RLBA-2019:3337 perl:5.24 bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.1 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for perl-Pod-Perldoc, perl-DBI, perl-Pod-Escapes, perl-Devel-PPPort, perl-Pod-Usage, perl-Sub-Exporter, perl-perlfaq, perl-CPAN-Meta-YAML, perl-Digest, perl-podlators, perl-bignum, perl-Text-ParseWords, perl-Text-Template, perl-DBD-MySQL, perl-Text-Glob, perl-Pod-Simple, perl-Compress-Raw-Bzip2, perl-Params-Check, perl-Perl-OSType, perl-Data-OptList, perl-App-cpanminus, perl-Exporter, perl-Params-Util, perl-constant, perl-Carp, perl-Pod-Checker, perl-File-Fetch, perl-Thread-Queue, perl-Filter-Simple, perl-Test-Harness, perl-Module-Build, perl-File-HomeDir, perl-parent, perl-Unicode-Collate, perl-Sys-Syslog, perl-threads-shared, perl-File-Which, perl-IPC-SysV, perl-generators, perl-Getopt-Long, perl-File-Temp, perl-Module-CoreList, perl-IPC-Cmd, perl-Scalar-List-Utils, perl-HTTP-Tiny, perl-URI, perl-Locale-Codes, perl-Data-Section, perl-IPC-System-Simple, perl-Compress-Raw-Zlib, perl-ExtUtils-Manifest, perl-DBD-SQLite, perl-Text-Tabs+Wrap, perl-ExtUtils-CBuilder, perl-Algorithm-Diff, perl-CPAN-Meta-Check, perl-DB_File, perl-Math-BigRat, perl-Locale-Maketext, perl-Time-Local, perl-Text-Balanced, perl-Devel-Size, perl-FCGI, perl-Unicode-Normalize, perl-IO-Socket-IP, perl-Pod-Parser, perl-Time-HiRes, perl, perl-Math-BigInt, perl-JSON-PP, perl-String-ShellQuote, perl-MIME-Base64, perl-Archive-Tar, perl-Filter, perl-ExtUtils-Install, perl-Parse-PMFile, perl-PerlIO-via-QuotedPrint, perl-Data-Dumper, perl-B-Debug, perl-CPAN, perl-PathTools, perl-CPAN-Meta, perl-Module-Load-Conditional, perl-Package-Generator, perl-IO-Compress, perl-autodie, perl-Compress-Bzip2, perl-Text-Diff, perl-Digest-MD5, perl-Encode, perl-Socket, perl-version, perl-File-pushd, perl-Fedora-VSP, perl-Software-License, perl-Env, perl-Sub-Install, perl-CPAN-Meta-Requirements, perl-libnet, perl-Config-Perl-V, perl-local-lib, perl-Module-Metadata, perl-Math-BigInt-FastCalc, perl-inc-latest, perl-experimental, perl-Digest-SHA, perl-Archive-Zip, perl-Term-ANSIColor, perl-Storable, perl-File-Path, perl-threads, perl-Module-Load, perl-YAML, perl-Test-Simple, perl-ExtUtils-MakeMaker, perl-Term-Cap, perl-MRO-Compat, perl-ExtUtils-ParseXS, perl-Module-CPANfile. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.1 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms perl-DBD-SQLite-1.58-2.el8.aarch64.rpm 419c2f99f97d2552ff8a4ef685163e0d470e3d34991b893d535a5d19e390abd2 RLEA-2019:3511 libvarlink bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.1 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for libvarlink. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.1 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms libvarlink-18-3.el8.aarch64.rpm eefac8affba9f0ffe661e20b095f8a311eb454880c7514edea46b19289ba9e20 libvarlink-util-18-3.el8.aarch64.rpm f3258bbd49606763bacb796b2ca9fcdfb93d1f2af2263eef51f4aa617525c0f9 RLBA-2019:3522 perl-DBD-SQLite bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.1 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for perl-DBD-SQLite. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.1 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms perl-DBD-SQLite-1.58-2.el8.aarch64.rpm 419c2f99f97d2552ff8a4ef685163e0d470e3d34991b893d535a5d19e390abd2 RLBA-2019:3537 checkpolicy bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.1 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for checkpolicy. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.1 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms checkpolicy-2.9-1.el8.aarch64.rpm 85a92ea40d179d5c8d575353016577773b38797ed48d3220b795a0610c9bcb4a RLBA-2019:3546 perl-Socket bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.1 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for perl-Socket. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.1 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms perl-Socket-2.027-3.el8.aarch64.rpm 625e2506fc309b87c95b87aee1e9cc7a4b19e08f9806abc5e330416fa821bb4c RLSA-2019:3553 Low: GNOME security, bug fix, and enhancement update GNOME is the default desktop environment of Rocky Linux. Security Fix(es): * evince: uninitialized memory use in function tiff_document_render() and tiff_document_get_thumbnail() (CVE-2019-11459) * gvfs: improper authorization in daemon/gvfsdaemon.c in gvfsd (CVE-2019-12795) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.1 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 Low An update is available for pidgin, gnome-desktop3, pango, gdk-pixbuf2. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list GNOME is the default desktop environment of Rocky Linux. Security Fix(es): * evince: uninitialized memory use in function tiff_document_render() and tiff_document_get_thumbnail() (CVE-2019-11459) * gvfs: improper authorization in daemon/gvfsdaemon.c in gvfsd (CVE-2019-12795) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.1 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms gdk-pixbuf2-2.36.12-5.el8.aarch64.rpm a826981c0a518d67df3e9c947cfb96bc61b09b19a601272c8206bcde4eb9f849 RLBA-2019:3558 libzfcphbaapi bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.1 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for libhbaapi. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.1 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms libhbaapi-2.2.9-13.el8.aarch64.rpm 2a982d38686268ce946a35b140323843b41bcf4f86f04e15a2c6f2592172d109 RLBA-2019:3593 ipset bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.1 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for ipset. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.1 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms ipset-7.1-1.el8.aarch64.rpm 0a2b56f8aa34fad5ee219a692eccc91d300286b8b63b18937f16c413267c3ec0 ipset-libs-7.1-1.el8.aarch64.rpm 353a637a19c14f9cd5a3bc8bb0d4c2c94b45ddbdebcff2d40c350e076f4bb23b RLEA-2019:3608 libaio bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.1 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for libaio. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.1 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms libaio-0.3.112-1.el8.aarch64.rpm da76d734ed31d9ec6899557ae3aa2c2e5112c15ba906136d4318953bcb75d1d9 libaio-devel-0.3.112-1.el8.aarch64.rpm 4ba0ee7717a098b88567c1d3d59c881869a3331c54cba51c293f64599e7d2f79 RLBA-2019:3614 dbus-python bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.1 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for dbus-python. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.1 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms python3-dbus-1.2.4-15.el8.aarch64.rpm 8865a9e80253f34442bfee4070e82cd34f774c26888f95db85703b4a8e374ce5 RLBA-2019:3621 libidn2 bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.1 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for libidn2. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.1 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms libidn2-2.2.0-1.el8.aarch64.rpm aa0cb5360ef9778dcc983ec8bb5e007829fd6345b855506ce807c760cef9b394 RLBA-2019:3627 python-schedutils bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.1 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for python-schedutils. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.1 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms python3-schedutils-0.6-6.el8.aarch64.rpm ce7de99e86be728beb50ea2d48bc8ae96057a7820c0490bc75d2dcd56af0c1c9 RLBA-2019:3634 blktrace bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.1 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for blktrace. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.1 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms blktrace-1.2.0-10.el8.aarch64.rpm 54ae41a6892ff437cd7507501c24fb7e7a12ff43df79b85616cdb647b50269f2 RLSA-2019:3643 Low: gettext security update The gettext packages provide a documentation for producing multi-lingual messages in programs, set of conventions about how programs should be written, a runtime library, and a directory and file naming organization for the message catalogs. Security Fix(es): * gettext: double free in default_add_message in read-catalog.c (CVE-2018-18751) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.1 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 Low An update is available for gettext. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list The gettext packages provide a documentation for producing multi-lingual messages in programs, set of conventions about how programs should be written, a runtime library, and a directory and file naming organization for the message catalogs. Security Fix(es): * gettext: double free in default_add_message in read-catalog.c (CVE-2018-18751) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.1 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms gettext-0.19.8.1-17.el8.aarch64.rpm 1eff0d87b3a2c04af01d5366fa2b0e0e44d04c1d8d817303034d4957bc92446e gettext-devel-0.19.8.1-17.el8.aarch64.rpm 9228e47301a7d17a84388335781d21930961bf8ecf8bfe7b86a36abcf3e3c46f gettext-libs-0.19.8.1-17.el8.aarch64.rpm a6b06b4f33a3d0de31e4bcfac261ba4606105c437da6ba3cdf2ffd4fca3bef1d RLBA-2019:3645 gmp bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.1 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for gmp. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.1 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms gmp-6.1.2-10.el8.aarch64.rpm 71df60a64752e3624879da78d1148e416510992872c4a62eedbe830d0331a238 gmp-c++-6.1.2-10.el8.aarch64.rpm 502a470b708be3f50328810e8f921fe843e7824f4fcb9e26fad5a7bd7b574679 gmp-devel-6.1.2-10.el8.aarch64.rpm e124830c0b3bd4fa020a931300ecbc4b6fd626622fc716a98caf6d13823f7b60 RLBA-2019:3664 nfs4-acl-tools bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.1 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for nfs4-acl-tools. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.1 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms nfs4-acl-tools-0.3.5-3.el8.aarch64.rpm 9f5ae78a3c9d4be4c32e42cbdd2ab5a0acb6a942fc0b7fb9a75a8cdfa30ad0a6 RLBA-2019:3667 mtr bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.1 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for mtr. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.1 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms mtr-0.92-3.el8.aarch64.rpm d64bb179e1f8050d4e9695581256daeb1703f5b903a363a6529d85a824faae2f RLEA-2019:3677 isns-utils bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.1 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for isns-utils. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.1 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms isns-utils-0.99-1.el8.aarch64.rpm dcadba74a2077c3053b21afaf641ec94fa195aaccfcebcc3b249f19a962bf7d1 isns-utils-devel-0.99-1.el8.aarch64.rpm 3372f3ade84baf469852bda0060204047162e39785eabec0edc7cdec09c908f0 isns-utils-libs-0.99-1.el8.aarch64.rpm 9f55208fcf4b82fcd97186b2aee678e3161d6ab96aec0d72b5670464b375f6df RLSA-2020:0633 Important: ppp security update The ppp packages contain the Point-to-Point Protocol (PPP) daemon and documentation for PPP support. The PPP protocol provides a method for transmitting datagrams over serial point-to-point links. PPP is usually used to dial in to an Internet Service Provider (ISP) or other organization over a modem and phone line. Security Fix(es): * ppp: Buffer overflow in the eap_request and eap_response functions in eap.c (CVE-2020-8597) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 Important An update is available for ppp. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list The ppp packages contain the Point-to-Point Protocol (PPP) daemon and documentation for PPP support. The PPP protocol provides a method for transmitting datagrams over serial point-to-point links. PPP is usually used to dial in to an Internet Service Provider (ISP) or other organization over a modem and phone line. Security Fix(es): * ppp: Buffer overflow in the eap_request and eap_response functions in eap.c (CVE-2020-8597) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. rocky-linux-8-aarch64-baseos-rpms ppp-2.4.7-26.el8_1.aarch64.rpm 84da5ae3817c7844fc78e9560ae1214598890677b32b9e27db7ceb27965379bc RLSA-2020:0902 Important: icu security update The International Components for Unicode (ICU) library provides robust and full-featured Unicode services. Security Fix(es): * ICU: Integer overflow in UnicodeString::doAppend() (CVE-2020-10531) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 Important An update is available for icu. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list The International Components for Unicode (ICU) library provides robust and full-featured Unicode services. Security Fix(es): * ICU: Integer overflow in UnicodeString::doAppend() (CVE-2020-10531) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. rocky-linux-8-aarch64-baseos-rpms icu-60.3-2.el8_1.aarch64.rpm ffc8c07efaa33ccf0ca1a5742254b5bb1e2e067c443362d031f9cfd0919ad777 libicu-60.3-2.el8_1.aarch64.rpm cf3e51d81ade44c08d4e0656622e72182ac946ef2dc13e69c7219b6c87b451bd libicu-devel-60.3-2.el8_1.aarch64.rpm b1f56820b30ab248d7c27c2eef95a93c33fe13bfc9f903105749b558c71401a6 RLBA-2020:1759 newt bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.2 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for newt. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.2 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms newt-0.52.20-11.el8.aarch64.rpm fce833e684bdc6bc0f5535938c1c6f51193a72d7e8639b7f5df8671630463c38 RLSA-2020:1766 Moderate: GNOME security, bug fix, and enhancement update GNOME is the default desktop environment of Rocky Linux. Security Fix(es): * LibRaw: stack-based buffer overflow in the parse_makernote function of dcraw_common.cpp (CVE-2018-20337) * gdm: lock screen bypass when timed login is enabled (CVE-2019-3825) * gvfs: mishandling of file ownership in daemon/gvfsbackendadmin.c (CVE-2019-12447) * gvfs: race condition in daemon/gvfsbackendadmin.c due to admin backend not implementing query_info_on_read/write (CVE-2019-12448) * gvfs: mishandling of file's user and group ownership in daemon/gvfsbackendadmin.c due to unavailability of root privileges (CVE-2019-12449) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.2 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 Moderate An update is available for mozjs52, gnome-tweaks, clutter, gnome-menus, mozjs60, baobab. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list GNOME is the default desktop environment of Rocky Linux. Security Fix(es): * LibRaw: stack-based buffer overflow in the parse_makernote function of dcraw_common.cpp (CVE-2018-20337) * gdm: lock screen bypass when timed login is enabled (CVE-2019-3825) * gvfs: mishandling of file ownership in daemon/gvfsbackendadmin.c (CVE-2019-12447) * gvfs: race condition in daemon/gvfsbackendadmin.c due to admin backend not implementing query_info_on_read/write (CVE-2019-12448) * gvfs: mishandling of file's user and group ownership in daemon/gvfsbackendadmin.c due to unavailability of root privileges (CVE-2019-12449) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.2 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms mozjs52-52.9.0-2.el8.aarch64.rpm b0c7147dc767378dda468419b1c5a957b2ceb61c1abda4150bf359444db42990 mozjs60-60.9.0-4.el8.aarch64.rpm 50bfb770c46f602468bf975a7f045cba587233f3e98178df93431b1cdca7b5fa RLEA-2020:1767 flatpak bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.2 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for bubblewrap. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.2 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms bubblewrap-0.4.0-1.el8.aarch64.rpm 6f6c80914ad5b49b919ab98d41aa1f53788c67f8b11a710a5f9cce378ec9ce9a RLBA-2020:1768 ipcalc bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.2 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for ipcalc. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.2 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms ipcalc-0.2.4-4.el8.aarch64.rpm ed85625f7d445ec09e6899decca59a937fb2fef7233793d7aa7e2275715912f8 RLBA-2020:1791 libnetfilter_cthelper bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.2 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for libnetfilter_cthelper. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.2 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms libnetfilter_cthelper-1.0.0-15.el8.aarch64.rpm 8b5f5cbfd75bb73091e7bc55c5ab363cd3dc5d6e63c9d33dea0a124015190bc5 RLBA-2020:1839 mcstrans bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.2 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for mcstrans. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.2 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms mcstrans-2.9-2.el8.aarch64.rpm 85b6efbfad0178032d180e2dfbbb81660bc547a92f87107ee1a334242c87e0d4 RLBA-2020:1846 conntrack-tools bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.2 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for conntrack-tools. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.2 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms conntrack-tools-1.4.4-10.el8.aarch64.rpm d7f42bcce048a313193c586871f37f1dddef88e03dd81b01ebfea072ef59aad1 RLBA-2020:1850 pigz bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.2 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for pigz. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.2 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms pigz-2.4-4.el8.aarch64.rpm 0c5fe94281f32a67bd797950594f7edb8997055d2ad0ec8c35ccf0917cff6f07 RLSA-2020:1852 Moderate: patch security and bug fix update The patch program applies diff files to originals. The diff command is used to compare an original to a changed file. Diff lists the changes made to the file. A person who has the original file can then use the patch command with the diff file to add the changes to their original file (patching the file). Security Fix(es): * patch: the following of symlinks in inp.c and util.c is mishandled in cases other than input files (CVE-2019-13636) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.2 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 Moderate An update is available for patch. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list The patch program applies diff files to originals. The diff command is used to compare an original to a changed file. Diff lists the changes made to the file. A person who has the original file can then use the patch command with the diff file to add the changes to their original file (patching the file). Security Fix(es): * patch: the following of symlinks in inp.c and util.c is mishandled in cases other than input files (CVE-2019-13636) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.2 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms patch-2.7.6-11.el8.aarch64.rpm 122ffe9bdd3f7b881a06ebbf0ec5297304e28ccd21600b19383bfb09e2c6629f RLBA-2020:1853 diffutils bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.2 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for diffutils. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.2 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms diffutils-3.6-6.el8.aarch64.rpm fb48a106969405619bd9e14a8b1012d9d6c1e95cc96c4a5af56cfd6a4a498917 RLBA-2020:1871 openssl-pkcs11 bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.2 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for openssl-pkcs11. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.2 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms openssl-pkcs11-0.4.10-2.el8.aarch64.rpm 3ddcd2baa25dab6f06bf2f6e92ceac9a7b90ebf2bb33e6e2daed5e959d81467f RLBA-2020:1910 cifs-utils bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.2 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for cifs-utils. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.2 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms cifs-utils-6.8-3.el8.aarch64.rpm dc9b7440091788f957db2a1a360218237d984212a0c25283c3658a4c6a4f8411 pam_cifscreds-6.8-3.el8.aarch64.rpm ad108ac76809ca43a523f5be6a1abaebb041f1a854bc6cd89a1ec681466e570b RLBA-2020:1919 ppp bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.2 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for ppp. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.2 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms ppp-2.4.7-26.el8_1.aarch64.rpm 84da5ae3817c7844fc78e9560ae1214598890677b32b9e27db7ceb27965379bc RLSA-2020:2755 Important: nghttp2 security update libnghttp2 is a library implementing the Hypertext Transfer Protocol version 2 (HTTP/2) protocol in C. Security Fix(es): * nghttp2: overly large SETTINGS frames can lead to DoS (CVE-2020-11080) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 Important An update is available for nghttp2. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list libnghttp2 is a library implementing the Hypertext Transfer Protocol version 2 (HTTP/2) protocol in C. Security Fix(es): * nghttp2: overly large SETTINGS frames can lead to DoS (CVE-2020-11080) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. rocky-linux-8-aarch64-baseos-rpms libnghttp2-1.33.0-3.el8_3.1.aarch64.rpm be36021cc5b45a2de10b59592486ebb8850d0da196721e05807caf6340362cd8 RLSA-2020:3654 Moderate: libcroco security update The libcroco is a standalone Cascading Style Sheet level 2 (CSS2) parsing and manipulation library. Security Fix(es): * libcroco: Stack overflow in function cr_parser_parse_any_core in cr-parser.c (CVE-2020-12825) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 Moderate An update is available for libcroco. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list The libcroco is a standalone Cascading Style Sheet level 2 (CSS2) parsing and manipulation library. Security Fix(es): * libcroco: Stack overflow in function cr_parser_parse_any_core in cr-parser.c (CVE-2020-12825) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. rocky-linux-8-aarch64-baseos-rpms libcroco-0.6.12-4.el8_2.1.aarch64.rpm 073f402932fa613540e4ebefa3c221df051ded054eaf44be03b590699c3e77e7 RLBA-2020:4434 net-tools bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.3 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for net-tools. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.3 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms net-tools-2.0-0.52.20160912git.el8.aarch64.rpm 0d27b2b67161f9c092266a10c8e68c2f135fb3b9461721be098a9e358e94aa22 RLSA-2020:4436 Low: gnome-software and fwupd security, bug fix, and enhancement update The gnome-software packages contain an application that makes it easy to add, remove, and update software in the GNOME desktop. The appstream-data package provides the distribution specific AppStream metadata required for the GNOME and KDE software centers. The fwupd packages provide a service that allows session software to update device firmware. The following packages have been upgraded to a later upstream version: gnome-software (3.36.1), fwupd (1.4.2). Security Fix(es): * fwupd: Possible bypass in signature verification (CVE-2020-10759) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.3 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 Low An update is available for appstream-data, libxmlb. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list The gnome-software packages contain an application that makes it easy to add, remove, and update software in the GNOME desktop. The appstream-data package provides the distribution specific AppStream metadata required for the GNOME and KDE software centers. The fwupd packages provide a service that allows session software to update device firmware. The following packages have been upgraded to a later upstream version: gnome-software (3.36.1), fwupd (1.4.2). Security Fix(es): * fwupd: Possible bypass in signature verification (CVE-2020-10759) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.3 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms libxmlb-0.1.15-1.el8.aarch64.rpm 358fb3cf46f764f7e110314ba256e83667a36bfbbc62594ec017277fa3c70614 RLSA-2020:4451 Moderate: GNOME security, bug fix, and enhancement update GNOME is the default desktop environment of Rocky Linux. The following packages have been upgraded to a later upstream version: gnome-remote-desktop (0.1.8), pipewire (0.3.6), vte291 (0.52.4), webkit2gtk3 (2.28.4), xdg-desktop-portal (1.6.0), xdg-desktop-portal-gtk (1.6.0). (BZ#1775345, BZ#1779691, BZ#1817143, BZ#1832347, BZ#1837406) Security Fix(es): * webkitgtk: Multiple security issues (CVE-2019-8625, CVE-2019-8710, CVE-2019-8720, CVE-2019-8743, CVE-2019-8764, CVE-2019-8766, CVE-2019-8769, CVE-2019-8771, CVE-2019-8782, CVE-2019-8783, CVE-2019-8808, CVE-2019-8811, CVE-2019-8812, CVE-2019-8813, CVE-2019-8814, CVE-2019-8815, CVE-2019-8816, CVE-2019-8819, CVE-2019-8820, CVE-2019-8823, CVE-2019-8835, CVE-2019-8844, CVE-2019-8846, CVE-2020-3862, CVE-2020-3864, CVE-2020-3865, CVE-2020-3867, CVE-2020-3868, CVE-2020-3885, CVE-2020-3894, CVE-2020-3895, CVE-2020-3897, CVE-2020-3899, CVE-2020-3900, CVE-2020-3901, CVE-2020-3902, CVE-2020-9802, CVE-2020-9803, CVE-2020-9805, CVE-2020-9806, CVE-2020-9807, CVE-2020-9843, CVE-2020-9850, CVE-2020-9862, CVE-2020-9893, CVE-2020-9894, CVE-2020-9895, CVE-2020-9915, CVE-2020-9925, CVE-2020-10018, CVE-2020-11793) * gnome-settings-daemon: Rocky Enterprise Software Foundation Customer Portal password logged and passed as command line argument when user registers through GNOME control center (CVE-2020-14391) * LibRaw: lack of thumbnail size range check can lead to buffer overflow (CVE-2020-15503) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.3 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 Moderate An update is available for xdg-desktop-portal-gtk, tracker, LibRaw, vte291, gnome-remote-desktop, PackageKit, pipewire, pipewire0.2, potrace, gtk3, dleyna-renderer, libsoup, pygobject3, webrtc-audio-processing, frei0r-plugins, gnome-session, gsettings-desktop-schemas. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list GNOME is the default desktop environment of Rocky Linux. The following packages have been upgraded to a later upstream version: gnome-remote-desktop (0.1.8), pipewire (0.3.6), vte291 (0.52.4), webkit2gtk3 (2.28.4), xdg-desktop-portal (1.6.0), xdg-desktop-portal-gtk (1.6.0). (BZ#1775345, BZ#1779691, BZ#1817143, BZ#1832347, BZ#1837406) Security Fix(es): * webkitgtk: Multiple security issues (CVE-2019-8625, CVE-2019-8710, CVE-2019-8720, CVE-2019-8743, CVE-2019-8764, CVE-2019-8766, CVE-2019-8769, CVE-2019-8771, CVE-2019-8782, CVE-2019-8783, CVE-2019-8808, CVE-2019-8811, CVE-2019-8812, CVE-2019-8813, CVE-2019-8814, CVE-2019-8815, CVE-2019-8816, CVE-2019-8819, CVE-2019-8820, CVE-2019-8823, CVE-2019-8835, CVE-2019-8844, CVE-2019-8846, CVE-2020-3862, CVE-2020-3864, CVE-2020-3865, CVE-2020-3867, CVE-2020-3868, CVE-2020-3885, CVE-2020-3894, CVE-2020-3895, CVE-2020-3897, CVE-2020-3899, CVE-2020-3900, CVE-2020-3901, CVE-2020-3902, CVE-2020-9802, CVE-2020-9803, CVE-2020-9805, CVE-2020-9806, CVE-2020-9807, CVE-2020-9843, CVE-2020-9850, CVE-2020-9862, CVE-2020-9893, CVE-2020-9894, CVE-2020-9895, CVE-2020-9915, CVE-2020-9925, CVE-2020-10018, CVE-2020-11793) * gnome-settings-daemon: Rocky Enterprise Software Foundation Customer Portal password logged and passed as command line argument when user registers through GNOME control center (CVE-2020-14391) * LibRaw: lack of thumbnail size range check can lead to buffer overflow (CVE-2020-15503) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.3 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms libsoup-2.62.3-2.el8.aarch64.rpm 9908cdbae42df3f5c2715d0b256afbbacb31c65f466cd1375aeeeec76c6336eb python3-gobject-base-3.28.3-2.el8.aarch64.rpm 40a1899ca1bd4dc2eef88d82ec231dccc92f29d4d3832b9428210703c3886bd4 RLBA-2020:4452 libhugetlbfs bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.3 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for libhugetlbfs. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.3 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms libhugetlbfs-2.21-17.el8.aarch64.rpm 11f2050d2d08542d98902124eb5b99c4311a09651c90cc64a5268b04f25f6058 libhugetlbfs-devel-2.21-17.el8.aarch64.rpm da632c6fd4d2d94e6c0ce0d6ab0e1fd507094baf8af2e1d39682ff8d738437a6 libhugetlbfs-utils-2.21-17.el8.aarch64.rpm 155dc4ea3914c69133c4c3533f005b3349cbfa0205e691fe866adc24e3c1afba RLEA-2020:4468 lsof bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.3 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for lsof. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.3 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms lsof-4.93.2-1.el8.aarch64.rpm 66bb72e26ca364c07e51755e6507fa6d97f0e9bb1294da44efde063899630fb4 RLEA-2020:4487 smartmontools bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.3 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for smartmontools. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.3 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms smartmontools-7.1-1.el8.aarch64.rpm fa7401bd0681ddb28fb820c5c8d17535ca13e1fc1e563d59abcb5440ccc1c723 RLBA-2020:4488 libkcapi bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.3 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for libkcapi. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.3 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms libkcapi-1.2.0-2.el8.aarch64.rpm 40bb0bf7d09b0511266a088b3880a7882946e499f6dd15f0c594821183790eb6 libkcapi-hmaccalc-1.2.0-2.el8.aarch64.rpm 1a85bda175b9d2bce6e9af14a22536fbad39dae41f53e14f12b19574e78f9e12 RLBA-2020:4501 iprutils bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.3 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for iprutils. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.3 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms iprutils-2.4.19-1.el8.aarch64.rpm ce5743a99f1e525a2eebba40baef710e74961ab322e8eadd17f00579f719cdfa RLBA-2020:4512 libteam bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.3 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for libteam. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.3 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms libteam-1.31-2.el8.aarch64.rpm 0443964bf4c1e40b75149c169b2114eebc1ec40c9b980e274cb0de21c8894044 libteam-doc-1.31-2.el8.aarch64.rpm ec10ce62c69236dc0267fc4af6fb69079205180200e409f72459097391669703 network-scripts-team-1.31-2.el8.aarch64.rpm 5f602e449cdd77a2125d5afbc4565474a927b8a227e864850595dafe653c405a teamd-1.31-2.el8.aarch64.rpm 4abfc50b32b2cdc5b74337b8d5b48b756fbfa0c049c2b7081161721c306b103a RLBA-2020:4522 libqb bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.3 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for libqb. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.3 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms libqb-1.0.3-12.el8.aarch64.rpm 1b4ae223f3471acfcbd5847999e548773ab3a671d89b9ef494ac7342c627d0c7 libqb-devel-1.0.3-12.el8.aarch64.rpm d566020d31af71c1fadb7bd98177567842ef6d1d85e9e292c3c69dc20ad8eaad RLBA-2020:4538 logrotate bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.3 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for logrotate. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.3 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms logrotate-3.14.0-4.el8.aarch64.rpm 59f7ee3b84da5742845d9c7b4938c92b7219c3eeda69aa1d9b2f3fb920d7f859 RLEA-2020:4555 libpsl bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.3 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for libpsl. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.3 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms libpsl-0.20.2-6.el8.aarch64.rpm 7ea182e4df97af9e073eedec5717ac3ade26bf1a0e8e166f527c2a5eca5493c6 RLEA-2020:4556 libnetfilter_queue bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.3 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for libnetfilter_queue. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.3 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms libnetfilter_queue-1.0.4-3.el8.aarch64.rpm b027c8d0be850086db4f228064e579f186cb2506ecc9523ae609c61b4ed5ad41 RLBA-2020:4557 zstd bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.3 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for zstd. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.3 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms libzstd-1.4.4-1.el8.aarch64.rpm 44d11e194b4d5ebf9bad5f1dc8adb136061e747c68a20bc14034359c98feda87 libzstd-devel-1.4.4-1.el8.aarch64.rpm b3befd27564abf4dcca29cbc7d236f7d2def40b3a3b6060ea5ba3ec47e978b50 RLBA-2020:4564 kabi-dw bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.3 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for kabi-dw. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.3 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms kabi-dw-0-0.10.20200515gitb52ac13.el8.aarch64.rpm 702cbce378eccc1a203e651e691982fcffa69c5dd6cf35030f36153fec56a537 RLBA-2020:4580 kbd bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.3 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for kbd. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.3 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms kbd-2.0.4-10.el8.aarch64.rpm bab8ec1ce9458548c9c6f841987aa619481186889e5557cec9349b863e261e1a RLEA-2020:4587 libusbx bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.3 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for libusbx. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.3 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms libusbx-1.0.23-4.el8.aarch64.rpm dcb16d11caf370d59d350957aa9ae26e34b2990a5c1bfafdc7acd6da6ccef185 libusbx-devel-1.0.23-4.el8.aarch64.rpm a2a01cbb30bcd0b6afafdd999647ddf0132b3e096705ea68db273a5d873ec303 RLBA-2020:4592 psmisc bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.3 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for psmisc. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.3 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms psmisc-23.1-5.el8.aarch64.rpm 386de99da2075353af278c277373d7bde3a7302062f9a48a3b6526d74aa8f215 RLEA-2020:4596 efivar bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.3 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for efivar. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.3 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms efivar-37-4.el8.aarch64.rpm b9b312e223b37e0dde17c2f193ea4ca5d3fdb53a5506eefaea1f15d8ed8c17d8 efivar-libs-37-4.el8.aarch64.rpm e6d21a1930022b4df95246a99a9611e6322d00417ad0608c7f40c5f039d6c38f RLBA-2020:4600 snappy bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.3 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for snappy. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.3 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms snappy-1.1.8-3.el8.aarch64.rpm d6e0b0098a14cc64a1bd7b19932ffdc1a1ec9f03cebbaa3baf28a155328cd9f4 RLEA-2020:4680 lmdb bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.3 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for lmdb. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.3 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms lmdb-libs-0.9.24-1.el8.aarch64.rpm a4c3990f0faed2b2459af07c65bb757490389f1f47aa1c7ece2b72729f435ef5 RLEA-2020:4727 new module: perl:5.30 This enhancement update adds the perl:5.30 module to Rocky Linux 8. (BZ#1713592) For detailed information on changes in this release, see the Rocky Linux 8.3 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for perl-Pod-Perldoc, perl-DBI, perl-Pod-Escapes, perl-Devel-PPPort, perl-Pod-Usage, perl-Sub-Exporter, perl-perlfaq, perl-Object-HashBase, perl-CPAN-Meta-YAML, perl-Digest, perl-podlators, perl-bignum, perl-Text-ParseWords, perl-Text-Template, perl-DBD-MySQL, perl-Text-Glob, perl-Pod-Simple, perl-Compress-Raw-Bzip2, perl-Params-Check, perl-Term-Table, perl-CPAN-DistnameInfo, perl-Perl-OSType, perl-Data-OptList, perl-App-cpanminus, perl-Importer, perl-Exporter, perl-Params-Util, perl-constant, perl-Carp, perl-Pod-Checker, perl-File-Fetch, perl-Thread-Queue, perl-Filter-Simple, perl-Test-Harness, perl-Module-Build, perl-File-HomeDir, perl-parent, perl-Unicode-Collate, perl-Sys-Syslog, perl-threads-shared, perl-File-Which, perl-IPC-SysV, perl-generators, perl-Getopt-Long, perl-File-Temp, perl-Module-CoreList, perl-IPC-Cmd, perl-Scalar-List-Utils, perl-HTTP-Tiny, perl-URI, perl-Data-Section, perl-IPC-System-Simple, perl-Compress-Raw-Zlib, perl-ExtUtils-Manifest, perl-DBD-SQLite, perl-Text-Tabs+Wrap, perl-ExtUtils-CBuilder, perl-Algorithm-Diff, perl-CPAN-Meta-Check, perl-DB_File, perl-Math-BigRat, perl-DBD-Pg, perl-Locale-Maketext, perl-Time-Local, perl-Text-Balanced, perl-Devel-Size, perl-FCGI, perl-Unicode-Normalize, perl-IO-Socket-IP, perl-Pod-Parser, perl-Time-HiRes, perl-Math-BigInt, perl-JSON-PP, perl-String-ShellQuote, perl-MIME-Base64, perl-Archive-Tar, perl-Filter, perl-ExtUtils-Install, perl-Parse-PMFile, perl-PerlIO-via-QuotedPrint, perl-Data-Dumper, perl-CPAN, perl-PathTools, perl-CPAN-Meta, perl-Module-Load-Conditional, perl-Package-Generator, perl-IO-Compress, perl-autodie, perl-Compress-Bzip2, perl-Text-Diff, perl-Digest-MD5, perl-Encode, perl-Socket, perl-version, perl-File-pushd, perl-Fedora-VSP, perl-Software-License, perl-Env, perl-Sub-Install, perl-CPAN-Meta-Requirements, perl-libnet, perl-Config-Perl-V, perl-local-lib, perl-Module-Metadata, perl-Math-BigInt-FastCalc, perl-inc-latest, perl-experimental, perl-Digest-SHA, perl-Archive-Zip, perl-Term-ANSIColor, perl-Storable, perl-File-Path, perl-threads, perl-Module-Load, perl-YAML, perl-Test-Simple, perl-ExtUtils-MakeMaker, perl-Term-Cap, perl-MRO-Compat, perl-ExtUtils-ParseXS, perl-Module-CPANfile. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list This enhancement update adds the perl:5.30 module to Rocky Linux 8. (BZ#1713592) For detailed information on changes in this release, see the Rocky Linux 8.3 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms perl-DBD-SQLite-1.58-2.el8.aarch64.rpm 419c2f99f97d2552ff8a4ef685163e0d470e3d34991b893d535a5d19e390abd2 RLEA-2020:4767 perl:5.30 metadata for the Rocky Linux 8 module matrix (1/3) For detailed information on changes in this release, see the Rocky Linux 8.3 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for perl-DBD-Pg, perl-DBI, perl-DBD-SQLite, perl-YAML, perl-FCGI, perl-DBD-MySQL, perl-String-ShellQuote. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.3 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms perl-DBD-SQLite-1.58-2.el8.aarch64.rpm 419c2f99f97d2552ff8a4ef685163e0d470e3d34991b893d535a5d19e390abd2 RLEA-2020:4802 perl:5.30 metadata for the Rocky Linux 8 module matrix (2/3) For detailed information on changes in this release, see the Rocky Linux 8.3 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for perl-DBD-Pg, perl-DBI, perl-DBD-SQLite, perl-YAML, perl-FCGI, perl-DBD-MySQL, perl-String-ShellQuote. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.3 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms perl-DBD-SQLite-1.58-2.el8.aarch64.rpm 419c2f99f97d2552ff8a4ef685163e0d470e3d34991b893d535a5d19e390abd2 RLBA-2020:4841 liburing bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.3 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for liburing. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.3 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms liburing-1.0.7-3.el8.aarch64.rpm e0878d1379098814dc136eff0b799722e61b3b892851e4d923366b7308bc14f9 RLBA-2021:0564 dbxtool bug fix and enhancement update The dbxtool packages provide a command line utility and a one-shot systemd service for applying UEFI Secure Boot DBX updates. Bug Fix(es) and Enhancement(s): * [Dell Rocky Linux 8.2 BUG] dbxtool: fails to list with 'EFI Signature List is malformed' (BZ#1912474) Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for dbxtool. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list The dbxtool packages provide a command line utility and a one-shot systemd service for applying UEFI Secure Boot DBX updates. Bug Fix(es) and Enhancement(s): * [Dell Rocky Linux 8.2 BUG] dbxtool: fails to list with 'EFI Signature List is malformed' (BZ#1912474) rocky-linux-8-aarch64-baseos-rpms dbxtool-8-5.el8_3.2.aarch64.rpm 81574994613d7da0398a586a5ffa448637101166726bc38010d8ffec2556c692 RLSA-2021:0618 Important: stunnel security update Stunnel is a wrapper for network connections. It can be used to tunnel an unencrypted network connection over an encrypted connection (encrypted using SSL or TLS) or to provide an encrypted means of connecting to services that do not natively support encryption. Security Fix(es): * stunnel: client certificate not correctly verified when redirect and verifyChain options are used (CVE-2021-20230) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 Important An update is available for stunnel. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list Stunnel is a wrapper for network connections. It can be used to tunnel an unencrypted network connection over an encrypted connection (encrypted using SSL or TLS) or to provide an encrypted means of connecting to services that do not natively support encryption. Security Fix(es): * stunnel: client certificate not correctly verified when redirect and verifyChain options are used (CVE-2021-20230) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. rocky-linux-8-aarch64-baseos-rpms stunnel-5.56-5.el8_3.aarch64.rpm 92fa548366ecda345c6a4fbf228e6f521ad0099554d2223d2de8bfd8619f317e RLSA-2021:1586 Moderate: GNOME security, bug fix, and enhancement update GNOME is the default desktop environment of Rocky Linux. The following packages have been upgraded to a later upstream version: accountsservice (0.6.55), webkit2gtk3 (2.30.4). (BZ#1846376, BZ#1883304) Security Fix(es): * webkitgtk: type confusion may lead to arbitrary code execution (CVE-2020-9948) * webkitgtk: use-after-free may lead to arbitrary code execution (CVE-2020-9951) * webkitgtk: out-of-bounds write may lead to code execution (CVE-2020-9983) * webkitgtk: use-after-free may lead to arbitrary code execution (CVE-2020-13543) * webkitgtk: use-after-free may lead to arbitrary code execution (CVE-2020-13584) * glib2: insecure permissions for files and directories (CVE-2019-13012) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.4 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 Moderate An update is available for enchant2, cairomm, gnome-photos, webkit2gtk3, chrome-gnome-shell, geoclue2, dleyna-server, woff2, libdazzle, gtk2, gvfs, gjs, gnome-settings-daemon, gtkmm24, accountsservice, gnome-control-center, gnome-shell, gnome-software, soundtouch, gnome-boxes, gnome-terminal, libsass, libsigc++20, nautilus, OpenEXR, gnome-online-accounts, gtkmm30, dleyna-core, vala, libvisual, geocode-glib, pangomm, gtk-doc, atkmm, gdm, gamin, glibmm24, mutter, libepubgen. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list GNOME is the default desktop environment of Rocky Linux. The following packages have been upgraded to a later upstream version: accountsservice (0.6.55), webkit2gtk3 (2.30.4). (BZ#1846376, BZ#1883304) Security Fix(es): * webkitgtk: type confusion may lead to arbitrary code execution (CVE-2020-9948) * webkitgtk: use-after-free may lead to arbitrary code execution (CVE-2020-9951) * webkitgtk: out-of-bounds write may lead to code execution (CVE-2020-9983) * webkitgtk: use-after-free may lead to arbitrary code execution (CVE-2020-13543) * webkitgtk: use-after-free may lead to arbitrary code execution (CVE-2020-13584) * glib2: insecure permissions for files and directories (CVE-2019-13012) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.4 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms gamin-0.1.10-32.el8.aarch64.rpm 5b38532025539581fbf6ce1b15d9abf6957bbc802abb71a0f8aadcae8478e256 RLBA-2021:1587 librabbitmq bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.4 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for librabbitmq. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.4 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms librabbitmq-0.9.0-3.el8.aarch64.rpm 0fec7ddd4d7a4b6de68b3ad79843b82764c4a5d7f8565fad973c9b2793b5081e RLBA-2021:1591 libxslt bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.4 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for libxslt. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.4 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms libxslt-1.1.32-6.el8.aarch64.rpm c931a36d09edc1c8d70174979d25881755b03613041ac8915c0dcce812b9baab RLSA-2021:1600 Moderate: opensc security, bug fix, and enhancement update The OpenSC set of libraries and utilities provides support for working with smart cards. OpenSC focuses on cards that support cryptographic operations and enables their use for authentication, mail encryption, or digital signatures. Security Fix(es): * opensc: heap-based buffer overflow in sc_oberthur_read_file (CVE-2020-26570) * opensc: stack-based buffer overflow in sc_pkcs15emu_gemsafeGPK_init (CVE-2020-26571) * opensc: stack-based buffer overflow in tcos_decipher (CVE-2020-26572) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.4 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 Moderate An update is available for opensc. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list The OpenSC set of libraries and utilities provides support for working with smart cards. OpenSC focuses on cards that support cryptographic operations and enables their use for authentication, mail encryption, or digital signatures. Security Fix(es): * opensc: heap-based buffer overflow in sc_oberthur_read_file (CVE-2020-26570) * opensc: stack-based buffer overflow in sc_pkcs15emu_gemsafeGPK_init (CVE-2020-26571) * opensc: stack-based buffer overflow in tcos_decipher (CVE-2020-26572) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.4 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms opensc-0.20.0-4.el8.aarch64.rpm 164d3a5d5354414bb3d3d20b7cb1de9fb74d0d9c900811e5aaa93778b7587ce1 RLSA-2021:1609 Moderate: p11-kit security, bug fix, and enhancement update The p11-kit packages provide a mechanism to manage PKCS#11 modules. The p11-kit-trust subpackage includes a PKCS#11 trust module that provides certificate anchors and black lists based on configuration files. The following packages have been upgraded to a later upstream version: p11-kit (0.23.22). (BZ#1887853) Security Fix(es): * p11-kit: integer overflow when allocating memory for arrays or attributes and object identifiers (CVE-2020-29361) * p11-kit: out-of-bounds read in p11_rpc_buffer_get_byte_array function in rpc-message.c (CVE-2020-29362) * p11-kit: out-of-bounds write in p11_rpc_buffer_get_byte_array_value function in rpc-message.c (CVE-2020-29363) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.4 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 Moderate An update is available for p11-kit. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list The p11-kit packages provide a mechanism to manage PKCS#11 modules. The p11-kit-trust subpackage includes a PKCS#11 trust module that provides certificate anchors and black lists based on configuration files. The following packages have been upgraded to a later upstream version: p11-kit (0.23.22). (BZ#1887853) Security Fix(es): * p11-kit: integer overflow when allocating memory for arrays or attributes and object identifiers (CVE-2020-29361) * p11-kit: out-of-bounds read in p11_rpc_buffer_get_byte_array function in rpc-message.c (CVE-2020-29362) * p11-kit: out-of-bounds write in p11_rpc_buffer_get_byte_array_value function in rpc-message.c (CVE-2020-29363) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.4 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms p11-kit-0.23.22-1.el8.aarch64.rpm 08f2c614565050ddc0b24e6f0cf6f70b15fe5dd932ec90ffddb46598e6ebf25e p11-kit-devel-0.23.22-1.el8.aarch64.rpm 6159beebcc1ad813d690297e11f3119f15d6c944f189e9bc20607f31aacc9013 p11-kit-server-0.23.22-1.el8.aarch64.rpm 4e7583b3d5c634bccda9397c2f3c1380e02189e4b96a3423a46b7e35d696e599 p11-kit-trust-0.23.22-1.el8.aarch64.rpm 3dd1ad4e759faef4efcdb435a85b28d92e6f1dc268680415b7b22de588d2f2da RLBA-2021:1612 avahi bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.4 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for avahi. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.4 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms avahi-0.7-20.el8.aarch64.rpm 5ea165cfb19344e5d3cf9e67d4314594283a93e058159c88d2a919a3c5194d8d avahi-autoipd-0.7-20.el8.aarch64.rpm 0576f5168271971c0e0e52dbb8d0482eb93fa111fa6102af4014eda72791dec9 avahi-glib-0.7-20.el8.aarch64.rpm 4b7f151019e0a7ff73ba538b7049149524c9065416b0aec9818bf059a26d9ec7 avahi-gobject-0.7-20.el8.aarch64.rpm b82928be917bc2c5ce721917673f6c091ae4fee848f9fa20f3bf949ef2ec9fdc avahi-libs-0.7-20.el8.aarch64.rpm df0704d7a1e6e8322c9537cbe558cb0df331ffa2c79433e112d46eeb39e8a715 python3-avahi-0.7-20.el8.aarch64.rpm be5a19239e15bb708477a693de8d0a69dff6e1e5406dca7dfd5c649bede13745 RLSA-2021:1627 Moderate: trousers security, bug fix, and enhancement update TrouSerS is an implementation of the Trusted Computing Group's Software Stack (TSS) specification. TrouSerS enables the user to write applications that make use of the Trusted Platform Module (TPM) hardware. The following packages have been upgraded to a later upstream version: trousers (0.3.15). (BZ#1725782) Security Fix(es): * trousers: tss user still has read and write access to the /etc/tcsd.conf file if tcsd is started as root (CVE-2020-24331) * trousers: tss user can be used to create or corrupt existing files, this could lead to DoS (CVE-2020-24332) * trousers: fails to drop the root gid privilege when no longer needed (CVE-2020-24330) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.4 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 Moderate An update is available for trousers. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list TrouSerS is an implementation of the Trusted Computing Group's Software Stack (TSS) specification. TrouSerS enables the user to write applications that make use of the Trusted Platform Module (TPM) hardware. The following packages have been upgraded to a later upstream version: trousers (0.3.15). (BZ#1725782) Security Fix(es): * trousers: tss user still has read and write access to the /etc/tcsd.conf file if tcsd is started as root (CVE-2020-24331) * trousers: tss user can be used to create or corrupt existing files, this could lead to DoS (CVE-2020-24332) * trousers: fails to drop the root gid privilege when no longer needed (CVE-2020-24330) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.4 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms trousers-0.3.15-1.el8.aarch64.rpm e35cc3701b3030b5abf176e380118f1df2f6e4ff4d19438c53976453773ed893 trousers-lib-0.3.15-1.el8.aarch64.rpm b7c7bd8861a9d3ce807f2d3c0b8bd4afda6a8f4587db20e4ac96d2fde4fafacd RLBA-2021:1628 tpm-tools bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.4 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for tpm-tools. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.4 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms tpm-tools-1.3.9.2-1.el8.aarch64.rpm 5aac85af139bc5277ae056757fe3295c575d591ed3f017f12eb1fe0c50af1805 tpm-tools-pkcs11-1.3.9.2-1.el8.aarch64.rpm 371fb273440254bd8398791a97190abf324bff6273e97580a0cd79786586c9a8 RLEA-2021:1658 pciutils bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.4 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for pciutils. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.4 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms pciutils-3.7.0-1.el8.aarch64.rpm d17271f11a438ed284093af131297bf122422c9ecb49fbd309b7281d5bd1a54e pciutils-devel-3.7.0-1.el8.aarch64.rpm 116a768e1328ca72401320aad8ea3b22f37bca143d702e8afb09f5a1594ba8e2 pciutils-libs-3.7.0-1.el8.aarch64.rpm 944e24132bdbe169250f5786bcb4d0db46b84d5891ee903857916927bc511e73 RLBA-2021:1681 vhostmd bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.4 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for vhostmd. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.4 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms vm-dump-metrics-1.1-5.el8.aarch64.rpm 28f9ee66b9c4b7f68f45ea99fff0da8ec9ed93e75f9d768f9dbc2718569f3529 vm-dump-metrics-devel-1.1-5.el8.aarch64.rpm c527f061d8414de4aea3089676ac5a1576be122b1dcf1107074471b9cb7be3f0 RLBA-2021:1689 librepo bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.4 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for librepo, librhsm. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.4 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms librhsm-0.0.3-4.el8.aarch64.rpm 37f7bca8aca864d085b0060a2aada53eccca0c7b22ae9c58cc7b2f9e9646b0a1 RLBA-2021:1691 iptraf-ng bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.4 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for iptraf-ng. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.4 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms iptraf-ng-1.2.1-2.el8.aarch64.rpm c25d4dc4050caad8d3b6d177a34bdd58874e9c323bd4627c12a8dd82e25dc7d6 RLSA-2021:1702 Moderate: brotli security update Brotli is a generic-purpose lossless compression algorithm that compresses data using a combination of a modern variant of the LZ77 algorithm, Huffman coding and 2nd order context modeling, with a compression ratio comparable to the best currently available general-purpose compression methods. It is similar in speed with deflate but offers more dense compression. Security Fix(es): * brotli: buffer overflow when input chunk is larger than 2GiB (CVE-2020-8927) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.4 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 Moderate An update is available for brotli. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list Brotli is a generic-purpose lossless compression algorithm that compresses data using a combination of a modern variant of the LZ77 algorithm, Huffman coding and 2nd order context modeling, with a compression ratio comparable to the best currently available general-purpose compression methods. It is similar in speed with deflate but offers more dense compression. Security Fix(es): * brotli: buffer overflow when input chunk is larger than 2GiB (CVE-2020-8927) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.4 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms brotli-1.0.6-3.el8.aarch64.rpm 70943540adca1c0501ce9d356730014e327797413bf1028aacfc7d2cde029ca0 RLEA-2021:1707 bolt bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.4 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for bolt. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.4 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms bolt-0.9.1-1.el8.aarch64.rpm 44f115e18df5c6a616e896f350a7c75b04bc0cdbea5cc64ac2b04a3252138979 RLBA-2021:1709 popt bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.4 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for popt. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.4 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms popt-1.18-1.el8.aarch64.rpm 0b152ba0c29df0d4f7d079a367e9bb81513c4e69955dbe494bf38b772634d0f2 popt-devel-1.18-1.el8.aarch64.rpm 4b346d06e512c4ea8d1d38adc9d7460bf242d1f705ab63cd64b64160299015da RLEA-2021:1720 ima-evm-utils bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.4 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for ima-evm-utils. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.4 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms ima-evm-utils0-1.3.2-12.el8.aarch64.rpm e09bc4c91ab0f6318f0eb8085175af591e963a21c51eb00626000cc9898b1e06 ima-evm-utils-1.3.2-12.el8.aarch64.rpm bfeaf876c3ee8d48cc90e8e88e0c55b9a3ca10f02cd9299b8c9b3ca637a68456 RLBA-2021:1731 userspace-rcu bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.4 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for userspace-rcu. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.4 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms userspace-rcu-0.10.1-4.el8.aarch64.rpm b79de5dd720e0bf496b56663acf6a10878258b971e891258275fa4af16d3a1b1 RLBA-2021:1732 squashfs-tools bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.4 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for squashfs-tools. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.4 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms squashfs-tools-4.3-20.el8.aarch64.rpm 891b0fa964778bdb794b5b398bff430b70eaae0e8d6899015703e7253fbf7b65 RLSA-2021:2575 Moderate: lz4 security update The lz4 packages provide support for LZ4, a very fast, lossless compression algorithm that provides compression speeds of 400 MB/s per core and scales with multicore CPUs. It also features an extremely fast decoder that reaches speeds of multiple GB/s per core and typically reaches RAM speed limits on multicore systems. Security Fix(es): * lz4: memory corruption due to an integer overflow bug caused by memmove argument (CVE-2021-3520) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 Moderate An update is available for lz4. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list The lz4 packages provide support for LZ4, a very fast, lossless compression algorithm that provides compression speeds of 400 MB/s per core and scales with multicore CPUs. It also features an extremely fast decoder that reaches speeds of multiple GB/s per core and typically reaches RAM speed limits on multicore systems. Security Fix(es): * lz4: memory corruption due to an integer overflow bug caused by memmove argument (CVE-2021-3520) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. rocky-linux-8-aarch64-baseos-rpms lz4-1.8.3-3.el8_4.aarch64.rpm 696c7dfc2e3b01a795fedfc0808fc7de5a82e4d1f49654e90b86041417d5c0c6 lz4-devel-1.8.3-3.el8_4.aarch64.rpm 193cc35b57a8d161be73c6372730b21306f35a2accadc6cc29830399e2f0e61b lz4-libs-1.8.3-3.el8_4.aarch64.rpm d76fb7b3e3cefe2a66de064138c1f85d3a7a9a18b34360bbd679bd966b2a0d4d RLBA-2021:3049 pcsc-lite bug fix and enhancement update PC/SC Lite provides a Windows SCard compatible interface for communicating with smart cards, smart card readers, and other security tokens. Bug Fixes: * Increase global reader array size to 48 to address issue with RHCS secure channel creation (BZ#1972569) * Increase global reader array size to 48 to address issue with RHCS secure channel creation (pcsc-lite-ccid) (BZ#1973405) Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for pcsc-lite-ccid, pcsc-lite. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list PC/SC Lite provides a Windows SCard compatible interface for communicating with smart cards, smart card readers, and other security tokens. Bug Fixes: * Increase global reader array size to 48 to address issue with RHCS secure channel creation (BZ#1972569) * Increase global reader array size to 48 to address issue with RHCS secure channel creation (pcsc-lite-ccid) (BZ#1973405) rocky-linux-8-aarch64-baseos-rpms pcsc-lite-ccid-1.4.29-5.1.el8_4.aarch64.rpm 3344f5849a894d9a1b794dff7b6855ee738988deb423237e87ce370a139a9461 RLBA-2021:3594 libdb bug fix and enhancement update The libdb packages provide the Berkeley Database, an embedded database supporting both traditional and client/server applications. Bug Fix(es) and Enhancement(s): * [FJ8.4 Bug]: [REG]The rpm command hangs and the CPU usage reaches 100% (BZ#2001972) Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for libdb. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list The libdb packages provide the Berkeley Database, an embedded database supporting both traditional and client/server applications. Bug Fix(es) and Enhancement(s): * [FJ8.4 Bug]: [REG]The rpm command hangs and the CPU usage reaches 100% (BZ#2001972) rocky-linux-8-aarch64-baseos-rpms libdb-5.3.28-42.el8_4.aarch64.rpm f1b46b46efe469ee828526cc8840a0491b454c9f8bd55a89a91313111176d02e libdb-utils-5.3.28-42.el8_4.aarch64.rpm 837085b66d2b6498e6c67b92eb52b4589c557f207cc11769b2774bb2acaf33fd RLBA-2021:4353 lm_sensors bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for lm_sensors. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms lm_sensors-3.4.0-23.20180522git70f7e08.el8.aarch64.rpm ffc729370897eee6b4b7daa3bf878eee28866a005a3f24e2ba47aba133ca701d lm_sensors-devel-3.4.0-23.20180522git70f7e08.el8.aarch64.rpm 0f256d299942ad27e27bbe2fb91b09105478df66c65993054648a554882b8d9a lm_sensors-libs-3.4.0-23.20180522git70f7e08.el8.aarch64.rpm 3b817b2e17006d5f76598e41fe2d967710d0e1b295f0cd468ff26be0ffeffbc5 RLBA-2021:4354 libndp bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for libndp. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms libndp-1.7-6.el8.aarch64.rpm e0e5752c2929eb2c831052d390e51807e2b5850a6ffe03192f6dfb2122be6306 RLBA-2021:4363 gfs2-utils bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for gfs2-utils. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms gfs2-utils-3.2.0-11.el8.aarch64.rpm 677c3378eb14afdb6a0f71cbdae0e8dd388f4efbf1d777c688881db82e731958 RLBA-2021:4371 libxcrypt bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for libxcrypt. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms libxcrypt-4.1.1-6.el8.aarch64.rpm 4297629a9d4951880629af6c9c87f48bc6b785577196fa690b377dbd48a513fd libxcrypt-devel-4.1.1-6.el8.aarch64.rpm da9307e19104245a81d4174b81135d92376dfd15397383245532001838a2de19 RLSA-2021:4373 Low: pcre security update PCRE is a Perl-compatible regular expression library. Security Fix(es): * pcre: Buffer over-read in JIT when UTF is disabled and \X or \R has fixed quantifier greater than 1 (CVE-2019-20838) * pcre: Integer overflow when parsing callout numeric arguments (CVE-2020-14155) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.5 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 Low An update is available for pcre. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list PCRE is a Perl-compatible regular expression library. Security Fix(es): * pcre: Buffer over-read in JIT when UTF is disabled and \X or \R has fixed quantifier greater than 1 (CVE-2019-20838) * pcre: Integer overflow when parsing callout numeric arguments (CVE-2020-14155) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.5 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms pcre-8.42-6.el8.aarch64.rpm d2233f6aebbb5ac9f90a6d374650c445794fe5ecf857236228a4cc006206b068 pcre-cpp-8.42-6.el8.aarch64.rpm 11747984326dd29836ed4544cb6c652041ed0e6ed9e925768a6ce4261db51d6b pcre-devel-8.42-6.el8.aarch64.rpm 287960d8b6336ef28563b412c7a059d5657e55382f515f3b9eb1bd378789da79 pcre-utf16-8.42-6.el8.aarch64.rpm 55c0ac0f4c6959e1c9383a62e36a58df4eed153d17f152cad9699aae5e5c4c34 pcre-utf32-8.42-6.el8.aarch64.rpm bae262449b3463dd12d59aa9cfaed79f208482d80d8ce72e89a5ec6a2cef3dbe RLBA-2021:4377 quota bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for quota. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms quota-4.04-14.el8.aarch64.rpm 78583ab44caf019a1adc6cf81d3cc4126e7b384ef404f57d311a50873e35ebf6 quota-nld-4.04-14.el8.aarch64.rpm 211fdbc263f69c13bcc1dd6d308421c79078dec59b8ab6967511fc1a26d8f2c1 quota-rpc-4.04-14.el8.aarch64.rpm d559be3c53591efe8d795304a71b5ebd5f7e314fb0453bdde5850b99816e4eb8 quota-warnquota-4.04-14.el8.aarch64.rpm dacf17ecb1d1af92f7361781a4f55ffa85d799afd60f689c985743c2fe4a941f RLBA-2021:4379 watchdog bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for watchdog. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms watchdog-5.15-2.el8.aarch64.rpm 8e6c800a51ea317dccd0db1b4a59d690a110b9428cf12b67ceb6d9302596179b RLSA-2021:4381 Moderate: GNOME security, bug fix, and enhancement update GNOME is the default desktop environment of Rocky Linux. The following packages have been upgraded to a later upstream version: gdm (40.0), webkit2gtk3 (2.32.3). (BZ#1909300) Security Fix(es): * webkitgtk: Use-after-free in AudioSourceProviderGStreamer leading to arbitrary code execution (CVE-2020-13558) * LibRaw: Stack buffer overflow in LibRaw::identify_process_dng_fields() in identify.cpp (CVE-2020-24870) * webkitgtk: Use-after-free leading to arbitrary code execution (CVE-2020-27918) * webkitgtk: IFrame sandboxing policy violation (CVE-2021-1765) * webkitgtk: Use-after-free leading to arbitrary code execution (CVE-2021-1788) * webkitgtk: Type confusion issue leading to arbitrary code execution (CVE-2021-1789) * webkitgtk: Access to restricted ports on arbitrary servers via port redirection (CVE-2021-1799) * webkitgtk: IFrame sandboxing policy violation (CVE-2021-1801) * webkitgtk: Memory corruption issue leading to arbitrary code execution (CVE-2021-1844) * webkitgtk: Logic issue leading to arbitrary code execution (CVE-2021-1870) * webkitgtk: Logic issue leading to arbitrary code execution (CVE-2021-1871) * webkitgtk: Use-after-free in ImageLoader dispatchPendingErrorEvent leading to information leak and possibly code execution (CVE-2021-21775) * webkitgtk: Use-after-free in WebCore::GraphicsContext leading to information leak and possibly code execution (CVE-2021-21779) * webkitgtk: Use-after-free in fireEventListeners leading to arbitrary code execution (CVE-2021-21806) * webkitgtk: Integer overflow leading to arbitrary code execution (CVE-2021-30663) * webkitgtk: Memory corruption leading to arbitrary code execution (CVE-2021-30665) * webkitgtk: Logic issue leading to leak of sensitive user information (CVE-2021-30682) * webkitgtk: Logic issue leading to universal cross site scripting attack (CVE-2021-30689) * webkitgtk: Logic issue allowing access to restricted ports on arbitrary servers (CVE-2021-30720) * webkitgtk: Memory corruptions leading to arbitrary code execution (CVE-2021-30734) * webkitgtk: Cross-origin issue with iframe elements leading to universal cross site scripting attack (CVE-2021-30744) * webkitgtk: Memory corruptions leading to arbitrary code execution (CVE-2021-30749) * webkitgtk: Type confusion leading to arbitrary code execution (CVE-2021-30758) * webkitgtk: Use-after-free leading to arbitrary code execution (CVE-2021-30795) * webkitgtk: Insufficient checks leading to arbitrary code execution (CVE-2021-30797) * webkitgtk: Memory corruptions leading to arbitrary code execution (CVE-2021-30799) * webkitgtk: User may be unable to fully delete browsing history (CVE-2020-29623) * gnome-autoar: Directory traversal via directory symbolic links pointing outside of the destination directory (CVE-2020-36241) * gnome-autoar: Directory traversal via directory symbolic links pointing outside of the destination directory (incomplete CVE-2020-36241 fix) (CVE-2021-28650) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.5 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 Moderate An update is available for gnome-shell-extensions, webkit2gtk3, LibRaw, gnome-settings-daemon, gsettings-desktop-schemas, gnome-autoar, mutter, accountsservice, gnome-control-center, gnome-online-accounts, gnome-shell, gtk3, gdm, vino, gnome-software, gnome-session, gnome-calculator. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list GNOME is the default desktop environment of Rocky Linux. The following packages have been upgraded to a later upstream version: gdm (40.0), webkit2gtk3 (2.32.3). (BZ#1909300) Security Fix(es): * webkitgtk: Use-after-free in AudioSourceProviderGStreamer leading to arbitrary code execution (CVE-2020-13558) * LibRaw: Stack buffer overflow in LibRaw::identify_process_dng_fields() in identify.cpp (CVE-2020-24870) * webkitgtk: Use-after-free leading to arbitrary code execution (CVE-2020-27918) * webkitgtk: IFrame sandboxing policy violation (CVE-2021-1765) * webkitgtk: Use-after-free leading to arbitrary code execution (CVE-2021-1788) * webkitgtk: Type confusion issue leading to arbitrary code execution (CVE-2021-1789) * webkitgtk: Access to restricted ports on arbitrary servers via port redirection (CVE-2021-1799) * webkitgtk: IFrame sandboxing policy violation (CVE-2021-1801) * webkitgtk: Memory corruption issue leading to arbitrary code execution (CVE-2021-1844) * webkitgtk: Logic issue leading to arbitrary code execution (CVE-2021-1870) * webkitgtk: Logic issue leading to arbitrary code execution (CVE-2021-1871) * webkitgtk: Use-after-free in ImageLoader dispatchPendingErrorEvent leading to information leak and possibly code execution (CVE-2021-21775) * webkitgtk: Use-after-free in WebCore::GraphicsContext leading to information leak and possibly code execution (CVE-2021-21779) * webkitgtk: Use-after-free in fireEventListeners leading to arbitrary code execution (CVE-2021-21806) * webkitgtk: Integer overflow leading to arbitrary code execution (CVE-2021-30663) * webkitgtk: Memory corruption leading to arbitrary code execution (CVE-2021-30665) * webkitgtk: Logic issue leading to leak of sensitive user information (CVE-2021-30682) * webkitgtk: Logic issue leading to universal cross site scripting attack (CVE-2021-30689) * webkitgtk: Logic issue allowing access to restricted ports on arbitrary servers (CVE-2021-30720) * webkitgtk: Memory corruptions leading to arbitrary code execution (CVE-2021-30734) * webkitgtk: Cross-origin issue with iframe elements leading to universal cross site scripting attack (CVE-2021-30744) * webkitgtk: Memory corruptions leading to arbitrary code execution (CVE-2021-30749) * webkitgtk: Type confusion leading to arbitrary code execution (CVE-2021-30758) * webkitgtk: Use-after-free leading to arbitrary code execution (CVE-2021-30795) * webkitgtk: Insufficient checks leading to arbitrary code execution (CVE-2021-30797) * webkitgtk: Memory corruptions leading to arbitrary code execution (CVE-2021-30799) * webkitgtk: User may be unable to fully delete browsing history (CVE-2020-29623) * gnome-autoar: Directory traversal via directory symbolic links pointing outside of the destination directory (CVE-2020-36241) * gnome-autoar: Directory traversal via directory symbolic links pointing outside of the destination directory (incomplete CVE-2020-36241 fix) (CVE-2021-28650) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.5 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms gsettings-desktop-schemas-3.32.0-6.el8.aarch64.rpm 49caae3bfdce01c6951e199c96d03ac8b355cafc46d1bb33732574b0e5ed7045 RLEA-2021:4405 libmodulemd bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for libmodulemd. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms libmodulemd1-1.8.16-0.2.13.0.1.aarch64.rpm 78bb230cee09bd30eb92525dec0b229bdc522af52ce5165774c37b3f136f76db libmodulemd-2.13.0-1.el8.aarch64.rpm 2187b3843488bcc57c6d2857b67c739227904e28a751efc9e1b21871105b4e4a RLBA-2021:4406 numactl bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for numactl. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms numactl-2.0.12-13.el8.aarch64.rpm d5d198885820fc54e9320e19a62e328e6a2e10e21658686764860d5654feb985 numactl-devel-2.0.12-13.el8.aarch64.rpm ef351ddce4f240b5b7f91908b71330c421584d6e89b48ce3d0f909ac46792af0 numactl-libs-2.0.12-13.el8.aarch64.rpm b30a38428169b9be57f364e4e64a194fa3700db2faa8c198a78717524e4504e4 RLBA-2021:4411 tpm2-tss bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for tpm2-tss. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms tpm2-tss-2.3.2-4.el8.aarch64.rpm 06a3a6cf98cb1c786f9c395c99bf429fded9890aaf583a3ab019d53c92cdeeeb tpm2-tss-devel-2.3.2-4.el8.aarch64.rpm aa26a8fefcae86a3d289d0cd248c7db40f0dc604f1688c87f8958cf58b557935 RLBA-2021:4412 RDMA stack bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for mpitests, mvapich2, ucx, qperf, opensm, rpm-mpi-hooks, rdma-core, mstflint, libvma, openmpi, fabtests, perftest, libfabric, mpich. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms opensm-3.3.24-1.el8.aarch64.rpm cdd6b8bd4abc9b43d5f5638f54373eb80b1a98442daed6f39f9ce101befb2f1d opensm-libs-3.3.24-1.el8.aarch64.rpm 72baffdb15d49074e5097cd0edcb5d3f7a2c778bf3d9ff25abe405d72963829d perftest-4.5-12.el8.aarch64.rpm bdb7dfeb36bf8cde96daf92fabff38b85eca2b7a459a0bcc444ac845e7e35b68 RLSA-2021:4413 Moderate: tpm2-tools security and enhancement update The tpm2-tools packages add a set of utilities for management and utilization of Trusted Platform Module (TPM) 2.0 devices from user space. Security Fix(es): * tpm2-tools: fixed AES wrapping key in tpm2_import (CVE-2021-3565) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.5 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 Moderate An update is available for tpm2-tools. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list The tpm2-tools packages add a set of utilities for management and utilization of Trusted Platform Module (TPM) 2.0 devices from user space. Security Fix(es): * tpm2-tools: fixed AES wrapping key in tpm2_import (CVE-2021-3565) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.5 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms tpm2-tools-4.1.1-5.el8.aarch64.rpm fbf67a9fffbba81330aceb0591af5c331b8034d2e1b87023aa455bebe97fa6d6 RLBA-2021:4421 hdparm bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for hdparm. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms hdparm-9.54-4.el8.aarch64.rpm 701b24d173f4461481c56d7660281b0dd30b90823c72ffa05bb0d09c474b0213 RLSA-2021:4426 Moderate: ncurses security update The ncurses (new curses) library routines are a terminal-independent method of updating character screens with reasonable optimization. The ncurses packages contain support utilities including a terminfo compiler tic, a decompiler infocmp, clear, tput, tset, and a termcap conversion tool captoinfo. Security Fix(es): * ncurses: heap-based buffer overflow in the _nc_find_entry function in tinfo/comp_hash.c (CVE-2019-17594) * ncurses: heap-based buffer overflow in the fmt_entry function in tinfo/comp_hash.c (CVE-2019-17595) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.5 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 Moderate An update is available for ncurses. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list The ncurses (new curses) library routines are a terminal-independent method of updating character screens with reasonable optimization. The ncurses packages contain support utilities including a terminfo compiler tic, a decompiler infocmp, clear, tput, tset, and a termcap conversion tool captoinfo. Security Fix(es): * ncurses: heap-based buffer overflow in the _nc_find_entry function in tinfo/comp_hash.c (CVE-2019-17594) * ncurses: heap-based buffer overflow in the fmt_entry function in tinfo/comp_hash.c (CVE-2019-17595) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.5 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms ncurses-6.1-9.20180224.el8.aarch64.rpm 9ea3641642f3e885ced4ce7f30cc569ae668ef0ee37450275dd77af323c17bfe ncurses-c++-libs-6.1-9.20180224.el8.aarch64.rpm f4ae3086dd69cefc41cadc9c400b534dbc8b9fc5ad6505e656eb3313f70dc898 ncurses-compat-libs-6.1-9.20180224.el8.aarch64.rpm 78d1a4263b6495345e40e8d0e3ec9ff3d29a5c3c0a5f5734cf4a8531c297e457 ncurses-devel-6.1-9.20180224.el8.aarch64.rpm fa1daaf74f5415199a49db02f2f0e4def0fdbf160715b5e42f2c92dd810b60f0 ncurses-libs-6.1-9.20180224.el8.aarch64.rpm 4481f8a571f8d3775e1ee733f75c8199edd4de6a72a53b97cf36c4dff50e8173 RLEA-2021:4434 libcap-ng bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for libcap-ng. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms libcap-ng-0.7.11-1.el8.aarch64.rpm ca0c5cd3a6ff1505113b2b220844603077d282b81f790a205e7d23ab6cf68a61 libcap-ng-devel-0.7.11-1.el8.aarch64.rpm 7936904f9dd845e5490d9f12e85b332a0dae4bcd5d7cd87ebc10e0ce1624e681 libcap-ng-python3-0.7.11-1.el8.aarch64.rpm 87a6b0035917dc49cd5348a82ceb0e56d5decf421466afff1791f15a848f91b5 libcap-ng-utils-0.7.11-1.el8.aarch64.rpm db12ab01654b8c97c6fab2df6842ccb19d32572f8a94a54821f664b5779c2599 RLBA-2021:4441 microdnf bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for microdnf. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms microdnf-3.8.0-2.el8.aarch64.rpm c5012008ea930d17fc413ba57779640da4e4aaf4cbf998738c498e64a1e3fe41 RLBA-2021:4442 lshw bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for lshw. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms lshw-B.02.19.2-6.el8.aarch64.rpm 2d2687796f9b42f059578b19110ba870bf351eeb5b0b079a3d798343f16efb40 RLBA-2021:4443 python-cryptography bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for python-cryptography. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms python3-cryptography-3.2.1-5.el8.aarch64.rpm 8d3d653d08e3be1edec2f1e36c0b6446834560d4aec26eef28f4b4e480f94285 RLBA-2021:4445 fcoe-utils bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for fcoe-utils. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms fcoe-utils-1.0.33-4.git848bcc6.el8.aarch64.rpm 6b65f627098eb91211f338c02257b2d61813d36c9f4731407e1403566a6d24f4 RLBA-2021:4446 iscsi-initiator-utils bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for iscsi-initiator-utils. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms iscsi-initiator-utils-6.2.1.4-4.git095f59c.el8.aarch64.rpm fd19dda7daa6c82f797542c1556e082fd7ac26c8ab963677c0b2af140fba1af6 iscsi-initiator-utils-iscsiuio-6.2.1.4-4.git095f59c.el8.aarch64.rpm fb9c2ff9e5987a18f7aa092064d0b665431963dbac119841b84ca6294a31747c python3-iscsi-initiator-utils-6.2.1.4-4.git095f59c.el8.aarch64.rpm 1f82149dfb5d46da386afbbf5d87758ff37552234b424697a25ec94bf0688d47 RLBA-2021:4449 openldap bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for openldap. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms openldap-2.4.46-18.el8.aarch64.rpm a7bbbc01764348528bed3b52449e2b8ddd9d97dd85a4ce38bc2a968943cc8098 openldap-clients-2.4.46-18.el8.aarch64.rpm 091f5ca639a5fac96e66ddb6f9c7a1c0644b93157886f929f7177c6333b9058e openldap-devel-2.4.46-18.el8.aarch64.rpm 73ec92205626d93ee5bf5f466f942cde2adfe4c75b22dad6299d7fc1e6f287c7 RLSA-2021:4451 Moderate: gnutls and nettle security, bug fix, and enhancement update The gnutls packages provide the GNU Transport Layer Security (GnuTLS) library, which implements cryptographic algorithms and protocols such as SSL, TLS, and DTLS. Nettle is a cryptographic library that is designed to fit easily in almost any context: In crypto toolkits for object-oriented languages, such as C++, Python, or Pike, in applications like LSH or GNUPG, or even in kernel space. The following packages have been upgraded to a later upstream version: gnutls (3.6.16). (BZ#1956783) Security Fix(es): * nettle: Remote crash in RSA decryption via manipulated ciphertext (CVE-2021-3580) * gnutls: Use after free in client key_share extension (CVE-2021-20231) * gnutls: Use after free in client_send_params in lib/ext/pre_shared_key.c (CVE-2021-20232) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.5 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 Moderate An update is available for nettle, gnutls. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list The gnutls packages provide the GNU Transport Layer Security (GnuTLS) library, which implements cryptographic algorithms and protocols such as SSL, TLS, and DTLS. Nettle is a cryptographic library that is designed to fit easily in almost any context: In crypto toolkits for object-oriented languages, such as C++, Python, or Pike, in applications like LSH or GNUPG, or even in kernel space. The following packages have been upgraded to a later upstream version: gnutls (3.6.16). (BZ#1956783) Security Fix(es): * nettle: Remote crash in RSA decryption via manipulated ciphertext (CVE-2021-3580) * gnutls: Use after free in client key_share extension (CVE-2021-20231) * gnutls: Use after free in client_send_params in lib/ext/pre_shared_key.c (CVE-2021-20232) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.5 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms nettle-3.4.1-7.el8.aarch64.rpm 51eabb0ae5bf19165967d8926043b01302dd36590a0333126ca88b43c480afe8 RLBA-2021:4453 adcli bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for adcli. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms adcli-0.8.2-12.el8.aarch64.rpm c08a88685bee70332aafb9a88544bfde4209f39f5725ed6c915a25c82af45df4 RLBA-2021:4454 keyutils bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for keyutils. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms keyutils-1.5.10-9.el8.aarch64.rpm 8187b646e2dba4ea0237c9a13dc38bff71a9a1d62d7b30fe801ca8b409bf5a32 keyutils-libs-1.5.10-9.el8.aarch64.rpm e292a3399c4f77784ec88a2a0429ca018de5dcdb8bede782bed68b81a27d45fa keyutils-libs-devel-1.5.10-9.el8.aarch64.rpm e8203f5aba3186e1b55a5c356441051b4dddf3e1f1e1bbb54a42cb45d5a43587 RLBA-2021:4461 filesystem bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for filesystem. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms filesystem-3.8-6.el8.aarch64.rpm 71f0011c4ad7cbc532703435aa8a08e0708211aa1fe3bcf3bc558e728e86a21f RLBA-2021:4470 man-db bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for man-db. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms man-db-2.7.6.1-18.el8.aarch64.rpm 706e5fa9dc865141adfa04c4718a3ec66dcb95fb95425de3cf3d06aaa45df91f RLBA-2021:4475 freeipmi bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for freeipmi. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms freeipmi-1.6.8-1.el8.aarch64.rpm 752dae7d1a46252424ff5969f0b0464dae89b96a9b90d4c8330b2a4db34e9b5e freeipmi-bmc-watchdog-1.6.8-1.el8.aarch64.rpm f1eaf8f776911d619fa11ad4847bf2bee32ed82e79fc57b1c466111aae39edd9 freeipmi-ipmidetectd-1.6.8-1.el8.aarch64.rpm 783620e8d99668786788127902b21ef3f38ab0d577e35c1155ee6a5a0ee5acc0 freeipmi-ipmiseld-1.6.8-1.el8.aarch64.rpm 4a71ba37b2970a5adc870c9674dbf68dff5ef02944ee4f31d83dbf4d36aa5399 RLBA-2021:4477 parted bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for parted. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms parted-3.2-39.el8.aarch64.rpm bfdbff9ea27a733bd2959f63ea81985ce171c5eb2849c1ba9729e155af08987c RLBA-2021:4483 OpenIPMI bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for OpenIPMI. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms OpenIPMI-2.0.31-3.el8.aarch64.rpm b9ecec7ec2dacba9c388cbfb8d2b6bb3b4fdb9f382fac86807c1c2b50982acf6 OpenIPMI-lanserv-2.0.31-3.el8.aarch64.rpm 03cf43e936333ebcd20f70165e5d931aa2c0c2c0349fd4f11d55c9be916ef726 OpenIPMI-libs-2.0.31-3.el8.aarch64.rpm 2f4c2f26274b2933c5a840178aebecb70872e9c378b9875b7a18c1481ef9ecb8 OpenIPMI-perl-2.0.31-3.el8.aarch64.rpm fd6d40baa24c93513a60ba55ea982e9a888f760bd7ca1f19f30494a966a50da8 python3-openipmi-2.0.31-3.el8.aarch64.rpm 09c86d590c5028c0eeeef7aaa5122cb0137848ee993b2a8d342cbcbbc3fa7caf RLEA-2021:4488 hwloc bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for hwloc. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms compat-hwloc1-2.2.0-3.el8.aarch64.rpm 8ffbf52855b756a3fc65d10d801c420c2c4a8e8dd7fea09a1d6c4076defede4f hwloc-2.2.0-3.el8.aarch64.rpm aac8aa107cc7e3577bcea2ce55183328590bb5bf142ec5cf28118aa032709059 hwloc-libs-2.2.0-3.el8.aarch64.rpm 464f138c1c39e9a5add64c78e679712a7538321d9d24a64ba95112beae454418 RLBA-2021:4496 chkconfig bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for chkconfig. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms chkconfig-1.19.1-1.el8.aarch64.rpm d2850969a3f8263be656456d0ac703465d4ead7c0470bad62e4abe6e66b71ef4 ntsysv-1.19.1-1.el8.aarch64.rpm 09eaf5d3abf9f40ac35e931367fdcab0f3cbb0ce092d02a5f203a54d3b2bcbfb RLBA-2021:4507 fontconfig bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for fontconfig. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms fontconfig-2.13.1-4.el8.aarch64.rpm 5ef0bde77e19628d72c91a9c4eac7c2a220587aa5c260f7cb2da20e818352ed2 fontconfig-devel-2.13.1-4.el8.aarch64.rpm 29cdf2426574c666841640752a84e50dea4f7d23531e17ae48973c4902ca191f RLBA-2021:4508 lsscsi bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for lsscsi. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms lsscsi-0.32-3.el8.aarch64.rpm 585ef55d8d660059ee009a2b2e11a51698d40dfe056ba543631c7199b4abed31 RLSA-2021:4510 Low: lua security update The lua packages provide support for Lua, a powerful light-weight programming language designed for extending applications. Lua is also frequently used as a general-purpose, stand-alone language. Security Fix(es): * lua: segmentation fault in getlocal and setlocal functions in ldebug.c (CVE-2020-24370) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.5 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 Low An update is available for lua. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list The lua packages provide support for Lua, a powerful light-weight programming language designed for extending applications. Lua is also frequently used as a general-purpose, stand-alone language. Security Fix(es): * lua: segmentation fault in getlocal and setlocal functions in ldebug.c (CVE-2020-24370) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.5 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms lua-libs-5.3.4-12.el8.aarch64.rpm c1c84a33cec9d1a40de3b87b2c2607078137cf6491b638f97fb5b89670ec5e3a RLBA-2021:4512 os-prober bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for os-prober. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms os-prober-1.74-9.el8.aarch64.rpm 5559ba9568f586c136e94e5460198cf591066677812de1188a340b269c2bb09f RLSA-2021:4513 Moderate: libsepol security update The libsepol library provides an API for the manipulation of SELinux binary policies. It is used by checkpolicy (the policy compiler) and similar tools, as well as by programs like load_policy that need to perform specific transformations on binary policies (for example, customizing policy boolean settings). Security Fix(es): * libsepol: use-after-free in __cil_verify_classperms() (CVE-2021-36084) * libsepol: use-after-free in __cil_verify_classperms() (CVE-2021-36085) * libsepol: use-after-free in cil_reset_classpermission() (CVE-2021-36086) * libsepol: heap-based buffer overflow in ebitmap_match_any() (CVE-2021-36087) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.5 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 Moderate An update is available for libsepol. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list The libsepol library provides an API for the manipulation of SELinux binary policies. It is used by checkpolicy (the policy compiler) and similar tools, as well as by programs like load_policy that need to perform specific transformations on binary policies (for example, customizing policy boolean settings). Security Fix(es): * libsepol: use-after-free in __cil_verify_classperms() (CVE-2021-36084) * libsepol: use-after-free in __cil_verify_classperms() (CVE-2021-36085) * libsepol: use-after-free in cil_reset_classpermission() (CVE-2021-36086) * libsepol: heap-based buffer overflow in ebitmap_match_any() (CVE-2021-36087) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.5 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms libsepol-2.9-3.el8.aarch64.rpm e2c55fc5738b9129c59a4fb29fd81be32ee242380398dc007f88ef19429cb747 libsepol-devel-2.9-3.el8.aarch64.rpm 317705b5f8b8a267fa79aa17d581fd13d8d7b40cf94a538d7b9a9dfef9394933 RLBA-2021:4516 usermode bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for usermode. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms usermode-1.113-2.el8.aarch64.rpm f00f3dacf721e61a4a9e4fd3b72ea86300d9e3cc3bad24825c5b181647a91ec0 RLSA-2022:0658 Important: cyrus-sasl security update The cyrus-sasl packages contain the Cyrus implementation of Simple Authentication and Security Layer (SASL). SASL is a method for adding authentication support to connection-based protocols. Security Fix(es): * cyrus-sasl: failure to properly escape SQL input allows an attacker to execute arbitrary SQL commands (CVE-2022-24407) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 Important An update is available for cyrus-sasl. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list The cyrus-sasl packages contain the Cyrus implementation of Simple Authentication and Security Layer (SASL). SASL is a method for adding authentication support to connection-based protocols. Security Fix(es): * cyrus-sasl: failure to properly escape SQL input allows an attacker to execute arbitrary SQL commands (CVE-2022-24407) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. rocky-linux-8-aarch64-baseos-rpms cyrus-sasl-2.1.27-6.el8_5.aarch64.rpm 332f1daeee3e1dc2740a5047d2c85bcc6a565a21cab1ed04f19760e71690b2c7 cyrus-sasl-devel-2.1.27-6.el8_5.aarch64.rpm 91b9d7083ee108037e9e2369278d742d37405fbb2667c1be556cb5d219a96b31 cyrus-sasl-gs2-2.1.27-6.el8_5.aarch64.rpm ce163751e84cf6f7b33785a51db0e1d413e8979bef6d6b01aef9d5f7d40a7c23 cyrus-sasl-gssapi-2.1.27-6.el8_5.aarch64.rpm b44d22cfbe12c7e06d2e6abbdbef6679e55b28202d68476845931d63a64b34a3 cyrus-sasl-ldap-2.1.27-6.el8_5.aarch64.rpm a2a7506adee7d315891d07c2d23192ae9794c58b329b120ee5d61ba96512cae0 cyrus-sasl-lib-2.1.27-6.el8_5.aarch64.rpm 41972a29bcab934002e888d22b87226491ac4bc08bc43ef020aa3d8304049e4a cyrus-sasl-md5-2.1.27-6.el8_5.aarch64.rpm 5d2832fc70c31bfe2bf998e0642da4c7dd090887e3d2b0fe5b6bb0d0385b8230 cyrus-sasl-ntlm-2.1.27-6.el8_5.aarch64.rpm 6e0c8e206f2cd3334b19c2e812384394402a0e23f3eabe5652e1dcab65f86414 cyrus-sasl-plain-2.1.27-6.el8_5.aarch64.rpm acc6f87f6980faa27999c52c8157730319724152216918efc0a03dd49b215765 cyrus-sasl-scram-2.1.27-6.el8_5.aarch64.rpm 12755565608594ac2b71107a5904b754d9718c6b68c343c4d02be84868c95313 RLSA-2022:1537 Important: gzip security update The gzip packages contain the gzip (GNU zip) data compression utility. gzip is used to compress regular files. It replaces them with files containing the .gz extension, while retaining ownership modes, access, and modification times. Security Fix(es): * gzip: arbitrary-file-write vulnerability (CVE-2022-1271) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 Important An update is available for gzip. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list The gzip packages contain the gzip (GNU zip) data compression utility. gzip is used to compress regular files. It replaces them with files containing the .gz extension, while retaining ownership modes, access, and modification times. Security Fix(es): * gzip: arbitrary-file-write vulnerability (CVE-2022-1271) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. rocky-linux-8-aarch64-baseos-rpms gzip-1.9-13.el8_5.aarch64.rpm f106a7f7904c1caf97eead75f1fa6031aa6d2ca66b77b3b65fa5671976700ac1 RLSA-2022:1546 Moderate: polkit security update The polkit packages provide a component for controlling system-wide privileges. This component provides a uniform and organized way for non-privileged processes to communicate with privileged ones. Security Fix(es): * polkit: file descriptor leak allows an unprivileged user to cause a crash (CVE-2021-4115) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 Moderate An update is available for polkit. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list The polkit packages provide a component for controlling system-wide privileges. This component provides a uniform and organized way for non-privileged processes to communicate with privileged ones. Security Fix(es): * polkit: file descriptor leak allows an unprivileged user to cause a crash (CVE-2021-4115) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. rocky-linux-8-aarch64-baseos-rpms polkit-0.115-13.el8_5.2.aarch64.rpm 9b0d4505b0aacc3810aabad0f3ac0f1dbaef8a1473a9cc6e9007388e164b38f1 polkit-devel-0.115-13.el8_5.2.aarch64.rpm 06d34be7d7015fcba8c6f2d9e33c958c8ca264cd692892c5e227f3d5d1e9b7f2 polkit-libs-0.115-13.el8_5.2.aarch64.rpm 7f5723107b0b173ba28589bbe4e36451e3b004bfd687c317c74f0ebddda1db4f RLEA-2022:1954 perl:5.32 metadata for the Rocky Linux 8 module matrix (1/4) For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for perl-DBD-Pg, perl-Parse-PMFile, perl-DBI, perl-DBD-SQLite, perl-YAML, perl-CPAN-DistnameInfo, perl-CPAN-Meta-Check, perl-FCGI, perl-DBD-MySQL, perl-App-cpanminus, perl-File-pushd, perl-String-ShellQuote, perl-Module-CPANfile. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms perl-DBD-SQLite-1.58-2.el8.aarch64.rpm 419c2f99f97d2552ff8a4ef685163e0d470e3d34991b893d535a5d19e390abd2 RLEA-2022:1956 perl:5.32 metadata for the Rocky Linux 8 module matrix (3/4) For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for perl-DBD-Pg, perl-Parse-PMFile, perl-DBI, perl-DBD-SQLite, perl-YAML, perl-CPAN-DistnameInfo, perl-CPAN-Meta-Check, perl-FCGI, perl-DBD-MySQL, perl-App-cpanminus, perl-File-pushd, perl-String-ShellQuote, perl-Module-CPANfile. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms perl-DBD-SQLite-1.58-2.el8.aarch64.rpm 419c2f99f97d2552ff8a4ef685163e0d470e3d34991b893d535a5d19e390abd2 RLSA-2022:1991 Moderate: cpio security update The cpio packages provide the GNU cpio utility for creating and extracting archives, or copying files from one place to another. Security Fix(es): * cpio: integer overflow in ds_fgetstr() in dstring.c can lead to an out-of-bounds write via a crafted pattern file (CVE-2021-38185) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 Moderate An update is available for cpio. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list The cpio packages provide the GNU cpio utility for creating and extracting archives, or copying files from one place to another. Security Fix(es): * cpio: integer overflow in ds_fgetstr() in dstring.c can lead to an out-of-bounds write via a crafted pattern file (CVE-2021-38185) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms cpio-2.12-11.el8.aarch64.rpm 45c839cc0ecf28ad0d8e8c577b98a9e26d8e714337bc6f3f2692eadc4c2b506a RLEA-2022:2014 RDMA stack bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for mpitests, ucx, rdma-core, mstflint, libvma, libpsm2, fabtests, openmpi, pmix, perftest, eth-tools, mpich, libfabric. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms perftest-4.5-12.el8.aarch64.rpm bdb7dfeb36bf8cde96daf92fabff38b85eca2b7a459a0bcc444ac845e7e35b68 RLBA-2022:2023 net-snmp bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for net-snmp. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms net-snmp-libs-5.8-25.el8.aarch64.rpm 4f6a4b2cf076272c0542ca782f1ab967c965238dd006333b6244b5980ec6468f RLBA-2022:2027 json-c bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for json-c. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms json-c-0.13.1-3.el8.aarch64.rpm 2b9864631453555d917c715ed9fe356e644835e6f1f916c2b0236f18d4ea6a3c RLEA-2022:2029 libseccomp bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for libseccomp. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms libseccomp-2.5.2-1.el8.aarch64.rpm 00163c8639df2c21996a6ad4d725d4df3026f0ac725ff2ec51d2805ad5953bce RLBA-2022:2041 openhpi bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for openhpi. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms openhpi-3.8.0-10.el8.aarch64.rpm 30b66fc2fe218a0defb45a822b312253a63f916de8ecc660e9df23020f161aab openhpi-libs-3.8.0-10.el8.aarch64.rpm cda2585238b545931760f6f775a6d54c74e59fcbbe1cb074386e24112b2ab145 RLBA-2022:2054 libffi bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for libffi. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms libffi-3.1-23.el8.aarch64.rpm f6afab76456adcc3407ba78babdb4c13ea931ee967dbeca7171a7af693f28452 libffi-devel-3.1-23.el8.aarch64.rpm 2b6e6a0e547e5a8e332182b50c3eea1c65ac27608b486e596e01819c26df47bc RLBA-2022:2060 kmod bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for kmod. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms kmod-25-19.el8.aarch64.rpm 1ab1a56ffda4f0b37e0913237283fcdaeadc06c2454a404e91cde90eff825eb4 kmod-libs-25-19.el8.aarch64.rpm 754c6d1db5fbd7daee3cbcea722a71971595c45d09cd3346ccef0494ea2e37d0 RLBA-2022:2062 wpa_supplicant bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for wpa_supplicant. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms wpa_supplicant-2.10-1.el8.aarch64.rpm af5ab7c5a6c75d6b5e9cafc72d94ba54acb2a4d8dca92a7bb1d6037ad28f8a59 RLBA-2022:2080 sudo bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for sudo. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms sudo-1.8.29-8.el8.aarch64.rpm 2a69fa9baf56512e72f8d89af4c0bb8c98acf42dfa97caf5d9454ffaef39ff25 RLBA-2022:2098 unzip bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for unzip. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms unzip-6.0-46.el8.aarch64.rpm ba9b759130b0597e1ad63652e8895b42a045c2e82afe95a426e873f152ae3f06 RLEA-2022:1869 new module: perl:5.32 This enhancement update adds the perl:5.32 module to Rocky Linux 8. (BZ#2021471) For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for perl-Pod-Perldoc, perl-DBI, perl-IO-HTML, perl-Pod-Escapes, perl-Devel-PPPort, perl-Pod-Usage, perl-Data-Dump, perl-Sub-Exporter, perl-perlfaq, perl-Object-HashBase, perl-CPAN-Meta-YAML, perl-Digest, perl-podlators, perl-bignum, perl-Text-ParseWords, perl-Text-Template, perl-DBD-MySQL, perl-Text-Glob, perl-Pod-Simple, perl-Compress-Raw-Bzip2, perl-Params-Check, perl-Term-Table, perl-CPAN-DistnameInfo, perl-Perl-OSType, perl-Data-OptList, perl-App-cpanminus, perl-Importer, perl-Exporter, perl-Compress-Raw-Lzma, perl-LWP-Protocol-https, perl-Params-Util, perl-Net-SSLeay, perl-constant, perl-Carp, perl-Pod-Checker, perl-File-Fetch, perl-Thread-Queue, perl-Filter-Simple, perl-TimeDate, perl-Test-Harness, perl-Module-Build, perl-File-HomeDir, perl-LWP-MediaTypes, perl-parent, perl-Unicode-Collate, perl-Sys-Syslog, perl-IO-Compress-Lzma, perl-threads-shared, perl-File-Which, perl-IPC-SysV, perl-IO-Socket-SSL, perl-generators, perl-libwww-perl, perl-Encode-Locale, perl-Getopt-Long, perl-File-Temp, perl-HTTP-Negotiate, perl-IPC-Cmd, perl-Module-CoreList, perl-Scalar-List-Utils, perl-HTTP-Tiny, perl-URI, perl-Data-Section, perl-WWW-RobotRules, perl-IPC-System-Simple, perl-HTTP-Date, perl-Compress-Raw-Zlib, perl-ExtUtils-Manifest, perl-DBD-SQLite, perl-Text-Tabs+Wrap, perl-ExtUtils-CBuilder, perl-Algorithm-Diff, perl-CPAN-Meta-Check, perl-DB_File, perl-Math-BigRat, perl-DBD-Pg, perl-Locale-Maketext, perl-Time-Local, perl-Text-Balanced, perl-Devel-Size, perl-FCGI, perl-HTTP-Message, perl-Net-HTTP, perl-Unicode-Normalize, perl-Try-Tiny, perl-IO-Socket-IP, perl-Pod-Parser, perl-Digest-HMAC, perl-Time-HiRes, perl-NTLM, perl, perl-Math-BigInt, perl-JSON-PP, perl-String-ShellQuote, perl-MIME-Base64, perl-Archive-Tar, perl-Filter, perl-ExtUtils-Install, perl-Parse-PMFile, perl-PerlIO-via-QuotedPrint, perl-Data-Dumper, perl-CPAN, perl-PathTools, perl-CPAN-Meta, perl-Module-Load-Conditional, perl-IO-Compress, perl-Package-Generator, perl-autodie, perl-Compress-Bzip2, perl-Text-Diff, perl-Digest-MD5, perl-Encode, perl-Socket, perl-version, perl-File-pushd, perl-Fedora-VSP, perl-Software-License, perl-Env, perl-HTML-Parser, perl-Mozilla-CA, perl-Sub-Install, perl-CPAN-Meta-Requirements, perl-libnet, perl-Config-Perl-V, perl-local-lib, perl-File-Listing, perl-HTML-Tagset, perl-HTTP-Cookies, perl-Module-Metadata, perl-Math-BigInt-FastCalc, perl-inc-latest, perl-experimental, perl-Digest-SHA, perl-Archive-Zip, perl-Term-ANSIColor, perl-Storable, perl-File-Path, perl-threads, perl-Module-Load, perl-YAML, perl-Test-Simple, perl-ExtUtils-MakeMaker, perl-Term-Cap, perl-MRO-Compat, perl-ExtUtils-ParseXS, perl-Module-CPANfile. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list This enhancement update adds the perl:5.32 module to Rocky Linux 8. (BZ#2021471) For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms perl-DBD-SQLite-1.58-2.el8.aarch64.rpm 419c2f99f97d2552ff8a4ef685163e0d470e3d34991b893d535a5d19e390abd2 RLEA-2022:1955 perl:5.32 metadata for the Rocky Linux 8 module matrix (2/4) For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for perl-DBD-Pg, perl-DBI, perl-IO-HTML, perl-LWP-MediaTypes, perl-Data-Dump, perl-FCGI, perl-HTTP-Message, perl-Net-HTTP, perl-File-pushd, perl-Try-Tiny, perl-Digest-HMAC, perl-HTML-Parser, perl-NTLM, perl-Mozilla-CA, perl-IO-Socket-SSL, perl-libwww-perl, perl-Encode-Locale, perl-DBD-MySQL, perl-String-ShellQuote, perl-HTTP-Negotiate, perl-File-Listing, perl-HTML-Tagset, perl-HTTP-Cookies, perl-Parse-PMFile, perl-CPAN-DistnameInfo, perl-WWW-RobotRules, perl-App-cpanminus, perl-HTTP-Date, perl-LWP-Protocol-https, perl-DBD-SQLite, perl-Net-SSLeay, perl-YAML, perl-CPAN-Meta-Check, perl-TimeDate, perl-Module-CPANfile. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms perl-DBD-SQLite-1.58-2.el8.aarch64.rpm 419c2f99f97d2552ff8a4ef685163e0d470e3d34991b893d535a5d19e390abd2 RLEA-2022:1990 rasdaemon bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for rasdaemon. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms rasdaemon-0.6.1-12.el8.aarch64.rpm 42a74309880b8546d92e43230b1c76497ace5d0f09797a650256707e129f6992 RLBA-2022:1994 libqmi bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for libqmi. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms libqmi-utils-1.30.2-1.el8.aarch64.rpm b2e4059ace86f92dd1bbea769bb049c0053dcfcdc7e1de4a1c69b41b8920b60f libqmi-1.30.2-1.el8.aarch64.rpm 41cbd1100c34b4b260467f6b22b86ba0c681990fe4c9ba234139ea2daabced45 RLBA-2022:1996 sed bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for sed. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms sed-4.5-5.el8.aarch64.rpm ddf5d10a779abd3fe3f75d2a49fbc872896412859c4246e1a6a9dd139ee49690 RLBA-2022:1997 libmbim bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for libmbim. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms libmbim-1.26.0-2.el8.aarch64.rpm d552349ee145265dd81c8311b00058b448e4985ff93faac5af767360a8328a37 libmbim-utils-1.26.0-2.el8.aarch64.rpm e8642872288af0d3e248483399e4d6eb5ac91e878a11d8ac49d186c9c12b6338 RLBA-2022:1999 trace-cmd bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for trace-cmd. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms trace-cmd-2.7-10.el8.aarch64.rpm 51de7c791b33a726c2f232bc84a79fe6f17674b08a423ea97902d09d489f2b22 RLBA-2022:2009 ModemManager bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for ModemManager. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms ModemManager-1.18.2-1.el8.aarch64.rpm 614e1130d623c3d191f6292cf6a28df81b65032c4f2d953f0ab61d18d54f3510 ModemManager-glib-1.18.2-1.el8.aarch64.rpm 48cd4a4e180c1db310f937810013f6bfe227b34c36ff8243993df79d2199f5e9 RLBA-2022:2015 make bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for make. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms make-4.2.1-11.el8.aarch64.rpm 2b734a70ce6b5a957b3c302c77f0c07d7ab57b5c2ebd9c9bcd79df37d744667d make-devel-4.2.1-11.el8.aarch64.rpm f198e239d9f5a6a415232bfb5f7b61bf2e747574e1c45423afe47dc1e70675dc RLBA-2022:2018 perl bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for perl. