946}
- ixgbevf: fix use-after-free in VEPA multicast source pruning (CKI Backport Bot) [RHEL-227889] {CVE-2026-64113}
- Bluetooth: SMP: force responder MITM requirements before building the pairing response (CKI Backport Bot) [RHEL-227532] {CVE-2026-43334}
- vfio/pci: Check BAR resources before exporting a DMABUF (CKI Backport Bot) [RHEL-227133] {CVE-2026-64042}
- security/keys: fix missed RCU read section on lookup (CKI Backport Bot) [RHEL-225690] {CVE-2026-64015}
- Bluetooth: RFCOMM: validate skb length in MCC handlers (CKI Backport Bot) [RHEL-225653] {CVE-2026-53254}
- Bluetooth: RFCOMM: hold listener socket in rfcomm_connect_ind() (CKI Backport Bot) [RHEL-225574] {CVE-2026-53256}
- Bluetooth: serialize accept_q access (CKI Backport Bot) [RHEL-225552] {CVE-2026-52918}
- xfrm: Don't clobber inner headers when already set (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- net: pull headers in qdisc_pkt_len_segs_init() (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- net: qdisc_pkt_len_segs_init() cleanup (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- net_sched: initialize qdisc_skb_cb(skb)-&amp;gt;pkt_segs in qdisc_pkt_len_init() (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- net: init shinfo-&amp;gt;gso_segs from qdisc_pkt_len_init() (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- net_sched: make room for (struct qdisc_skb_cb)-&amp;gt;pkt_segs (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- net: account for encap headers in qdisc pkt len (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- vfio/pci: Clean up DMABUFs before disabling function (CKI Backport Bot) [RHEL-189549] {CVE-2026-53322}
- KVM: nSVM: Always use vmcb01 in VMLOAD/VMSAVE emulation (CKI Backport Bot) [RHEL-189468] {CVE-2026-43133}

Thu, 03 Sep 2026 GMT - CKI KWF Bot &amp;lt;cki-ci-bot+kwf-gitlab-com@redhat.com&amp;gt; [6.12.0-211.52.1.el10_2]
- fuse: fix race between interrupt and resend (Miklos Szeredi) [RHEL-218495] {CVE-2026-64265}
- fuse: clear intr_entry in fuse_resend and fuse_remove_pending_req (Miklos Szeredi) [RHEL-218495] {CVE-2026-64265}
- rhashtable: clear stale iter-&amp;gt;p on table restart (CKI Backport Bot) [RHEL-248457] {CVE-2026-64563}
- udp: Fix wildcard bind conflict check when using hash2 (Felix Maurer) [RHEL-218016] {CVE-2026-31503}
- tcp: optimize inet_use_bhash2_on_bind() (Felix Maurer) [RHEL-218016]
- tcp: call sk_data_ready() after listener migration (Felix Maurer) [RHEL-232246] {CVE-2026-46015}
- flow_dissector: do not dissect PPPoE PFC frames (Felix Maurer) [RHEL-232629] {CVE-2026-46306}
- inet: RAW sockets using IPPROTO_RAW MUST drop incoming ICMP (Felix Maurer) [RHEL-226125] {CVE-2026-46266}
- ipv6: anycast: insert aca into global hash under idev-&amp;gt;lock (Felix Maurer) [RHEL-230763] {CVE-2026-53259}
- ipv6: mcast: Fix use-after-free when processing MLD queries (Felix Maurer) [RHEL-226073] {CVE-2026-53275}
- ipv6: prevent possible UaF in addrconf_permanent_addr() (Felix Maurer) [RHEL-225606] {CVE-2026-43339}
- net: guard timestamp cmsgs to real error queue skbs (Felix Maurer) [RHEL-225864] {CVE-2026-53223}
- net: add pskb_may_pull() to skb_gro_receive_list() (Felix Maurer) [RHEL-229309] {CVE-2026-53235}
- can: bcm: extend bcm_tx_lock usage for data and timer updates (Abhishek Rawal) [RHEL-216700] {CVE-2025-38004}
- can: bcm: add locking when updating filter and timer values (Abhishek Rawal) [RHEL-216700] {CVE-2025-38004}
- can: bcm: fix locking for bcm_op runtime updates (Abhishek Rawal) [RHEL-216700] {CVE-2025-38004}
- can: bcm: add locking for bcm_op runtime updates (Abhishek Rawal) [RHEL-216700] {CVE-2025-38004}
- smb: client: fix double-free in SMB2_close() replay (Paulo Alcantara) [RHEL-240056] {CVE-2026-64597}
- selftests: nft_queue.sh: add a parallel stress test (Florian Westphal) [RHEL-132852]
- selftests: netfilter: nft_queue.sh: avoid flakes on debug kernels (Florian Westphal) [RHEL-132852]
- netfilter: nfnetlink_queue: make hash table per queue (Florian Westphal) [RHEL-132852] {CVE-2026-43084}
- netfilter: nfnetlink_queue: optimize verdict lookup with hash table (Florian Westphal) [RHEL-132852]
- netfilter: nfnetlink_queue: nfqnl_instance GFP_ATOMIC -&amp;gt; GFP_KERNEL_ACCOUNT allocation (Florian Westphal) [RHEL-132852]
- ppp: require CAP_NET_ADMIN in target netns for unattached ioctls (Abhishek Rawal) [RHEL-228009] {CVE-2026-53075}
- vxlan: do not reuse cached ip_hdr() value after skb_tunnel_check_pmtu() (Abhishek Rawal) [RHEL-231711] {CVE-2026-63993}
- ipv6: sit: reload inner IPv6 header after GSO offloads (Abhishek Rawal) [RHEL-225920] {CVE-2026-53228}
- ipv6: add NULL checks for idev in SRv6 paths (Abhishek Rawal) [RHEL-218012] {CVE-2026-23442}
- nvmet-auth: validate reply message payload bounds against transfer length (CKI Backport Bot) [RHEL-234153] {CVE-2026-64319}
- KVM: arm64: Bound used_lrs when flushing the pKVM hyp vCPU (CKI Backport Bot) [RHEL-234204] {CVE-2026-64287}
- KVM: arm64: Take the SRCU lock for page table walks in fault injection and AT emulation (CKI Backport Bot) [RHEL-229347] {CVE-2026-53277}
- ipv4: free net-&amp;gt;ipv4.sysctl_local_reserved_ports after unregister_net_sysctl_table() (CKI Backport Bot) [RHEL-227269] {CVE-2026-64002}
- io_uring/poll: fix signed comparison in io_poll_get_ownership() (CKI Backport Bot) [RHEL-227111] {CVE-2026-52933}

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>perf-6.12.0-211.53.1.el10_2.riscv64</title>
      <pubDate>Tue, 08 Sep 2026 09:26:07 PM GMT</pubDate>
      <guid isPermaLink="false">5a96723698ca3eb60ddad427c768412e829fdbc86d38070c706cddf9ad1f9e88</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/perf-6.12.0-211.53.1.el10_2.riscv64.rpm</link>
      <description><p><strong>perf</strong> - Performance monitoring for the Linux kernel&lt;br /&gt;</p>

<p>This package contains the perf tool, which enables performance monitoring&lt;br /&gt;
of the Linux kernel.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Tue, 08 Sep 2026 GMT - Release Engineering &amp;lt;releng@rockylinux.org&amp;gt; - 6.12.0-211.53.1
- Add partial riscv64 support for build root
- Provide basic VisionFive 2 support

Mon, 07 Sep 2026 GMT - CKI KWF Bot &amp;lt;cki-ci-bot+kwf-gitlab-com@redhat.com&amp;gt; [6.12.0-211.53.1.el10_2]
- dm-verity: fix buffer overflow in FEC calculation (Benjamin Marzinski) [RHEL-244969] {CVE-2026-72098}
- nvmet-rdma: handle inline data with a nonzero offset (CKI Backport Bot) [RHEL-244928] {CVE-2026-72129}
- rtla/timerlat_top: Fix on-threshold actions firing on signal (Tomas Glozar) [RHEL-193027]
- rtla/timerlat: Exit top main loop on any non-zero wait_retval (Tomas Glozar) [RHEL-193027]
- wifi: mac80211: defer link RX stats percpu free to RCU (Jose Ignacio Tornos Martinez) [RHEL-237706] {CVE-2026-68409}
- wifi: mt76: mt7925: drop TXRX_NOTIFY on non-mmio buses (Jose Ignacio Tornos Martinez) [RHEL-237681] {CVE-2026-68193}
- wifi: mt76: mt7925: fix crash in reset link replay (Jose Ignacio Tornos Martinez) [RHEL-237527] {CVE-2026-68307}
- wifi: iwlwifi: mld: validate sta_mask before ffs() in BA session handlers (Jose Ignacio Tornos Martinez) [RHEL-232015] {CVE-2026-64255}
- wifi: mac80211: capture fast-RX rate before mesh reuses skb-&amp;gt;cb (Jose Ignacio Tornos Martinez) [RHEL-231685] {CVE-2026-64117}
- wifi: mac80211: fix missing RX bitrate update for mesh forwarding path (Jose Ignacio Tornos Martinez) [RHEL-231685] {CVE-2026-64117}
- wifi: iwlwifi: mld: fix TSO segmentation explosion when AMSDU is disabled (Jose Ignacio Tornos Martinez) [RHEL-230977] {CVE-2026-64037}
- wifi: nl80211: reject oversized EMA RNR lists (Jose Ignacio Tornos Martinez) [RHEL-230604] {CVE-2026-53182}
- net: qrtr: fix refcount saturation and potential UAF in qrtr_port_remove (Jose Ignacio Tornos Martinez) [RHEL-229725] {CVE-2026-52947}
- wifi: mac80211: fix multi-link element inheritance (Jose Ignacio Tornos Martinez) [RHEL-227617] {CVE-2026-64515}
- wifi: mac80211: fix MLE defragmentation (Jose Ignacio Tornos Martinez) [RHEL-227617] {CVE-2026-64515}
- Bluetooth: fix locking in hci_conn_request_evt() with HCI_PROTO_DEFER (CKI Backport Bot) [RHEL-232673] {CVE-2026-53072}
- accel/qaic: Add overflow check to remap_pfn_range during mmap (CKI Backport Bot) [RHEL-232178] {CVE-2026-64051}
- Bluetooth: HIDP: fix missing length checks in hidp_input_report() (CKI Backport Bot) [RHEL-231067] {CVE-2026-63947}
- Bluetooth: virtio_bt: validate rx pkt_type header length (CKI Backport Bot) [RHEL-230949] {CVE-2026-46123}
- Bluetooth: virtio_bt: clamp rx length before skb_put (CKI Backport Bot) [RHEL-230949] {CVE-2026-46123}
- Bluetooth: hci_sync: reject oversized Broadcast Announcement prepend (CKI Backport Bot) [RHEL-230076] {CVE-2026-53209}
- Bluetooth: hci_sync: fix UAF in hci_le_create_cis_sync (CKI Backport Bot) [RHEL-230013] {CVE-2026-63944}
- Bluetooth: L2CAP: Fix possible crash on l2cap_ecred_conn_rsp (CKI Backport Bot) [RHEL-228750] {CVE-2026-63975}
- Bluetooth: ISO: serialize iso_sock_clear_timer with socket lock (CKI Backport Bot) [RHEL-227911] {CVE-2026-63946}
- Bluetooth: ISO: fix UAF in iso_recv_frame (CKI Backport Bot) [RHEL-227911] {CVE-2026-63946}
- ixgbevf: fix use-after-free in VEPA multicast source pruning (CKI Backport Bot) [RHEL-227889] {CVE-2026-64113}
- Bluetooth: SMP: force responder MITM requirements before building the pairing response (CKI Backport Bot) [RHEL-227532] {CVE-2026-43334}
- vfio/pci: Check BAR resources before exporting a DMABUF (CKI Backport Bot) [RHEL-227133] {CVE-2026-64042}
- security/keys: fix missed RCU read section on lookup (CKI Backport Bot) [RHEL-225690] {CVE-2026-64015}
- Bluetooth: RFCOMM: validate skb length in MCC handlers (CKI Backport Bot) [RHEL-225653] {CVE-2026-53254}
- Bluetooth: RFCOMM: hold listener socket in rfcomm_connect_ind() (CKI Backport Bot) [RHEL-225574] {CVE-2026-53256}
- Bluetooth: serialize accept_q access (CKI Backport Bot) [RHEL-225552] {CVE-2026-52918}
- xfrm: Don't clobber inner headers when already set (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- net: pull headers in qdisc_pkt_len_segs_init() (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- net: qdisc_pkt_len_segs_init() cleanup (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- net_sched: initialize qdisc_skb_cb(skb)-&amp;gt;pkt_segs in qdisc_pkt_len_init() (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- net: init shinfo-&amp;gt;gso_segs from qdisc_pkt_len_init() (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- net_sched: make room for (struct qdisc_skb_cb)-&amp;gt;pkt_segs (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- net: account for encap headers in qdisc pkt len (Ivan Vecera) [RHEL-188232] {CVE-2026-53091}
- vfio/pci: Clean up DMABUFs before disabling function (CKI Backport Bot) [RHEL-189549] {CVE-2026-53322}
- KVM: nSVM: Always use vmcb01 in VMLOAD/VMSAVE emulation (CKI Backport Bot) [RHEL-189468] {CVE-2026-43133}

Thu, 03 Sep 2026 GMT - CKI KWF Bot &amp;lt;cki-ci-bot+kwf-gitlab-com@redhat.com&amp;gt; [6.12.0-211.52.1.el10_2]
- fuse: fix race between interrupt and resend (Miklos Szeredi) [RHEL-218495] {CVE-2026-64265}
- fuse: clear intr_entry in fuse_resend and fuse_remove_pending_req (Miklos Szeredi) [RHEL-218495] {CVE-2026-64265}
- rhashtable: clear stale iter-&amp;gt;p on table restart (CKI Backport Bot) [RHEL-248457] {CVE-2026-64563}
- udp: Fix wildcard bind conflict check when using hash2 (Felix Maurer) [RHEL-218016] {CVE-2026-31503}
- tcp: optimize inet_use_bhash2_on_bind() (Felix Maurer) [RHEL-218016]
- tcp: call sk_data_ready() after listener migration (Felix Maurer) [RHEL-232246] {CVE-2026-46015}
- flow_dissector: do not dissect PPPoE PFC frames (Felix Maurer) [RHEL-232629] {CVE-2026-46306}
- inet: RAW sockets using IPPROTO_RAW MUST drop incoming ICMP (Felix Maurer) [RHEL-226125] {CVE-2026-46266}
- ipv6: anycast: insert aca into global hash under idev-&amp;gt;lock (Felix Maurer) [RHEL-230763] {CVE-2026-53259}
- ipv6: mcast: Fix use-after-free when processing MLD queries (Felix Maurer) [RHEL-226073] {CVE-2026-53275}
- ipv6: prevent possible UaF in addrconf_permanent_addr() (Felix Maurer) [RHEL-225606] {CVE-2026-43339}
- net: guard timestamp cmsgs to real error queue skbs (Felix Maurer) [RHEL-225864] {CVE-2026-53223}
- net: add pskb_may_pull() to skb_gro_receive_list() (Felix Maurer) [RHEL-229309] {CVE-2026-53235}
- can: bcm: extend bcm_tx_lock usage for data and timer updates (Abhishek Rawal) [RHEL-216700] {CVE-2025-38004}
- can: bcm: add locking when updating filter and timer values (Abhishek Rawal) [RHEL-216700] {CVE-2025-38004}
- can: bcm: fix locking for bcm_op runtime updates (Abhishek Rawal) [RHEL-216700] {CVE-2025-38004}
- can: bcm: add locking for bcm_op runtime updates (Abhishek Rawal) [RHEL-216700] {CVE-2025-38004}
- smb: client: fix double-free in SMB2_close() replay (Paulo Alcantara) [RHEL-240056] {CVE-2026-64597}
- selftests: nft_queue.sh: add a parallel stress test (Florian Westphal) [RHEL-132852]
- selftests: netfilter: nft_queue.sh: avoid flakes on debug kernels (Florian Westphal) [RHEL-132852]
- netfilter: nfnetlink_queue: make hash table per queue (Florian Westphal) [RHEL-132852] {CVE-2026-43084}
- netfilter: nfnetlink_queue: optimize verdict lookup with hash table (Florian Westphal) [RHEL-132852]
- netfilter: nfnetlink_queue: nfqnl_instance GFP_ATOMIC -&amp;gt; GFP_KERNEL_ACCOUNT allocation (Florian Westphal) [RHEL-132852]
- ppp: require CAP_NET_ADMIN in target netns for unattached ioctls (Abhishek Rawal) [RHEL-228009] {CVE-2026-53075}
- vxlan: do not reuse cached ip_hdr() value after skb_tunnel_check_pmtu() (Abhishek Rawal) [RHEL-231711] {CVE-2026-63993}
- ipv6: sit: reload inner IPv6 header after GSO offloads (Abhishek Rawal) [RHEL-225920] {CVE-2026-53228}
- ipv6: add NULL checks for idev in SRv6 paths (Abhishek Rawal) [RHEL-218012] {CVE-2026-23442}
- nvmet-auth: validate reply message payload bounds against transfer length (CKI Backport Bot) [RHEL-234153] {CVE-2026-64319}
- KVM: arm64: Bound used_lrs when flushing the pKVM hyp vCPU (CKI Backport Bot) [RHEL-234204] {CVE-2026-64287}
- KVM: arm64: Take the SRCU lock for page table walks in fault injection and AT emulation (CKI Backport Bot) [RHEL-229347] {CVE-2026-53277}
- ipv4: free net-&amp;gt;ipv4.sysctl_local_reserved_ports after unregister_net_sysctl_table() (CKI Backport Bot) [RHEL-227269] {CVE-2026-64002}
- io_uring/poll: fix signed comparison in io_poll_get_ownership() (CKI Backport Bot) [RHEL-227111] {CVE-2026-52933}

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>python3.14-cryptography-45.0.4-4.el10_2.5.riscv64</title>
      <pubDate>Tue, 08 Sep 2026 12:23:22 PM GMT</pubDate>
      <guid isPermaLink="false">a1237b101ce1b532b356256530e40e9d64532b4c695dd442b3704a4e97ae85e7</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/python3.14-cryptography-45.0.4-4.el10_2.5.riscv64.rpm</link>
      <description><p><strong>python3.14-cryptography</strong> - PyCA's cryptography library&lt;br /&gt;</p>

<p>cryptography is a package designed to expose cryptographic primitives and&lt;br /&gt;
recipes to Python developers.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 02 Sep 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 45.0.4-5
- Security fixes for CVE-2026-69248 and CVE-2026-69249

Fri, 28 Nov 2025 GMT - Lumir Balhar &amp;lt;lbalhar@redhat.com&amp;gt; - 45.0.4-4
- Reuploaded sources

Fri, 28 Nov 2025 GMT - Lukáš Zachar &amp;lt;lzachar@redhat.com&amp;gt; - 45.0.4-3
- Add gating

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>thunderbird-140.14.0-1.el10_2.riscv64</title>
      <pubDate>Tue, 08 Sep 2026 12:13:54 PM GMT</pubDate>
      <guid isPermaLink="false">ed063eb8c068543cf81b1498edec98c58886504d111c9c390dcbcb50fdabedc5</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/t/thunderbird-140.14.0-1.el10_2.riscv64.rpm</link>
      <description><p><strong>thunderbird</strong> - Mozilla Thunderbird mail/newsgroup client&lt;br /&gt;</p>

<p>Mozilla Thunderbird is a standalone mail and newsgroup client.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Tue, 08 Sep 2026 GMT - Release Engineering &amp;lt;releng@rockylinux.org&amp;gt; - 140.14.0-1
- Add custom Rocky Linux Thunderbird prefs (Louis Abel)
- Ensure s390x and riscv64 are locked to 3 CPU's (Louis Abel)

Tue, 18 Aug 2026 GMT - Jan Horak &amp;lt;jhorak@redhat.com&amp;gt; - 140.14.0-1
- Update to 140.14.0 ESR

Wed, 22 Jul 2026 GMT - Jan Horak &amp;lt;jhorak@redhat.com&amp;gt; - 140.13.0-1
- Update to 140.13.0 ESR

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>python3-gpsd-1:3.26.1-3.el10_2.2.riscv64</title>
      <pubDate>Tue, 08 Sep 2026 11:26:19 AM GMT</pubDate>
      <guid isPermaLink="false">4ba0781e243e6130556dfe749ec321b8734a5b58dbeac6ac7fa3a372dda6771e</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/python3-gpsd-3.26.1-3.el10_2.2.riscv64.rpm</link>
      <description><p><strong>python3-gpsd</strong> - Python libraries and modules for use with gpsd&lt;br /&gt;</p>

<p>This package contains the python3 modules that manage access to a GPS for&lt;br /&gt;
applications.&lt;br /&gt;
&lt;br /&gt;
The Red Hat support for this package is limited. See&lt;br /&gt;
https://access.redhat.com/support/policy/gpsd-support for more details.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 26 Aug 2026 GMT - Miroslav Lichvar &amp;lt;mlichvar@redhat.com&amp;gt; - 1:3.26.1-3.el10_2.2
- fix another command injection in gpsprof (CVE-2026-60122)

Mon, 13 Jul 2026 GMT - Miroslav Lichvar &amp;lt;mlichvar@redhat.com&amp;gt; - 1:3.26.1-3.el10_2.1
- fix command injection in gpsprof (CVE-2026-58459)

Mon, 19 Jan 2026 GMT - Miroslav Lichvar &amp;lt;mlichvar@redhat.com&amp;gt; - 1:3.26.1-3
- fix buffer overflow in NMEA2000 driver (CVE-2025-67268)
- fix integer underflow in handling of Navcom packets (CVE-2025-67269)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>gpsd-clients-1:3.26.1-3.el10_2.2.riscv64</title>
      <pubDate>Tue, 08 Sep 2026 11:26:19 AM GMT</pubDate>
      <guid isPermaLink="false">546e8b9928dd7deba2bfc843ee5c0ebcc9742713a17b3965e85eca4b7a0693fd</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/g/gpsd-clients-3.26.1-3.el10_2.2.riscv64.rpm</link>
      <description><p><strong>gpsd-clients</strong> - Clients for gpsd&lt;br /&gt;</p>

<p>This package contains various clients using gpsd.&lt;br /&gt;
&lt;br /&gt;
The Red Hat support for this package is limited. See&lt;br /&gt;
https://access.redhat.com/support/policy/gpsd-support for more details.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 26 Aug 2026 GMT - Miroslav Lichvar &amp;lt;mlichvar@redhat.com&amp;gt; - 1:3.26.1-3.el10_2.2
- fix another command injection in gpsprof (CVE-2026-60122)

Mon, 13 Jul 2026 GMT - Miroslav Lichvar &amp;lt;mlichvar@redhat.com&amp;gt; - 1:3.26.1-3.el10_2.1
- fix command injection in gpsprof (CVE-2026-58459)

Mon, 19 Jan 2026 GMT - Miroslav Lichvar &amp;lt;mlichvar@redhat.com&amp;gt; - 1:3.26.1-3
- fix buffer overflow in NMEA2000 driver (CVE-2025-67268)
- fix integer underflow in handling of Navcom packets (CVE-2025-67269)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>gpsd-1:3.26.1-3.el10_2.2.riscv64</title>
      <pubDate>Tue, 08 Sep 2026 11:26:19 AM GMT</pubDate>
      <guid isPermaLink="false">7a24b0721394ccab1fb511eff615c2c03dae84fd9fa7e31a516ee9575d704b93</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/g/gpsd-3.26.1-3.el10_2.2.riscv64.rpm</link>
      <description><p><strong>gpsd</strong> - Service daemon for mediating access to a GPS&lt;br /&gt;</p>

<p>gpsd is a service daemon that mediates access to a GPS sensor&lt;br /&gt;
connected to the host computer by serial or USB interface, making its&lt;br /&gt;
data on the location/course/velocity of the sensor available to be&lt;br /&gt;
queried on TCP port 2947 of the host computer.  With gpsd, multiple&lt;br /&gt;
GPS client applications (such as navigational and war-driving software)&lt;br /&gt;
can share access to a GPS without contention or loss of data.  Also,&lt;br /&gt;
gpsd responds to queries with a format that is substantially easier to&lt;br /&gt;
parse than NMEA 0183.&lt;br /&gt;
&lt;br /&gt;
The Red Hat support for this package is limited. See&lt;br /&gt;
https://access.redhat.com/support/policy/gpsd-support for more details.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 26 Aug 2026 GMT - Miroslav Lichvar &amp;lt;mlichvar@redhat.com&amp;gt; - 1:3.26.1-3.el10_2.2
- fix another command injection in gpsprof (CVE-2026-60122)

Mon, 13 Jul 2026 GMT - Miroslav Lichvar &amp;lt;mlichvar@redhat.com&amp;gt; - 1:3.26.1-3.el10_2.1
- fix command injection in gpsprof (CVE-2026-58459)

Mon, 19 Jan 2026 GMT - Miroslav Lichvar &amp;lt;mlichvar@redhat.com&amp;gt; - 1:3.26.1-3
- fix buffer overflow in NMEA2000 driver (CVE-2025-67268)
- fix integer underflow in handling of Navcom packets (CVE-2025-67269)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>opentelemetry-collector-0.152.1-2.el10_2.riscv64</title>
      <pubDate>Tue, 08 Sep 2026 09:41:09 AM GMT</pubDate>
      <guid isPermaLink="false">25880ef3d64e9a542f76b6ae18ed115d2397b397d11a348260f7e113185f0ad3</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/o/opentelemetry-collector-0.152.1-2.el10_2.riscv64.rpm</link>
      <description><p><strong>opentelemetry-collector</strong> - Red Hat build of OpenTelemetry&lt;br /&gt;</p>

<p>&lt;br /&gt;
Collector with the supported components for a Red Hat build of OpenTelemetry</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 03 Sep 2026 GMT - Kseniia Nivnia &amp;lt;knivnia@redhat.com&amp;gt; - 0.152.1-2
- Rebuild with updated golang and otel
- Update addresses CVE-2026-39820, CVE-2026-42499, CVE-2026-42504,
  CVE-2026-56860, CVE-2026-56859, CVE-2026-41178, CVE-2026-56862,
  CVE-2026-56858, CVE-2026-33818, CVE-2026-56853
- Resolves: RHEL-251683, RHEL-251827, RHEL-251152, RHEL-241746,
  RHEL-241986, RHEL-239491, RHEL-241432, RHEL-242138, RHEL-241640,
  RHEL-241125

Wed, 01 Jul 2026 GMT - Kseniia Nivnia &amp;lt;knivnia@redhat.com&amp;gt; - 0.152.1-1
- Update to v0.152.1
- Addresses CVE-2026-39821, CVE-2026-42154, CVE-2026-33811, CVE-2026-42151,
  CVE-2026-27145, CVE-2026-25681

Tue, 28 Apr 2026 GMT - Kseniia Nivnia &amp;lt;knivnia@redhat.com&amp;gt; - 0.144.0-2
- Update to Go v1.26.2, go-jose v4.1.4, go-grcp v1.79.3
- Addresses: CVE-2026-25679, CVE-2026-33186, CVE-2026-34986,
  CVE-2026-32282, CVE-2026-32283, CVE-2026-32280, CVE-2026-33810

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>389-ds-base-snmp-3.2.0-10.el10_2.riscv64</title>
      <pubDate>Tue, 08 Sep 2026 08:58:52 AM GMT</pubDate>
      <guid isPermaLink="false">4c1d41d105e1f2e0217ed4d241b197b154d6065790bc6609d3b07e3e1f0ac333</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/3/389-ds-base-snmp-3.2.0-10.el10_2.riscv64.rpm</link>
      <description><p><strong>389-ds-base-snmp</strong> - SNMP Agent for 389 Directory Server&lt;br /&gt;</p>

<p>SNMP Agent for the 389 Directory Server base package.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 02 Sep 2026 GMT - Viktor Ashirov &amp;lt;vashirov@redhat.com&amp;gt; - 3.2.0-10
- Bump version to 3.2.0-10
- Resolves: RHEL-220500 - CVE-2026-18355 389-ds-base: heap buffer overflow
  via SASL wrapped-record length lower-bound underflow in
  sasl_io_start_packet() [rhel-10.2.z]
- Resolves: RHEL-222320 - CVE-2026-18453 389-ds-base: pre-authentication
  NULL pointer dereference via paged results and USE_ONE_BACKEND control in
  op_shared_search [rhel-10.2.z]
- Resolves: RHEL-232863 -  CVE-2026-18922 389-ds-base: SASL PLAIN
  authentication allows privilege escalation to Directory Manager via stale
  identity in Cyrus SASL auxiliary property [rhel-10.2.z]
- Resolves: RHEL-244470 - lib389: set nsDS5ReplicaBindDNGroup before
  ensure_agreement() [rhel-10.2.z]
- Resolves: RHEL-245372 - CVE-2026-76560 389-ds-base: anonymous LDAP client
  can defeat SELFDN ACI bind-rule checks via empty bind DN [rhel-10.2.z]
- Resolves: RHEL-247859 - CVE-2026-78701 389-ds-base: CVE-2026-11610
  incomplete fix may introduce a connection-stall DoS [rhel-10.2.z]
- Resolves: RHEL-248770 - CVE-2026-11770 fix breaks replication total init
  when nsDS5ReplicaBindDNGroup is set after agreement creation
  [rhel-10.2.z]

Wed, 29 Jul 2026 GMT - Viktor Ashirov &amp;lt;vashirov@redhat.com&amp;gt; - 3.2.0-9
- Bump version to 3.2.0-9
- Resolves: RHEL-183075 - CVE-2026-11770 389-ds-base: 389-ds-base: pre-auth
  LDAP filter injection in CleanAllRUV status check [rhel-10.2.z]
- Resolves: RHEL-190776 - CVE-2026-11788 389-ds-base: 389-ds-base: NULL
  pointer dereference in deref control plugin BER parser [rhel-10.2.z]
- Resolves: RHEL-210874 - CVE-2026-15722 389-ds-base: 389-ds-base: pre-
  authentication stack buffer overflow in get_ruvelement_from_berval() via
  unbounded replica ID parsing [rhel-10.2.z]

Fri, 26 Jun 2026 GMT - Viktor Ashirov &amp;lt;vashirov@redhat.com&amp;gt; - 3.2.0-8
- Bump version to 3.2.0-8
- Resolves: RHEL-182152 - CVE-2026-11610 389-ds-base: 389-ds-base: Heap
  buffer overflow in sasl_io_recv() via padded SASL UNBIND [rhel-10.2.z]
- Resolves: RHEL-183105 - CVE-2026-11774 389-ds-base: 389-ds-base: integer
  overflow in SASL packet length bypasses size limit leading to heap buffer
  overflow [rhel-10.2.z]

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>389-ds-base-libs-3.2.0-10.el10_2.riscv64</title>
      <pubDate>Tue, 08 Sep 2026 08:58:52 AM GMT</pubDate>
      <guid isPermaLink="false">5af6ebeb39f33c8def5043e0a87b09d3fff4a98b9cc91b9adcb160a19c6bf91b</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/3/389-ds-base-libs-3.2.0-10.el10_2.riscv64.rpm</link>
      <description><p><strong>389-ds-base-libs</strong> - Core libraries for 389 Directory Server (base)&lt;br /&gt;</p>

<p>Core libraries for the 389 Directory Server base package.  These libraries&lt;br /&gt;
are used by the main package and the -devel package.  This allows the -devel&lt;br /&gt;
package to be installed with just the -libs package and without the main package.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 02 Sep 2026 GMT - Viktor Ashirov &amp;lt;vashirov@redhat.com&amp;gt; - 3.2.0-10
- Bump version to 3.2.0-10
- Resolves: RHEL-220500 - CVE-2026-18355 389-ds-base: heap buffer overflow
  via SASL wrapped-record length lower-bound underflow in
  sasl_io_start_packet() [rhel-10.2.z]
- Resolves: RHEL-222320 - CVE-2026-18453 389-ds-base: pre-authentication
  NULL pointer dereference via paged results and USE_ONE_BACKEND control in
  op_shared_search [rhel-10.2.z]
- Resolves: RHEL-232863 -  CVE-2026-18922 389-ds-base: SASL PLAIN
  authentication allows privilege escalation to Directory Manager via stale
  identity in Cyrus SASL auxiliary property [rhel-10.2.z]
- Resolves: RHEL-244470 - lib389: set nsDS5ReplicaBindDNGroup before
  ensure_agreement() [rhel-10.2.z]
- Resolves: RHEL-245372 - CVE-2026-76560 389-ds-base: anonymous LDAP client
  can defeat SELFDN ACI bind-rule checks via empty bind DN [rhel-10.2.z]
- Resolves: RHEL-247859 - CVE-2026-78701 389-ds-base: CVE-2026-11610
  incomplete fix may introduce a connection-stall DoS [rhel-10.2.z]
- Resolves: RHEL-248770 - CVE-2026-11770 fix breaks replication total init
  when nsDS5ReplicaBindDNGroup is set after agreement creation
  [rhel-10.2.z]

Wed, 29 Jul 2026 GMT - Viktor Ashirov &amp;lt;vashirov@redhat.com&amp;gt; - 3.2.0-9
- Bump version to 3.2.0-9
- Resolves: RHEL-183075 - CVE-2026-11770 389-ds-base: 389-ds-base: pre-auth
  LDAP filter injection in CleanAllRUV status check [rhel-10.2.z]
- Resolves: RHEL-190776 - CVE-2026-11788 389-ds-base: 389-ds-base: NULL
  pointer dereference in deref control plugin BER parser [rhel-10.2.z]
- Resolves: RHEL-210874 - CVE-2026-15722 389-ds-base: 389-ds-base: pre-
  authentication stack buffer overflow in get_ruvelement_from_berval() via
  unbounded replica ID parsing [rhel-10.2.z]

Fri, 26 Jun 2026 GMT - Viktor Ashirov &amp;lt;vashirov@redhat.com&amp;gt; - 3.2.0-8
- Bump version to 3.2.0-8
- Resolves: RHEL-182152 - CVE-2026-11610 389-ds-base: 389-ds-base: Heap
  buffer overflow in sasl_io_recv() via padded SASL UNBIND [rhel-10.2.z]
- Resolves: RHEL-183105 - CVE-2026-11774 389-ds-base: 389-ds-base: integer
  overflow in SASL packet length bypasses size limit leading to heap buffer
  overflow [rhel-10.2.z]

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>389-ds-base-3.2.0-10.el10_2.riscv64</title>
      <pubDate>Tue, 08 Sep 2026 08:58:52 AM GMT</pubDate>
      <guid isPermaLink="false">c3de7b0cc3b55a5b0f1e8176c124ae21eff36f33130ab3a285953efe84025542</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/3/389-ds-base-3.2.0-10.el10_2.riscv64.rpm</link>
      <description><p><strong>389-ds-base</strong> - 389 Directory Server (base)&lt;br /&gt;</p>

<p>389 Directory Server is an LDAPv3 compliant server.  The base package includes&lt;br /&gt;
the LDAP server and command line utilities for server administration.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 02 Sep 2026 GMT - Viktor Ashirov &amp;lt;vashirov@redhat.com&amp;gt; - 3.2.0-10
- Bump version to 3.2.0-10
- Resolves: RHEL-220500 - CVE-2026-18355 389-ds-base: heap buffer overflow
  via SASL wrapped-record length lower-bound underflow in
  sasl_io_start_packet() [rhel-10.2.z]
- Resolves: RHEL-222320 - CVE-2026-18453 389-ds-base: pre-authentication
  NULL pointer dereference via paged results and USE_ONE_BACKEND control in
  op_shared_search [rhel-10.2.z]
- Resolves: RHEL-232863 -  CVE-2026-18922 389-ds-base: SASL PLAIN
  authentication allows privilege escalation to Directory Manager via stale
  identity in Cyrus SASL auxiliary property [rhel-10.2.z]
- Resolves: RHEL-244470 - lib389: set nsDS5ReplicaBindDNGroup before
  ensure_agreement() [rhel-10.2.z]
- Resolves: RHEL-245372 - CVE-2026-76560 389-ds-base: anonymous LDAP client
  can defeat SELFDN ACI bind-rule checks via empty bind DN [rhel-10.2.z]
- Resolves: RHEL-247859 - CVE-2026-78701 389-ds-base: CVE-2026-11610
  incomplete fix may introduce a connection-stall DoS [rhel-10.2.z]
- Resolves: RHEL-248770 - CVE-2026-11770 fix breaks replication total init
  when nsDS5ReplicaBindDNGroup is set after agreement creation
  [rhel-10.2.z]

Wed, 29 Jul 2026 GMT - Viktor Ashirov &amp;lt;vashirov@redhat.com&amp;gt; - 3.2.0-9
- Bump version to 3.2.0-9
- Resolves: RHEL-183075 - CVE-2026-11770 389-ds-base: 389-ds-base: pre-auth
  LDAP filter injection in CleanAllRUV status check [rhel-10.2.z]
- Resolves: RHEL-190776 - CVE-2026-11788 389-ds-base: 389-ds-base: NULL
  pointer dereference in deref control plugin BER parser [rhel-10.2.z]
- Resolves: RHEL-210874 - CVE-2026-15722 389-ds-base: 389-ds-base: pre-
  authentication stack buffer overflow in get_ruvelement_from_berval() via
  unbounded replica ID parsing [rhel-10.2.z]

Fri, 26 Jun 2026 GMT - Viktor Ashirov &amp;lt;vashirov@redhat.com&amp;gt; - 3.2.0-8
- Bump version to 3.2.0-8
- Resolves: RHEL-182152 - CVE-2026-11610 389-ds-base: 389-ds-base: Heap
  buffer overflow in sasl_io_recv() via padded SASL UNBIND [rhel-10.2.z]
- Resolves: RHEL-183105 - CVE-2026-11774 389-ds-base: 389-ds-base: integer
  overflow in SASL packet length bypasses size limit leading to heap buffer
  overflow [rhel-10.2.z]

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>skopeo-tests-2:1.22.2-5.el10_2.riscv64</title>
      <pubDate>Tue, 08 Sep 2026 08:54:25 AM GMT</pubDate>
      <guid isPermaLink="false">fa9e390fbdbcb23aee6d1910058f2801e67b878e58e849281193e8ffc052125b</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/s/skopeo-tests-1.22.2-5.el10_2.riscv64.rpm</link>
      <description><p><strong>skopeo-tests</strong> - Test dependencies for skopeo&lt;br /&gt;</p>

<p>This package installs system test dependencies for skopeo</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 02 Sep 2026 GMT - Jindrich Novy &amp;lt;jnovy@redhat.com&amp;gt; - 2:1.22.2-5
- Rebuild for golang CVE fixes
- Resolves: RHEL-241177 RHEL-241425 RHEL-241563 RHEL-241763 RHEL-242151 RHEL-251832

Wed, 08 Jul 2026 GMT - Jindrich Novy &amp;lt;jnovy@redhat.com&amp;gt; - 2:1.22.2-4
- re-add test file installation to fix tier0 tests

Wed, 08 Jul 2026 GMT - Jindrich Novy &amp;lt;jnovy@redhat.com&amp;gt; - 2:1.22.2-3
- Rebuild for CVE-2026-27145

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>skopeo-2:1.22.2-5.el10_2.riscv64</title>
      <pubDate>Tue, 08 Sep 2026 08:54:25 AM GMT</pubDate>
      <guid isPermaLink="false">c9f96b6977938d8cbc513351bf7b745aff87fefcd612133a96c9af1b2ebb56fd</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/s/skopeo-1.22.2-5.el10_2.riscv64.rpm</link>
      <description><p><strong>skopeo</strong> - Inspect container images and repositories on registries&lt;br /&gt;</p>

<p>Command line utility to inspect images and repositories directly on Docker&lt;br /&gt;
registries without the need to pull them.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 02 Sep 2026 GMT - Jindrich Novy &amp;lt;jnovy@redhat.com&amp;gt; - 2:1.22.2-5
- Rebuild for golang CVE fixes
- Resolves: RHEL-241177 RHEL-241425 RHEL-241563 RHEL-241763 RHEL-242151 RHEL-251832

Wed, 08 Jul 2026 GMT - Jindrich Novy &amp;lt;jnovy@redhat.com&amp;gt; - 2:1.22.2-4
- re-add test file installation to fix tier0 tests

Wed, 08 Jul 2026 GMT - Jindrich Novy &amp;lt;jnovy@redhat.com&amp;gt; - 2:1.22.2-3
- Rebuild for CVE-2026-27145

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>git-lfs-3.7.1-5.el10_2.7.riscv64</title>
      <pubDate>Tue, 08 Sep 2026 08:54:20 AM GMT</pubDate>
      <guid isPermaLink="false">391f7676cb2d48e55e05b5f56ee1eb45f29009dc82e102cbd09890e4ce1d5afe</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/g/git-lfs-3.7.1-5.el10_2.7.riscv64.rpm</link>
      <description><p><strong>git-lfs</strong> - Git extension for versioning large files&lt;br /&gt;</p>

<p>Git Large File Storage (LFS) replaces large files such as audio samples,&lt;br /&gt;
videos, datasets, and graphics with text pointers inside Git, while&lt;br /&gt;
storing the file contents on a remote server.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 03 Sep 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 3.7.1-7
- Rebuild with new Golang

Wed, 08 Jul 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 3.7.1-6
- Rebuild with new Golang

Thu, 11 Jun 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 3.7.1-5
- Fix CVE-2026-39821 in vendored golang.org/x/net idna package

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>buildah-tests-2:1.43.1-6.el10_2.riscv64</title>
      <pubDate>Tue, 08 Sep 2026 08:53:48 AM GMT</pubDate>
      <guid isPermaLink="false">3cd15eaa82eb242f0a9d47d753e24f32fed0bd4ed601783c502306db6041a7da</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/b/buildah-tests-1.43.1-6.el10_2.riscv64.rpm</link>
      <description><p><strong>buildah-tests</strong> - Tests for buildah&lt;br /&gt;</p>

<p>Tests for buildah&lt;br /&gt;
&lt;br /&gt;
This package contains system tests for buildah</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 02 Sep 2026 GMT - Jindrich Novy &amp;lt;jnovy@redhat.com&amp;gt; - 2:1.43.1-6
- Rebuild for golang CVE fixes
- Resolves: RHEL-229833 RHEL-241142 RHEL-241389 RHEL-241658 RHEL-241706 RHEL-242148 RHEL-251830

Sat, 08 Aug 2026 GMT - Jindrich Novy &amp;lt;jnovy@redhat.com&amp;gt; - 2:1.43.1-5
- rebuild for CVE-2026-33810
- Resolves: RHEL-229833

Fri, 10 Jul 2026 GMT - Jindrich Novy &amp;lt;jnovy@redhat.com&amp;gt; - 2:1.43.1-4
- rebuild for CVE-2026-39822
- Resolves: RHEL-193643

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>buildah-2:1.43.1-6.el10_2.riscv64</title>
      <pubDate>Tue, 08 Sep 2026 08:53:48 AM GMT</pubDate>
      <guid isPermaLink="false">1686f190d226a6d1cc66cb97ff3d13f36ff40435f532e2416d4d0fbb256cabaf</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/b/buildah-1.43.1-6.el10_2.riscv64.rpm</link>
      <description><p><strong>buildah</strong> - A command line tool used for creating OCI Images&lt;br /&gt;</p>

<p>The buildah package provides a command line tool which can be used to&lt;br /&gt;
* create a working container from scratch&lt;br /&gt;
or&lt;br /&gt;
* create a working container from an image as a starting point&lt;br /&gt;
* mount/umount a working container's root file system for manipulation&lt;br /&gt;
* save container's root file system layer to create a new image&lt;br /&gt;
* delete a working container or an image</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 02 Sep 2026 GMT - Jindrich Novy &amp;lt;jnovy@redhat.com&amp;gt; - 2:1.43.1-6
- Rebuild for golang CVE fixes
- Resolves: RHEL-229833 RHEL-241142 RHEL-241389 RHEL-241658 RHEL-241706 RHEL-242148 RHEL-251830

Sat, 08 Aug 2026 GMT - Jindrich Novy &amp;lt;jnovy@redhat.com&amp;gt; - 2:1.43.1-5
- rebuild for CVE-2026-33810
- Resolves: RHEL-229833

Fri, 10 Jul 2026 GMT - Jindrich Novy &amp;lt;jnovy@redhat.com&amp;gt; - 2:1.43.1-4
- rebuild for CVE-2026-39822
- Resolves: RHEL-193643

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>glib2-tests-2.80.4-12.el10_2.22.riscv64</title>
      <pubDate>Tue, 08 Sep 2026 08:53:28 AM GMT</pubDate>
      <guid isPermaLink="false">3026cde0bcf72311458cc6bf79dc6bacd0c7966ec031d4e9f6d4bc5669ffe362</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/g/glib2-tests-2.80.4-12.el10_2.22.riscv64.rpm</link>
      <description><p><strong>glib2-tests</strong> - Tests for the glib2 package&lt;br /&gt;</p>

<p>The glib2-tests package contains tests that can be used to verify&lt;br /&gt;
the functionality of the installed glib2 package.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Mon, 31 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 2.80.4-22
- Fix CVE-2026-16118: heap-buffer-overflow in xdgmime byte-swap

Thu, 30 Jul 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 2.80.4-21
- Fix CVE-2026-15588: limit D-Bus auth line read length

Thu, 30 Jul 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 2.80.4-20
- Fix CVE-2026-58011: range validation in g_date_time_add_full()

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>glib2-devel-2.80.4-12.el10_2.22.riscv64</title>
      <pubDate>Tue, 08 Sep 2026 08:53:28 AM GMT</pubDate>
      <guid isPermaLink="false">69a854267b5fc35acb9c2caaddaa9833b968fcce1691430582a0a7b0b10d19f8</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/g/glib2-devel-2.80.4-12.el10_2.22.riscv64.rpm</link>
      <description><p><strong>glib2-devel</strong> - A library of handy utility functions&lt;br /&gt;</p>

<p>The glib2-devel package includes the header files for the GLib library.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Mon, 31 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 2.80.4-22
- Fix CVE-2026-16118: heap-buffer-overflow in xdgmime byte-swap

Thu, 30 Jul 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 2.80.4-21
- Fix CVE-2026-15588: limit D-Bus auth line read length

Thu, 30 Jul 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 2.80.4-20
- Fix CVE-2026-58011: range validation in g_date_time_add_full()

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>python3-lib389-3.2.0-10.el10_2.noarch</title>
      <pubDate>Tue, 08 Sep 2026 08:53:04 AM GMT</pubDate>
      <guid isPermaLink="false">8357878df5314a847419b2ab49d9718d46e23a10421d7f68a06d43048d8e5bc8</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/python3-lib389-3.2.0-10.el10_2.noarch.rpm</link>
      <description><p><strong>python3-lib389</strong> - A library for accessing, testing, and configuring the 389 Directory Server&lt;br /&gt;</p>

<p>This module contains tools and libraries for accessing, testing,&lt;br /&gt;
 and configuring the 389 Directory Server.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 02 Sep 2026 GMT - Viktor Ashirov &amp;lt;vashirov@redhat.com&amp;gt; - 3.2.0-10
- Bump version to 3.2.0-10
- Resolves: RHEL-220500 - CVE-2026-18355 389-ds-base: heap buffer overflow
  via SASL wrapped-record length lower-bound underflow in
  sasl_io_start_packet() [rhel-10.2.z]
- Resolves: RHEL-222320 - CVE-2026-18453 389-ds-base: pre-authentication
  NULL pointer dereference via paged results and USE_ONE_BACKEND control in
  op_shared_search [rhel-10.2.z]
- Resolves: RHEL-232863 -  CVE-2026-18922 389-ds-base: SASL PLAIN
  authentication allows privilege escalation to Directory Manager via stale
  identity in Cyrus SASL auxiliary property [rhel-10.2.z]
- Resolves: RHEL-244470 - lib389: set nsDS5ReplicaBindDNGroup before
  ensure_agreement() [rhel-10.2.z]
- Resolves: RHEL-245372 - CVE-2026-76560 389-ds-base: anonymous LDAP client
  can defeat SELFDN ACI bind-rule checks via empty bind DN [rhel-10.2.z]
- Resolves: RHEL-247859 - CVE-2026-78701 389-ds-base: CVE-2026-11610
  incomplete fix may introduce a connection-stall DoS [rhel-10.2.z]
- Resolves: RHEL-248770 - CVE-2026-11770 fix breaks replication total init
  when nsDS5ReplicaBindDNGroup is set after agreement creation
  [rhel-10.2.z]

Wed, 29 Jul 2026 GMT - Viktor Ashirov &amp;lt;vashirov@redhat.com&amp;gt; - 3.2.0-9
- Bump version to 3.2.0-9
- Resolves: RHEL-183075 - CVE-2026-11770 389-ds-base: 389-ds-base: pre-auth
  LDAP filter injection in CleanAllRUV status check [rhel-10.2.z]
- Resolves: RHEL-190776 - CVE-2026-11788 389-ds-base: 389-ds-base: NULL
  pointer dereference in deref control plugin BER parser [rhel-10.2.z]
- Resolves: RHEL-210874 - CVE-2026-15722 389-ds-base: 389-ds-base: pre-
  authentication stack buffer overflow in get_ruvelement_from_berval() via
  unbounded replica ID parsing [rhel-10.2.z]

Fri, 26 Jun 2026 GMT - Viktor Ashirov &amp;lt;vashirov@redhat.com&amp;gt; - 3.2.0-8
- Bump version to 3.2.0-8
- Resolves: RHEL-182152 - CVE-2026-11610 389-ds-base: 389-ds-base: Heap
  buffer overflow in sasl_io_recv() via padded SASL UNBIND [rhel-10.2.z]
- Resolves: RHEL-183105 - CVE-2026-11774 389-ds-base: 389-ds-base: integer
  overflow in SASL packet length bypasses size limit leading to heap buffer
  overflow [rhel-10.2.z]

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>expat-devel-2.7.3-1.el10_2.3.riscv64</title>
      <pubDate>Tue, 08 Sep 2026 08:52:19 AM GMT</pubDate>
      <guid isPermaLink="false">623c543d6330b9cb926b1a94f633373b5edcb3e8ae7c6de13969508827672df0</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/e/expat-devel-2.7.3-1.el10_2.3.riscv64.rpm</link>
      <description><p><strong>expat-devel</strong> - Libraries and header files to develop applications using expat&lt;br /&gt;</p>

<p>The expat-devel package contains the libraries, include files and documentation&lt;br /&gt;
to develop XML applications with expat.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 31 Jul 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 2.7.3-59
- Fix CVE-2026-56132: out-of-bound scaffolding index store in doProlog

Fri, 31 Jul 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 2.7.3-58
- Fix CVE-2026-50219: forbid XML_ParserFree/Reset from handlers

Wed, 27 May 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 2.7.3-57
- expat: backport CVE-2026-45186 fix (attribute collision check DoS)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>xz-lzma-compat-1:5.6.2-4.el10_2.1.riscv64</title>
      <pubDate>Tue, 08 Sep 2026 08:52:15 AM GMT</pubDate>
      <guid isPermaLink="false">acb18706833c2177e07c5dc2183b55866ef6696961a88f8bc996a1487a4e3b8b</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/x/xz-lzma-compat-5.6.2-4.el10_2.1.riscv64.rpm</link>
      <description><p><strong>xz-lzma-compat</strong> - Older LZMA format compatibility binaries&lt;br /&gt;</p>

<p>The lzma-compat package contains compatibility links for older&lt;br /&gt;
commands that deal with the older LZMA format.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 21 Aug 2026 GMT - Jakub Martisko &amp;lt;jamartis@redhat.com&amp;gt; - 1:5.6.2-4.1
- Fix: a buffer overflow in lzma_index_append()
- Add test for the issue above (needs a special build config to actually fail -&amp;gt; does not fail in our environemnt)
- Resolves: CVE-2026-34743

Tue, 13 May 2025 GMT - Jakub Martisko &amp;lt;jamartis@redhat.com&amp;gt; - 1:5.6.2-4
- Fix: heap-use-after-free bug in threaded .xz decoder (CVE-2025-31115)
- Resolves: RHEL-86029

Tue, 29 Oct 2024 GMT - Troy Dawson &amp;lt;tdawson@redhat.com&amp;gt; - 1:5.6.2-3
- Bump release for October 2024 mass rebuild:
  Resolves: RHEL-64018

&lt;/pre&gt;</description>
    </item>
    <item>
      <title>xz-devel-1:5.6.2-4.el10_2.1.riscv64</title>
      <pubDate>Tue, 08 Sep 2026 08:52:15 AM GMT</pubDate>
      <guid isPermaLink="false">f6a7810a8464be3f1d35a2d9b18208f1d6f4dfda7028051c5265f5f2eae0087e</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/x/xz-devel-5.6.2-4.el10_2.1.riscv64.rpm</link>
      <description><p><strong>xz-devel</strong> - Devel libraries &amp; headers for liblzma&lt;br /&gt;</p>

<p>Devel libraries and headers for liblzma.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 21 Aug 2026 GMT - Jakub Martisko &amp;lt;jamartis@redhat.com&amp;gt; - 1:5.6.2-4.1
- Fix: a buffer overflow in lzma_index_append()
- Add test for the issue above (needs a special build config to actually fail -&amp;gt; does not fail in our environemnt)
- Resolves: CVE-2026-34743

Tue, 13 May 2025 GMT - Jakub Martisko &amp;lt;jamartis@redhat.com&amp;gt; - 1:5.6.2-4
- Fix: heap-use-after-free bug in threaded .xz decoder (CVE-2025-31115)
- Resolves: RHEL-86029

Tue, 29 Oct 2024 GMT - Troy Dawson &amp;lt;tdawson@redhat.com&amp;gt; - 1:5.6.2-3
- Bump release for October 2024 mass rebuild:
  Resolves: RHEL-64018

&lt;/pre&gt;</description>
    </item>
    <item>
      <title>valkey-devel-8.0.11-1.el10_2.riscv64</title>
      <pubDate>Tue, 08 Sep 2026 08:51:43 AM GMT</pubDate>
      <guid isPermaLink="false">8e91b43d3c6eeacc8776999b7f26ade13d3c0a653667fb403cc9c0b458b05417</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/v/valkey-devel-8.0.11-1.el10_2.riscv64.rpm</link>
      <description><p><strong>valkey-devel</strong> - Development header for Valkey module development&lt;br /&gt;</p>

<p>Header file required for building loadable Valkey modules.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 02 Sep 2026 GMT - Petr Khartskhaev &amp;lt;pkhartsk@redhat.com&amp;gt; - 8.0.11-1
- Rebase to 8.0.11 for CVE-2026-56684 CVE-2026-63639 (CVE-2026-66373 in redis)

Tue, 19 May 2026 GMT - Petr Khartskhaev &amp;lt;pkhartsk@redhat.com&amp;gt; - 8.0.9-1
- Rebase to 8.0.9 for CVE-2026-23479 CVE-2026-25243 CVE-2026-23631

Mon, 02 Mar 2026 GMT - Lukas Javorsky &amp;lt;ljavorsk@redhat.com&amp;gt; - 8.0.7-1
- Rebase to 8.0.7 for CVE-2026-21863 CVE-2025-67733

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>valkey-8.0.11-1.el10_2.riscv64</title>
      <pubDate>Tue, 08 Sep 2026 08:51:43 AM GMT</pubDate>
      <guid isPermaLink="false">fb3fd8eb619c00c87c04c4b3c9dff649d390192a03717d37b406731b871a497f</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/v/valkey-8.0.11-1.el10_2.riscv64.rpm</link>
      <description><p><strong>valkey</strong> - A persistent key-value database&lt;br /&gt;</p>

<p>Valkey is an advanced key-value store. It is often referred to as a data&lt;br /&gt;
structure server since keys can contain strings, hashes, lists, sets and&lt;br /&gt;
sorted sets.&lt;br /&gt;
&lt;br /&gt;
You can run atomic operations on these types, like appending to a string;&lt;br /&gt;
incrementing the value in a hash; pushing to a list; computing set&lt;br /&gt;
intersection, union and difference; or getting the member with highest&lt;br /&gt;
ranking in a sorted set.&lt;br /&gt;
&lt;br /&gt;
In order to achieve its outstanding performance, Valkey works with an&lt;br /&gt;
in-memory dataset. Depending on your use case, you can persist it either&lt;br /&gt;
by dumping the dataset to disk every once in a while, or by appending&lt;br /&gt;
each command to a log.&lt;br /&gt;
&lt;br /&gt;
Valkey also supports trivial-to-setup master-slave replication, with very&lt;br /&gt;
fast non-blocking first synchronization, auto-reconnection on net split&lt;br /&gt;
and so forth.&lt;br /&gt;
&lt;br /&gt;
Other features include Transactions, Pub/Sub, Lua scripting, Keys with a&lt;br /&gt;
limited time-to-live, and configuration settings to make Valkey behave like&lt;br /&gt;
a cache.&lt;br /&gt;
&lt;br /&gt;
You can use Valkey from most programming languages also.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 02 Sep 2026 GMT - Petr Khartskhaev &amp;lt;pkhartsk@redhat.com&amp;gt; - 8.0.11-1
- Rebase to 8.0.11 for CVE-2026-56684 CVE-2026-63639 (CVE-2026-66373 in redis)

Tue, 19 May 2026 GMT - Petr Khartskhaev &amp;lt;pkhartsk@redhat.com&amp;gt; - 8.0.9-1
- Rebase to 8.0.9 for CVE-2026-23479 CVE-2026-25243 CVE-2026-23631

Mon, 02 Mar 2026 GMT - Lukas Javorsky &amp;lt;ljavorsk@redhat.com&amp;gt; - 8.0.7-1
- Rebase to 8.0.7 for CVE-2026-21863 CVE-2025-67733

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>grafana-pcp-5.3.0-8.el10_2.1.riscv64</title>
      <pubDate>Fri, 04 Sep 2026 11:07:59 AM GMT</pubDate>
      <guid isPermaLink="false">a2a4bef7a73ccfad12fe0a4bfe3417f294a52f0238938ec0a8de6b09b992c3eb</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/g/grafana-pcp-5.3.0-8.el10_2.1.riscv64.rpm</link>
      <description><p><strong>grafana-pcp</strong> - Performance Co-Pilot Grafana Plugin&lt;br /&gt;</p>

<p>This Grafana plugin for Performance Co-Pilot includes data sources for&lt;br /&gt;
scalable time series from pmseries(1) and Valkey, live PCP metrics and&lt;br /&gt;
bpftrace scripts from pmdabpftrace(1), as well as several dashboards.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 02 Sep 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 5.3.0-8.1
- Rebuilt for updated golang
- Resolves RHEL-241480, RHEL-251115, RHEL-242257, RHEL-242154, RHEL-241751

Wed, 22 Jul 2026 GMT - Sam Feifer &amp;lt;sfeifer@redhat.com&amp;gt; - 5.3.0-8
- Resolves RHEL-188287: Remove Lua ExclusiveArch macro for Konflux build

Wed, 01 Jul 2026 GMT - Sam Feifer &amp;lt;sfeifer@redhat.com&amp;gt; - 5.3.0-7
- Resolves RHEL-183688: CVE-2026-39821

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>grafana-selinux-10.2.6-28.el10_2.5.riscv64</title>
      <pubDate>Thu, 03 Sep 2026 09:46:50 AM GMT</pubDate>
      <guid isPermaLink="false">e2ca217c53716ec51a01945ab2666946ca00fbb49743cecdc29b56e36b20972d</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/g/grafana-selinux-10.2.6-28.el10_2.5.riscv64.rpm</link>
      <description><p><strong>grafana-selinux</strong> - SELinux policy module supporting grafana&lt;br /&gt;</p>

<p>SELinux policy module supporting grafana</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Mon, 31 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 10.2.6-28.5
- Rebuild against updated golang
- Resolves RHEL-241197
- Resolves RHEL-241426
- Resolves RHEL-241690
- Resolves RHEL-241975
- Resolves RHEL-242171
- Resolves RHEL-242372
- Resolves RHEL-251690
- Resolves RHEL-251818

Thu, 06 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 10.2.6-28.4
- Resolves RHEL-211020: CVE-2026-33377

Wed, 05 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 10.2.6-28.3
- Resolves RHEL-211376: CVE-2026-8609

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>grafana-10.2.6-28.el10_2.5.riscv64</title>
      <pubDate>Thu, 03 Sep 2026 09:46:50 AM GMT</pubDate>
      <guid isPermaLink="false">f0b7ba1876361a5a752ec9f69eda3ef4ebf0257ade42a4f3132c794a9c5c62c0</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/g/grafana-10.2.6-28.el10_2.5.riscv64.rpm</link>
      <description><p><strong>grafana</strong> - Metrics dashboard and graph editor&lt;br /&gt;</p>

<p>Grafana is an open source, feature rich metrics dashboard and graph editor for&lt;br /&gt;
Graphite, InfluxDB &amp; OpenTSDB.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Mon, 31 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 10.2.6-28.5
- Rebuild against updated golang
- Resolves RHEL-241197
- Resolves RHEL-241426
- Resolves RHEL-241690
- Resolves RHEL-241975
- Resolves RHEL-242171
- Resolves RHEL-242372
- Resolves RHEL-251690
- Resolves RHEL-251818

Thu, 06 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 10.2.6-28.4
- Resolves RHEL-211020: CVE-2026-33377

Wed, 05 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 10.2.6-28.3
- Resolves RHEL-211376: CVE-2026-8609

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>php-xml-8.3.33-1.el10_2.riscv64</title>
      <pubDate>Wed, 02 Sep 2026 02:30:45 PM GMT</pubDate>
      <guid isPermaLink="false">9f0ffad7090247baeeae4bc5a955fe1e91fbf8c5a8801cd5b42a9ab6d37da35a</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/php-xml-8.3.33-1.el10_2.riscv64.rpm</link>
      <description><p><strong>php-xml</strong> - A module for PHP applications which use XML&lt;br /&gt;</p>

<p>The php-xml package contains dynamic shared objects which add support&lt;br /&gt;
to PHP for manipulating XML documents using the DOM tree,&lt;br /&gt;
and performing XSL transformations on XML documents.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 05 Aug 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.33-1
- rebase to 8.3.33

Wed, 08 Jul 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.32-1
- rebase to 8.3.32

Tue, 26 May 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.31-1
- rebase to 8.3.31
- add tmpfiles.d configuration file for ImageMode

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>php-soap-8.3.33-1.el10_2.riscv64</title>
      <pubDate>Wed, 02 Sep 2026 02:30:45 PM GMT</pubDate>
      <guid isPermaLink="false">4cf253fe196362b9a243370dc1385f222cf7cab7cbb94df2064c059df736d9cd</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/php-soap-8.3.33-1.el10_2.riscv64.rpm</link>
      <description><p><strong>php-soap</strong> - A module for PHP applications that use the SOAP protocol&lt;br /&gt;</p>

<p>The php-soap package contains a dynamic shared object that will add&lt;br /&gt;
support to PHP for using the SOAP web services protocol.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 05 Aug 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.33-1
- rebase to 8.3.33

Wed, 08 Jul 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.32-1
- rebase to 8.3.32

Tue, 26 May 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.31-1
- rebase to 8.3.31
- add tmpfiles.d configuration file for ImageMode

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>php-snmp-8.3.33-1.el10_2.riscv64</title>
      <pubDate>Wed, 02 Sep 2026 02:30:45 PM GMT</pubDate>
      <guid isPermaLink="false">f7bb4cf2eb901c6085b5e06ce4725aaf20e8e59bbee0b36e11ceec4150a6f8be</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/php-snmp-8.3.33-1.el10_2.riscv64.rpm</link>
      <description><p><strong>php-snmp</strong> - A module for PHP applications that query SNMP-managed devices&lt;br /&gt;</p>

<p>The php-snmp package contains a dynamic shared object that will add&lt;br /&gt;
support for querying SNMP devices to PHP.  PHP is an HTML-embeddable&lt;br /&gt;
scripting language. If you need SNMP support for PHP applications, you&lt;br /&gt;
will need to install this package and the php package.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 05 Aug 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.33-1
- rebase to 8.3.33

Wed, 08 Jul 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.32-1
- rebase to 8.3.32

Tue, 26 May 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.31-1
- rebase to 8.3.31
- add tmpfiles.d configuration file for ImageMode

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>php-process-8.3.33-1.el10_2.riscv64</title>
      <pubDate>Wed, 02 Sep 2026 02:30:45 PM GMT</pubDate>
      <guid isPermaLink="false">a4549e907d5e8d2615135c846c0e26707d5f603733d4f5a14c813636a4c6de5f</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/php-process-8.3.33-1.el10_2.riscv64.rpm</link>
      <description><p><strong>php-process</strong> - Modules for PHP script using system process interfaces&lt;br /&gt;</p>

<p>The php-process package contains dynamic shared objects which add&lt;br /&gt;
support to PHP using system interfaces for inter-process&lt;br /&gt;
communication.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 05 Aug 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.33-1
- rebase to 8.3.33

Wed, 08 Jul 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.32-1
- rebase to 8.3.32

Tue, 26 May 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.31-1
- rebase to 8.3.31
- add tmpfiles.d configuration file for ImageMode

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>php-pgsql-8.3.33-1.el10_2.riscv64</title>
      <pubDate>Wed, 02 Sep 2026 02:30:45 PM GMT</pubDate>
      <guid isPermaLink="false">aea49e865efbfdf2a1d5f5a5d0837457ab80d15d7b297c2dfe79b872a2f0d48c</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/php-pgsql-8.3.33-1.el10_2.riscv64.rpm</link>
      <description><p><strong>php-pgsql</strong> - A PostgreSQL database module for PHP&lt;br /&gt;</p>

<p>The php-pgsql package add PostgreSQL database support to PHP.&lt;br /&gt;
PostgreSQL is an object-relational database management&lt;br /&gt;
system that supports almost all SQL constructs. PHP is an&lt;br /&gt;
HTML-embedded scripting language. If you need back-end support for&lt;br /&gt;
PostgreSQL, you should install this package in addition to the main&lt;br /&gt;
php package.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 05 Aug 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.33-1
- rebase to 8.3.33

Wed, 08 Jul 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.32-1
- rebase to 8.3.32

Tue, 26 May 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.31-1
- rebase to 8.3.31
- add tmpfiles.d configuration file for ImageMode

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>php-pdo-8.3.33-1.el10_2.riscv64</title>
      <pubDate>Wed, 02 Sep 2026 02:30:45 PM GMT</pubDate>
      <guid isPermaLink="false">0b8ca544ba8e74be66eb843015367c85e920720f7b0b3c7d55669b1c5478d48e</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/php-pdo-8.3.33-1.el10_2.riscv64.rpm</link>
      <description><p><strong>php-pdo</strong> - A database access abstraction module for PHP applications&lt;br /&gt;</p>

<p>The php-pdo package contains a dynamic shared object that will add&lt;br /&gt;
a database access abstraction layer to PHP.  This module provides&lt;br /&gt;
a common interface for accessing MySQL, PostgreSQL or other&lt;br /&gt;
databases.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 05 Aug 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.33-1
- rebase to 8.3.33

Wed, 08 Jul 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.32-1
- rebase to 8.3.32

Tue, 26 May 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.31-1
- rebase to 8.3.31
- add tmpfiles.d configuration file for ImageMode

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>php-opcache-8.3.33-1.el10_2.riscv64</title>
      <pubDate>Wed, 02 Sep 2026 02:30:45 PM GMT</pubDate>
      <guid isPermaLink="false">ea46d96780a61c27e3c051dfdfa6e7cd5e4209b58ef9e7fa066ef856b5c873d5</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/php-opcache-8.3.33-1.el10_2.riscv64.rpm</link>
      <description><p><strong>php-opcache</strong> - The Zend OPcache&lt;br /&gt;</p>

<p>The Zend OPcache provides faster PHP execution through opcode caching and&lt;br /&gt;
optimization. It improves PHP performance by storing precompiled script&lt;br /&gt;
bytecode in the shared memory. This eliminates the stages of reading code from&lt;br /&gt;
the disk and compiling it on future access. In addition, it applies a few&lt;br /&gt;
bytecode optimization patterns that make code execution faster.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 05 Aug 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.33-1
- rebase to 8.3.33

Wed, 08 Jul 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.32-1
- rebase to 8.3.32

Tue, 26 May 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.31-1
- rebase to 8.3.31
- add tmpfiles.d configuration file for ImageMode

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>php-odbc-8.3.33-1.el10_2.riscv64</title>
      <pubDate>Wed, 02 Sep 2026 02:30:45 PM GMT</pubDate>
      <guid isPermaLink="false">773e46a923d4abd3141eb98231f16978ea6c28fd721748422afb708ee3387b0d</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/php-odbc-8.3.33-1.el10_2.riscv64.rpm</link>
      <description><p><strong>php-odbc</strong> - A module for PHP applications that use ODBC databases&lt;br /&gt;</p>

<p>The php-odbc package contains a dynamic shared object that will add&lt;br /&gt;
database support through ODBC to PHP. ODBC is an open specification&lt;br /&gt;
which provides a consistent API for developers to use for accessing&lt;br /&gt;
data sources (which are often, but not always, databases). PHP is an&lt;br /&gt;
HTML-embeddable scripting language. If you need ODBC support for PHP&lt;br /&gt;
applications, you will need to install this package and the php&lt;br /&gt;
package.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 05 Aug 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.33-1
- rebase to 8.3.33

Wed, 08 Jul 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.32-1
- rebase to 8.3.32

Tue, 26 May 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.31-1
- rebase to 8.3.31
- add tmpfiles.d configuration file for ImageMode

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>php-mysqlnd-8.3.33-1.el10_2.riscv64</title>
      <pubDate>Wed, 02 Sep 2026 02:30:45 PM GMT</pubDate>
      <guid isPermaLink="false">d31bc3e9dae2f6dd793daeb97182060d57ae5e9c4a9333167e1498d9ebe95da3</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/php-mysqlnd-8.3.33-1.el10_2.riscv64.rpm</link>
      <description><p><strong>php-mysqlnd</strong> - A module for PHP applications that use MySQL databases&lt;br /&gt;</p>

<p>The php-mysqlnd package contains a dynamic shared object that will add&lt;br /&gt;
MySQL database support to PHP. MySQL is an object-relational database&lt;br /&gt;
management system. PHP is an HTML-embeddable scripting language. If&lt;br /&gt;
you need MySQL support for PHP applications, you will need to install&lt;br /&gt;
this package and the php package.&lt;br /&gt;
&lt;br /&gt;
This package use the MySQL Native Driver</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 05 Aug 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.33-1
- rebase to 8.3.33

Wed, 08 Jul 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.32-1
- rebase to 8.3.32

Tue, 26 May 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.31-1
- rebase to 8.3.31
- add tmpfiles.d configuration file for ImageMode

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>php-mbstring-8.3.33-1.el10_2.riscv64</title>
      <pubDate>Wed, 02 Sep 2026 02:30:45 PM GMT</pubDate>
      <guid isPermaLink="false">f2d6dba1ccedd5b28371356bab4a266f5bae1577cd840d539974310e13802d27</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/php-mbstring-8.3.33-1.el10_2.riscv64.rpm</link>
      <description><p><strong>php-mbstring</strong> - A module for PHP applications which need multi-byte string handling&lt;br /&gt;</p>

<p>The php-mbstring package contains a dynamic shared object that will add&lt;br /&gt;
support for multi-byte string handling to PHP.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 05 Aug 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.33-1
- rebase to 8.3.33

Wed, 08 Jul 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.32-1
- rebase to 8.3.32

Tue, 26 May 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.31-1
- rebase to 8.3.31
- add tmpfiles.d configuration file for ImageMode

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>php-ldap-8.3.33-1.el10_2.riscv64</title>
      <pubDate>Wed, 02 Sep 2026 02:30:45 PM GMT</pubDate>
      <guid isPermaLink="false">ac8b60f9c86ab09b5be5ff9e23b5bb57178d8694a7f65fda435fad528b07658d</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/php-ldap-8.3.33-1.el10_2.riscv64.rpm</link>
      <description><p><strong>php-ldap</strong> - A module for PHP applications that use LDAP&lt;br /&gt;</p>

<p>The php-ldap adds Lightweight Directory Access Protocol (LDAP)&lt;br /&gt;
support to PHP. LDAP is a set of protocols for accessing directory&lt;br /&gt;
services over the Internet. PHP is an HTML-embedded scripting&lt;br /&gt;
language.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 05 Aug 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.33-1
- rebase to 8.3.33

Wed, 08 Jul 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.32-1
- rebase to 8.3.32

Tue, 26 May 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.31-1
- rebase to 8.3.31
- add tmpfiles.d configuration file for ImageMode

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>php-intl-8.3.33-1.el10_2.riscv64</title>
      <pubDate>Wed, 02 Sep 2026 02:30:45 PM GMT</pubDate>
      <guid isPermaLink="false">fa74813f51d8e96e4891d4343b08c1af3975e3a0aea4858e491ea5323aedd03d</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/php-intl-8.3.33-1.el10_2.riscv64.rpm</link>
      <description><p><strong>php-intl</strong> - Internationalization extension for PHP applications&lt;br /&gt;</p>

<p>The php-intl package contains a dynamic shared object that will add&lt;br /&gt;
support for using the ICU library to PHP.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 05 Aug 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.33-1
- rebase to 8.3.33

Wed, 08 Jul 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.32-1
- rebase to 8.3.32

Tue, 26 May 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.31-1
- rebase to 8.3.31
- add tmpfiles.d configuration file for ImageMode

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>php-gmp-8.3.33-1.el10_2.riscv64</title>
      <pubDate>Wed, 02 Sep 2026 02:30:45 PM GMT</pubDate>
      <guid isPermaLink="false">6006f9f270d1229776451be14b839b7f8796cacb3360a2904f82f4dffdfdbf06</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/php-gmp-8.3.33-1.el10_2.riscv64.rpm</link>
      <description><p><strong>php-gmp</strong> - A module for PHP applications for using the GNU MP library&lt;br /&gt;</p>

<p>These functions allow you to work with arbitrary-length integers&lt;br /&gt;
using the GNU MP library.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 05 Aug 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.33-1
- rebase to 8.3.33

Wed, 08 Jul 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.32-1
- rebase to 8.3.32

Tue, 26 May 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.31-1
- rebase to 8.3.31
- add tmpfiles.d configuration file for ImageMode

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>php-gd-8.3.33-1.el10_2.riscv64</title>
      <pubDate>Wed, 02 Sep 2026 02:30:45 PM GMT</pubDate>
      <guid isPermaLink="false">ce6f3975765fe4a88d907f1304410fe41d633e4cebab33d8d160ec155fc0c5cf</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/php-gd-8.3.33-1.el10_2.riscv64.rpm</link>
      <description><p><strong>php-gd</strong> - A module for PHP applications for using the gd graphics library&lt;br /&gt;</p>

<p>The php-gd package contains a dynamic shared object that will add&lt;br /&gt;
support for using the gd graphics library to PHP.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 05 Aug 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.33-1
- rebase to 8.3.33

Wed, 08 Jul 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.32-1
- rebase to 8.3.32

Tue, 26 May 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.31-1
- rebase to 8.3.31
- add tmpfiles.d configuration file for ImageMode

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>php-fpm-8.3.33-1.el10_2.riscv64</title>
      <pubDate>Wed, 02 Sep 2026 02:30:45 PM GMT</pubDate>
      <guid isPermaLink="false">2de4a2ed7ef11ae92533c079e056dc13962548a0d4395b35c0583daa28dca852</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/php-fpm-8.3.33-1.el10_2.riscv64.rpm</link>
      <description><p><strong>php-fpm</strong> - PHP FastCGI Process Manager&lt;br /&gt;</p>

<p>PHP-FPM (FastCGI Process Manager) is an alternative PHP FastCGI&lt;br /&gt;
implementation with some additional features useful for sites of&lt;br /&gt;
any size, especially busier sites.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 05 Aug 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.33-1
- rebase to 8.3.33

Wed, 08 Jul 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.32-1
- rebase to 8.3.32

Tue, 26 May 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.31-1
- rebase to 8.3.31
- add tmpfiles.d configuration file for ImageMode

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>php-ffi-8.3.33-1.el10_2.riscv64</title>
      <pubDate>Wed, 02 Sep 2026 02:30:45 PM GMT</pubDate>
      <guid isPermaLink="false">93c7156ae99637099d241887fc2fa635ca491c053880cf7d5de416b76eaa05ba</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/php-ffi-8.3.33-1.el10_2.riscv64.rpm</link>
      <description><p><strong>php-ffi</strong> - Foreign Function Interface&lt;br /&gt;</p>

<p>FFI is one of the features that made Python and LuaJIT very useful for fast&lt;br /&gt;
prototyping. It allows calling C functions and using C data types from pure&lt;br /&gt;
scripting language and therefore develop “system code” more productively.&lt;br /&gt;
&lt;br /&gt;
For PHP, FFI opens a way to write PHP extensions and bindings to C libraries&lt;br /&gt;
in pure PHP.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 05 Aug 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.33-1
- rebase to 8.3.33

Wed, 08 Jul 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.32-1
- rebase to 8.3.32

Tue, 26 May 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.31-1
- rebase to 8.3.31
- add tmpfiles.d configuration file for ImageMode

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>php-enchant-8.3.33-1.el10_2.riscv64</title>
      <pubDate>Wed, 02 Sep 2026 02:30:45 PM GMT</pubDate>
      <guid isPermaLink="false">467461d22a88fe0ce32494a14fffb645eeb77c27102ef67db67ea7c2f0e389e4</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/php-enchant-8.3.33-1.el10_2.riscv64.rpm</link>
      <description><p><strong>php-enchant</strong> - Enchant spelling extension for PHP applications&lt;br /&gt;</p>

<p>The php-enchant package contains a dynamic shared object that will add&lt;br /&gt;
support for using the enchant library to PHP.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 05 Aug 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.33-1
- rebase to 8.3.33

Wed, 08 Jul 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.32-1
- rebase to 8.3.32

Tue, 26 May 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.31-1
- rebase to 8.3.31
- add tmpfiles.d configuration file for ImageMode

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>php-embedded-8.3.33-1.el10_2.riscv64</title>
      <pubDate>Wed, 02 Sep 2026 02:30:45 PM GMT</pubDate>
      <guid isPermaLink="false">be847baa506013c2ce22b53c202f9da8a0508ff65b7ad6826585b9c8bb46ff91</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/php-embedded-8.3.33-1.el10_2.riscv64.rpm</link>
      <description><p><strong>php-embedded</strong> - PHP library for embedding in applications&lt;br /&gt;</p>

<p>The php-embedded package contains a library which can be embedded&lt;br /&gt;
into applications to provide PHP scripting language support.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 05 Aug 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.33-1
- rebase to 8.3.33

Wed, 08 Jul 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.32-1
- rebase to 8.3.32

Tue, 26 May 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.31-1
- rebase to 8.3.31
- add tmpfiles.d configuration file for ImageMode

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>php-devel-8.3.33-1.el10_2.riscv64</title>
      <pubDate>Wed, 02 Sep 2026 02:30:45 PM GMT</pubDate>
      <guid isPermaLink="false">c5bfed4e0fd847d27cde7008ae9346ebf16d4167f1cf1c76e1c52b054d1ce59d</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/php-devel-8.3.33-1.el10_2.riscv64.rpm</link>
      <description><p><strong>php-devel</strong> - Files needed for building PHP extensions&lt;br /&gt;</p>

<p>The php-devel package contains the files needed for building PHP&lt;br /&gt;
extensions. If you need to compile your own PHP extensions, you will&lt;br /&gt;
need to install this package.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 05 Aug 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.33-1
- rebase to 8.3.33

Wed, 08 Jul 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.32-1
- rebase to 8.3.32

Tue, 26 May 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.31-1
- rebase to 8.3.31
- add tmpfiles.d configuration file for ImageMode

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>php-dbg-8.3.33-1.el10_2.riscv64</title>
      <pubDate>Wed, 02 Sep 2026 02:30:45 PM GMT</pubDate>
      <guid isPermaLink="false">bad977165a18ca03e3ace1a0f4da02ee2eae521937d19aa7aa940530ed609b38</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/php-dbg-8.3.33-1.el10_2.riscv64.rpm</link>
      <description><p><strong>php-dbg</strong> - The interactive PHP debugger&lt;br /&gt;</p>

<p>The php-dbg package contains the interactive PHP debugger.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 05 Aug 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.33-1
- rebase to 8.3.33

Wed, 08 Jul 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.32-1
- rebase to 8.3.32

Tue, 26 May 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.31-1
- rebase to 8.3.31
- add tmpfiles.d configuration file for ImageMode

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>php-dba-8.3.33-1.el10_2.riscv64</title>
      <pubDate>Wed, 02 Sep 2026 02:30:45 PM GMT</pubDate>
      <guid isPermaLink="false">2554a525b65959cae73ca95c2c9b0816143c8d3a7e29ebdc44447a4244e68c83</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/php-dba-8.3.33-1.el10_2.riscv64.rpm</link>
      <description><p><strong>php-dba</strong> - A database abstraction layer module for PHP applications&lt;br /&gt;</p>

<p>The php-dba package contains a dynamic shared object that will add&lt;br /&gt;
support for using the DBA database abstraction layer to PHP.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 05 Aug 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.33-1
- rebase to 8.3.33

Wed, 08 Jul 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.32-1
- rebase to 8.3.32

Tue, 26 May 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.31-1
- rebase to 8.3.31
- add tmpfiles.d configuration file for ImageMode

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>php-common-8.3.33-1.el10_2.riscv64</title>
      <pubDate>Wed, 02 Sep 2026 02:30:45 PM GMT</pubDate>
      <guid isPermaLink="false">d3be0d714074eeb05ba675965521b03da74deec61dcabf064e681fbdf6f7385e</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/php-common-8.3.33-1.el10_2.riscv64.rpm</link>
      <description><p><strong>php-common</strong> - Common files for PHP&lt;br /&gt;</p>

<p>The php-common package contains files used by both the php&lt;br /&gt;
package and the php-cli package.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 05 Aug 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.33-1
- rebase to 8.3.33

Wed, 08 Jul 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.32-1
- rebase to 8.3.32

Tue, 26 May 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.31-1
- rebase to 8.3.31
- add tmpfiles.d configuration file for ImageMode

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>php-cli-8.3.33-1.el10_2.riscv64</title>
      <pubDate>Wed, 02 Sep 2026 02:30:45 PM GMT</pubDate>
      <guid isPermaLink="false">105c06ea901c5f0c14f50f51b91eb43622f5af03b3bcc39ade11cc188cff9066</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/php-cli-8.3.33-1.el10_2.riscv64.rpm</link>
      <description><p><strong>php-cli</strong> - Command-line interface for PHP&lt;br /&gt;</p>

<p>The php-cli package contains the command-line interface&lt;br /&gt;
executing PHP scripts, /usr/bin/php, and the CGI interface.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 05 Aug 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.33-1
- rebase to 8.3.33

Wed, 08 Jul 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.32-1
- rebase to 8.3.32

Tue, 26 May 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.31-1
- rebase to 8.3.31
- add tmpfiles.d configuration file for ImageMode

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>php-bcmath-8.3.33-1.el10_2.riscv64</title>
      <pubDate>Wed, 02 Sep 2026 02:30:45 PM GMT</pubDate>
      <guid isPermaLink="false">3a40beeaae1cdbd518449185bf8039b053b228808cc470d9e0af84eb33fadd42</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/php-bcmath-8.3.33-1.el10_2.riscv64.rpm</link>
      <description><p><strong>php-bcmath</strong> - A module for PHP applications for using the bcmath library&lt;br /&gt;</p>

<p>The php-bcmath package contains a dynamic shared object that will add&lt;br /&gt;
support for using the bcmath library to PHP.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 05 Aug 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.33-1
- rebase to 8.3.33

Wed, 08 Jul 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.32-1
- rebase to 8.3.32

Tue, 26 May 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.31-1
- rebase to 8.3.31
- add tmpfiles.d configuration file for ImageMode

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>php-8.3.33-1.el10_2.riscv64</title>
      <pubDate>Wed, 02 Sep 2026 02:30:45 PM GMT</pubDate>
      <guid isPermaLink="false">d365f2573927ba4e4d935443fc6e1ac9f707b4e02b4c904952537599fd68fc27</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/php-8.3.33-1.el10_2.riscv64.rpm</link>
      <description><p><strong>php</strong> - PHP scripting language for creating dynamic web sites&lt;br /&gt;</p>

<p>PHP is an HTML-embedded scripting language. PHP attempts to make it&lt;br /&gt;
easy for developers to write dynamically generated web pages. PHP also&lt;br /&gt;
offers built-in database integration for several commercial and&lt;br /&gt;
non-commercial database management systems, so writing a&lt;br /&gt;
database-enabled webpage with PHP is fairly simple. The most common&lt;br /&gt;
use of PHP coding is probably as a replacement for CGI scripts.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 05 Aug 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.33-1
- rebase to 8.3.33

Wed, 08 Jul 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.32-1
- rebase to 8.3.32

Tue, 26 May 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.3.31-1
- rebase to 8.3.31
- add tmpfiles.d configuration file for ImageMode

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>ipp-usb-0.9.27-7.el10_2.3.riscv64</title>
      <pubDate>Wed, 02 Sep 2026 02:29:08 PM GMT</pubDate>
      <guid isPermaLink="false">0514b67a3d83e4848c11e116f0809e1c0b374009e9062150b2082f0e35bcc58a</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/i/ipp-usb-0.9.27-7.el10_2.3.riscv64.rpm</link>
      <description><p><strong>ipp-usb</strong> - HTTP reverse proxy capable of IPP-over-USB connection&lt;br /&gt;</p>

<p>&lt;br /&gt;
HTTP reverse proxy, backed by IPP-over-USB connection to device. It enables&lt;br /&gt;
 driverless support for USB devices capable of using IPP-over-USB protocol.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Mon, 31 Aug 2026 GMT - Zdenek Dohnal &amp;lt;zdohnal@redhat.com&amp;gt; - 0.9.27-7.3
- Rebuilt with golang-1.26.7-1.el10_2 to fix
  CVE-2026-42504,CVE-2026-33818,CVE-2026-56853,CVE-2026-56859,CVE-2026-56860,CVE-2026-56862

Mon, 29 Jun 2026 GMT - Zdenek Dohnal &amp;lt;zdohnal@redhat.com&amp;gt; - 0.9.27-7.2
- rebuilt with golang-1.26.4-1.el10_2 to fix CVE-2026-33811, CVE-2026-27145

Tue, 02 Jun 2026 GMT - Zdenek Dohnal &amp;lt;zdohnal@redhat.com&amp;gt; - 0.9.27-7.1
- rebuilt with golang-1.26.3-4.el10_2 to fix CVE-2026-32281

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>wget-1.24.5-8.el10_2.riscv64</title>
      <pubDate>Tue, 01 Sep 2026 10:10:29 PM GMT</pubDate>
      <guid isPermaLink="false">af6cf2e04eefabdc7e14db043b7421092915e65209b0c9fe56e0aa31d498d57d</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/w/wget-1.24.5-8.el10_2.riscv64.rpm</link>
      <description><p><strong>wget</strong> - A utility for retrieving files using the HTTP or FTP protocols&lt;br /&gt;</p>

<p>GNU Wget is a file retrieval utility which can use either the HTTP or&lt;br /&gt;
FTP protocols. Wget features include the ability to work in the&lt;br /&gt;
background while you are logged out, recursive retrieval of&lt;br /&gt;
directories, file name wildcard matching, remote file timestamp&lt;br /&gt;
storage and comparison, use of Rest with FTP servers and Range with&lt;br /&gt;
HTTP servers to retrieve files over slow or unstable connections,&lt;br /&gt;
support for Proxy servers, and configurability.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Mon, 03 Aug 2026 GMT - Michal Ruprich &amp;lt;mruprich@redhat.com&amp;gt; - 1.24.5-8
- Resolves: RHEL-220498 - async unsafe code in signal handler context

Wed, 15 Jul 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 1.24.5-7
- Fix CVE-2026-58471: buffer overflow in convert_fname()
  Resolves: RHEL-194518

Wed, 15 Jul 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 1.24.5-6
- Fix integer and buffer overflow in html_quote_string()
  Resolves: RHEL-210625

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>nodejs-npm-1:10.9.8-1.22.23.2.1.el10_2.riscv64</title>
      <pubDate>Tue, 01 Sep 2026 09:17:19 AM GMT</pubDate>
      <guid isPermaLink="false">117ea00dfaaf19f91130ffc21a9b62c89497eb4ac8b9c0c3bdbe1dd03221692c</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/n/nodejs-npm-10.9.8-1.22.23.2.1.el10_2.riscv64.rpm</link>
      <description><p><strong>nodejs-npm</strong> - Node.js Package Manager&lt;br /&gt;</p>

<p>npm is a package manager for node.js. You can use it to install and publish&lt;br /&gt;
your node programs. It manages dependencies and does other cool stuff.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Mon, 10 Aug 2026 GMT - tjuhasz &amp;lt;tjuhasz@redhat.com&amp;gt; - 1:22.23.2-1
- Update to version 22.23.2

Tue, 04 Aug 2026 GMT - tjuhasz &amp;lt;tjuhasz@redhat.com&amp;gt; - 1:22.23.1-6
- Fix for CVE-2026-69152

Tue, 04 Aug 2026 GMT - tjuhasz &amp;lt;tjuhasz@redhat.com&amp;gt; - 1:22.23.1-5
- Fix for CVE-2026-69192 &amp;amp; CVE-2026-54272 : ip-address

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>nodejs-libs-1:22.23.2-1.el10_2.riscv64</title>
      <pubDate>Tue, 01 Sep 2026 09:17:19 AM GMT</pubDate>
      <guid isPermaLink="false">ceea07dbb23a0737d2a0890968e4eab7f6039436c695fe73777d9beebe00acd9</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/n/nodejs-libs-22.23.2-1.el10_2.riscv64.rpm</link>
      <description><p><strong>nodejs-libs</strong> - Node.js and v8 libraries&lt;br /&gt;</p>

<p>Libraries to support Node.js and provide stable v8 interfaces.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Mon, 10 Aug 2026 GMT - tjuhasz &amp;lt;tjuhasz@redhat.com&amp;gt; - 1:22.23.2-1
- Update to version 22.23.2

Tue, 04 Aug 2026 GMT - tjuhasz &amp;lt;tjuhasz@redhat.com&amp;gt; - 1:22.23.1-6
- Fix for CVE-2026-69152

Tue, 04 Aug 2026 GMT - tjuhasz &amp;lt;tjuhasz@redhat.com&amp;gt; - 1:22.23.1-5
- Fix for CVE-2026-69192 &amp;amp; CVE-2026-54272 : ip-address

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>nodejs-full-i18n-1:22.23.2-1.el10_2.riscv64</title>
      <pubDate>Tue, 01 Sep 2026 09:17:19 AM GMT</pubDate>
      <guid isPermaLink="false">51a23626246368c6d928614a5fbc3e97654edab9c3e1f9302d4894c7cbfc9d7d</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/n/nodejs-full-i18n-22.23.2-1.el10_2.riscv64.rpm</link>
      <description><p><strong>nodejs-full-i18n</strong> - Non-English locale data for Node.js&lt;br /&gt;</p>

<p>Optional data files to provide full-icu support for Node.js. Remove this&lt;br /&gt;
package to save space if non-English locales are not needed.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Mon, 10 Aug 2026 GMT - tjuhasz &amp;lt;tjuhasz@redhat.com&amp;gt; - 1:22.23.2-1
- Update to version 22.23.2

Tue, 04 Aug 2026 GMT - tjuhasz &amp;lt;tjuhasz@redhat.com&amp;gt; - 1:22.23.1-6
- Fix for CVE-2026-69152

Tue, 04 Aug 2026 GMT - tjuhasz &amp;lt;tjuhasz@redhat.com&amp;gt; - 1:22.23.1-5
- Fix for CVE-2026-69192 &amp;amp; CVE-2026-54272 : ip-address

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>nodejs-devel-1:22.23.2-1.el10_2.riscv64</title>
      <pubDate>Tue, 01 Sep 2026 09:17:19 AM GMT</pubDate>
      <guid isPermaLink="false">c896bbcd42894caad60f8327920155853177981bea5a87aedb4596f5fc38516f</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/n/nodejs-devel-22.23.2-1.el10_2.riscv64.rpm</link>
      <description><p><strong>nodejs-devel</strong> - JavaScript runtime - development headers&lt;br /&gt;</p>

<p>Development headers for the Node.js JavaScript runtime.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Mon, 10 Aug 2026 GMT - tjuhasz &amp;lt;tjuhasz@redhat.com&amp;gt; - 1:22.23.2-1
- Update to version 22.23.2

Tue, 04 Aug 2026 GMT - tjuhasz &amp;lt;tjuhasz@redhat.com&amp;gt; - 1:22.23.1-6
- Fix for CVE-2026-69152

Tue, 04 Aug 2026 GMT - tjuhasz &amp;lt;tjuhasz@redhat.com&amp;gt; - 1:22.23.1-5
- Fix for CVE-2026-69192 &amp;amp; CVE-2026-54272 : ip-address

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>nodejs-1:22.23.2-1.el10_2.riscv64</title>
      <pubDate>Tue, 01 Sep 2026 09:17:19 AM GMT</pubDate>
      <guid isPermaLink="false">6a79b3f1833a881d53a442c9f5060da49f58ae36190f161a559848a74ecc7f52</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/n/nodejs-22.23.2-1.el10_2.riscv64.rpm</link>
      <description><p><strong>nodejs</strong> - JavaScript runtime&lt;br /&gt;</p>

<p>Node.js is a platform built on Chrome's JavaScript runtime \&lt;br /&gt;
for easily building fast, scalable network applications. \&lt;br /&gt;
Node.js uses an event-driven, non-blocking I/O model that \&lt;br /&gt;
makes it lightweight and efficient, perfect for data-intensive \&lt;br /&gt;
real-time applications that run across distributed devices.}</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Mon, 10 Aug 2026 GMT - tjuhasz &amp;lt;tjuhasz@redhat.com&amp;gt; - 1:22.23.2-1
- Update to version 22.23.2

Tue, 04 Aug 2026 GMT - tjuhasz &amp;lt;tjuhasz@redhat.com&amp;gt; - 1:22.23.1-6
- Fix for CVE-2026-69152

Tue, 04 Aug 2026 GMT - tjuhasz &amp;lt;tjuhasz@redhat.com&amp;gt; - 1:22.23.1-5
- Fix for CVE-2026-69192 &amp;amp; CVE-2026-54272 : ip-address

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>nodejs-docs-1:22.23.2-1.el10_2.noarch</title>
      <pubDate>Tue, 01 Sep 2026 09:11:38 AM GMT</pubDate>
      <guid isPermaLink="false">9533edd7d933e617afda30a4dd138cd46b80e4ed17134ddf6c1f3159b473a5ae</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/n/nodejs-docs-22.23.2-1.el10_2.noarch.rpm</link>
      <description><p><strong>nodejs-docs</strong> - Node.js API documentation&lt;br /&gt;</p>

<p>The API documentation for the Node.js JavaScript runtime.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Mon, 10 Aug 2026 GMT - tjuhasz &amp;lt;tjuhasz@redhat.com&amp;gt; - 1:22.23.2-1
- Update to version 22.23.2

Tue, 04 Aug 2026 GMT - tjuhasz &amp;lt;tjuhasz@redhat.com&amp;gt; - 1:22.23.1-6
- Fix for CVE-2026-69152

Tue, 04 Aug 2026 GMT - tjuhasz &amp;lt;tjuhasz@redhat.com&amp;gt; - 1:22.23.1-5
- Fix for CVE-2026-69192 &amp;amp; CVE-2026-54272 : ip-address

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>iperf3-3.17.1-6.el10_2.1.riscv64</title>
      <pubDate>Mon, 31 Aug 2026 09:47:35 PM GMT</pubDate>
      <guid isPermaLink="false">ab7e075fd7763be21c851c3ee91ab1f632339296572591a0c2d66ff3e14e122b</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/i/iperf3-3.17.1-6.el10_2.1.riscv64.rpm</link>
      <description><p><strong>iperf3</strong> - Measurement tool for TCP/UDP bandwidth performance&lt;br /&gt;</p>

<p>Iperf is a tool to measure maximum TCP bandwidth, allowing the tuning of&lt;br /&gt;
various parameters and UDP characteristics. Iperf reports bandwidth, delay&lt;br /&gt;
jitter, data-gram loss.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 12 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 3.17.1-6.1
- Fix JSON value bounds checks in get_parameters and
  iperf_parse_arguments (CVE-2026-71217)
- Resolves: RHEL-236170

Mon, 13 Apr 2026 GMT - Michal Ruprich &amp;lt;mruprich@redhat.com&amp;gt; - 3.17.1-6
- Resolves: RHEL-151876 - authentication no longer works with the new openssl

Tue, 20 Jan 2026 GMT - Michal Ruprich &amp;lt;mruprich@redhat.com&amp;gt; - 3.17.1-5
- Resolves: RHEL-136170 - iperf Heap Buffer Overflow (CVE-2025-54349)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>nodejs24-libs-1:24.19.0-1.el10_2.riscv64</title>
      <pubDate>Mon, 31 Aug 2026 02:31:31 PM GMT</pubDate>
      <guid isPermaLink="false">c7b583cbde24240f4bfed1110c378699600517c410fb6ba46e44718be3ed6290</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/n/nodejs24-libs-24.19.0-1.el10_2.riscv64.rpm</link>
      <description><p><strong>nodejs24-libs</strong> - Node.js and v8 libraries&lt;br /&gt;</p>

<p>Libraries to support Node.js and provide stable v8 interfaces.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Tue, 18 Aug 2026 GMT - tjuhasz &amp;lt;tjuhasz@redhat.com&amp;gt; - 1:24.19.0-1
- Update to version 24.19.0

Tue, 04 Aug 2026 GMT - tjuhasz &amp;lt;tjuhasz@redhat.com&amp;gt; - 1:24.18.0-5
- Fix for CVE-2026-69192 &amp;amp; CVE-2026-54272 : ip-address

Tue, 04 Aug 2026 GMT - tjuhasz &amp;lt;tjuhasz@redhat.com&amp;gt; - 1:24.18.0-4
- Fix CVE-2026-13149 (brace-expansion)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>nodejs24-full-i18n-1:24.19.0-1.el10_2.riscv64</title>
      <pubDate>Mon, 31 Aug 2026 02:31:31 PM GMT</pubDate>
      <guid isPermaLink="false">76550925c445212ab5f85f7fd6b83a0a1acd0aaba1c71a56b70ef3aac8bea91e</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/n/nodejs24-full-i18n-24.19.0-1.el10_2.riscv64.rpm</link>
      <description><p><strong>nodejs24-full-i18n</strong> - Non-English locale data for Node.js&lt;br /&gt;</p>

<p>Optional data files to provide full ICU support for Node.js.&lt;br /&gt;
Remove this package to save space if non-English locales are not needed.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Tue, 18 Aug 2026 GMT - tjuhasz &amp;lt;tjuhasz@redhat.com&amp;gt; - 1:24.19.0-1
- Update to version 24.19.0

Tue, 04 Aug 2026 GMT - tjuhasz &amp;lt;tjuhasz@redhat.com&amp;gt; - 1:24.18.0-5
- Fix for CVE-2026-69192 &amp;amp; CVE-2026-54272 : ip-address

Tue, 04 Aug 2026 GMT - tjuhasz &amp;lt;tjuhasz@redhat.com&amp;gt; - 1:24.18.0-4
- Fix CVE-2026-13149 (brace-expansion)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>nodejs24-devel-1:24.19.0-1.el10_2.riscv64</title>
      <pubDate>Mon, 31 Aug 2026 02:31:31 PM GMT</pubDate>
      <guid isPermaLink="false">0b98ca0db0d426c69db1459538d17559748eeb2263dc3b025bb8de66cb2b1948</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/n/nodejs24-devel-24.19.0-1.el10_2.riscv64.rpm</link>
      <description><p><strong>nodejs24-devel</strong> - JavaScript runtime – development headers&lt;br /&gt;</p>

<p>Development headers for the Node.js JavaScript runtime.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Tue, 18 Aug 2026 GMT - tjuhasz &amp;lt;tjuhasz@redhat.com&amp;gt; - 1:24.19.0-1
- Update to version 24.19.0

Tue, 04 Aug 2026 GMT - tjuhasz &amp;lt;tjuhasz@redhat.com&amp;gt; - 1:24.18.0-5
- Fix for CVE-2026-69192 &amp;amp; CVE-2026-54272 : ip-address

Tue, 04 Aug 2026 GMT - tjuhasz &amp;lt;tjuhasz@redhat.com&amp;gt; - 1:24.18.0-4
- Fix CVE-2026-13149 (brace-expansion)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>nodejs24-1:24.19.0-1.el10_2.riscv64</title>
      <pubDate>Mon, 31 Aug 2026 02:31:31 PM GMT</pubDate>
      <guid isPermaLink="false">646a181fef71a43268ba3be9de87c63275cd159d243e3ed06e6fb734cd4ee254</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/n/nodejs24-24.19.0-1.el10_2.riscv64.rpm</link>
      <description><p><strong>nodejs24</strong> - JavaScript runtime&lt;br /&gt;</p>

<p>Node.js is a platform built on Chrome's JavaScript runtime&lt;br /&gt;
for easily building fast, scalable network applications.&lt;br /&gt;
Node.js uses an event-driven, non-blocking I/O model that&lt;br /&gt;
makes it lightweight and efficient, perfect for data-intensive&lt;br /&gt;
real-time applications that run across distributed devices.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Tue, 18 Aug 2026 GMT - tjuhasz &amp;lt;tjuhasz@redhat.com&amp;gt; - 1:24.19.0-1
- Update to version 24.19.0

Tue, 04 Aug 2026 GMT - tjuhasz &amp;lt;tjuhasz@redhat.com&amp;gt; - 1:24.18.0-5
- Fix for CVE-2026-69192 &amp;amp; CVE-2026-54272 : ip-address

Tue, 04 Aug 2026 GMT - tjuhasz &amp;lt;tjuhasz@redhat.com&amp;gt; - 1:24.18.0-4
- Fix CVE-2026-13149 (brace-expansion)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>nodejs24-npm-1:11.17.0-1.24.19.0.1.el10_2.noarch</title>
      <pubDate>Mon, 31 Aug 2026 02:25:27 PM GMT</pubDate>
      <guid isPermaLink="false">1f6d6189a801d03442a16d0b225e38042810f73b2221598a6d14fb65751bd6fd</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/n/nodejs24-npm-11.17.0-1.24.19.0.1.el10_2.noarch.rpm</link>
      <description><p><strong>nodejs24-npm</strong> - Node.js Package Manager&lt;br /&gt;</p>

<p>npm is a package manager for node.js. You can use it to install and publish&lt;br /&gt;
your node programs. It manages dependencies and does other cool stuff.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Tue, 18 Aug 2026 GMT - tjuhasz &amp;lt;tjuhasz@redhat.com&amp;gt; - 1:24.19.0-1
- Update to version 24.19.0

Tue, 04 Aug 2026 GMT - tjuhasz &amp;lt;tjuhasz@redhat.com&amp;gt; - 1:24.18.0-5
- Fix for CVE-2026-69192 &amp;amp; CVE-2026-54272 : ip-address

Tue, 04 Aug 2026 GMT - tjuhasz &amp;lt;tjuhasz@redhat.com&amp;gt; - 1:24.18.0-4
- Fix CVE-2026-13149 (brace-expansion)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>nodejs24-docs-1:24.19.0-1.el10_2.noarch</title>
      <pubDate>Mon, 31 Aug 2026 02:25:27 PM GMT</pubDate>
      <guid isPermaLink="false">c68b9417a86be968a4e81634a88dfdf176b29768b067e2698f29c57a044da6db</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/n/nodejs24-docs-24.19.0-1.el10_2.noarch.rpm</link>
      <description><p><strong>nodejs24-docs</strong> - Node.js API documentation&lt;br /&gt;</p>

<p>The API documentation for the Node.js JavaScript runtime.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Tue, 18 Aug 2026 GMT - tjuhasz &amp;lt;tjuhasz@redhat.com&amp;gt; - 1:24.19.0-1
- Update to version 24.19.0

Tue, 04 Aug 2026 GMT - tjuhasz &amp;lt;tjuhasz@redhat.com&amp;gt; - 1:24.18.0-5
- Fix for CVE-2026-69192 &amp;amp; CVE-2026-54272 : ip-address

Tue, 04 Aug 2026 GMT - tjuhasz &amp;lt;tjuhasz@redhat.com&amp;gt; - 1:24.18.0-4
- Fix CVE-2026-13149 (brace-expansion)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pipewire-utils-1.4.11-1.el10_2.1.riscv64</title>
      <pubDate>Mon, 31 Aug 2026 08:53:46 AM GMT</pubDate>
      <guid isPermaLink="false">8b3933b5aedce27a946ef9f371cc9add98a604dd2e51df43edd6881de0a4d0bc</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pipewire-utils-1.4.11-1.el10_2.1.riscv64.rpm</link>
      <description><p><strong>pipewire-utils</strong> - PipeWire media server utilities&lt;br /&gt;</p>

<p>This package contains command line utilities for the PipeWire media server.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 27 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 1.4.11-1.1
- Fix CVE-2026-14324: limit RTSP Content-Length and check
  allocation in RAOP client
  Resolves: RHEL-249305

Fri, 15 May 2026 GMT - Wim Taymans &amp;lt;wtaymans@redhat.com&amp;gt; - 1.4.11-1
- Rebase to 1.4.11
- Add fixes for CVE-2026-5674
  Resolves: RHEL-164823

Mon, 30 Jun 2025 GMT - Wim Taymans &amp;lt;wtaymans@redhat.com&amp;gt; - 1.4-6-1
- Update version to 1.4.6
  Resolves: DESKTOP-1857

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pipewire-pulseaudio-1.4.11-1.el10_2.1.riscv64</title>
      <pubDate>Mon, 31 Aug 2026 08:53:46 AM GMT</pubDate>
      <guid isPermaLink="false">b00a55f17de0cd1b8f60ef53ca4e754e058ee2ae3ae9c149c307771615a10220</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pipewire-pulseaudio-1.4.11-1.el10_2.1.riscv64.rpm</link>
      <description><p><strong>pipewire-pulseaudio</strong> - PipeWire PulseAudio implementation&lt;br /&gt;</p>

<p>This package provides a PulseAudio implementation based on PipeWire</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 27 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 1.4.11-1.1
- Fix CVE-2026-14324: limit RTSP Content-Length and check
  allocation in RAOP client
  Resolves: RHEL-249305

Fri, 15 May 2026 GMT - Wim Taymans &amp;lt;wtaymans@redhat.com&amp;gt; - 1.4.11-1
- Rebase to 1.4.11
- Add fixes for CVE-2026-5674
  Resolves: RHEL-164823

Mon, 30 Jun 2025 GMT - Wim Taymans &amp;lt;wtaymans@redhat.com&amp;gt; - 1.4-6-1
- Update version to 1.4.6
  Resolves: DESKTOP-1857

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pipewire-plugin-libcamera-1.4.11-1.el10_2.1.riscv64</title>
      <pubDate>Mon, 31 Aug 2026 08:53:46 AM GMT</pubDate>
      <guid isPermaLink="false">3f8782891477b2bf3e3ef62637a033e80a3ceab2f06097a60d2ed89bdaa0e079</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pipewire-plugin-libcamera-1.4.11-1.el10_2.1.riscv64.rpm</link>
      <description><p><strong>pipewire-plugin-libcamera</strong> - PipeWire media server libcamera support&lt;br /&gt;</p>

<p>This package contains the PipeWire spa plugin to access cameras through libcamera.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 27 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 1.4.11-1.1
- Fix CVE-2026-14324: limit RTSP Content-Length and check
  allocation in RAOP client
  Resolves: RHEL-249305

Fri, 15 May 2026 GMT - Wim Taymans &amp;lt;wtaymans@redhat.com&amp;gt; - 1.4.11-1
- Rebase to 1.4.11
- Add fixes for CVE-2026-5674
  Resolves: RHEL-164823

Mon, 30 Jun 2025 GMT - Wim Taymans &amp;lt;wtaymans@redhat.com&amp;gt; - 1.4-6-1
- Update version to 1.4.6
  Resolves: DESKTOP-1857

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pipewire-module-x11-1.4.11-1.el10_2.1.riscv64</title>
      <pubDate>Mon, 31 Aug 2026 08:53:46 AM GMT</pubDate>
      <guid isPermaLink="false">e580cfa893b8201042387ed9feab3a809725d72688c70f597309ddafbe55c06d</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pipewire-module-x11-1.4.11-1.el10_2.1.riscv64.rpm</link>
      <description><p><strong>pipewire-module-x11</strong> - PipeWire media server x11 support&lt;br /&gt;</p>

<p>This package contains X11 bell support for PipeWire.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 27 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 1.4.11-1.1
- Fix CVE-2026-14324: limit RTSP Content-Length and check
  allocation in RAOP client
  Resolves: RHEL-249305

Fri, 15 May 2026 GMT - Wim Taymans &amp;lt;wtaymans@redhat.com&amp;gt; - 1.4.11-1
- Rebase to 1.4.11
- Add fixes for CVE-2026-5674
  Resolves: RHEL-164823

Mon, 30 Jun 2025 GMT - Wim Taymans &amp;lt;wtaymans@redhat.com&amp;gt; - 1.4-6-1
- Update version to 1.4.6
  Resolves: DESKTOP-1857

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pipewire-libs-1.4.11-1.el10_2.1.riscv64</title>
      <pubDate>Mon, 31 Aug 2026 08:53:46 AM GMT</pubDate>
      <guid isPermaLink="false">36e16fd47c2a653061cd9a6e78249da0851e449667419b172900204dcf4abbff</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pipewire-libs-1.4.11-1.el10_2.1.riscv64.rpm</link>
      <description><p><strong>pipewire-libs</strong> - Libraries for PipeWire clients&lt;br /&gt;</p>

<p>This package contains the runtime libraries for any application that wishes&lt;br /&gt;
to interface with a PipeWire media server.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 27 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 1.4.11-1.1
- Fix CVE-2026-14324: limit RTSP Content-Length and check
  allocation in RAOP client
  Resolves: RHEL-249305

Fri, 15 May 2026 GMT - Wim Taymans &amp;lt;wtaymans@redhat.com&amp;gt; - 1.4.11-1
- Rebase to 1.4.11
- Add fixes for CVE-2026-5674
  Resolves: RHEL-164823

Mon, 30 Jun 2025 GMT - Wim Taymans &amp;lt;wtaymans@redhat.com&amp;gt; - 1.4-6-1
- Update version to 1.4.6
  Resolves: DESKTOP-1857

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pipewire-jack-audio-connection-kit-libs-1.4.11-1.el10_2.1.riscv64</title>
      <pubDate>Mon, 31 Aug 2026 08:53:46 AM GMT</pubDate>
      <guid isPermaLink="false">308177598919555c4997f55721ff1e7652b4e3eff7b786a88ac0a825efff2c95</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pipewire-jack-audio-connection-kit-libs-1.4.11-1.el10_2.1.riscv64.rpm</link>
      <description><p><strong>pipewire-jack-audio-connection-kit-libs</strong> - PipeWire JACK implementation libraries&lt;br /&gt;</p>

<p>This package provides a JACK implementation libraries based on PipeWire</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 27 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 1.4.11-1.1
- Fix CVE-2026-14324: limit RTSP Content-Length and check
  allocation in RAOP client
  Resolves: RHEL-249305

Fri, 15 May 2026 GMT - Wim Taymans &amp;lt;wtaymans@redhat.com&amp;gt; - 1.4.11-1
- Rebase to 1.4.11
- Add fixes for CVE-2026-5674
  Resolves: RHEL-164823

Mon, 30 Jun 2025 GMT - Wim Taymans &amp;lt;wtaymans@redhat.com&amp;gt; - 1.4-6-1
- Update version to 1.4.6
  Resolves: DESKTOP-1857

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pipewire-jack-audio-connection-kit-devel-1.4.11-1.el10_2.1.riscv64</title>
      <pubDate>Mon, 31 Aug 2026 08:53:46 AM GMT</pubDate>
      <guid isPermaLink="false">90f16b57ab8d6db3bbd8fc7572762e7dfeed8952e678224f670cc76766b12e3c</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pipewire-jack-audio-connection-kit-devel-1.4.11-1.el10_2.1.riscv64.rpm</link>
      <description><p><strong>pipewire-jack-audio-connection-kit-devel</strong> - Development files for pipewire-jack-audio-connection-kit&lt;br /&gt;</p>

<p>This package provides development files for building JACK applications&lt;br /&gt;
using PipeWire's JACK library.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 27 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 1.4.11-1.1
- Fix CVE-2026-14324: limit RTSP Content-Length and check
  allocation in RAOP client
  Resolves: RHEL-249305

Fri, 15 May 2026 GMT - Wim Taymans &amp;lt;wtaymans@redhat.com&amp;gt; - 1.4.11-1
- Rebase to 1.4.11
- Add fixes for CVE-2026-5674
  Resolves: RHEL-164823

Mon, 30 Jun 2025 GMT - Wim Taymans &amp;lt;wtaymans@redhat.com&amp;gt; - 1.4-6-1
- Update version to 1.4.6
  Resolves: DESKTOP-1857

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pipewire-jack-audio-connection-kit-1.4.11-1.el10_2.1.riscv64</title>
      <pubDate>Mon, 31 Aug 2026 08:53:46 AM GMT</pubDate>
      <guid isPermaLink="false">c7c8a8eab3a03bf3742634abccb6425d8fe56ca22650bbd5489c0375d2b3d911</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pipewire-jack-audio-connection-kit-1.4.11-1.el10_2.1.riscv64.rpm</link>
      <description><p><strong>pipewire-jack-audio-connection-kit</strong> - PipeWire JACK implementation&lt;br /&gt;</p>

<p>This package provides a JACK implementation based on PipeWire</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 27 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 1.4.11-1.1
- Fix CVE-2026-14324: limit RTSP Content-Length and check
  allocation in RAOP client
  Resolves: RHEL-249305

Fri, 15 May 2026 GMT - Wim Taymans &amp;lt;wtaymans@redhat.com&amp;gt; - 1.4.11-1
- Rebase to 1.4.11
- Add fixes for CVE-2026-5674
  Resolves: RHEL-164823

Mon, 30 Jun 2025 GMT - Wim Taymans &amp;lt;wtaymans@redhat.com&amp;gt; - 1.4-6-1
- Update version to 1.4.6
  Resolves: DESKTOP-1857

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pipewire-gstreamer-1.4.11-1.el10_2.1.riscv64</title>
      <pubDate>Mon, 31 Aug 2026 08:53:46 AM GMT</pubDate>
      <guid isPermaLink="false">dcadd93e0f224de44f8faf8884425a3935412e38dbe158192125c129c825460e</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pipewire-gstreamer-1.4.11-1.el10_2.1.riscv64.rpm</link>
      <description><p><strong>pipewire-gstreamer</strong> - GStreamer elements for PipeWire&lt;br /&gt;</p>

<p>This package contains GStreamer elements to interface with a&lt;br /&gt;
PipeWire media server.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 27 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 1.4.11-1.1
- Fix CVE-2026-14324: limit RTSP Content-Length and check
  allocation in RAOP client
  Resolves: RHEL-249305

Fri, 15 May 2026 GMT - Wim Taymans &amp;lt;wtaymans@redhat.com&amp;gt; - 1.4.11-1
- Rebase to 1.4.11
- Add fixes for CVE-2026-5674
  Resolves: RHEL-164823

Mon, 30 Jun 2025 GMT - Wim Taymans &amp;lt;wtaymans@redhat.com&amp;gt; - 1.4-6-1
- Update version to 1.4.6
  Resolves: DESKTOP-1857

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pipewire-devel-1.4.11-1.el10_2.1.riscv64</title>
      <pubDate>Mon, 31 Aug 2026 08:53:46 AM GMT</pubDate>
      <guid isPermaLink="false">6b2b9867ea637c5cbbb9a5c85870f2d78911a577a4f1c9ad23bf93dae7b1a8ff</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pipewire-devel-1.4.11-1.el10_2.1.riscv64.rpm</link>
      <description><p><strong>pipewire-devel</strong> - Headers and libraries for PipeWire client development&lt;br /&gt;</p>

<p>Headers and libraries for developing applications that can communicate with&lt;br /&gt;
a PipeWire media server.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 27 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 1.4.11-1.1
- Fix CVE-2026-14324: limit RTSP Content-Length and check
  allocation in RAOP client
  Resolves: RHEL-249305

Fri, 15 May 2026 GMT - Wim Taymans &amp;lt;wtaymans@redhat.com&amp;gt; - 1.4.11-1
- Rebase to 1.4.11
- Add fixes for CVE-2026-5674
  Resolves: RHEL-164823

Mon, 30 Jun 2025 GMT - Wim Taymans &amp;lt;wtaymans@redhat.com&amp;gt; - 1.4-6-1
- Update version to 1.4.6
  Resolves: DESKTOP-1857

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pipewire-alsa-1.4.11-1.el10_2.1.riscv64</title>
      <pubDate>Mon, 31 Aug 2026 08:53:46 AM GMT</pubDate>
      <guid isPermaLink="false">5fe9cd13673d2837713ef476d942705646cc522365b93ac1e993fc903cb8f5f9</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pipewire-alsa-1.4.11-1.el10_2.1.riscv64.rpm</link>
      <description><p><strong>pipewire-alsa</strong> - PipeWire media server ALSA support&lt;br /&gt;</p>

<p>This package contains an ALSA plugin for the PipeWire media server.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 27 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 1.4.11-1.1
- Fix CVE-2026-14324: limit RTSP Content-Length and check
  allocation in RAOP client
  Resolves: RHEL-249305

Fri, 15 May 2026 GMT - Wim Taymans &amp;lt;wtaymans@redhat.com&amp;gt; - 1.4.11-1
- Rebase to 1.4.11
- Add fixes for CVE-2026-5674
  Resolves: RHEL-164823

Mon, 30 Jun 2025 GMT - Wim Taymans &amp;lt;wtaymans@redhat.com&amp;gt; - 1.4-6-1
- Update version to 1.4.6
  Resolves: DESKTOP-1857

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pipewire-1.4.11-1.el10_2.1.riscv64</title>
      <pubDate>Mon, 31 Aug 2026 08:53:46 AM GMT</pubDate>
      <guid isPermaLink="false">48b3561463348b80cb0ff2c3c295ee4acc78eecbcb33b2cd9e62fac2c57dde8b</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pipewire-1.4.11-1.el10_2.1.riscv64.rpm</link>
      <description><p><strong>pipewire</strong> - Media Sharing Server&lt;br /&gt;</p>

<p>PipeWire is a multimedia server for Linux and other Unix like operating&lt;br /&gt;
systems.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 27 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 1.4.11-1.1
- Fix CVE-2026-14324: limit RTSP Content-Length and check
  allocation in RAOP client
  Resolves: RHEL-249305

Fri, 15 May 2026 GMT - Wim Taymans &amp;lt;wtaymans@redhat.com&amp;gt; - 1.4.11-1
- Rebase to 1.4.11
- Add fixes for CVE-2026-5674
  Resolves: RHEL-164823

Mon, 30 Jun 2025 GMT - Wim Taymans &amp;lt;wtaymans@redhat.com&amp;gt; - 1.4-6-1
- Update version to 1.4.6
  Resolves: DESKTOP-1857

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>libxml2-devel-2.12.5-10.el10_2.3.riscv64</title>
      <pubDate>Thu, 27 Aug 2026 11:18:12 AM GMT</pubDate>
      <guid isPermaLink="false">483ad74038ff5bee2ce7e265eb7a3b5e790cfe04545f61c5e000a8575e8467c7</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/l/libxml2-devel-2.12.5-10.el10_2.3.riscv64.rpm</link>
      <description><p><strong>libxml2-devel</strong> - Libraries, includes, etc. to develop XML and HTML applications&lt;br /&gt;</p>

<p>Libraries, include files, etc you can use to develop XML applications.&lt;br /&gt;
This library allows to manipulate XML files. It includes support&lt;br /&gt;
to read, modify and write XML and HTML files. There is DTDs support&lt;br /&gt;
this includes parsing and validation even with complex DtDs, either&lt;br /&gt;
at parse time or later once the document has been modified. The output&lt;br /&gt;
can be a simple SAX stream or and in-memory DOM like representations.&lt;br /&gt;
In this case one can use the built-in XPath and XPointer implementation&lt;br /&gt;
to select sub nodes or ranges. A flexible Input/Output mechanism is&lt;br /&gt;
available, with existing HTTP and FTP modules and combined to an&lt;br /&gt;
URI library.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Sat, 25 Jul 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 2.12.5-10.3
- Fix CVE-2026-11979 (RHEL-215571)

Tue, 16 Jun 2026 GMT - David King &amp;lt;dking@redhat.com&amp;gt; - 2.12.5-10.2
- Fix CVE-2025-6170 (RHEL-182007)

Mon, 18 May 2026 GMT - David King &amp;lt;dking@redhat.com&amp;gt; - 2.12.5-10.1
- Fix CVE-2024-34459 (RHEL-177890)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>golang-bin-1.26.7-1.el10_2.riscv64</title>
      <pubDate>Wed, 26 Aug 2026 02:46:49 PM GMT</pubDate>
      <guid isPermaLink="false">9c4f5a2fed055cb5bbcb8ba21e92c90d3e2983440a06c52f31e2b611850d9b5f</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/g/golang-bin-1.26.7-1.el10_2.riscv64.rpm</link>
      <description><p><strong>golang-bin</strong> - Golang core compiler tools&lt;br /&gt;</p>

<p>Golang core compiler tools</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 21 Aug 2026 GMT - Archana &amp;lt;aravinda@redhat.com&amp;gt; - 1.26.7-1
- Update to Go 1.26.7 (fips-1)

Wed, 08 Jul 2026 GMT - dbenoit &amp;lt;dbenoit@redhat.com&amp;gt; - 1.26.5-1
- Update to Go 1.26.5 (fips-1)

Thu, 12 Feb 2026 GMT - dbenoit &amp;lt;dbenoit@redhat.com&amp;gt; - 1.25.7-1
- Update to Go 1.25.7 (fips-1)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>golang-1.26.7-1.el10_2.riscv64</title>
      <pubDate>Wed, 26 Aug 2026 02:46:49 PM GMT</pubDate>
      <guid isPermaLink="false">d2198f06f1aec230d91b4c89ee67c57ddcc99d000396cbb7928cc8fc3c45e102</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/g/golang-1.26.7-1.el10_2.riscv64.rpm</link>
      <description><p><strong>golang</strong> - The Go Programming Language&lt;br /&gt;</p>

<p>The Go Programming Language.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 21 Aug 2026 GMT - Archana &amp;lt;aravinda@redhat.com&amp;gt; - 1.26.7-1
- Update to Go 1.26.7 (fips-1)

Wed, 08 Jul 2026 GMT - dbenoit &amp;lt;dbenoit@redhat.com&amp;gt; - 1.26.5-1
- Update to Go 1.26.5 (fips-1)

Thu, 12 Feb 2026 GMT - dbenoit &amp;lt;dbenoit@redhat.com&amp;gt; - 1.25.7-1
- Update to Go 1.25.7 (fips-1)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>go-toolset-1.26.7-1.el10_2.riscv64</title>
      <pubDate>Wed, 26 Aug 2026 02:46:49 PM GMT</pubDate>
      <guid isPermaLink="false">606786676e1422b7ee532b1447e9401ba16879e814bf56f463fdd7d835adb6d0</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/g/go-toolset-1.26.7-1.el10_2.riscv64.rpm</link>
      <description><p><strong>go-toolset</strong> - Package that installs go-toolset&lt;br /&gt;</p>

<p>This is the main package for go-toolset.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 21 Aug 2026 GMT - Archana &amp;lt;aravinda@redhat.com&amp;gt; - 1.26.7-1
- Update to Go 1.26.7 (fips-1)

Wed, 08 Jul 2026 GMT - dbenoit &amp;lt;dbenoit@redhat.com&amp;gt; - 1.26.5-1
- Update to Go 1.26.5 (fips-1)

Thu, 12 Feb 2026 GMT - dbenoit &amp;lt;dbenoit@redhat.com&amp;gt; - 1.25.7-1
- Update to Go 1.25.7 (fips-1)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>golang-tests-1.26.7-1.el10_2.noarch</title>
      <pubDate>Wed, 26 Aug 2026 02:38:18 PM GMT</pubDate>
      <guid isPermaLink="false">926e66f5e6adbeff4c0ce353874e5b93b257111f9c134d600f038bec7dd8420b</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/g/golang-tests-1.26.7-1.el10_2.noarch.rpm</link>
      <description><p><strong>golang-tests</strong> - Golang compiler tests for stdlib&lt;br /&gt;</p>

<p>Golang compiler tests for stdlib.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 21 Aug 2026 GMT - Archana &amp;lt;aravinda@redhat.com&amp;gt; - 1.26.7-1
- Update to Go 1.26.7 (fips-1)

Wed, 08 Jul 2026 GMT - dbenoit &amp;lt;dbenoit@redhat.com&amp;gt; - 1.26.5-1
- Update to Go 1.26.5 (fips-1)

Thu, 12 Feb 2026 GMT - dbenoit &amp;lt;dbenoit@redhat.com&amp;gt; - 1.25.7-1
- Update to Go 1.25.7 (fips-1)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>golang-src-1.26.7-1.el10_2.noarch</title>
      <pubDate>Wed, 26 Aug 2026 02:38:18 PM GMT</pubDate>
      <guid isPermaLink="false">27e1f17fab89581973cd3420071917b1145e13f778353d404d3cc255169ae176</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/g/golang-src-1.26.7-1.el10_2.noarch.rpm</link>
      <description><p><strong>golang-src</strong> - Golang compiler source tree&lt;br /&gt;</p>

<p>Golang compiler source tree</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 21 Aug 2026 GMT - Archana &amp;lt;aravinda@redhat.com&amp;gt; - 1.26.7-1
- Update to Go 1.26.7 (fips-1)

Wed, 08 Jul 2026 GMT - dbenoit &amp;lt;dbenoit@redhat.com&amp;gt; - 1.26.5-1
- Update to Go 1.26.5 (fips-1)