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms perl-Errno-1.28-421.el8.aarch64.rpm 34ecce44680a107dd02ab2562491411e2763126ec2883fb332760071201dc823 perl-interpreter-5.26.3-421.el8.aarch64.rpm 6a52f0faef386d8bfeea1bd34b57c6753e1c067bfa4987cbedbcee1c03ca22bd perl-IO-1.38-421.el8.aarch64.rpm 59671e68e2bc45e8b83a00107c09b74a534e8309b20321249facc85141275364 perl-libs-5.26.3-421.el8.aarch64.rpm 3d09956cc75238e3e9290b911da7a581744fb0a82470bf81b2bba71ea913d692 perl-macros-5.26.3-421.el8.aarch64.rpm 36bcc6016692a87410b729478eb543e97ca2e386baa84585597b16f7a24a2c4a RLSA-2022:2031 Low: libssh security, bug fix, and enhancement update libssh is a library which implements the SSH protocol. It can be used to implement client and server applications. The following packages have been upgraded to a later upstream version: libssh (0.9.6). (BZ#1896651) Security Fix(es): * libssh: possible heap-based buffer overflow when rekeying (CVE-2021-3634) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 Low An update is available for libssh. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list libssh is a library which implements the SSH protocol. It can be used to implement client and server applications. The following packages have been upgraded to a later upstream version: libssh (0.9.6). (BZ#1896651) Security Fix(es): * libssh: possible heap-based buffer overflow when rekeying (CVE-2021-3634) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms libssh-0.9.6-3.el8.aarch64.rpm befdae1b2d3f4a16811a1e57f8243b194c2e50e6624c851db5bc118020d10b21 RLBA-2022:2034 dmidecode bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for dmidecode. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms dmidecode-3.3-4.el8.aarch64.rpm 79a38f27953434301d0ee92b817ce71c2e2b9633440cd5910e7137359413435d RLBA-2022:2035 libstoragemgmt bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for libstoragemgmt. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms libstoragemgmt-1.9.1-3.el8.aarch64.rpm 7c5e4f09bb5a3cd0ec5a2565d218c51be2725972a96a0972df2a76e03cbb7c70 libstoragemgmt-udev-1.9.1-3.el8.aarch64.rpm 3bef2c6f20a893cd7468f7ba5a0b30047647b54fdfdbbc8582ee4a506931b6e2 python3-libstoragemgmt-1.9.1-3.el8.aarch64.rpm 065d96f2a85cf84f3f4292b72c4de31317e2cdf273a553d1e304b169621a1248 RLBA-2022:2040 libuser bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for libuser. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms libuser-0.62-24.el8.aarch64.rpm c661dc2fe0314f936dfc856462560918f8c1a07eb1fafba94bed65debd937278 python3-libuser-0.62-24.el8.aarch64.rpm 09a954d2b3f35ac14a2b9af322bbf27cd2e30ae160cf404d046dea1c2f5892a1 RLSA-2022:2043 Moderate: c-ares security update The c-ares C library defines asynchronous DNS (Domain Name System) requests and provides name resolving API. Security Fix(es): * c-ares: Missing input validation of host names may lead to domain hijacking (CVE-2021-3672) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 Moderate An update is available for c-ares. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list The c-ares C library defines asynchronous DNS (Domain Name System) requests and provides name resolving API. Security Fix(es): * c-ares: Missing input validation of host names may lead to domain hijacking (CVE-2021-3672) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms c-ares-1.13.0-6.el8.aarch64.rpm 8225a0ed737eeda108db25266079fbb6518ee59d078a771cd45a0e3295bd11b3 c-ares-devel-1.13.0-6.el8.aarch64.rpm 4aa2238ad16931ee7a04d41e2e70ad777dac7f56043d3656d1f8b183a4877a02 RLBA-2022:2046 libcomps bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for libcomps. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms libcomps-0.1.18-1.el8.aarch64.rpm 14501e88c053a8ff81112ebd05f7346a9d62e1691758e5a70574747c83a200ed python3-libcomps-0.1.18-1.el8.aarch64.rpm b6762a8e5df23f338919efdb6398e87e21bded199267b547062f24f4ed6a9e76 RLBA-2022:2061 jansson bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for jansson. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms jansson-2.14-1.el8.aarch64.rpm 1ec0a962c3663f00d05c8056ba611a88582680453d226ee23f31e55b0316be32 RLBA-2022:2078 xfsprogs bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for xfsprogs. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms xfsprogs-5.0.0-10.el8.aarch64.rpm dab31500b020c6b5caf69b5d6b8fdff9637e4cc84ce5a13464c38a12cadc55c4 xfsprogs-devel-5.0.0-10.el8.aarch64.rpm d2a76cb9bde3a18aad91add45c3411e30954ff49475b0046540d952d81ddcd08 RLBA-2022:2079 setools bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for setools. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms python3-setools-4.3.0-3.el8.aarch64.rpm 575c6e7dada7547d94f2d67b16a0e971f3d79a924832a36b93b94b2634c99c61 setools-console-4.3.0-3.el8.aarch64.rpm 713f6e45f5ae611aa0919db766e024be705c5562ff407244ba23cc9b110d5fc6 RLBA-2022:2088 realmd bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for realmd. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms realmd-0.16.3-25.el8.aarch64.rpm 67f2c2b4e4b12ed4d23677389b779a5eed53b98b686368333e94ebf923ddea59 RLBA-2022:2089 pcsc-lite bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for pcsc-lite. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms pcsc-lite-1.9.5-1.el8.aarch64.rpm 2c7032d00a96a124b49d19542b0208423ee016fb2e7d3616cc91186a2758fc54 pcsc-lite-libs-1.9.5-1.el8.aarch64.rpm a7d5bc5f6ea803c1c9a38e28c45ec265a992eab394697ac258281f934ea9a134 RLBA-2022:2091 postfix bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for postfix. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms postfix-3.5.8-4.el8.aarch64.rpm 51e04123a82e3d672c2bb9f55080be884fbc6e194e40e894f8552e5714697cab RLBA-2022:2095 python-ethtool bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for python-ethtool. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms python3-ethtool-0.14-5.el8.aarch64.rpm 13449b4259462ab6b39946398c5e7c6ece93d678a30bd8f77241453506c9ff12 RLBA-2022:2097 cryptsetup bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for cryptsetup. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms cryptsetup-2.3.7-2.el8.aarch64.rpm 9c95eaff255efbcd678f50783012223b1463ab637468a588d3347198628c6e6b cryptsetup-libs-2.3.7-2.el8.aarch64.rpm ff9d0c274ad6f9332981dda14a07e5021ba81ef81294fc2bd63ae732df477cc3 cryptsetup-reencrypt-2.3.7-2.el8.aarch64.rpm e90306211cd7b047f8c9e7d85631922df7177e1ebfcda24119fce08ec5056261 integritysetup-2.3.7-2.el8.aarch64.rpm ab63dd0d41af2cc8a2f812b143379d0e1784007ab871842276dd225b1516c87f veritysetup-2.3.7-2.el8.aarch64.rpm b6aea7ac20bebeb9d9161416fb14b95bf910768c388d3f88ea0f9c29648955c4 RLBA-2022:2099 sysfsutils bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for sysfsutils. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms libsysfs-2.1.0-25.el8.aarch64.rpm 275b70e8969c060ea185e483255bc9ff865d67b48bf0e78780a26e009c282ec9 RLBA-2022:2101 libnftnl bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for libnftnl. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms libnftnl-1.1.5-5.el8.aarch64.rpm cd85f0f44d1e72c86ce0ba673ed779a479399d5a6d349cec6228d3c82620538c RLBA-2022:2108 man-pages bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for man-pages. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms man-pages-4.15-7.el8.aarch64.rpm 5e36a9344a4b892cd82ae9c27d795797c9395c9ce06eb8a61a318e1217a204a9 RLBA-2022:2114 passwd bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for passwd. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms passwd-0.80-4.el8.aarch64.rpm 40fa894692aaeecd73edd1dbc1f4ac2defec288d4e2a7a3afdd560b97d9cb124 RLBA-2022:2115 xfsdump bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for xfsdump. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms xfsdump-3.1.8-4.el8.aarch64.rpm 3c5ce452105fc1b6a5e900b9016b8928ab4d4cfb4c1c5b27df59f52ed3a23df3 RLBA-2022:2117 gpgme bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for gpgme. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms gpgme-1.13.1-11.el8.aarch64.rpm 4acee00582eef4234d6e22b59f381015e643544abb53d170d4439ae88fbc4996 gpgmepp-1.13.1-11.el8.aarch64.rpm b29d190b61010e024a585abd1816004d52e1395ccbb8ba2f9d87978a5ddeca29 python3-gpg-1.13.1-11.el8.aarch64.rpm 34fabfff5b0bab1a62773792c7535ccaebbe49ebb729bedb34f2f10faac46408 RLBA-2022:2118 texinfo bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for texinfo. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms info-6.5-7.el8.aarch64.rpm f06bb14b1fd53ce2ba9a52520d6cdff9e3029b4e92d284ca8b8dc1d30969954e RLBA-2022:2122 gawk bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for gawk. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms gawk-4.2.1-4.el8.aarch64.rpm e5dee734235635b7181069d5d4ec685baa6dd0ca72b49e55614225400768d8cf RLSA-2022:4991 Important: xz security update XZ Utils is an integrated collection of user-space file compression utilities based on the Lempel-Ziv-Markov chain algorithm (LZMA), which performs lossless data compression. The algorithm provides a high compression ratio while keeping the decompression time short. Security Fix(es): * gzip: arbitrary-file-write vulnerability (CVE-2022-1271) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 Important An update is available for xz. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list XZ Utils is an integrated collection of user-space file compression utilities based on the Lempel-Ziv-Markov chain algorithm (LZMA), which performs lossless data compression. The algorithm provides a high compression ratio while keeping the decompression time short. Security Fix(es): * gzip: arbitrary-file-write vulnerability (CVE-2022-1271) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. rocky-linux-8-aarch64-baseos-rpms xz-5.2.4-4.el8_6.aarch64.rpm a6e66abf0ec31dc6531ad1c7bc15ae596264c95ec4f630045c74f57c85f87158 xz-devel-5.2.4-4.el8_6.aarch64.rpm 2c915df260a0cf9280625dd99345a5b86f7f050385d1bb881058801fdb625671 xz-libs-5.2.4-4.el8_6.aarch64.rpm 5813ddb231f6b96c4de61e76b8b393b9506d39e490e0b51e54000412b41474f5 RLSA-2022:5095 Important: grub2, mokutil, shim, and shim-unsigned-x64 security update The grub2 packages provide version 2 of the Grand Unified Boot Loader (GRUB), a highly configurable and customizable boot loader with modular architecture. The packages support a variety of kernel formats, file systems, computer architectures, and hardware devices. The shim package contains a first-stage UEFI boot loader that handles chaining to a trusted full boot loader under secure boot environments. Security Fix(es): * grub2: Integer underflow in grub_net_recv_ip4_packets (CVE-2022-28733) * grub2: Crafted PNG grayscale images may lead to out-of-bounds write in heap (CVE-2021-3695) * grub2: Crafted PNG image may lead to out-of-bound write during huffman table handling (CVE-2021-3696) * grub2: Crafted JPEG image can lead to buffer underflow write in the heap (CVE-2021-3697) * grub2: Out-of-bound write when handling split HTTP headers (CVE-2022-28734) * grub2: shim_lock verifier allows non-kernel files to be loaded (CVE-2022-28735) * grub2: use-after-free in grub_cmd_chainloader() (CVE-2022-28736) * shim: Buffer overflow when loading crafted EFI images (CVE-2022-28737) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 Important An update is available for grub2, shim, shim-unsigned-x64, mokutil. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list The grub2 packages provide version 2 of the Grand Unified Boot Loader (GRUB), a highly configurable and customizable boot loader with modular architecture. The packages support a variety of kernel formats, file systems, computer architectures, and hardware devices. The shim package contains a first-stage UEFI boot loader that handles chaining to a trusted full boot loader under secure boot environments. Security Fix(es): * grub2: Integer underflow in grub_net_recv_ip4_packets (CVE-2022-28733) * grub2: Crafted PNG grayscale images may lead to out-of-bounds write in heap (CVE-2021-3695) * grub2: Crafted PNG image may lead to out-of-bound write during huffman table handling (CVE-2021-3696) * grub2: Crafted JPEG image can lead to buffer underflow write in the heap (CVE-2021-3697) * grub2: Out-of-bound write when handling split HTTP headers (CVE-2022-28734) * grub2: shim_lock verifier allows non-kernel files to be loaded (CVE-2022-28735) * grub2: use-after-free in grub_cmd_chainloader() (CVE-2022-28736) * shim: Buffer overflow when loading crafted EFI images (CVE-2022-28737) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. rocky-linux-8-aarch64-baseos-rpms shim-aa64-15.6-1.el8.aarch64.rpm 2622c680a378a673713d42c96c305f63b96edee4be16866ec04e722d26e87d75 RLSA-2022:5311 Moderate: libgcrypt security update The libgcrypt library provides general-purpose implementations of various cryptographic algorithms. Security Fix(es): * libgcrypt: ElGamal implementation allows plaintext recovery (CVE-2021-40528) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 Moderate An update is available for libgcrypt. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list The libgcrypt library provides general-purpose implementations of various cryptographic algorithms. Security Fix(es): * libgcrypt: ElGamal implementation allows plaintext recovery (CVE-2021-40528) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. rocky-linux-8-aarch64-baseos-rpms libgcrypt-1.8.5-7.el8_6.aarch64.rpm a8c17e9299608dbbae8f31c9a2f20b4eff4fb139a676cdbbd4cfd02c56a3ea8f libgcrypt-devel-1.8.5-7.el8_6.aarch64.rpm c3e308322373badd6ea9e6264afdd7abbbf4fbadcfe85a34f8486b0ac2ff79ce RLBA-2022:5322 mtools bug fix and enhancement update Mtools is a collection of utilities for files created in the MS-DOS operating system. Mtools allow you to read, write, and move MS-DOS file system files (normally on MS-DOS floppy disks). Mtools supports Windows95 style long file names, IBM extended density format (OS/2 XDF) disks, and disks formatted in the 2M program. Install Mtools if your scenario requires using MS-DOS disks. Bug Fix(es) and Enhancement(s): * mtools missing glibc-gconv-extra dependency (BZ#2080999) Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for mtools. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list Mtools is a collection of utilities for files created in the MS-DOS operating system. Mtools allow you to read, write, and move MS-DOS file system files (normally on MS-DOS floppy disks). Mtools supports Windows95 style long file names, IBM extended density format (OS/2 XDF) disks, and disks formatted in the 2M program. Install Mtools if your scenario requires using MS-DOS disks. Bug Fix(es) and Enhancement(s): * mtools missing glibc-gconv-extra dependency (BZ#2080999) rocky-linux-8-aarch64-baseos-rpms mtools-4.0.18-15.el8_6.aarch64.rpm d2eae7cbe81115d5c3a0e3c276d1a6ca2c1ea667d3248d734566db2b5f3ccd03 RLSA-2022:5809 Moderate: pcre2 security update The pcre2 package contains a new generation of the Perl Compatible Regular Expression libraries for implementing regular expression pattern matching using the same syntax and semantics as Perl. Security Fix(es): * pcre2: Out-of-bounds read in compile_xclass_matchingpath in pcre2_jit_compile.c (CVE-2022-1586) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 Moderate An update is available for pcre2. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list The pcre2 package contains a new generation of the Perl Compatible Regular Expression libraries for implementing regular expression pattern matching using the same syntax and semantics as Perl. Security Fix(es): * pcre2: Out-of-bounds read in compile_xclass_matchingpath in pcre2_jit_compile.c (CVE-2022-1586) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. rocky-linux-8-aarch64-baseos-rpms pcre2-10.32-3.el8_6.aarch64.rpm 199691f32077d934d813c94a40310e6e54770032ded2dddf0cd7002f4b9434ab pcre2-devel-10.32-3.el8_6.aarch64.rpm 322ba90a7f2dd17d6012d8822b92cfcd0f8bb466fc96bbc192d877bca25a56fc pcre2-utf16-10.32-3.el8_6.aarch64.rpm 5f4fc003b5e7bf176ef9e073c394292f78d57d0f22b4f6eb48c269fc0bc7da10 pcre2-utf32-10.32-3.el8_6.aarch64.rpm 1096d125f218c2a1aab00679612e9a0b859b973b0e030578cff89d7c5e63762d RLSA-2022:5813 Moderate: vim security update Vim (Vi IMproved) is an updated and improved version of the vi editor. Security Fix(es): * vim: Out-of-bounds Write (CVE-2022-1785) * vim: out-of-bounds write in vim_regsub_both() in regexp.c (CVE-2022-1897) * vim: buffer over-read in utf_ptr2char() in mbyte.c (CVE-2022-1927) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 Moderate An update is available for vim. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list Vim (Vi IMproved) is an updated and improved version of the vi editor. Security Fix(es): * vim: Out-of-bounds Write (CVE-2022-1785) * vim: out-of-bounds write in vim_regsub_both() in regexp.c (CVE-2022-1897) * vim: buffer over-read in utf_ptr2char() in mbyte.c (CVE-2022-1927) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. rocky-linux-8-aarch64-baseos-rpms vim-minimal-8.0.1763-19.el8_6.4.aarch64.rpm 99225e903ab6362d7ab2e4b2677fae22d14e4f04ad5d8febc21c08b74a8bcd3e RLBA-2022:5815 bash bug fix and enhancement update The bash packages provide Bash (Bourne-again shell), which is the default shell for Rocky Linux. Bug Fix(es) and Enhancement(s): * Segfault in 'buffered_getchar()' function in bash (BZ#2097659) Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for bash. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list The bash packages provide Bash (Bourne-again shell), which is the default shell for Rocky Linux. Bug Fix(es) and Enhancement(s): * Segfault in 'buffered_getchar()' function in bash (BZ#2097659) rocky-linux-8-aarch64-baseos-rpms bash-4.4.20-4.el8_6.aarch64.rpm 2da0398e2a0bbfac7aeeef962f12c8e48be6cf4797a2fe625cbbe27b0cc33c22 bash-doc-4.4.20-4.el8_6.aarch64.rpm f0feb2cd8b50de23659d62069e13600a15622bd86185afbe634c59c4600295ad RLSA-2022:5818 Moderate: openssl security update OpenSSL is a toolkit that implements the Secure Sockets Layer (SSL) and Transport Layer Security (TLS) protocols, as well as a full-strength general-purpose cryptography library. Security Fix(es): * openssl: c_rehash script allows command injection (CVE-2022-1292) * openssl: the c_rehash script allows command injection (CVE-2022-2068) * openssl: AES OCB fails to encrypt some bytes (CVE-2022-2097) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 Moderate An update is available for openssl. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list OpenSSL is a toolkit that implements the Secure Sockets Layer (SSL) and Transport Layer Security (TLS) protocols, as well as a full-strength general-purpose cryptography library. Security Fix(es): * openssl: c_rehash script allows command injection (CVE-2022-1292) * openssl: the c_rehash script allows command injection (CVE-2022-2068) * openssl: AES OCB fails to encrypt some bytes (CVE-2022-2097) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. rocky-linux-8-aarch64-baseos-rpms openssl-1.1.1k-7.el8_6.aarch64.rpm 269acb1e995e9ca1cb690110dac77f6f2261c9316c6f72b75c94461ea2065f89 openssl-devel-1.1.1k-7.el8_6.aarch64.rpm 7d857b7ca18bab2302a7e2f75da0c9ebc6ffd0185f082fd844cf220a439613b5 openssl-libs-1.1.1k-7.el8_6.aarch64.rpm dafeb07a3889c472136a9913fed1689e718e675c4d4eb08dca365118570fbeb9 openssl-perl-1.1.1k-7.el8_6.aarch64.rpm f8fd821099cc8921527e00c0fb1ea81b5d5ae599d26c3159b143bc7dd18b50fb RLSA-2022:6463 Moderate: gnupg2 security update The GNU Privacy Guard (GnuPG or GPG) is a tool for encrypting data and creating digital signatures, compliant with OpenPGP and S/MIME standards. Security Fix(es): * gpg: Signature spoofing via status line injection (CVE-2022-34903) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 Moderate An update is available for gnupg2. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list The GNU Privacy Guard (GnuPG or GPG) is a tool for encrypting data and creating digital signatures, compliant with OpenPGP and S/MIME standards. Security Fix(es): * gpg: Signature spoofing via status line injection (CVE-2022-34903) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. rocky-linux-8-aarch64-baseos-rpms gnupg2-2.2.20-3.el8_6.aarch64.rpm 2a9c5b3ce0a5397f0e41321983d58e61a2084487c7b4eb0e2adefda45bb591f7 gnupg2-smime-2.2.20-3.el8_6.aarch64.rpm baa39f7719aef967ff00c36d29266de34ca4256c21e0e7f65e92f1f88117a504 RLSA-2022:7089 Important: libksba security update KSBA (pronounced Kasbah) is a library to make X.509 certificates as well as the CMS easily accessible by other applications. Both specifications are building blocks of S/MIME and TLS. Security Fix(es): * libksba: integer overflow may lead to remote code execution (CVE-2022-3515) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 Important An update is available for libksba. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list KSBA (pronounced Kasbah) is a library to make X.509 certificates as well as the CMS easily accessible by other applications. Both specifications are building blocks of S/MIME and TLS. Security Fix(es): * libksba: integer overflow may lead to remote code execution (CVE-2022-3515) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. rocky-linux-8-aarch64-baseos-rpms libksba-1.3.5-8.el8_6.aarch64.rpm 8cdf1933b2245ad3191d3179c38d4ed45bf969621ed7bb505b367f107ce4abea RLSA-2022:7105 Moderate: gnutls security update The gnutls packages provide the GNU Transport Layer Security (GnuTLS) library, which implements cryptographic algorithms and protocols such as SSL, TLS, and DTLS. Security Fix(es): * gnutls: Double free during gnutls_pkcs7_verify. (CVE-2022-2509) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 Moderate An update is available for gnutls. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list The gnutls packages provide the GNU Transport Layer Security (GnuTLS) library, which implements cryptographic algorithms and protocols such as SSL, TLS, and DTLS. Security Fix(es): * gnutls: Double free during gnutls_pkcs7_verify. (CVE-2022-2509) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. rocky-linux-8-aarch64-baseos-rpms gnutls-3.6.16-5.el8_6.aarch64.rpm d9eb93987fc7832053fee67d9086e09fe1a4e765c148a0f9a1e81e594590dc91 RLBA-2022:7107 glib2 bug fix and enhancement update GLib provides the core application building blocks for libraries and applications written in C. It provides the core object system used in GNOME, the main loop implementation, and a large set of utility functions for strings and common data structures. Bug Fix(es) and Enhancement(s): * Add --interface-info-[body|header] modes to gdbus-codegen. (BZ#2124615) Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for glib2. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list GLib provides the core application building blocks for libraries and applications written in C. It provides the core object system used in GNOME, the main loop implementation, and a large set of utility functions for strings and common data structures. Bug Fix(es) and Enhancement(s): * Add --interface-info-[body|header] modes to gdbus-codegen. (BZ#2124615) rocky-linux-8-aarch64-baseos-rpms glib2-2.56.4-158.el8_6.1.aarch64.rpm 5183edb75014cfb1b3d341b12c19692d7c331bbff17cf767b6d4cb99d92c0830 glib2-devel-2.56.4-158.el8_6.1.aarch64.rpm ea8ece579861a004a9d3ef7edcc83e33b242d1ea666c30f8ee0c481f2f87e8bf glib2-fam-2.56.4-158.el8_6.1.aarch64.rpm 83f3317938248342e2ef36c029f0d1b9e9f52b86c8c645d5b38b95c4c5fcaf88 glib2-tests-2.56.4-158.el8_6.1.aarch64.rpm 0e82c10313b40160ec9d95e8b1ce9f3570de15fb7c8ad7d377947c1c8dd0b9bd RLSA-2022:7108 Moderate: sqlite security update SQLite is a C library that implements an SQL database engine. A large subset of SQL92 is supported. A complete database is stored in a single disk file. The API is designed for convenience and ease of use. Applications that link against SQLite can enjoy the power and flexibility of an SQL database without the administrative hassles of supporting a separate database server. Security Fix(es): * sqlite: Out of bounds access during table rename (CVE-2020-35527) * sqlite: Null pointer derreference in src/select.c (CVE-2020-35525) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 Moderate An update is available for sqlite. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list SQLite is a C library that implements an SQL database engine. A large subset of SQL92 is supported. A complete database is stored in a single disk file. The API is designed for convenience and ease of use. Applications that link against SQLite can enjoy the power and flexibility of an SQL database without the administrative hassles of supporting a separate database server. Security Fix(es): * sqlite: Out of bounds access during table rename (CVE-2020-35527) * sqlite: Null pointer derreference in src/select.c (CVE-2020-35525) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. rocky-linux-8-aarch64-baseos-rpms sqlite-3.26.0-16.el8_6.aarch64.rpm b34d9a706cd072df44bb711fe69e7d2ceab23c8034210ab1844fe214b26f7e35 sqlite-devel-3.26.0-16.el8_6.aarch64.rpm 875a9eb15e1f86210ce55934b3c4ef79d08ee1cae7b00f0569f32ac82f4e5907 sqlite-libs-3.26.0-16.el8_6.aarch64.rpm d3fa6ff233fd4eeef3f4ff824726c8142ea4d1ef0b46512d5e62ce2e9f6b3d08 RLBA-2022:7115 rpm bug fix and enhancement update The RPM Package Manager (RPM) is a command-line driven package management system capable of installing, uninstalling, verifying, querying, and updating software packages. Bug Fix(es) and Enhancement(s): * rpm-plugin-fapolicyd breaks system upgrade, leaving yum in hung state. (BZ#2124523) Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for rpm. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list The RPM Package Manager (RPM) is a command-line driven package management system capable of installing, uninstalling, verifying, querying, and updating software packages. Bug Fix(es) and Enhancement(s): * rpm-plugin-fapolicyd breaks system upgrade, leaving yum in hung state. (BZ#2124523) rocky-linux-8-aarch64-baseos-rpms python3-rpm-4.14.3-24.el8_7.aarch64.rpm c9927c97d69913572bb7ff3a695c329ba023a92dc37eec864cee2b188025f7f9 rpm-4.14.3-24.el8_7.aarch64.rpm 0d0117a179a20abc617a4a47473f757ab55696a4d89413718dc65c0b1c0d6fab rpm-build-libs-4.14.3-24.el8_7.aarch64.rpm b5c2b41fb6f91def661b1684cd142586a634b89fd7a007cd66206e170eecd9fe rpm-devel-4.14.3-24.el8_7.aarch64.rpm 6cdd4b81da7a942c9421e6294a831d2ff76679b1fc914be7c1e81fefb22fdd3d rpm-libs-4.14.3-24.el8_7.aarch64.rpm 4e6f21d79a5363e24486e75cd7bdaca1b280ac3dfc67ad53eb4e518e49b5c274 rpm-plugin-ima-4.14.3-24.el8_7.aarch64.rpm 7cee4cfd57f17ebdcf01ea3575d1cdbd796978154f39a62c399865ea062e63f1 rpm-plugin-prioreset-4.14.3-24.el8_7.aarch64.rpm deb2fd79b798f3de854fe81a6e7229db694a8d58b671a91ba5aefa2cc583d209 rpm-plugin-selinux-4.14.3-24.el8_7.aarch64.rpm 42970eaedf7385ec475ba67126ab37c2579d3e03525c8ed4a42ed37b20623f89 rpm-plugin-syslog-4.14.3-24.el8_7.aarch64.rpm 9e254538db70708897180623b4a6631b03d4b10eabb4097378527215682f1e2d rpm-plugin-systemd-inhibit-4.14.3-24.el8_7.aarch64.rpm 22cfd5523cab528991fabb2c5d32179288498d05e600b9e9e7060fb8f232ccd4 rpm-sign-4.14.3-24.el8_7.aarch64.rpm 3395b5e2eeac8bec0930f4ce95fbe163923c768545da2b829e8f868744a806b4 RLBA-2022:7116 libsemanage bug fix and enhancement update The libsemanage library provides an API for the manipulation of SELinux binary policies. It is used by the checkpolicy compiler and similar utilitlies, as well as by programs such as load_policy, which must perform specific transformations on binary policies, such as customizing policy Boolean settings. Bug Fix(es) and Enhancement(s): * libsemanage's check_ext_changes doesn't pick up boolean changes (BZ#2129139) Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for libsemanage. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list The libsemanage library provides an API for the manipulation of SELinux binary policies. It is used by the checkpolicy compiler and similar utilitlies, as well as by programs such as load_policy, which must perform specific transformations on binary policies, such as customizing policy Boolean settings. Bug Fix(es) and Enhancement(s): * libsemanage's check_ext_changes doesn't pick up boolean changes (BZ#2129139) rocky-linux-8-aarch64-baseos-rpms libsemanage-2.9-9.el8.aarch64.rpm 42c73e3fd94d62928882f6defbb0d78759c80f54971b161c2725ce1b3af61fc9 python3-libsemanage-2.9-9.el8.aarch64.rpm 5cd9a3d2868464a09b6d4c8c8d546ecaf628192c8207aa72b53e7eacf6b17f2d RLBA-2022:7681 audit bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for audit. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms audispd-plugins-3.0.7-4.el8.aarch64.rpm f8201e2ecad2fc6a9d0615abb90bb306c96e33f3922da3d69fb723ec0ffac9f7 audispd-plugins-zos-3.0.7-4.el8.aarch64.rpm dd516f5c2063f92f129a4efd46b0260fe8b81378a42beaf1e73029bac6b9f649 audit-3.0.7-4.el8.aarch64.rpm ecf2595e8fbfcc6bd677c20e44a3641f79eda4006fba1ba145b49f54ab318e3f audit-libs-3.0.7-4.el8.aarch64.rpm b74f36177468b6d2ab83388e78d498b6e2691ac11bc85e28d573e80a6a2435be audit-libs-devel-3.0.7-4.el8.aarch64.rpm 370595411de87116dbc3569eda1f3a90d49216f1e54a44222a03df6ca9ff46ea python3-audit-3.0.7-4.el8.aarch64.rpm 850fa7448c71e67e4ad7d6b3405dc71ae39c4170aef06abff89eacfcd393adb3 RLBA-2022:7682 babeltrace bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for babeltrace. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms libbabeltrace-1.5.4-4.el8.aarch64.rpm bf1b471001d16651e9c3fbbde98b9e6f032d6a132535f604c7afd049ece935bf RLSA-2022:7683 Moderate: kernel security, bug fix, and enhancement update The kernel packages contain the Linux kernel, the core of any Linux operating system. Security Fix(es): * off-path attacker may inject data or terminate victim's TCP session (CVE-2020-36516) * race condition in VT_RESIZEX ioctl when vc_cons[i].d is already NULL leading to NULL pointer dereference (CVE-2020-36558) * use-after-free vulnerability in function sco_sock_sendmsg() (CVE-2021-3640) * memory leak for large arguments in video_usercopy function in drivers/media/v4l2-core/v4l2-ioctl.c (CVE-2021-30002) * smb2_ioctl_query_info NULL Pointer Dereference (CVE-2022-0168) * NULL pointer dereference in udf_expand_file_adinicbdue() during writeback (CVE-2022-0617) * swiotlb information leak with DMA_FROM_DEVICE (CVE-2022-0854) * uninitialized registers on stack in nft_do_chain can cause kernel pointer leakage to UM (CVE-2022-1016) * race condition in snd_pcm_hw_free leading to use-after-free (CVE-2022-1048) * use-after-free in tc_new_tfilter() in net/sched/cls_api.c (CVE-2022-1055) * use-after-free and memory errors in ext4 when mounting and operating on a corrupted image (CVE-2022-1184) * NULL pointer dereference in x86_emulate_insn may lead to DoS (CVE-2022-1852) * buffer overflow in nft_set_desc_concat_parse() (CVE-2022-2078) * nf_tables cross-table potential use-after-free may lead to local privilege escalation (CVE-2022-2586) * openvswitch: integer underflow leads to out-of-bounds write in reserve_sfa_size() (CVE-2022-2639) * use-after-free when psi trigger is destroyed while being polled (CVE-2022-2938) * net/packet: slab-out-of-bounds access in packet_recvmsg() (CVE-2022-20368) * possible to use the debugger to write zero into a location of choice (CVE-2022-21499) * Spectre-BHB (CVE-2022-23960) * Post-barrier Return Stack Buffer Predictions (CVE-2022-26373) * memory leak in drivers/hid/hid-elo.c (CVE-2022-27950) * double free in ems_usb_start_xmit in drivers/net/can/usb/ems_usb.c (CVE-2022-28390) * use after free in SUNRPC subsystem (CVE-2022-28893) * use-after-free due to improper update of reference count in net/sched/cls_u32.c (CVE-2022-29581) * DoS in nfqnl_mangle in net/netfilter/nfnetlink_queue.c (CVE-2022-36946) * nfs_atomic_open() returns uninitialized data instead of ENOTDIR (CVE-2022-24448) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 Moderate An update is available for kernel. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list The kernel packages contain the Linux kernel, the core of any Linux operating system. Security Fix(es): * off-path attacker may inject data or terminate victim's TCP session (CVE-2020-36516) * race condition in VT_RESIZEX ioctl when vc_cons[i].d is already NULL leading to NULL pointer dereference (CVE-2020-36558) * use-after-free vulnerability in function sco_sock_sendmsg() (CVE-2021-3640) * memory leak for large arguments in video_usercopy function in drivers/media/v4l2-core/v4l2-ioctl.c (CVE-2021-30002) * smb2_ioctl_query_info NULL Pointer Dereference (CVE-2022-0168) * NULL pointer dereference in udf_expand_file_adinicbdue() during writeback (CVE-2022-0617) * swiotlb information leak with DMA_FROM_DEVICE (CVE-2022-0854) * uninitialized registers on stack in nft_do_chain can cause kernel pointer leakage to UM (CVE-2022-1016) * race condition in snd_pcm_hw_free leading to use-after-free (CVE-2022-1048) * use-after-free in tc_new_tfilter() in net/sched/cls_api.c (CVE-2022-1055) * use-after-free and memory errors in ext4 when mounting and operating on a corrupted image (CVE-2022-1184) * NULL pointer dereference in x86_emulate_insn may lead to DoS (CVE-2022-1852) * buffer overflow in nft_set_desc_concat_parse() (CVE-2022-2078) * nf_tables cross-table potential use-after-free may lead to local privilege escalation (CVE-2022-2586) * openvswitch: integer underflow leads to out-of-bounds write in reserve_sfa_size() (CVE-2022-2639) * use-after-free when psi trigger is destroyed while being polled (CVE-2022-2938) * net/packet: slab-out-of-bounds access in packet_recvmsg() (CVE-2022-20368) * possible to use the debugger to write zero into a location of choice (CVE-2022-21499) * Spectre-BHB (CVE-2022-23960) * Post-barrier Return Stack Buffer Predictions (CVE-2022-26373) * memory leak in drivers/hid/hid-elo.c (CVE-2022-27950) * double free in ems_usb_start_xmit in drivers/net/can/usb/ems_usb.c (CVE-2022-28390) * use after free in SUNRPC subsystem (CVE-2022-28893) * use-after-free due to improper update of reference count in net/sched/cls_u32.c (CVE-2022-29581) * DoS in nfqnl_mangle in net/netfilter/nfnetlink_queue.c (CVE-2022-36946) * nfs_atomic_open() returns uninitialized data instead of ENOTDIR (CVE-2022-24448) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms bpftool-4.18.0-425.3.1.el8.aarch64.rpm 6942240e737414cb101e4ea989b2205bab145d8a8fafd7c929a92463f71746b3 kernel-4.18.0-425.3.1.el8.aarch64.rpm ef94f46e20952c5d5a81697fde82c8a23fa56aa74a7561cfafdfeabf910dc89e kernel-core-4.18.0-425.3.1.el8.aarch64.rpm b9e085ca90392f23347ebab787d1567271707756bd1b5e51330233104e646c5c kernel-cross-headers-4.18.0-425.3.1.el8.aarch64.rpm 39fb365895f5ac52254fb7f4a3204e390eb4c03379b4ca27b8c9e40220e6b012 kernel-debug-4.18.0-425.3.1.el8.aarch64.rpm 211333bf226a9f1b5646a4703107d8064e8fde85d352f3690738f2c70c4d1ff1 kernel-debug-core-4.18.0-425.3.1.el8.aarch64.rpm c597569d27490f422e006d501d287db1c3561b67555ccb599a4b4d3618f87352 kernel-debug-devel-4.18.0-425.3.1.el8.aarch64.rpm af7740829b30eb81eaf3647250a3274c59c850911d32248f66f22c1467dbcf44 kernel-debuginfo-common-aarch64-4.18.0-425.3.1.el8.aarch64.rpm 4930df4f7633d3ad976e9156e3951464e553cbec717feb54270606582d05cda5 kernel-debug-modules-4.18.0-425.3.1.el8.aarch64.rpm 7cd377c49c52e658a64c55848da558e169034acb57a922a455781039d10110ab kernel-debug-modules-extra-4.18.0-425.3.1.el8.aarch64.rpm 58087146132aa05199503bb268f578cd1095d1e4968f476ec6125cda9b7509f1 kernel-devel-4.18.0-425.3.1.el8.aarch64.rpm 2a5bba03c87111e68ccdcdfef04cf1a7b891648aa7eec7bcf2e96eccc498fc82 kernel-headers-4.18.0-425.3.1.el8.aarch64.rpm 44bab6896932c62b8898bf9f48506cec2df89e158b911b6bd0401356822f5751 kernel-modules-4.18.0-425.3.1.el8.aarch64.rpm 647d9db26d8c453615723d49df4d4f0e966513cdaea82c9ba6704e4e2e42777a kernel-modules-extra-4.18.0-425.3.1.el8.aarch64.rpm 374fcda68c0740221b462e133a7775444cc4339cc7b2b7b92a785d56669eea1c kernel-tools-4.18.0-425.3.1.el8.aarch64.rpm 7adbe65e0e0069e933a454a67892895f9c9aa9e9955fb46dde82475e42e4211b kernel-tools-libs-4.18.0-425.3.1.el8.aarch64.rpm 1e1a635dc340f78e6a7a34bd38ae3d3f7800174ad3b505ddb286da1ebde2e941 perf-4.18.0-425.3.1.el8.aarch64.rpm 3092f8426c5b5eff8509e9a0b74fcf49271dd8a0397ae342c2038d65abe70a47 python3-perf-4.18.0-425.3.1.el8.aarch64.rpm 921d5443b2d96b7443f36040e5c6bca983fb1459f181fbe39eec4b8fbf65a09d RLBA-2022:7684 glibc bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for glibc. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms glibc-2.28-211.el8.aarch64.rpm af400a51bae252291073278f1a25244d08c4b14be24e5c7e6086cbc7e56d7469 glibc-all-langpacks-2.28-211.el8.aarch64.rpm 2e21c17e7a748b6f708c4409d1dd96c9014d964fa4d8255f26e5cbb0b0a5cc7e glibc-common-2.28-211.el8.aarch64.rpm 06e12940e38d6167e9107cc920c983bcf743533b6a68bc88eba67b479e2db673 glibc-devel-2.28-211.el8.aarch64.rpm 2c4ca4212a8504c15cbf89b747a3b7ce0daf508a8bf8e7decfd336827622e6fc glibc-gconv-extra-2.28-211.el8.aarch64.rpm 9c1965f34c347d2f373a63d1d7758a05064643522c9ceb605aff208a3eeb190c glibc-headers-2.28-211.el8.aarch64.rpm eeda97ad0e8a742b62332b3fcfbb606913a95c483ab4274c054c2bbf5b0818b2 glibc-langpack-aa-2.28-211.el8.aarch64.rpm bac0b278bd0fdacf679241a84312373cd5b2285b3e9fdb516e54beb98e7c4a76 glibc-langpack-af-2.28-211.el8.aarch64.rpm d7ca622ceb122843762c584cf7898f90bda85ca4caa5804f852573d6feca89f3 glibc-langpack-agr-2.28-211.el8.aarch64.rpm 7bd424faa98f3ec6708b566e9eb5ef0bd000793e5916cb86d8e2bfe035214c84 glibc-langpack-ak-2.28-211.el8.aarch64.rpm 4587fb6e40386c08b69a99ea04221b0850820483f25f3085cf27f4d3ad12bf22 glibc-langpack-am-2.28-211.el8.aarch64.rpm 434f26d1d8e296a6f5c23ee9100a9b8ee8c8d7b5dda8227522442c8007e787cd glibc-langpack-an-2.28-211.el8.aarch64.rpm 857ab033ba2fa411449abb753d26446f529ca2700ba1d8d4dfafe3522352b5bc glibc-langpack-anp-2.28-211.el8.aarch64.rpm f9e0897ce282e072a060b02999c143ebe85e53bbf1303385b2632f1521735430 glibc-langpack-ar-2.28-211.el8.aarch64.rpm daf88a10b34a23c0cdc6ce267ee86e2e12d227cc5ee4ac5c9db66611022b14c6 glibc-langpack-as-2.28-211.el8.aarch64.rpm a935bea1f6f0b328581321003882090154c6b790b14df22196b05243de3624c4 glibc-langpack-ast-2.28-211.el8.aarch64.rpm 1929d52e625ca5db7bc436c1c952001c2757e70ba082ad33747ee0f9f379f459 glibc-langpack-ayc-2.28-211.el8.aarch64.rpm 61141aff1e3a260fc8d9d7d56f775efc37301f96537fff4a8dd2bd7c5946d3ae glibc-langpack-az-2.28-211.el8.aarch64.rpm 0e446e6e6a2feb26c019168126f7a23e034b4e0b440889f75658f6ac9fff3ff3 glibc-langpack-be-2.28-211.el8.aarch64.rpm 7da46105101c2bd7e89b870ede28a4534f4f0c8f2786236b3956dc1cdda2f243 glibc-langpack-bem-2.28-211.el8.aarch64.rpm cb3af915934d4dc40b65a4d2c305391d1228e319d2f1acd278934d7f4c431be0 glibc-langpack-ber-2.28-211.el8.aarch64.rpm 488d5d615da4a7f29b0a8d985b7c5bba3d06337ba804c3d96dbe11e3010b9905 glibc-langpack-bg-2.28-211.el8.aarch64.rpm 5ea1ace086088f90bc9c90fffd6b68cd0547ca5c63958dfa53963a20e9d50b50 glibc-langpack-bhb-2.28-211.el8.aarch64.rpm d46e571eb1663e64275c86df436a3dbcf41df5d43dcfb315535b69e4cc3342cc glibc-langpack-bho-2.28-211.el8.aarch64.rpm e50514e45dfe8b668993d680455fa504de14b478b6c50ae4c5d1bea07b1bffe0 glibc-langpack-bi-2.28-211.el8.aarch64.rpm e8f9a595a7f623b5a70872cc562e16ae8cbbb2b3e83ae7801567af4b486d3590 glibc-langpack-bn-2.28-211.el8.aarch64.rpm 22523a73438c5bcad8c9099023ebda8c93e70576750c9467c9bebdc887e3aa46 glibc-langpack-bo-2.28-211.el8.aarch64.rpm 0e7e64b560310b980c8d6337d2c076075fc8da3118ddc76780718a4a55f68fda glibc-langpack-br-2.28-211.el8.aarch64.rpm e5943426fe3cd4f44b1d4cf1d3e82e6dfe77e3e43c615c3a47271c4f6d535974 glibc-langpack-brx-2.28-211.el8.aarch64.rpm 259bd72aabedcaf608a2eba4fada49d6ef30c3a3eca0c03df9a68d160870910f glibc-langpack-bs-2.28-211.el8.aarch64.rpm 7292d8a1b4be8d1334d8a6253dd8d8f8f2fef4ab6b34951c5102f39ec156415c glibc-langpack-byn-2.28-211.el8.aarch64.rpm bec434e0d25a638d986edf9c768809cdf0166d01b0858a5ab853f66d5d367b44 glibc-langpack-ca-2.28-211.el8.aarch64.rpm 14b4364d921b746518935d8275ad4bbd6505b12f631dbd8e29c83dd2367f7c66 glibc-langpack-ce-2.28-211.el8.aarch64.rpm 9666955354a55f483ee58b9caaf0de4a5f22e1cdc0659b67d3964d4aedc832fe glibc-langpack-chr-2.28-211.el8.aarch64.rpm b1effc771a4f08440da172c9ec35d2278b4b1a2c93b2ccbf0a5d22a274ae6d9d glibc-langpack-cmn-2.28-211.el8.aarch64.rpm f33554c9daa2279cfa11fc965230236fb5a3d0c2a8d7d510988fef8fa42ea6b5 glibc-langpack-crh-2.28-211.el8.aarch64.rpm a06616c8b23d563dd70b24a743eb33ce22c410d1ceb693d2ecc1d4aca7a0ece8 glibc-langpack-cs-2.28-211.el8.aarch64.rpm a14ddcffe1389178b197184d5c8105553505b2ead42f35ce1cf9cb5e769b41e9 glibc-langpack-csb-2.28-211.el8.aarch64.rpm fcf6508dcf131ff04eca7f035202d1aefadad194d8f25f047743ce29bd784d17 glibc-langpack-cv-2.28-211.el8.aarch64.rpm 4bdccbf7984935de819415c31c51fc4927e3773310e0864dfa6f7891dd63402d glibc-langpack-cy-2.28-211.el8.aarch64.rpm b2d31442787fb3f7233bb86732346e7adccf57f00152ad1ab08d42e5f4b00a3c glibc-langpack-da-2.28-211.el8.aarch64.rpm cba23baabeec57c2476f2bfdca0a3e69ea105c6490d130a908e1349bfd418f4d glibc-langpack-de-2.28-211.el8.aarch64.rpm