Thu, 12 Feb 2026 GMT - dbenoit &amp;lt;dbenoit@redhat.com&amp;gt; - 1.25.7-1
- Update to Go 1.25.7 (fips-1)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>golang-misc-1.26.7-1.el10_2.noarch</title>
      <pubDate>Wed, 26 Aug 2026 02:38:18 PM GMT</pubDate>
      <guid isPermaLink="false">b44708e469614108d1ced2e4aa2973b3401a04a5e96e6bc829066e79c32d954f</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/g/golang-misc-1.26.7-1.el10_2.noarch.rpm</link>
      <description><p><strong>golang-misc</strong> - Golang compiler miscellaneous sources&lt;br /&gt;</p>

<p>Golang compiler miscellaneous sources.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 21 Aug 2026 GMT - Archana &amp;lt;aravinda@redhat.com&amp;gt; - 1.26.7-1
- Update to Go 1.26.7 (fips-1)

Wed, 08 Jul 2026 GMT - dbenoit &amp;lt;dbenoit@redhat.com&amp;gt; - 1.26.5-1
- Update to Go 1.26.5 (fips-1)

Thu, 12 Feb 2026 GMT - dbenoit &amp;lt;dbenoit@redhat.com&amp;gt; - 1.25.7-1
- Update to Go 1.25.7 (fips-1)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>golang-docs-1.26.7-1.el10_2.noarch</title>
      <pubDate>Wed, 26 Aug 2026 02:38:18 PM GMT</pubDate>
      <guid isPermaLink="false">f21699f1e3057fe1c6799c980badf82cf29126a5613849b3dcf1925e2e8a6236</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/g/golang-docs-1.26.7-1.el10_2.noarch.rpm</link>
      <description><p><strong>golang-docs</strong> - Golang compiler docs&lt;br /&gt;</p>

<p>Golang compiler docs.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 21 Aug 2026 GMT - Archana &amp;lt;aravinda@redhat.com&amp;gt; - 1.26.7-1
- Update to Go 1.26.7 (fips-1)

Wed, 08 Jul 2026 GMT - dbenoit &amp;lt;dbenoit@redhat.com&amp;gt; - 1.26.5-1
- Update to Go 1.26.5 (fips-1)

Thu, 12 Feb 2026 GMT - dbenoit &amp;lt;dbenoit@redhat.com&amp;gt; - 1.25.7-1
- Update to Go 1.25.7 (fips-1)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>mod_ssl-1:2.4.63-13.el10_2.6.riscv64</title>
      <pubDate>Wed, 26 Aug 2026 09:56:34 AM GMT</pubDate>
      <guid isPermaLink="false">20ae528dd34b1c14d43449ec6a97f22165809201289d2f61717c54e868d06a8b</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/m/mod_ssl-2.4.63-13.el10_2.6.riscv64.rpm</link>
      <description><p><strong>mod_ssl</strong> - SSL/TLS module for the Apache HTTP Server&lt;br /&gt;</p>

<p>The mod_ssl module provides strong cryptography for the Apache HTTP&lt;br /&gt;
server via the Secure Sockets Layer (SSL) and Transport Layer&lt;br /&gt;
Security (TLS) protocols.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 20 Aug 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 2.4.63-13.6
- Resolves: RHEL-190812 - httpd: Apache HTTP Server: Arbitrary code execution
  or denial of service via use-after-free in mod_ldap per-directory
  configuration (CVE-2026-29167)

Thu, 09 Jul 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 2.4.63-13.5
- Resolves: RHEL-192750 - mod_proxy_html regression in CVE-2026-34355 fix

Tue, 23 Jun 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 2.4.63-13.4
- Resolves: RHEL-186221 - httpd: Apache HTTP Server: Heap-based Buffer Overflow
  via malicious backend servers (CVE-2026-34356)
- Resolves: RHEL-186195 - httpd: Apache HTTP Server: Heap-based Buffer Overflow
  via untrusted content in mod_xml2enc (CVE-2026-42536)
- Resolves: RHEL-186182 - httpd: Apache HTTP Server: Buffer overflow in
  mod_proxy_html allows security bypass (CVE-2026-34355)
- Resolves: RHEL-186158 - httpd: Apache HTTP Server: Buffer Over-read via
  outbound OCSP requests to attacker-controlled server (CVE-2026-44185)
- Resolves: RHEL-184305 - httpd: Apache HTTP Server: Denial of Service via
  crafted regular expressions (CVE-2026-44631)
- Resolves : RHEL-182581 - httpd: incomplete fix for 
  CVE-2023-38709 (CVE-2024-42516)
- Resolves: RHEL-175621 - httpd: NULL pointer dereference via specially crafted
  request (CVE-2026-29169)
- Also addresses CVE-2026-44119, CVE-2026-44186, CVE-2026-42535,
  CVE-2026-24072, CVE-2026-33006, CVE-2026-43951

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>mod_session-2.4.63-13.el10_2.6.riscv64</title>
      <pubDate>Wed, 26 Aug 2026 09:56:34 AM GMT</pubDate>
      <guid isPermaLink="false">9d0d3cb1010a5a7831e61491fbefbed5b93bfa27c0e853a1e73c086470362f2c</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/m/mod_session-2.4.63-13.el10_2.6.riscv64.rpm</link>
      <description><p><strong>mod_session</strong> - Session interface for the Apache HTTP Server&lt;br /&gt;</p>

<p>The mod_session module and associated backends provide an abstract&lt;br /&gt;
interface for storing and accessing per-user session data.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 20 Aug 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 2.4.63-13.6
- Resolves: RHEL-190812 - httpd: Apache HTTP Server: Arbitrary code execution
  or denial of service via use-after-free in mod_ldap per-directory
  configuration (CVE-2026-29167)

Thu, 09 Jul 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 2.4.63-13.5
- Resolves: RHEL-192750 - mod_proxy_html regression in CVE-2026-34355 fix

Tue, 23 Jun 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 2.4.63-13.4
- Resolves: RHEL-186221 - httpd: Apache HTTP Server: Heap-based Buffer Overflow
  via malicious backend servers (CVE-2026-34356)
- Resolves: RHEL-186195 - httpd: Apache HTTP Server: Heap-based Buffer Overflow
  via untrusted content in mod_xml2enc (CVE-2026-42536)
- Resolves: RHEL-186182 - httpd: Apache HTTP Server: Buffer overflow in
  mod_proxy_html allows security bypass (CVE-2026-34355)
- Resolves: RHEL-186158 - httpd: Apache HTTP Server: Buffer Over-read via
  outbound OCSP requests to attacker-controlled server (CVE-2026-44185)
- Resolves: RHEL-184305 - httpd: Apache HTTP Server: Denial of Service via
  crafted regular expressions (CVE-2026-44631)
- Resolves : RHEL-182581 - httpd: incomplete fix for 
  CVE-2023-38709 (CVE-2024-42516)
- Resolves: RHEL-175621 - httpd: NULL pointer dereference via specially crafted
  request (CVE-2026-29169)
- Also addresses CVE-2026-44119, CVE-2026-44186, CVE-2026-42535,
  CVE-2026-24072, CVE-2026-33006, CVE-2026-43951

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>mod_proxy_html-1:2.4.63-13.el10_2.6.riscv64</title>
      <pubDate>Wed, 26 Aug 2026 09:56:34 AM GMT</pubDate>
      <guid isPermaLink="false">71ef4d8776a5940387dd4656ae1ef2c1375aeca4dc5e347044998f1de2eec73e</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/m/mod_proxy_html-2.4.63-13.el10_2.6.riscv64.rpm</link>
      <description><p><strong>mod_proxy_html</strong> - HTML and XML content filters for the Apache HTTP Server&lt;br /&gt;</p>

<p>The mod_proxy_html and mod_xml2enc modules provide filters which can&lt;br /&gt;
transform and modify HTML and XML content.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 20 Aug 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 2.4.63-13.6
- Resolves: RHEL-190812 - httpd: Apache HTTP Server: Arbitrary code execution
  or denial of service via use-after-free in mod_ldap per-directory
  configuration (CVE-2026-29167)

Thu, 09 Jul 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 2.4.63-13.5
- Resolves: RHEL-192750 - mod_proxy_html regression in CVE-2026-34355 fix

Tue, 23 Jun 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 2.4.63-13.4
- Resolves: RHEL-186221 - httpd: Apache HTTP Server: Heap-based Buffer Overflow
  via malicious backend servers (CVE-2026-34356)
- Resolves: RHEL-186195 - httpd: Apache HTTP Server: Heap-based Buffer Overflow
  via untrusted content in mod_xml2enc (CVE-2026-42536)
- Resolves: RHEL-186182 - httpd: Apache HTTP Server: Buffer overflow in
  mod_proxy_html allows security bypass (CVE-2026-34355)
- Resolves: RHEL-186158 - httpd: Apache HTTP Server: Buffer Over-read via
  outbound OCSP requests to attacker-controlled server (CVE-2026-44185)
- Resolves: RHEL-184305 - httpd: Apache HTTP Server: Denial of Service via
  crafted regular expressions (CVE-2026-44631)
- Resolves : RHEL-182581 - httpd: incomplete fix for 
  CVE-2023-38709 (CVE-2024-42516)
- Resolves: RHEL-175621 - httpd: NULL pointer dereference via specially crafted
  request (CVE-2026-29169)
- Also addresses CVE-2026-44119, CVE-2026-44186, CVE-2026-42535,
  CVE-2026-24072, CVE-2026-33006, CVE-2026-43951

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>mod_lua-2.4.63-13.el10_2.6.riscv64</title>
      <pubDate>Wed, 26 Aug 2026 09:56:34 AM GMT</pubDate>
      <guid isPermaLink="false">1c400e992e2b0bf0ee436c8b03626101349d3128ada9758661d4b302544e63a5</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/m/mod_lua-2.4.63-13.el10_2.6.riscv64.rpm</link>
      <description><p><strong>mod_lua</strong> - Lua scripting support for the Apache HTTP Server&lt;br /&gt;</p>

<p>The mod_lua module allows the server to be extended with scripts&lt;br /&gt;
written in the Lua programming language.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 20 Aug 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 2.4.63-13.6
- Resolves: RHEL-190812 - httpd: Apache HTTP Server: Arbitrary code execution
  or denial of service via use-after-free in mod_ldap per-directory
  configuration (CVE-2026-29167)

Thu, 09 Jul 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 2.4.63-13.5
- Resolves: RHEL-192750 - mod_proxy_html regression in CVE-2026-34355 fix

Tue, 23 Jun 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 2.4.63-13.4
- Resolves: RHEL-186221 - httpd: Apache HTTP Server: Heap-based Buffer Overflow
  via malicious backend servers (CVE-2026-34356)
- Resolves: RHEL-186195 - httpd: Apache HTTP Server: Heap-based Buffer Overflow
  via untrusted content in mod_xml2enc (CVE-2026-42536)
- Resolves: RHEL-186182 - httpd: Apache HTTP Server: Buffer overflow in
  mod_proxy_html allows security bypass (CVE-2026-34355)
- Resolves: RHEL-186158 - httpd: Apache HTTP Server: Buffer Over-read via
  outbound OCSP requests to attacker-controlled server (CVE-2026-44185)
- Resolves: RHEL-184305 - httpd: Apache HTTP Server: Denial of Service via
  crafted regular expressions (CVE-2026-44631)
- Resolves : RHEL-182581 - httpd: incomplete fix for 
  CVE-2023-38709 (CVE-2024-42516)
- Resolves: RHEL-175621 - httpd: NULL pointer dereference via specially crafted
  request (CVE-2026-29169)
- Also addresses CVE-2026-44119, CVE-2026-44186, CVE-2026-42535,
  CVE-2026-24072, CVE-2026-33006, CVE-2026-43951

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>mod_ldap-2.4.63-13.el10_2.6.riscv64</title>
      <pubDate>Wed, 26 Aug 2026 09:56:34 AM GMT</pubDate>
      <guid isPermaLink="false">6dcddb290cac8b54809f8ab46eae0568bdf1a7be7d06f9fe6377027a5dd62db3</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/m/mod_ldap-2.4.63-13.el10_2.6.riscv64.rpm</link>
      <description><p><strong>mod_ldap</strong> - LDAP authentication modules for the Apache HTTP Server&lt;br /&gt;</p>

<p>The mod_ldap and mod_authnz_ldap modules add support for LDAP&lt;br /&gt;
authentication to the Apache HTTP Server.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 20 Aug 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 2.4.63-13.6
- Resolves: RHEL-190812 - httpd: Apache HTTP Server: Arbitrary code execution
  or denial of service via use-after-free in mod_ldap per-directory
  configuration (CVE-2026-29167)

Thu, 09 Jul 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 2.4.63-13.5
- Resolves: RHEL-192750 - mod_proxy_html regression in CVE-2026-34355 fix

Tue, 23 Jun 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 2.4.63-13.4
- Resolves: RHEL-186221 - httpd: Apache HTTP Server: Heap-based Buffer Overflow
  via malicious backend servers (CVE-2026-34356)
- Resolves: RHEL-186195 - httpd: Apache HTTP Server: Heap-based Buffer Overflow
  via untrusted content in mod_xml2enc (CVE-2026-42536)
- Resolves: RHEL-186182 - httpd: Apache HTTP Server: Buffer overflow in
  mod_proxy_html allows security bypass (CVE-2026-34355)
- Resolves: RHEL-186158 - httpd: Apache HTTP Server: Buffer Over-read via
  outbound OCSP requests to attacker-controlled server (CVE-2026-44185)
- Resolves: RHEL-184305 - httpd: Apache HTTP Server: Denial of Service via
  crafted regular expressions (CVE-2026-44631)
- Resolves : RHEL-182581 - httpd: incomplete fix for 
  CVE-2023-38709 (CVE-2024-42516)
- Resolves: RHEL-175621 - httpd: NULL pointer dereference via specially crafted
  request (CVE-2026-29169)
- Also addresses CVE-2026-44119, CVE-2026-44186, CVE-2026-42535,
  CVE-2026-24072, CVE-2026-33006, CVE-2026-43951

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>httpd-tools-2.4.63-13.el10_2.6.riscv64</title>
      <pubDate>Wed, 26 Aug 2026 09:56:34 AM GMT</pubDate>
      <guid isPermaLink="false">58256856a8d696a299a19d53d30e298878b6950e3f9def60c987f752f23e9d30</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/h/httpd-tools-2.4.63-13.el10_2.6.riscv64.rpm</link>
      <description><p><strong>httpd-tools</strong> - Tools for use with the Apache HTTP Server&lt;br /&gt;</p>

<p>The httpd-tools package contains tools which can be used with&lt;br /&gt;
the Apache HTTP Server.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 20 Aug 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 2.4.63-13.6
- Resolves: RHEL-190812 - httpd: Apache HTTP Server: Arbitrary code execution
  or denial of service via use-after-free in mod_ldap per-directory
  configuration (CVE-2026-29167)

Thu, 09 Jul 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 2.4.63-13.5
- Resolves: RHEL-192750 - mod_proxy_html regression in CVE-2026-34355 fix

Tue, 23 Jun 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 2.4.63-13.4
- Resolves: RHEL-186221 - httpd: Apache HTTP Server: Heap-based Buffer Overflow
  via malicious backend servers (CVE-2026-34356)
- Resolves: RHEL-186195 - httpd: Apache HTTP Server: Heap-based Buffer Overflow
  via untrusted content in mod_xml2enc (CVE-2026-42536)
- Resolves: RHEL-186182 - httpd: Apache HTTP Server: Buffer overflow in
  mod_proxy_html allows security bypass (CVE-2026-34355)
- Resolves: RHEL-186158 - httpd: Apache HTTP Server: Buffer Over-read via
  outbound OCSP requests to attacker-controlled server (CVE-2026-44185)
- Resolves: RHEL-184305 - httpd: Apache HTTP Server: Denial of Service via
  crafted regular expressions (CVE-2026-44631)
- Resolves : RHEL-182581 - httpd: incomplete fix for 
  CVE-2023-38709 (CVE-2024-42516)
- Resolves: RHEL-175621 - httpd: NULL pointer dereference via specially crafted
  request (CVE-2026-29169)
- Also addresses CVE-2026-44119, CVE-2026-44186, CVE-2026-42535,
  CVE-2026-24072, CVE-2026-33006, CVE-2026-43951

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>httpd-devel-2.4.63-13.el10_2.6.riscv64</title>
      <pubDate>Wed, 26 Aug 2026 09:56:34 AM GMT</pubDate>
      <guid isPermaLink="false">75995ce11e158ee96c85f6632a6d49ed4b7340ae9691977f15542000b714a3e6</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/h/httpd-devel-2.4.63-13.el10_2.6.riscv64.rpm</link>
      <description><p><strong>httpd-devel</strong> - Development interfaces for the Apache HTTP Server&lt;br /&gt;</p>

<p>The httpd-devel package contains the APXS binary and other files&lt;br /&gt;
that you need to build Dynamic Shared Objects (DSOs) for the&lt;br /&gt;
Apache HTTP Server.&lt;br /&gt;
&lt;br /&gt;
If you are installing the Apache HTTP Server and you want to be&lt;br /&gt;
able to compile or develop additional modules for Apache, you need&lt;br /&gt;
to install this package.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 20 Aug 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 2.4.63-13.6
- Resolves: RHEL-190812 - httpd: Apache HTTP Server: Arbitrary code execution
  or denial of service via use-after-free in mod_ldap per-directory
  configuration (CVE-2026-29167)

Thu, 09 Jul 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 2.4.63-13.5
- Resolves: RHEL-192750 - mod_proxy_html regression in CVE-2026-34355 fix

Tue, 23 Jun 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 2.4.63-13.4
- Resolves: RHEL-186221 - httpd: Apache HTTP Server: Heap-based Buffer Overflow
  via malicious backend servers (CVE-2026-34356)
- Resolves: RHEL-186195 - httpd: Apache HTTP Server: Heap-based Buffer Overflow
  via untrusted content in mod_xml2enc (CVE-2026-42536)
- Resolves: RHEL-186182 - httpd: Apache HTTP Server: Buffer overflow in
  mod_proxy_html allows security bypass (CVE-2026-34355)
- Resolves: RHEL-186158 - httpd: Apache HTTP Server: Buffer Over-read via
  outbound OCSP requests to attacker-controlled server (CVE-2026-44185)
- Resolves: RHEL-184305 - httpd: Apache HTTP Server: Denial of Service via
  crafted regular expressions (CVE-2026-44631)
- Resolves : RHEL-182581 - httpd: incomplete fix for 
  CVE-2023-38709 (CVE-2024-42516)
- Resolves: RHEL-175621 - httpd: NULL pointer dereference via specially crafted
  request (CVE-2026-29169)
- Also addresses CVE-2026-44119, CVE-2026-44186, CVE-2026-42535,
  CVE-2026-24072, CVE-2026-33006, CVE-2026-43951

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>httpd-core-2.4.63-13.el10_2.6.riscv64</title>
      <pubDate>Wed, 26 Aug 2026 09:56:34 AM GMT</pubDate>
      <guid isPermaLink="false">af2b69f4c31a18e46bf00b72bf652d26ea5edb006be779536c9f69c5004c7168</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/h/httpd-core-2.4.63-13.el10_2.6.riscv64.rpm</link>
      <description><p><strong>httpd-core</strong> - httpd minimal core&lt;br /&gt;</p>

<p>The httpd-core package contains essential httpd binaries.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 20 Aug 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 2.4.63-13.6
- Resolves: RHEL-190812 - httpd: Apache HTTP Server: Arbitrary code execution
  or denial of service via use-after-free in mod_ldap per-directory
  configuration (CVE-2026-29167)

Thu, 09 Jul 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 2.4.63-13.5
- Resolves: RHEL-192750 - mod_proxy_html regression in CVE-2026-34355 fix

Tue, 23 Jun 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 2.4.63-13.4
- Resolves: RHEL-186221 - httpd: Apache HTTP Server: Heap-based Buffer Overflow
  via malicious backend servers (CVE-2026-34356)
- Resolves: RHEL-186195 - httpd: Apache HTTP Server: Heap-based Buffer Overflow
  via untrusted content in mod_xml2enc (CVE-2026-42536)
- Resolves: RHEL-186182 - httpd: Apache HTTP Server: Buffer overflow in
  mod_proxy_html allows security bypass (CVE-2026-34355)
- Resolves: RHEL-186158 - httpd: Apache HTTP Server: Buffer Over-read via
  outbound OCSP requests to attacker-controlled server (CVE-2026-44185)
- Resolves: RHEL-184305 - httpd: Apache HTTP Server: Denial of Service via
  crafted regular expressions (CVE-2026-44631)
- Resolves : RHEL-182581 - httpd: incomplete fix for 
  CVE-2023-38709 (CVE-2024-42516)
- Resolves: RHEL-175621 - httpd: NULL pointer dereference via specially crafted
  request (CVE-2026-29169)
- Also addresses CVE-2026-44119, CVE-2026-44186, CVE-2026-42535,
  CVE-2026-24072, CVE-2026-33006, CVE-2026-43951

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>httpd-2.4.63-13.el10_2.6.riscv64</title>
      <pubDate>Wed, 26 Aug 2026 09:56:34 AM GMT</pubDate>
      <guid isPermaLink="false">d2ee40e4889b2643ca471aa3f7b3163aeb622415c10d282bce73c022fc79a4fd</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/h/httpd-2.4.63-13.el10_2.6.riscv64.rpm</link>
      <description><p><strong>httpd</strong> - Apache HTTP Server&lt;br /&gt;</p>

<p>The Apache HTTP Server is a powerful, efficient, and extensible&lt;br /&gt;
web server.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 20 Aug 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 2.4.63-13.6
- Resolves: RHEL-190812 - httpd: Apache HTTP Server: Arbitrary code execution
  or denial of service via use-after-free in mod_ldap per-directory
  configuration (CVE-2026-29167)

Thu, 09 Jul 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 2.4.63-13.5
- Resolves: RHEL-192750 - mod_proxy_html regression in CVE-2026-34355 fix

Tue, 23 Jun 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 2.4.63-13.4
- Resolves: RHEL-186221 - httpd: Apache HTTP Server: Heap-based Buffer Overflow
  via malicious backend servers (CVE-2026-34356)
- Resolves: RHEL-186195 - httpd: Apache HTTP Server: Heap-based Buffer Overflow
  via untrusted content in mod_xml2enc (CVE-2026-42536)
- Resolves: RHEL-186182 - httpd: Apache HTTP Server: Buffer overflow in
  mod_proxy_html allows security bypass (CVE-2026-34355)
- Resolves: RHEL-186158 - httpd: Apache HTTP Server: Buffer Over-read via
  outbound OCSP requests to attacker-controlled server (CVE-2026-44185)
- Resolves: RHEL-184305 - httpd: Apache HTTP Server: Denial of Service via
  crafted regular expressions (CVE-2026-44631)
- Resolves : RHEL-182581 - httpd: incomplete fix for 
  CVE-2023-38709 (CVE-2024-42516)
- Resolves: RHEL-175621 - httpd: NULL pointer dereference via specially crafted
  request (CVE-2026-29169)
- Also addresses CVE-2026-44119, CVE-2026-44186, CVE-2026-42535,
  CVE-2026-24072, CVE-2026-33006, CVE-2026-43951

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>httpd-manual-2.4.63-13.el10_2.6.noarch</title>
      <pubDate>Wed, 26 Aug 2026 09:52:04 AM GMT</pubDate>
      <guid isPermaLink="false">2a9af9614debda58ddc105f72636f1f8b89bfa715b1b568e3d6ec5a3dc3b6611</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/h/httpd-manual-2.4.63-13.el10_2.6.noarch.rpm</link>
      <description><p><strong>httpd-manual</strong> - Documentation for the Apache HTTP Server&lt;br /&gt;</p>

<p>The httpd-manual package contains the complete manual and&lt;br /&gt;
reference guide for the Apache HTTP Server. The information can&lt;br /&gt;
also be found at https://httpd.apache.org/docs/2.4/.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 20 Aug 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 2.4.63-13.6
- Resolves: RHEL-190812 - httpd: Apache HTTP Server: Arbitrary code execution
  or denial of service via use-after-free in mod_ldap per-directory
  configuration (CVE-2026-29167)

Thu, 09 Jul 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 2.4.63-13.5
- Resolves: RHEL-192750 - mod_proxy_html regression in CVE-2026-34355 fix

Tue, 23 Jun 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 2.4.63-13.4
- Resolves: RHEL-186221 - httpd: Apache HTTP Server: Heap-based Buffer Overflow
  via malicious backend servers (CVE-2026-34356)
- Resolves: RHEL-186195 - httpd: Apache HTTP Server: Heap-based Buffer Overflow
  via untrusted content in mod_xml2enc (CVE-2026-42536)
- Resolves: RHEL-186182 - httpd: Apache HTTP Server: Buffer overflow in
  mod_proxy_html allows security bypass (CVE-2026-34355)
- Resolves: RHEL-186158 - httpd: Apache HTTP Server: Buffer Over-read via
  outbound OCSP requests to attacker-controlled server (CVE-2026-44185)
- Resolves: RHEL-184305 - httpd: Apache HTTP Server: Denial of Service via
  crafted regular expressions (CVE-2026-44631)
- Resolves : RHEL-182581 - httpd: incomplete fix for 
  CVE-2023-38709 (CVE-2024-42516)
- Resolves: RHEL-175621 - httpd: NULL pointer dereference via specially crafted
  request (CVE-2026-29169)
- Also addresses CVE-2026-44119, CVE-2026-44186, CVE-2026-42535,
  CVE-2026-24072, CVE-2026-33006, CVE-2026-43951

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>httpd-filesystem-2.4.63-13.el10_2.6.noarch</title>
      <pubDate>Wed, 26 Aug 2026 09:52:04 AM GMT</pubDate>
      <guid isPermaLink="false">a5ba7f194b23d9909332627be60c3fd9085e7dcad396ba94ca35ef98a7d15dc1</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/h/httpd-filesystem-2.4.63-13.el10_2.6.noarch.rpm</link>
      <description><p><strong>httpd-filesystem</strong> - The basic directory layout for the Apache HTTP Server&lt;br /&gt;</p>

<p>The httpd-filesystem package contains the basic directory layout&lt;br /&gt;
for the Apache HTTP Server including the correct permissions&lt;br /&gt;
for the directories.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 20 Aug 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 2.4.63-13.6
- Resolves: RHEL-190812 - httpd: Apache HTTP Server: Arbitrary code execution
  or denial of service via use-after-free in mod_ldap per-directory
  configuration (CVE-2026-29167)

Thu, 09 Jul 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 2.4.63-13.5
- Resolves: RHEL-192750 - mod_proxy_html regression in CVE-2026-34355 fix

Tue, 23 Jun 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 2.4.63-13.4
- Resolves: RHEL-186221 - httpd: Apache HTTP Server: Heap-based Buffer Overflow
  via malicious backend servers (CVE-2026-34356)
- Resolves: RHEL-186195 - httpd: Apache HTTP Server: Heap-based Buffer Overflow
  via untrusted content in mod_xml2enc (CVE-2026-42536)
- Resolves: RHEL-186182 - httpd: Apache HTTP Server: Buffer overflow in
  mod_proxy_html allows security bypass (CVE-2026-34355)
- Resolves: RHEL-186158 - httpd: Apache HTTP Server: Buffer Over-read via
  outbound OCSP requests to attacker-controlled server (CVE-2026-44185)
- Resolves: RHEL-184305 - httpd: Apache HTTP Server: Denial of Service via
  crafted regular expressions (CVE-2026-44631)
- Resolves : RHEL-182581 - httpd: incomplete fix for 
  CVE-2023-38709 (CVE-2024-42516)
- Resolves: RHEL-175621 - httpd: NULL pointer dereference via specially crafted
  request (CVE-2026-29169)
- Also addresses CVE-2026-44119, CVE-2026-44186, CVE-2026-42535,
  CVE-2026-24072, CVE-2026-33006, CVE-2026-43951

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>gstreamer1-plugins-good-gtk-1.26.7-2.el10_2.8.riscv64</title>
      <pubDate>Wed, 26 Aug 2026 08:48:48 AM GMT</pubDate>
      <guid isPermaLink="false">a55add137e2291acbdec0149701abfc10fa96ae2e4411e5068a7e43eff15b9da</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/g/gstreamer1-plugins-good-gtk-1.26.7-2.el10_2.8.riscv64.rpm</link>
      <description><p><strong>gstreamer1-plugins-good-gtk</strong> - GStreamer "good" plugins gtk plugin&lt;br /&gt;</p>

<p>GStreamer is a streaming media framework, based on graphs of elements which&lt;br /&gt;
operate on media data.&lt;br /&gt;
&lt;br /&gt;
GStreamer Good Plugins is a collection of well-supported plugins of&lt;br /&gt;
good quality and under the LGPL license.&lt;br /&gt;
&lt;br /&gt;
This package (gstreamer1-plugins-good-gtk) contains the gtksink output plugin.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Tue, 25 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 1.26.7-2.8
- Fix use-after-free vulnerability in RTP SBC depayloader
  (CVE-2026-18299)
  Resolves: RHEL-246613

Sat, 22 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 1.26.7-2.7
- Fix CVE-2026-18298 in gdkpixbufdec element
  Resolves: RHEL-246557

Sat, 22 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 1.26.7-2.6
- Fix insufficient size validation in MRF file parsing in qtmoovrecover
  (CVE-2026-18296)
  Resolves: RHEL-246546

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>gstreamer1-plugins-good-1.26.7-2.el10_2.8.riscv64</title>
      <pubDate>Wed, 26 Aug 2026 08:48:48 AM GMT</pubDate>
      <guid isPermaLink="false">9d88643b5a8d67c66ef3c4404bedf54fa4b2f3db204eb2960b4b6981d89b681b</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/g/gstreamer1-plugins-good-1.26.7-2.el10_2.8.riscv64.rpm</link>
      <description><p><strong>gstreamer1-plugins-good</strong> - GStreamer plugins with good code and licensing&lt;br /&gt;</p>

<p>GStreamer is a streaming media framework, based on graphs of filters which&lt;br /&gt;
operate on media data. Applications using this library can do anything&lt;br /&gt;
from real-time sound processing to playing videos, and just about anything&lt;br /&gt;
else media-related.  Its plugin-based architecture means that new data&lt;br /&gt;
types or processing capabilities can be added simply by installing new&lt;br /&gt;
plugins.&lt;br /&gt;
&lt;br /&gt;
GStreamer Good Plugins is a collection of well-supported plugins of&lt;br /&gt;
good quality and under the LGPL license.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Tue, 25 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 1.26.7-2.8
- Fix use-after-free vulnerability in RTP SBC depayloader
  (CVE-2026-18299)
  Resolves: RHEL-246613

Sat, 22 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 1.26.7-2.7
- Fix CVE-2026-18298 in gdkpixbufdec element
  Resolves: RHEL-246557

Sat, 22 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 1.26.7-2.6
- Fix insufficient size validation in MRF file parsing in qtmoovrecover
  (CVE-2026-18296)
  Resolves: RHEL-246546

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>polkit-devel-125-4.el10_2.1.riscv64</title>
      <pubDate>Wed, 26 Aug 2026 08:44:04 AM GMT</pubDate>
      <guid isPermaLink="false">1a49b81ae7bfff2c0dbf742da0dfcd4d9ca9908f6657e77bba5aba6c0059a6f0</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/polkit-devel-125-4.el10_2.1.riscv64.rpm</link>
      <description><p><strong>polkit-devel</strong> - Development files for polkit&lt;br /&gt;</p>

<p>Development files for polkit.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 29 Jul 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 125-4.1
- NOTICE (jrybar): the record 125-4 below was added in manually after Ymir's initial
- commit 125-3.1. For some reason, 125-3.1 for rhel-10.2 was based on contents
- of rhel-10.0 release instead of version 125-4 present in rhel-10.1.
- Fix CVE-2026-4897: string overflow in polkit agent helper
  Resolves: RHEL-218025

Tue, 12 Aug 2025 GMT - Jan Rybar &amp;lt;jrybar@redhat.com&amp;gt; - 125-4
- changing log level via dbus is now restricted to root
- backport of https://github.com/polkit-org/polkit/commit/5a4ba7dfdcc3f

Tue, 29 Oct 2024 GMT - Troy Dawson &amp;lt;tdawson@redhat.com&amp;gt; - 125-3
- Bump release for October 2024 mass rebuild:
  Resolves: RHEL-64018

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>polkit-docs-125-4.el10_2.1.noarch</title>
      <pubDate>Wed, 26 Aug 2026 08:38:33 AM GMT</pubDate>
      <guid isPermaLink="false">579538c64ce479848051fdf53b81ea952437bfe4f71817f7651be1935a06aea0</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/polkit-docs-125-4.el10_2.1.noarch.rpm</link>
      <description><p><strong>polkit-docs</strong> - Development documentation for polkit&lt;br /&gt;</p>

<p>Development documentation for polkit.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 29 Jul 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 125-4.1
- NOTICE (jrybar): the record 125-4 below was added in manually after Ymir's initial
- commit 125-3.1. For some reason, 125-3.1 for rhel-10.2 was based on contents
- of rhel-10.0 release instead of version 125-4 present in rhel-10.1.
- Fix CVE-2026-4897: string overflow in polkit agent helper
  Resolves: RHEL-218025

Tue, 12 Aug 2025 GMT - Jan Rybar &amp;lt;jrybar@redhat.com&amp;gt; - 125-4
- changing log level via dbus is now restricted to root
- backport of https://github.com/polkit-org/polkit/commit/5a4ba7dfdcc3f

Tue, 29 Oct 2024 GMT - Troy Dawson &amp;lt;tdawson@redhat.com&amp;gt; - 125-3
- Bump release for October 2024 mass rebuild:
  Resolves: RHEL-64018

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pam-devel-1.6.1-9.el10_2.1.riscv64</title>
      <pubDate>Tue, 25 Aug 2026 11:37:36 PM GMT</pubDate>
      <guid isPermaLink="false">bb738d96545a5428e9adca8fabe84c6cfa456de8119b65ebce9542af7f644551</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pam-devel-1.6.1-9.el10_2.1.riscv64.rpm</link>
      <description><p><strong>pam-devel</strong> - Files needed for developing PAM-aware applications and modules for PAM&lt;br /&gt;</p>

<p>PAM (Pluggable Authentication Modules) is a system security tool that&lt;br /&gt;
allows system administrators to set authentication policy without&lt;br /&gt;
having to recompile programs that handle authentication. This package&lt;br /&gt;
contains header files used for building both PAM-aware applications&lt;br /&gt;
and modules for use with the PAM system.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Sun, 12 Jul 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 1.6.1-9.1
- pam_userdb: fix password comparison timing leak.
  Resolves: CVE-2026-54411 and RHEL-191704

Mon, 01 Dec 2025 GMT - Iker Pedrosa &amp;lt;ipedrosa@redhat.com&amp;gt; - 1.6.1-9
- pam_faillock: skip clearing user's failed attempt.
  Resolves: RHEL-130871

Tue, 01 Jul 2025 GMT - Iker Pedrosa &amp;lt;ipedrosa@redhat.com&amp;gt; - 1.6.1-8
- pam_namespace: fix potential privilege escalation.
  Resolves: CVE-2025-6020 and RHEL-101174

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>system-reinstall-bootc-1.16.4-1.el10_2.riscv64</title>
      <pubDate>Tue, 25 Aug 2026 11:28:21 PM GMT</pubDate>
      <guid isPermaLink="false">46fccf4a7a50cd19a4d0236104efb783a514b7777e822f32d7be00be86aa4f67</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/s/system-reinstall-bootc-1.16.4-1.el10_2.riscv64.rpm</link>
      <description><p><strong>system-reinstall-bootc</strong> - Utility to reinstall the current system using bootc&lt;br /&gt;</p>

<p>This package provides a utility to simplify reinstalling the current system to a given bootc image.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 22 Jul 2026 GMT - ckyrouac &amp;lt;ckyrouac@redhat.com&amp;gt; - 1.16.4-1
- spec: new upstream version 1.16.4

Tue, 05 May 2026 GMT - Joseph Marrero Corchado &amp;lt;jmarrero@redhat.com&amp;gt; - 1.15.2-1
- Release 1.15.2

Tue, 14 Apr 2026 GMT - Joseph Marrero Corchado &amp;lt;jmarrero@redhat.com&amp;gt; - 1.15.1-1
- Release 1.15.1

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>bootc-1.16.4-1.el10_2.riscv64</title>
      <pubDate>Tue, 25 Aug 2026 11:28:21 PM GMT</pubDate>
      <guid isPermaLink="false">26ff038f3a5bb6eeb75cccf6e17c645ccfb18626c21d5f443c36b530706b345e</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/b/bootc-1.16.4-1.el10_2.riscv64.rpm</link>
      <description><p><strong>bootc</strong> - Bootable container system&lt;br /&gt;</p>

<p>Bootable container system</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 22 Jul 2026 GMT - ckyrouac &amp;lt;ckyrouac@redhat.com&amp;gt; - 1.16.4-1
- spec: new upstream version 1.16.4

Tue, 05 May 2026 GMT - Joseph Marrero Corchado &amp;lt;jmarrero@redhat.com&amp;gt; - 1.15.2-1
- Release 1.15.2

Tue, 14 Apr 2026 GMT - Joseph Marrero Corchado &amp;lt;jmarrero@redhat.com&amp;gt; - 1.15.1-1
- Release 1.15.1

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>linuxptp-4.4-8.el10_2.1.riscv64</title>
      <pubDate>Tue, 25 Aug 2026 11:27:04 PM GMT</pubDate>
      <guid isPermaLink="false">41d85f2ed3213caa17f1764a6477f6b8e2fbede07e3a9f9a7b2ef23934fdca2b</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/l/linuxptp-4.4-8.el10_2.1.riscv64.rpm</link>
      <description><p><strong>linuxptp</strong> - PTP implementation for Linux&lt;br /&gt;</p>

<p>This software is an implementation of the Precision Time Protocol (PTP)&lt;br /&gt;
according to IEEE standard 1588 for Linux. The dual design goals are to provide&lt;br /&gt;
a robust implementation of the standard and to use the most relevant and modern&lt;br /&gt;
Application Programming Interfaces (API) offered by the Linux kernel.&lt;br /&gt;
Supporting legacy APIs and other platforms is not a goal.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 01 Jul 2026 GMT - Miroslav Lichvar &amp;lt;mlichvar@redhat.com&amp;gt; 4.4-8.el10_2.1
- fix phc2sys service to allow clocks specified by interface (RHEL-191400)
- fix high CPU usage by ptp4l when link is down (RHEL-191401)
- fix phc2sys to not get stuck in static mode (RHEL-185752)

Mon, 02 Feb 2026 GMT - Miroslav Lichvar &amp;lt;mlichvar@redhat.com&amp;gt; 4.4-8
- create reverse compatibility symlink to /var/run/ptp4l (RHEL-145071)

Thu, 11 Dec 2025 GMT - Miroslav Lichvar &amp;lt;mlichvar@redhat.com&amp;gt; 4.4-7
- add missing build requirement on lipcap-devel

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>iptables-utils-1.8.11-16.el10_2.riscv64</title>
      <pubDate>Tue, 25 Aug 2026 11:25:55 PM GMT</pubDate>
      <guid isPermaLink="false">83f4ae23e9fb9213d18d9fbebd6b915ec5f0fbcdbba95fb589bd373332482d1c</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/i/iptables-utils-1.8.11-16.el10_2.riscv64.rpm</link>
      <description><p><strong>iptables-utils</strong> - iptables and ip6tables misc utilities&lt;br /&gt;</p>

<p>Utils for iptables&lt;br /&gt;
&lt;br /&gt;
This package provides nfnl_osf with the pf.os database and nfbpf_compile,&lt;br /&gt;
a bytecode generator for use with xt_bpf. Also included is iptables-apply,&lt;br /&gt;
a safer way to update iptables remotely.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Tue, 04 Aug 2026 GMT - Phil Sutter &amp;lt;psutter@redhat.com&amp;gt; [1.8.11-16.el10]
- spec: Simplify Recommends again, kernel fixed Provides in modules-core packages (Phil Sutter) [RHEL-213273]

Thu, 18 Jun 2026 GMT - Phil Sutter &amp;lt;psutter@redhat.com&amp;gt; [1.8.11-15.el10]
- spec: Recommend kernel-modules-extra only if no other recommendation applies (Phil Sutter) [RHEL-186232]

Wed, 27 May 2026 GMT - Phil Sutter &amp;lt;psutter@redhat.com&amp;gt; [1.8.11-14.el10]
- tests: shell: Review nft-only/0009-needless-bitwise_0 (Phil Sutter) [RHEL-179504]
- spec: Soft-depend on kernel-modules-extra (Phil Sutter) [RHEL-176386]

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>iptables-nft-1.8.11-16.el10_2.riscv64</title>
      <pubDate>Tue, 25 Aug 2026 11:25:55 PM GMT</pubDate>
      <guid isPermaLink="false">4961ff080c924c21c5cd35e22bba86178b4b99ae0f1ad70bebdf1af9b7a9e471</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/i/iptables-nft-1.8.11-16.el10_2.riscv64.rpm</link>
      <description><p><strong>iptables-nft</strong> - nftables compatibility for iptables, arptables and ebtables&lt;br /&gt;</p>

<p>nftables compatibility for iptables, arptables and ebtables.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Tue, 04 Aug 2026 GMT - Phil Sutter &amp;lt;psutter@redhat.com&amp;gt; [1.8.11-16.el10]
- spec: Simplify Recommends again, kernel fixed Provides in modules-core packages (Phil Sutter) [RHEL-213273]

Thu, 18 Jun 2026 GMT - Phil Sutter &amp;lt;psutter@redhat.com&amp;gt; [1.8.11-15.el10]
- spec: Recommend kernel-modules-extra only if no other recommendation applies (Phil Sutter) [RHEL-186232]

Wed, 27 May 2026 GMT - Phil Sutter &amp;lt;psutter@redhat.com&amp;gt; [1.8.11-14.el10]
- tests: shell: Review nft-only/0009-needless-bitwise_0 (Phil Sutter) [RHEL-179504]
- spec: Soft-depend on kernel-modules-extra (Phil Sutter) [RHEL-176386]

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>iptables-devel-1.8.11-16.el10_2.riscv64</title>
      <pubDate>Tue, 25 Aug 2026 11:25:55 PM GMT</pubDate>
      <guid isPermaLink="false">a1b1d03bc8222199728c90110d350bebfa2a6399d1d23c3a1f7690ca462c753c</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/i/iptables-devel-1.8.11-16.el10_2.riscv64.rpm</link>
      <description><p><strong>iptables-devel</strong> - Development package for iptables&lt;br /&gt;</p>

<p>libxtables development headers and pkgconfig files</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Tue, 04 Aug 2026 GMT - Phil Sutter &amp;lt;psutter@redhat.com&amp;gt; [1.8.11-16.el10]
- spec: Simplify Recommends again, kernel fixed Provides in modules-core packages (Phil Sutter) [RHEL-213273]

Thu, 18 Jun 2026 GMT - Phil Sutter &amp;lt;psutter@redhat.com&amp;gt; [1.8.11-15.el10]
- spec: Recommend kernel-modules-extra only if no other recommendation applies (Phil Sutter) [RHEL-186232]

Wed, 27 May 2026 GMT - Phil Sutter &amp;lt;psutter@redhat.com&amp;gt; [1.8.11-14.el10]
- tests: shell: Review nft-only/0009-needless-bitwise_0 (Phil Sutter) [RHEL-179504]
- spec: Soft-depend on kernel-modules-extra (Phil Sutter) [RHEL-176386]

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>amd-gpu-firmware-20260804-23.2.el10_2.noarch</title>
      <pubDate>Tue, 25 Aug 2026 11:25:47 PM GMT</pubDate>
      <guid isPermaLink="false">91a245b01c5f9fc45e5b916294ddac9545e25cc7bce2e79651bb3fb5848b8be5</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/a/amd-gpu-firmware-20260804-23.2.el10_2.noarch.rpm</link>
      <description><p><strong>amd-gpu-firmware</strong> - Firmware for AMD GPUs&lt;br /&gt;</p>

<p>Firmware for AMD amdgpu and radeon GPUs.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Tue, 04 Aug 2026 GMT - Denys Vlasenko &amp;lt;dvlasenk@redhat.com&amp;gt; - 20260804-23.2
- Update linux-firmware to latest upstream (RHEL-214057)
  Changes since the last update are noted on items below, copied from
  the git changelog of upstream linux-firmware repository.
- linux-firmware: Add firmware binary files for new HP project (Messi)
- qcom: Add gpu firmwares for Eliza chipset
- cirrus: cs35l57: Add firmware for Cirrus Amps for some Samsung laptops
- rtw89: 8922d: add fw 0.35.113.2
- qcom: venus-5.4: fix vp9 decoder assertion failure
- qla2xxx: Add ql2900_fw.bin firmware for 29xx adapters
- qcom: Update qdsp6sw firmware for shikra platform
- amdgpu: DMCUB updates for various ASICs
- intel_vpu: Update NPU firmware
- qcom: Update DSP firmware for qcs8300 platform
- linux-firmware: Add firmware for new soundwire projects
- rtw88: add firmware v41.0.0 for RTL8723B
- linux-firmware: Update AMD cpu microcode
- linux-firmware: Add firmware file for Intel BlazarIW
- linux-firmware: Update firmware file for Intel BlazarU core
- linux-firmware: Update firmware file for Intel BlazarI core
- linux-firmware: Update firmware file for Intel Scorpius core
- amdgpu: DMCUB updates for various ASICs
- amdgpu: DMCUB updates for various ASICs
- qcom: add ADSP firmware for hawi platform
- powervr: add firmware for Imagination Technologies BXM-4-64 GPU
- qcom: Update DSP firmware for sa8775p platform
Resolves: RHEL-214057

Tue, 07 Jul 2026 GMT - Denys Vlasenko &amp;lt;dvlasenk@redhat.com&amp;gt; - 20260707-23.1
- Update linux-firmware to latest upstream (RHEL-188389)
  Changes since the last update are noted on items below, copied from
  the git changelog of upstream linux-firmware repository.
- xe: Release GuC firmware for NVL-S
- cirrus: cs35l56: Update firmware for the ASUS UX5406SA
- qcom: vpu: add Gen2 firmware binary for Purwa
- cirrus: cs42l45: Update CS42L45 SDCA codec firmware for Dell laptops
- QCA: Add Bluetooth firmware for WCN6855 ROM 1.0
- iwlwifi: add Bz/Sc FW for core24.60-33 release
- iwlwifi: Add Hr/Gf firmware for core24.60-33 release
- iwlwifi: update ty/So/Ma firmwares for core24.60-33 release
- iwlwifi: update cc/Qu/QuZ firmwares for core24.60-33 release
- cirrus: cs35l56: Add firmware for Cirrus Amps for a few Dell laptops
- docs: address feedback on LICENSE-CRITERIA.md
- Adjust statement on existing firmware
- docs: add LICENSE-CRITERIA.md as project licensing policy
- ueagle-atm: sadly drop unlicensed files
- linux-firmware: qcom: sync audioreach firmwares from v1.0.4 build
- QCA: Update Bluetooth QCA6698 firmware to 2.1.2-00072
- amdgpu: DMCUB updates for various ASICs
- linux-firmware: Add firmware for new projects
- rtw89: 8852a: add TX power track R34
- linux-firmware: Update AMD SEV firmware
- nxp: add firmware for IW61x WiFi device
- mediatek MT7922: update bluetooth firmware to 20260605203811
- mediatek MT7925: update bluetooth firmware to 20260605184935
- linux-firmware: update firmware for MT7925 WiFi device
- linux-firmware: update firmware for MT7922 WiFi device
- amdgpu: DMCUB updates for various ASICs
- qcom: add LPAICP firmware for shikra platform
- qcom: Add qdsp6sw firmware for shikra platform
- linux-firmware: update firmware for MT7986
- linux-firmware: update firmware for MT7981
- linux-firmware: update firmware for MT7996
- linux-firmware: update firmware for MT7992
- linux-firmware: update firmware for MT7990
- qcom: Update ADSP firmware for Kaanapali platform
- qcom: update ADSP firmware for glymur platform
- qcom: update CDSP firmware for glymur platform
- QCA: Add bluetooth firmware nvm files for USI/NFA725B
- linux-firmware: Add firmware file for Intel BlazarIW
- linux-firmware: Update firmware file for Intel BlazarU core
- linux-firmware: Update firmware file for Intel BlazarI core
- linux-firmware: Update firmware file for Intel Scorpius core
- qcom: update ADSP firmware for qcs615 platform
- cirrus: cs42l45: Update CS42L45 SDCA codec firmware for Dell laptops
- rtl_bt: Update RTL8852A BT USB firmware to 0x244F_91B6
- realtek: rt1321: Update the patch code to v1.10
- amdgpu: DMCUB updates for various ASICs
- QCA: Update Bluetooth WCN3950 firmware 1.3.0-00108 to 1.3.0-00184
- qcom: update CDSP firmware for shikra platform
- qcom: Update ADSP firmware for Glymur platform
- Remove any files with unknown licenses
- AGENTS.md, README: address second round of MR review
- README: document AI assisted contribution convention
- AGENTS.md: clarify areas raised in MR review
- Add AGENTS.md for AI coding agents
- LICENSES: update GPL-2.0 text and references
- LICENSES: rename GPL-3 to GPL-3.0-only
- LICENSES: rename Apache-2 to Apache-2.0
- Move firmware licenses to a LICENSES/ directory
- qcom: update ADSP firmware for sm8750 platform
Resolves: RHEL-188389

Tue, 09 Jun 2026 GMT - Denys Vlasenko &amp;lt;dvlasenk@redhat.com&amp;gt; - 20260609-23
- Update linux-firmware to latest upstream (RHEL-179828)
  Changes since the last update are noted on items below, copied from
  the git changelog of upstream linux-firmware repository.
- QCA: Update Bluetooth WCN6856 firmware 2.1.0-00666 to 2.1.0-00669
- qcom: Update DSP firmware for qcs8300 platform
- qcom: Update DSP firmware for sa8775p platform
- amdgpu: Update DMCUB fw for DCN314
- amdgpu: revert yellow carp VCN firmware
- amdgpu: revert vangogh VCN firmware
- amdgpu: revert sienna cichlid VCN firmware
- amdgpu: revert navy flounder VCN firmware
- amdgpu: revert dimgrey cavefish VCN firmware
- amdgpu: revert beige_goby VCN firmware
- qcom: update CDSP firmware for x1e80100 platform
- cirrus: cs35l56: Add firmware for Cirrus Amps for a Dell laptop
- linux-firmware: Add RCA firmware files for tas257x projects
- intel_vpu: Update NPU firmware
- cirrus: cs35l63: Add Cirrus CS35L63 firmware mappings for various Dell laptops
- cirrus: cs35l56: Update firmware for Cirrus Amps for a couple of Lenovo laptops
- cirrus: cs35l56: Add firmware for Cirrus Amps for a Lenovo laptop
- QCA: Add BCS calibration binary for QCC2072
- QCA: Update Bluetooth firmware for QCC2072 UART interface
- amdgpu: DMCUB updates for various ASICs
- rtl_nic: add firmware rtl8261c.bin for RTL8261c
- cirrus: cs35l56: Add Cirrus CS35L56 firmware mappings for two Dell laptops
- i915: Xe3LPD DMC v2.36
- i915: Xe3LPD_3002 DMC v2.31
- i915: Xe3p_LPD DMC v2.37
- cirrus: cs35l56: Add firmware for Cirrus Amps for some Lenovo laptops
- cirrus: cs42l45: Update CS42L45 SDCA codec firmware for Lenovo laptops
- cirrus: cs42l45: Add CS42L45 SDCA codec firmware for Lenovo laptops
- qcom: Add gpu firmwares for Shikra chipset
- cirrus: cs35l56: Update firmware for Cirrus Amps for some Dell laptops
- rtw89: 8852b: update fw to v0.29.29.18
- rtw89: 8852bt: update fw to v0.29.122.2
- amdgpu: Update gc 11.0.1 microcode
- ASoC: tas2783: Add Firmware files for tas2783A projects
- linux-firmware: add firmware for MT7927 WiFi device
- Add HP ISH firmware for Intel Panther Lake systems
- ti: Add PCM6240 firmware with multiple audio profiles support
- qcom: add CDSP firmware for shikra platform
- amdgpu: DMCUB updates for various ASICs
- qcom: update ADSP firmware for x1e80100 platform
- lt*_fw.bin: move to Lontium subdir
- qcom: Add cdsp1r.jsn for sa8775p platform
- amdgpu: rembrandt DMCUB v4.0.74.0
- linux-firmware: Add firmware for Lontium LT9611C
- xe: Update GUC to v70.65.0 for LNL, BMG, PTL
- amdgpu: update SMU 14.0.3 kicker firmware
- amdgpu: update navy flounder firmware
- amdgpu: update SDMA 6.1.3 firmware
- amdgpu: update PSP 14.0.5 firmware
- amdgpu: update GC 11.5.3 firmware
- amdgpu: update yellow carp firmware
- amdgpu: update VCN 5.0.0 firmware
- amdgpu: update PSP 14.0.3 firmware
- amdgpu: update GC 12.0.1 firmware
- amdgpu: update VPE 6.1.3 firmware
- amdgpu: update SDMA 6.1.2 firmware
- amdgpu: update PSP 14.0.4 firmware
- amdgpu: update GC 11.5.2 firmware
- amdgpu: update PSP 14.0.2 firmware
- amdgpu: update GC 12.0.0 firmware
- amdgpu: update sienna cichlid firmware
- amdgpu: update VCN 3.1.2 firmware
- amdgpu: update PSP 13.0.5 firmware
- amdgpu: update GC 10.3.6 firmware
- amdgpu: update VCN 4.0.4 firmware
- amdgpu: update SDMA 6.0.2 firmware
- amdgpu: update PSP 13.0.7 firmware
- amdgpu: update GC 11.0.2 firmware
- amdgpu: update navi14 firmware
- amdgpu: update SDMA 6.0.3 firmware
- amdgpu: update PSP 13.0.10 firmware
- amdgpu: update GC 11.0.3 firmware
- amdgpu: update navi12 firmware
- amdgpu: update vangogh firmware
- amdgpu: update navi10 firmware
- amdgpu: update green sardine firmware
- amdgpu: update PSP 13.0.0 kicker firmware
- amdgpu: update VCN 4.0.0 firmware
- amdgpu: update SDMA 6.0.0 firmware
- amdgpu: update PSP 13.0.0 firmware
- amdgpu: update GC 11.0.0 firmware
- amdgpu: update SDMA 4.4.4 firmware
- amdgpu: update VCN 5.0.1 firmware
- amdgpu: update PSP 13.0.12 firmware
- amdgpu: update GC 9.5.0 firmware
- amdgpu: update SDMA 4.4.5 firmware
- amdgpu: update PSP 13.0.14 firmware
- amdgpu: update VPE 6.1.1 firmware
- amdgpu: update VCN 4.0.6 firmware
- amdgpu: update SDMA 6.1.1 firmware
- amdgpu: update PSP 14.0.1 firmware
- amdgpu: update GC 11.5.1 firmware
- amdgpu: update PSP 13.0.11 firmware
- amdgpu: update GC 11.0.4 firmware
- amdgpu: update beige goby firmware
- amdgpu: update VCN 4.0.3 firmware
- amdgpu: update SDMA 4.4.2 firmware
- amdgpu: update PSP 13.0.6 firmware
- amdgpu: update GC 9.4.3 firmware
- amdgpu: update VPE 6.1.0 firmware
- amdgpu: update VCN 4.0.5 firmware
- amdgpu: update SDMA 6.1.0 firmware
- amdgpu: update PSP 14.0.0 firmware
- amdgpu: update GC 11.5.0 firmware
- amdgpu: update VCN 4.0.2 firmware
- amdgpu: update SDMA 6.0.1 firmware
- amdgpu: update PSP 13.0.4 firmware
- amdgpu: update GC 11.0.1 firmware
- amdgpu: update dimgrey cavefish firmware
- amdgpu: update renoir firmware
- amdgpu: update aldebaran firmware
- rtl_bt: Add missing rtl8761a_config.bin for RTL8761AU
- amdgpu: DMCUB updates for various ASICs
- Linux-firmware: Add Dell ISH firmware 581.7783.0 for Intel Panther Lake systems.
- qcom: update ADSP firmware for x1e80100 platform
- linux-firmware:Add firmware for Lontium LT7911EXC bridge
- qcom/x1e80100/dell: mark that qcom/NOTICE.txt is applicable too
- qcom: Update CDSP firmware for Kaanapali platform
- qcom: vpu: add Gen2 firmware binary for Agatti
- amdgpu: DMCUB updates for various ASICs
- linux-firmware: Add firmware file for Intel BlazarIW
- linux-firmware: Add firmware file for Intel ScorpiusGfp2 core
- linux-firmware: Add firmware file for Intel BlazarIGfp2 core
- linux-firmware: Update firmware file for Intel BlazarU-HrPGfP core
- linux-firmware: Update firmware file for Intel BlazarU core
- linux-firmware: Update firmware file for Intel Scorpius core
- linux-firmware: Update firmware file for Intel BlazarI core
- qcom: Update ADSP firmware for Glymur platform
- mediatek MT7925: update bluetooth firmware to 20260414153243
- linux-firmware: update firmware for MT7925 WiFi device
- Revert "linux-firmware: Update firmware file for Intel Quasar core"
- qcom: Add gpdspr.jsn for qcs8300 platform
- ath12k: QCC2072 hw1.0: add to WLAN.COL.1.0.c2-00074-QCACOLSWPL_V1_TO_SILICONZ-1
- ath12k: QCC2072 hw1.0: add board-2.bin
- ath12k: IPQ5424 hw1.0: add to WLAN.WBE.1.6-01275-QCAHKSWPL_SILICONZ-1
- ath12k: IPQ5424 hw1.0: add board-2.bin
- qcom: Update ADSP firmware for Kaanapali platform
- cirrus: cs35l56: Add firmware for Cirrus Amps for some Lenovo laptops
- cirrus: cs35l56: Add firmware for Cirrus Amps for some Lenovo laptops (17aa235c 17aa235d)
- QCA: Update Bluetooth WCN6856 firmware 2.1.0-00665 to 2.1.0-00666
- amdgpu: DMCUB updates for DCN36
- linux-firmware: Update AMD cpu microcode
- powervr: update Imagination Rogue firmware images
- qcom: Update ADSP firmware for Kaanapali platform
- i915: Xe3LPD DMC v2.34
- i915: Xe3LPD_3002 DMC v2.29
- qcom: Update ADSP firmware for QCM6490 platform
- firmware/amdgpu: Update DMCUB fw to Release 0.1.55.0
- mediatek: vpu: drop old sym link
- amdgpu: Revert Yellow Carp DMUB fw to 0x4000045
- linux-firmware: qcom: sync audioreach firmwares from v1.0.3 build
- qcom: consolidate audioreach-tplg firmwares into one location in WHENCE
- WHENCE: Fix ISH firmware symlink prefix for Lenovo PTL systems
- intel_vpu: Update NPU firmware
- Revert "rtl_bt: Update RTL8822C BT USB and UART firmware to 0x0673"
- nvidia: add acr/bl symlink for booting GSP-RM on GA100
- qcom: add QUPv3 firmware for shikra
- xe: Update GUC to v70.60.0 for LNL, BMG, PTL
- qcom: update ADSP firmware for sm8750 platform
- qcom: update CDSP firmware for glymur platform
- cirrus: cs35l41: Add support for new HP laptops
- cirrus: cs35l41: Add support for new ASUS laptops
- cirrus: cs35l41: Add support for ASUS GZ302EAC and add 15.5dB bincfg
- WHENCE: Move Dell remoteproc firmware to correct section
- qcom: vpu: add video firmware for SM8450
- cirrus: cs35l56: Add firmware for Cirrus Amps for some ASUS laptops
- cirrus: cs35l56: Add firmware for Cirrus Amps for some Lenovo laptops
- iwlwifi: add Bz/Sc FW for core103-40 release
- iwlwifi: Add Hr/Gf firmware for core103-40 release
- iwlwifi: update ty/So/Ma firmwares for core103-40 release
- amdgpu: DMCUB updates for various ASICs
- xe: Update PTL GSC to v105.0.2.1397
- linux-firmware: add firmware for Moxa mux50u devices
- rtl_bt: Update RTL8852B BT USB FW to 0x127C_FD78
- ath11k: WCN6855 hw2.0@nfa765: update to WLAN.HSP.1.1-04866.5-QCAHSPSWPL_V1_V2_SILICONZ_IOE-1
- ath11k: QCA6698AQ hw2.1: update to WLAN.HSP.1.1-04866.5-QCAHSPSWPL_V1_V2_SILICONZ_IOE-1
- linux-firmware: update firmware for qat_4xxx devices
- linux-firmware: update firmware for qat_402xx devices
- linux-firmware: update firmware for qat_420xx devices
- linux-firmware: update firmware for an8811hb 2.5G ethernet phy
- linux-firmware: qcom: Add FW blobs for DELL XPS13 9345
- amdgpu: DMCUB updates for various ASICs
- cirrus: cs35l63: Update firmware for Cirrus Amps for some Dell laptops
- cirrus: cs35l63: Fix Cirrus Amp firmware links for some Dell laptops
- linux-firmware: Add firmware file for Intel BlazarIW
- linux-firmware: Add firmware file for Intel BlazarIGfp2 core
- iwlwifi: add Bz/Wh FW for core102-56 release
- ath12k: WCN7850 hw2.0: update to WLAN.HMT.1.1.c7-00108-QCAHMTSWPL_V1.0_V2.0_SILICONZ_UPSTREAM-3
- mediatek MT7921: update bluetooth firmware to 20260224111243
- mediatek MT7920: update bluetooth firmware to 20260224111231
- Add LENOVO ISH firmware v5.8.1.7720 for X1 Carbon (Gen 14) and X1 2-in-1 (Gen 11)
- linux-firmware: Add ISH firmware file for Intel Wildcat Lake platform
- linux-firmware: update firmware for MT7920 WiFi device
- linux-firmware: update firmware for MT7921 WiFi device
- linux-firmware: Update firmware file for Intel Quasar core
- Intel Bluetooth: Update firmware file for Intel Bluetooth AX201
- linux-firmware: Add firmware file for Intel ScorpiusGfp2 core
- linux-firmware: Update firmware file for Intel Scorpius core
- linux-firmware: Update firmware file for Intel BlazarIGfP core
- linux-firmware: Update firmware file for Intel BlazarI core
- linux-firmware: Update firmware file for Intel BlazarU-HrPGfP core
- linux-firmware: Update firmware file for Intel BlazarU core
- intel_vpu: Update NPU firmware
- amdgpu: DMCUB updates for various ASICs
- qcom: add QUPv3 firmware for QCS615 platform
- Add LENOVO ISH firmware v5.8.0.7720 for X9-15 2025
- mediatek MT7922: update bluetooth firmware to 20260224103448
- linux-firmware: update firmware for MT7922 WiFi device
- cirrus: cs42l45: Add CS42L45 SDCA codec firmware for Dell laptops
- cirrus: cs35l63: Add firmware for Cirrus CS35L63 for various Dell laptops
- linux-firmware: Remove duplicate fw and Rename Lenovo ISH LNLM firmware files accordingly
- amdgpu: DMCUB updates for various ASICs
- linux-firmware: Add firmware file for Intel BlazarIGfp2 core
- QCA: Update Bluetooth QCA6698 firmware to 2.1.2-00069
- qcom: Update CDSP firmware for QCM6490 platform
- linux-firmware: add firmware for Lontium LT8713SX DP hub
- linux-firmware: qcom: sync audioreach firmwares from v1.0.2 build
- qcom: update ADSP, CDSP firmware for sm8750  platform
- qcom: update ADSP dtb.mbn for glymur platform
- qca: Update Bluetooth WCN6750 1.1.3-00105 firmware to 1.1.3-00106
-  QCA: Update Bluetooth WCN6856 firmware 2.1.0-00659 to 2.1.0-00665
- amdgpu: update PSP 13.0.14 firmware
- amdgpu: update GC 9.4.4 firmware
- amdgpu: update PSP 13.0.5 firmware
- amdgpu: update GC 10.3.6 firmware
- amdgpu: update PSP 13.0.0 kicker firmware
- amdgpu: update VCN 4.0.0 firmware
- amdgpu: update PSP 13.0.0 firmware
- amdgpu: update GC 11.0.0 firmware
- amdgpu: update SDMA 6.1.3 firmware
- amdgpu: update PSP 14.0.5 firmware
- amdgpu: update GC 11.5.3 firmware
- amdgpu: update beige goby firmware
- amdgpu: update SDMA 6.1.2 firmware
- amdgpu: update PSP 14.0.4 firmware
- amdgpu: update GC 11.5.2 firmware
- amdgpu: update dimgrey cavefish firmware
- amdgpu: update vangogh firmware
- amdgpu: update navy flounder firmware
- amdgpu: update PSP 13.0.11 firmware
- amdgpu: update GC 11.0.4 firmware
- amdgpu: update VCN 4.0.2 firmware
- amdgpu: update SDMA 6.0.1 firmware
- amdgpu: update PSP 13.0.4 firmware
- amdgpu: update GC 11.0.1 firmware
- amdgpu: update sienna cichlid firmware
- amdgpu: update navi14 firmware
- amdgpu: update green sardine firmware
- amdgpu: update VCN 4.0.6 firmware
- amdgpu: update SDMA 6.1.1 firmware
- amdgpu: update PSP 14.0.1 firmware
- amdgpu: update GC 11.5.1 firmware
- amdgpu: update VCN 5.0.0 firmware
- amdgpu: update SMU 14.0.3 firmware
- amdgpu: update PSP 14.0.3 firmware
- amdgpu: update GC 12.0.1 firmware
- amdgpu: update VPE 6.1.0 firmware
- amdgpu: update VCN 4.0.5 firmware
- amdgpu: update SDMA 6.1.0 firmware
- amdgpu: update PSP 14.0.0 firmware
- amdgpu: update GC 11.5.0 firmware
- amdgpu: update navi12 firmware
- amdgpu: update SMU 14.0.2 firmware
- amdgpu: update PSP 14.0.2 firmware
- amdgpu: update GC 12.0.0 firmware
- amdgpu: update renoir firmware
- amdgpu: update navi10 firmware
- amdgpu: update VCN 4.0.4 firmware
- amdgpu: update SDMA 6.0.2 firmware
- amdgpu: update PSP 13.0.7 firmware
- amdgpu: update GC 11.0.2 firmware
- amdgpu: update VCN 4.0.3 firmware
- amdgpu: update PSP 13.0.6 firmware
- amdgpu: update GC 9.4.3 firmware
- amdgpu: update yellow carp firmware
- amdgpu: update PSP 13.0.10 firmware
- amdgpu: update GC 11.0.3 firmware
- amdgpu: update VCN 5.0.1 firmware
- amdgpu: update PSP 13.0.12 firmware
- amdgpu: update GC 9.5.0 firmware
- linux-firmware:Renaming the file back for HP EliteBook X Flip G1i
- linux-firmware:Renaming the file back for HP EliteBook X Flip G1i
- linux-firmware:Renaming the file back for HP EliteBook X Flip G1i
- amdnpu: Restore old NPU firmware for compatibility
- cirrus: cs42l45: Add CS42L45 SDCA codec firmware for Dell laptops
- lenovo: remove obsolete ish_lnlm_53c4ffad_2a17559f.bin firmware
- linux-firmware: update firmware for MT7902 BT device
- linux-firmware: update firmware for MT7902 WiFi device
- qcom: vpu: fix SC7280 VPU Gen2 firmware and add compatibility symlink
- amdgpu: DMCUB updates for various ASICs
- qcom: Update DSP firmware for qcs8300 platform
- cirrus: cs35l41: Add Firmware for ASUS Zenbook Laptop using CS35L41 HDA
- qcom: Update DSP firmware for sa8775p platform
- amdgpu: DMCUB updates for various ASICs
- rtw89: 8851b: add format-1 for fw v0.29.41.5 with fw elements
- rtw89: 8852a: add format-1 for fw v0.13.36.2 with fw elements
- rtw89: 8852bt: add regd and diag_mac and update txpwr to R09
- rtw89: 8852b: update txpwr element to R43
- rtw89: 8852b: add format-2 with v0.29.29.15 and fw elements
- Revert "rtw89: 8852b: update fw to v0.29.128.0 with format suffix -2"
- xe: Update GUC to v70.58.0 for LNL, BMG, PTL
- ath11k: WCN6855 hw2.0: update board-2.bin
- ath11k: QCA6390 hw2.0: update board-2.bin
- qcom: Add gpu firmwares for Glymur chipset
- amdgpu: DMCUB updates for various ASICs
- qcom: vpu: add video firmware for Glymur
- qcom: add QUPv3 firmware for x1e80100 platform
- Bluetooth: Add symbolic links for Intel Solar JfP2/1 firmware variants
- Bluetooth: Add symbolic links for Intel Solar firmware variants
- Bluetooth: Add symbolic links for Intel Pulsar firmware variants
- Bluetooth: Add symbolic links for Intel AX201 firmware variants
- ath10k: WCN3990 hw1.0: update board-2.bin
- qcom: add ADSP, CDSP firmware for glymur platform
- ASoC: tas2783: Add Firmware files for tas2783A
- linux-firmware: Update firmware file for Intel Solar core
- mediatek MT7921: update bluetooth firmware to 20251223091725
- rtl_bt: Update RTL8822C BT USB and UART firmware to 0x0673
- ath12k: WCN7850 hw2.0: update board-2.bin
- ath12k: QCN9274 hw2.0: update to WLAN.WBE.1.6-01243-QCAHKSWPL_SILICONZ-1
- ath11k: WCN6855 hw2.0: update board-2.bin
- ath11k: QCA6698AQ hw2.1: update board-2.bin
- WHENCE: Correct 2 trailing whitespaces
- linux-firmware: Add firmware for airoha-npu-7581 driver used for MT7990 offloading
- linux-firmware: Add Dell ISH firmware for Intel panther lake systems
- amdgpu: DMCUB updates for various ASICs
- linux-firmware: update Aeonsemi AS21x1x firmware to 1.9.1
- rtl_nic: add firmware rtl8125cp-1 for RTL8125cp
- ice: update DDP LAG package to 1.3.2.0
- cirrus: cs35l56: Add WHENCE links for 17aa233c spkid0 firmware
- rtw89: 8922a: update REGD R73-R08, txpwr R46 and element of diag MAC
- rtw89: 8852c: update REGD R73-R60, txpwr R82 and element of diag MAC
- Update firmware for NPU PHX, STX and STX HALO
- qcom: Update ADSP and add CDSP firmware for qcs6490-radxa-dragon-q6a
- qcom: Remove ADSP SensorPD json for Radxa Dragon Q6A
- amdgpu: DMCUB updates for various ASICs
Resolves: RHEL-179828

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>intel-gpu-firmware-20260804-23.2.el10_2.noarch</title>
      <pubDate>Tue, 25 Aug 2026 11:25:47 PM GMT</pubDate>
      <guid isPermaLink="false">221221b40be598d047d2fa8cddebd5459a152e201f7108ac45903f2aa922786b</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/i/intel-gpu-firmware-20260804-23.2.el10_2.noarch.rpm</link>
      <description><p><strong>intel-gpu-firmware</strong> - Firmware for Intel GPUs&lt;br /&gt;</p>

<p>Firmware for Intel GPUs including GuC (Graphics Microcontroller), HuC (HEVC/H.265&lt;br /&gt;
Microcontroller) and DMC (Display Microcontroller) firmware for Skylake and later&lt;br /&gt;
platforms.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Tue, 04 Aug 2026 GMT - Denys Vlasenko &amp;lt;dvlasenk@redhat.com&amp;gt; - 20260804-23.2
- Update linux-firmware to latest upstream (RHEL-214057)
  Changes since the last update are noted on items below, copied from
  the git changelog of upstream linux-firmware repository.
- linux-firmware: Add firmware binary files for new HP project (Messi)
- qcom: Add gpu firmwares for Eliza chipset
- cirrus: cs35l57: Add firmware for Cirrus Amps for some Samsung laptops
- rtw89: 8922d: add fw 0.35.113.2
- qcom: venus-5.4: fix vp9 decoder assertion failure
- qla2xxx: Add ql2900_fw.bin firmware for 29xx adapters
- qcom: Update qdsp6sw firmware for shikra platform
- amdgpu: DMCUB updates for various ASICs
- intel_vpu: Update NPU firmware
- qcom: Update DSP firmware for qcs8300 platform
- linux-firmware: Add firmware for new soundwire projects
- rtw88: add firmware v41.0.0 for RTL8723B
- linux-firmware: Update AMD cpu microcode
- linux-firmware: Add firmware file for Intel BlazarIW
- linux-firmware: Update firmware file for Intel BlazarU core
- linux-firmware: Update firmware file for Intel BlazarI core
- linux-firmware: Update firmware file for Intel Scorpius core
- amdgpu: DMCUB updates for various ASICs
- amdgpu: DMCUB updates for various ASICs
- qcom: add ADSP firmware for hawi platform
- powervr: add firmware for Imagination Technologies BXM-4-64 GPU
- qcom: Update DSP firmware for sa8775p platform
Resolves: RHEL-214057

Tue, 07 Jul 2026 GMT - Denys Vlasenko &amp;lt;dvlasenk@redhat.com&amp;gt; - 20260707-23.1
- Update linux-firmware to latest upstream (RHEL-188389)
  Changes since the last update are noted on items below, copied from
  the git changelog of upstream linux-firmware repository.
- xe: Release GuC firmware for NVL-S
- cirrus: cs35l56: Update firmware for the ASUS UX5406SA
- qcom: vpu: add Gen2 firmware binary for Purwa
- cirrus: cs42l45: Update CS42L45 SDCA codec firmware for Dell laptops
- QCA: Add Bluetooth firmware for WCN6855 ROM 1.0
- iwlwifi: add Bz/Sc FW for core24.60-33 release
- iwlwifi: Add Hr/Gf firmware for core24.60-33 release
- iwlwifi: update ty/So/Ma firmwares for core24.60-33 release
- iwlwifi: update cc/Qu/QuZ firmwares for core24.60-33 release
- cirrus: cs35l56: Add firmware for Cirrus Amps for a few Dell laptops
- docs: address feedback on LICENSE-CRITERIA.md
- Adjust statement on existing firmware
- docs: add LICENSE-CRITERIA.md as project licensing policy
- ueagle-atm: sadly drop unlicensed files
- linux-firmware: qcom: sync audioreach firmwares from v1.0.4 build
- QCA: Update Bluetooth QCA6698 firmware to 2.1.2-00072
- amdgpu: DMCUB updates for various ASICs
- linux-firmware: Add firmware for new projects
- rtw89: 8852a: add TX power track R34
- linux-firmware: Update AMD SEV firmware
- nxp: add firmware for IW61x WiFi device
- mediatek MT7922: update bluetooth firmware to 20260605203811
- mediatek MT7925: update bluetooth firmware to 20260605184935
- linux-firmware: update firmware for MT7925 WiFi device
- linux-firmware: update firmware for MT7922 WiFi device
- amdgpu: DMCUB updates for various ASICs
- qcom: add LPAICP firmware for shikra platform
- qcom: Add qdsp6sw firmware for shikra platform
- linux-firmware: update firmware for MT7986
- linux-firmware: update firmware for MT7981
- linux-firmware: update firmware for MT7996
- linux-firmware: update firmware for MT7992
- linux-firmware: update firmware for MT7990
- qcom: Update ADSP firmware for Kaanapali platform
- qcom: update ADSP firmware for glymur platform
- qcom: update CDSP firmware for glymur platform
- QCA: Add bluetooth firmware nvm files for USI/NFA725B
- linux-firmware: Add firmware file for Intel BlazarIW
- linux-firmware: Update firmware file for Intel BlazarU core
- linux-firmware: Update firmware file for Intel BlazarI core
- linux-firmware: Update firmware file for Intel Scorpius core
- qcom: update ADSP firmware for qcs615 platform
- cirrus: cs42l45: Update CS42L45 SDCA codec firmware for Dell laptops
- rtl_bt: Update RTL8852A BT USB firmware to 0x244F_91B6
- realtek: rt1321: Update the patch code to v1.10
- amdgpu: DMCUB updates for various ASICs
- QCA: Update Bluetooth WCN3950 firmware 1.3.0-00108 to 1.3.0-00184
- qcom: update CDSP firmware for shikra platform
- qcom: Update ADSP firmware for Glymur platform
- Remove any files with unknown licenses
- AGENTS.md, README: address second round of MR review
- README: document AI assisted contribution convention
- AGENTS.md: clarify areas raised in MR review
- Add AGENTS.md for AI coding agents
- LICENSES: update GPL-2.0 text and references
- LICENSES: rename GPL-3 to GPL-3.0-only
- LICENSES: rename Apache-2 to Apache-2.0
- Move firmware licenses to a LICENSES/ directory
- qcom: update ADSP firmware for sm8750 platform
Resolves: RHEL-188389

Tue, 09 Jun 2026 GMT - Denys Vlasenko &amp;lt;dvlasenk@redhat.com&amp;gt; - 20260609-23
- Update linux-firmware to latest upstream (RHEL-179828)
  Changes since the last update are noted on items below, copied from
  the git changelog of upstream linux-firmware repository.
- QCA: Update Bluetooth WCN6856 firmware 2.1.0-00666 to 2.1.0-00669
- qcom: Update DSP firmware for qcs8300 platform
- qcom: Update DSP firmware for sa8775p platform
- amdgpu: Update DMCUB fw for DCN314
- amdgpu: revert yellow carp VCN firmware
- amdgpu: revert vangogh VCN firmware
- amdgpu: revert sienna cichlid VCN firmware
- amdgpu: revert navy flounder VCN firmware
- amdgpu: revert dimgrey cavefish VCN firmware
- amdgpu: revert beige_goby VCN firmware
- qcom: update CDSP firmware for x1e80100 platform
- cirrus: cs35l56: Add firmware for Cirrus Amps for a Dell laptop
- linux-firmware: Add RCA firmware files for tas257x projects
- intel_vpu: Update NPU firmware
- cirrus: cs35l63: Add Cirrus CS35L63 firmware mappings for various Dell laptops
- cirrus: cs35l56: Update firmware for Cirrus Amps for a couple of Lenovo laptops
- cirrus: cs35l56: Add firmware for Cirrus Amps for a Lenovo laptop
- QCA: Add BCS calibration binary for QCC2072
- QCA: Update Bluetooth firmware for QCC2072 UART interface
- amdgpu: DMCUB updates for various ASICs
- rtl_nic: add firmware rtl8261c.bin for RTL8261c
- cirrus: cs35l56: Add Cirrus CS35L56 firmware mappings for two Dell laptops
- i915: Xe3LPD DMC v2.36
- i915: Xe3LPD_3002 DMC v2.31
- i915: Xe3p_LPD DMC v2.37
- cirrus: cs35l56: Add firmware for Cirrus Amps for some Lenovo laptops
- cirrus: cs42l45: Update CS42L45 SDCA codec firmware for Lenovo laptops
- cirrus: cs42l45: Add CS42L45 SDCA codec firmware for Lenovo laptops
- qcom: Add gpu firmwares for Shikra chipset
- cirrus: cs35l56: Update firmware for Cirrus Amps for some Dell laptops
- rtw89: 8852b: update fw to v0.29.29.18
- rtw89: 8852bt: update fw to v0.29.122.2
- amdgpu: Update gc 11.0.1 microcode
- ASoC: tas2783: Add Firmware files for tas2783A projects
- linux-firmware: add firmware for MT7927 WiFi device
- Add HP ISH firmware for Intel Panther Lake systems
- ti: Add PCM6240 firmware with multiple audio profiles support
- qcom: add CDSP firmware for shikra platform
- amdgpu: DMCUB updates for various ASICs
- qcom: update ADSP firmware for x1e80100 platform
- lt*_fw.bin: move to Lontium subdir
- qcom: Add cdsp1r.jsn for sa8775p platform
- amdgpu: rembrandt DMCUB v4.0.74.0
- linux-firmware: Add firmware for Lontium LT9611C
- xe: Update GUC to v70.65.0 for LNL, BMG, PTL
- amdgpu: update SMU 14.0.3 kicker firmware
- amdgpu: update navy flounder firmware
- amdgpu: update SDMA 6.1.3 firmware
- amdgpu: update PSP 14.0.5 firmware
- amdgpu: update GC 11.5.3 firmware
- amdgpu: update yellow carp firmware
- amdgpu: update VCN 5.0.0 firmware
- amdgpu: update PSP 14.0.3 firmware
- amdgpu: update GC 12.0.1 firmware
- amdgpu: update VPE 6.1.3 firmware
- amdgpu: update SDMA 6.1.2 firmware
- amdgpu: update PSP 14.0.4 firmware
- amdgpu: update GC 11.5.2 firmware
- amdgpu: update PSP 14.0.2 firmware
- amdgpu: update GC 12.0.0 firmware
- amdgpu: update sienna cichlid firmware
- amdgpu: update VCN 3.1.2 firmware
- amdgpu: update PSP 13.0.5 firmware
- amdgpu: update GC 10.3.6 firmware
- amdgpu: update VCN 4.0.4 firmware
- amdgpu: update SDMA 6.0.2 firmware
- amdgpu: update PSP 13.0.7 firmware
- amdgpu: update GC 11.0.2 firmware
- amdgpu: update navi14 firmware
- amdgpu: update SDMA 6.0.3 firmware
- amdgpu: update PSP 13.0.10 firmware
- amdgpu: update GC 11.0.3 firmware
- amdgpu: update navi12 firmware
- amdgpu: update vangogh firmware
- amdgpu: update navi10 firmware
- amdgpu: update green sardine firmware
- amdgpu: update PSP 13.0.0 kicker firmware
- amdgpu: update VCN 4.0.0 firmware
- amdgpu: update SDMA 6.0.0 firmware
- amdgpu: update PSP 13.0.0 firmware
- amdgpu: update GC 11.0.0 firmware
- amdgpu: update SDMA 4.4.4 firmware
- amdgpu: update VCN 5.0.1 firmware
- amdgpu: update PSP 13.0.12 firmware
- amdgpu: update GC 9.5.0 firmware
- amdgpu: update SDMA 4.4.5 firmware
- amdgpu: update PSP 13.0.14 firmware
- amdgpu: update VPE 6.1.1 firmware
- amdgpu: update VCN 4.0.6 firmware
- amdgpu: update SDMA 6.1.1 firmware
- amdgpu: update PSP 14.0.1 firmware
- amdgpu: update GC 11.5.1 firmware
- amdgpu: update PSP 13.0.11 firmware
- amdgpu: update GC 11.0.4 firmware
- amdgpu: update beige goby firmware
- amdgpu: update VCN 4.0.3 firmware
- amdgpu: update SDMA 4.4.2 firmware
- amdgpu: update PSP 13.0.6 firmware
- amdgpu: update GC 9.4.3 firmware
- amdgpu: update VPE 6.1.0 firmware
- amdgpu: update VCN 4.0.5 firmware
- amdgpu: update SDMA 6.1.0 firmware
- amdgpu: update PSP 14.0.0 firmware
- amdgpu: update GC 11.5.0 firmware
- amdgpu: update VCN 4.0.2 firmware
- amdgpu: update SDMA 6.0.1 firmware
- amdgpu: update PSP 13.0.4 firmware
- amdgpu: update GC 11.0.1 firmware
- amdgpu: update dimgrey cavefish firmware
- amdgpu: update renoir firmware
- amdgpu: update aldebaran firmware
- rtl_bt: Add missing rtl8761a_config.bin for RTL8761AU
- amdgpu: DMCUB updates for various ASICs
- Linux-firmware: Add Dell ISH firmware 581.7783.0 for Intel Panther Lake systems.
- qcom: update ADSP firmware for x1e80100 platform
- linux-firmware:Add firmware for Lontium LT7911EXC bridge
- qcom/x1e80100/dell: mark that qcom/NOTICE.txt is applicable too
- qcom: Update CDSP firmware for Kaanapali platform
- qcom: vpu: add Gen2 firmware binary for Agatti
- amdgpu: DMCUB updates for various ASICs
- linux-firmware: Add firmware file for Intel BlazarIW
- linux-firmware: Add firmware file for Intel ScorpiusGfp2 core
- linux-firmware: Add firmware file for Intel BlazarIGfp2 core
- linux-firmware: Update firmware file for Intel BlazarU-HrPGfP core
- linux-firmware: Update firmware file for Intel BlazarU core
- linux-firmware: Update firmware file for Intel Scorpius core
- linux-firmware: Update firmware file for Intel BlazarI core
- qcom: Update ADSP firmware for Glymur platform
- mediatek MT7925: update bluetooth firmware to 20260414153243
- linux-firmware: update firmware for MT7925 WiFi device
- Revert "linux-firmware: Update firmware file for Intel Quasar core"
- qcom: Add gpdspr.jsn for qcs8300 platform
- ath12k: QCC2072 hw1.0: add to WLAN.COL.1.0.c2-00074-QCACOLSWPL_V1_TO_SILICONZ-1
- ath12k: QCC2072 hw1.0: add board-2.bin
- ath12k: IPQ5424 hw1.0: add to WLAN.WBE.1.6-01275-QCAHKSWPL_SILICONZ-1
- ath12k: IPQ5424 hw1.0: add board-2.bin
- qcom: Update ADSP firmware for Kaanapali platform
- cirrus: cs35l56: Add firmware for Cirrus Amps for some Lenovo laptops
- cirrus: cs35l56: Add firmware for Cirrus Amps for some Lenovo laptops (17aa235c 17aa235d)
- QCA: Update Bluetooth WCN6856 firmware 2.1.0-00665 to 2.1.0-00666
- amdgpu: DMCUB updates for DCN36
- linux-firmware: Update AMD cpu microcode
- powervr: update Imagination Rogue firmware images
- qcom: Update ADSP firmware for Kaanapali platform
- i915: Xe3LPD DMC v2.34
- i915: Xe3LPD_3002 DMC v2.29
- qcom: Update ADSP firmware for QCM6490 platform
- firmware/amdgpu: Update DMCUB fw to Release 0.1.55.0
- mediatek: vpu: drop old sym link
- amdgpu: Revert Yellow Carp DMUB fw to 0x4000045
- linux-firmware: qcom: sync audioreach firmwares from v1.0.3 build
- qcom: consolidate audioreach-tplg firmwares into one location in WHENCE
- WHENCE: Fix ISH firmware symlink prefix for Lenovo PTL systems
- intel_vpu: Update NPU firmware
- Revert "rtl_bt: Update RTL8822C BT USB and UART firmware to 0x0673"
- nvidia: add acr/bl symlink for booting GSP-RM on GA100
- qcom: add QUPv3 firmware for shikra
- xe: Update GUC to v70.60.0 for LNL, BMG, PTL
- qcom: update ADSP firmware for sm8750 platform
- qcom: update CDSP firmware for glymur platform
- cirrus: cs35l41: Add support for new HP laptops
- cirrus: cs35l41: Add support for new ASUS laptops
- cirrus: cs35l41: Add support for ASUS GZ302EAC and add 15.5dB bincfg
- WHENCE: Move Dell remoteproc firmware to correct section
- qcom: vpu: add video firmware for SM8450
- cirrus: cs35l56: Add firmware for Cirrus Amps for some ASUS laptops
- cirrus: cs35l56: Add firmware for Cirrus Amps for some Lenovo laptops
- iwlwifi: add Bz/Sc FW for core103-40 release
- iwlwifi: Add Hr/Gf firmware for core103-40 release
- iwlwifi: update ty/So/Ma firmwares for core103-40 release
- amdgpu: DMCUB updates for various ASICs
- xe: Update PTL GSC to v105.0.2.1397
- linux-firmware: add firmware for Moxa mux50u devices
- rtl_bt: Update RTL8852B BT USB FW to 0x127C_FD78
- ath11k: WCN6855 hw2.0@nfa765: update to WLAN.HSP.1.1-04866.5-QCAHSPSWPL_V1_V2_SILICONZ_IOE-1
- ath11k: QCA6698AQ hw2.1: update to WLAN.HSP.1.1-04866.5-QCAHSPSWPL_V1_V2_SILICONZ_IOE-1
- linux-firmware: update firmware for qat_4xxx devices
- linux-firmware: update firmware for qat_402xx devices
- linux-firmware: update firmware for qat_420xx devices
- linux-firmware: update firmware for an8811hb 2.5G ethernet phy
- linux-firmware: qcom: Add FW blobs for DELL XPS13 9345
- amdgpu: DMCUB updates for various ASICs
- cirrus: cs35l63: Update firmware for Cirrus Amps for some Dell laptops
- cirrus: cs35l63: Fix Cirrus Amp firmware links for some Dell laptops
- linux-firmware: Add firmware file for Intel BlazarIW
- linux-firmware: Add firmware file for Intel BlazarIGfp2 core
- iwlwifi: add Bz/Wh FW for core102-56 release
- ath12k: WCN7850 hw2.0: update to WLAN.HMT.1.1.c7-00108-QCAHMTSWPL_V1.0_V2.0_SILICONZ_UPSTREAM-3
- mediatek MT7921: update bluetooth firmware to 20260224111243
- mediatek MT7920: update bluetooth firmware to 20260224111231
- Add LENOVO ISH firmware v5.8.1.7720 for X1 Carbon (Gen 14) and X1 2-in-1 (Gen 11)
- linux-firmware: Add ISH firmware file for Intel Wildcat Lake platform
- linux-firmware: update firmware for MT7920 WiFi device
- linux-firmware: update firmware for MT7921 WiFi device
- linux-firmware: Update firmware file for Intel Quasar core
- Intel Bluetooth: Update firmware file for Intel Bluetooth AX201
- linux-firmware: Add firmware file for Intel ScorpiusGfp2 core
- linux-firmware: Update firmware file for Intel Scorpius core
- linux-firmware: Update firmware file for Intel BlazarIGfP core
- linux-firmware: Update firmware file for Intel BlazarI core
- linux-firmware: Update firmware file for Intel BlazarU-HrPGfP core
- linux-firmware: Update firmware file for Intel BlazarU core
- intel_vpu: Update NPU firmware
- amdgpu: DMCUB updates for various ASICs
- qcom: add QUPv3 firmware for QCS615 platform
- Add LENOVO ISH firmware v5.8.0.7720 for X9-15 2025
- mediatek MT7922: update bluetooth firmware to 20260224103448
- linux-firmware: update firmware for MT7922 WiFi device
- cirrus: cs42l45: Add CS42L45 SDCA codec firmware for Dell laptops
- cirrus: cs35l63: Add firmware for Cirrus CS35L63 for various Dell laptops
- linux-firmware: Remove duplicate fw and Rename Lenovo ISH LNLM firmware files accordingly
- amdgpu: DMCUB updates for various ASICs
- linux-firmware: Add firmware file for Intel BlazarIGfp2 core
- QCA: Update Bluetooth QCA6698 firmware to 2.1.2-00069
- qcom: Update CDSP firmware for QCM6490 platform
- linux-firmware: add firmware for Lontium LT8713SX DP hub
- linux-firmware: qcom: sync audioreach firmwares from v1.0.2 build
- qcom: update ADSP, CDSP firmware for sm8750  platform
- qcom: update ADSP dtb.mbn for glymur platform
- qca: Update Bluetooth WCN6750 1.1.3-00105 firmware to 1.1.3-00106
-  QCA: Update Bluetooth WCN6856 firmware 2.1.0-00659 to 2.1.0-00665
- amdgpu: update PSP 13.0.14 firmware
- amdgpu: update GC 9.4.4 firmware
- amdgpu: update PSP 13.0.5 firmware
- amdgpu: update GC 10.3.6 firmware
- amdgpu: update PSP 13.0.0 kicker firmware
- amdgpu: update VCN 4.0.0 firmware
- amdgpu: update PSP 13.0.0 firmware
- amdgpu: update GC 11.0.0 firmware
- amdgpu: update SDMA 6.1.3 firmware
- amdgpu: update PSP 14.0.5 firmware
- amdgpu: update GC 11.5.3 firmware
- amdgpu: update beige goby firmware
- amdgpu: update SDMA 6.1.2 firmware
- amdgpu: update PSP 14.0.4 firmware
- amdgpu: update GC 11.5.2 firmware
- amdgpu: update dimgrey cavefish firmware
- amdgpu: update vangogh firmware
- amdgpu: update navy flounder firmware
- amdgpu: update PSP 13.0.11 firmware
- amdgpu: update GC 11.0.4 firmware
- amdgpu: update VCN 4.0.2 firmware
- amdgpu: update SDMA 6.0.1 firmware
- amdgpu: update PSP 13.0.4 firmware
- amdgpu: update GC 11.0.1 firmware
- amdgpu: update sienna cichlid firmware
- amdgpu: update navi14 firmware
- amdgpu: update green sardine firmware
- amdgpu: update VCN 4.0.6 firmware
- amdgpu: update SDMA 6.1.1 firmware
- amdgpu: update PSP 14.0.1 firmware
- amdgpu: update GC 11.5.1 firmware
- amdgpu: update VCN 5.0.0 firmware
- amdgpu: update SMU 14.0.3 firmware
- amdgpu: update PSP 14.0.3 firmware
- amdgpu: update GC 12.0.1 firmware
- amdgpu: update VPE 6.1.0 firmware
- amdgpu: update VCN 4.0.5 firmware
- amdgpu: update SDMA 6.1.0 firmware
- amdgpu: update PSP 14.0.0 firmware
- amdgpu: update GC 11.5.0 firmware
- amdgpu: update navi12 firmware
- amdgpu: update SMU 14.0.2 firmware
- amdgpu: update PSP 14.0.2 firmware
- amdgpu: update GC 12.0.0 firmware
- amdgpu: update renoir firmware
- amdgpu: update navi10 firmware
- amdgpu: update VCN 4.0.4 firmware
- amdgpu: update SDMA 6.0.2 firmware
- amdgpu: update PSP 13.0.7 firmware
- amdgpu: update GC 11.0.2 firmware
- amdgpu: update VCN 4.0.3 firmware
- amdgpu: update PSP 13.0.6 firmware
- amdgpu: update GC 9.4.3 firmware
- amdgpu: update yellow carp firmware
- amdgpu: update PSP 13.0.10 firmware
- amdgpu: update GC 11.0.3 firmware
- amdgpu: update VCN 5.0.1 firmware
- amdgpu: update PSP 13.0.12 firmware
- amdgpu: update GC 9.5.0 firmware
- linux-firmware:Renaming the file back for HP EliteBook X Flip G1i
- linux-firmware:Renaming the file back for HP EliteBook X Flip G1i
- linux-firmware:Renaming the file back for HP EliteBook X Flip G1i
- amdnpu: Restore old NPU firmware for compatibility
- cirrus: cs42l45: Add CS42L45 SDCA codec firmware for Dell laptops
- lenovo: remove obsolete ish_lnlm_53c4ffad_2a17559f.bin firmware
- linux-firmware: update firmware for MT7902 BT device
- linux-firmware: update firmware for MT7902 WiFi device
- qcom: vpu: fix SC7280 VPU Gen2 firmware and add compatibility symlink
- amdgpu: DMCUB updates for various ASICs
- qcom: Update DSP firmware for qcs8300 platform
- cirrus: cs35l41: Add Firmware for ASUS Zenbook Laptop using CS35L41 HDA
- qcom: Update DSP firmware for sa8775p platform
- amdgpu: DMCUB updates for various ASICs
- rtw89: 8851b: add format-1 for fw v0.29.41.5 with fw elements
- rtw89: 8852a: add format-1 for fw v0.13.36.2 with fw elements
- rtw89: 8852bt: add regd and diag_mac and update txpwr to R09
- rtw89: 8852b: update txpwr element to R43
- rtw89: 8852b: add format-2 with v0.29.29.15 and fw elements
- Revert "rtw89: 8852b: update fw to v0.29.128.0 with format suffix -2"
- xe: Update GUC to v70.58.0 for LNL, BMG, PTL
- ath11k: WCN6855 hw2.0: update board-2.bin
- ath11k: QCA6390 hw2.0: update board-2.bin
- qcom: Add gpu firmwares for Glymur chipset
- amdgpu: DMCUB updates for various ASICs
- qcom: vpu: add video firmware for Glymur
- qcom: add QUPv3 firmware for x1e80100 platform
- Bluetooth: Add symbolic links for Intel Solar JfP2/1 firmware variants
- Bluetooth: Add symbolic links for Intel Solar firmware variants
- Bluetooth: Add symbolic links for Intel Pulsar firmware variants
- Bluetooth: Add symbolic links for Intel AX201 firmware variants
- ath10k: WCN3990 hw1.0: update board-2.bin
- qcom: add ADSP, CDSP firmware for glymur platform
- ASoC: tas2783: Add Firmware files for tas2783A
- linux-firmware: Update firmware file for Intel Solar core
- mediatek MT7921: update bluetooth firmware to 20251223091725
- rtl_bt: Update RTL8822C BT USB and UART firmware to 0x0673
- ath12k: WCN7850 hw2.0: update board-2.bin
- ath12k: QCN9274 hw2.0: update to WLAN.WBE.1.6-01243-QCAHKSWPL_SILICONZ-1
- ath11k: WCN6855 hw2.0: update board-2.bin
- ath11k: QCA6698AQ hw2.1: update board-2.bin
- WHENCE: Correct 2 trailing whitespaces
- linux-firmware: Add firmware for airoha-npu-7581 driver used for MT7990 offloading
- linux-firmware: Add Dell ISH firmware for Intel panther lake systems
- amdgpu: DMCUB updates for various ASICs
- linux-firmware: update Aeonsemi AS21x1x firmware to 1.9.1
- rtl_nic: add firmware rtl8125cp-1 for RTL8125cp
- ice: update DDP LAG package to 1.3.2.0
- cirrus: cs35l56: Add WHENCE links for 17aa233c spkid0 firmware
- rtw89: 8922a: update REGD R73-R08, txpwr R46 and element of diag MAC
- rtw89: 8852c: update REGD R73-R60, txpwr R82 and element of diag MAC
- Update firmware for NPU PHX, STX and STX HALO
- qcom: Update ADSP and add CDSP firmware for qcs6490-radxa-dragon-q6a
- qcom: Remove ADSP SensorPD json for Radxa Dragon Q6A
- amdgpu: DMCUB updates for various ASICs
Resolves: RHEL-179828

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>nvidia-gpu-firmware-20260804-23.2.el10_2.noarch</title>
      <pubDate>Tue, 25 Aug 2026 11:25:47 PM GMT</pubDate>
      <guid isPermaLink="false">9e53425ddfb1ddfa5276cf0f437ff4cc4dfb7421e808edfadd9c2d6b0a3a34f5</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/n/nvidia-gpu-firmware-20260804-23.2.el10_2.noarch.rpm</link>
      <description><p><strong>nvidia-gpu-firmware</strong> - Firmware for NVIDIA GPUs&lt;br /&gt;</p>

<p>Firmware for NVIDIA GPUs.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Tue, 04 Aug 2026 GMT - Denys Vlasenko &amp;lt;dvlasenk@redhat.com&amp;gt; - 20260804-23.2
- Update linux-firmware to latest upstream (RHEL-214057)
  Changes since the last update are noted on items below, copied from
  the git changelog of upstream linux-firmware repository.
- linux-firmware: Add firmware binary files for new HP project (Messi)
- qcom: Add gpu firmwares for Eliza chipset
- cirrus: cs35l57: Add firmware for Cirrus Amps for some Samsung laptops
- rtw89: 8922d: add fw 0.35.113.2
- qcom: venus-5.4: fix vp9 decoder assertion failure
- qla2xxx: Add ql2900_fw.bin firmware for 29xx adapters
- qcom: Update qdsp6sw firmware for shikra platform
- amdgpu: DMCUB updates for various ASICs
- intel_vpu: Update NPU firmware
- qcom: Update DSP firmware for qcs8300 platform
- linux-firmware: Add firmware for new soundwire projects
- rtw88: add firmware v41.0.0 for RTL8723B
- linux-firmware: Update AMD cpu microcode
- linux-firmware: Add firmware file for Intel BlazarIW
- linux-firmware: Update firmware file for Intel BlazarU core
- linux-firmware: Update firmware file for Intel BlazarI core
- linux-firmware: Update firmware file for Intel Scorpius core
- amdgpu: DMCUB updates for various ASICs
- amdgpu: DMCUB updates for various ASICs
- qcom: add ADSP firmware for hawi platform
- powervr: add firmware for Imagination Technologies BXM-4-64 GPU
- qcom: Update DSP firmware for sa8775p platform
Resolves: RHEL-214057

Tue, 07 Jul 2026 GMT - Denys Vlasenko &amp;lt;dvlasenk@redhat.com&amp;gt; - 20260707-23.1
- Update linux-firmware to latest upstream (RHEL-188389)
  Changes since the last update are noted on items below, copied from
  the git changelog of upstream linux-firmware repository.
- xe: Release GuC firmware for NVL-S
- cirrus: cs35l56: Update firmware for the ASUS UX5406SA
- qcom: vpu: add Gen2 firmware binary for Purwa
- cirrus: cs42l45: Update CS42L45 SDCA codec firmware for Dell laptops
- QCA: Add Bluetooth firmware for WCN6855 ROM 1.0
- iwlwifi: add Bz/Sc FW for core24.60-33 release
- iwlwifi: Add Hr/Gf firmware for core24.60-33 release
- iwlwifi: update ty/So/Ma firmwares for core24.60-33 release
- iwlwifi: update cc/Qu/QuZ firmwares for core24.60-33 release
- cirrus: cs35l56: Add firmware for Cirrus Amps for a few Dell laptops
- docs: address feedback on LICENSE-CRITERIA.md
- Adjust statement on existing firmware
- docs: add LICENSE-CRITERIA.md as project licensing policy
- ueagle-atm: sadly drop unlicensed files
- linux-firmware: qcom: sync audioreach firmwares from v1.0.4 build
- QCA: Update Bluetooth QCA6698 firmware to 2.1.2-00072
- amdgpu: DMCUB updates for various ASICs
- linux-firmware: Add firmware for new projects
- rtw89: 8852a: add TX power track R34
- linux-firmware: Update AMD SEV firmware
- nxp: add firmware for IW61x WiFi device
- mediatek MT7922: update bluetooth firmware to 20260605203811
- mediatek MT7925: update bluetooth firmware to 20260605184935
- linux-firmware: update firmware for MT7925 WiFi device
- linux-firmware: update firmware for MT7922 WiFi device
- amdgpu: DMCUB updates for various ASICs
- qcom: add LPAICP firmware for shikra platform
- qcom: Add qdsp6sw firmware for shikra platform
- linux-firmware: update firmware for MT7986
- linux-firmware: update firmware for MT7981
- linux-firmware: update firmware for MT7996
- linux-firmware: update firmware for MT7992
- linux-firmware: update firmware for MT7990
- qcom: Update ADSP firmware for Kaanapali platform
- qcom: update ADSP firmware for glymur platform
- qcom: update CDSP firmware for glymur platform
- QCA: Add bluetooth firmware nvm files for USI/NFA725B
- linux-firmware: Add firmware file for Intel BlazarIW
- linux-firmware: Update firmware file for Intel BlazarU core
- linux-firmware: Update firmware file for Intel BlazarI core
- linux-firmware: Update firmware file for Intel Scorpius core
- qcom: update ADSP firmware for qcs615 platform
- cirrus: cs42l45: Update CS42L45 SDCA codec firmware for Dell laptops
- rtl_bt: Update RTL8852A BT USB firmware to 0x244F_91B6
- realtek: rt1321: Update the patch code to v1.10
- amdgpu: DMCUB updates for various ASICs
- QCA: Update Bluetooth WCN3950 firmware 1.3.0-00108 to 1.3.0-00184
- qcom: update CDSP firmware for shikra platform
- qcom: Update ADSP firmware for Glymur platform
- Remove any files with unknown licenses
- AGENTS.md, README: address second round of MR review
- README: document AI assisted contribution convention
- AGENTS.md: clarify areas raised in MR review
- Add AGENTS.md for AI coding agents
- LICENSES: update GPL-2.0 text and references
- LICENSES: rename GPL-3 to GPL-3.0-only
- LICENSES: rename Apache-2 to Apache-2.0
- Move firmware licenses to a LICENSES/ directory
- qcom: update ADSP firmware for sm8750 platform
Resolves: RHEL-188389

Tue, 09 Jun 2026 GMT - Denys Vlasenko &amp;lt;dvlasenk@redhat.com&amp;gt; - 20260609-23
- Update linux-firmware to latest upstream (RHEL-179828)
  Changes since the last update are noted on items below, copied from
  the git changelog of upstream linux-firmware repository.
- QCA: Update Bluetooth WCN6856 firmware 2.1.0-00666 to 2.1.0-00669
- qcom: Update DSP firmware for qcs8300 platform
- qcom: Update DSP firmware for sa8775p platform
- amdgpu: Update DMCUB fw for DCN314
- amdgpu: revert yellow carp VCN firmware
- amdgpu: revert vangogh VCN firmware
- amdgpu: revert sienna cichlid VCN firmware
- amdgpu: revert navy flounder VCN firmware
- amdgpu: revert dimgrey cavefish VCN firmware
- amdgpu: revert beige_goby VCN firmware
- qcom: update CDSP firmware for x1e80100 platform
- cirrus: cs35l56: Add firmware for Cirrus Amps for a Dell laptop
- linux-firmware: Add RCA firmware files for tas257x projects
- intel_vpu: Update NPU firmware
- cirrus: cs35l63: Add Cirrus CS35L63 firmware mappings for various Dell laptops
- cirrus: cs35l56: Update firmware for Cirrus Amps for a couple of Lenovo laptops
- cirrus: cs35l56: Add firmware for Cirrus Amps for a Lenovo laptop
- QCA: Add BCS calibration binary for QCC2072
- QCA: Update Bluetooth firmware for QCC2072 UART interface
- amdgpu: DMCUB updates for various ASICs
- rtl_nic: add firmware rtl8261c.bin for RTL8261c
- cirrus: cs35l56: Add Cirrus CS35L56 firmware mappings for two Dell laptops
- i915: Xe3LPD DMC v2.36
- i915: Xe3LPD_3002 DMC v2.31
- i915: Xe3p_LPD DMC v2.37
- cirrus: cs35l56: Add firmware for Cirrus Amps for some Lenovo laptops
- cirrus: cs42l45: Update CS42L45 SDCA codec firmware for Lenovo laptops
- cirrus: cs42l45: Add CS42L45 SDCA codec firmware for Lenovo laptops
- qcom: Add gpu firmwares for Shikra chipset
- cirrus: cs35l56: Update firmware for Cirrus Amps for some Dell laptops
- rtw89: 8852b: update fw to v0.29.29.18
- rtw89: 8852bt: update fw to v0.29.122.2
- amdgpu: Update gc 11.0.1 microcode
- ASoC: tas2783: Add Firmware files for tas2783A projects
- linux-firmware: add firmware for MT7927 WiFi device
- Add HP ISH firmware for Intel Panther Lake systems
- ti: Add PCM6240 firmware with multiple audio profiles support
- qcom: add CDSP firmware for shikra platform
- amdgpu: DMCUB updates for various ASICs
- qcom: update ADSP firmware for x1e80100 platform
- lt*_fw.bin: move to Lontium subdir
- qcom: Add cdsp1r.jsn for sa8775p platform
- amdgpu: rembrandt DMCUB v4.0.74.0
- linux-firmware: Add firmware for Lontium LT9611C
- xe: Update GUC to v70.65.0 for LNL, BMG, PTL
- amdgpu: update SMU 14.0.3 kicker firmware
- amdgpu: update navy flounder firmware
- amdgpu: update SDMA 6.1.3 firmware
- amdgpu: update PSP 14.0.5 firmware
- amdgpu: update GC 11.5.3 firmware
- amdgpu: update yellow carp firmware
- amdgpu: update VCN 5.0.0 firmware
- amdgpu: update PSP 14.0.3 firmware
- amdgpu: update GC 12.0.1 firmware
- amdgpu: update VPE 6.1.3 firmware
- amdgpu: update SDMA 6.1.2 firmware
- amdgpu: update PSP 14.0.4 firmware
- amdgpu: update GC 11.5.2 firmware
- amdgpu: update PSP 14.0.2 firmware
- amdgpu: update GC 12.0.0 firmware
- amdgpu: update sienna cichlid firmware
- amdgpu: update VCN 3.1.2 firmware
- amdgpu: update PSP 13.0.5 firmware
- amdgpu: update GC 10.3.6 firmware
- amdgpu: update VCN 4.0.4 firmware
- amdgpu: update SDMA 6.0.2 firmware
- amdgpu: update PSP 13.0.7 firmware
- amdgpu: update GC 11.0.2 firmware
- amdgpu: update navi14 firmware
- amdgpu: update SDMA 6.0.3 firmware
- amdgpu: update PSP 13.0.10 firmware
- amdgpu: update GC 11.0.3 firmware
- amdgpu: update navi12 firmware
- amdgpu: update vangogh firmware
- amdgpu: update navi10 firmware
- amdgpu: update green sardine firmware
- amdgpu: update PSP 13.0.0 kicker firmware
- amdgpu: update VCN 4.0.0 firmware
- amdgpu: update SDMA 6.0.0 firmware
- amdgpu: update PSP 13.0.0 firmware
- amdgpu: update GC 11.0.0 firmware
- amdgpu: update SDMA 4.4.4 firmware
- amdgpu: update VCN 5.0.1 firmware
- amdgpu: update PSP 13.0.12 firmware
- amdgpu: update GC 9.5.0 firmware
- amdgpu: update SDMA 4.4.5 firmware
- amdgpu: update PSP 13.0.14 firmware
- amdgpu: update VPE 6.1.1 firmware
- amdgpu: update VCN 4.0.6 firmware
- amdgpu: update SDMA 6.1.1 firmware
- amdgpu: update PSP 14.0.1 firmware
- amdgpu: update GC 11.5.1 firmware
- amdgpu: update PSP 13.0.11 firmware
- amdgpu: update GC 11.0.4 firmware
- amdgpu: update beige goby firmware
- amdgpu: update VCN 4.0.3 firmware
- amdgpu: update SDMA 4.4.2 firmware
- amdgpu: update PSP 13.0.6 firmware
- amdgpu: update GC 9.4.3 firmware
- amdgpu: update VPE 6.1.0 firmware
- amdgpu: update VCN 4.0.5 firmware
- amdgpu: update SDMA 6.1.0 firmware
- amdgpu: update PSP 14.0.0 firmware
- amdgpu: update GC 11.5.0 firmware
- amdgpu: update VCN 4.0.2 firmware
- amdgpu: update SDMA 6.0.1 firmware
- amdgpu: update PSP 13.0.4 firmware
- amdgpu: update GC 11.0.1 firmware
- amdgpu: update dimgrey cavefish firmware
- amdgpu: update renoir firmware
- amdgpu: update aldebaran firmware
- rtl_bt: Add missing rtl8761a_config.bin for RTL8761AU
- amdgpu: DMCUB updates for various ASICs
- Linux-firmware: Add Dell ISH firmware 581.7783.0 for Intel Panther Lake systems.
- qcom: update ADSP firmware for x1e80100 platform
- linux-firmware:Add firmware for Lontium LT7911EXC bridge
- qcom/x1e80100/dell: mark that qcom/NOTICE.txt is applicable too
- qcom: Update CDSP firmware for Kaanapali platform
- qcom: vpu: add Gen2 firmware binary for Agatti
- amdgpu: DMCUB updates for various ASICs
- linux-firmware: Add firmware file for Intel BlazarIW
- linux-firmware: Add firmware file for Intel ScorpiusGfp2 core
- linux-firmware: Add firmware file for Intel BlazarIGfp2 core
- linux-firmware: Update firmware file for Intel BlazarU-HrPGfP core
- linux-firmware: Update firmware file for Intel BlazarU core
- linux-firmware: Update firmware file for Intel Scorpius core
- linux-firmware: Update firmware file for Intel BlazarI core
- qcom: Update ADSP firmware for Glymur platform
- mediatek MT7925: update bluetooth firmware to 20260414153243
- linux-firmware: update firmware for MT7925 WiFi device
- Revert "linux-firmware: Update firmware file for Intel Quasar core"
- qcom: Add gpdspr.jsn for qcs8300 platform
- ath12k: QCC2072 hw1.0: add to WLAN.COL.1.0.c2-00074-QCACOLSWPL_V1_TO_SILICONZ-1
- ath12k: QCC2072 hw1.0: add board-2.bin
- ath12k: IPQ5424 hw1.0: add to WLAN.WBE.1.6-01275-QCAHKSWPL_SILICONZ-1
- ath12k: IPQ5424 hw1.0: add board-2.bin
- qcom: Update ADSP firmware for Kaanapali platform
- cirrus: cs35l56: Add firmware for Cirrus Amps for some Lenovo laptops
- cirrus: cs35l56: Add firmware for Cirrus Amps for some Lenovo laptops (17aa235c 17aa235d)
- QCA: Update Bluetooth WCN6856 firmware 2.1.0-00665 to 2.1.0-00666
- amdgpu: DMCUB updates for DCN36
- linux-firmware: Update AMD cpu microcode
- powervr: update Imagination Rogue firmware images
- qcom: Update ADSP firmware for Kaanapali platform
- i915: Xe3LPD DMC v2.34
- i915: Xe3LPD_3002 DMC v2.29
- qcom: Update ADSP firmware for QCM6490 platform
- firmware/amdgpu: Update DMCUB fw to Release 0.1.55.0
- mediatek: vpu: drop old sym link
- amdgpu: Revert Yellow Carp DMUB fw to 0x4000045
- linux-firmware: qcom: sync audioreach firmwares from v1.0.3 build
- qcom: consolidate audioreach-tplg firmwares into one location in WHENCE
- WHENCE: Fix ISH firmware symlink prefix for Lenovo PTL systems
- intel_vpu: Update NPU firmware
- Revert "rtl_bt: Update RTL8822C BT USB and UART firmware to 0x0673"
- nvidia: add acr/bl symlink for booting GSP-RM on GA100
- qcom: add QUPv3 firmware for shikra
- xe: Update GUC to v70.60.0 for LNL, BMG, PTL
- qcom: update ADSP firmware for sm8750 platform
- qcom: update CDSP firmware for glymur platform
- cirrus: cs35l41: Add support for new HP laptops
- cirrus: cs35l41: Add support for new ASUS laptops
- cirrus: cs35l41: Add support for ASUS GZ302EAC and add 15.5dB bincfg
- WHENCE: Move Dell remoteproc firmware to correct section
- qcom: vpu: add video firmware for SM8450
- cirrus: cs35l56: Add firmware for Cirrus Amps for some ASUS laptops
- cirrus: cs35l56: Add firmware for Cirrus Amps for some Lenovo laptops
- iwlwifi: add Bz/Sc FW for core103-40 release
- iwlwifi: Add Hr/Gf firmware for core103-40 release
- iwlwifi: update ty/So/Ma firmwares for core103-40 release
- amdgpu: DMCUB updates for various ASICs
- xe: Update PTL GSC to v105.0.2.1397
- linux-firmware: add firmware for Moxa mux50u devices
- rtl_bt: Update RTL8852B BT USB FW to 0x127C_FD78
- ath11k: WCN6855 hw2.0@nfa765: update to WLAN.HSP.1.1-04866.5-QCAHSPSWPL_V1_V2_SILICONZ_IOE-1
- ath11k: QCA6698AQ hw2.1: update to WLAN.HSP.1.1-04866.5-QCAHSPSWPL_V1_V2_SILICONZ_IOE-1
- linux-firmware: update firmware for qat_4xxx devices
- linux-firmware: update firmware for qat_402xx devices
- linux-firmware: update firmware for qat_420xx devices
- linux-firmware: update firmware for an8811hb 2.5G ethernet phy
- linux-firmware: qcom: Add FW blobs for DELL XPS13 9345
- amdgpu: DMCUB updates for various ASICs
- cirrus: cs35l63: Update firmware for Cirrus Amps for some Dell laptops
- cirrus: cs35l63: Fix Cirrus Amp firmware links for some Dell laptops
- linux-firmware: Add firmware file for Intel BlazarIW
- linux-firmware: Add firmware file for Intel BlazarIGfp2 core
- iwlwifi: add Bz/Wh FW for core102-56 release
- ath12k: WCN7850 hw2.0: update to WLAN.HMT.1.1.c7-00108-QCAHMTSWPL_V1.0_V2.0_SILICONZ_UPSTREAM-3
- mediatek MT7921: update bluetooth firmware to 20260224111243
- mediatek MT7920: update bluetooth firmware to 20260224111231
- Add LENOVO ISH firmware v5.8.1.7720 for X1 Carbon (Gen 14) and X1 2-in-1 (Gen 11)
- linux-firmware: Add ISH firmware file for Intel Wildcat Lake platform
- linux-firmware: update firmware for MT7920 WiFi device
- linux-firmware: update firmware for MT7921 WiFi device
- linux-firmware: Update firmware file for Intel Quasar core
- Intel Bluetooth: Update firmware file for Intel Bluetooth AX201
- linux-firmware: Add firmware file for Intel ScorpiusGfp2 core
- linux-firmware: Update firmware file for Intel Scorpius core
- linux-firmware: Update firmware file for Intel BlazarIGfP core
- linux-firmware: Update firmware file for Intel BlazarI core
- linux-firmware: Update firmware file for Intel BlazarU-HrPGfP core
- linux-firmware: Update firmware file for Intel BlazarU core
- intel_vpu: Update NPU firmware
- amdgpu: DMCUB updates for various ASICs
- qcom: add QUPv3 firmware for QCS615 platform
- Add LENOVO ISH firmware v5.8.0.7720 for X9-15 2025
- mediatek MT7922: update bluetooth firmware to 20260224103448
- linux-firmware: update firmware for MT7922 WiFi device
- cirrus: cs42l45: Add CS42L45 SDCA codec firmware for Dell laptops
- cirrus: cs35l63: Add firmware for Cirrus CS35L63 for various Dell laptops
- linux-firmware: Remove duplicate fw and Rename Lenovo ISH LNLM firmware files accordingly
- amdgpu: DMCUB updates for various ASICs
- linux-firmware: Add firmware file for Intel BlazarIGfp2 core
- QCA: Update Bluetooth QCA6698 firmware to 2.1.2-00069
- qcom: Update CDSP firmware for QCM6490 platform
- linux-firmware: add firmware for Lontium LT8713SX DP hub
- linux-firmware: qcom: sync audioreach firmwares from v1.0.2 build
- qcom: update ADSP, CDSP firmware for sm8750  platform
- qcom: update ADSP dtb.mbn for glymur platform
- qca: Update Bluetooth WCN6750 1.1.3-00105 firmware to 1.1.3-00106
-  QCA: Update Bluetooth WCN6856 firmware 2.1.0-00659 to 2.1.0-00665
- amdgpu: update PSP 13.0.14 firmware
- amdgpu: update GC 9.4.4 firmware
- amdgpu: update PSP 13.0.5 firmware
- amdgpu: update GC 10.3.6 firmware
- amdgpu: update PSP 13.0.0 kicker firmware
- amdgpu: update VCN 4.0.0 firmware
- amdgpu: update PSP 13.0.0 firmware
- amdgpu: update GC 11.0.0 firmware
- amdgpu: update SDMA 6.1.3 firmware
- amdgpu: update PSP 14.0.5 firmware
- amdgpu: update GC 11.5.3 firmware
- amdgpu: update beige goby firmware
- amdgpu: update SDMA 6.1.2 firmware
- amdgpu: update PSP 14.0.4 firmware
- amdgpu: update GC 11.5.2 firmware
- amdgpu: update dimgrey cavefish firmware
- amdgpu: update vangogh firmware
- amdgpu: update navy flounder firmware
- amdgpu: update PSP 13.0.11 firmware
- amdgpu: update GC 11.0.4 firmware
- amdgpu: update VCN 4.0.2 firmware
- amdgpu: update SDMA 6.0.1 firmware
- amdgpu: update PSP 13.0.4 firmware
- amdgpu: update GC 11.0.1 firmware
- amdgpu: update sienna cichlid firmware
- amdgpu: update navi14 firmware
- amdgpu: update green sardine firmware
- amdgpu: update VCN 4.0.6 firmware
- amdgpu: update SDMA 6.1.1 firmware
- amdgpu: update PSP 14.0.1 firmware
- amdgpu: update GC 11.5.1 firmware
- amdgpu: update VCN 5.0.0 firmware
- amdgpu: update SMU 14.0.3 firmware
- amdgpu: update PSP 14.0.3 firmware
- amdgpu: update GC 12.0.1 firmware
- amdgpu: update VPE 6.1.0 firmware
- amdgpu: update VCN 4.0.5 firmware
- amdgpu: update SDMA 6.1.0 firmware
- amdgpu: update PSP 14.0.0 firmware
- amdgpu: update GC 11.5.0 firmware
- amdgpu: update navi12 firmware
- amdgpu: update SMU 14.0.2 firmware
- amdgpu: update PSP 14.0.2 firmware
- amdgpu: update GC 12.0.0 firmware
- amdgpu: update renoir firmware
- amdgpu: update navi10 firmware
- amdgpu: update VCN 4.0.4 firmware
- amdgpu: update SDMA 6.0.2 firmware
- amdgpu: update PSP 13.0.7 firmware
- amdgpu: update GC 11.0.2 firmware
- amdgpu: update VCN 4.0.3 firmware
- amdgpu: update PSP 13.0.6 firmware
- amdgpu: update GC 9.4.3 firmware
- amdgpu: update yellow carp firmware
- amdgpu: update PSP 13.0.10 firmware
- amdgpu: update GC 11.0.3 firmware
- amdgpu: update VCN 5.0.1 firmware
- amdgpu: update PSP 13.0.12 firmware
- amdgpu: update GC 9.5.0 firmware
- linux-firmware:Renaming the file back for HP EliteBook X Flip G1i
- linux-firmware:Renaming the file back for HP EliteBook X Flip G1i
- linux-firmware:Renaming the file back for HP EliteBook X Flip G1i
- amdnpu: Restore old NPU firmware for compatibility
- cirrus: cs42l45: Add CS42L45 SDCA codec firmware for Dell laptops
- lenovo: remove obsolete ish_lnlm_53c4ffad_2a17559f.bin firmware
- linux-firmware: update firmware for MT7902 BT device
- linux-firmware: update firmware for MT7902 WiFi device
- qcom: vpu: fix SC7280 VPU Gen2 firmware and add compatibility symlink
- amdgpu: DMCUB updates for various ASICs
- qcom: Update DSP firmware for qcs8300 platform
- cirrus: cs35l41: Add Firmware for ASUS Zenbook Laptop using CS35L41 HDA
- qcom: Update DSP firmware for sa8775p platform
- amdgpu: DMCUB updates for various ASICs
- rtw89: 8851b: add format-1 for fw v0.29.41.5 with fw elements
- rtw89: 8852a: add format-1 for fw v0.13.36.2 with fw elements
- rtw89: 8852bt: add regd and diag_mac and update txpwr to R09
- rtw89: 8852b: update txpwr element to R43
- rtw89: 8852b: add format-2 with v0.29.29.15 and fw elements
- Revert "rtw89: 8852b: update fw to v0.29.128.0 with format suffix -2"
- xe: Update GUC to v70.58.0 for LNL, BMG, PTL
- ath11k: WCN6855 hw2.0: update board-2.bin
- ath11k: QCA6390 hw2.0: update board-2.bin
- qcom: Add gpu firmwares for Glymur chipset
- amdgpu: DMCUB updates for various ASICs
- qcom: vpu: add video firmware for Glymur
- qcom: add QUPv3 firmware for x1e80100 platform
- Bluetooth: Add symbolic links for Intel Solar JfP2/1 firmware variants
- Bluetooth: Add symbolic links for Intel Solar firmware variants
- Bluetooth: Add symbolic links for Intel Pulsar firmware variants
- Bluetooth: Add symbolic links for Intel AX201 firmware variants
- ath10k: WCN3990 hw1.0: update board-2.bin
- qcom: add ADSP, CDSP firmware for glymur platform
- ASoC: tas2783: Add Firmware files for tas2783A
- linux-firmware: Update firmware file for Intel Solar core
- mediatek MT7921: update bluetooth firmware to 20251223091725
- rtl_bt: Update RTL8822C BT USB and UART firmware to 0x0673
- ath12k: WCN7850 hw2.0: update board-2.bin
- ath12k: QCN9274 hw2.0: update to WLAN.WBE.1.6-01243-QCAHKSWPL_SILICONZ-1
- ath11k: WCN6855 hw2.0: update board-2.bin
- ath11k: QCA6698AQ hw2.1: update board-2.bin
- WHENCE: Correct 2 trailing whitespaces
- linux-firmware: Add firmware for airoha-npu-7581 driver used for MT7990 offloading
- linux-firmware: Add Dell ISH firmware for Intel panther lake systems
- amdgpu: DMCUB updates for various ASICs
- linux-firmware: update Aeonsemi AS21x1x firmware to 1.9.1
- rtl_nic: add firmware rtl8125cp-1 for RTL8125cp
- ice: update DDP LAG package to 1.3.2.0
- cirrus: cs35l56: Add WHENCE links for 17aa233c spkid0 firmware
- rtw89: 8922a: update REGD R73-R08, txpwr R46 and element of diag MAC
- rtw89: 8852c: update REGD R73-R60, txpwr R82 and element of diag MAC
- Update firmware for NPU PHX, STX and STX HALO
- qcom: Update ADSP and add CDSP firmware for qcs6490-radxa-dragon-q6a
- qcom: Remove ADSP SensorPD json for Radxa Dragon Q6A
- amdgpu: DMCUB updates for various ASICs
Resolves: RHEL-179828

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>smc-tools-1.8.6-2.el10_2.riscv64</title>
      <pubDate>Tue, 25 Aug 2026 11:25:13 PM GMT</pubDate>
      <guid isPermaLink="false">98b3d1991313f88ed63aa07b11f4707099fbd31a0aa0fa2791f87117bb161456</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/s/smc-tools-1.8.6-2.el10_2.riscv64.rpm</link>
      <description><p><strong>smc-tools</strong> - Shared Memory Communication Tools&lt;br /&gt;</p>

<p>The Shared Memory Communication Tools (smc-tools) package enables usage of SMC&lt;br /&gt;
sockets in Linux.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Tue, 23 Jun 2026 GMT - Čestmír Kalina &amp;lt;ckalina@redhat.com&amp;gt; - 1.8.6-2
- Resolves: RHEL-185465
- smc-tools: smc_rnics is not listing the NetH/NetD cards inside the guest

Wed, 17 Dec 2025 GMT - Čestmír Kalina &amp;lt;ckalina@redhat.com&amp;gt; - 1.8.6-1
- Update to 1.8.6
  Resolves: RHEL-100170

Thu, 17 Jul 2025 GMT - Čestmír Kalina &amp;lt;ckalina@redhat.com&amp;gt; - 1.8.5-1
- Update to 1.8.5
  Resolves: RHEL-73359

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>libspiro-20240903-3.el10_2.riscv64</title>
      <pubDate>Tue, 25 Aug 2026 11:25:03 PM GMT</pubDate>
      <guid isPermaLink="false">f2a382c9437105eba491d1b1e4c847d1f0e2ec3ffa2a417bef512481aaa6070f</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/l/libspiro-20240903-3.el10_2.riscv64.rpm</link>
      <description><p><strong>libspiro</strong> - Library to simplify the drawing of beautiful curves&lt;br /&gt;</p>

<p>This library will take an array of spiro control points and&lt;br /&gt;
convert them into a series of bézier splines which can then&lt;br /&gt;
be used in the myriad of ways the world has come to use béziers.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Josef Ridky &amp;lt;jridky@redhat.com&amp;gt; - 20240903-3
- update to 20240903 version and move pgk to AppStream

Tue, 29 Oct 2024 GMT - Troy Dawson &amp;lt;tdawson@redhat.com&amp;gt; - 20221101-8
- Bump release for October 2024 mass rebuild:
  Resolves: RHEL-64018

&lt;/pre&gt;</description>
    </item>
    <item>
      <title>libattr-devel-2.6.0-1.el10_2.riscv64</title>
      <pubDate>Tue, 25 Aug 2026 11:24:42 PM GMT</pubDate>
      <guid isPermaLink="false">2f8bd0ae3e293635a1475e6c7f72af46470cd4ddd856d5cd4e10498cfcec0d65</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/l/libattr-devel-2.6.0-1.el10_2.riscv64.rpm</link>
      <description><p><strong>libattr-devel</strong> - Files needed for building programs with libattr&lt;br /&gt;</p>

<p>This package contains header files and documentation needed to&lt;br /&gt;
develop programs which make use of extended attributes.&lt;br /&gt;
For Linux programs, the documented system call API is the&lt;br /&gt;
recommended interface, but an SGI IRIX compatibility interface&lt;br /&gt;
is also provided.&lt;br /&gt;
&lt;br /&gt;
Currently only ext2, ext3, ext4 and XFS support extended attributes.&lt;br /&gt;
The SGI IRIX compatibility API built above the Linux system calls is&lt;br /&gt;
used by programs such as xfsdump(8), xfsrestore(8) and xfs_fsr(8).&lt;br /&gt;
&lt;br /&gt;
You should install libattr-devel if you want to develop programs&lt;br /&gt;
which make use of extended attributes.  If you install libattr-devel,&lt;br /&gt;
you'll also want to install attr.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 25 Jun 2026 GMT - Lukáš Zaoral &amp;lt;lzaoral@redhat.com&amp;gt; - 2.6.0-1
- rebase to 2.6.0 to fix the following CVEs:
  - CVE-2026-54371 - Symlink Traversal Privilege Escalation via getfattr (RHEL-186128)

Tue, 29 Oct 2024 GMT - Troy Dawson &amp;lt;tdawson@redhat.com&amp;gt; - 2.5.2-5
- Bump release for October 2024 mass rebuild:
  Resolves: RHEL-64018

&lt;/pre&gt;</description>
    </item>
    <item>
      <title>iptables-nft-services-1.8.11-16.el10_2.noarch</title>
      <pubDate>Tue, 25 Aug 2026 11:23:26 PM GMT</pubDate>
      <guid isPermaLink="false">e0bf5c647e4d37ecbc2ce8b7eb0414b03b37fdc45c3b1063c8614e1047c1dce2</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/i/iptables-nft-services-1.8.11-16.el10_2.noarch.rpm</link>
      <description><p><strong>iptables-nft-services</strong> - Services for nft-variants of iptables, ebtables and arptables&lt;br /&gt;</p>

<p>Services for nft-variants of iptables, ebtables and arptables&lt;br /&gt;
&lt;br /&gt;
This package provides the services iptables, ip6tables, arptables and ebtables&lt;br /&gt;
for use with iptables-nft which provides nft-variants of these tools.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Tue, 04 Aug 2026 GMT - Phil Sutter &amp;lt;psutter@redhat.com&amp;gt; [1.8.11-16.el10]
- spec: Simplify Recommends again, kernel fixed Provides in modules-core packages (Phil Sutter) [RHEL-213273]

Thu, 18 Jun 2026 GMT - Phil Sutter &amp;lt;psutter@redhat.com&amp;gt; [1.8.11-15.el10]
- spec: Recommend kernel-modules-extra only if no other recommendation applies (Phil Sutter) [RHEL-186232]

Wed, 27 May 2026 GMT - Phil Sutter &amp;lt;psutter@redhat.com&amp;gt; [1.8.11-14.el10]
- tests: shell: Review nft-only/0009-needless-bitwise_0 (Phil Sutter) [RHEL-179504]
- spec: Soft-depend on kernel-modules-extra (Phil Sutter) [RHEL-176386]

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>ipset-service-7.22-13.el10_2.noarch</title>
      <pubDate>Tue, 25 Aug 2026 11:23:07 PM GMT</pubDate>
      <guid isPermaLink="false">610aa3e849f4fadf552af3e6111898cdad256a95feda38ba4dcee4b33725876c</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/i/ipset-service-7.22-13.el10_2.noarch.rpm</link>
      <description><p><strong>ipset-service</strong> - ipset service for ipsets&lt;br /&gt;</p>

<p>This package provides the service ipset that is split&lt;br /&gt;
out of the base package since it is not active by default.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Tue, 04 Aug 2026 GMT - Phil Sutter &amp;lt;psutter@redhat.com&amp;gt; - 7.22-13
- Simplify Recommends again, kernel fixed Provides in modules-core packages

Thu, 11 Jun 2026 GMT - Phil Sutter &amp;lt;psutter@redhat.com&amp;gt; - 7.22-12
- avoid pulling in kernel package if not needed

Wed, 27 May 2026 GMT - Phil Sutter &amp;lt;psutter@redhat.com&amp;gt; - 7.22-11
- spec: Soft-depend on kernel-modules-extra

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>linuxptp-selinux-4.4-8.el10_2.1.noarch</title>
      <pubDate>Tue, 25 Aug 2026 11:21:36 PM GMT</pubDate>
      <guid isPermaLink="false">0d7cc191fd80501e83acd6acd6a67458366054fe4ad0069cef5640b2c76e733a</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/l/linuxptp-selinux-4.4-8.el10_2.1.noarch.rpm</link>
      <description><p><strong>linuxptp-selinux</strong> - linuxptp SELinux policy&lt;br /&gt;</p>

<p>linuxptp SELinux policy module</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 01 Jul 2026 GMT - Miroslav Lichvar &amp;lt;mlichvar@redhat.com&amp;gt; 4.4-8.el10_2.1
- fix phc2sys service to allow clocks specified by interface (RHEL-191400)
- fix high CPU usage by ptp4l when link is down (RHEL-191401)
- fix phc2sys to not get stuck in static mode (RHEL-185752)

Mon, 02 Feb 2026 GMT - Miroslav Lichvar &amp;lt;mlichvar@redhat.com&amp;gt; 4.4-8
- create reverse compatibility symlink to /var/run/ptp4l (RHEL-145071)

Thu, 11 Dec 2025 GMT - Miroslav Lichvar &amp;lt;mlichvar@redhat.com&amp;gt; 4.4-7
- add missing build requirement on lipcap-devel

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>firewall-config-2.4.3-4.el10_2.noarch</title>
      <pubDate>Tue, 25 Aug 2026 11:21:30 PM GMT</pubDate>
      <guid isPermaLink="false">a204a90abd2fa6f94471e86b053b86105990ea1e3986ebe71a956370e1622ec7</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/f/firewall-config-2.4.3-4.el10_2.noarch.rpm</link>
      <description><p><strong>firewall-config</strong> - Firewall configuration application&lt;br /&gt;</p>

<p>The firewall configuration application provides an configuration interface for&lt;br /&gt;
firewalld.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;&lt;/pre&gt;</description>
    </item>
    <item>
      <title>firewall-applet-2.4.3-4.el10_2.noarch</title>
      <pubDate>Tue, 25 Aug 2026 11:21:30 PM GMT</pubDate>
      <guid isPermaLink="false">917d2f16284441bb389fb690c1f779dabe75c2b567bcff53ddb929f94e68f5b7</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/f/firewall-applet-2.4.3-4.el10_2.noarch.rpm</link>
      <description><p><strong>firewall-applet</strong> - Firewall panel applet&lt;br /&gt;</p>

<p>The firewall panel applet provides a status information of firewalld and also&lt;br /&gt;
the firewall settings.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;&lt;/pre&gt;</description>
    </item>
    <item>
      <title>assertj-core-3.24.2-9.el10_2.1.noarch</title>
      <pubDate>Tue, 25 Aug 2026 11:20:54 PM GMT</pubDate>
      <guid isPermaLink="false">3c376bc8fd5403f8ed0bb6fe8f6324251aeabab60a53b5d634679a47e5ca7be2</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/a/assertj-core-3.24.2-9.el10_2.1.noarch.rpm</link>
      <description><p><strong>assertj-core</strong> - Library of assertions similar to fest-assert&lt;br /&gt;</p>

<p>A rich and intuitive set of strongly-typed assertions to use for unit testing&lt;br /&gt;
(either with JUnit or TestNG).</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 25 Jun 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 3.24.2-9.1
- Fix CVE-2026-24400: add XXE protection to XmlStringPrettyFormatter
- Resolves: RHEL-183469

Tue, 29 Oct 2024 GMT - Troy Dawson &amp;lt;tdawson@redhat.com&amp;gt; - 3.24.2-9
- Bump release for October 2024 mass rebuild:
  Resolves: RHEL-64018

Thu, 01 Aug 2024 GMT - Troy Dawson &amp;lt;tdawson@redhat.com&amp;gt; - 3.24.2-8
- Bump release for Aug 2024 java mass rebuild

&lt;/pre&gt;</description>
    </item>
    <item>
      <title>python3-pyasn1-modules-0.6.2-1.el10_2.1.noarch</title>
      <pubDate>Tue, 25 Aug 2026 02:33:34 AM GMT</pubDate>
      <guid isPermaLink="false">9ebe7f2c338cb046ade99d52521199a35e43a52879128bf23b7504c86853240f</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/python3-pyasn1-modules-0.6.2-1.el10_2.1.noarch.rpm</link>
      <description><p><strong>python3-pyasn1-modules</strong> - Modules for pyasn1&lt;br /&gt;</p>

<p>ASN.1 types modules for python3-pyasn1.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 29 Jul 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 0.6.2-1.1
- Fix CVE-2026-59886: prevent overflow in Real.__float__() when
  converting ASN.1 Real values with large exponents
  Resolves: RHEL-217904

Wed, 11 Feb 2026 GMT - Florence Blanc-Renaud &amp;lt;flo@redhat.com&amp;gt; - 0.6.2-1
- Update to 0.6.2
- Update modules to 0.4.2
  Resolves: RHEL-148142

Fri, 15 Nov 2024 GMT - Simon Pichugin &amp;lt;spichugi@redhat.com&amp;gt; - 0.6.1-1
- Update to 0.6.1
- Update modules to 0.4.1
  Resolves: RHEL-67667

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>python3-pyasn1-0.6.2-1.el10_2.1.noarch</title>
      <pubDate>Tue, 25 Aug 2026 02:33:34 AM GMT</pubDate>
      <guid isPermaLink="false">c7f5a71a6d636d103e6be538aa0a634cbe1479a5b5c61e88572c7d97fbe25929</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/python3-pyasn1-0.6.2-1.el10_2.1.noarch.rpm</link>
      <description><p><strong>python3-pyasn1</strong> - ASN.1 tools for Python 3&lt;br /&gt;</p>

<p>This is an implementation of ASN.1 types and codecs in the Python 3 programming&lt;br /&gt;
language.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 29 Jul 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 0.6.2-1.1
- Fix CVE-2026-59886: prevent overflow in Real.__float__() when
  converting ASN.1 Real values with large exponents
  Resolves: RHEL-217904

Wed, 11 Feb 2026 GMT - Florence Blanc-Renaud &amp;lt;flo@redhat.com&amp;gt; - 0.6.2-1
- Update to 0.6.2
- Update modules to 0.4.2
  Resolves: RHEL-148142

Fri, 15 Nov 2024 GMT - Simon Pichugin &amp;lt;spichugi@redhat.com&amp;gt; - 0.6.1-1
- Update to 0.6.1
- Update modules to 0.4.1
  Resolves: RHEL-67667

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>nginx-mod-stream-2:1.26.3-6.el10_2.6.riscv64</title>
      <pubDate>Tue, 25 Aug 2026 02:04:27 AM GMT</pubDate>
      <guid isPermaLink="false">65c58f2f8c1ebbccd544b054effc5855cd04042594c938e5353553333f443823</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/n/nginx-mod-stream-1.26.3-6.el10_2.6.riscv64.rpm</link>
      <description><p><strong>nginx-mod-stream</strong> - Nginx stream modules&lt;br /&gt;</p>

<p>Nginx stream modules.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 30 Jul 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 2:1.26.3-6.6
- Resolves: RHEL-219313 - nginx: NGINX: Heap buffer over-read allows memory
  modification or denial of service (CVE-2026-56434)
- Resolves: RHEL-217956 - nginx: NGINX: Memory disclosure and denial of service
  in ngx_http_slice_module (CVE-2026-60005)

Fri, 03 Jul 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 2:1.26.3-6.5
- Resolves: RHEL-191778 - nginx: "HTTP/2 bomb" nginx fix breaks module ABI
  causing crashes
- Resolves: RHEL-188402 - nginx: NGINX: Arbitrary code execution or.
  Denial of Service via heap-based buffer overflow with crafted HTTP/2
  headers (CVE-2026-42055)

Mon, 08 Jun 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 2:1.26.3-6.4
- Resolves: RHEL-178669 - nginx: code execution and denial of
  service (CVE-2026-9256)
- Resolves: RHEL-182544 - nginx: HTTP/2: Remote Denial of Service via
  compression bomb and Slowloris-style attack

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>nginx-mod-mail-2:1.26.3-6.el10_2.6.riscv64</title>
      <pubDate>Tue, 25 Aug 2026 02:04:27 AM GMT</pubDate>
      <guid isPermaLink="false">d1c5c128ef70d4dc2b05df48f1393bc69494c50835d233c62779c2a5b62ee1a8</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/n/nginx-mod-mail-1.26.3-6.el10_2.6.riscv64.rpm</link>
      <description><p><strong>nginx-mod-mail</strong> - Nginx mail modules&lt;br /&gt;</p>

<p>Nginx mail modules.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 30 Jul 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 2:1.26.3-6.6
- Resolves: RHEL-219313 - nginx: NGINX: Heap buffer over-read allows memory
  modification or denial of service (CVE-2026-56434)
- Resolves: RHEL-217956 - nginx: NGINX: Memory disclosure and denial of service
  in ngx_http_slice_module (CVE-2026-60005)

Fri, 03 Jul 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 2:1.26.3-6.5
- Resolves: RHEL-191778 - nginx: "HTTP/2 bomb" nginx fix breaks module ABI
  causing crashes
- Resolves: RHEL-188402 - nginx: NGINX: Arbitrary code execution or.
  Denial of Service via heap-based buffer overflow with crafted HTTP/2
  headers (CVE-2026-42055)

Mon, 08 Jun 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 2:1.26.3-6.4
- Resolves: RHEL-178669 - nginx: code execution and denial of
  service (CVE-2026-9256)
- Resolves: RHEL-182544 - nginx: HTTP/2: Remote Denial of Service via
  compression bomb and Slowloris-style attack

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>nginx-mod-http-xslt-filter-2:1.26.3-6.el10_2.6.riscv64</title>
      <pubDate>Tue, 25 Aug 2026 02:04:27 AM GMT</pubDate>
      <guid isPermaLink="false">2ec5d128f05974eb2209fadd57274fa37097304df09264b15aa87d9b52dc14e5</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/n/nginx-mod-http-xslt-filter-1.26.3-6.el10_2.6.riscv64.rpm</link>
      <description><p><strong>nginx-mod-http-xslt-filter</strong> - Nginx XSLT module&lt;br /&gt;</p>

<p>Nginx XSLT module.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 30 Jul 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 2:1.26.3-6.6
- Resolves: RHEL-219313 - nginx: NGINX: Heap buffer over-read allows memory
  modification or denial of service (CVE-2026-56434)
- Resolves: RHEL-217956 - nginx: NGINX: Memory disclosure and denial of service
  in ngx_http_slice_module (CVE-2026-60005)

Fri, 03 Jul 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 2:1.26.3-6.5
- Resolves: RHEL-191778 - nginx: "HTTP/2 bomb" nginx fix breaks module ABI
  causing crashes
- Resolves: RHEL-188402 - nginx: NGINX: Arbitrary code execution or.
  Denial of Service via heap-based buffer overflow with crafted HTTP/2
  headers (CVE-2026-42055)

Mon, 08 Jun 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 2:1.26.3-6.4
- Resolves: RHEL-178669 - nginx: code execution and denial of
  service (CVE-2026-9256)
- Resolves: RHEL-182544 - nginx: HTTP/2: Remote Denial of Service via
  compression bomb and Slowloris-style attack

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>nginx-mod-http-perl-2:1.26.3-6.el10_2.6.riscv64</title>
      <pubDate>Tue, 25 Aug 2026 02:04:27 AM GMT</pubDate>
      <guid isPermaLink="false">d9e4395463c2715da1c51e525c228edfed67a5ecdc28fb452f88cd226cd0be93</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/n/nginx-mod-http-perl-1.26.3-6.el10_2.6.riscv64.rpm</link>
      <description><p><strong>nginx-mod-http-perl</strong> - Nginx HTTP perl module&lt;br /&gt;</p>

<p>Nginx HTTP perl module.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 30 Jul 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 2:1.26.3-6.6
- Resolves: RHEL-219313 - nginx: NGINX: Heap buffer over-read allows memory
  modification or denial of service (CVE-2026-56434)
- Resolves: RHEL-217956 - nginx: NGINX: Memory disclosure and denial of service
  in ngx_http_slice_module (CVE-2026-60005)

Fri, 03 Jul 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 2:1.26.3-6.5
- Resolves: RHEL-191778 - nginx: "HTTP/2 bomb" nginx fix breaks module ABI
  causing crashes
- Resolves: RHEL-188402 - nginx: NGINX: Arbitrary code execution or.
  Denial of Service via heap-based buffer overflow with crafted HTTP/2
  headers (CVE-2026-42055)

Mon, 08 Jun 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 2:1.26.3-6.4
- Resolves: RHEL-178669 - nginx: code execution and denial of
  service (CVE-2026-9256)
- Resolves: RHEL-182544 - nginx: HTTP/2: Remote Denial of Service via
  compression bomb and Slowloris-style attack

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>nginx-mod-http-image-filter-2:1.26.3-6.el10_2.6.riscv64</title>
      <pubDate>Tue, 25 Aug 2026 02:04:27 AM GMT</pubDate>
      <guid isPermaLink="false">73cc7dc74489a1e2bca89acbb19b050cdffbbdbc17b31e9cfdd3fdbbeed67ee6</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/n/nginx-mod-http-image-filter-1.26.3-6.el10_2.6.riscv64.rpm</link>
      <description><p><strong>nginx-mod-http-image-filter</strong> - Nginx HTTP image filter module&lt;br /&gt;</p>

<p>Nginx HTTP image filter module.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 30 Jul 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 2:1.26.3-6.6
- Resolves: RHEL-219313 - nginx: NGINX: Heap buffer over-read allows memory
  modification or denial of service (CVE-2026-56434)
- Resolves: RHEL-217956 - nginx: NGINX: Memory disclosure and denial of service
  in ngx_http_slice_module (CVE-2026-60005)

Fri, 03 Jul 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 2:1.26.3-6.5
- Resolves: RHEL-191778 - nginx: "HTTP/2 bomb" nginx fix breaks module ABI
  causing crashes
- Resolves: RHEL-188402 - nginx: NGINX: Arbitrary code execution or.
  Denial of Service via heap-based buffer overflow with crafted HTTP/2
  headers (CVE-2026-42055)

Mon, 08 Jun 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 2:1.26.3-6.4
- Resolves: RHEL-178669 - nginx: code execution and denial of
  service (CVE-2026-9256)
- Resolves: RHEL-182544 - nginx: HTTP/2: Remote Denial of Service via
  compression bomb and Slowloris-style attack

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>nginx-core-2:1.26.3-6.el10_2.6.riscv64</title>
      <pubDate>Tue, 25 Aug 2026 02:04:27 AM GMT</pubDate>
      <guid isPermaLink="false">cdb11f6b8c2b7c61d0f8e4120c786f4f9bac1abef02860cacdb53b47580a6eb2</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/n/nginx-core-1.26.3-6.el10_2.6.riscv64.rpm</link>
      <description><p><strong>nginx-core</strong> - nginx minimal core&lt;br /&gt;</p>

<p>nginx minimal core</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 30 Jul 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 2:1.26.3-6.6
- Resolves: RHEL-219313 - nginx: NGINX: Heap buffer over-read allows memory
  modification or denial of service (CVE-2026-56434)
- Resolves: RHEL-217956 - nginx: NGINX: Memory disclosure and denial of service
  in ngx_http_slice_module (CVE-2026-60005)

Fri, 03 Jul 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 2:1.26.3-6.5
- Resolves: RHEL-191778 - nginx: "HTTP/2 bomb" nginx fix breaks module ABI
  causing crashes
- Resolves: RHEL-188402 - nginx: NGINX: Arbitrary code execution or.
  Denial of Service via heap-based buffer overflow with crafted HTTP/2
  headers (CVE-2026-42055)

Mon, 08 Jun 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 2:1.26.3-6.4
- Resolves: RHEL-178669 - nginx: code execution and denial of
  service (CVE-2026-9256)
- Resolves: RHEL-182544 - nginx: HTTP/2: Remote Denial of Service via
  compression bomb and Slowloris-style attack

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>nginx-2:1.26.3-6.el10_2.6.riscv64</title>
      <pubDate>Tue, 25 Aug 2026 02:04:27 AM GMT</pubDate>
      <guid isPermaLink="false">2a899b996549d2538ee1e8904c7852f70bc4f100bd24df1032cf421da74290f6</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/n/nginx-1.26.3-6.el10_2.6.riscv64.rpm</link>
      <description><p><strong>nginx</strong> - A high performance web server and reverse proxy server&lt;br /&gt;</p>

<p>Nginx is a web server and a reverse proxy server for HTTP, SMTP, POP3 and&lt;br /&gt;
IMAP protocols, with a strong focus on high concurrency, performance and low&lt;br /&gt;
memory usage.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 30 Jul 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 2:1.26.3-6.6
- Resolves: RHEL-219313 - nginx: NGINX: Heap buffer over-read allows memory
  modification or denial of service (CVE-2026-56434)
- Resolves: RHEL-217956 - nginx: NGINX: Memory disclosure and denial of service
  in ngx_http_slice_module (CVE-2026-60005)

Fri, 03 Jul 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 2:1.26.3-6.5
- Resolves: RHEL-191778 - nginx: "HTTP/2 bomb" nginx fix breaks module ABI
  causing crashes
- Resolves: RHEL-188402 - nginx: NGINX: Arbitrary code execution or.
  Denial of Service via heap-based buffer overflow with crafted HTTP/2
  headers (CVE-2026-42055)

Mon, 08 Jun 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 2:1.26.3-6.4
- Resolves: RHEL-178669 - nginx: code execution and denial of
  service (CVE-2026-9256)
- Resolves: RHEL-182544 - nginx: HTTP/2: Remote Denial of Service via
  compression bomb and Slowloris-style attack

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>nginx-filesystem-2:1.26.3-6.el10_2.6.noarch</title>
      <pubDate>Tue, 25 Aug 2026 01:59:36 AM GMT</pubDate>
      <guid isPermaLink="false">7ca1cbfd49937ed24fbe5d644c10b72900a58fae227e2b82113c51f171731c2f</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/n/nginx-filesystem-1.26.3-6.el10_2.6.noarch.rpm</link>
      <description><p><strong>nginx-filesystem</strong> - The basic directory layout for the Nginx server&lt;br /&gt;</p>

<p>The nginx-filesystem package contains the basic directory layout&lt;br /&gt;
for the Nginx server including the correct permissions for the&lt;br /&gt;
directories.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 30 Jul 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 2:1.26.3-6.6
- Resolves: RHEL-219313 - nginx: NGINX: Heap buffer over-read allows memory
  modification or denial of service (CVE-2026-56434)
- Resolves: RHEL-217956 - nginx: NGINX: Memory disclosure and denial of service
  in ngx_http_slice_module (CVE-2026-60005)

Fri, 03 Jul 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 2:1.26.3-6.5
- Resolves: RHEL-191778 - nginx: "HTTP/2 bomb" nginx fix breaks module ABI
  causing crashes
- Resolves: RHEL-188402 - nginx: NGINX: Arbitrary code execution or.
  Denial of Service via heap-based buffer overflow with crafted HTTP/2
  headers (CVE-2026-42055)

Mon, 08 Jun 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 2:1.26.3-6.4
- Resolves: RHEL-178669 - nginx: code execution and denial of
  service (CVE-2026-9256)
- Resolves: RHEL-182544 - nginx: HTTP/2: Remote Denial of Service via
  compression bomb and Slowloris-style attack

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>nginx-all-modules-2:1.26.3-6.el10_2.6.noarch</title>
      <pubDate>Tue, 25 Aug 2026 01:59:36 AM GMT</pubDate>
      <guid isPermaLink="false">a7020fc6956fa6f8ca78335798dd52b70cb727052ba31cee499cc810262a3675</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/n/nginx-all-modules-1.26.3-6.el10_2.6.noarch.rpm</link>
      <description><p><strong>nginx-all-modules</strong> - A meta package that installs all available Nginx modules&lt;br /&gt;</p>

<p>Meta package that installs all available nginx modules.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 30 Jul 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 2:1.26.3-6.6
- Resolves: RHEL-219313 - nginx: NGINX: Heap buffer over-read allows memory
  modification or denial of service (CVE-2026-56434)
- Resolves: RHEL-217956 - nginx: NGINX: Memory disclosure and denial of service
  in ngx_http_slice_module (CVE-2026-60005)

Fri, 03 Jul 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 2:1.26.3-6.5
- Resolves: RHEL-191778 - nginx: "HTTP/2 bomb" nginx fix breaks module ABI
  causing crashes
- Resolves: RHEL-188402 - nginx: NGINX: Arbitrary code execution or.
  Denial of Service via heap-based buffer overflow with crafted HTTP/2
  headers (CVE-2026-42055)

Mon, 08 Jun 2026 GMT - Luboš Uhliarik &amp;lt;luhliari@redhat.com&amp;gt; - 2:1.26.3-6.4
- Resolves: RHEL-178669 - nginx: code execution and denial of
  service (CVE-2026-9256)
- Resolves: RHEL-182544 - nginx: HTTP/2: Remote Denial of Service via
  compression bomb and Slowloris-style attack

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>python3.14-tkinter-3.14.7-2.el10_2.riscv64</title>
      <pubDate>Mon, 24 Aug 2026 04:24:42 PM GMT</pubDate>
      <guid isPermaLink="false">4e4846fe93ad1b29a0e8e0e9e74771efec3a9992d11f43afc1b38048ddc71a9a</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/python3.14-tkinter-3.14.7-2.el10_2.riscv64.rpm</link>
      <description><p><strong>python3.14-tkinter</strong> - A GUI toolkit for Python&lt;br /&gt;</p>

<p>The Tkinter (Tk interface) library is a graphical user interface toolkit for&lt;br /&gt;
the Python programming language.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Tue, 18 Aug 2026 GMT - Miro Hrončok &amp;lt;mhroncok@redhat.com&amp;gt; - 3.14.7-2
- On RHEL 9, also supports reparse deferral in expat
Related: RHEL-227190

Mon, 17 Aug 2026 GMT - Lumír Balhar &amp;lt;lbalhar@redhat.com&amp;gt; - 3.14.7-1
- Update to Python 3.14.7, security fix for CVE-2026-11940
Resolves: RHEL-227190

Mon, 17 Aug 2026 GMT - Lumír Balhar &amp;lt;lbalhar@redhat.com&amp;gt; - 3.14.6-1
- Update to Python 3.14.6
Related: RHEL-227190

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>python3.14-libs-3.14.7-2.el10_2.riscv64</title>
      <pubDate>Mon, 24 Aug 2026 04:24:42 PM GMT</pubDate>
      <guid isPermaLink="false">b6fc378dc5502e7ecd5594aa600dc63e8c6a7485d8edb0db4f51771cf78526de</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/python3.14-libs-3.14.7-2.el10_2.riscv64.rpm</link>
      <description><p><strong>python3.14-libs</strong> - Python runtime libraries&lt;br /&gt;</p>

<p>This package contains runtime libraries for use by Python:&lt;br /&gt;
- the majority of the Python standard library&lt;br /&gt;
- a dynamically linked library for use by applications that embed Python as&lt;br /&gt;
  a scripting language, and by the main "python3.14" executable</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Tue, 18 Aug 2026 GMT - Miro Hrončok &amp;lt;mhroncok@redhat.com&amp;gt; - 3.14.7-2
- On RHEL 9, also supports reparse deferral in expat
Related: RHEL-227190

Mon, 17 Aug 2026 GMT - Lumír Balhar &amp;lt;lbalhar@redhat.com&amp;gt; - 3.14.7-1
- Update to Python 3.14.7, security fix for CVE-2026-11940
Resolves: RHEL-227190

Mon, 17 Aug 2026 GMT - Lumír Balhar &amp;lt;lbalhar@redhat.com&amp;gt; - 3.14.6-1
- Update to Python 3.14.6
Related: RHEL-227190

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>python3.14-devel-3.14.7-2.el10_2.riscv64</title>
      <pubDate>Mon, 24 Aug 2026 04:24:42 PM GMT</pubDate>
      <guid isPermaLink="false">8ded693a9fd22d54d4b9781afb1340da5d925033bd14e817e709a35a01f44dde</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/python3.14-devel-3.14.7-2.el10_2.riscv64.rpm</link>
      <description><p><strong>python3.14-devel</strong> - Libraries and header files needed for Python development&lt;br /&gt;</p>

<p>This package contains the header files and configuration needed to compile&lt;br /&gt;
Python extension modules (typically written in C or C++), to embed Python&lt;br /&gt;
into other programs, and to make binary distributions for Python libraries.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Tue, 18 Aug 2026 GMT - Miro Hrončok &amp;lt;mhroncok@redhat.com&amp;gt; - 3.14.7-2
- On RHEL 9, also supports reparse deferral in expat
Related: RHEL-227190

Mon, 17 Aug 2026 GMT - Lumír Balhar &amp;lt;lbalhar@redhat.com&amp;gt; - 3.14.7-1
- Update to Python 3.14.7, security fix for CVE-2026-11940
Resolves: RHEL-227190

Mon, 17 Aug 2026 GMT - Lumír Balhar &amp;lt;lbalhar@redhat.com&amp;gt; - 3.14.6-1
- Update to Python 3.14.6
Related: RHEL-227190

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>python3.14-3.14.7-2.el10_2.riscv64</title>
      <pubDate>Mon, 24 Aug 2026 04:24:42 PM GMT</pubDate>
      <guid isPermaLink="false">6eebb193399e6c058033ac4fb502a1fc09b9d5814e7025628bd21c3326a6d9b9</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/python3.14-3.14.7-2.el10_2.riscv64.rpm</link>
      <description><p><strong>python3.14</strong> - Version 3.14 of the Python interpreter&lt;br /&gt;</p>

<p>Python 3.14 is an accessible, high-level, dynamically typed, interpreted&lt;br /&gt;
programming language, designed with an emphasis on code readability.&lt;br /&gt;
It includes an extensive standard library, and has a vast ecosystem of&lt;br /&gt;
third-party libraries.&lt;br /&gt;
&lt;br /&gt;
The python3.14 package provides the "python3.14" executable: the reference&lt;br /&gt;
interpreter for the Python language, version 3.&lt;br /&gt;
The majority of its standard library is provided in the python3.14-libs package,&lt;br /&gt;
which should be installed automatically along with python3.14.&lt;br /&gt;
The remaining parts of the Python standard library are broken out into the&lt;br /&gt;
python3.14-tkinter and python3.14-test packages, which may need to be installed&lt;br /&gt;
separately.&lt;br /&gt;
&lt;br /&gt;
Documentation for Python is provided in the python3.14-docs package.&lt;br /&gt;
&lt;br /&gt;
Packages containing additional libraries for Python are generally named with&lt;br /&gt;
the "python3.14-" prefix.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Tue, 18 Aug 2026 GMT - Miro Hrončok &amp;lt;mhroncok@redhat.com&amp;gt; - 3.14.7-2
- On RHEL 9, also supports reparse deferral in expat
Related: RHEL-227190

Mon, 17 Aug 2026 GMT - Lumír Balhar &amp;lt;lbalhar@redhat.com&amp;gt; - 3.14.7-1
- Update to Python 3.14.7, security fix for CVE-2026-11940
Resolves: RHEL-227190

Mon, 17 Aug 2026 GMT - Lumír Balhar &amp;lt;lbalhar@redhat.com&amp;gt; - 3.14.6-1
- Update to Python 3.14.6
Related: RHEL-227190

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>sqlite-devel-3.46.1-6.el10_2.riscv64</title>
      <pubDate>Mon, 24 Aug 2026 03:13:08 PM GMT</pubDate>
      <guid isPermaLink="false">2b00d1f8de32aeeb1661621b517d0d0c91ac24cdca92fce7f46fa84ff06d0d86</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/s/sqlite-devel-3.46.1-6.el10_2.riscv64.rpm</link>
      <description><p><strong>sqlite-devel</strong> - Development tools for the sqlite3 embeddable SQL database engine&lt;br /&gt;</p>

<p>This package contains the header files and development documentation&lt;br /&gt;
for sqlite. If you like to develop programs using sqlite, you will need&lt;br /&gt;
to install sqlite-devel.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 29 Jul 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 3.46.1-6
- Fixes CVE-2026-11822
- Fixes CVE-2026-11824
- Resolves: RHEL-218247
- Resolves: RHEL-218282

Wed, 16 Jul 2025 GMT - Ales Nezbeda &amp;lt;anezbeda@redhat.com&amp;gt; - 3.46.1-5
- Fix CVE-2025-6965
- Resolves: RHEL-103827

Tue, 15 Apr 2025 GMT - Ales Nezbeda &amp;lt;anezbeda@redhat.com&amp;gt; - 3.46.1-4
- Fix for CVE-2025-3277
- Resolves: RHEL-87295

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>sqlite-3.46.1-6.el10_2.riscv64</title>
      <pubDate>Mon, 24 Aug 2026 03:13:08 PM GMT</pubDate>
      <guid isPermaLink="false">99092c48d040270dd44d57cb421707bc9bdce07f46c92ef7f057d3f1e7c21a16</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/s/sqlite-3.46.1-6.el10_2.riscv64.rpm</link>
      <description><p><strong>sqlite</strong> - Library that implements an embeddable SQL database engine&lt;br /&gt;</p>

<p>SQLite is a C library that implements an SQL database engine. A large&lt;br /&gt;
subset of SQL92 is supported. A complete database is stored in a&lt;br /&gt;
single disk file. The API is designed for convenience and ease of use.&lt;br /&gt;
Applications that link against SQLite can enjoy the power and&lt;br /&gt;
flexibility of an SQL database without the administrative hassles of&lt;br /&gt;
supporting a separate database server.  Version 2 and version 3 binaries&lt;br /&gt;
are named to permit each to be installed on a single host</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 29 Jul 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 3.46.1-6
- Fixes CVE-2026-11822
- Fixes CVE-2026-11824
- Resolves: RHEL-218247
- Resolves: RHEL-218282

Wed, 16 Jul 2025 GMT - Ales Nezbeda &amp;lt;anezbeda@redhat.com&amp;gt; - 3.46.1-5
- Fix CVE-2025-6965
- Resolves: RHEL-103827

Tue, 15 Apr 2025 GMT - Ales Nezbeda &amp;lt;anezbeda@redhat.com&amp;gt; - 3.46.1-4
- Fix for CVE-2025-3277
- Resolves: RHEL-87295

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>firefox-140.14.0-1.el10_2.riscv64</title>
      <pubDate>Mon, 24 Aug 2026 03:08:48 PM GMT</pubDate>
      <guid isPermaLink="false">75bb7211869d739e2618af965b9881c27208c83919578f3c27507bbc42ce11fa</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/f/firefox-140.14.0-1.el10_2.riscv64.rpm</link>
      <description><p><strong>firefox</strong> - Mozilla Firefox Web browser&lt;br /&gt;</p>

<p>Mozilla Firefox is an open-source web browser, designed for standards&lt;br /&gt;
compliance, performance and portability.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Mon, 24 Aug 2026 GMT - Release Engineering &amp;lt;releng@rockylinux.org&amp;gt; - 140.14.0-1
- Add custom Rocky Linux firefox prefs (Louis Abel)
- Ensure mozilla API key is set for Rocky Linux (Mustafa Gezen)
- Ensure s390x and riscv64 are locked to 3 CPU's (Louis Abel)

Wed, 12 Aug 2026 GMT - Jan Grulich &amp;lt;jgrulich@redhat.com&amp;gt; - 140.14.0-1
- Update to 140.14.0 ESR

Thu, 16 Jul 2026 GMT - Jan Horak &amp;lt;jhorak@redhat.com&amp;gt; - 140.13.0-1
- Update to 140.13.0 ESR

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>python3-tkinter-3.12.14-1.el10_2.riscv64</title>
      <pubDate>Mon, 24 Aug 2026 12:09:40 PM GMT</pubDate>
      <guid isPermaLink="false">fa5996c43281851414bbfdf5ff9a7faa6f7b0eee48ed4c8df7ff4f2863b8d515</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/python3-tkinter-3.12.14-1.el10_2.riscv64.rpm</link>
      <description><p><strong>python3-tkinter</strong> - A GUI toolkit for Python&lt;br /&gt;</p>

<p>The Tkinter (Tk interface) library is a graphical user interface toolkit for&lt;br /&gt;
the Python programming language.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 13 Aug 2026 GMT - Karolina Surma &amp;lt;ksurma@redhat.com&amp;gt; - 3.12.14-1
- Update to Python 3.12.14
Resolves: RHEL-227203

Fri, 10 Jul 2026 GMT - Lukáš Zachar &amp;lt;lzachar@redhat.com&amp;gt; - 3.12.13-2.1
- Security fix for CVE-2026-15308
Resolves: RHEL-193771

Thu, 16 Apr 2026 GMT - Charalampos Stratakis &amp;lt;cstratak@redhat.com&amp;gt; - 3.12.13-2
- Security fixes for CVE-2026-1502, CVE-2026-4786, CVE-2026-6100, CVE-2026-2297, CVE-2026-3644, CVE-2026-4224
Resolves: RHEL-167886, RHEL-168120

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>python3-devel-3.12.14-1.el10_2.riscv64</title>
      <pubDate>Mon, 24 Aug 2026 12:09:40 PM GMT</pubDate>
      <guid isPermaLink="false">53e1abc4bf1719d02a7ffa96f56af908de70d28b9293ea4a79b77628559c0541</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/python3-devel-3.12.14-1.el10_2.riscv64.rpm</link>
      <description><p><strong>python3-devel</strong> - Libraries and header files needed for Python development&lt;br /&gt;</p>

<p>This package contains the header files and configuration needed to compile&lt;br /&gt;
Python extension modules (typically written in C or C++), to embed Python&lt;br /&gt;
into other programs, and to make binary distributions for Python libraries.&lt;br /&gt;
&lt;br /&gt;
It also contains the necessary macros to build RPM packages with Python modules&lt;br /&gt;
and 2to3 tool, an automatic source converter from Python 2.X.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 13 Aug 2026 GMT - Karolina Surma &amp;lt;ksurma@redhat.com&amp;gt; - 3.12.14-1
- Update to Python 3.12.14
Resolves: RHEL-227203

Fri, 10 Jul 2026 GMT - Lukáš Zachar &amp;lt;lzachar@redhat.com&amp;gt; - 3.12.13-2.1
- Security fix for CVE-2026-15308
Resolves: RHEL-193771

Thu, 16 Apr 2026 GMT - Charalampos Stratakis &amp;lt;cstratak@redhat.com&amp;gt; - 3.12.13-2
- Security fixes for CVE-2026-1502, CVE-2026-4786, CVE-2026-6100, CVE-2026-2297, CVE-2026-3644, CVE-2026-4224
Resolves: RHEL-167886, RHEL-168120

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>python-unversioned-command-3.12.14-1.el10_2.noarch</title>
      <pubDate>Mon, 24 Aug 2026 12:02:30 PM GMT</pubDate>
      <guid isPermaLink="false">46ac190dbd8e45fda8be5ed726278950f41638d2ae6caaa9cbbb867adbb9bf24</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/python-unversioned-command-3.12.14-1.el10_2.noarch.rpm</link>
      <description><p><strong>python-unversioned-command</strong> - The "python" command that runs Python 3&lt;br /&gt;</p>

<p>This package contains /usr/bin/python - the "python" command that runs Python 3.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 13 Aug 2026 GMT - Karolina Surma &amp;lt;ksurma@redhat.com&amp;gt; - 3.12.14-1
- Update to Python 3.12.14
Resolves: RHEL-227203

Fri, 10 Jul 2026 GMT - Lukáš Zachar &amp;lt;lzachar@redhat.com&amp;gt; - 3.12.13-2.1
- Security fix for CVE-2026-15308
Resolves: RHEL-193771

Thu, 16 Apr 2026 GMT - Charalampos Stratakis &amp;lt;cstratak@redhat.com&amp;gt; - 3.12.13-2
- Security fixes for CVE-2026-1502, CVE-2026-4786, CVE-2026-6100, CVE-2026-2297, CVE-2026-3644, CVE-2026-4224
Resolves: RHEL-167886, RHEL-168120

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>qemu-pr-helper-18:10.1.0-16.el10_2.5.riscv64</title>
      <pubDate>Mon, 24 Aug 2026 09:10:58 AM GMT</pubDate>
      <guid isPermaLink="false">d65daa628351007e37cc5fd977b5782562727e0acbc73605670c382cbbd60e55</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/q/qemu-pr-helper-10.1.0-16.el10_2.5.riscv64.rpm</link>
      <description><p><strong>qemu-pr-helper</strong> - qemu-pr-helper utility for qemu-kvm&lt;br /&gt;</p>

<p>This package provides the qemu-pr-helper utility that is required for certain&lt;br /&gt;
SCSI features.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Tue, 04 Aug 2026 GMT - Miroslav Rezanina &amp;lt;mrezanin@redhat.com&amp;gt; - 10.1.0-16.el10_2.5
- kvm-file-posix-populate-pwrite_zeroes_alignment.patch [RHEL-207389]
- kvm-block-use-pwrite_zeroes_alignment-when-writing-first.patch [RHEL-207389]
- kvm-iotests-add-Linux-loop-device-image-creation-test.patch [RHEL-207389]
- Resolves: RHEL-207389
  (qemu-img create/convert fails on target block device with 4k sector size [rhel-10.2.z])

Thu, 09 Jul 2026 GMT - Miroslav Rezanina &amp;lt;mrezanin@redhat.com&amp;gt; - 10.1.0-16.el10_2.4
- kvm-blkdebug-Add-delay-ns-option.patch [RHEL-190702]
- kvm-block-Add-blk_co_start-end_request-and-BDRV_REQ_NO_Q.patch [RHEL-190702]
- kvm-block-Add-flags-parameter-to-blk_-_pdiscard.patch [RHEL-190702]
- kvm-ide-Minimal-fix-for-deadlock-between-TRIM-and-drain.patch [RHEL-190702]
- kvm-ide-Clean-up-ide_trim_co_entry-to-be-idiomatic-corou.patch [RHEL-190702]
- kvm-ide-test-Factor-out-wait_dma_completion.patch [RHEL-190702]
- kvm-ide-test-Test-reset-during-TRIM.patch [RHEL-190702]
- kvm-spec-Install-qtests-into-qemu-kvm-tests-package.patch [RHEL-190702]
- Resolves: RHEL-190702
  (qemu-kvm hung during drain after double pause [rhel-10.2.z])

Fri, 19 Jun 2026 GMT - Miroslav Rezanina &amp;lt;mrezanin@redhat.com&amp;gt; - 10.1.0-16.el10_2.3
- kvm-virtio-blk-add-missing-VIRTIO_BLK_T_SCSI_CMD-size-ch.patch [RHEL-184529]
- Resolves: RHEL-184529
  (CVE-2026-48914 qemu-kvm: Heap buffer overflow in virtio-blk SCSI request handling [rhel-10.2.z])

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>qemu-kvm-tools-18:10.1.0-16.el10_2.5.riscv64</title>
      <pubDate>Mon, 24 Aug 2026 09:10:58 AM GMT</pubDate>
      <guid isPermaLink="false">a8f920cfd48510ada4d7ab191f4e106c341dbae248d1f0d57aa3d8d797657da9</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/q/qemu-kvm-tools-10.1.0-16.el10_2.5.riscv64.rpm</link>
      <description><p><strong>qemu-kvm-tools</strong> - qemu-kvm support tools&lt;br /&gt;</p>

<p>qemu-kvm-tools provides various tools related to qemu-kvm usage.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Tue, 04 Aug 2026 GMT - Miroslav Rezanina &amp;lt;mrezanin@redhat.com&amp;gt; - 10.1.0-16.el10_2.5
- kvm-file-posix-populate-pwrite_zeroes_alignment.patch [RHEL-207389]
- kvm-block-use-pwrite_zeroes_alignment-when-writing-first.patch [RHEL-207389]
- kvm-iotests-add-Linux-loop-device-image-creation-test.patch [RHEL-207389]
- Resolves: RHEL-207389
  (qemu-img create/convert fails on target block device with 4k sector size [rhel-10.2.z])

Thu, 09 Jul 2026 GMT - Miroslav Rezanina &amp;lt;mrezanin@redhat.com&amp;gt; - 10.1.0-16.el10_2.4
- kvm-blkdebug-Add-delay-ns-option.patch [RHEL-190702]
- kvm-block-Add-blk_co_start-end_request-and-BDRV_REQ_NO_Q.patch [RHEL-190702]
- kvm-block-Add-flags-parameter-to-blk_-_pdiscard.patch [RHEL-190702]
- kvm-ide-Minimal-fix-for-deadlock-between-TRIM-and-drain.patch [RHEL-190702]
- kvm-ide-Clean-up-ide_trim_co_entry-to-be-idiomatic-corou.patch [RHEL-190702]
- kvm-ide-test-Factor-out-wait_dma_completion.patch [RHEL-190702]
- kvm-ide-test-Test-reset-during-TRIM.patch [RHEL-190702]
- kvm-spec-Install-qtests-into-qemu-kvm-tests-package.patch [RHEL-190702]
- Resolves: RHEL-190702
  (qemu-kvm hung during drain after double pause [rhel-10.2.z])

Fri, 19 Jun 2026 GMT - Miroslav Rezanina &amp;lt;mrezanin@redhat.com&amp;gt; - 10.1.0-16.el10_2.3
- kvm-virtio-blk-add-missing-VIRTIO_BLK_T_SCSI_CMD-size-ch.patch [RHEL-184529]
- Resolves: RHEL-184529
  (CVE-2026-48914 qemu-kvm: Heap buffer overflow in virtio-blk SCSI request handling [rhel-10.2.z])

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>qemu-kvm-docs-18:10.1.0-16.el10_2.5.riscv64</title>
      <pubDate>Mon, 24 Aug 2026 09:10:58 AM GMT</pubDate>
      <guid isPermaLink="false">53b2077dc303c00d780a307bf3b8c526271f2566b94eb825c348c70f700c618a</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/q/qemu-kvm-docs-10.1.0-16.el10_2.5.riscv64.rpm</link>
      <description><p><strong>qemu-kvm-docs</strong> - qemu-kvm documentation&lt;br /&gt;</p>

<p>qemu-kvm-docs provides documentation files regarding qemu-kvm.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Tue, 04 Aug 2026 GMT - Miroslav Rezanina &amp;lt;mrezanin@redhat.com&amp;gt; - 10.1.0-16.el10_2.5
- kvm-file-posix-populate-pwrite_zeroes_alignment.patch [RHEL-207389]
- kvm-block-use-pwrite_zeroes_alignment-when-writing-first.patch [RHEL-207389]
- kvm-iotests-add-Linux-loop-device-image-creation-test.patch [RHEL-207389]
- Resolves: RHEL-207389
  (qemu-img create/convert fails on target block device with 4k sector size [rhel-10.2.z])

Thu, 09 Jul 2026 GMT - Miroslav Rezanina &amp;lt;mrezanin@redhat.com&amp;gt; - 10.1.0-16.el10_2.4
- kvm-blkdebug-Add-delay-ns-option.patch [RHEL-190702]
- kvm-block-Add-blk_co_start-end_request-and-BDRV_REQ_NO_Q.patch [RHEL-190702]
- kvm-block-Add-flags-parameter-to-blk_-_pdiscard.patch [RHEL-190702]
- kvm-ide-Minimal-fix-for-deadlock-between-TRIM-and-drain.patch [RHEL-190702]
- kvm-ide-Clean-up-ide_trim_co_entry-to-be-idiomatic-corou.patch [RHEL-190702]
- kvm-ide-test-Factor-out-wait_dma_completion.patch [RHEL-190702]
- kvm-ide-test-Test-reset-during-TRIM.patch [RHEL-190702]
- kvm-spec-Install-qtests-into-qemu-kvm-tests-package.patch [RHEL-190702]
- Resolves: RHEL-190702
  (qemu-kvm hung during drain after double pause [rhel-10.2.z])

Fri, 19 Jun 2026 GMT - Miroslav Rezanina &amp;lt;mrezanin@redhat.com&amp;gt; - 10.1.0-16.el10_2.3
- kvm-virtio-blk-add-missing-VIRTIO_BLK_T_SCSI_CMD-size-ch.patch [RHEL-184529]
- Resolves: RHEL-184529
  (CVE-2026-48914 qemu-kvm: Heap buffer overflow in virtio-blk SCSI request handling [rhel-10.2.z])

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>qemu-kvm-device-usb-host-18:10.1.0-16.el10_2.5.riscv64</title>
      <pubDate>Mon, 24 Aug 2026 09:10:58 AM GMT</pubDate>
      <guid isPermaLink="false">e4a84bd51e22c5fddbd552c1b23ef6f218086bbd781d42547821acd182242127</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/q/qemu-kvm-device-usb-host-10.1.0-16.el10_2.5.riscv64.rpm</link>
      <description><p><strong>qemu-kvm-device-usb-host</strong> - QEMU usb host device&lt;br /&gt;</p>

<p>This package provides the USB pass through driver for QEMU.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Tue, 04 Aug 2026 GMT - Miroslav Rezanina &amp;lt;mrezanin@redhat.com&amp;gt; - 10.1.0-16.el10_2.5
- kvm-file-posix-populate-pwrite_zeroes_alignment.patch [RHEL-207389]
- kvm-block-use-pwrite_zeroes_alignment-when-writing-first.patch [RHEL-207389]
- kvm-iotests-add-Linux-loop-device-image-creation-test.patch [RHEL-207389]
- Resolves: RHEL-207389
  (qemu-img create/convert fails on target block device with 4k sector size [rhel-10.2.z])

Thu, 09 Jul 2026 GMT - Miroslav Rezanina &amp;lt;mrezanin@redhat.com&amp;gt; - 10.1.0-16.el10_2.4
- kvm-blkdebug-Add-delay-ns-option.patch [RHEL-190702]
- kvm-block-Add-blk_co_start-end_request-and-BDRV_REQ_NO_Q.patch [RHEL-190702]
- kvm-block-Add-flags-parameter-to-blk_-_pdiscard.patch [RHEL-190702]
- kvm-ide-Minimal-fix-for-deadlock-between-TRIM-and-drain.patch [RHEL-190702]
- kvm-ide-Clean-up-ide_trim_co_entry-to-be-idiomatic-corou.patch [RHEL-190702]
- kvm-ide-test-Factor-out-wait_dma_completion.patch [RHEL-190702]
- kvm-ide-test-Test-reset-during-TRIM.patch [RHEL-190702]
- kvm-spec-Install-qtests-into-qemu-kvm-tests-package.patch [RHEL-190702]
- Resolves: RHEL-190702
  (qemu-kvm hung during drain after double pause [rhel-10.2.z])

Fri, 19 Jun 2026 GMT - Miroslav Rezanina &amp;lt;mrezanin@redhat.com&amp;gt; - 10.1.0-16.el10_2.3
- kvm-virtio-blk-add-missing-VIRTIO_BLK_T_SCSI_CMD-size-ch.patch [RHEL-184529]
- Resolves: RHEL-184529
  (CVE-2026-48914 qemu-kvm: Heap buffer overflow in virtio-blk SCSI request handling [rhel-10.2.z])

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>qemu-kvm-device-display-virtio-gpu-pci-18:10.1.0-16.el10_2.5.riscv64</title>
      <pubDate>Mon, 24 Aug 2026 09:10:58 AM GMT</pubDate>
      <guid isPermaLink="false">7662eeb12bbb70e458d00f4ef8fefb6dfd02776929525112143e23c27fb8b7e9</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/q/qemu-kvm-device-display-virtio-gpu-pci-10.1.0-16.el10_2.5.riscv64.rpm</link>
      <description><p><strong>qemu-kvm-device-display-virtio-gpu-pci</strong> - QEMU virtio-gpu-pci display device&lt;br /&gt;</p>

<p>This package provides the virtio-gpu-pci display device for QEMU.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Tue, 04 Aug 2026 GMT - Miroslav Rezanina &amp;lt;mrezanin@redhat.com&amp;gt; - 10.1.0-16.el10_2.5
- kvm-file-posix-populate-pwrite_zeroes_alignment.patch [RHEL-207389]
- kvm-block-use-pwrite_zeroes_alignment-when-writing-first.patch [RHEL-207389]
- kvm-iotests-add-Linux-loop-device-image-creation-test.patch [RHEL-207389]
- Resolves: RHEL-207389
  (qemu-img create/convert fails on target block device with 4k sector size [rhel-10.2.z])

Thu, 09 Jul 2026 GMT - Miroslav Rezanina &amp;lt;mrezanin@redhat.com&amp;gt; - 10.1.0-16.el10_2.4
- kvm-blkdebug-Add-delay-ns-option.patch [RHEL-190702]
- kvm-block-Add-blk_co_start-end_request-and-BDRV_REQ_NO_Q.patch [RHEL-190702]
- kvm-block-Add-flags-parameter-to-blk_-_pdiscard.patch [RHEL-190702]
- kvm-ide-Minimal-fix-for-deadlock-between-TRIM-and-drain.patch [RHEL-190702]
- kvm-ide-Clean-up-ide_trim_co_entry-to-be-idiomatic-corou.patch [RHEL-190702]
- kvm-ide-test-Factor-out-wait_dma_completion.patch [RHEL-190702]
- kvm-ide-test-Test-reset-during-TRIM.patch [RHEL-190702]
- kvm-spec-Install-qtests-into-qemu-kvm-tests-package.patch [RHEL-190702]
- Resolves: RHEL-190702
  (qemu-kvm hung during drain after double pause [rhel-10.2.z])

Fri, 19 Jun 2026 GMT - Miroslav Rezanina &amp;lt;mrezanin@redhat.com&amp;gt; - 10.1.0-16.el10_2.3
- kvm-virtio-blk-add-missing-VIRTIO_BLK_T_SCSI_CMD-size-ch.patch [RHEL-184529]
- Resolves: RHEL-184529
  (CVE-2026-48914 qemu-kvm: Heap buffer overflow in virtio-blk SCSI request handling [rhel-10.2.z])

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>qemu-kvm-device-display-virtio-gpu-18:10.1.0-16.el10_2.5.riscv64</title>
      <pubDate>Mon, 24 Aug 2026 09:10:58 AM GMT</pubDate>
      <guid isPermaLink="false">8a401178bd72d1c73f6c1163be51b3d26be6f8b80d85b2412313952c4e606e50</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/q/qemu-kvm-device-display-virtio-gpu-10.1.0-16.el10_2.5.riscv64.rpm</link>
      <description><p><strong>qemu-kvm-device-display-virtio-gpu</strong> - QEMU virtio-gpu display device&lt;br /&gt;</p>

<p>This package provides the virtio-gpu display device for QEMU.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Tue, 04 Aug 2026 GMT - Miroslav Rezanina &amp;lt;mrezanin@redhat.com&amp;gt; - 10.1.0-16.el10_2.5
- kvm-file-posix-populate-pwrite_zeroes_alignment.patch [RHEL-207389]
- kvm-block-use-pwrite_zeroes_alignment-when-writing-first.patch [RHEL-207389]
- kvm-iotests-add-Linux-loop-device-image-creation-test.patch [RHEL-207389]
- Resolves: RHEL-207389
  (qemu-img create/convert fails on target block device with 4k sector size [rhel-10.2.z])

Thu, 09 Jul 2026 GMT - Miroslav Rezanina &amp;lt;mrezanin@redhat.com&amp;gt; - 10.1.0-16.el10_2.4
- kvm-blkdebug-Add-delay-ns-option.patch [RHEL-190702]
- kvm-block-Add-blk_co_start-end_request-and-BDRV_REQ_NO_Q.patch [RHEL-190702]
- kvm-block-Add-flags-parameter-to-blk_-_pdiscard.patch [RHEL-190702]
- kvm-ide-Minimal-fix-for-deadlock-between-TRIM-and-drain.patch [RHEL-190702]
- kvm-ide-Clean-up-ide_trim_co_entry-to-be-idiomatic-corou.patch [RHEL-190702]
- kvm-ide-test-Factor-out-wait_dma_completion.patch [RHEL-190702]
- kvm-ide-test-Test-reset-during-TRIM.patch [RHEL-190702]
- kvm-spec-Install-qtests-into-qemu-kvm-tests-package.patch [RHEL-190702]
- Resolves: RHEL-190702
  (qemu-kvm hung during drain after double pause [rhel-10.2.z])

Fri, 19 Jun 2026 GMT - Miroslav Rezanina &amp;lt;mrezanin@redhat.com&amp;gt; - 10.1.0-16.el10_2.3
- kvm-virtio-blk-add-missing-VIRTIO_BLK_T_SCSI_CMD-size-ch.patch [RHEL-184529]
- Resolves: RHEL-184529
  (CVE-2026-48914 qemu-kvm: Heap buffer overflow in virtio-blk SCSI request handling [rhel-10.2.z])

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>qemu-kvm-core-18:10.1.0-16.el10_2.5.riscv64</title>
      <pubDate>Mon, 24 Aug 2026 09:10:58 AM GMT</pubDate>
      <guid isPermaLink="false">31fbaf51065f69a6547e98959faede90504760c01bfa2ccaf3ebe804edbda758</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/q/qemu-kvm-core-10.1.0-16.el10_2.5.riscv64.rpm</link>
      <description><p><strong>qemu-kvm-core</strong> - qemu-kvm core components&lt;br /&gt;</p>

<p>qemu-kvm is an open source virtualizer that provides hardware&lt;br /&gt;
emulation for the KVM hypervisor. qemu-kvm acts as a virtual&lt;br /&gt;
machine monitor together with the KVM kernel modules, and emulates the&lt;br /&gt;
hardware for a full system such as a PC and its associated peripherals.&lt;br /&gt;
This is a minimalistic installation of qemu-kvm. Functionality provided by&lt;br /&gt;
this package is not ensured and it can change in a future version as some&lt;br /&gt;
functionality can be split out to separate package.&lt;br /&gt;
Before updating this package, it is recommended to check the package&lt;br /&gt;
changelog for information on functionality which might have been moved to&lt;br /&gt;
a separate package to prevent issues due to the moved functionality.&lt;br /&gt;
If apps opt-in to minimalist packaging by depending on qemu-kvm-core, they&lt;br /&gt;
explicitly accept that features may disappear from qemu-kvm-core in future&lt;br /&gt;
updates.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Tue, 04 Aug 2026 GMT - Miroslav Rezanina &amp;lt;mrezanin@redhat.com&amp;gt; - 10.1.0-16.el10_2.5
- kvm-file-posix-populate-pwrite_zeroes_alignment.patch [RHEL-207389]
- kvm-block-use-pwrite_zeroes_alignment-when-writing-first.patch [RHEL-207389]
- kvm-iotests-add-Linux-loop-device-image-creation-test.patch [RHEL-207389]
- Resolves: RHEL-207389
  (qemu-img create/convert fails on target block device with 4k sector size [rhel-10.2.z])

Thu, 09 Jul 2026 GMT - Miroslav Rezanina &amp;lt;mrezanin@redhat.com&amp;gt; - 10.1.0-16.el10_2.4
- kvm-blkdebug-Add-delay-ns-option.patch [RHEL-190702]
- kvm-block-Add-blk_co_start-end_request-and-BDRV_REQ_NO_Q.patch [RHEL-190702]
- kvm-block-Add-flags-parameter-to-blk_-_pdiscard.patch [RHEL-190702]
- kvm-ide-Minimal-fix-for-deadlock-between-TRIM-and-drain.patch [RHEL-190702]
- kvm-ide-Clean-up-ide_trim_co_entry-to-be-idiomatic-corou.patch [RHEL-190702]
- kvm-ide-test-Factor-out-wait_dma_completion.patch [RHEL-190702]
- kvm-ide-test-Test-reset-during-TRIM.patch [RHEL-190702]
- kvm-spec-Install-qtests-into-qemu-kvm-tests-package.patch [RHEL-190702]
- Resolves: RHEL-190702
  (qemu-kvm hung during drain after double pause [rhel-10.2.z])

Fri, 19 Jun 2026 GMT - Miroslav Rezanina &amp;lt;mrezanin@redhat.com&amp;gt; - 10.1.0-16.el10_2.3
- kvm-virtio-blk-add-missing-VIRTIO_BLK_T_SCSI_CMD-size-ch.patch [RHEL-184529]
- Resolves: RHEL-184529
  (CVE-2026-48914 qemu-kvm: Heap buffer overflow in virtio-blk SCSI request handling [rhel-10.2.z])

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>qemu-kvm-common-18:10.1.0-16.el10_2.5.riscv64</title>
      <pubDate>Mon, 24 Aug 2026 09:10:58 AM GMT</pubDate>
      <guid isPermaLink="false">f727a75a3b1ae5b24d45ea8f466d91f5ecc0876e5c0360f5c6f0f6843d131e34</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/q/qemu-kvm-common-10.1.0-16.el10_2.5.riscv64.rpm</link>
      <description><p><strong>qemu-kvm-common</strong> - QEMU common files needed by all QEMU targets&lt;br /&gt;</p>

<p>qemu-kvm is an open source virtualizer that provides hardware emulation for&lt;br /&gt;
the KVM hypervisor.&lt;br /&gt;
&lt;br /&gt;
This package provides documentation and auxiliary programs used with qemu-kvm.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Tue, 04 Aug 2026 GMT - Miroslav Rezanina &amp;lt;mrezanin@redhat.com&amp;gt; - 10.1.0-16.el10_2.5
- kvm-file-posix-populate-pwrite_zeroes_alignment.patch [RHEL-207389]
- kvm-block-use-pwrite_zeroes_alignment-when-writing-first.patch [RHEL-207389]
- kvm-iotests-add-Linux-loop-device-image-creation-test.patch [RHEL-207389]
- Resolves: RHEL-207389
  (qemu-img create/convert fails on target block device with 4k sector size [rhel-10.2.z])

Thu, 09 Jul 2026 GMT - Miroslav Rezanina &amp;lt;mrezanin@redhat.com&amp;gt; - 10.1.0-16.el10_2.4
- kvm-blkdebug-Add-delay-ns-option.patch [RHEL-190702]
- kvm-block-Add-blk_co_start-end_request-and-BDRV_REQ_NO_Q.patch [RHEL-190702]
- kvm-block-Add-flags-parameter-to-blk_-_pdiscard.patch [RHEL-190702]
- kvm-ide-Minimal-fix-for-deadlock-between-TRIM-and-drain.patch [RHEL-190702]
- kvm-ide-Clean-up-ide_trim_co_entry-to-be-idiomatic-corou.patch [RHEL-190702]
- kvm-ide-test-Factor-out-wait_dma_completion.patch [RHEL-190702]
- kvm-ide-test-Test-reset-during-TRIM.patch [RHEL-190702]
- kvm-spec-Install-qtests-into-qemu-kvm-tests-package.patch [RHEL-190702]
- Resolves: RHEL-190702
  (qemu-kvm hung during drain after double pause [rhel-10.2.z])

Fri, 19 Jun 2026 GMT - Miroslav Rezanina &amp;lt;mrezanin@redhat.com&amp;gt; - 10.1.0-16.el10_2.3
- kvm-virtio-blk-add-missing-VIRTIO_BLK_T_SCSI_CMD-size-ch.patch [RHEL-184529]
- Resolves: RHEL-184529
  (CVE-2026-48914 qemu-kvm: Heap buffer overflow in virtio-blk SCSI request handling [rhel-10.2.z])

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>qemu-kvm-block-rbd-18:10.1.0-16.el10_2.5.riscv64</title>
      <pubDate>Mon, 24 Aug 2026 09:10:58 AM GMT</pubDate>
      <guid isPermaLink="false">c7bc637b2b0155e89c8e38d0b7877057d9057243e0eeec59b4e88d6d38341502</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/q/qemu-kvm-block-rbd-10.1.0-16.el10_2.5.riscv64.rpm</link>
      <description><p><strong>qemu-kvm-block-rbd</strong> - QEMU Ceph/RBD block driver&lt;br /&gt;</p>

<p>This package provides the additional Ceph/RBD block driver for QEMU.&lt;br /&gt;
&lt;br /&gt;
Install this package if you want to access remote Ceph volumes&lt;br /&gt;
using the rbd protocol.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Tue, 04 Aug 2026 GMT - Miroslav Rezanina &amp;lt;mrezanin@redhat.com&amp;gt; - 10.1.0-16.el10_2.5
- kvm-file-posix-populate-pwrite_zeroes_alignment.patch [RHEL-207389]
- kvm-block-use-pwrite_zeroes_alignment-when-writing-first.patch [RHEL-207389]
- kvm-iotests-add-Linux-loop-device-image-creation-test.patch [RHEL-207389]
- Resolves: RHEL-207389
  (qemu-img create/convert fails on target block device with 4k sector size [rhel-10.2.z])

Thu, 09 Jul 2026 GMT - Miroslav Rezanina &amp;lt;mrezanin@redhat.com&amp;gt; - 10.1.0-16.el10_2.4
- kvm-blkdebug-Add-delay-ns-option.patch [RHEL-190702]
- kvm-block-Add-blk_co_start-end_request-and-BDRV_REQ_NO_Q.patch [RHEL-190702]
- kvm-block-Add-flags-parameter-to-blk_-_pdiscard.patch [RHEL-190702]
- kvm-ide-Minimal-fix-for-deadlock-between-TRIM-and-drain.patch [RHEL-190702]
- kvm-ide-Clean-up-ide_trim_co_entry-to-be-idiomatic-corou.patch [RHEL-190702]
- kvm-ide-test-Factor-out-wait_dma_completion.patch [RHEL-190702]
- kvm-ide-test-Test-reset-during-TRIM.patch [RHEL-190702]
- kvm-spec-Install-qtests-into-qemu-kvm-tests-package.patch [RHEL-190702]
- Resolves: RHEL-190702
  (qemu-kvm hung during drain after double pause [rhel-10.2.z])

Fri, 19 Jun 2026 GMT - Miroslav Rezanina &amp;lt;mrezanin@redhat.com&amp;gt; - 10.1.0-16.el10_2.3
- kvm-virtio-blk-add-missing-VIRTIO_BLK_T_SCSI_CMD-size-ch.patch [RHEL-184529]
- Resolves: RHEL-184529
  (CVE-2026-48914 qemu-kvm: Heap buffer overflow in virtio-blk SCSI request handling [rhel-10.2.z])

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>qemu-kvm-block-curl-18:10.1.0-16.el10_2.5.riscv64</title>
      <pubDate>Mon, 24 Aug 2026 09:10:58 AM GMT</pubDate>
      <guid isPermaLink="false">59fe6373dcc55bf3680178f208419ee654be8379648ca8842b534c82abfa3f03</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/q/qemu-kvm-block-curl-10.1.0-16.el10_2.5.riscv64.rpm</link>
      <description><p><strong>qemu-kvm-block-curl</strong> - QEMU CURL block driver&lt;br /&gt;</p>

<p>This package provides the additional CURL block driver for QEMU.&lt;br /&gt;
&lt;br /&gt;
Install this package if you want to access remote disks over&lt;br /&gt;
http, https, ftp and other transports provided by the CURL library.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Tue, 04 Aug 2026 GMT - Miroslav Rezanina &amp;lt;mrezanin@redhat.com&amp;gt; - 10.1.0-16.el10_2.5
- kvm-file-posix-populate-pwrite_zeroes_alignment.patch [RHEL-207389]
- kvm-block-use-pwrite_zeroes_alignment-when-writing-first.patch [RHEL-207389]
- kvm-iotests-add-Linux-loop-device-image-creation-test.patch [RHEL-207389]
- Resolves: RHEL-207389
  (qemu-img create/convert fails on target block device with 4k sector size [rhel-10.2.z])

Thu, 09 Jul 2026 GMT - Miroslav Rezanina &amp;lt;mrezanin@redhat.com&amp;gt; - 10.1.0-16.el10_2.4
- kvm-blkdebug-Add-delay-ns-option.patch [RHEL-190702]
- kvm-block-Add-blk_co_start-end_request-and-BDRV_REQ_NO_Q.patch [RHEL-190702]
- kvm-block-Add-flags-parameter-to-blk_-_pdiscard.patch [RHEL-190702]
- kvm-ide-Minimal-fix-for-deadlock-between-TRIM-and-drain.patch [RHEL-190702]
- kvm-ide-Clean-up-ide_trim_co_entry-to-be-idiomatic-corou.patch [RHEL-190702]
- kvm-ide-test-Factor-out-wait_dma_completion.patch [RHEL-190702]
- kvm-ide-test-Test-reset-during-TRIM.patch [RHEL-190702]
- kvm-spec-Install-qtests-into-qemu-kvm-tests-package.patch [RHEL-190702]
- Resolves: RHEL-190702
  (qemu-kvm hung during drain after double pause [rhel-10.2.z])

Fri, 19 Jun 2026 GMT - Miroslav Rezanina &amp;lt;mrezanin@redhat.com&amp;gt; - 10.1.0-16.el10_2.3
- kvm-virtio-blk-add-missing-VIRTIO_BLK_T_SCSI_CMD-size-ch.patch [RHEL-184529]
- Resolves: RHEL-184529
  (CVE-2026-48914 qemu-kvm: Heap buffer overflow in virtio-blk SCSI request handling [rhel-10.2.z])

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>qemu-kvm-block-blkio-18:10.1.0-16.el10_2.5.riscv64</title>
      <pubDate>Mon, 24 Aug 2026 09:10:58 AM GMT</pubDate>
      <guid isPermaLink="false">57e54f24a4d98c1ffef9b4542885a14a9666a2faef4e2f964b801a4314822b57</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/q/qemu-kvm-block-blkio-10.1.0-16.el10_2.5.riscv64.rpm</link>
      <description><p><strong>qemu-kvm-block-blkio</strong> - QEMU libblkio block drivers&lt;br /&gt;</p>

<p>This package provides the additional libblkio block drivers for QEMU.&lt;br /&gt;
&lt;br /&gt;
Install this package if you want to use virtio-blk-vdpa-blk,&lt;br /&gt;
virtio-blk-vfio-pci, virtio-blk-vhost-user, io_uring, and nvme-io_uring block&lt;br /&gt;
drivers provided by libblkio.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Tue, 04 Aug 2026 GMT - Miroslav Rezanina &amp;lt;mrezanin@redhat.com&amp;gt; - 10.1.0-16.el10_2.5
- kvm-file-posix-populate-pwrite_zeroes_alignment.patch [RHEL-207389]
- kvm-block-use-pwrite_zeroes_alignment-when-writing-first.patch [RHEL-207389]
- kvm-iotests-add-Linux-loop-device-image-creation-test.patch [RHEL-207389]
- Resolves: RHEL-207389
  (qemu-img create/convert fails on target block device with 4k sector size [rhel-10.2.z])

Thu, 09 Jul 2026 GMT - Miroslav Rezanina &amp;lt;mrezanin@redhat.com&amp;gt; - 10.1.0-16.el10_2.4
- kvm-blkdebug-Add-delay-ns-option.patch [RHEL-190702]
- kvm-block-Add-blk_co_start-end_request-and-BDRV_REQ_NO_Q.patch [RHEL-190702]
- kvm-block-Add-flags-parameter-to-blk_-_pdiscard.patch [RHEL-190702]
- kvm-ide-Minimal-fix-for-deadlock-between-TRIM-and-drain.patch [RHEL-190702]
- kvm-ide-Clean-up-ide_trim_co_entry-to-be-idiomatic-corou.patch [RHEL-190702]
- kvm-ide-test-Factor-out-wait_dma_completion.patch [RHEL-190702]
- kvm-ide-test-Test-reset-during-TRIM.patch [RHEL-190702]
- kvm-spec-Install-qtests-into-qemu-kvm-tests-package.patch [RHEL-190702]
- Resolves: RHEL-190702
  (qemu-kvm hung during drain after double pause [rhel-10.2.z])

Fri, 19 Jun 2026 GMT - Miroslav Rezanina &amp;lt;mrezanin@redhat.com&amp;gt; - 10.1.0-16.el10_2.3
- kvm-virtio-blk-add-missing-VIRTIO_BLK_T_SCSI_CMD-size-ch.patch [RHEL-184529]
- Resolves: RHEL-184529
  (CVE-2026-48914 qemu-kvm: Heap buffer overflow in virtio-blk SCSI request handling [rhel-10.2.z])

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>qemu-kvm-audio-pa-18:10.1.0-16.el10_2.5.riscv64</title>
      <pubDate>Mon, 24 Aug 2026 09:10:58 AM GMT</pubDate>
      <guid isPermaLink="false">ce0ba44cf5a1f576b176cd3c85737e008381dde2a20fc3e4544c15cdb46df589</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/q/qemu-kvm-audio-pa-10.1.0-16.el10_2.5.riscv64.rpm</link>
      <description><p><strong>qemu-kvm-audio-pa</strong> - QEMU PulseAudio audio driver&lt;br /&gt;</p>

<p>This package provides the additional PulseAudio audio driver for QEMU.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Tue, 04 Aug 2026 GMT - Miroslav Rezanina &amp;lt;mrezanin@redhat.com&amp;gt; - 10.1.0-16.el10_2.5
- kvm-file-posix-populate-pwrite_zeroes_alignment.patch [RHEL-207389]
- kvm-block-use-pwrite_zeroes_alignment-when-writing-first.patch [RHEL-207389]
- kvm-iotests-add-Linux-loop-device-image-creation-test.patch [RHEL-207389]
- Resolves: RHEL-207389
  (qemu-img create/convert fails on target block device with 4k sector size [rhel-10.2.z])

Thu, 09 Jul 2026 GMT - Miroslav Rezanina &amp;lt;mrezanin@redhat.com&amp;gt; - 10.1.0-16.el10_2.4
- kvm-blkdebug-Add-delay-ns-option.patch [RHEL-190702]
- kvm-block-Add-blk_co_start-end_request-and-BDRV_REQ_NO_Q.patch [RHEL-190702]
- kvm-block-Add-flags-parameter-to-blk_-_pdiscard.patch [RHEL-190702]
- kvm-ide-Minimal-fix-for-deadlock-between-TRIM-and-drain.patch [RHEL-190702]
- kvm-ide-Clean-up-ide_trim_co_entry-to-be-idiomatic-corou.patch [RHEL-190702]
- kvm-ide-test-Factor-out-wait_dma_completion.patch [RHEL-190702]
- kvm-ide-test-Test-reset-during-TRIM.patch [RHEL-190702]
- kvm-spec-Install-qtests-into-qemu-kvm-tests-package.patch [RHEL-190702]
- Resolves: RHEL-190702
  (qemu-kvm hung during drain after double pause [rhel-10.2.z])

Fri, 19 Jun 2026 GMT - Miroslav Rezanina &amp;lt;mrezanin@redhat.com&amp;gt; - 10.1.0-16.el10_2.3
- kvm-virtio-blk-add-missing-VIRTIO_BLK_T_SCSI_CMD-size-ch.patch [RHEL-184529]
- Resolves: RHEL-184529
  (CVE-2026-48914 qemu-kvm: Heap buffer overflow in virtio-blk SCSI request handling [rhel-10.2.z])

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>qemu-kvm-18:10.1.0-16.el10_2.5.riscv64</title>
      <pubDate>Mon, 24 Aug 2026 09:10:58 AM GMT</pubDate>
      <guid isPermaLink="false">4f572e4965aac76c5e949280157c832fb425048fa5bd1b20fb6caebf1577dd47</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/q/qemu-kvm-10.1.0-16.el10_2.5.riscv64.rpm</link>
      <description><p><strong>qemu-kvm</strong> - QEMU is a machine emulator and virtualizer&lt;br /&gt;</p>

<p>qemu-kvm is an open source virtualizer that provides hardware&lt;br /&gt;
emulation for the KVM hypervisor. qemu-kvm acts as a virtual&lt;br /&gt;
machine monitor together with the KVM kernel modules, and emulates the&lt;br /&gt;
hardware for a full system such as a PC and its associated peripherals.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Tue, 04 Aug 2026 GMT - Miroslav Rezanina &amp;lt;mrezanin@redhat.com&amp;gt; - 10.1.0-16.el10_2.5
- kvm-file-posix-populate-pwrite_zeroes_alignment.patch [RHEL-207389]
- kvm-block-use-pwrite_zeroes_alignment-when-writing-first.patch [RHEL-207389]
- kvm-iotests-add-Linux-loop-device-image-creation-test.patch [RHEL-207389]
- Resolves: RHEL-207389
  (qemu-img create/convert fails on target block device with 4k sector size [rhel-10.2.z])

Thu, 09 Jul 2026 GMT - Miroslav Rezanina &amp;lt;mrezanin@redhat.com&amp;gt; - 10.1.0-16.el10_2.4
- kvm-blkdebug-Add-delay-ns-option.patch [RHEL-190702]
- kvm-block-Add-blk_co_start-end_request-and-BDRV_REQ_NO_Q.patch [RHEL-190702]
- kvm-block-Add-flags-parameter-to-blk_-_pdiscard.patch [RHEL-190702]
- kvm-ide-Minimal-fix-for-deadlock-between-TRIM-and-drain.patch [RHEL-190702]
- kvm-ide-Clean-up-ide_trim_co_entry-to-be-idiomatic-corou.patch [RHEL-190702]
- kvm-ide-test-Factor-out-wait_dma_completion.patch [RHEL-190702]
- kvm-ide-test-Test-reset-during-TRIM.patch [RHEL-190702]
- kvm-spec-Install-qtests-into-qemu-kvm-tests-package.patch [RHEL-190702]
- Resolves: RHEL-190702
  (qemu-kvm hung during drain after double pause [rhel-10.2.z])

Fri, 19 Jun 2026 GMT - Miroslav Rezanina &amp;lt;mrezanin@redhat.com&amp;gt; - 10.1.0-16.el10_2.3
- kvm-virtio-blk-add-missing-VIRTIO_BLK_T_SCSI_CMD-size-ch.patch [RHEL-184529]
- Resolves: RHEL-184529
  (CVE-2026-48914 qemu-kvm: Heap buffer overflow in virtio-blk SCSI request handling [rhel-10.2.z])

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>qemu-img-18:10.1.0-16.el10_2.5.riscv64</title>
      <pubDate>Mon, 24 Aug 2026 09:10:58 AM GMT</pubDate>
      <guid isPermaLink="false">0cace5af9c5c370d8e40e4d0fd1a306ff6980089aa9a8a1e270b0475362c9193</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/q/qemu-img-10.1.0-16.el10_2.5.riscv64.rpm</link>
      <description><p><strong>qemu-img</strong> - QEMU command line tool for manipulating disk images&lt;br /&gt;</p>

<p>This package provides a command line tool for manipulating disk images.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Tue, 04 Aug 2026 GMT - Miroslav Rezanina &amp;lt;mrezanin@redhat.com&amp;gt; - 10.1.0-16.el10_2.5
- kvm-file-posix-populate-pwrite_zeroes_alignment.patch [RHEL-207389]
- kvm-block-use-pwrite_zeroes_alignment-when-writing-first.patch [RHEL-207389]
- kvm-iotests-add-Linux-loop-device-image-creation-test.patch [RHEL-207389]
- Resolves: RHEL-207389
  (qemu-img create/convert fails on target block device with 4k sector size [rhel-10.2.z])

Thu, 09 Jul 2026 GMT - Miroslav Rezanina &amp;lt;mrezanin@redhat.com&amp;gt; - 10.1.0-16.el10_2.4
- kvm-blkdebug-Add-delay-ns-option.patch [RHEL-190702]
- kvm-block-Add-blk_co_start-end_request-and-BDRV_REQ_NO_Q.patch [RHEL-190702]
- kvm-block-Add-flags-parameter-to-blk_-_pdiscard.patch [RHEL-190702]
- kvm-ide-Minimal-fix-for-deadlock-between-TRIM-and-drain.patch [RHEL-190702]
- kvm-ide-Clean-up-ide_trim_co_entry-to-be-idiomatic-corou.patch [RHEL-190702]
- kvm-ide-test-Factor-out-wait_dma_completion.patch [RHEL-190702]
- kvm-ide-test-Test-reset-during-TRIM.patch [RHEL-190702]
- kvm-spec-Install-qtests-into-qemu-kvm-tests-package.patch [RHEL-190702]
- Resolves: RHEL-190702
  (qemu-kvm hung during drain after double pause [rhel-10.2.z])

Fri, 19 Jun 2026 GMT - Miroslav Rezanina &amp;lt;mrezanin@redhat.com&amp;gt; - 10.1.0-16.el10_2.3
- kvm-virtio-blk-add-missing-VIRTIO_BLK_T_SCSI_CMD-size-ch.patch [RHEL-184529]
- Resolves: RHEL-184529
  (CVE-2026-48914 qemu-kvm: Heap buffer overflow in virtio-blk SCSI request handling [rhel-10.2.z])

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>qemu-guest-agent-18:10.1.0-16.el10_2.5.riscv64</title>
      <pubDate>Mon, 24 Aug 2026 09:10:58 AM GMT</pubDate>
      <guid isPermaLink="false">89c5495b9abdd5c0e41ed5b926db94455753b87327fb2905fadb01b9f5badc2e</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/q/qemu-guest-agent-10.1.0-16.el10_2.5.riscv64.rpm</link>
      <description><p><strong>qemu-guest-agent</strong> - QEMU guest agent&lt;br /&gt;</p>

<p>qemu-kvm is an open source virtualizer that provides hardware emulation for&lt;br /&gt;
the KVM hypervisor.&lt;br /&gt;
&lt;br /&gt;
This package provides an agent to run inside guests, which communicates&lt;br /&gt;
with the host over a virtio-serial channel named "org.qemu.guest_agent.0"&lt;br /&gt;
&lt;br /&gt;
This package does not need to be installed on the host OS.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Tue, 04 Aug 2026 GMT - Miroslav Rezanina &amp;lt;mrezanin@redhat.com&amp;gt; - 10.1.0-16.el10_2.5
- kvm-file-posix-populate-pwrite_zeroes_alignment.patch [RHEL-207389]
- kvm-block-use-pwrite_zeroes_alignment-when-writing-first.patch [RHEL-207389]
- kvm-iotests-add-Linux-loop-device-image-creation-test.patch [RHEL-207389]
- Resolves: RHEL-207389
  (qemu-img create/convert fails on target block device with 4k sector size [rhel-10.2.z])

Thu, 09 Jul 2026 GMT - Miroslav Rezanina &amp;lt;mrezanin@redhat.com&amp;gt; - 10.1.0-16.el10_2.4
- kvm-blkdebug-Add-delay-ns-option.patch [RHEL-190702]
- kvm-block-Add-blk_co_start-end_request-and-BDRV_REQ_NO_Q.patch [RHEL-190702]
- kvm-block-Add-flags-parameter-to-blk_-_pdiscard.patch [RHEL-190702]
- kvm-ide-Minimal-fix-for-deadlock-between-TRIM-and-drain.patch [RHEL-190702]
- kvm-ide-Clean-up-ide_trim_co_entry-to-be-idiomatic-corou.patch [RHEL-190702]
- kvm-ide-test-Factor-out-wait_dma_completion.patch [RHEL-190702]
- kvm-ide-test-Test-reset-during-TRIM.patch [RHEL-190702]
- kvm-spec-Install-qtests-into-qemu-kvm-tests-package.patch [RHEL-190702]
- Resolves: RHEL-190702
  (qemu-kvm hung during drain after double pause [rhel-10.2.z])

Fri, 19 Jun 2026 GMT - Miroslav Rezanina &amp;lt;mrezanin@redhat.com&amp;gt; - 10.1.0-16.el10_2.3
- kvm-virtio-blk-add-missing-VIRTIO_BLK_T_SCSI_CMD-size-ch.patch [RHEL-184529]
- Resolves: RHEL-184529
  (CVE-2026-48914 qemu-kvm: Heap buffer overflow in virtio-blk SCSI request handling [rhel-10.2.z])

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>java-21-openjdk-static-libs-1:21.0.12.1.1-1.2.el10_2.riscv64</title>
      <pubDate>Thu, 20 Aug 2026 11:42:13 PM GMT</pubDate>
      <guid isPermaLink="false">a33052d891b5746153af18175567d340ee562bda7303682560817455cb2e8799</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/j/java-21-openjdk-static-libs-21.0.12.1.1-1.2.el10_2.riscv64.rpm</link>
      <description><p><strong>java-21-openjdk-static-libs</strong> - OpenJDK 21 libraries for static linking&lt;br /&gt;</p>

<p>The OpenJDK 21 libraries for static linking.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 20 Aug 2026 GMT - Release Engineering &amp;lt;releng@rockylinux.org&amp;gt; - 1:21.0.12.1.1-1.2
- Add riscv64 to debug_arches

Thu, 20 Aug 2026 GMT - Release Engineering &amp;lt;releng@rockylinux.org&amp;gt; - 1:21.0.12.1.1-1.2
- Build for Rocky Linux 10 using our own portable

Wed, 12 Aug 2026 GMT - Andrew Hughes &amp;lt;gnu.andrew@redhat.com&amp;gt; - 1:21.0.12.1.1-1.2
- Bump release for PQC build
- Related: RHEL-235622

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>java-21-openjdk-src-1:21.0.12.1.1-1.2.el10_2.riscv64</title>
      <pubDate>Thu, 20 Aug 2026 11:42:13 PM GMT</pubDate>
      <guid isPermaLink="false">874f5a9dad14b88988ceaeea377ddfd4a4d21d2ad9e7401ce1c4aa6c47ea97b6</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/j/java-21-openjdk-src-21.0.12.1.1-1.2.el10_2.riscv64.rpm</link>
      <description><p><strong>java-21-openjdk-src</strong> - OpenJDK 21 Source Bundle&lt;br /&gt;</p>

<p>The java-21-openjdk-src sub-package contains the complete OpenJDK 21&lt;br /&gt;
class library source code for use by IDE indexers and debuggers.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 20 Aug 2026 GMT - Release Engineering &amp;lt;releng@rockylinux.org&amp;gt; - 1:21.0.12.1.1-1.2
- Add riscv64 to debug_arches

Thu, 20 Aug 2026 GMT - Release Engineering &amp;lt;releng@rockylinux.org&amp;gt; - 1:21.0.12.1.1-1.2
- Build for Rocky Linux 10 using our own portable

Wed, 12 Aug 2026 GMT - Andrew Hughes &amp;lt;gnu.andrew@redhat.com&amp;gt; - 1:21.0.12.1.1-1.2
- Bump release for PQC build
- Related: RHEL-235622

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>java-21-openjdk-jmods-1:21.0.12.1.1-1.2.el10_2.riscv64</title>
      <pubDate>Thu, 20 Aug 2026 11:42:13 PM GMT</pubDate>
      <guid isPermaLink="false">ddce4896b2cdfc7fd0786e749cff1261e88ffac2fad53951b036c717b9bba0ff</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/j/java-21-openjdk-jmods-21.0.12.1.1-1.2.el10_2.riscv64.rpm</link>
      <description><p><strong>java-21-openjdk-jmods</strong> - JMods for OpenJDK 21&lt;br /&gt;</p>

<p>The JMods for OpenJDK 21.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 20 Aug 2026 GMT - Release Engineering &amp;lt;releng@rockylinux.org&amp;gt; - 1:21.0.12.1.1-1.2
- Add riscv64 to debug_arches

Thu, 20 Aug 2026 GMT - Release Engineering &amp;lt;releng@rockylinux.org&amp;gt; - 1:21.0.12.1.1-1.2
- Build for Rocky Linux 10 using our own portable

Wed, 12 Aug 2026 GMT - Andrew Hughes &amp;lt;gnu.andrew@redhat.com&amp;gt; - 1:21.0.12.1.1-1.2
- Bump release for PQC build
- Related: RHEL-235622

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>java-21-openjdk-javadoc-zip-1:21.0.12.1.1-1.2.el10_2.riscv64</title>
      <pubDate>Thu, 20 Aug 2026 11:42:13 PM GMT</pubDate>
      <guid isPermaLink="false">6998cc758b5e55f38e1f6e131faef2f6d0875064901fe1247210cb3b29320469</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/j/java-21-openjdk-javadoc-zip-21.0.12.1.1-1.2.el10_2.riscv64.rpm</link>
      <description><p><strong>java-21-openjdk-javadoc-zip</strong> - OpenJDK 21 API documentation compressed in a single archive&lt;br /&gt;</p>

<p>The OpenJDK 21 API documentation compressed in a single archive.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 20 Aug 2026 GMT - Release Engineering &amp;lt;releng@rockylinux.org&amp;gt; - 1:21.0.12.1.1-1.2
- Add riscv64 to debug_arches

Thu, 20 Aug 2026 GMT - Release Engineering &amp;lt;releng@rockylinux.org&amp;gt; - 1:21.0.12.1.1-1.2
- Build for Rocky Linux 10 using our own portable

Wed, 12 Aug 2026 GMT - Andrew Hughes &amp;lt;gnu.andrew@redhat.com&amp;gt; - 1:21.0.12.1.1-1.2
- Bump release for PQC build
- Related: RHEL-235622

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>java-21-openjdk-javadoc-1:21.0.12.1.1-1.2.el10_2.riscv64</title>
      <pubDate>Thu, 20 Aug 2026 11:42:13 PM GMT</pubDate>
      <guid isPermaLink="false">7674ea92fecc0bdc84b6cf295659928742ca57c0f2a9a6bc4b8270efc18fcbdc</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/j/java-21-openjdk-javadoc-21.0.12.1.1-1.2.el10_2.riscv64.rpm</link>
      <description><p><strong>java-21-openjdk-javadoc</strong> - OpenJDK 21 API documentation&lt;br /&gt;</p>

<p>The OpenJDK 21 API documentation.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 20 Aug 2026 GMT - Release Engineering &amp;lt;releng@rockylinux.org&amp;gt; - 1:21.0.12.1.1-1.2
- Add riscv64 to debug_arches

Thu, 20 Aug 2026 GMT - Release Engineering &amp;lt;releng@rockylinux.org&amp;gt; - 1:21.0.12.1.1-1.2
- Build for Rocky Linux 10 using our own portable

Wed, 12 Aug 2026 GMT - Andrew Hughes &amp;lt;gnu.andrew@redhat.com&amp;gt; - 1:21.0.12.1.1-1.2
- Bump release for PQC build
- Related: RHEL-235622

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>java-21-openjdk-headless-1:21.0.12.1.1-1.2.el10_2.riscv64</title>
      <pubDate>Thu, 20 Aug 2026 11:42:13 PM GMT</pubDate>
      <guid isPermaLink="false">5a18985d6986a4156201d874e67a9f898c82e453d01c14bdbaa13d6f7b579a5e</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/j/java-21-openjdk-headless-21.0.12.1.1-1.2.el10_2.riscv64.rpm</link>
      <description><p><strong>java-21-openjdk-headless</strong> - OpenJDK 21 Headless Runtime Environment&lt;br /&gt;</p>

<p>The OpenJDK 21 runtime environment without audio and video support.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 20 Aug 2026 GMT - Release Engineering &amp;lt;releng@rockylinux.org&amp;gt; - 1:21.0.12.1.1-1.2
- Add riscv64 to debug_arches

Thu, 20 Aug 2026 GMT - Release Engineering &amp;lt;releng@rockylinux.org&amp;gt; - 1:21.0.12.1.1-1.2
- Build for Rocky Linux 10 using our own portable

Wed, 12 Aug 2026 GMT - Andrew Hughes &amp;lt;gnu.andrew@redhat.com&amp;gt; - 1:21.0.12.1.1-1.2
- Bump release for PQC build
- Related: RHEL-235622

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>java-21-openjdk-devel-1:21.0.12.1.1-1.2.el10_2.riscv64</title>
      <pubDate>Thu, 20 Aug 2026 11:42:13 PM GMT</pubDate>
      <guid isPermaLink="false">d015129329e0b8863f10e04a969ea31709b34e0ce9a42bbd34f029d5c9ddd088</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/j/java-21-openjdk-devel-21.0.12.1.1-1.2.el10_2.riscv64.rpm</link>
      <description><p><strong>java-21-openjdk-devel</strong> - OpenJDK 21 Development Environment&lt;br /&gt;</p>

<p>The OpenJDK 21 development tools.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 20 Aug 2026 GMT - Release Engineering &amp;lt;releng@rockylinux.org&amp;gt; - 1:21.0.12.1.1-1.2
- Add riscv64 to debug_arches

Thu, 20 Aug 2026 GMT - Release Engineering &amp;lt;releng@rockylinux.org&amp;gt; - 1:21.0.12.1.1-1.2
- Build for Rocky Linux 10 using our own portable

Wed, 12 Aug 2026 GMT - Andrew Hughes &amp;lt;gnu.andrew@redhat.com&amp;gt; - 1:21.0.12.1.1-1.2
- Bump release for PQC build
- Related: RHEL-235622

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>java-21-openjdk-demo-1:21.0.12.1.1-1.2.el10_2.riscv64</title>
      <pubDate>Thu, 20 Aug 2026 11:42:13 PM GMT</pubDate>
      <guid isPermaLink="false">4bdb45e9a0ac88f15ff87d85a7822b9959864c94c8d48f5d408753ccaae501f7</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/j/java-21-openjdk-demo-21.0.12.1.1-1.2.el10_2.riscv64.rpm</link>
      <description><p><strong>java-21-openjdk-demo</strong> - OpenJDK 21 Demos&lt;br /&gt;</p>

<p>The OpenJDK 21 demos.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 20 Aug 2026 GMT - Release Engineering &amp;lt;releng@rockylinux.org&amp;gt; - 1:21.0.12.1.1-1.2
- Add riscv64 to debug_arches

Thu, 20 Aug 2026 GMT - Release Engineering &amp;lt;releng@rockylinux.org&amp;gt; - 1:21.0.12.1.1-1.2
- Build for Rocky Linux 10 using our own portable

Wed, 12 Aug 2026 GMT - Andrew Hughes &amp;lt;gnu.andrew@redhat.com&amp;gt; - 1:21.0.12.1.1-1.2
- Bump release for PQC build
- Related: RHEL-235622

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>java-21-openjdk-1:21.0.12.1.1-1.2.el10_2.riscv64</title>
      <pubDate>Thu, 20 Aug 2026 11:42:13 PM GMT</pubDate>
      <guid isPermaLink="false">adb97b2f94a1835987ff799b48a007c721052683a9cba83c1d9d9e657425549e</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/j/java-21-openjdk-21.0.12.1.1-1.2.el10_2.riscv64.rpm</link>
      <description><p><strong>java-21-openjdk</strong> - OpenJDK 21 Runtime Environment&lt;br /&gt;</p>

<p>The OpenJDK 21 runtime environment.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 20 Aug 2026 GMT - Release Engineering &amp;lt;releng@rockylinux.org&amp;gt; - 1:21.0.12.1.1-1.2
- Add riscv64 to debug_arches

Thu, 20 Aug 2026 GMT - Release Engineering &amp;lt;releng@rockylinux.org&amp;gt; - 1:21.0.12.1.1-1.2
- Build for Rocky Linux 10 using our own portable

Wed, 12 Aug 2026 GMT - Andrew Hughes &amp;lt;gnu.andrew@redhat.com&amp;gt; - 1:21.0.12.1.1-1.2
- Bump release for PQC build
- Related: RHEL-235622

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>java-25-openjdk-static-libs-1:25.0.4.1.1-1.1.el10_2.riscv64</title>
      <pubDate>Thu, 20 Aug 2026 09:47:59 PM GMT</pubDate>
      <guid isPermaLink="false">7d5eb897ffae4553fa206a433c5cb16b866eb2c28b9ff7c9b7db2490071bf319</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/j/java-25-openjdk-static-libs-25.0.4.1.1-1.1.el10_2.riscv64.rpm</link>
      <description><p><strong>java-25-openjdk-static-libs</strong> - OpenJDK 25 libraries for static linking&lt;br /&gt;</p>

<p>The OpenJDK 25 libraries for static linking.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 20 Aug 2026 GMT - Release Engineering &amp;lt;releng@rockylinux.org&amp;gt; - 1:25.0.4.1.1-1.1
- Add riscv64 to debug_arches

Thu, 20 Aug 2026 GMT - Release Engineering &amp;lt;releng@rockylinux.org&amp;gt; - 1:25.0.4.1.1-1.1
- Build for Rocky Linux 10 using our own portable

Fri, 07 Aug 2026 GMT - Andrew Hughes &amp;lt;gnu.andrew@redhat.com&amp;gt; - 1:25.0.4.1.1-1.1
- Update to jdk-25.0.4.1+1 (GA)
- Update release notes to 25.0.4.1+1
- Report pkgos value during build
- Sync the copy of the portable specfile with the latest update
- ** This tarball is embargoed until 2026-08-18 @ 1pm PT. **
- Resolves: RHEL-235627

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>java-25-openjdk-src-1:25.0.4.1.1-1.1.el10_2.riscv64</title>
      <pubDate>Thu, 20 Aug 2026 09:47:59 PM GMT</pubDate>
      <guid isPermaLink="false">61a06e153f4faad2bbe68c31ccbf341a67b8ff80ec343536514b39c0402eedd6</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/j/java-25-openjdk-src-25.0.4.1.1-1.1.el10_2.riscv64.rpm</link>
      <description><p><strong>java-25-openjdk-src</strong> - OpenJDK 25 Source Bundle&lt;br /&gt;</p>

<p>The java-25-openjdk-src sub-package contains the complete OpenJDK 25&lt;br /&gt;
class library source code for use by IDE indexers and debuggers.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 20 Aug 2026 GMT - Release Engineering &amp;lt;releng@rockylinux.org&amp;gt; - 1:25.0.4.1.1-1.1
- Add riscv64 to debug_arches

Thu, 20 Aug 2026 GMT - Release Engineering &amp;lt;releng@rockylinux.org&amp;gt; - 1:25.0.4.1.1-1.1
- Build for Rocky Linux 10 using our own portable

Fri, 07 Aug 2026 GMT - Andrew Hughes &amp;lt;gnu.andrew@redhat.com&amp;gt; - 1:25.0.4.1.1-1.1
- Update to jdk-25.0.4.1+1 (GA)
- Update release notes to 25.0.4.1+1
- Report pkgos value during build
- Sync the copy of the portable specfile with the latest update
- ** This tarball is embargoed until 2026-08-18 @ 1pm PT. **
- Resolves: RHEL-235627

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>java-25-openjdk-jmods-1:25.0.4.1.1-1.1.el10_2.riscv64</title>
      <pubDate>Thu, 20 Aug 2026 09:47:59 PM GMT</pubDate>
      <guid isPermaLink="false">e9eeea790bc26537cc60c85896c6f6b1d3c8325703eeb644b7c014642c9418b7</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/j/java-25-openjdk-jmods-25.0.4.1.1-1.1.el10_2.riscv64.rpm</link>
      <description><p><strong>java-25-openjdk-jmods</strong> - JMods for OpenJDK 25&lt;br /&gt;</p>

<p>The JMods for OpenJDK 25.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 20 Aug 2026 GMT - Release Engineering &amp;lt;releng@rockylinux.org&amp;gt; - 1:25.0.4.1.1-1.1
- Add riscv64 to debug_arches

Thu, 20 Aug 2026 GMT - Release Engineering &amp;lt;releng@rockylinux.org&amp;gt; - 1:25.0.4.1.1-1.1
- Build for Rocky Linux 10 using our own portable

Fri, 07 Aug 2026 GMT - Andrew Hughes &amp;lt;gnu.andrew@redhat.com&amp;gt; - 1:25.0.4.1.1-1.1
- Update to jdk-25.0.4.1+1 (GA)
- Update release notes to 25.0.4.1+1
- Report pkgos value during build
- Sync the copy of the portable specfile with the latest update
- ** This tarball is embargoed until 2026-08-18 @ 1pm PT. **
- Resolves: RHEL-235627

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>java-25-openjdk-javadoc-zip-1:25.0.4.1.1-1.1.el10_2.riscv64</title>
      <pubDate>Thu, 20 Aug 2026 09:47:59 PM GMT</pubDate>
      <guid isPermaLink="false">75997e7bcf31db8ecb79b1365397f30ed1b6159f8aebd180cf1824d9f094d987</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/j/java-25-openjdk-javadoc-zip-25.0.4.1.1-1.1.el10_2.riscv64.rpm</link>
      <description><p><strong>java-25-openjdk-javadoc-zip</strong> - OpenJDK 25 API documentation compressed in a single archive&lt;br /&gt;</p>

<p>The OpenJDK 25 API documentation compressed in a single archive.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 20 Aug 2026 GMT - Release Engineering &amp;lt;releng@rockylinux.org&amp;gt; - 1:25.0.4.1.1-1.1
- Add riscv64 to debug_arches

Thu, 20 Aug 2026 GMT - Release Engineering &amp;lt;releng@rockylinux.org&amp;gt; - 1:25.0.4.1.1-1.1
- Build for Rocky Linux 10 using our own portable

Fri, 07 Aug 2026 GMT - Andrew Hughes &amp;lt;gnu.andrew@redhat.com&amp;gt; - 1:25.0.4.1.1-1.1
- Update to jdk-25.0.4.1+1 (GA)
- Update release notes to 25.0.4.1+1
- Report pkgos value during build
- Sync the copy of the portable specfile with the latest update
- ** This tarball is embargoed until 2026-08-18 @ 1pm PT. **
- Resolves: RHEL-235627

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>java-25-openjdk-javadoc-1:25.0.4.1.1-1.1.el10_2.riscv64</title>
      <pubDate>Thu, 20 Aug 2026 09:47:59 PM GMT</pubDate>
      <guid isPermaLink="false">515918f69f548cad5281c0d038f74d9b70b7f83ee31597035b5ad068097a90c0</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/j/java-25-openjdk-javadoc-25.0.4.1.1-1.1.el10_2.riscv64.rpm</link>
      <description><p><strong>java-25-openjdk-javadoc</strong> - OpenJDK 25 API documentation&lt;br /&gt;</p>

<p>The OpenJDK 25 API documentation.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 20 Aug 2026 GMT - Release Engineering &amp;lt;releng@rockylinux.org&amp;gt; - 1:25.0.4.1.1-1.1
- Add riscv64 to debug_arches

Thu, 20 Aug 2026 GMT - Release Engineering &amp;lt;releng@rockylinux.org&amp;gt; - 1:25.0.4.1.1-1.1
- Build for Rocky Linux 10 using our own portable

Fri, 07 Aug 2026 GMT - Andrew Hughes &amp;lt;gnu.andrew@redhat.com&amp;gt; - 1:25.0.4.1.1-1.1
- Update to jdk-25.0.4.1+1 (GA)
- Update release notes to 25.0.4.1+1
- Report pkgos value during build
- Sync the copy of the portable specfile with the latest update
- ** This tarball is embargoed until 2026-08-18 @ 1pm PT. **
- Resolves: RHEL-235627

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>java-25-openjdk-headless-1:25.0.4.1.1-1.1.el10_2.riscv64</title>
      <pubDate>Thu, 20 Aug 2026 09:47:59 PM GMT</pubDate>
      <guid isPermaLink="false">f231e685b06c019518cc85c8add35b2f682318f2fea0b15925d2e406cc889146</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/j/java-25-openjdk-headless-25.0.4.1.1-1.1.el10_2.riscv64.rpm</link>
      <description><p><strong>java-25-openjdk-headless</strong> - OpenJDK 25 Headless Runtime Environment&lt;br /&gt;</p>

<p>The OpenJDK 25 runtime environment without audio and video support.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 20 Aug 2026 GMT - Release Engineering &amp;lt;releng@rockylinux.org&amp;gt; - 1:25.0.4.1.1-1.1
- Add riscv64 to debug_arches

Thu, 20 Aug 2026 GMT - Release Engineering &amp;lt;releng@rockylinux.org&amp;gt; - 1:25.0.4.1.1-1.1
- Build for Rocky Linux 10 using our own portable

Fri, 07 Aug 2026 GMT - Andrew Hughes &amp;lt;gnu.andrew@redhat.com&amp;gt; - 1:25.0.4.1.1-1.1
- Update to jdk-25.0.4.1+1 (GA)
- Update release notes to 25.0.4.1+1
- Report pkgos value during build
- Sync the copy of the portable specfile with the latest update
- ** This tarball is embargoed until 2026-08-18 @ 1pm PT. **
- Resolves: RHEL-235627

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>java-25-openjdk-devel-1:25.0.4.1.1-1.1.el10_2.riscv64</title>
      <pubDate>Thu, 20 Aug 2026 09:47:59 PM GMT</pubDate>
      <guid isPermaLink="false">bb71645612cf77b507063ce3f0e83a2f4d0563ab516e7bd476b5f5f7efc96814</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/j/java-25-openjdk-devel-25.0.4.1.1-1.1.el10_2.riscv64.rpm</link>
      <description><p><strong>java-25-openjdk-devel</strong> - OpenJDK 25 Development Environment&lt;br /&gt;</p>

<p>The OpenJDK 25 development tools.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 20 Aug 2026 GMT - Release Engineering &amp;lt;releng@rockylinux.org&amp;gt; - 1:25.0.4.1.1-1.1
- Add riscv64 to debug_arches

Thu, 20 Aug 2026 GMT - Release Engineering &amp;lt;releng@rockylinux.org&amp;gt; - 1:25.0.4.1.1-1.1
- Build for Rocky Linux 10 using our own portable

Fri, 07 Aug 2026 GMT - Andrew Hughes &amp;lt;gnu.andrew@redhat.com&amp;gt; - 1:25.0.4.1.1-1.1
- Update to jdk-25.0.4.1+1 (GA)
- Update release notes to 25.0.4.1+1
- Report pkgos value during build
- Sync the copy of the portable specfile with the latest update
- ** This tarball is embargoed until 2026-08-18 @ 1pm PT. **
- Resolves: RHEL-235627

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>java-25-openjdk-demo-1:25.0.4.1.1-1.1.el10_2.riscv64</title>
      <pubDate>Thu, 20 Aug 2026 09:47:59 PM GMT</pubDate>
      <guid isPermaLink="false">9f4b27fb193fc74f7330d215a5e86ab61aeef0f1f41a2d1dd98fa8a5c3b0ccde</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/j/java-25-openjdk-demo-25.0.4.1.1-1.1.el10_2.riscv64.rpm</link>
      <description><p><strong>java-25-openjdk-demo</strong> - OpenJDK 25 Demos&lt;br /&gt;</p>

<p>The OpenJDK 25 demos.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 20 Aug 2026 GMT - Release Engineering &amp;lt;releng@rockylinux.org&amp;gt; - 1:25.0.4.1.1-1.1
- Add riscv64 to debug_arches

Thu, 20 Aug 2026 GMT - Release Engineering &amp;lt;releng@rockylinux.org&amp;gt; - 1:25.0.4.1.1-1.1
- Build for Rocky Linux 10 using our own portable

Fri, 07 Aug 2026 GMT - Andrew Hughes &amp;lt;gnu.andrew@redhat.com&amp;gt; - 1:25.0.4.1.1-1.1
- Update to jdk-25.0.4.1+1 (GA)
- Update release notes to 25.0.4.1+1
- Report pkgos value during build
- Sync the copy of the portable specfile with the latest update
- ** This tarball is embargoed until 2026-08-18 @ 1pm PT. **
- Resolves: RHEL-235627

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>java-25-openjdk-crypto-adapter-1:25.0.4.1.1-1.1.el10_2.riscv64</title>
      <pubDate>Thu, 20 Aug 2026 09:47:59 PM GMT</pubDate>
      <guid isPermaLink="false">3a99cf430ad980c980cffc72b645f41b4d83cee729f199cae57c1ad35c48f840</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/j/java-25-openjdk-crypto-adapter-25.0.4.1.1-1.1.el10_2.riscv64.rpm</link>
      <description><p><strong>java-25-openjdk-crypto-adapter</strong> - OpenJDK 25 Cryptography Adapter Library&lt;br /&gt;</p>

<p>The OpenJDK 25 cryptography adapter library.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 20 Aug 2026 GMT - Release Engineering &amp;lt;releng@rockylinux.org&amp;gt; - 1:25.0.4.1.1-1.1
- Add riscv64 to debug_arches

Thu, 20 Aug 2026 GMT - Release Engineering &amp;lt;releng@rockylinux.org&amp;gt; - 1:25.0.4.1.1-1.1
- Build for Rocky Linux 10 using our own portable

Fri, 07 Aug 2026 GMT - Andrew Hughes &amp;lt;gnu.andrew@redhat.com&amp;gt; - 1:25.0.4.1.1-1.1
- Update to jdk-25.0.4.1+1 (GA)
- Update release notes to 25.0.4.1+1
- Report pkgos value during build
- Sync the copy of the portable specfile with the latest update
- ** This tarball is embargoed until 2026-08-18 @ 1pm PT. **
- Resolves: RHEL-235627

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>java-25-openjdk-1:25.0.4.1.1-1.1.el10_2.riscv64</title>
      <pubDate>Thu, 20 Aug 2026 09:47:59 PM GMT</pubDate>
      <guid isPermaLink="false">e171253c04c8216371194f4a08664706cb741aeb7e95188ae1e5db9354e908d2</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/j/java-25-openjdk-25.0.4.1.1-1.1.el10_2.riscv64.rpm</link>
      <description><p><strong>java-25-openjdk</strong> - OpenJDK 25 Runtime Environment&lt;br /&gt;</p>

<p>The OpenJDK 25 runtime environment.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 20 Aug 2026 GMT - Release Engineering &amp;lt;releng@rockylinux.org&amp;gt; - 1:25.0.4.1.1-1.1
- Add riscv64 to debug_arches

Thu, 20 Aug 2026 GMT - Release Engineering &amp;lt;releng@rockylinux.org&amp;gt; - 1:25.0.4.1.1-1.1
- Build for Rocky Linux 10 using our own portable

Fri, 07 Aug 2026 GMT - Andrew Hughes &amp;lt;gnu.andrew@redhat.com&amp;gt; - 1:25.0.4.1.1-1.1
- Update to jdk-25.0.4.1+1 (GA)
- Update release notes to 25.0.4.1+1
- Report pkgos value during build
- Sync the copy of the portable specfile with the latest update
- ** This tarball is embargoed until 2026-08-18 @ 1pm PT. **
- Resolves: RHEL-235627

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>mrtg-2.17.10-12.el10_2.1.riscv64</title>
      <pubDate>Thu, 20 Aug 2026 07:36:27 PM GMT</pubDate>
      <guid isPermaLink="false">f8ace93127633e656cfb19f213607f9dd3b8fe322817806e9902be40782e3294</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/m/mrtg-2.17.10-12.el10_2.1.riscv64.rpm</link>
      <description><p><strong>mrtg</strong> - Multi Router Traffic Grapher&lt;br /&gt;</p>

<p>The Multi Router Traffic Grapher (MRTG) is a tool to monitor the traffic&lt;br /&gt;
load on network-links. MRTG generates HTML pages containing PNG&lt;br /&gt;
images which provide a LIVE visual representation of this traffic.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Tue, 11 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 2.17.10-12.1
- Fix symlink-following chown of pid file in daemon mode (CVE-2026-72694)
  Resolves: RHEL-236045

Mon, 26 Jan 2026 GMT - Vitezslav Crhonek &amp;lt;vcrhonek@redhat.com&amp;gt; - 2.17.10-12
- Add support for Image Mode
  Resolves: RHEL-142231

Wed, 15 Jan 2025 GMT - Vitezslav Crhonek &amp;lt;vcrhonek@redhat.com&amp;gt; - 2.17.10-11
- Remove redundand restorecon call, redirect safe to ignore output
  to /dev/null, mark module directory to avoid rpm verification
  Resolves: RHEL-67894

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>mrtg-selinux-2.17.10-12.el10_2.1.noarch</title>
      <pubDate>Thu, 20 Aug 2026 07:30:58 PM GMT</pubDate>
      <guid isPermaLink="false">4a250ed1928deb97c7e9478eabb338c5ec835c56f1163f792aa0825f0aa21863</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/m/mrtg-selinux-2.17.10-12.el10_2.1.noarch.rpm</link>
      <description><p><strong>mrtg-selinux</strong> - mrtg SELinux policy&lt;br /&gt;</p>

<p>Custom SELinux policy module</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Tue, 11 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 2.17.10-12.1
- Fix symlink-following chown of pid file in daemon mode (CVE-2026-72694)
  Resolves: RHEL-236045

Mon, 26 Jan 2026 GMT - Vitezslav Crhonek &amp;lt;vcrhonek@redhat.com&amp;gt; - 2.17.10-12
- Add support for Image Mode
  Resolves: RHEL-142231

Wed, 15 Jan 2025 GMT - Vitezslav Crhonek &amp;lt;vcrhonek@redhat.com&amp;gt; - 2.17.10-11
- Remove redundand restorecon call, redirect safe to ignore output
  to /dev/null, mark module directory to avoid rpm verification
  Resolves: RHEL-67894

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>nss-util-devel-3.124.0-5.el10_2.riscv64</title>
      <pubDate>Thu, 20 Aug 2026 09:39:02 AM GMT</pubDate>
      <guid isPermaLink="false">e1c7bd458223d3e03f4bcd0f20942446d78026e3fc8d14a6f495ac7a4b1a7b79</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/n/nss-util-devel-3.124.0-5.el10_2.riscv64.rpm</link>
      <description><p><strong>nss-util-devel</strong> - Development libraries for Network Security Services Utilities&lt;br /&gt;</p>

<p>Header and library files for doing development with Network Security Services.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Mon, 22 Jun 2026 GMT - Bob Relyea &amp;lt;rrelyea@redhat.com&amp;gt; - 3.124.0-5
- full fix to pss issues

Tue, 16 Jun 2026 GMT - Bob Relyea &amp;lt;rrelyea@redhat.com&amp;gt; - 3.124.0-4
- fix pkcs12 defaults
- fix pss issues
- remove crmf

Tue, 09 Jun 2026 GMT - Bob Relyea &amp;lt;rrelyea@redhat.com&amp;gt; - 3.124.0-2
- rebase fixes
- restore mlkem aliases
- add mlkem key lengths to the mechanism info
- fix crash if you try to encapsulate with an unimported
  public key
- restore distrusted certs to certdata.txt even though we
  never reference them to make tests happy.

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>nss-util-3.124.0-5.el10_2.riscv64</title>
      <pubDate>Thu, 20 Aug 2026 09:39:02 AM GMT</pubDate>
      <guid isPermaLink="false">20eb94310df0df4f8721832ea764410d63ebd1966e0412f8d6fa0ae5773923b8</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/n/nss-util-3.124.0-5.el10_2.riscv64.rpm</link>
      <description><p><strong>nss-util</strong> - Network Security Services Utilities Library&lt;br /&gt;</p>

<p>Utilities for Network Security Services and the Softoken module</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Mon, 22 Jun 2026 GMT - Bob Relyea &amp;lt;rrelyea@redhat.com&amp;gt; - 3.124.0-5
- full fix to pss issues

Tue, 16 Jun 2026 GMT - Bob Relyea &amp;lt;rrelyea@redhat.com&amp;gt; - 3.124.0-4
- fix pkcs12 defaults
- fix pss issues
- remove crmf

Tue, 09 Jun 2026 GMT - Bob Relyea &amp;lt;rrelyea@redhat.com&amp;gt; - 3.124.0-2
- rebase fixes
- restore mlkem aliases
- add mlkem key lengths to the mechanism info
- fix crash if you try to encapsulate with an unimported
  public key
- restore distrusted certs to certdata.txt even though we
  never reference them to make tests happy.

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>nss-tools-3.124.0-5.el10_2.riscv64</title>
      <pubDate>Thu, 20 Aug 2026 09:39:02 AM GMT</pubDate>
      <guid isPermaLink="false">8c3c8d9cf1a15f93518aa9ce924eb2ab0995c604d5292ce4caf08b9bb20a9421</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/n/nss-tools-3.124.0-5.el10_2.riscv64.rpm</link>
      <description><p><strong>nss-tools</strong> - Tools for the Network Security Services&lt;br /&gt;</p>

<p>Network Security Services (NSS) is a set of libraries designed to&lt;br /&gt;
support cross-platform development of security-enabled client and&lt;br /&gt;
server applications. Applications built with NSS can support SSL v2&lt;br /&gt;
and v3, TLS, PKCS #5, PKCS #7, PKCS #11, PKCS #12, S/MIME, X.509&lt;br /&gt;
v3 certificates, and other security standards.&lt;br /&gt;
&lt;br /&gt;
Install the nss-tools package if you need command-line tools to&lt;br /&gt;
manipulate the NSS certificate and key database.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Mon, 22 Jun 2026 GMT - Bob Relyea &amp;lt;rrelyea@redhat.com&amp;gt; - 3.124.0-5
- full fix to pss issues

Tue, 16 Jun 2026 GMT - Bob Relyea &amp;lt;rrelyea@redhat.com&amp;gt; - 3.124.0-4
- fix pkcs12 defaults
- fix pss issues
- remove crmf

Tue, 09 Jun 2026 GMT - Bob Relyea &amp;lt;rrelyea@redhat.com&amp;gt; - 3.124.0-2
- rebase fixes
- restore mlkem aliases
- add mlkem key lengths to the mechanism info
- fix crash if you try to encapsulate with an unimported
  public key
- restore distrusted certs to certdata.txt even though we
  never reference them to make tests happy.

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>nss-sysinit-3.124.0-5.el10_2.riscv64</title>
      <pubDate>Thu, 20 Aug 2026 09:39:02 AM GMT</pubDate>
      <guid isPermaLink="false">1905f9d46fe9c90afe476b523319142b5c472c5b1ab8adf3f48925a32871d456</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/n/nss-sysinit-3.124.0-5.el10_2.riscv64.rpm</link>
      <description><p><strong>nss-sysinit</strong> - System NSS Initialization&lt;br /&gt;</p>

<p>Default Operating System module that manages applications loading&lt;br /&gt;
NSS globally on the system. This module loads the system defined&lt;br /&gt;
PKCS #11 modules for NSS and chains with other NSS modules to load&lt;br /&gt;
any system or user configured modules.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Mon, 22 Jun 2026 GMT - Bob Relyea &amp;lt;rrelyea@redhat.com&amp;gt; - 3.124.0-5
- full fix to pss issues

Tue, 16 Jun 2026 GMT - Bob Relyea &amp;lt;rrelyea@redhat.com&amp;gt; - 3.124.0-4
- fix pkcs12 defaults
- fix pss issues
- remove crmf

Tue, 09 Jun 2026 GMT - Bob Relyea &amp;lt;rrelyea@redhat.com&amp;gt; - 3.124.0-2
- rebase fixes
- restore mlkem aliases
- add mlkem key lengths to the mechanism info
- fix crash if you try to encapsulate with an unimported
  public key
- restore distrusted certs to certdata.txt even though we
  never reference them to make tests happy.

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>nss-softokn-freebl-devel-3.124.0-5.el10_2.riscv64</title>
      <pubDate>Thu, 20 Aug 2026 09:39:02 AM GMT</pubDate>
      <guid isPermaLink="false">2886b0e14e510a541d14c486eb53dc95efe6e3a03218fe994d1464435cb1f84d</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/n/nss-softokn-freebl-devel-3.124.0-5.el10_2.riscv64.rpm</link>
      <description><p><strong>nss-softokn-freebl-devel</strong> - Header and Library files for doing development with the Freebl library for NSS&lt;br /&gt;</p>

<p>NSS Softoken Cryptographic Module Freebl Library Development Tools&lt;br /&gt;
This package supports special needs of some PKCS #11 module developers and&lt;br /&gt;
is otherwise considered private to NSS. As such, the programming interfaces&lt;br /&gt;
may change and the usual NSS binary compatibility commitments do not apply.&lt;br /&gt;
Developers should rely only on the officially supported NSS public API.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Mon, 22 Jun 2026 GMT - Bob Relyea &amp;lt;rrelyea@redhat.com&amp;gt; - 3.124.0-5
- full fix to pss issues

Tue, 16 Jun 2026 GMT - Bob Relyea &amp;lt;rrelyea@redhat.com&amp;gt; - 3.124.0-4
- fix pkcs12 defaults
- fix pss issues
- remove crmf

Tue, 09 Jun 2026 GMT - Bob Relyea &amp;lt;rrelyea@redhat.com&amp;gt; - 3.124.0-2
- rebase fixes
- restore mlkem aliases
- add mlkem key lengths to the mechanism info
- fix crash if you try to encapsulate with an unimported
  public key
- restore distrusted certs to certdata.txt even though we
  never reference them to make tests happy.

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>nss-softokn-freebl-3.124.0-5.el10_2.riscv64</title>
      <pubDate>Thu, 20 Aug 2026 09:39:02 AM GMT</pubDate>
      <guid isPermaLink="false">2f413a46d8e86d84608559e48e5fef36568a9951ac48738ea0e3d31395d807af</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/n/nss-softokn-freebl-3.124.0-5.el10_2.riscv64.rpm</link>
      <description><p><strong>nss-softokn-freebl</strong> - Freebl library for the Network Security Services&lt;br /&gt;</p>

<p>NSS Softoken Cryptographic Module Freebl Library&lt;br /&gt;
&lt;br /&gt;
Install the nss-softokn-freebl package if you need the freebl library.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Mon, 22 Jun 2026 GMT - Bob Relyea &amp;lt;rrelyea@redhat.com&amp;gt; - 3.124.0-5
- full fix to pss issues

Tue, 16 Jun 2026 GMT - Bob Relyea &amp;lt;rrelyea@redhat.com&amp;gt; - 3.124.0-4
- fix pkcs12 defaults
- fix pss issues
- remove crmf

Tue, 09 Jun 2026 GMT - Bob Relyea &amp;lt;rrelyea@redhat.com&amp;gt; - 3.124.0-2
- rebase fixes
- restore mlkem aliases
- add mlkem key lengths to the mechanism info
- fix crash if you try to encapsulate with an unimported
  public key
- restore distrusted certs to certdata.txt even though we
  never reference them to make tests happy.

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>nss-softokn-devel-3.124.0-5.el10_2.riscv64</title>
      <pubDate>Thu, 20 Aug 2026 09:39:02 AM GMT</pubDate>
      <guid isPermaLink="false">f9b04700b988c55dc51e2a3a02a44e984c9141c55ed0618408565680f97ae7fc</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/n/nss-softokn-devel-3.124.0-5.el10_2.riscv64.rpm</link>
      <description><p><strong>nss-softokn-devel</strong> - Development libraries for Network Security Services&lt;br /&gt;</p>

<p>Header and library files for doing development with Network Security Services.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Mon, 22 Jun 2026 GMT - Bob Relyea &amp;lt;rrelyea@redhat.com&amp;gt; - 3.124.0-5
- full fix to pss issues

Tue, 16 Jun 2026 GMT - Bob Relyea &amp;lt;rrelyea@redhat.com&amp;gt; - 3.124.0-4
- fix pkcs12 defaults
- fix pss issues
- remove crmf

Tue, 09 Jun 2026 GMT - Bob Relyea &amp;lt;rrelyea@redhat.com&amp;gt; - 3.124.0-2
- rebase fixes
- restore mlkem aliases
- add mlkem key lengths to the mechanism info
- fix crash if you try to encapsulate with an unimported
  public key
- restore distrusted certs to certdata.txt even though we
  never reference them to make tests happy.

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>nss-softokn-3.124.0-5.el10_2.riscv64</title>
      <pubDate>Thu, 20 Aug 2026 09:39:02 AM GMT</pubDate>
      <guid isPermaLink="false">fff218fc36b79890633529ac99793504ab948ca2551db2b774bb17803cbad443</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/n/nss-softokn-3.124.0-5.el10_2.riscv64.rpm</link>
      <description><p><strong>nss-softokn</strong> - Network Security Services Softoken Module&lt;br /&gt;</p>

<p>Network Security Services Softoken Cryptographic Module</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Mon, 22 Jun 2026 GMT - Bob Relyea &amp;lt;rrelyea@redhat.com&amp;gt; - 3.124.0-5
- full fix to pss issues

Tue, 16 Jun 2026 GMT - Bob Relyea &amp;lt;rrelyea@redhat.com&amp;gt; - 3.124.0-4
- fix pkcs12 defaults
- fix pss issues
- remove crmf

Tue, 09 Jun 2026 GMT - Bob Relyea &amp;lt;rrelyea@redhat.com&amp;gt; - 3.124.0-2
- rebase fixes
- restore mlkem aliases
- add mlkem key lengths to the mechanism info
- fix crash if you try to encapsulate with an unimported
  public key
- restore distrusted certs to certdata.txt even though we
  never reference them to make tests happy.

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>nss-devel-3.124.0-5.el10_2.riscv64</title>
      <pubDate>Thu, 20 Aug 2026 09:39:02 AM GMT</pubDate>
      <guid isPermaLink="false">292ef48a7e8b380cbebf6e02b59168f2e46c6aa121e8753e1799b83b5c06283c</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/n/nss-devel-3.124.0-5.el10_2.riscv64.rpm</link>
      <description><p><strong>nss-devel</strong> - Development libraries for Network Security Services&lt;br /&gt;</p>

<p>Header and Library files for doing development with Network Security Services.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Mon, 22 Jun 2026 GMT - Bob Relyea &amp;lt;rrelyea@redhat.com&amp;gt; - 3.124.0-5
- full fix to pss issues

Tue, 16 Jun 2026 GMT - Bob Relyea &amp;lt;rrelyea@redhat.com&amp;gt; - 3.124.0-4
- fix pkcs12 defaults
- fix pss issues
- remove crmf

Tue, 09 Jun 2026 GMT - Bob Relyea &amp;lt;rrelyea@redhat.com&amp;gt; - 3.124.0-2
- rebase fixes
- restore mlkem aliases
- add mlkem key lengths to the mechanism info
- fix crash if you try to encapsulate with an unimported
  public key
- restore distrusted certs to certdata.txt even though we
  never reference them to make tests happy.

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>nss-3.124.0-5.el10_2.riscv64</title>
      <pubDate>Thu, 20 Aug 2026 09:39:02 AM GMT</pubDate>
      <guid isPermaLink="false">12e85adcaf524f268336bb5c89cb21ee60a12108cf798a8efc1f3c21c6b4400c</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/n/nss-3.124.0-5.el10_2.riscv64.rpm</link>
      <description><p><strong>nss</strong> - Network Security Services&lt;br /&gt;</p>

<p>Network Security Services (NSS) is a set of libraries designed to&lt;br /&gt;
support cross-platform development of security-enabled client and&lt;br /&gt;
server applications. Applications built with NSS can support SSL v2&lt;br /&gt;
and v3, TLS, PKCS #5, PKCS #7, PKCS #11, PKCS #12, S/MIME, X.509&lt;br /&gt;
v3 certificates, and other security standards.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Mon, 22 Jun 2026 GMT - Bob Relyea &amp;lt;rrelyea@redhat.com&amp;gt; - 3.124.0-5
- full fix to pss issues

Tue, 16 Jun 2026 GMT - Bob Relyea &amp;lt;rrelyea@redhat.com&amp;gt; - 3.124.0-4
- fix pkcs12 defaults
- fix pss issues
- remove crmf

Tue, 09 Jun 2026 GMT - Bob Relyea &amp;lt;rrelyea@redhat.com&amp;gt; - 3.124.0-2
- rebase fixes
- restore mlkem aliases
- add mlkem key lengths to the mechanism info
- fix crash if you try to encapsulate with an unimported
  public key
- restore distrusted certs to certdata.txt even though we
  never reference them to make tests happy.

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>nspr-devel-4.39.0-5.el10_2.riscv64</title>
      <pubDate>Thu, 20 Aug 2026 09:39:02 AM GMT</pubDate>
      <guid isPermaLink="false">1db62812ec7e6315d5d4e83de167a0869b034de67ca16535eef748410a8a410c</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/n/nspr-devel-4.39.0-5.el10_2.riscv64.rpm</link>
      <description><p><strong>nspr-devel</strong> - Development libraries for the Netscape Portable Runtime&lt;br /&gt;</p>

<p>Header files for doing development with the Netscape Portable Runtime.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Mon, 22 Jun 2026 GMT - Bob Relyea &amp;lt;rrelyea@redhat.com&amp;gt; - 3.124.0-5
- full fix to pss issues

Tue, 16 Jun 2026 GMT - Bob Relyea &amp;lt;rrelyea@redhat.com&amp;gt; - 3.124.0-4
- fix pkcs12 defaults
- fix pss issues
- remove crmf

Tue, 09 Jun 2026 GMT - Bob Relyea &amp;lt;rrelyea@redhat.com&amp;gt; - 3.124.0-2
- rebase fixes
- restore mlkem aliases
- add mlkem key lengths to the mechanism info
- fix crash if you try to encapsulate with an unimported
  public key
- restore distrusted certs to certdata.txt even though we
  never reference them to make tests happy.

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>nspr-4.39.0-5.el10_2.riscv64</title>
      <pubDate>Thu, 20 Aug 2026 09:39:02 AM GMT</pubDate>
      <guid isPermaLink="false">47092e6e9d30bd5eebc351597d7b3273f515ce0a1e7e0d8d56fa01beaf2a438d</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/n/nspr-4.39.0-5.el10_2.riscv64.rpm</link>
      <description><p><strong>nspr</strong> - Netscape Portable Runtime&lt;br /&gt;</p>

<p>NSPR provides platform independence for non-GUI operating system&lt;br /&gt;
facilities. These facilities include threads, thread synchronization,&lt;br /&gt;
normal file and network I/O, interval timing and calendar time, basic&lt;br /&gt;
memory management (malloc and free) and shared library linking.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Mon, 22 Jun 2026 GMT - Bob Relyea &amp;lt;rrelyea@redhat.com&amp;gt; - 3.124.0-5
- full fix to pss issues

Tue, 16 Jun 2026 GMT - Bob Relyea &amp;lt;rrelyea@redhat.com&amp;gt; - 3.124.0-4
- fix pkcs12 defaults
- fix pss issues
- remove crmf

Tue, 09 Jun 2026 GMT - Bob Relyea &amp;lt;rrelyea@redhat.com&amp;gt; - 3.124.0-2
- rebase fixes
- restore mlkem aliases
- add mlkem key lengths to the mechanism info
- fix crash if you try to encapsulate with an unimported
  public key
- restore distrusted certs to certdata.txt even though we
  never reference them to make tests happy.

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>yggdrasil-0.4.9.2-1.el10_2.2.riscv64</title>
      <pubDate>Thu, 20 Aug 2026 02:17:32 AM GMT</pubDate>
      <guid isPermaLink="false">e4a96ba2f87dd7afad20c1e029ee24775ff036c327381b1ea4f83250a6987328</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/y/yggdrasil-0.4.9.2-1.el10_2.2.riscv64.rpm</link>
      <description><p><strong>yggdrasil</strong> - Remote data transmission and processing client&lt;br /&gt;</p>

<p>yggdrasil is a system daemon that subscribes to topics on an MQTT broker and&lt;br /&gt;
routes any data received on the topics to an appropriate child "worker" process,&lt;br /&gt;
exchanging data with its worker processes through a D-Bus message broker.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 12 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 0.4.9.2-2
- Rebuild yggdrasil against updated golang

Mon, 13 Jul 2026 GMT - Jason Jerome &amp;lt;jajerome@redhat.com&amp;gt; - 0.4.9.2-1
- Update yggdrasil to 0.4.9.2

Wed, 01 Jul 2026 GMT - Jason Jerome &amp;lt;jajerome@redhat.com&amp;gt; - 0.4.9.1-1
- Update yggdrasil to 0.4.9.1

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>ansible-test-1:2.16.16-2.el10_2.1.noarch</title>
      <pubDate>Thu, 20 Aug 2026 02:10:06 AM GMT</pubDate>
      <guid isPermaLink="false">b0e71243f4b1efd9acd76fa333732a4b1a54599d7b25696e42fc7f97f44dae80</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/a/ansible-test-2.16.16-2.el10_2.1.noarch.rpm</link>
      <description><p><strong>ansible-test</strong> - Tool for testing ansible plugin and module code&lt;br /&gt;</p>

<p>Ansible is a radically simple model-driven configuration management,&lt;br /&gt;
multi-node deployment, and remote task execution system. Ansible works&lt;br /&gt;
over SSH and does not require any software or daemons to be installed&lt;br /&gt;
on remote nodes. Extension modules can be written in any language and&lt;br /&gt;
are transferred to managed machines automatically.&lt;br /&gt;
&lt;br /&gt;
This package installs the ansible-test command for testing modules and plugins&lt;br /&gt;
developed for ansible.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Sat, 11 Jul 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 1:2.16.16-2.1
- Fix CVE-2026-11332 (ansible-galaxy role installs could allow
  arbitrary git configuration injection via malformed role
  requirements) (RHEL-194128)

Tue, 10 Feb 2026 GMT - Dimitri Savineau &amp;lt;dsavinea@redhat.com&amp;gt; - 1:2.16.16-2
- Fix selinux AVC denial when telemetry is enabled (RHEL-148292)

Tue, 03 Feb 2026 GMT - Dimitri Savineau &amp;lt;dsavinea@redhat.com&amp;gt; - 1:2.16.16-1
- ansible-core 2.16.16 release (RHEL-145990)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>ansible-core-1:2.16.16-2.el10_2.1.noarch</title>
      <pubDate>Thu, 20 Aug 2026 02:10:06 AM GMT</pubDate>
      <guid isPermaLink="false">3abd7abf089f8abdafb3a185d24117f120ad3b02cdf5797154e3679262b5d9b0</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/a/ansible-core-2.16.16-2.el10_2.1.noarch.rpm</link>
      <description><p><strong>ansible-core</strong> - A radically simple IT automation system&lt;br /&gt;</p>

<p>Ansible is a radically simple model-driven configuration management,&lt;br /&gt;
multi-node deployment, and remote task execution system. Ansible works&lt;br /&gt;
over SSH and does not require any software or daemons to be installed&lt;br /&gt;
on remote nodes. Extension modules can be written in any language and&lt;br /&gt;
are transferred to managed machines automatically.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Sat, 11 Jul 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 1:2.16.16-2.1
- Fix CVE-2026-11332 (ansible-galaxy role installs could allow
  arbitrary git configuration injection via malformed role
  requirements) (RHEL-194128)

Tue, 10 Feb 2026 GMT - Dimitri Savineau &amp;lt;dsavinea@redhat.com&amp;gt; - 1:2.16.16-2
- Fix selinux AVC denial when telemetry is enabled (RHEL-148292)

Tue, 03 Feb 2026 GMT - Dimitri Savineau &amp;lt;dsavinea@redhat.com&amp;gt; - 1:2.16.16-1
- ansible-core 2.16.16 release (RHEL-145990)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>libcupsfilters-1:2.0.0-13.el10_2.riscv64</title>
      <pubDate>Wed, 19 Aug 2026 03:10:05 PM GMT</pubDate>
      <guid isPermaLink="false">1baa6898bb254cff54c313bf0778132e64b24a9069c2441805559b1a5c7b5182</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/l/libcupsfilters-2.0.0-13.el10_2.riscv64.rpm</link>
      <description><p><strong>libcupsfilters</strong> - Library for developing printing filters&lt;br /&gt;</p>

<p>Libcupsfilters provides a library, which implements common functions used&lt;br /&gt;
in cups-browsed daemon and printing filters, and additional files&lt;br /&gt;
as banner templates and character sets. The filters are used in CUPS daemon&lt;br /&gt;
and in printer applications.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 29 Jul 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 1:2.0.0-13
- RHEL-214027 CVE-2026-64611 libcupsfilters: Fix infinite loop and
  empty device_ids in ieee1284

Wed, 29 Jul 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 1:2.0.0-12
- RHEL-212655 CVE-2026-64612 libcupsfilters: Handle libpng errors
  via longjmp()/setjmp() to prevent process abort on malformed PNG

Mon, 04 Aug 2025 GMT - Zdenek Dohnal &amp;lt;zdohnal@redhat.com&amp;gt; - 1:2.0.0-11
- RHEL-68430 texttopdf omits Chinese characters when creating PDF documents

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>php8.4-xml-8.4.24-1.el10_2.riscv64</title>
      <pubDate>Wed, 19 Aug 2026 03:09:54 PM GMT</pubDate>
      <guid isPermaLink="false">5a4196dd7485696ee04a281ff4f4004f8195d11494eb7685f89f136949dab416</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/php8.4-xml-8.4.24-1.el10_2.riscv64.rpm</link>
      <description><p><strong>php8.4-xml</strong> - A module for PHP applications which use XML&lt;br /&gt;</p>

<p>The php8.4-xml package contains dynamic shared objects which add support&lt;br /&gt;
to PHP for manipulating XML documents using the DOM tree,&lt;br /&gt;
and performing XSL transformations on XML documents.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 05 Aug 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.24-2
- rebase to 8.4.24

Wed, 08 Jul 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.23-1
- rebase to 8.4.23

Tue, 26 May 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.21-1
- rebase to 8.4.21

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>php8.4-soap-8.4.24-1.el10_2.riscv64</title>
      <pubDate>Wed, 19 Aug 2026 03:09:54 PM GMT</pubDate>
      <guid isPermaLink="false">caba7260a07dff8ecc8da4c786d1755857c8a2400cdba84edaf45fc6192198a3</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/php8.4-soap-8.4.24-1.el10_2.riscv64.rpm</link>
      <description><p><strong>php8.4-soap</strong> - A module for PHP applications that use the SOAP protocol&lt;br /&gt;</p>

<p>The php8.4-soap package contains a dynamic shared object that will add&lt;br /&gt;
support to PHP for using the SOAP web services protocol.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 05 Aug 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.24-2
- rebase to 8.4.24

Wed, 08 Jul 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.23-1
- rebase to 8.4.23

Tue, 26 May 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.21-1
- rebase to 8.4.21

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>php8.4-snmp-8.4.24-1.el10_2.riscv64</title>
      <pubDate>Wed, 19 Aug 2026 03:09:54 PM GMT</pubDate>
      <guid isPermaLink="false">45ae2ba9c8a614bd0bb43c63c6a67658236b27585568f95bfc795ffe1562de09</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/php8.4-snmp-8.4.24-1.el10_2.riscv64.rpm</link>
      <description><p><strong>php8.4-snmp</strong> - A module for PHP applications that query SNMP-managed devices&lt;br /&gt;</p>

<p>The php8.4-snmp package contains a dynamic shared object that will add&lt;br /&gt;
support for querying SNMP devices to PHP.  PHP is an HTML-embeddable&lt;br /&gt;
scripting language. If you need SNMP support for PHP applications, you&lt;br /&gt;
will need to install this package and the php package.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 05 Aug 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.24-2
- rebase to 8.4.24

Wed, 08 Jul 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.23-1
- rebase to 8.4.23

Tue, 26 May 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.21-1
- rebase to 8.4.21

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>php8.4-process-8.4.24-1.el10_2.riscv64</title>
      <pubDate>Wed, 19 Aug 2026 03:09:54 PM GMT</pubDate>
      <guid isPermaLink="false">93ba58d28974e2c0846f4042376ccd7569d4bb8f0ee0269bd5fa3ca0fdb1950e</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/php8.4-process-8.4.24-1.el10_2.riscv64.rpm</link>
      <description><p><strong>php8.4-process</strong> - Modules for PHP script using system process interfaces&lt;br /&gt;</p>

<p>The php8.4-process package contains dynamic shared objects which add&lt;br /&gt;
support to PHP using system interfaces for inter-process&lt;br /&gt;
communication.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 05 Aug 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.24-2
- rebase to 8.4.24

Wed, 08 Jul 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.23-1
- rebase to 8.4.23

Tue, 26 May 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.21-1
- rebase to 8.4.21

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>php8.4-pgsql-8.4.24-1.el10_2.riscv64</title>
      <pubDate>Wed, 19 Aug 2026 03:09:54 PM GMT</pubDate>
      <guid isPermaLink="false">eba50fe955858b8f1d37203eae4b3f72bd9d97ef180cdf5fb6f9b626e623a032</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/php8.4-pgsql-8.4.24-1.el10_2.riscv64.rpm</link>
      <description><p><strong>php8.4-pgsql</strong> - A PostgreSQL database module for PHP&lt;br /&gt;</p>

<p>The php8.4-pgsql package add PostgreSQL database support to PHP.&lt;br /&gt;
PostgreSQL is an object-relational database management&lt;br /&gt;
system that supports almost all SQL constructs. PHP is an&lt;br /&gt;
HTML-embedded scripting language. If you need back-end support for&lt;br /&gt;
PostgreSQL, you should install this package in addition to the main&lt;br /&gt;
php package.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 05 Aug 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.24-2
- rebase to 8.4.24

Wed, 08 Jul 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.23-1
- rebase to 8.4.23

Tue, 26 May 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.21-1
- rebase to 8.4.21

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>php8.4-pdo-8.4.24-1.el10_2.riscv64</title>
      <pubDate>Wed, 19 Aug 2026 03:09:54 PM GMT</pubDate>
      <guid isPermaLink="false">ad8d7f41b1035349d9ca401232ff2857935184e0ba1a82dd3a4c21c890873d0b</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/php8.4-pdo-8.4.24-1.el10_2.riscv64.rpm</link>
      <description><p><strong>php8.4-pdo</strong> - A database access abstraction module for PHP applications&lt;br /&gt;</p>

<p>The php8.4-pdo package contains a dynamic shared object that will add&lt;br /&gt;
a database access abstraction layer to PHP.  This module provides&lt;br /&gt;
a common interface for accessing MySQL, PostgreSQL or other&lt;br /&gt;
databases.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 05 Aug 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.24-2
- rebase to 8.4.24

Wed, 08 Jul 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.23-1
- rebase to 8.4.23

Tue, 26 May 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.21-1
- rebase to 8.4.21

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>php8.4-opcache-8.4.24-1.el10_2.riscv64</title>
      <pubDate>Wed, 19 Aug 2026 03:09:54 PM GMT</pubDate>
      <guid isPermaLink="false">864a6b9292e25f3cdd605974e12b4f3d2f1b8ca402448861f65b9caa3fe8bd3b</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/php8.4-opcache-8.4.24-1.el10_2.riscv64.rpm</link>
      <description><p><strong>php8.4-opcache</strong> - The Zend OPcache&lt;br /&gt;</p>

<p>The Zend OPcache provides faster PHP execution through opcode caching and&lt;br /&gt;
optimization. It improves PHP performance by storing precompiled script&lt;br /&gt;
bytecode in the shared memory. This eliminates the stages of reading code from&lt;br /&gt;
the disk and compiling it on future access. In addition, it applies a few&lt;br /&gt;
bytecode optimization patterns that make code execution faster.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 05 Aug 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.24-2
- rebase to 8.4.24

Wed, 08 Jul 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.23-1
- rebase to 8.4.23

Tue, 26 May 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.21-1
- rebase to 8.4.21

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>php8.4-odbc-8.4.24-1.el10_2.riscv64</title>
      <pubDate>Wed, 19 Aug 2026 03:09:54 PM GMT</pubDate>
      <guid isPermaLink="false">48ce3050f377f1b3f3c29f6678b1b3ff9126cd247508c2910b42c2c73254c172</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/php8.4-odbc-8.4.24-1.el10_2.riscv64.rpm</link>
      <description><p><strong>php8.4-odbc</strong> - A module for PHP applications that use ODBC databases&lt;br /&gt;</p>

<p>The php8.4-odbc package contains a dynamic shared object that will add&lt;br /&gt;
database support through ODBC to PHP. ODBC is an open specification&lt;br /&gt;
which provides a consistent API for developers to use for accessing&lt;br /&gt;
data sources (which are often, but not always, databases). PHP is an&lt;br /&gt;
HTML-embeddable scripting language. If you need ODBC support for PHP&lt;br /&gt;
applications, you will need to install this package and the php&lt;br /&gt;
package.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 05 Aug 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.24-2
- rebase to 8.4.24

Wed, 08 Jul 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.23-1
- rebase to 8.4.23

Tue, 26 May 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.21-1
- rebase to 8.4.21

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>php8.4-mysqlnd-8.4.24-1.el10_2.riscv64</title>
      <pubDate>Wed, 19 Aug 2026 03:09:54 PM GMT</pubDate>
      <guid isPermaLink="false">d79a894bf36c9171aaf833928a6b2c62c81f4626a60fcd94118478c8661f3dce</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/php8.4-mysqlnd-8.4.24-1.el10_2.riscv64.rpm</link>
      <description><p><strong>php8.4-mysqlnd</strong> - A module for PHP applications that use MySQL databases&lt;br /&gt;</p>

<p>The php8.4-mysqlnd package contains a dynamic shared object that will add&lt;br /&gt;
MySQL database support to PHP. MySQL is an object-relational database&lt;br /&gt;
management system. PHP is an HTML-embeddable scripting language. If&lt;br /&gt;
you need MySQL support for PHP applications, you will need to install&lt;br /&gt;
this package and the php package.&lt;br /&gt;
&lt;br /&gt;
This package use the MySQL Native Driver</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 05 Aug 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.24-2
- rebase to 8.4.24

Wed, 08 Jul 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.23-1
- rebase to 8.4.23

Tue, 26 May 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.21-1
- rebase to 8.4.21

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>php8.4-mbstring-8.4.24-1.el10_2.riscv64</title>
      <pubDate>Wed, 19 Aug 2026 03:09:54 PM GMT</pubDate>
      <guid isPermaLink="false">2492646c0bcc138e93e9d6da62c7b418d1e6c2892daa48847a2dd0a9d12e7876</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/php8.4-mbstring-8.4.24-1.el10_2.riscv64.rpm</link>
      <description><p><strong>php8.4-mbstring</strong> - A module for PHP applications which need multi-byte string handling&lt;br /&gt;</p>

<p>The php8.4-mbstring package contains a dynamic shared object that will add&lt;br /&gt;
support for multi-byte string handling to PHP.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 05 Aug 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.24-2
- rebase to 8.4.24

Wed, 08 Jul 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.23-1
- rebase to 8.4.23

Tue, 26 May 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.21-1
- rebase to 8.4.21

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>php8.4-ldap-8.4.24-1.el10_2.riscv64</title>
      <pubDate>Wed, 19 Aug 2026 03:09:54 PM GMT</pubDate>
      <guid isPermaLink="false">2c4b473e3a1a3180f407b501c254622463665c63deefbc0619276ba0e13ad16f</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/php8.4-ldap-8.4.24-1.el10_2.riscv64.rpm</link>
      <description><p><strong>php8.4-ldap</strong> - A module for PHP applications that use LDAP&lt;br /&gt;</p>

<p>The php8.4-ldap adds Lightweight Directory Access Protocol (LDAP)&lt;br /&gt;
support to PHP. LDAP is a set of protocols for accessing directory&lt;br /&gt;
services over the Internet. PHP is an HTML-embedded scripting&lt;br /&gt;
language.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 05 Aug 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.24-2
- rebase to 8.4.24

Wed, 08 Jul 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.23-1
- rebase to 8.4.23

Tue, 26 May 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.21-1
- rebase to 8.4.21

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>php8.4-intl-8.4.24-1.el10_2.riscv64</title>
      <pubDate>Wed, 19 Aug 2026 03:09:54 PM GMT</pubDate>
      <guid isPermaLink="false">0c2bfca8fd8bb3e0cc57e0cdfb63c726c112c8bb17b559d9df8331bbeff43971</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/php8.4-intl-8.4.24-1.el10_2.riscv64.rpm</link>
      <description><p><strong>php8.4-intl</strong> - Internationalization extension for PHP applications&lt;br /&gt;</p>

<p>The php8.4-intl package contains a dynamic shared object that will add&lt;br /&gt;
support for using the ICU library to PHP.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 05 Aug 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.24-2
- rebase to 8.4.24

Wed, 08 Jul 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.23-1
- rebase to 8.4.23

Tue, 26 May 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.21-1
- rebase to 8.4.21

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>php8.4-gmp-8.4.24-1.el10_2.riscv64</title>
      <pubDate>Wed, 19 Aug 2026 03:09:54 PM GMT</pubDate>
      <guid isPermaLink="false">6ce701bfdb36e7e1bb728f40e578eab85563fdab732a55d0979e0bf7edfa1c68</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/php8.4-gmp-8.4.24-1.el10_2.riscv64.rpm</link>
      <description><p><strong>php8.4-gmp</strong> - A module for PHP applications for using the GNU MP library&lt;br /&gt;</p>

<p>These functions allow you to work with arbitrary-length integers&lt;br /&gt;
using the GNU MP library.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 05 Aug 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.24-2
- rebase to 8.4.24

Wed, 08 Jul 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.23-1
- rebase to 8.4.23

Tue, 26 May 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.21-1
- rebase to 8.4.21

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>php8.4-gd-8.4.24-1.el10_2.riscv64</title>
      <pubDate>Wed, 19 Aug 2026 03:09:54 PM GMT</pubDate>
      <guid isPermaLink="false">ade840bc69b8221f88e39c2b0df45b4e20c1aa90ae1b2d3539db26a542502930</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/php8.4-gd-8.4.24-1.el10_2.riscv64.rpm</link>
      <description><p><strong>php8.4-gd</strong> - A module for PHP applications for using the gd graphics library&lt;br /&gt;</p>

<p>The php8.4-gd package contains a dynamic shared object that will add&lt;br /&gt;
support for using the gd graphics library to PHP.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 05 Aug 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.24-2
- rebase to 8.4.24

Wed, 08 Jul 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.23-1
- rebase to 8.4.23

Tue, 26 May 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.21-1
- rebase to 8.4.21

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>php8.4-fpm-8.4.24-1.el10_2.riscv64</title>
      <pubDate>Wed, 19 Aug 2026 03:09:54 PM GMT</pubDate>
      <guid isPermaLink="false">7a81cfad138d4e0590f01749444f518ff3784b6d969a6f75497b6e037de58ed0</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/php8.4-fpm-8.4.24-1.el10_2.riscv64.rpm</link>
      <description><p><strong>php8.4-fpm</strong> - PHP FastCGI Process Manager&lt;br /&gt;</p>

<p>PHP-FPM (FastCGI Process Manager) is an alternative PHP FastCGI&lt;br /&gt;
implementation with some additional features useful for sites of&lt;br /&gt;
any size, especially busier sites.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 05 Aug 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.24-2
- rebase to 8.4.24

Wed, 08 Jul 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.23-1
- rebase to 8.4.23

Tue, 26 May 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.21-1
- rebase to 8.4.21

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>php8.4-ffi-8.4.24-1.el10_2.riscv64</title>
      <pubDate>Wed, 19 Aug 2026 03:09:54 PM GMT</pubDate>
      <guid isPermaLink="false">05eda37757315928a206130f305d9e52511ba4309928192d04144278f4a2d116</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/php8.4-ffi-8.4.24-1.el10_2.riscv64.rpm</link>
      <description><p><strong>php8.4-ffi</strong> - Foreign Function Interface&lt;br /&gt;</p>

<p>FFI is one of the features that made Python and LuaJIT very useful for fast&lt;br /&gt;
prototyping. It allows calling C functions and using C data types from pure&lt;br /&gt;
scripting language and therefore develop “system code” more productively.&lt;br /&gt;
&lt;br /&gt;
For PHP, FFI opens a way to write PHP extensions and bindings to C libraries&lt;br /&gt;
in pure PHP.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 05 Aug 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.24-2
- rebase to 8.4.24

Wed, 08 Jul 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.23-1
- rebase to 8.4.23

Tue, 26 May 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.21-1
- rebase to 8.4.21

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>php8.4-enchant-8.4.24-1.el10_2.riscv64</title>
      <pubDate>Wed, 19 Aug 2026 03:09:54 PM GMT</pubDate>
      <guid isPermaLink="false">bc70646cff539213d8fa265ac73388338e121c3b7f104a71affc7ad58656e480</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/php8.4-enchant-8.4.24-1.el10_2.riscv64.rpm</link>
      <description><p><strong>php8.4-enchant</strong> - Enchant spelling extension for PHP applications&lt;br /&gt;</p>

<p>The php8.4-enchant package contains a dynamic shared object that will add&lt;br /&gt;
support for using the enchant library to PHP.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 05 Aug 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.24-2
- rebase to 8.4.24

Wed, 08 Jul 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.23-1
- rebase to 8.4.23

Tue, 26 May 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.21-1
- rebase to 8.4.21

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>php8.4-embedded-8.4.24-1.el10_2.riscv64</title>
      <pubDate>Wed, 19 Aug 2026 03:09:54 PM GMT</pubDate>
      <guid isPermaLink="false">e4253a8be873a88f07e358cf38d85a18e06b4b8719f251b6a39fc140e32e7b0f</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/php8.4-embedded-8.4.24-1.el10_2.riscv64.rpm</link>
      <description><p><strong>php8.4-embedded</strong> - PHP library for embedding in applications&lt;br /&gt;</p>

<p>The php8.4-embedded package contains a library which can be embedded&lt;br /&gt;
into applications to provide PHP scripting language support.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 05 Aug 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.24-2
- rebase to 8.4.24

Wed, 08 Jul 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.23-1
- rebase to 8.4.23

Tue, 26 May 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.21-1
- rebase to 8.4.21

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>php8.4-devel-8.4.24-1.el10_2.riscv64</title>
      <pubDate>Wed, 19 Aug 2026 03:09:54 PM GMT</pubDate>
      <guid isPermaLink="false">0fcc34c3622fc1c983fa7c25e47483333cb24948ac7c1380a0b29dea30b5ad2f</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/php8.4-devel-8.4.24-1.el10_2.riscv64.rpm</link>
      <description><p><strong>php8.4-devel</strong> - Files needed for building PHP extensions&lt;br /&gt;</p>

<p>The php8.4-devel package contains the files needed for building PHP&lt;br /&gt;
extensions. If you need to compile your own PHP extensions, you will&lt;br /&gt;
need to install this package.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 05 Aug 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.24-2
- rebase to 8.4.24

Wed, 08 Jul 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.23-1
- rebase to 8.4.23

Tue, 26 May 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.21-1
- rebase to 8.4.21

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>php8.4-dbg-8.4.24-1.el10_2.riscv64</title>
      <pubDate>Wed, 19 Aug 2026 03:09:54 PM GMT</pubDate>
      <guid isPermaLink="false">4eec892527b49cef11c0446d74e6fcaff3b41bbd6f0ee914356617178d579f2d</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/php8.4-dbg-8.4.24-1.el10_2.riscv64.rpm</link>
      <description><p><strong>php8.4-dbg</strong> - The interactive PHP debugger&lt;br /&gt;</p>

<p>The php8.4-dbg package contains the interactive PHP debugger.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 05 Aug 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.24-2
- rebase to 8.4.24

Wed, 08 Jul 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.23-1
- rebase to 8.4.23

Tue, 26 May 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.21-1
- rebase to 8.4.21

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>php8.4-dba-8.4.24-1.el10_2.riscv64</title>
      <pubDate>Wed, 19 Aug 2026 03:09:54 PM GMT</pubDate>
      <guid isPermaLink="false">180b6f591cdb581b39142f33f55d8498dfc9ca7be040a7c485223d448c14bf5f</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/php8.4-dba-8.4.24-1.el10_2.riscv64.rpm</link>
      <description><p><strong>php8.4-dba</strong> - A database abstraction layer module for PHP applications&lt;br /&gt;</p>

<p>The php8.4-dba package contains a dynamic shared object that will add&lt;br /&gt;
support for using the DBA database abstraction layer to PHP.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 05 Aug 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.24-2
- rebase to 8.4.24

Wed, 08 Jul 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.23-1
- rebase to 8.4.23

Tue, 26 May 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.21-1
- rebase to 8.4.21

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>php8.4-common-8.4.24-1.el10_2.riscv64</title>
      <pubDate>Wed, 19 Aug 2026 03:09:54 PM GMT</pubDate>
      <guid isPermaLink="false">6ad8387f1ff584a82e8ad210229d4a32cda239368b02dcbe1390f1c978c6012d</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/php8.4-common-8.4.24-1.el10_2.riscv64.rpm</link>
      <description><p><strong>php8.4-common</strong> - Common files for PHP&lt;br /&gt;</p>

<p>The php8.4-common package contains files used by both the php8.4&lt;br /&gt;
package and the php8.4-cli package.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 05 Aug 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.24-2
- rebase to 8.4.24

Wed, 08 Jul 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.23-1
- rebase to 8.4.23

Tue, 26 May 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.21-1
- rebase to 8.4.21

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>php8.4-cli-8.4.24-1.el10_2.riscv64</title>
      <pubDate>Wed, 19 Aug 2026 03:09:54 PM GMT</pubDate>
      <guid isPermaLink="false">8958a09c66fb86858f900b8fb967c08fd2ff851259cea54300b31212b60983c0</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/php8.4-cli-8.4.24-1.el10_2.riscv64.rpm</link>
      <description><p><strong>php8.4-cli</strong> - Command-line interface for PHP&lt;br /&gt;</p>

<p>The php8.4-cli package contains the command-line interface&lt;br /&gt;
executing PHP scripts, /usr/bin/php, and the CGI interface.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 05 Aug 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.24-2
- rebase to 8.4.24

Wed, 08 Jul 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.23-1
- rebase to 8.4.23

Tue, 26 May 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.21-1
- rebase to 8.4.21

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>php8.4-bcmath-8.4.24-1.el10_2.riscv64</title>
      <pubDate>Wed, 19 Aug 2026 03:09:54 PM GMT</pubDate>
      <guid isPermaLink="false">1845f87a85ff51671df96923f3afc59f0f0a87482e5ffe3af0a720cbcc6dc7b5</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/php8.4-bcmath-8.4.24-1.el10_2.riscv64.rpm</link>
      <description><p><strong>php8.4-bcmath</strong> - A module for PHP applications for using the bcmath library&lt;br /&gt;</p>

<p>The php8.4-bcmath package contains a dynamic shared object that will add&lt;br /&gt;
support for using the bcmath library to PHP.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 05 Aug 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.24-2
- rebase to 8.4.24

Wed, 08 Jul 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.23-1
- rebase to 8.4.23

Tue, 26 May 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.21-1
- rebase to 8.4.21

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>php8.4-8.4.24-1.el10_2.riscv64</title>
      <pubDate>Wed, 19 Aug 2026 03:09:54 PM GMT</pubDate>
      <guid isPermaLink="false">69251d43d75e28b4df27fc31b703a5fd53de200d9acda4cd87b7e4b2841a70c1</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/php8.4-8.4.24-1.el10_2.riscv64.rpm</link>
      <description><p><strong>php8.4</strong> - PHP scripting language for creating dynamic web sites&lt;br /&gt;</p>

<p>PHP is an HTML-embedded scripting language. PHP attempts to make it&lt;br /&gt;
easy for developers to write dynamically generated web pages. PHP also&lt;br /&gt;
offers built-in database integration for several commercial and&lt;br /&gt;
non-commercial database management systems, so writing a&lt;br /&gt;
database-enabled webpage with PHP is fairly simple. The most common&lt;br /&gt;
use of PHP coding is probably as a replacement for CGI scripts.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 05 Aug 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.24-2
- rebase to 8.4.24

Wed, 08 Jul 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.23-1
- rebase to 8.4.23

Tue, 26 May 2026 GMT - Remi Collet &amp;lt;rcollet@redhat.com&amp;gt; - 8.4.21-1
- rebase to 8.4.21

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>perl-Date-Manip-6.94-5.el10_2.1.noarch</title>
      <pubDate>Wed, 19 Aug 2026 03:03:10 PM GMT</pubDate>
      <guid isPermaLink="false">d02826cbdda862762e33f007711157ed7443fd122c9e546af669d71afae3d360</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/perl-Date-Manip-6.94-5.el10_2.1.noarch.rpm</link>
      <description><p><strong>perl-Date-Manip</strong> - Date manipulation routines&lt;br /&gt;</p>

<p>Date::Manip is a series of modules designed to make any common date/time&lt;br /&gt;
operation easy to do. Operations such as comparing two times, determining&lt;br /&gt;
a data a given amount of time from another, or parsing international times&lt;br /&gt;
are all easily done. It deals with time as it is used in the Gregorian&lt;br /&gt;
calendar (the one currently in use) with full support for time changes due&lt;br /&gt;
to daylight saving time.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 13 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 6.94-5.1
- Fix CVE-2026-60075: prevent quadratic-cost regex DoS in date/time
  parsing by rejecting overly long input strings
  Resolves: RHEL-239790

Tue, 29 Oct 2024 GMT - Troy Dawson &amp;lt;tdawson@redhat.com&amp;gt; - 6.94-5
- Bump release for October 2024 mass rebuild:
  Resolves: RHEL-64018

&lt;/pre&gt;</description>
    </item>
    <item>
      <title>mysql8.4-server-8.4.11-1.el10_2.rocky.0.1.riscv64</title>
      <pubDate>Tue, 18 Aug 2026 11:29:07 PM GMT</pubDate>
      <guid isPermaLink="false">0943351c010285ce065e6920666ddcc04daaa16916cbc47a1b45b07fccca38bb</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/m/mysql8.4-server-8.4.11-1.el10_2.rocky.0.1.riscv64.rpm</link>
      <description><p><strong>mysql8.4-server</strong> - The MySQL server and related files&lt;br /&gt;</p>

<p>MySQL is a multi-user, multi-threaded SQL database server. MySQL is a&lt;br /&gt;
client/server implementation consisting of a server daemon (mysqld)&lt;br /&gt;
and many different client programs and libraries. This package contains&lt;br /&gt;
the MySQL server and some accompanying files and directories.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Tue, 18 Aug 2026 GMT - Release Engineering &amp;lt;releng@rockylinux.org&amp;gt; - 8.4.11-1.rocky.0.1
- Ensure riscv64 support is there

Tue, 28 Jul 2026 GMT - Petr Khartskhaev &amp;lt;pkhartsk@redhat.com&amp;gt; - 8.4.11-1
- Rebase to 8.4.11

Wed, 06 May 2026 GMT - Michal Schorm &amp;lt;mschorm@redhat.com&amp;gt; - 8.4.9-1
- Rebase to 8.4.9

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>mysql8.4-libs-8.4.11-1.el10_2.rocky.0.1.riscv64</title>
      <pubDate>Tue, 18 Aug 2026 11:29:07 PM GMT</pubDate>
      <guid isPermaLink="false">1b232686a0f03417a08340d6e946a998b7b2d7cf8ab471ecc832abd8dd04b56f</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/m/mysql8.4-libs-8.4.11-1.el10_2.rocky.0.1.riscv64.rpm</link>
      <description><p><strong>mysql8.4-libs</strong> - The shared libraries required for MySQL clients&lt;br /&gt;</p>

<p>The mysql-libs package provides the essential shared libraries for any&lt;br /&gt;
MySQL client program or interface. You will need to install this package&lt;br /&gt;
to use any other MySQL package or any clients that need to connect to a&lt;br /&gt;
MySQL server.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Tue, 18 Aug 2026 GMT - Release Engineering &amp;lt;releng@rockylinux.org&amp;gt; - 8.4.11-1.rocky.0.1
- Ensure riscv64 support is there

Tue, 28 Jul 2026 GMT - Petr Khartskhaev &amp;lt;pkhartsk@redhat.com&amp;gt; - 8.4.11-1
- Rebase to 8.4.11

Wed, 06 May 2026 GMT - Michal Schorm &amp;lt;mschorm@redhat.com&amp;gt; - 8.4.9-1
- Rebase to 8.4.9

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>mysql8.4-8.4.11-1.el10_2.rocky.0.1.riscv64</title>
      <pubDate>Tue, 18 Aug 2026 11:29:07 PM GMT</pubDate>
      <guid isPermaLink="false">e911c7892a0168607d85a06b49102be85a677c7410b9ef625dcc34cdfe3d516f</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/m/mysql8.4-8.4.11-1.el10_2.rocky.0.1.riscv64.rpm</link>
      <description><p><strong>mysql8.4</strong> - MySQL client programs and shared libraries&lt;br /&gt;</p>

<p>MySQL is a multi-user, multi-threaded SQL database server. MySQL is a&lt;br /&gt;
client/server implementation consisting of a server daemon (mysqld)&lt;br /&gt;
and many different client programs and libraries. The base package&lt;br /&gt;
contains the standard MySQL client programs and generic MySQL files.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Tue, 18 Aug 2026 GMT - Release Engineering &amp;lt;releng@rockylinux.org&amp;gt; - 8.4.11-1.rocky.0.1
- Ensure riscv64 support is there

Tue, 28 Jul 2026 GMT - Petr Khartskhaev &amp;lt;pkhartsk@redhat.com&amp;gt; - 8.4.11-1
- Rebase to 8.4.11

Wed, 06 May 2026 GMT - Michal Schorm &amp;lt;mschorm@redhat.com&amp;gt; - 8.4.9-1
- Rebase to 8.4.9

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>mysql8.4-errmsg-8.4.11-1.el10_2.rocky.0.1.noarch</title>
      <pubDate>Tue, 18 Aug 2026 11:16:34 PM GMT</pubDate>
      <guid isPermaLink="false">7906622ae3bc6ecb423119e077a37b85d3582b01040239b537df12661b1595bb</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/m/mysql8.4-errmsg-8.4.11-1.el10_2.rocky.0.1.noarch.rpm</link>
      <description><p><strong>mysql8.4-errmsg</strong> - The error messages files required by MySQL server&lt;br /&gt;</p>

<p>The package provides error messages files for the MySQL daemon</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Tue, 18 Aug 2026 GMT - Release Engineering &amp;lt;releng@rockylinux.org&amp;gt; - 8.4.11-1.rocky.0.1
- Ensure riscv64 support is there

Tue, 28 Jul 2026 GMT - Petr Khartskhaev &amp;lt;pkhartsk@redhat.com&amp;gt; - 8.4.11-1
- Rebase to 8.4.11

Wed, 06 May 2026 GMT - Michal Schorm &amp;lt;mschorm@redhat.com&amp;gt; - 8.4.9-1
- Rebase to 8.4.9

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>mysql8.4-common-8.4.11-1.el10_2.rocky.0.1.noarch</title>
      <pubDate>Tue, 18 Aug 2026 11:16:34 PM GMT</pubDate>
      <guid isPermaLink="false">676a05962415357b1939f6e215649298d444b2dd517606a8f59e67b272d81a72</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/m/mysql8.4-common-8.4.11-1.el10_2.rocky.0.1.noarch.rpm</link>
      <description><p><strong>mysql8.4-common</strong> - The shared files required for MySQL server and client&lt;br /&gt;</p>

<p>The mysql-common package provides the essential shared files for any&lt;br /&gt;
MySQL program. You will need to install this package to use any other&lt;br /&gt;
MySQL package.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Tue, 18 Aug 2026 GMT - Release Engineering &amp;lt;releng@rockylinux.org&amp;gt; - 8.4.11-1.rocky.0.1
- Ensure riscv64 support is there

Tue, 28 Jul 2026 GMT - Petr Khartskhaev &amp;lt;pkhartsk@redhat.com&amp;gt; - 8.4.11-1
- Rebase to 8.4.11

Wed, 06 May 2026 GMT - Michal Schorm &amp;lt;mschorm@redhat.com&amp;gt; - 8.4.9-1
- Rebase to 8.4.9

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>python3-unbound-1.24.2-7.el10_2.4.riscv64</title>
      <pubDate>Tue, 18 Aug 2026 03:11:31 AM GMT</pubDate>
      <guid isPermaLink="false">4197b2740a4b04d6ee00ec095021def13e1067e63e0da74d0fcea6939954765c</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/python3-unbound-1.24.2-7.el10_2.4.riscv64.rpm</link>
      <description><p><strong>python3-unbound</strong> - Python 3 modules and extensions for unbound&lt;br /&gt;</p>

<p>Python 3 modules and extensions for unbound</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 05 Aug 2026 GMT - Fedor Vorobev &amp;lt;fvorobev@redhat.com&amp;gt; - 1.24.2-18
- Add unit tests for CVE-2026-{44690,55973}

Wed, 05 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 1.24.2-17
- Fix CVE-2026-55973: dns-error-reporting stack buffer overflow

Wed, 05 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 1.24.2-16
- Fix CVE-2026-44690 - Cross-zone wildcard cache poisoning

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>unbound-utils-1.24.2-7.el10_2.4.riscv64</title>
      <pubDate>Tue, 18 Aug 2026 03:11:31 AM GMT</pubDate>
      <guid isPermaLink="false">d4f6b933a2944f93b54c2c078c0ad90488539f2851a06be9b64ce080e43f6503</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/u/unbound-utils-1.24.2-7.el10_2.4.riscv64.rpm</link>
      <description><p><strong>unbound-utils</strong> - Unbound DNS lookup utilities&lt;br /&gt;</p>

<p>Contains tools for making DNS queries. Can make queries to DNS servers&lt;br /&gt;
also over TLS connection or validate DNSSEC signatures. Similar to&lt;br /&gt;
bind-utils.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 05 Aug 2026 GMT - Fedor Vorobev &amp;lt;fvorobev@redhat.com&amp;gt; - 1.24.2-18
- Add unit tests for CVE-2026-{44690,55973}

Wed, 05 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 1.24.2-17
- Fix CVE-2026-55973: dns-error-reporting stack buffer overflow

Wed, 05 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 1.24.2-16
- Fix CVE-2026-44690 - Cross-zone wildcard cache poisoning

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>unbound-libs-1.24.2-7.el10_2.4.riscv64</title>
      <pubDate>Tue, 18 Aug 2026 03:11:31 AM GMT</pubDate>
      <guid isPermaLink="false">d8b8f5affe725cd5d49ee4dbc39c788a23168ba1a0f63622e173f5d06632c5df</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/u/unbound-libs-1.24.2-7.el10_2.4.riscv64.rpm</link>
      <description><p><strong>unbound-libs</strong> - Libraries used by the unbound server and client applications&lt;br /&gt;</p>

<p>Contains libraries used by the unbound server and client applications.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 05 Aug 2026 GMT - Fedor Vorobev &amp;lt;fvorobev@redhat.com&amp;gt; - 1.24.2-18
- Add unit tests for CVE-2026-{44690,55973}

Wed, 05 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 1.24.2-17
- Fix CVE-2026-55973: dns-error-reporting stack buffer overflow

Wed, 05 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 1.24.2-16
- Fix CVE-2026-44690 - Cross-zone wildcard cache poisoning

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>unbound-dracut-1.24.2-7.el10_2.4.riscv64</title>
      <pubDate>Tue, 18 Aug 2026 03:11:31 AM GMT</pubDate>
      <guid isPermaLink="false">ed6720b676e55cb31e9c78f595817a0519fbe57dc170eb2b157d0627844c21b8</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/u/unbound-dracut-1.24.2-7.el10_2.4.riscv64.rpm</link>
      <description><p><strong>unbound-dracut</strong> - Unbound dracut module&lt;br /&gt;</p>

<p>Unbound dracut module allowing use of Unbound for name resolution&lt;br /&gt;
in initramfs.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 05 Aug 2026 GMT - Fedor Vorobev &amp;lt;fvorobev@redhat.com&amp;gt; - 1.24.2-18
- Add unit tests for CVE-2026-{44690,55973}

Wed, 05 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 1.24.2-17
- Fix CVE-2026-55973: dns-error-reporting stack buffer overflow

Wed, 05 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 1.24.2-16
- Fix CVE-2026-44690 - Cross-zone wildcard cache poisoning

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>unbound-anchor-1.24.2-7.el10_2.4.riscv64</title>
      <pubDate>Tue, 18 Aug 2026 03:11:31 AM GMT</pubDate>
      <guid isPermaLink="false">1632a2dbf21349e6b3c0fa7906459f86410342db028e092d83fa22708139bfd2</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/u/unbound-anchor-1.24.2-7.el10_2.4.riscv64.rpm</link>
      <description><p><strong>unbound-anchor</strong> - DNSSEC trust anchor maintaining tool&lt;br /&gt;</p>

<p>Contains tool maintaining trust anchor using RFC 5011 key rollover algorithm.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 05 Aug 2026 GMT - Fedor Vorobev &amp;lt;fvorobev@redhat.com&amp;gt; - 1.24.2-18
- Add unit tests for CVE-2026-{44690,55973}

Wed, 05 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 1.24.2-17
- Fix CVE-2026-55973: dns-error-reporting stack buffer overflow

Wed, 05 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 1.24.2-16
- Fix CVE-2026-44690 - Cross-zone wildcard cache poisoning

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>unbound-1.24.2-7.el10_2.4.riscv64</title>
      <pubDate>Tue, 18 Aug 2026 03:11:31 AM GMT</pubDate>
      <guid isPermaLink="false">8a8d97dc8f697d1aec9c60cbce0f7b29e1da9db7bde812f75347a37723d70273</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/u/unbound-1.24.2-7.el10_2.4.riscv64.rpm</link>
      <description><p><strong>unbound</strong> - Validating, recursive, and caching DNS(SEC) resolver&lt;br /&gt;</p>

<p>Unbound is a validating, recursive, and caching DNS(SEC) resolver.&lt;br /&gt;
&lt;br /&gt;
The C implementation of Unbound is developed and maintained by NLnet&lt;br /&gt;
Labs. It is based on ideas and algorithms taken from a java prototype&lt;br /&gt;
developed by Verisign labs, Nominet, Kirei and ep.net.&lt;br /&gt;
&lt;br /&gt;
Unbound is designed as a set of modular components, so that also&lt;br /&gt;
DNSSEC (secure DNS) validation and stub-resolvers (that do not run&lt;br /&gt;
as a server, but are linked into an application) are easily possible.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 05 Aug 2026 GMT - Fedor Vorobev &amp;lt;fvorobev@redhat.com&amp;gt; - 1.24.2-18
- Add unit tests for CVE-2026-{44690,55973}

Wed, 05 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 1.24.2-17
- Fix CVE-2026-55973: dns-error-reporting stack buffer overflow

Wed, 05 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 1.24.2-16
- Fix CVE-2026-44690 - Cross-zone wildcard cache poisoning

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>libssh-devel-0.12.0-3.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 10:54:04 PM GMT</pubDate>
      <guid isPermaLink="false">f8442522fa7825c9214462e053e8678086bd04431158286f0c95b43956cdfa47</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/l/libssh-devel-0.12.0-3.el10_2.riscv64.rpm</link>
      <description><p><strong>libssh-devel</strong> - Development files for libssh&lt;br /&gt;</p>

<p>The libssh-devel package contains libraries and header files for developing&lt;br /&gt;
applications that use libssh.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 22 Jul 2026 GMT - Pavol Žáčik &amp;lt;pzacik@redhat.com&amp;gt; - 0.12.0-3
- Backport CVE fixes from 0.12.2
  Resolves: RHEL-213004
  Resolves: RHEL-213029
  Resolves: RHEL-213032
  Resolves: RHEL-213039
  Resolves: RHEL-213046
  Resolves: RHEL-213079
  Resolves: RHEL-213112
  Resolves: RHEL-213117
  Resolves: RHEL-213148
  Resolves: RHEL-213150
  Resolves: RHEL-213175

Thu, 19 Feb 2026 GMT - Pavol Žáčik &amp;lt;pzacik@redhat.com&amp;gt; - 0.12.0-2
- Fix the verbosity of some new logs added in 0.12.0
  Resolves: RHEL-93748

Tue, 10 Feb 2026 GMT - Pavol Žáčik &amp;lt;pzacik@redhat.com&amp;gt; - 0.12.0-1
- Rebase to 0.12.0
  Resolves: RHEL-133421, RHEL-70825, RHEL-130042
- Add a Requires for crypto-policies instead of a Recommends
  Resolves: RHEL-139045

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>libguestfs-xfs-1:1.58.1-9.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:15:05 PM GMT</pubDate>
      <guid isPermaLink="false">a1906cf473d679ded9c8ebbb1548a5614cda1006a648f806d5971f8823d1059a</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/l/libguestfs-xfs-1.58.1-9.el10_2.riscv64.rpm</link>
      <description><p><strong>libguestfs-xfs</strong> - XFS support for libguestfs&lt;br /&gt;</p>

<p>This adds XFS support to libguestfs.  Install it if you want to process&lt;br /&gt;
disk images containing XFS.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 13 Aug 2026 GMT - Richard W.M. Jones &amp;lt;rjones@redhat.com&amp;gt; - 1:1.58.1-9
- Add setfiles optional excludes parameter to libguestfs
  resolves: RHEL-239808

Fri, 10 Jul 2026 GMT - Richard W.M. Jones &amp;lt;rjones@redhat.com&amp;gt; - 1:1.58.1-8
- Ignore RHEL 7 AGFL inconsistency in xfs_repair
  resolves: RHEL-192920
- Use bind mount to overwrite /etc/resolv.conf
  resolves: RHEL-192946

Mon, 11 May 2026 GMT - Richard W.M. Jones &amp;lt;rjones@redhat.com&amp;gt; - 1:1.58.1-6
- Fix binary LUKS keys
  resolves: RHEL-174519
- Use git to apply patches, since there is an unsupported binary patch

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>libguestfs-rsync-1:1.58.1-9.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:15:05 PM GMT</pubDate>
      <guid isPermaLink="false">4591136066f6bffbc52b978ab524cce4f151348e304d324f59af771b5fd7be94</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/l/libguestfs-rsync-1.58.1-9.el10_2.riscv64.rpm</link>
      <description><p><strong>libguestfs-rsync</strong> - rsync support for libguestfs&lt;br /&gt;</p>

<p>This adds rsync support to libguestfs.  Install it if you want to use&lt;br /&gt;
rsync to upload or download files into disk images.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 13 Aug 2026 GMT - Richard W.M. Jones &amp;lt;rjones@redhat.com&amp;gt; - 1:1.58.1-9
- Add setfiles optional excludes parameter to libguestfs
  resolves: RHEL-239808

Fri, 10 Jul 2026 GMT - Richard W.M. Jones &amp;lt;rjones@redhat.com&amp;gt; - 1:1.58.1-8
- Ignore RHEL 7 AGFL inconsistency in xfs_repair
  resolves: RHEL-192920
- Use bind mount to overwrite /etc/resolv.conf
  resolves: RHEL-192946

Mon, 11 May 2026 GMT - Richard W.M. Jones &amp;lt;rjones@redhat.com&amp;gt; - 1:1.58.1-6
- Fix binary LUKS keys
  resolves: RHEL-174519
- Use git to apply patches, since there is an unsupported binary patch

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>libguestfs-rescue-1:1.58.1-9.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:15:05 PM GMT</pubDate>
      <guid isPermaLink="false">01af845ed74f656cfd93bfc6a39111bfcd7cc79a448d89acbe8b6450071dcd3d</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/l/libguestfs-rescue-1.58.1-9.el10_2.riscv64.rpm</link>
      <description><p><strong>libguestfs-rescue</strong> - virt-rescue shell&lt;br /&gt;</p>

<p>This adds the virt-rescue shell which is a "rescue disk" for virtual&lt;br /&gt;
machines, and additional tools to use inside the shell such as ssh,&lt;br /&gt;
network utilities, editors and debugging utilities.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 13 Aug 2026 GMT - Richard W.M. Jones &amp;lt;rjones@redhat.com&amp;gt; - 1:1.58.1-9
- Add setfiles optional excludes parameter to libguestfs
  resolves: RHEL-239808

Fri, 10 Jul 2026 GMT - Richard W.M. Jones &amp;lt;rjones@redhat.com&amp;gt; - 1:1.58.1-8
- Ignore RHEL 7 AGFL inconsistency in xfs_repair
  resolves: RHEL-192920
- Use bind mount to overwrite /etc/resolv.conf
  resolves: RHEL-192946

Mon, 11 May 2026 GMT - Richard W.M. Jones &amp;lt;rjones@redhat.com&amp;gt; - 1:1.58.1-6
- Fix binary LUKS keys
  resolves: RHEL-174519
- Use git to apply patches, since there is an unsupported binary patch

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>libguestfs-appliance-1:1.58.1-9.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:15:05 PM GMT</pubDate>
      <guid isPermaLink="false">84582e7ba26ac836272c46a5ce750d1ab01bbe2b6f12537b4ebefd8412e946e7</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/l/libguestfs-appliance-1.58.1-9.el10_2.riscv64.rpm</link>
      <description><p><strong>libguestfs-appliance</strong> - Appliance for libguestfs&lt;br /&gt;</p>

<p>libguestfs-appliance provides the appliance used by libguestfs.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 13 Aug 2026 GMT - Richard W.M. Jones &amp;lt;rjones@redhat.com&amp;gt; - 1:1.58.1-9
- Add setfiles optional excludes parameter to libguestfs
  resolves: RHEL-239808

Fri, 10 Jul 2026 GMT - Richard W.M. Jones &amp;lt;rjones@redhat.com&amp;gt; - 1:1.58.1-8
- Ignore RHEL 7 AGFL inconsistency in xfs_repair
  resolves: RHEL-192920
- Use bind mount to overwrite /etc/resolv.conf
  resolves: RHEL-192946

Mon, 11 May 2026 GMT - Richard W.M. Jones &amp;lt;rjones@redhat.com&amp;gt; - 1:1.58.1-6
- Fix binary LUKS keys
  resolves: RHEL-174519
- Use git to apply patches, since there is an unsupported binary patch

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>libguestfs-1:1.58.1-9.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:15:05 PM GMT</pubDate>
      <guid isPermaLink="false">c6d0b903661486ee3a5aafc7e261fd95099087f1e5c304c3014c9ca5a4aac797</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/l/libguestfs-1.58.1-9.el10_2.riscv64.rpm</link>
      <description><p><strong>libguestfs</strong> - Access and modify virtual machine disk images&lt;br /&gt;</p>

<p>Libguestfs is a library for accessing and modifying virtual machine&lt;br /&gt;
disk images.  http://libguestfs.org&lt;br /&gt;
&lt;br /&gt;
Libguestfs uses Linux kernel and qemu code, and can access any type of&lt;br /&gt;
guest filesystem that Linux and qemu can, including but not limited&lt;br /&gt;
to: ext2/3/4, btrfs, FAT and NTFS, LVM, many different disk partition&lt;br /&gt;
schemes, qcow, qcow2, vmdk.&lt;br /&gt;
&lt;br /&gt;
For enhanced features, install:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 libguestfs-inspect-icons  adds support for inspecting guest icons&lt;br /&gt;
        libguestfs-rescue  enhances virt-rescue shell with more tools&lt;br /&gt;
         libguestfs-rsync  rsync to/from guest filesystems&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
           libguestfs-xfs  adds XFS support&lt;br /&gt;
&lt;br /&gt;
For developers:&lt;br /&gt;
&lt;br /&gt;
         libguestfs-devel  C/C++ header files and library&lt;br /&gt;
&lt;br /&gt;
Language bindings:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
   ocaml-libguestfs-devel  OCaml bindings&lt;br /&gt;
         perl-Sys-Guestfs  Perl bindings&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
       python3-libguestfs  Python 3 bindings</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 13 Aug 2026 GMT - Richard W.M. Jones &amp;lt;rjones@redhat.com&amp;gt; - 1:1.58.1-9
- Add setfiles optional excludes parameter to libguestfs
  resolves: RHEL-239808

Fri, 10 Jul 2026 GMT - Richard W.M. Jones &amp;lt;rjones@redhat.com&amp;gt; - 1:1.58.1-8
- Ignore RHEL 7 AGFL inconsistency in xfs_repair
  resolves: RHEL-192920
- Use bind mount to overwrite /etc/resolv.conf
  resolves: RHEL-192946

Mon, 11 May 2026 GMT - Richard W.M. Jones &amp;lt;rjones@redhat.com&amp;gt; - 1:1.58.1-6
- Fix binary LUKS keys
  resolves: RHEL-174519
- Use git to apply patches, since there is an unsupported binary patch

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>python3-libguestfs-1:1.58.1-9.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:15:05 PM GMT</pubDate>
      <guid isPermaLink="false">3eda8848392e94903614c6c1de7e0b9d5c945bddf12a47b4c65595da744239f1</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/python3-libguestfs-1.58.1-9.el10_2.riscv64.rpm</link>
      <description><p><strong>python3-libguestfs</strong> - Python 3 bindings for libguestfs&lt;br /&gt;</p>

<p>python3-libguestfs contains Python 3 bindings for libguestfs.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 13 Aug 2026 GMT - Richard W.M. Jones &amp;lt;rjones@redhat.com&amp;gt; - 1:1.58.1-9
- Add setfiles optional excludes parameter to libguestfs
  resolves: RHEL-239808

Fri, 10 Jul 2026 GMT - Richard W.M. Jones &amp;lt;rjones@redhat.com&amp;gt; - 1:1.58.1-8
- Ignore RHEL 7 AGFL inconsistency in xfs_repair
  resolves: RHEL-192920
- Use bind mount to overwrite /etc/resolv.conf
  resolves: RHEL-192946

Mon, 11 May 2026 GMT - Richard W.M. Jones &amp;lt;rjones@redhat.com&amp;gt; - 1:1.58.1-6
- Fix binary LUKS keys
  resolves: RHEL-174519
- Use git to apply patches, since there is an unsupported binary patch

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>perl-Sys-Guestfs-1:1.58.1-9.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:15:05 PM GMT</pubDate>
      <guid isPermaLink="false">e7d19e6004d42a528cf107e803b20ca4ed7a48184aee25eb7451438ab6c35245</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/perl-Sys-Guestfs-1.58.1-9.el10_2.riscv64.rpm</link>
      <description><p><strong>perl-Sys-Guestfs</strong> - Perl bindings for libguestfs (Sys::Guestfs)&lt;br /&gt;</p>

<p>perl-Sys-Guestfs contains Perl bindings for libguestfs (Sys::Guestfs).</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 13 Aug 2026 GMT - Richard W.M. Jones &amp;lt;rjones@redhat.com&amp;gt; - 1:1.58.1-9
- Add setfiles optional excludes parameter to libguestfs
  resolves: RHEL-239808

Fri, 10 Jul 2026 GMT - Richard W.M. Jones &amp;lt;rjones@redhat.com&amp;gt; - 1:1.58.1-8
- Ignore RHEL 7 AGFL inconsistency in xfs_repair
  resolves: RHEL-192920
- Use bind mount to overwrite /etc/resolv.conf
  resolves: RHEL-192946

Mon, 11 May 2026 GMT - Richard W.M. Jones &amp;lt;rjones@redhat.com&amp;gt; - 1:1.58.1-6
- Fix binary LUKS keys
  resolves: RHEL-174519
- Use git to apply patches, since there is an unsupported binary patch

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>python3-pcp-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">0ff0ef27041d26bfd0fbb3fb42601306c123649146a80a9e162d1565e0416e53</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/python3-pcp-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>python3-pcp</strong> - Performance Co-Pilot (PCP) Python3 bindings and documentation&lt;br /&gt;</p>

<p>This python PCP module contains the language bindings for&lt;br /&gt;
Performance Metric API (PMAPI) monitor tools and Performance&lt;br /&gt;
Metric Domain Agent (PMDA) collector tools written in Python3.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>perl-PCP-PMDA-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">3f59d50a1017535fb88133942b21d9a865ac009de7015af4aa0d7de27f1d29ae</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/perl-PCP-PMDA-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>perl-PCP-PMDA</strong> - Performance Co-Pilot (PCP) Perl bindings and documentation&lt;br /&gt;</p>

<p>The PCP::PMDA Perl module contains the language bindings for&lt;br /&gt;
building Performance Metric Domain Agents (PMDAs) using Perl.&lt;br /&gt;
Each PMDA exports performance data for one specific domain, for&lt;br /&gt;
example the operating system kernel, Cisco routers, a database,&lt;br /&gt;
an application, etc.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>perl-PCP-MMV-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">6d859055d44472b34f01bae66143f14a8f5342eeb5e2c9e22bd82df20a1518c3</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/perl-PCP-MMV-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>perl-PCP-MMV</strong> - Performance Co-Pilot (PCP) Perl bindings for PCP Memory Mapped Values&lt;br /&gt;</p>

<p>The PCP::MMV module contains the Perl language bindings for&lt;br /&gt;
building scripts instrumented with the Performance Co-Pilot&lt;br /&gt;
(PCP) Memory Mapped Value (MMV) mechanism.&lt;br /&gt;
This mechanism allows arbitrary values to be exported from an&lt;br /&gt;
instrumented script into the PCP infrastructure for monitoring&lt;br /&gt;
and analysis with pmchart, pmie, pmlogger and other PCP tools.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>perl-PCP-LogSummary-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">f20fafd9f3f65c4cf6eefd5e78bd5a5752cae485fda0297b9686e095a700f0b0</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/perl-PCP-LogSummary-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>perl-PCP-LogSummary</strong> - Performance Co-Pilot (PCP) Perl bindings for post-processing output of pmlogsummary&lt;br /&gt;</p>

<p>The PCP::LogSummary module provides a Perl module for using the&lt;br /&gt;
statistical summary data produced by the Performance Co-Pilot&lt;br /&gt;
pmlogsummary utility.  This utility produces various averages,&lt;br /&gt;
minima, maxima, and other calculations based on the performance&lt;br /&gt;
data stored in a PCP archive.  The Perl interface is ideal for&lt;br /&gt;
exporting this data into third-party tools (e.g. spreadsheets).</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>perl-PCP-LogImport-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">ff7b48630f9a8b2c23e41e57075816a43854dd4808197d95c9b42c47127d2a7c</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/perl-PCP-LogImport-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>perl-PCP-LogImport</strong> - Performance Co-Pilot (PCP) Perl bindings for importing external data into PCP archives&lt;br /&gt;</p>

<p>The PCP::LogImport module contains the Perl language bindings for&lt;br /&gt;
importing data in various 3rd party formats into PCP archives so&lt;br /&gt;
they can be replayed with standard PCP monitoring tools.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-zeroconf-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">bdf9ffe038b7e4a2e0eea78fe7fd9654c55f7508a39b71d3a214e5500acd4fb8</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-zeroconf-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-zeroconf</strong> - Performance Co-Pilot (PCP) Zeroconf Package&lt;br /&gt;</p>

<p>This package contains configuration tweaks and files to increase metrics&lt;br /&gt;
gathering frequency, several extended pmlogger configurations, as well as&lt;br /&gt;
automated pmie diagnosis, alerting and self-healing for the localhost.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-system-tools-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">e133ebd90ed0f895751c4a2ab09a3fb3dbefa0a0cdfde6648abe668eabee356f</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-system-tools-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-system-tools</strong> - Performance Co-Pilot (PCP) System and Monitoring Tools&lt;br /&gt;</p>

<p>This PCP module contains additional system monitoring tools written&lt;br /&gt;
in the Python language.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-selinux-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">b2b36d5715d0b2945f25940aa216abdaf46c29b42eb8e7cf9521ece05090ff74</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-selinux-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-selinux</strong> - Selinux policy package&lt;br /&gt;</p>

<p>This package contains SELinux support for PCP.  The package contains&lt;br /&gt;
interface rules, type enforcement and file context adjustments for an&lt;br /&gt;
updated policy package.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-zswap-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">cf211a961bfd43fad37a804c15a3d1706c62845afb847f3f47f7b3b912916cb8</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-zswap-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-zswap</strong> - Performance Co-Pilot (PCP) metrics for compressed swap&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
collecting metrics about compressed swap.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-zimbra-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">ab3f0407eb8d3ea14a1e6ca4528dafd171991a7dfd78ee76d53afb98b984f4ee</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-zimbra-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-zimbra</strong> - Performance Co-Pilot (PCP) metrics for Zimbra&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
collecting metrics about Zimbra.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-weblog-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">9f1b7c1658dd65cc985731f091dab24626026f4d43af5394ad2814bb2ef432bb</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-weblog-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-weblog</strong> - Performance Co-Pilot (PCP) metrics from web server logs&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
collecting metrics about web server logs.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-uwsgi-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">62cfab82f4a80716bc427161a7b1952690df416fcc6dc2e3ca159534a715a75c</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-uwsgi-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-uwsgi</strong> - Performance Co-Pilot (PCP) metrics from uWSGI servers&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
collecting metrics from uWSGI servers.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-unbound-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">065d29db26f4a27c0c8da7c4d27b55ef1aaeac5ac993b178fba34a140f5ec790</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-unbound-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-unbound</strong> - Performance Co-Pilot (PCP) metrics for the Unbound DNS Resolver&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
collecting metrics about the Unbound DNS Resolver.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-trace-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">c5a4adc3165c4bcd391050e51cc1d6a4c4a9a72b2f7987ff473966fba30b8d8d</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-trace-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-trace</strong> - Performance Co-Pilot (PCP) metrics for application tracing&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
collecting metrics about trace performance data in applications.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-systemd-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">5784eae1baa0a91ac63cd2a92a7ab6e4beea00a83a8e2306b470209a3b011c3c</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-systemd-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-systemd</strong> - Performance Co-Pilot (PCP) metrics from the Systemd journal&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
collecting metrics from the Systemd journal.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-summary-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">fb62e6aad635b4a5a6763795d699da9223fb074bf3082bc1651eb9070e57eb8c</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-summary-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-summary</strong> - Performance Co-Pilot (PCP) summary metrics from pmie&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
collecting metrics about other installed PMDAs.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-statsd-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">7e5ba306ce598b1d8d7ac4aa92d6c9250c8ea42a0ee7bd88f3da26778b7f4a58</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-statsd-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-statsd</strong> - Performance Co-Pilot (PCP) metrics from statsd&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
collecting statistics from the statsd daemon.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-sockets-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">5135b9dd23b4441aea994d7230942899ed6ce174693ebf376937e88cb45d1172</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-sockets-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-sockets</strong> - Performance Co-Pilot (PCP) per-socket metrics&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metric Domain Agent (PMDA) for&lt;br /&gt;
collecting per-socket statistics, making use of utilities such as 'ss'.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-snmp-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">c4102891554d005a53d2e98e988ca4b6150bc8fa91ffdf9c53b7a27059367ddb</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-snmp-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-snmp</strong> - Performance Co-Pilot (PCP) metrics for Simple Network Management Protocol&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
collecting metrics about SNMP.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-smart-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">79533b93f98f5e3c1d8cbdb31ea7c4f0e67124bcadbae9a66295f52fb535aa31</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-smart-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-smart</strong> - Performance Co-Pilot (PCP) metrics for S.M.A.R.T values&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metric Domain Agent (PMDA) for&lt;br /&gt;
collecting metrics of disk S.M.A.R.T values making use of data from the&lt;br /&gt;
smartmontools package.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-slurm-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">dddddd50fa805abae5cacf6d9b0fc938cca18fdd305e9723cb61d14497e0738b</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-slurm-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-slurm</strong> - Performance Co-Pilot (PCP) metrics for the SLURM Workload Manager&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
collecting metrics from the SLURM Workload Manager.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-shping-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">04a76ec52b7eec2534da0e96e275debe01b99a093838aad9fb197b340c264509</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-shping-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-shping</strong> - Performance Co-Pilot (PCP) metrics for shell command responses&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
collecting metrics about quality of service and response time measurements of&lt;br /&gt;
arbitrary shell commands.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-sendmail-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">439eb01bf03dc4829dfff3276389f94d9b0cf74afa9eb4543708e00e7eacb11d</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-sendmail-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-sendmail</strong> - Performance Co-Pilot (PCP) metrics for Sendmail&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
collecting metrics about Sendmail traffic.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-samba-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">afd0c8b9a7cf5906a8bfa871e690f6f9bc20f8f423669dd42cd5d1ef744fa69b</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-samba-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-samba</strong> - Performance Co-Pilot (PCP) metrics for Samba&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
collecting metrics about Samba.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-rsyslog-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">08e1ea55a9be69c5d16bfe1572a0b0a1edfbd2ca58aaf521e55101ddc549fc07</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-rsyslog-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-rsyslog</strong> - Performance Co-Pilot (PCP) metrics for Rsyslog&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
collecting metrics about Rsyslog.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-roomtemp-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">89f253edde8b24b5c7f7763187ce9570b383040ed83420ed8e172b3ba36e5ba3</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-roomtemp-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-roomtemp</strong> - Performance Co-Pilot (PCP) metrics for the room temperature&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
collecting metrics about the room temperature.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-rocestat-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">bced218106ae290c5b20e7c2c663711752843400ae47a4d27742a17f281b1513</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-rocestat-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-rocestat</strong> - Performance Co-Pilot (PCP) metrics for nVidia RoCE devices&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
collecting statistics for nVidia RDMA over Converged Ethernet (RoCE) devices.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-redis-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">a6513d7cbe6c262aebd87b45f2e647e070d91427664161ff160e7b36eb1f0551</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-redis-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-redis</strong> - Performance Co-Pilot (PCP) metrics for Redis&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
collecting metrics from Redis servers (redis.io).</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-rabbitmq-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">6985d1b45e9a51d623ea2af300e311fa4e48ea71cf39227ac65d52cd8d300090</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-rabbitmq-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-rabbitmq</strong> - Performance Co-Pilot (PCP) metrics for RabbitMQ queues&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
collecting metrics about RabbitMQ message queues.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-postgresql-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">e69e1d12f77d5aba2db35b7b35fdc4d4c8840fc07eeb673210c8adf5a8b8f9ea</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-postgresql-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-postgresql</strong> - Performance Co-Pilot (PCP) metrics for PostgreSQL&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
collecting metrics about the PostgreSQL database.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-postfix-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">ed78cf590a2aecd45713bbb12fd244c3155ab61ae95bdee96403deb86e99de94</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-postfix-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-postfix</strong> - Performance Co-Pilot (PCP) metrics for the Postfix (MTA)&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
collecting metrics about the Postfix (MTA).</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-podman-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">aefe79c2e6e783e5e8b9ff6dc8de42f7339a3bae603b047dca24a60808287e56</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-podman-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-podman</strong> - Performance Co-Pilot (PCP) metrics for podman containers&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
collecting podman container and pod statistics via the podman REST API.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-perfevent-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">c25af5a4327ff86058e04621db956aa51345f0482e9bd4dd0d1b02ab58164f8c</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-perfevent-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-perfevent</strong> - Performance Co-Pilot (PCP) metrics for hardware counters&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
collecting hardware counters statistics through libpfm.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-pdns-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">46ea01f7ee7609f0cdf66dd11297f6341ac301e0d9e13f5725bc4b866063e02d</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-pdns-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-pdns</strong> - Performance Co-Pilot (PCP) metrics for PowerDNS&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
collecting metrics about the PowerDNS.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-oracle-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">6afb548196e57f1b7e28b653997587dff9c6149810f3065e3a359e024510a4e8</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-oracle-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-oracle</strong> - Performance Co-Pilot (PCP) metrics for the Oracle database&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
collecting metrics about the Oracle database.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-openvswitch-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">d3ffeca5d52c148f38aa012300d986e4d897987edab9b49ec8619e9348b7829f</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-openvswitch-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-openvswitch</strong> - Performance Co-Pilot (PCP) metrics for Open vSwitch&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
collecting metrics from Open vSwitch.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-opentelemetry-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">3fbfa01c802f558651573a5e2e1b056aa35f259116034530ab2212af35097fd4</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-opentelemetry-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-opentelemetry</strong> - Performance Co-Pilot (PCP) metrics from OpenTelemetry endpoints&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
extracting metrics from OpenTelemetry (https://opentelemetry.io/) endpoints.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-openmetrics-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">fce52fc32686146fe65b4cd073011dd221213471f31290dd238aece4bb5cb0a7</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-openmetrics-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-openmetrics</strong> - Performance Co-Pilot (PCP) metrics from OpenMetrics endpoints&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
extracting metrics from OpenMetrics (https://openmetrics.io/) endpoints.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-nvidia-gpu-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">28a1947ed53800716bec88d8c2e9e5bab6ab28407bee04d6f7a876ffd78713d4</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-nvidia-gpu-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-nvidia-gpu</strong> - Performance Co-Pilot (PCP) metrics for the Nvidia GPU&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
collecting metrics about Nvidia GPUs.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-nginx-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">689b0a66024623853e9ddee3317df71d1db9ce68d8758a27abbd08b590dfa21e</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-nginx-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-nginx</strong> - Performance Co-Pilot (PCP) metrics for the Nginx Webserver&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
collecting metrics about the Nginx Webserver.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-nfsclient-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">72c09a18c04b20443e6ab687ff836012fa3b868a207db32b4b0c05a6f3026554</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-nfsclient-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-nfsclient</strong> - Performance Co-Pilot (PCP) metrics for NFS Clients&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
collecting metrics for NFS Clients.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-news-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">8bcdd32798ff3f85136a968628a3a64dc148f7ccbf3f9a99c6157128df26d8e5</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-news-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-news</strong> - Performance Co-Pilot (PCP) metrics for Usenet News&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
collecting metrics about Usenet News.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-netfilter-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">9325e703fdb63607dad0ec1839de08a8139164733e6e704d4e91029a75a437c7</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-netfilter-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-netfilter</strong> - Performance Co-Pilot (PCP) metrics for Netfilter framework&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
collecting metrics about the Netfilter packet filtering framework.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-netcheck-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">16dd574a971b8d7df231932d8dea41f84686d4ef55f0e9127e1b3eeebe2c25ad</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-netcheck-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-netcheck</strong> - Performance Co-Pilot (PCP) metrics for simple network checks&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
collecting metrics from simple network checks.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-named-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">e91a1294e1aaca119cb88db7f474fc53686c82e08a72f54dee85b67dede86c07</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-named-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-named</strong> - Performance Co-Pilot (PCP) metrics for Named&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
collecting metrics about the Named nameserver.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-mysql-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">46cde2921a952191a24fe8b9e1b56bfd8adfe02ca62948f4065690ce081921de</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-mysql-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-mysql</strong> - Performance Co-Pilot (PCP) metrics for MySQL&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
collecting metrics about the MySQL database.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-mounts-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">bfa8f86696ba0c3f4d07582f62ce871188c39f36d3ea7455c53f1c6d88a07931</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-mounts-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-mounts</strong> - Performance Co-Pilot (PCP) metrics for filesystem mounts&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
collecting metrics about filesystem mounts.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-mongodb-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">fd2068c72dcc16bc7f7634de13d14db832ab035066af349ceb710bc5f8d4621c</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-mongodb-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-mongodb</strong> - Performance Co-Pilot (PCP) metrics for MongoDB&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
collecting metrics from MongoDB.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-mic-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">d86f1583157fc70b04c9854c08f91d22da1c71b5938f04ac181f249e422aa5ac</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-mic-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-mic</strong> - Performance Co-Pilot (PCP) metrics for Intel MIC cards&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
collecting metrics about Intel MIC cards.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-memcache-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">f58a7868fb85f63ce200df25eaf9341fcd7a72e7133da4f691ccc4a11e788d56</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-memcache-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-memcache</strong> - Performance Co-Pilot (PCP) metrics for Memcached&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
collecting metrics about Memcached.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-mailq-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">579e241bfde97918780697225eeaab41f5e02de59f4c4aefd9e35b0d03cbfcf7</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-mailq-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-mailq</strong> - Performance Co-Pilot (PCP) metrics for the sendmail queue&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
collecting metrics about email queues managed by sendmail.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-lustrecomm-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">8b94560307c2883dbb97218066e737f6bb3f7a2b6e041d5e96f7738602cf31fa</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-lustrecomm-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-lustrecomm</strong> - Performance Co-Pilot (PCP) metrics for the Lustre Filesytem Comms&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
collecting metrics about the Lustre Filesystem Comms.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-lustre-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">2958e3e3f914789ffa3b17ab1784a25677b3d35e0c472e0c7c911dc6e1ce4ef3</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-lustre-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-lustre</strong> - Performance Co-Pilot (PCP) metrics for the Lustre Filesytem&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
collecting metrics about the Lustre Filesystem.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-logger-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">c9052dd499d358aff14fdc343bdf91305c8554d056d9a618b66eea326f392d02</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-logger-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-logger</strong> - Performance Co-Pilot (PCP) metrics from arbitrary log files&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
collecting metrics from a specified set of log files (or pipes).  The PMDA&lt;br /&gt;
supports both sampled and event-style metrics.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-lmsensors-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">544a671a85c0030b025258e1aedfb5323bef9a11aaec954422fede11f6e2bb45</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-lmsensors-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-lmsensors</strong> - Performance Co-Pilot (PCP) metrics for hardware sensors&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
collecting metrics about the Linux hardware monitoring sensors.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-lio-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">5e1c1a47cb3539543b17c67bf6d585fb780fdd1979870ad4a8950450632bfd16</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-lio-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-lio</strong> - Performance Co-Pilot (PCP) metrics for the LIO subsystem&lt;br /&gt;</p>

<p>This package provides a PMDA to gather performance metrics from the kernels&lt;br /&gt;
iSCSI target interface (LIO). The metrics are stored by LIO within the Linux&lt;br /&gt;
kernels configfs filesystem. The PMDA provides per LUN level stats, and a&lt;br /&gt;
summary instance per iSCSI target, which aggregates all LUN metrics within the&lt;br /&gt;
target.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-libvirt-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">15665dfe536ee3f78603c904c498c884ff81060c2908cd1e7f9c302d530c8f0a</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-libvirt-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-libvirt</strong> - Performance Co-Pilot (PCP) metrics from virtual machines&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
extracting virtualisation statistics from libvirt about behaviour of guest&lt;br /&gt;
and hypervisor machines.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-infiniband-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">be1dc7589b0869114d25406519f1293e99ae1721b6fdf2e8f943f637be40c847</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-infiniband-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-infiniband</strong> - Performance Co-Pilot (PCP) metrics for Infiniband HCAs and switches&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
collecting Infiniband statistics.  By default, it monitors the local HCAs&lt;br /&gt;
but can also be configured to monitor remote GUIDs such as IB switches.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-hdb-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">c3aa78daa2240f2bb7efee67143cdfc50a67e31f635bd26b4b5e46d22841e43b</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-hdb-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-hdb</strong> - Performance Co-Pilot (PCP) metrics for SAP HANA databases&lt;br /&gt;</p>

<p>This package provides a PMDA to export metric values about a SAP HANA&lt;br /&gt;
database (https://www.sap.com/products/data-cloud/hana.html).</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-haproxy-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">b2afbe9315dc3c77ff4bd0026e268be443a64d1b4b09b51bb0bcf46de997a598</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-haproxy-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-haproxy</strong> - Performance Co-Pilot (PCP) metrics for HAProxy&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
extracting performance metrics from HAProxy over the HAProxy stats socket.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-hacluster-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">f57a0a4dedd4171f6e13756dfd9fe8a879926abb772717c02026726c2f69a9e4</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-hacluster-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-hacluster</strong> - Performance Co-Pilot (PCP) metrics for High Availability Clusters&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
collecting metrics about linux High Availability (HA) Clusters.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-gpsd-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">1edc3c94a846ef0fd7f8eeac5530d68e872a65d5101c9be5c70c97c557fa1e55</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-gpsd-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-gpsd</strong> - Performance Co-Pilot (PCP) metrics for a GPS Daemon&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
collecting metrics about a GPS Daemon.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-gpfs-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">2b67fd40c62ae539d400f418a380ee94ad6f8f1a51c9ce962cc7876dfeef72f7</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-gpfs-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-gpfs</strong> - Performance Co-Pilot (PCP) metrics for GPFS Filesystem&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
collecting metrics about the GPFS filesystem.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-gluster-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">5bb8de219b20bc25f86b875a22b5b1df706416b46064ef0000fe2e668f68a713</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-gluster-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-gluster</strong> - Performance Co-Pilot (PCP) metrics for the Gluster filesystem&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
collecting metrics about the gluster filesystem.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-farm-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">6d471e888d25d256809a9fe11bc7d9ac5bd2882366ad2fdad7ffe7fafacac894</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-farm-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-farm</strong> - Performance Co-Pilot (PCP) metrics for Seagate FARM Log metrics&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metric Domain Agent (PMDA) for&lt;br /&gt;
collecting metrics from Seagate Hard Drive vendor specific Field Accessible&lt;br /&gt;
Reliability Metrics (FARM) Log making use of data from the smartmontools&lt;br /&gt;
package.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-elasticsearch-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">bbe69a85eb745a75f6d3dd59abf721f942b4f4a77fb6885c6db1abbfb456bca5</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-elasticsearch-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-elasticsearch</strong> - Performance Co-Pilot (PCP) metrics for Elasticsearch&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
collecting metrics about Elasticsearch.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-ds389log-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">3d71cb6c5374c30b6ce2b169eb25150aa6c3847e95911b6399fe8491c818ba6f</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-ds389log-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-ds389log</strong> - Performance Co-Pilot (PCP) metrics for 389 Directory Server Loggers&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
collecting metrics from a 389 Directory Server log.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-ds389-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">df4f37ad5a0c283188a2d278c2d6774d1f4ed80b139e3992b137f983012b3bec</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-ds389-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-ds389</strong> - Performance Co-Pilot (PCP) metrics for 389 Directory Servers&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
collecting metrics about a 389 Directory Server.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-docker-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">c41807df21a41d623c45aab7c4378b852e47736706a8088e8d7cbe82ca815e5a</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-docker-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-docker</strong> - Performance Co-Pilot (PCP) metrics from the Docker daemon&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
collecting metrics using the Docker daemon REST API.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-dm-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">ceacad2b6bf594a6e2ff7a6b8c69172580313b41125a94bdfa71632c4a22d12b</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-dm-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-dm</strong> - Performance Co-Pilot (PCP) metrics for the Device Mapper Cache and Thin Client&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
collecting metrics about the Device Mapper Cache and Thin Client.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-denki-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">71d76518f2c1b964b063d25cb4e8dbcaaf50ee4c789ff328f992f26e69e87f41</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-denki-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-denki</strong> - Performance Co-Pilot (PCP) metrics dealing with electrical power&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
collecting metrics related to the electrical power consumed by and inside&lt;br /&gt;
the system.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-dbping-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">54c95485d5abe289f365abc2302c003b7d549c352b823e41d1134ac3279893dc</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-dbping-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-dbping</strong> - Performance Co-Pilot (PCP) metrics for Database response times and Availablility&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
collecting metrics about the Database response times and Availablility.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-cisco-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">cfbd56fa5e19dd8ff0759509a2196628c455ba41f51aba1b0265cad2b0119a1d</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-cisco-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-cisco</strong> - Performance Co-Pilot (PCP) metrics for Cisco routers&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
collecting metrics about Cisco routers.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-cifs-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">77fca29701fcf5d04b84a94e3daff6bc88698be629cc142d2170f5d9d8bcc59a</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-cifs-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-cifs</strong> - Performance Co-Pilot (PCP) metrics for the CIFS protocol&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
collecting metrics about the Common Internet Filesytem.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-bpftrace-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">4bbb4a1a366163e854cd7a32263a400655190af1f02bfe376c55593ed27d6e08</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-bpftrace-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-bpftrace</strong> - Performance Co-Pilot (PCP) metrics from bpftrace scripts&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
extracting performance metrics from bpftrace scripts.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-bpf-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">be52e1a2b0526d0c875c7b32141e624c41a9102a246e52e5ea0c7521ebe3d1e8</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-bpf-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-bpf</strong> - Performance Co-Pilot (PCP) metrics from eBPF ELF modules&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
extracting performance metrics from eBPF ELF modules.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-bonding-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">180b6376eb43db2faa4f55cc92b0cdf7cad70c2596a3fc83273a483c3cb40030</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-bonding-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-bonding</strong> - Performance Co-Pilot (PCP) metrics for Bonded network interfaces&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
collecting metrics about bonded network interfaces.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-bind2-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">238114a4665c567e912b0eff935a1cc56265c11aef3d8a012133326197e0f946</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-bind2-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-bind2</strong> - Performance Co-Pilot (PCP) metrics for BIND servers&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
collecting metrics from BIND (Berkeley Internet Name Domain).</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-bcc-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">8e14fbe77b9bca7413e82dbabc98d9412b04a48a1d17c6606f73f62d7fadfaee</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-bcc-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-bcc</strong> - Performance Co-Pilot (PCP) metrics from eBPF/BCC modules&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
extracting performance metrics from eBPF/BCC Python modules.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-bash-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">1a9c11d1b93ffb08036b69f47fbf31040b7f1a3c0951f5cc18bdbfca09be379d</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-bash-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-bash</strong> - Performance Co-Pilot (PCP) metrics for the Bash shell&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
collecting metrics about the Bash shell.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-apache-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">792147b6f3e9430d03da4167e290b5099697186b1434cb916859fbf6d6349971</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-apache-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-apache</strong> - Performance Co-Pilot (PCP) metrics for the Apache webserver&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
collecting metrics about the Apache webserver.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-amdgpu-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">b4e44e24d2aa21605ceba00d609b859ad767557f0cd91ffd88018adfb7ded9af</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-amdgpu-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-amdgpu</strong> - Performance Co-Pilot (PCP) metrics from AMD GPU devices&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
extracting performance metrics from AMDGPU devices.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-pmda-activemq-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">6a175ccda108bcc7708254315c3a01bc08717b6f9bcb2f680a90cfa7246d77d6</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-pmda-activemq-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-pmda-activemq</strong> - Performance Co-Pilot (PCP) metrics for ActiveMQ&lt;br /&gt;</p>

<p>This package contains the PCP Performance Metrics Domain Agent (PMDA) for&lt;br /&gt;
collecting metrics about the ActiveMQ message broker.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-libs-devel-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">4d82d1befd0a111090d375924a6077355cfa543465729181ff446bd1736d4b1b</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-libs-devel-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-libs-devel</strong> - Performance Co-Pilot (PCP) development headers&lt;br /&gt;</p>

<p>Performance Co-Pilot (PCP) headers for development.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-libs-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">3c98072fb892912d9fc03fa49e0f7885bdfd72dbbec4548c717dc11e9ddf3808</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-libs-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-libs</strong> - Performance Co-Pilot run-time libraries&lt;br /&gt;</p>

<p>Performance Co-Pilot (PCP) run-time libraries</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-import-sar2pcp-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">e14c8dbc5cbbd32d3e515c988f26355b3d9ab59446f6b1ee97e727e8be1416b6</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-import-sar2pcp-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-import-sar2pcp</strong> - Performance Co-Pilot tools for importing sar data into PCP archive logs&lt;br /&gt;</p>

<p>Performance Co-Pilot (PCP) front-end tools for importing sar data&lt;br /&gt;
into standard PCP archive logs for replay with any PCP monitoring tool.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-import-pmseries-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">e6cc6cf80039b30b4ff253503be02832b5e5c486710779e3d43c2bb3978980ba</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-import-pmseries-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-import-pmseries</strong> - Performance Co-Pilot tools importing PCP archives for pmseries queries&lt;br /&gt;</p>

<p>Performance Co-Pilot (PCP) tools for importing PCP archives into Valkey&lt;br /&gt;
or Redis for fast, scalable time series access via pmseries(1) queries.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-import-mrtg2pcp-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">345e2a26f0a0115c8a11d3fbffb966e4d9e0092243861b87390854dc450a5135</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-import-mrtg2pcp-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-import-mrtg2pcp</strong> - Performance Co-Pilot tools for importing MTRG data into PCP archive logs&lt;br /&gt;</p>

<p>Performance Co-Pilot (PCP) front-end tools for importing MTRG data&lt;br /&gt;
into standard PCP archive logs for replay with any PCP monitoring tool.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-import-iostat2pcp-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">ed564369584f9ed518776364c9031ac119ac9cd9bc94fcbe5bff8f223ec8f3f4</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-import-iostat2pcp-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-import-iostat2pcp</strong> - Performance Co-Pilot tools for importing iostat data into PCP archive logs&lt;br /&gt;</p>

<p>Performance Co-Pilot (PCP) front-end tools for importing iostat data&lt;br /&gt;
into standard PCP archive logs for replay with any PCP monitoring tool.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-import-ganglia2pcp-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">2772131705b8b7c8310689db15ed8030f4145f62b099725dec7a8d4e09094cc7</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-import-ganglia2pcp-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-import-ganglia2pcp</strong> - Performance Co-Pilot tools for importing ganglia data into PCP archive logs&lt;br /&gt;</p>

<p>Performance Co-Pilot (PCP) front-end tools for importing ganglia data&lt;br /&gt;
into standard PCP archive logs for replay with any PCP monitoring tool.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-import-collectl2pcp-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">0e6e07e6254c98883a8d4c7c40fff436b9559336cd7d99cae89dc464e60497aa</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-import-collectl2pcp-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-import-collectl2pcp</strong> - Performance Co-Pilot tools for importing collectl log files into PCP archive logs&lt;br /&gt;</p>

<p>Performance Co-Pilot (PCP) front-end tools for importing collectl data&lt;br /&gt;
into standard PCP archive logs for replay with any PCP monitoring tool.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-import-benchmarks-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">229a22c9e00d216e75e94fd2e6d0e9833dbf3596b7d45b2aa6677fd72c738804</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-import-benchmarks-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-import-benchmarks</strong> - Performance Co-Pilot tools importing benchmark results into PCP archive logs&lt;br /&gt;</p>

<p>Performance Co-Pilot (PCP) front-end tools for importing JSON benchmark&lt;br /&gt;
results files into PCP archives for replay with PCP analysis tools.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-gui-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">844d0f9fc1420a2f635c216a3f9461dee80f4a4d944e8d5c82977cf42924266d</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-gui-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-gui</strong> - Visualization tools for the Performance Co-Pilot toolkit&lt;br /&gt;</p>

<p>Visualization tools for the Performance Co-Pilot toolkit.&lt;br /&gt;
The pcp-gui package primarily includes visualization tools for&lt;br /&gt;
monitoring systems using live and archived Performance Co-Pilot&lt;br /&gt;
(PCP) sources.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-geolocate-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">23947c55839f86b69b6fd2f7e04c9f86c1f610be7af82af7a809ac68ba617f1d</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-geolocate-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-geolocate</strong> - Performance Co-Pilot geographical location metric labels&lt;br /&gt;</p>

<p>Performance Co-Pilot (PCP) tools that automatically apply metric labels&lt;br /&gt;
containing latitude and longitude, based on IP-address-based lookups.&lt;br /&gt;
Used with live maps to show metric values from different locations.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-export-zabbix-agent-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">d1d72c25af0279c0487875986f5f616871ab953e9dba1afdb76e63ff25e879a3</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-export-zabbix-agent-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-export-zabbix-agent</strong> - Module for exporting PCP metrics to Zabbix agent&lt;br /&gt;</p>

<p>Performance Co-Pilot (PCP) module for exporting metrics from PCP to&lt;br /&gt;
Zabbix via the Zabbix agent - see zbxpcp(3) for further details.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-export-pcp2zabbix-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">f0f12fc43ab010146e3316334cc9dff6feb60bd40bf9b2da6fa35cdf1a11e47d</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-export-pcp2zabbix-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-export-pcp2zabbix</strong> - Performance Co-Pilot tools for exporting PCP metrics to Zabbix&lt;br /&gt;</p>

<p>Performance Co-Pilot (PCP) front-end tools for exporting metric values&lt;br /&gt;
to the Zabbix (https://www.zabbix.org/) monitoring software.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-export-pcp2xml-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">579f16c37bed0e403abcc02527745e37d2c5503af12d6e16be757bbcf7221f44</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-export-pcp2xml-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-export-pcp2xml</strong> - Performance Co-Pilot tools for exporting PCP metrics in XML format&lt;br /&gt;</p>

<p>Performance Co-Pilot (PCP) front-end tools for exporting metric values&lt;br /&gt;
in XML format.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-export-pcp2spark-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">03fabcd7e6525694e4108b1cfa98757153f90b00c1e641b38453a4e7f0aaedf2</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-export-pcp2spark-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-export-pcp2spark</strong> - Performance Co-Pilot tools for exporting PCP metrics to Apache Spark&lt;br /&gt;</p>

<p>Performance Co-Pilot (PCP) front-end tools for exporting metric values&lt;br /&gt;
in JSON format to Apache Spark. See https://spark.apache.org/ for&lt;br /&gt;
further details on Apache Spark.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-export-pcp2opentelemetry-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">8d302864c200077273bba434b864098ce787a4b67204375cd0c6e5f7bb28ddc6</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-export-pcp2opentelemetry-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-export-pcp2opentelemetry</strong> - Performance Co-Pilot tools for exporting PCP metrics in OpenTelemetry format&lt;br /&gt;</p>

<p>Performance Co-Pilot (PCP) front-end tools for exporting metric values&lt;br /&gt;
in OpenTelemetry (https://opentelemetry.io/) format.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-export-pcp2openmetrics-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">efb64354ca42c0315228599b02cb4d9902f475dca758d274fc9dd50b582b80fc</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-export-pcp2openmetrics-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-export-pcp2openmetrics</strong> - Performance Co-Pilot tools for exporting PCP metrics in OpenMetrics format&lt;br /&gt;</p>

<p>Performance Co-Pilot (PCP) front-end tools for exporting metric values&lt;br /&gt;
in OpenMetrics (https://openmetrics.io/) format.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-export-pcp2json-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">18541fa7a37cbdd2dc2eb045ffa15c372156071d9d80aec3d940bd4bd0e5b33e</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-export-pcp2json-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-export-pcp2json</strong> - Performance Co-Pilot tools for exporting PCP metrics in JSON format&lt;br /&gt;</p>

<p>Performance Co-Pilot (PCP) front-end tools for exporting metric values&lt;br /&gt;
in JSON format.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-export-pcp2influxdb-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">6f36617902c60ffd77142bdd3fd866e0ff882debc5de57008e7010f57fbd1a17</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-export-pcp2influxdb-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-export-pcp2influxdb</strong> - Performance Co-Pilot tools for exporting PCP metrics to InfluxDB&lt;br /&gt;</p>

<p>Performance Co-Pilot (PCP) front-end tools for exporting metric values&lt;br /&gt;
to InfluxDB (https://influxdata.com/time-series-platform/influxdb).</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-export-pcp2graphite-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">6893bb697e7090e49b9b67ace0865b35262cd58527865660c9e0a4b530c4e865</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-export-pcp2graphite-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-export-pcp2graphite</strong> - Performance Co-Pilot tools for exporting PCP metrics to Graphite&lt;br /&gt;</p>

<p>Performance Co-Pilot (PCP) front-end tools for exporting metric values&lt;br /&gt;
to graphite (http://graphite.readthedocs.org).</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-export-pcp2elasticsearch-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">6a8306aed26c3243cf26239060054c30b55b40481799d7b14c21e5fe10561743</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-export-pcp2elasticsearch-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-export-pcp2elasticsearch</strong> - Performance Co-Pilot tools for exporting PCP metrics to ElasticSearch&lt;br /&gt;</p>

<p>Performance Co-Pilot (PCP) front-end tools for exporting metric values&lt;br /&gt;
to Elasticsearch - a distributed, RESTful search and analytics engine.&lt;br /&gt;
See https://www.elastic.co/community for further details.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-devel-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">f44837b00e53669beef4ceeb41990ebd47e1e7307f5a77138d226c7a8ba50b55</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-devel-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-devel</strong> - Performance Co-Pilot (PCP) development tools and documentation&lt;br /&gt;</p>

<p>Performance Co-Pilot (PCP) documentation and tools for development.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-conf-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">a122656f28f1254958e729dad7ac89bd1af6d395f3a455158c7af1a5949a6837</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-conf-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp-conf</strong> - Performance Co-Pilot run-time configuration&lt;br /&gt;</p>

<p>Performance Co-Pilot (PCP) run-time configuration</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-7.0.3-5.el10_2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:14:36 PM GMT</pubDate>
      <guid isPermaLink="false">f40811204f248761c62047172ab03787c00b7d8aab2dcdd8cc848094b9d39371</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-7.0.3-5.el10_2.riscv64.rpm</link>
      <description><p><strong>pcp</strong> - System-level performance monitoring and performance management&lt;br /&gt;</p>

<p>Performance Co-Pilot (PCP) provides a framework and services to support&lt;br /&gt;
system-level performance monitoring and performance management.&lt;br /&gt;
&lt;br /&gt;
The PCP open source release provides a unifying abstraction for all of&lt;br /&gt;
the interesting performance data in a system, and allows client&lt;br /&gt;
applications to easily retrieve and process any subset of that data.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>haproxy-3.0.5-6.el10_2.2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:06:12 PM GMT</pubDate>
      <guid isPermaLink="false">9503725293912828a576fef2e83593ac0235ec8f6f42b411e22f0b1ff5321fc5</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/h/haproxy-3.0.5-6.el10_2.2.riscv64.rpm</link>
      <description><p><strong>haproxy</strong> - HAProxy reverse proxy for high availability environments&lt;br /&gt;</p>

<p>HAProxy is a TCP/HTTP reverse proxy which is particularly suited for high&lt;br /&gt;
availability environments. Indeed, it can:&lt;br /&gt;
 - route HTTP requests depending on statically assigned cookies&lt;br /&gt;
 - spread load among several servers while assuring server persistence&lt;br /&gt;
   through the use of HTTP cookies&lt;br /&gt;
 - switch to backup servers in the event a main one fails&lt;br /&gt;
 - accept connections to special ports dedicated to service monitoring&lt;br /&gt;
 - stop accepting connections without breaking existing ones&lt;br /&gt;
 - add, modify, and delete HTTP headers in both directions&lt;br /&gt;
 - block requests matching particular patterns&lt;br /&gt;
 - report detailed status to authenticated users from a URI&lt;br /&gt;
   intercepted from the application</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Mon, 10 Aug 2026 GMT - Oyvind Albrigtsen &amp;lt;oalbrigt@redhat.com&amp;gt; - 3.0.5-6.2
- Fix uint16_t overflow in FCGI demux record length (CVE-2026-55203)
  Resolves: RHEL-211068
- Fix NULL pointer dereference in hpack_dht_insert() (CVE-2026-55204)
  Resolves: RHEL-211081

Wed, 06 May 2026 GMT - Oyvind Albrigtsen &amp;lt;oalbrigt@redhat.com&amp;gt; - 3.0.5-6.1
- peers: fix OOB heap write in dictionary cache update
  Resolves: RHEL-173335

Thu, 06 Nov 2025 GMT - Oyvind Albrigtsen &amp;lt;oalbrigt@redhat.com&amp;gt; - 3.0.5-6
- Fix denial of service vulnerability in mjson library (CVE-2025-11230)
  Resolves: RHEL-126653

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>pcp-doc-7.0.3-5.el10_2.noarch</title>
      <pubDate>Mon, 17 Aug 2026 09:03:35 PM GMT</pubDate>
      <guid isPermaLink="false">757a4161491cf30a033460691485424abf99b5d10f1ea4bf3cd53c6c8b154c70</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/p/pcp-doc-7.0.3-5.el10_2.noarch.rpm</link>
      <description><p><strong>pcp-doc</strong> - Documentation and tutorial for the Performance Co-Pilot&lt;br /&gt;</p>

<p>Documentation and tutorial for the Performance Co-Pilot&lt;br /&gt;
Performance Co-Pilot (PCP) provides a framework and services to support&lt;br /&gt;
system-level performance monitoring and performance management.&lt;br /&gt;
&lt;br /&gt;
The pcp-doc package provides useful information on using and&lt;br /&gt;
configuring the Performance Co-Pilot (PCP) toolkit for system&lt;br /&gt;
level performance management.  It includes tutorials, HOWTOs,&lt;br /&gt;
and other detailed documentation about the internals of core&lt;br /&gt;
PCP utilities and daemons, and the PCP graphical tools.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-5
- Fix CVE-2026-16530: __pmLogLoadInDom OOB pointer dereference (RHEL-213746)
- Fix CVE-2026-16531: pmproxy logger servlet path traversal (RHEL-213756)
- Backport remaining PCP security hardening fixes from private-pcp
- pmieconf and pmlogmv command injection hardening (CWE-78)
- libpcp PDU decode OOB read and overflow guards (CWE-125/190/195)
- timezone and zoneinfo string validation
- pmdaroot peer credential verification (CWE-403)
- pmproxy REST CERT_REQD enforcement and logger servlet authentication

Fri, 14 Aug 2026 GMT - Jan Kuřík &amp;lt;jkurik@redhat.com&amp;gt; - 7.0.3-4
- Fix CVE-2026-16524: linux_sockets PMDA command injection (RHEL-213659)
- Fix CVE-2026-16526: FD_CLOEXEC privilege escalation via pmdaroot (RHEL-213695)
- Fix CVE-2026-16527: pmproxy unauthenticated /store access (RHEL-213721)
- Fix CVE-2026-16529: __pmGetPDU signed integer overflow DoS (RHEL-213732)

Thu, 19 Feb 2026 GMT - William Cohen &amp;lt;wcohen@redhat.com&amp;gt; - 7.0.3-3
- Update selinux polices for rocestat and nvidia pmdas (RHEL-132402, RHEL-134388, RHEL-133519)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>libguestfs-inspect-icons-1:1.58.1-9.el10_2.noarch</title>
      <pubDate>Mon, 17 Aug 2026 09:03:22 PM GMT</pubDate>
      <guid isPermaLink="false">d5f97c12ae413ac6b1767c50132182c0ae26463359f6a651d3918db25713334a</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/l/libguestfs-inspect-icons-1.58.1-9.el10_2.noarch.rpm</link>
      <description><p><strong>libguestfs-inspect-icons</strong> - Additional dependencies for inspecting guest icons&lt;br /&gt;</p>

<p>libguestfs-inspect-icons is a metapackage that pulls in additional&lt;br /&gt;
dependencies required by libguestfs to pull icons out of non-Linux&lt;br /&gt;
guests.  Install this package if you want libguestfs to be able to&lt;br /&gt;
inspect non-Linux guests and display icons from them.&lt;br /&gt;
&lt;br /&gt;
The only reason this is a separate package is to avoid core libguestfs&lt;br /&gt;
having to depend on Perl.  See https://bugzilla.redhat.com/1194158</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 13 Aug 2026 GMT - Richard W.M. Jones &amp;lt;rjones@redhat.com&amp;gt; - 1:1.58.1-9
- Add setfiles optional excludes parameter to libguestfs
  resolves: RHEL-239808

Fri, 10 Jul 2026 GMT - Richard W.M. Jones &amp;lt;rjones@redhat.com&amp;gt; - 1:1.58.1-8
- Ignore RHEL 7 AGFL inconsistency in xfs_repair
  resolves: RHEL-192920
- Use bind mount to overwrite /etc/resolv.conf
  resolves: RHEL-192946

Mon, 11 May 2026 GMT - Richard W.M. Jones &amp;lt;rjones@redhat.com&amp;gt; - 1:1.58.1-6
- Fix binary LUKS keys
  resolves: RHEL-174519
- Use git to apply patches, since there is an unsupported binary patch

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>libguestfs-bash-completion-1:1.58.1-9.el10_2.noarch</title>
      <pubDate>Mon, 17 Aug 2026 09:03:22 PM GMT</pubDate>
      <guid isPermaLink="false">4a4b636cc0699cae97dbe90b5ad8ebdefb949ba69e4e5a68a04ecf5687e88288</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/l/libguestfs-bash-completion-1.58.1-9.el10_2.noarch.rpm</link>
      <description><p><strong>libguestfs-bash-completion</strong> - Bash tab-completion scripts for libguestfs tools&lt;br /&gt;</p>

<p>Install this package if you want intelligent bash tab-completion&lt;br /&gt;
for guestfish, guestmount and various virt-* tools.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 13 Aug 2026 GMT - Richard W.M. Jones &amp;lt;rjones@redhat.com&amp;gt; - 1:1.58.1-9
- Add setfiles optional excludes parameter to libguestfs
  resolves: RHEL-239808

Fri, 10 Jul 2026 GMT - Richard W.M. Jones &amp;lt;rjones@redhat.com&amp;gt; - 1:1.58.1-8
- Ignore RHEL 7 AGFL inconsistency in xfs_repair
  resolves: RHEL-192920
- Use bind mount to overwrite /etc/resolv.conf
  resolves: RHEL-192946

Mon, 11 May 2026 GMT - Richard W.M. Jones &amp;lt;rjones@redhat.com&amp;gt; - 1:1.58.1-6
- Fix binary LUKS keys
  resolves: RHEL-174519
- Use git to apply patches, since there is an unsupported binary patch

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>libcurl-devel-8.12.1-4.el10_2.4.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 10:34:06 AM GMT</pubDate>
      <guid isPermaLink="false">1700328573074825ceac1e0bba6ba23ea2f036a3e0c29b5735d0dd47da34246d</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/l/libcurl-devel-8.12.1-4.el10_2.4.riscv64.rpm</link>
      <description><p><strong>libcurl-devel</strong> - Files needed for building applications with libcurl&lt;br /&gt;</p>

<p>The libcurl-devel package includes header files and libraries necessary for&lt;br /&gt;
developing programs which use the libcurl library. It contains the API&lt;br /&gt;
documentation of the library, too.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Wed, 29 Jul 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 8.12.1-4.4
- fix proxy environment variable change detection (CVE-2026-8927)

Wed, 22 Jul 2026 GMT - Jacek Migacz &amp;lt;jmigacz@redhat.com&amp;gt; - 8.12.1-4.el10_2.3
- fix HTTP Negotiate connection reuse auth bypass (CVE-2026-1965)
- fix OAuth2 bearer token leak via redirect and netrc (CVE-2026-3783)
- fix proxy connection reuse with wrong credentials (CVE-2026-3784)

Mon, 13 Jul 2026 GMT - Jacek Migacz &amp;lt;jmigacz@redhat.com&amp;gt; - 8.12.1-4.2
- fix SSH host key mismatch on type difference (CVE-2026-9547)
- fix schemeless URL handling with --proto-default (CVE-2026-12064)
- fix TLS/STARTTLS connection reuse vulnerability (CVE-2026-8286)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>bind-utils-32:9.18.33-15.el10_2.10.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 10:10:56 AM GMT</pubDate>
      <guid isPermaLink="false">917eaade827c3797253e645b9d2b49762286b63bbd4f6ebc60bacf9ab442a8a6</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/b/bind-utils-9.18.33-15.el10_2.10.riscv64.rpm</link>
      <description><p><strong>bind-utils</strong> - Utilities for querying DNS name servers&lt;br /&gt;</p>

<p>Bind-utils contains a collection of utilities for querying DNS (Domain&lt;br /&gt;
Name System) name servers to find out information about Internet&lt;br /&gt;
hosts. These tools will provide you with the IP addresses for given&lt;br /&gt;
host names, as well as other information about registered domains and&lt;br /&gt;
network addresses.&lt;br /&gt;
&lt;br /&gt;
You should install bind-utils if you need to get information from DNS name&lt;br /&gt;
servers.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Mon, 27 Jul 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 32:9.18.33-15.10
- Validate NSEC3 signer matches owning zone (CVE-2026-10723)

Fri, 24 Jul 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 32:9.18.33-15.9
- Reject out-of-zone NSEC next owner names (CVE-2026-13321)

Thu, 23 Jul 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 32:9.18.33-15.7
- Fix reference-counted dns_slabheaders in cache (CVE-2026-11622)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>bind-libs-32:9.18.33-15.el10_2.10.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 10:10:56 AM GMT</pubDate>
      <guid isPermaLink="false">94629cfcfcdd621ca1eb770a21cb0a1560ab974e96afc37c009b2c3696728ad6</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/b/bind-libs-9.18.33-15.el10_2.10.riscv64.rpm</link>
      <description><p><strong>bind-libs</strong> - Libraries used by the BIND DNS packages&lt;br /&gt;</p>

<p>Contains heavyweight version of BIND suite libraries used by both named DNS&lt;br /&gt;
server and utilities in bind-utils package.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Mon, 27 Jul 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 32:9.18.33-15.10
- Validate NSEC3 signer matches owning zone (CVE-2026-10723)

Fri, 24 Jul 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 32:9.18.33-15.9
- Reject out-of-zone NSEC next owner names (CVE-2026-13321)

Thu, 23 Jul 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 32:9.18.33-15.7
- Fix reference-counted dns_slabheaders in cache (CVE-2026-11622)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>bind-dnssec-utils-32:9.18.33-15.el10_2.10.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 10:10:56 AM GMT</pubDate>
      <guid isPermaLink="false">4cd448bdaee896882dd40c7fcb4ec3304e47414ce5bbcc3119d4ff679298577c</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/b/bind-dnssec-utils-9.18.33-15.el10_2.10.riscv64.rpm</link>
      <description><p><strong>bind-dnssec-utils</strong> - DNSSEC keys and zones management utilities&lt;br /&gt;</p>

<p>bind-dnssec-utils contains a collection of utilities for editing&lt;br /&gt;
DNSSEC keys and BIND zone files. These tools provide generation,&lt;br /&gt;
revocation and verification of keys and DNSSEC signatures in zone files.&lt;br /&gt;
&lt;br /&gt;
You should install bind-dnssec-utils if you need to sign a DNS zone&lt;br /&gt;
or maintain keys for it.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Mon, 27 Jul 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 32:9.18.33-15.10
- Validate NSEC3 signer matches owning zone (CVE-2026-10723)

Fri, 24 Jul 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 32:9.18.33-15.9
- Reject out-of-zone NSEC next owner names (CVE-2026-13321)

Thu, 23 Jul 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 32:9.18.33-15.7
- Fix reference-counted dns_slabheaders in cache (CVE-2026-11622)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>bind-chroot-32:9.18.33-15.el10_2.10.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 10:10:56 AM GMT</pubDate>
      <guid isPermaLink="false">c3d837b97b22a571030fa208141cf88abe1b209751940262eca476f8ed9185dc</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/b/bind-chroot-9.18.33-15.el10_2.10.riscv64.rpm</link>
      <description><p><strong>bind-chroot</strong> - A chroot runtime environment for the ISC BIND DNS server, named(8)&lt;br /&gt;</p>

<p>This package contains a tree of files which can be used as a&lt;br /&gt;
chroot(2) jail for the named(8) program from the BIND package.&lt;br /&gt;
Based on the code from Jan "Yenya" Kasprzak &lt;kas@fi.muni.cz&gt;</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Mon, 27 Jul 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 32:9.18.33-15.10
- Validate NSEC3 signer matches owning zone (CVE-2026-10723)

Fri, 24 Jul 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 32:9.18.33-15.9
- Reject out-of-zone NSEC next owner names (CVE-2026-13321)

Thu, 23 Jul 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 32:9.18.33-15.7
- Fix reference-counted dns_slabheaders in cache (CVE-2026-11622)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>bind-32:9.18.33-15.el10_2.10.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 10:10:56 AM GMT</pubDate>
      <guid isPermaLink="false">208cd8551dea61980a37c33ada2900abb310b5b5f26575315d66ff38bcd1a49b</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/b/bind-9.18.33-15.el10_2.10.riscv64.rpm</link>
      <description><p><strong>bind</strong> - The Berkeley Internet Name Domain (BIND) DNS (Domain Name System) server&lt;br /&gt;</p>

<p>BIND (Berkeley Internet Name Domain) is an implementation of the DNS&lt;br /&gt;
(Domain Name System) protocols. BIND includes a DNS server (named),&lt;br /&gt;
which resolves host names to IP addresses; a resolver library&lt;br /&gt;
(routines for applications to use when interfacing with DNS); and&lt;br /&gt;
tools for verifying that the DNS server is operating properly.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Mon, 27 Jul 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 32:9.18.33-15.10
- Validate NSEC3 signer matches owning zone (CVE-2026-10723)

Fri, 24 Jul 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 32:9.18.33-15.9
- Reject out-of-zone NSEC next owner names (CVE-2026-13321)

Thu, 23 Jul 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 32:9.18.33-15.7
- Fix reference-counted dns_slabheaders in cache (CVE-2026-11622)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>bind-license-32:9.18.33-15.el10_2.10.noarch</title>
      <pubDate>Mon, 17 Aug 2026 10:05:08 AM GMT</pubDate>
      <guid isPermaLink="false">470321a2c37f6c39ee7f0684c36c00a139e950ddb2714a6ac3c706283b610ca3</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/b/bind-license-9.18.33-15.el10_2.10.noarch.rpm</link>
      <description><p><strong>bind-license</strong> - License of the BIND DNS suite&lt;br /&gt;</p>

<p>Contains license of the BIND DNS suite.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Mon, 27 Jul 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 32:9.18.33-15.10
- Validate NSEC3 signer matches owning zone (CVE-2026-10723)

Fri, 24 Jul 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 32:9.18.33-15.9
- Reject out-of-zone NSEC next owner names (CVE-2026-13321)

Thu, 23 Jul 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 32:9.18.33-15.7
- Fix reference-counted dns_slabheaders in cache (CVE-2026-11622)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>libXfont2-2.0.6-5.el10_2.3.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 10:00:28 AM GMT</pubDate>
      <guid isPermaLink="false">a55e87832fe0c0281a023a10e387df66a7e3e1f5066e7fe433cb139e0ae4edcf</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/l/libXfont2-2.0.6-5.el10_2.3.riscv64.rpm</link>
      <description><p><strong>libXfont2</strong> - X.Org X11 libXfont2 runtime library&lt;br /&gt;</p>

<p>X.Org X11 libXfont2 runtime library</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Thu, 06 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 2.0.6-5.3
- CVE fix for: CVE-2026-59679
  Resolves: https://redhat.atlassian.net/browse/RHEL-221949

Thu, 06 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 2.0.6-5.2
- CVE fix for: CVE-2026-44950
  Resolves: https://redhat.atlassian.net/browse/RHEL-222024

Wed, 08 Jul 2026 GMT - Olivier Fourdan &amp;lt;ofourdan@redhat.com&amp;gt; - 2.0.6-5.1
- CVE fix for: CVE-2026-56001, CVE-2026-56002, CVE-2026-56003
  Resolves: https://redhat.atlassian.net/browse/RHEL-191882
  Resolves: https://redhat.atlassian.net/browse/RHEL-191930
  Resolves: https://redhat.atlassian.net/browse/RHEL-191949

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>gstreamer1-plugins-bad-free-libs-1.26.7-2.el10_2.7.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:56:43 AM GMT</pubDate>
      <guid isPermaLink="false">7c08c433fba089d3e974c7afe64f5b67daaef3c79d084aa2981323dc2cd97dc9</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/g/gstreamer1-plugins-bad-free-libs-1.26.7-2.el10_2.7.riscv64.rpm</link>
      <description><p><strong>gstreamer1-plugins-bad-free-libs</strong> - Runtime libraries for the GStreamer media framework "bad" plug-ins&lt;br /&gt;</p>

<p>GStreamer is a streaming media framework, based on graphs of elements which&lt;br /&gt;
operate on media data.&lt;br /&gt;
&lt;br /&gt;
This package contains the runtime libraries for plugins that&lt;br /&gt;
aren't tested well enough, or the code is not of good enough quality.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Mon, 10 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 1.26.7-2.7
- Fix ADPCM decoder input validation (CVE-2026-19387)
  Resolves: RHEL-235500

Sat, 11 Jul 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 1.26.7-2.5
- Fix rfbsrc hextile and color read handling for non-32bpp
  pixel formats (CVE-2026-59691)
  Resolves: RHEL-193550

Tue, 23 Jun 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 1.26.7-2.4
- Fix bytes/bits confusion in AV1 tile data size parsing (CVE-2026-52718)
  Resolves: RHEL-184391

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>gstreamer1-plugins-bad-free-1.26.7-2.el10_2.7.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:56:43 AM GMT</pubDate>
      <guid isPermaLink="false">73983ad95c5c266362e0db38440144bd0f59717eac970de32c4c96a776256f59</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/g/gstreamer1-plugins-bad-free-1.26.7-2.el10_2.7.riscv64.rpm</link>
      <description><p><strong>gstreamer1-plugins-bad-free</strong> - GStreamer streaming media framework "bad" plugins&lt;br /&gt;</p>

<p>GStreamer is a streaming media framework, based on graphs of elements which&lt;br /&gt;
operate on media data.&lt;br /&gt;
&lt;br /&gt;
This package contains plug-ins that aren't tested well enough, or the code&lt;br /&gt;
is not of good enough quality.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Mon, 10 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 1.26.7-2.7
- Fix ADPCM decoder input validation (CVE-2026-19387)
  Resolves: RHEL-235500

Sat, 11 Jul 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 1.26.7-2.5
- Fix rfbsrc hextile and color read handling for non-32bpp
  pixel formats (CVE-2026-59691)
  Resolves: RHEL-193550

Tue, 23 Jun 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 1.26.7-2.4
- Fix bytes/bits confusion in AV1 tile data size parsing (CVE-2026-52718)
  Resolves: RHEL-184391

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>gstreamer1-plugins-ugly-free-1.26.7-2.el10_2.2.riscv64</title>
      <pubDate>Mon, 17 Aug 2026 09:54:10 AM GMT</pubDate>
      <guid isPermaLink="false">e30eeb082de18beec9483b8cfa214504c538f4c71824aa01bb89a5f2555a0b30</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/g/gstreamer1-plugins-ugly-free-1.26.7-2.el10_2.2.riscv64.rpm</link>
      <description><p><strong>gstreamer1-plugins-ugly-free</strong> - GStreamer streaming media framework "ugly" plugins&lt;br /&gt;</p>

<p>GStreamer is a streaming media framework, based on graphs of elements which&lt;br /&gt;
operate on media data.&lt;br /&gt;
&lt;br /&gt;
This package contains plug-ins whose license is not fully compatible with LGPL.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Mon, 10 Aug 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 1.26.7-2.2
- Fix CVE-2026-19389: integer overflow vulnerabilities in asfdemux
  Resolves: RHEL-235515

Tue, 23 Jun 2026 GMT - RHEL Packaging Agent &amp;lt;redhat-ymir-agent@redhat.com&amp;gt; - 1.26.7-2.1
- Fix CVE-2026-53703: multiple security issues in rmdemux
  Resolves: RHEL-184439

Tue, 31 Mar 2026 GMT - Wim Taymans &amp;lt;wtaymans@redhat.com&amp;gt; - 1.26.7-2
- Add patches for CVE-2026-2920 and CVE-2026-2922
  Resolves: RHEL-156044, RHEL-156165

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>libnghttp2-devel-1.68.0-3.el10_2.2.riscv64</title>
      <pubDate>Fri, 14 Aug 2026 03:28:56 AM GMT</pubDate>
      <guid isPermaLink="false">1d58fb75aa55c0c190969d989ab340a9ffb05c9ddf7ea98080aec9bfa4c1d7e7</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/l/libnghttp2-devel-1.68.0-3.el10_2.2.riscv64.rpm</link>
      <description><p><strong>libnghttp2-devel</strong> - Files needed for building applications with libnghttp2&lt;br /&gt;</p>

<p>The libnghttp2-devel package includes libraries and header files needed&lt;br /&gt;
for building applications with libnghttp2.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Mon, 10 Aug 2026 GMT - Jan Macku &amp;lt;jamacku@redhat.com&amp;gt; 1.68.0-3.2
- fix HTTP Request/Response Smuggling and Response-Queue Poisoning via ambiguous HTTP/1.1 Upgrade requests (CVE-2026-58055)

Tue, 31 Mar 2026 GMT - Jan Macku &amp;lt;jamacku@redhat.com&amp;gt; 1.68.0-3.1
- fix Denial of service: Assertion failure due to the missing state validation (CVE-2026-27135)

Wed, 11 Feb 2026 GMT - Jan Macku &amp;lt;jamacku@redhat.com&amp;gt; 1.68.0-3
- Spec bump (RHEL-103655)

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>dracut-live-107-9.el10_2.riscv64</title>
      <pubDate>Fri, 14 Aug 2026 03:18:24 AM GMT</pubDate>
      <guid isPermaLink="false">98f779b470a9a9dbeef9a4635b84f301d29aa2c9632b991f58c3fc06d2887c6b</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/d/dracut-live-107-9.el10_2.riscv64.rpm</link>
      <description><p><strong>dracut-live</strong> - dracut modules to build a dracut initramfs with live image capabilities&lt;br /&gt;</p>

<p>This package requires everything which is needed to build an&lt;br /&gt;
initramfs with dracut, with live image capabilities, like Live CDs.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Tue, 28 Jul 2026 GMT - Pavel Valena &amp;lt;pvalena@redhat.com&amp;gt; - 107-9
- fix(base): escape die() message in emergency hook script
- fix(base): replace eval with safe variable indirection in splitsep and export_n

Thu, 25 Jun 2026 GMT - Pavel Valena &amp;lt;pvalena@redhat.com&amp;gt; - 107-8
- revert: "feat(i18n): pull 'drm' or 'simpledrm' module unless excluded"

Wed, 27 May 2026 GMT - Pavel Valena &amp;lt;pvalena@redhat.com&amp;gt; - 107-7
- build: rebuild without an obsoleted patch

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>dracut-caps-107-9.el10_2.riscv64</title>
      <pubDate>Fri, 14 Aug 2026 03:18:24 AM GMT</pubDate>
      <guid isPermaLink="false">b03925a989b140510bacd74b8853de905f71336a862e67ac6cfd696a7451271b</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/d/dracut-caps-107-9.el10_2.riscv64.rpm</link>
      <description><p><strong>dracut-caps</strong> - dracut modules to build a dracut initramfs which drops capabilities&lt;br /&gt;</p>

<p>This package requires everything which is needed to build an&lt;br /&gt;
initramfs with dracut, which drops capabilities.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Tue, 28 Jul 2026 GMT - Pavel Valena &amp;lt;pvalena@redhat.com&amp;gt; - 107-9
- fix(base): escape die() message in emergency hook script
- fix(base): replace eval with safe variable indirection in splitsep and export_n

Thu, 25 Jun 2026 GMT - Pavel Valena &amp;lt;pvalena@redhat.com&amp;gt; - 107-8
- revert: "feat(i18n): pull 'drm' or 'simpledrm' module unless excluded"

Wed, 27 May 2026 GMT - Pavel Valena &amp;lt;pvalena@redhat.com&amp;gt; - 107-7
- build: rebuild without an obsoleted patch

...&lt;/pre&gt;</description>
    </item>
    <item>
      <title>gnome-remote-desktop-49.3-4.el10_2.riscv64</title>
      <pubDate>Thu, 13 Aug 2026 06:14:33 PM GMT</pubDate>
      <guid isPermaLink="false">a48a958533d7aabda86b32af24b8aca90d754000fe8cf185305ed1459a2ca1f7</guid>
      <link>https://dl.rockylinux.org/pub/rocky/10/AppStream/riscv64/os/Packages/g/gnome-remote-desktop-49.3-4.el10_2.riscv64.rpm</link>
      <description><p><strong>gnome-remote-desktop</strong> - GNOME Remote Desktop screen share service&lt;br /&gt;</p>

<p>GNOME Remote Desktop is a remote desktop and screen sharing service for the&lt;br /&gt;
GNOME desktop environment.</p>

<p><strong>Change Log:</strong></p>

&lt;pre&gt;Tue, 11 Aug 2026 GMT - Jonas Ådahl &amp;lt;jadahl@redhat.com&amp;gt; - 49.3-4
- Backport connection throttling

Wed, 06 May 2026 GMT - Joan Torres Lopez &amp;lt;joantolo@redhat.com&amp;gt; - 49.3-3
- Support remote login to sessions from gnome-headless-session@.service

Wed, 06 May 2026 GMT - Joan Torres Lopez &amp;lt;joantolo@redhat.com&amp;gt; - 49.3-2
- Update version requirements after rebase to 49

...&lt;/pre&gt;</description>
    </item>
  </channel>
</rss>