d63a9f3aa1476e1345b231e8808274c29c3aa7c5e7cf0c82500004796143d13c glibc-langpack-doi-2.28-211.el8.aarch64.rpm c15da2fcb48ed2a5c02060ad70c5e89a015a2a28de277ca1c2af1e81eb0e1c3c glibc-langpack-dsb-2.28-211.el8.aarch64.rpm aef01e9ae2b15f11a925732dc29819c69441bc99ee3486461d2edebbfe9f94e6 glibc-langpack-dv-2.28-211.el8.aarch64.rpm e6d4f6f0ebf99d7d6f912c8cb77dbc6eb00174b4df428790730561d6a7418ec2 glibc-langpack-dz-2.28-211.el8.aarch64.rpm d3a076c2245075aa7cdf1e541c0d0da4db52cdd4f38afe73624fe7d9ab21557c glibc-langpack-el-2.28-211.el8.aarch64.rpm 6ceb0ab13d0164bc085b834679fdc1457d6f4b89ab0e5eaa6e036ef7b42a08e2 glibc-langpack-en-2.28-211.el8.aarch64.rpm 940ea09bc71c9e1f8868b3c90e6438ebbd501729ea54c32cae1911edb90ffcef glibc-langpack-eo-2.28-211.el8.aarch64.rpm 5bb62573fd759654e77130404e2f27e074b75430d2490cf536af5d3fd33cc057 glibc-langpack-es-2.28-211.el8.aarch64.rpm ee448ac7f19ac1fae1575774c090840ed861cc254a3ff8204d16e8c8631cdc27 glibc-langpack-et-2.28-211.el8.aarch64.rpm b340066e8e0fe63913e4dba943f73912623f49355357779200b8e57dd72ed093 glibc-langpack-eu-2.28-211.el8.aarch64.rpm 79f7070ef415046946898743a2c148c64f947cc8b4e8bf9c1a4787425cbc903b glibc-langpack-fa-2.28-211.el8.aarch64.rpm 2dc1c190b0dbbfe3f05655a64d7d4156b7b8e7fa556d217e4be7da5055768376 glibc-langpack-ff-2.28-211.el8.aarch64.rpm 1e60869e6d1940da4c443d3b97ef6a8c690165a6dee29e4b741b2fe7388171a1 glibc-langpack-fi-2.28-211.el8.aarch64.rpm a76963894dcbb97ed4ea9e035334274a163276d177b009f8e80c787b89d8319e glibc-langpack-fil-2.28-211.el8.aarch64.rpm d470b78f9065e7a5676b57ca2354431227414ea03896b860f239d2680e0daf3e glibc-langpack-fo-2.28-211.el8.aarch64.rpm d4ef27c149d852ad5d2de86ed98159a62204b9cd1a9046fa322f4b5bfd42b876 glibc-langpack-fr-2.28-211.el8.aarch64.rpm 85d7cf9a293cfc00e3b6bb912b372c0ac2a4fa26bea586d0dcad7f6140326572 glibc-langpack-fur-2.28-211.el8.aarch64.rpm 4c1fcd865623b7cc7145d71f08833bcf721b9a76196c529b5fb70df4b1471718 glibc-langpack-fy-2.28-211.el8.aarch64.rpm 0ec6737a8b97b333c83c10c0b151b79b8ec0e1a5e635329e7cec1d3aae8ddd5b glibc-langpack-ga-2.28-211.el8.aarch64.rpm 031d3880aef6248dc904599acf15c5a9c8cf8fe729913f8ec38e165aba8b152c glibc-langpack-gd-2.28-211.el8.aarch64.rpm 15c2f9cad5fed95091bed242b2c4dcf78e0c91423885a7753a2dfe34cf173055 glibc-langpack-gez-2.28-211.el8.aarch64.rpm df2a0d4cc35b50db4496cf44322c9123eb5550730189f77e1d6681f5bb021c9c glibc-langpack-gl-2.28-211.el8.aarch64.rpm 8a379537f10ca00ac6560f37efe0843510c955fbbc0efa32930537717af9584e glibc-langpack-gu-2.28-211.el8.aarch64.rpm 0f3fe7e7f954c2ea8e6feee403250407b8b312cee9e78e3dd126dff7446b1e0a glibc-langpack-gv-2.28-211.el8.aarch64.rpm 893e99745e7225dccabbc4ae16788e0b100da4c01eee0f5b609392f2f819b599 glibc-langpack-ha-2.28-211.el8.aarch64.rpm 437855a05529977f55b6671f272b22160e8ade59564bc9e80bf973c308685a3d glibc-langpack-hak-2.28-211.el8.aarch64.rpm bcde1d39458424d0bef0d07a583347efcd4b0e026b365807f8647f33e1feef1a glibc-langpack-he-2.28-211.el8.aarch64.rpm c6d981e2c0e49923ac8e4224b5e7e2011a0acb4b70f887deadf1ca6dd18e60dc glibc-langpack-hi-2.28-211.el8.aarch64.rpm 5c38dd83a227acffa0f941a05e568ba38b446a2720ef0bbadc01cbf39909f269 glibc-langpack-hif-2.28-211.el8.aarch64.rpm c4d195aaf8bdac693ba2370994ff0d62ecffa0ac1510f103ce55d05e0ae62e5c glibc-langpack-hne-2.28-211.el8.aarch64.rpm fb083a139db4f763416f9abbdeb798888ff3e7cd7438e618b0b9d906f602607b glibc-langpack-hr-2.28-211.el8.aarch64.rpm d34639a2aa4efd40fb11f1f503eb667e140dedfed62999af07960cbe0ebc04fb glibc-langpack-hsb-2.28-211.el8.aarch64.rpm 05e6ac39820be6026e89afef8d10899ca89883367ae6a12610d7a8a2251c3782 glibc-langpack-ht-2.28-211.el8.aarch64.rpm 8b9e873d977ba85279998b222e030c70ed879c4bd0bbc957eb1757500d9f6684 glibc-langpack-hu-2.28-211.el8.aarch64.rpm e3dfcc4a2090ed70929ffdc9b41748ffd0f9cf9c2e1dfe5364b04c05d88f3b00 glibc-langpack-hy-2.28-211.el8.aarch64.rpm be764d49079756a3142d6c083e283e0488d77b24ea369c23711d515b0607d1e7 glibc-langpack-ia-2.28-211.el8.aarch64.rpm 8700362e97cdbc28fb4245d09f6268ec5693dce85682cfb1fafb4c66d2529d9c glibc-langpack-id-2.28-211.el8.aarch64.rpm af2c3262aadd578b4b5ed4b2e1532ccddd16779623ebba6b13efb4abbfd305bd glibc-langpack-ig-2.28-211.el8.aarch64.rpm 00e51e7d3565e12428ba2fa9728e62c43edc35c17999f24e0fd13c32c6f158dd glibc-langpack-ik-2.28-211.el8.aarch64.rpm 500acdca517ca37f45268e1e785af749f99070c5b09081e76ed5ffe265c7d33c glibc-langpack-is-2.28-211.el8.aarch64.rpm 7ce4e2be2c2ee60c3eb5aedc70cdd76572b8cf5ec14f2274d20e84fadacf075d glibc-langpack-it-2.28-211.el8.aarch64.rpm b1e528a83891d0cb14afb20c6a853fed8dbc6a00b3be6d1f4ccd33ee61406502 glibc-langpack-iu-2.28-211.el8.aarch64.rpm 1ded143fb538220ada8d75a88b23719437b54a4d9bde6646e72a3708d5895342 glibc-langpack-ja-2.28-211.el8.aarch64.rpm 002087d4c5bb815a5f12ed8a8c3fdeec975ff3450e1ceb16f3042ac4fa31d7d3 glibc-langpack-ka-2.28-211.el8.aarch64.rpm 94f7d5f8989de04aacb84b3a881650891762a68b1ea5c7c224de85443d6e0bc9 glibc-langpack-kab-2.28-211.el8.aarch64.rpm 22bbe790971a1cd4bc8dce89a75956631457ecbd2bb7b3520c0abc5f80bc8e2e glibc-langpack-kk-2.28-211.el8.aarch64.rpm 3e022a529cd9fb1a5b646935a85c06444dcfa9bab6fc4c3ca00bc4141b0943c4 glibc-langpack-kl-2.28-211.el8.aarch64.rpm d26231ac217b9e6d452ed7bc72ca0a0eb7aac42aa2e9785c5dd47a3e2d44c923 glibc-langpack-km-2.28-211.el8.aarch64.rpm e19d355edb793964b3911065c6e54b10e91618deb8da077fa8ec2e93f147eea0 glibc-langpack-kn-2.28-211.el8.aarch64.rpm fb504b3a4da913d8d562826243c87d15b32d9e601283f2d6a4b6985ebc3c3db3 glibc-langpack-ko-2.28-211.el8.aarch64.rpm 8365137d4a19d246241904eeca1f04ef2cceb13f241c5ea418f3d20cfe77a94c glibc-langpack-kok-2.28-211.el8.aarch64.rpm 71864c34e4bec950efe3266726802f44dbe41a052d62a444b496904ca19cb509 glibc-langpack-ks-2.28-211.el8.aarch64.rpm cea66a7ed46cbddd5129cdf745a522c8fdf274f9450e3bac8f88a1acbc31cac1 glibc-langpack-ku-2.28-211.el8.aarch64.rpm fd46de1426eb5a88c50c56ed72bc88c6fcaba2b127853769a54109093c7651c3 glibc-langpack-kw-2.28-211.el8.aarch64.rpm e4b213af949639a8956477f92070d938961ad82dc099592ca0c9ab97ae5f7f65 glibc-langpack-ky-2.28-211.el8.aarch64.rpm 96aa595109365b37e3748038aabae9794f4f7efb4732a9cf14e78efb06ab89be glibc-langpack-lb-2.28-211.el8.aarch64.rpm 3a3b28108e42a5aa416cc7b1e195eefce725d07ca27bd47238ccc24d098554f9 glibc-langpack-lg-2.28-211.el8.aarch64.rpm 38d39e3189fedf133cbaa69c3e324422221e7677d275d6f47f9e9df48ea48db1 glibc-langpack-li-2.28-211.el8.aarch64.rpm fb50f56f1cc1c681a8c92dd4487f2bbbb157a97f2d728407c2e7cbdebd44dea4 glibc-langpack-lij-2.28-211.el8.aarch64.rpm 86217a179a57a786f361ad2374a7a69eb195028c0475b4823c65b6616bdf1298 glibc-langpack-ln-2.28-211.el8.aarch64.rpm d5dfe59c37e723f09589a0568a1aa67e46e845ab9dbf46140952b063ad2744d1 glibc-langpack-lo-2.28-211.el8.aarch64.rpm 8c59defe4e6457f6fea8b7877eff4d3007ff117450b09de6338c0345bb8dc5ee glibc-langpack-lt-2.28-211.el8.aarch64.rpm a63689fe130c62d9174474fdca5c7611d41ff38ed02e343ea24848e7c7838e4f glibc-langpack-lv-2.28-211.el8.aarch64.rpm 1caf8b7d271a91a954607b45de9a01450c22e39861c489fe3a3cf8f9396a8cc3 glibc-langpack-lzh-2.28-211.el8.aarch64.rpm 3016e9ace9bec727766243cda2977a94c30e2f13d0bb38de41f6abaa79c9e493 glibc-langpack-mag-2.28-211.el8.aarch64.rpm 9cc0a1f7a3ca6853ca875f79d9b0ba0ce95b1fed2e6311874689f9dda3cf398f glibc-langpack-mai-2.28-211.el8.aarch64.rpm 447c44c4e88031d00a259383882465930402f5e1f0f38ced1a649d65a9471eb2 glibc-langpack-mfe-2.28-211.el8.aarch64.rpm 65c49a79545761fd8f287356f0bd372dfa6f400567d38d89de8c74abd859526f glibc-langpack-mg-2.28-211.el8.aarch64.rpm 0d22b9a80a5af7c36b55966b6b935bc4b21e742cc5f9edc14a655b27316ee459 glibc-langpack-mhr-2.28-211.el8.aarch64.rpm 0b5edf7e73560c22a0649121634c3cc8e8359469926e66ad622d91414c959c53 glibc-langpack-mi-2.28-211.el8.aarch64.rpm 245c003ba111a5ce64d62870d11dde439291f95acd9c55a5bd57cf3dc6cb0a08 glibc-langpack-miq-2.28-211.el8.aarch64.rpm c978d6c5a69718e025238c41d48e2b42dc547b482e4cc3cf1cfc8ffa901e2b1b glibc-langpack-mjw-2.28-211.el8.aarch64.rpm 3a945833218c9c1a72fccf630a6ba29d4a82c103546a32cc4d2993eed0b86713 glibc-langpack-mk-2.28-211.el8.aarch64.rpm 39d92561e8db8631e324e1a544531a4c1faa295737c27d4b6e229eb830030caf glibc-langpack-ml-2.28-211.el8.aarch64.rpm 697623fc8e6a6eabe27a213f84b9c73a997d440b02dd77da65d3b70af8c1b472 glibc-langpack-mn-2.28-211.el8.aarch64.rpm fe5c5f73a79ace27fc23e0e499c94e07319b0580565ea785a5f7ca51f426374c glibc-langpack-mni-2.28-211.el8.aarch64.rpm 46a70bd7b215e2face03d672b978afa23a730ff14db3f22f7b4f07ae0e81478b glibc-langpack-mr-2.28-211.el8.aarch64.rpm 4aa743e510bc36deffc0e455e439fd870ca654080e8e5e5f8296bdb9fcc69590 glibc-langpack-ms-2.28-211.el8.aarch64.rpm 53f3b1afd131e85e91e7ab0f6f48503333249d05d0159fe7d25c0f53cf234f1c glibc-langpack-mt-2.28-211.el8.aarch64.rpm c434b0c4632380d007aa03050bdf79937ff42361495c703bda809622dfdf4f9e glibc-langpack-my-2.28-211.el8.aarch64.rpm 3c43d7698bbb312c4ef9a69970357063fe139d1cb988b188da73a7b001156206 glibc-langpack-nan-2.28-211.el8.aarch64.rpm 0af068a9612b79a6db71006cb7b5019bff34c9b629503700468aecc5b09187f8 glibc-langpack-nb-2.28-211.el8.aarch64.rpm 1be29ec5f71cd330bd2008397f9344a963cb8d5700b13787ec9d14c157a5da46 glibc-langpack-nds-2.28-211.el8.aarch64.rpm c22529dbbeff97fe382ecd8bfe4c24101644a9dfcf8cf297017e4ca499006367 glibc-langpack-ne-2.28-211.el8.aarch64.rpm 755872c0005adad08caa402a2eb3a041c4cafb27f3806ebed542fe269afc1b00 glibc-langpack-nhn-2.28-211.el8.aarch64.rpm 26beea1ea27041689a8529ad215b92ba254c4e8ef66f75b146af06d4e11fd06c glibc-langpack-niu-2.28-211.el8.aarch64.rpm 54d8fb934c7b28460ab47fb02afa6a2b45c4f22172ea9287158007ebb6369768 glibc-langpack-nl-2.28-211.el8.aarch64.rpm 4820a957d42df23b8d6c23ef57b451570e3adc8db97a342cd7ed54e2fd2b433f glibc-langpack-nn-2.28-211.el8.aarch64.rpm 8d3294879d3c2d96036dad763b2b3af6362616ac6f806e8790eef5e3d87351bb glibc-langpack-nr-2.28-211.el8.aarch64.rpm 46dbda9420861f969e1d419894d84ba700efa2e1a7eadf89db371dcd56127414 glibc-langpack-nso-2.28-211.el8.aarch64.rpm ca88ebaf2b152858482d4bedc3dfb7d14fdb5e9aa217380da779dc6e463b5c4b glibc-langpack-oc-2.28-211.el8.aarch64.rpm 133386bffa21001b8015128b01a7b27b60b669ccf10fdc5c207b264c268fbeca glibc-langpack-om-2.28-211.el8.aarch64.rpm f5e2445f7c6285d59bb216b41bc6b199dbbcf5753b3c5ce2716ca86015f5b553 glibc-langpack-or-2.28-211.el8.aarch64.rpm 6f7ac50390780012ebc7e8317831879528d2b2122c66d08ce0cc138f63e2cdd0 glibc-langpack-os-2.28-211.el8.aarch64.rpm 1f0e520a461082a7f817b82ddd951b5bca7571ea40f36e67560625587eab9d66 glibc-langpack-pa-2.28-211.el8.aarch64.rpm 09405e2f7aabb39c7bda6bdf9417b04fd9367c64f5cbda0ceb9b5c163c9f0c98 glibc-langpack-pap-2.28-211.el8.aarch64.rpm 5b201907a0e5a39b89b14f2010c120470c61d35a3e938ebaefc0fdeebfc70ddd glibc-langpack-pl-2.28-211.el8.aarch64.rpm 22c79b6a6a110a9c3bd9d74d508ba70394ca99be0b3afd495ef5f41da87dd291 glibc-langpack-ps-2.28-211.el8.aarch64.rpm d3f2226c5a75e66a0333b9dffa749748e082720c5122f7195ad2680de150c9d0 glibc-langpack-pt-2.28-211.el8.aarch64.rpm c617e9d20ceb45d68dd69c35460d472ea695632693c3a7e9b53e3b15af9c7832 glibc-langpack-quz-2.28-211.el8.aarch64.rpm d2d283fc20dce2e295e3d0e4dcdce442e81dc3d3f6ded6ee8dd2947444ae4685 glibc-langpack-raj-2.28-211.el8.aarch64.rpm 069f7828ba871d1b99617e25d89c61d20fc29b7117cc594708ce2d3638f6aa93 glibc-langpack-ro-2.28-211.el8.aarch64.rpm db7f2f97100e6a0765b0b9c5186a5a9bd1af18de2861bb3ebc8115d3f0252d2e glibc-langpack-ru-2.28-211.el8.aarch64.rpm 4dbcf18af09fd2981ebe9c3602b953ea345802f332c115899dcd7c934c3e5a2b glibc-langpack-rw-2.28-211.el8.aarch64.rpm 8e7658083c4d38a0c80a319ecbce006b19ed9a120e52b4391c5a0695c3f4d81b glibc-langpack-sa-2.28-211.el8.aarch64.rpm b51605d4589bb3a123e5494ae1dcca93ceea130c4e0121a15b0482fa1aec62ef glibc-langpack-sah-2.28-211.el8.aarch64.rpm ff1e5bf142f0814c07180cefc99dace86e58a0d07800b4455dd1a55d14e983c9 glibc-langpack-sat-2.28-211.el8.aarch64.rpm cc38f9c4d0a4552ceb863d2a50c83bfaba4ef25c1ebe42a16e605fd74681b385 glibc-langpack-sc-2.28-211.el8.aarch64.rpm 9fa11960a9916ee9e1cae6bde0d76de0bd7e400e92f9cda6740129a23c539892 glibc-langpack-sd-2.28-211.el8.aarch64.rpm 6f5676d6b2d5e028ac3298284726959ba736fe9eba94dfd4ac6124faf1ddc028 glibc-langpack-se-2.28-211.el8.aarch64.rpm d688e69fc79fa49b3d0b1c3d8c4f2471ef245de0bb1a49e886ff12d3765361b6 glibc-langpack-sgs-2.28-211.el8.aarch64.rpm 783395e137e3b01322c2d33d8d066cf7704bbd9c5d32703a1bda35d68564037e glibc-langpack-shn-2.28-211.el8.aarch64.rpm 46f62ce9cf06e09b644bc5bfaf32ef19ae9784514a15e2b50d0570a520010c40 glibc-langpack-shs-2.28-211.el8.aarch64.rpm 56ef08d3616361effffb1e607f45ed4b00c518be8777d5bb108184c17715e2e1 glibc-langpack-si-2.28-211.el8.aarch64.rpm 64d811ee9e20fa53ecbf1775885d03cd59124e33923f4c2b8ccff70052cbeb92 glibc-langpack-sid-2.28-211.el8.aarch64.rpm 54c94743d7520a813cda6d91cb31d493844d45432d260628837e731493d24e02 glibc-langpack-sk-2.28-211.el8.aarch64.rpm 4a6fa32e9ada3392fece068cf9887d9136c0a0d2165111ae5661d85cc16b2ff2 glibc-langpack-sl-2.28-211.el8.aarch64.rpm dc20af3c7f7b67c5b6cce010503178b87d4f2e036c140c64e7d2e85cad44ada4 glibc-langpack-sm-2.28-211.el8.aarch64.rpm dd2702296213ab2aa4633e09ef7189de72fb10c94c630c2841b6456c08a2033c glibc-langpack-so-2.28-211.el8.aarch64.rpm a49583fd86db2bd77469e0899581a144382cff940072d818040dbe871ee180aa glibc-langpack-sq-2.28-211.el8.aarch64.rpm 9ed363792c810b659631c6861de46c6f38884e824c95588c8b15528230c7d030 glibc-langpack-sr-2.28-211.el8.aarch64.rpm 5b91e27fc2472f7117e8212084247216bff71fb860d11c5276188efc451f95c2 glibc-langpack-ss-2.28-211.el8.aarch64.rpm a33599e86fee1e1a47a809b5792ceb823927af3c668255ac1819dd7dae419229 glibc-langpack-st-2.28-211.el8.aarch64.rpm eeaa1ea6a94f40c71b5b80444fbaaf80ed1f5b5dbfd4534d5f1d67a688af61fc glibc-langpack-sv-2.28-211.el8.aarch64.rpm e1c2a61b081036d0401a800346e0081c5fe4829a7ffdc67f12b998bfb77c190b glibc-langpack-sw-2.28-211.el8.aarch64.rpm 7d7080ad8f5003ffd7fa3cdc2c58a2eb9805cfb14d49b9e0d0c127ec80cec3a3 glibc-langpack-szl-2.28-211.el8.aarch64.rpm c1bdcdd7a76a95d1cfef0cda8adda636700dfdaa22e0a780b81e1667f2207028 glibc-langpack-ta-2.28-211.el8.aarch64.rpm 9f5fcd83d10300dde4f043580731299eb3e843a3098d2ff4bfa814da75e4d78c glibc-langpack-tcy-2.28-211.el8.aarch64.rpm f79757be971a2f0acdde597b6b47554978fb8b5a7b02422079c9cd54a6d2199b glibc-langpack-te-2.28-211.el8.aarch64.rpm 3ef99b81ccd351bd9470ec6d72efd653fe6f3c01ebd3baa5c84ca214bf0ab14e glibc-langpack-tg-2.28-211.el8.aarch64.rpm b15bfb692ca8b39e0f3b86c6283ce19bd80e4651bf4abef680d8acc805f7e834 glibc-langpack-th-2.28-211.el8.aarch64.rpm 765759365d719b31dc43065e75c478c341c4c39894c7bf4c516860858d03dded glibc-langpack-the-2.28-211.el8.aarch64.rpm 4048db33557a8ac9c46150b6be7f530f56a74a76bef3b3160dedbb775af272ee glibc-langpack-ti-2.28-211.el8.aarch64.rpm 135680885e738fc1f69cbf9d3f30e740b3361ecb433b81bd1a343e7c2907d79b glibc-langpack-tig-2.28-211.el8.aarch64.rpm f3ac28f86613bf68a2e6fb1dc3467ef0d72b2759bb79f69b61c9a47be5a5cf24 glibc-langpack-tk-2.28-211.el8.aarch64.rpm c3a1aa309c80b924eb31d24edbb5a70020fd4acf66b0203ce57a2481ba064590 glibc-langpack-tl-2.28-211.el8.aarch64.rpm ab7dcc9be5d14bc90ecefca9dbc7792ce4aee7c12e252338fdf6328a9fe25c08 glibc-langpack-tn-2.28-211.el8.aarch64.rpm be6f2849f22b2c1c21bb933dbf50aa82c64cd8164c53fa9e9566327ed7b4ca6b glibc-langpack-to-2.28-211.el8.aarch64.rpm 91b462f7e8fa267ab98d5006327244f1ce3af8481d69ff2f81eee7b2b88532ab glibc-langpack-tpi-2.28-211.el8.aarch64.rpm d478a6dbac895c6f27aa9e04e84000eebd8bd4d58bedd6deea3aa8126ecedfce glibc-langpack-tr-2.28-211.el8.aarch64.rpm 288e1df570bf908a5aad9f750fbb2256a2766057b8fa758e382550acde37961c glibc-langpack-ts-2.28-211.el8.aarch64.rpm bb8f1f687eae71726606e37e43e5bf9adce0cfab7d010362ef05a831dc61a015 glibc-langpack-tt-2.28-211.el8.aarch64.rpm 1e7ff9f2d3d59faed0e18d3ac8f8943ac49efbf679cb3ad93ecd5bf3d6412483 glibc-langpack-ug-2.28-211.el8.aarch64.rpm d34153b73a45ee8fbaf547992d7b8cc9899a3ac202509c9ae67a298f11c270af glibc-langpack-uk-2.28-211.el8.aarch64.rpm d3008b5e2c6ecc8fb4cf5ceb0f62729af77a4976bff2225fe575f05f38f7fc4a glibc-langpack-unm-2.28-211.el8.aarch64.rpm 90db67f420ea17686f462adb9baeaa3fa04f11bd50b84822b0c60f4baa3ba1b0 glibc-langpack-ur-2.28-211.el8.aarch64.rpm 147f9c17b7ad2364bcd17264933cc0ed8e3562b479a65f8e4b7eba85f9321d18 glibc-langpack-uz-2.28-211.el8.aarch64.rpm 730807bf7455a7adb1f4780b91881e7c9994ab8318d8404d34209ba29c15a988 glibc-langpack-ve-2.28-211.el8.aarch64.rpm e3c5c9c5734032818bf890d1f099ba2f91ca015693a6c542d4542656a10a6b22 glibc-langpack-vi-2.28-211.el8.aarch64.rpm 6a2b5b1ef2d07ccc77eadea4a54d602cdfc5c5aa11913215cc9ddb063fc55215 glibc-langpack-wa-2.28-211.el8.aarch64.rpm 4140524bdb6ca60a6d3ef67a555bcba6f1a0df8609fbfd0ca6dbf5624c57b4f5 glibc-langpack-wae-2.28-211.el8.aarch64.rpm cc4f23815a674070750768b8841cef736668fe34b9500cc112e1575c5e1046b1 glibc-langpack-wal-2.28-211.el8.aarch64.rpm 6bc4fbf3b5270cf187bb63fb6365d92cdb7fa2606c9c9c26ce08d8e29e147e44 glibc-langpack-wo-2.28-211.el8.aarch64.rpm 5784bb1cafb394e663ad1a3eabc7e48a866e427e5a987521d7694c4dbb821485 glibc-langpack-xh-2.28-211.el8.aarch64.rpm bfc8547f5081e66ca7bf831390a760b7c90e8e83d836ffcae8174585e1bb644d glibc-langpack-yi-2.28-211.el8.aarch64.rpm 1dd7d83a43f0cbbd01f9cd51d298b08d6638dbad650f07fd1b5825c1608a91f5 glibc-langpack-yo-2.28-211.el8.aarch64.rpm 737610ac52682442cd2812c9802671779200749d9112bf15212e5e99362cdc3e glibc-langpack-yue-2.28-211.el8.aarch64.rpm 5fcbc8b31f06603fcbea5ca2f043178dbc5b7b6f9cb995aaf83bb6300144f105 glibc-langpack-yuw-2.28-211.el8.aarch64.rpm e18e1092c2ea8d051a69cb147aa02f92da3164a9658209f6b27e05eeda9394f2 glibc-langpack-zh-2.28-211.el8.aarch64.rpm 2492c3abdc0dd71403c9f05c8b70ddc47ad5c244e37b6b183ffa7c00108f4b44 glibc-langpack-zu-2.28-211.el8.aarch64.rpm ebab31a9e3931335db4bf7d9f9d97220e42b6621922ba64be2a353d8e868356f glibc-locale-source-2.28-211.el8.aarch64.rpm 3645a65b67f840c5c2a5cd2a2ffdc7901563f7258857bf59876f35b1f8d462d0 glibc-minimal-langpack-2.28-211.el8.aarch64.rpm cf8eb5a34bb051c848d4cbbb64ead25704f852afbead51356e073d6a2e7a9e1b libnsl-2.28-211.el8.aarch64.rpm 5964a087bacd6c3776abb95e61202a654865b6e696ace907ef6d01aec7e48279 nscd-2.28-211.el8.aarch64.rpm 42c9d335cd2f70eca720ef6ec760a737ff0e67dedd51d311b64b409d39e8f4a7 nss_db-2.28-211.el8.aarch64.rpm f687dfd2703126603149e940b3af8ca2a45779a1b1cf762d80b94442700fbf47 RLBA-2022:7686 iputils bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for iputils. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms iputils-20180629-10.el8.aarch64.rpm d381eb6db9e627bfd6d37f7fcabc0c620eaf1dd0c936cd6d4ea98ead750c5dcb iputils-ninfod-20180629-10.el8.aarch64.rpm 07af18224c186fd68ae0bad54f1f65ad64369a57926931b065d878380e36f8a9 RLBA-2022:7687 procps-ng bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for procps-ng. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms procps-ng-3.3.15-9.el8.aarch64.rpm 200c964de4dc6cd9a526c14729e22a25bcc055012fb660ae67185a0c4244723c RLBA-2022:7688 gcc bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for gcc. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms libasan-8.5.0-15.el8.aarch64.rpm aff6bc439fc40008fd9488cafb906584f90ff0615b28e41e2d10b3cca12296e1 libatomic-8.5.0-15.el8.aarch64.rpm 1be6a0597d1e5c68c8eb1add30e17fa3d036a10c972786b55e27b00d87dac4ff libatomic-static-8.5.0-15.el8.aarch64.rpm b4cbf072e2a17994df0c1ce01f43e77acd9609a59a4c9974ba53ae1d22e24f42 libgcc-8.5.0-15.el8.aarch64.rpm 6ac40a40fbc847c654b9b696e6d8a12ed7bb3c8b1d1c31372588172fba17cbb9 libgfortran-8.5.0-15.el8.aarch64.rpm f14c84d41c34bd3811460fcfb538f1bbc80ef82bdf8099dce78e149d26ae4140 libgomp-8.5.0-15.el8.aarch64.rpm a305c2fc725fcf9f617d98b9f1923d68ded5faa8508781bc11b101628a0af3b1 libitm-8.5.0-15.el8.aarch64.rpm 8ee341e72d12c03949bc0128c98356bcbe6d92a36af6f8ccab32d6dc6cb91fc1 liblsan-8.5.0-15.el8.aarch64.rpm 342d0f06eedb1706536f121f3f74e02ace6e33ea28f18ce28fa6cbdb8d5044fa libstdc++-8.5.0-15.el8.aarch64.rpm 9bd55215b064014b258afe2662729a77ebddcac87e687a428f6a1a72511ac25a libtsan-8.5.0-15.el8.aarch64.rpm 93b6ae5c8d6b631753155cbbb0cc1535c712640e56a84dfff5278a5ad05fd069 libubsan-8.5.0-15.el8.aarch64.rpm f4006e23f4536eff861c1a4b9456250e6f90479727b7b30dddc92adbd6b69492 RLSA-2022:7692 Moderate: xmlrpc-c security update XML-RPC is a remote procedure call (RPC) protocol that uses XML to encode its calls and HTTP as a transport mechanism. The xmlrpc-c packages provide a network protocol to allow a client program to make a simple RPC (remote procedure call) over the Internet. It converts an RPC into an XML document, sends it to a remote server using HTTP, and gets back the response in XML. Security Fix(es): * expat: Integer overflow in doProlog in xmlparse.c (CVE-2021-46143) * expat: Integer overflow in addBinding in xmlparse.c (CVE-2022-22822) * expat: Integer overflow in build_model in xmlparse.c (CVE-2022-22823) * expat: Integer overflow in defineAttribute in xmlparse.c (CVE-2022-22824) * expat: Integer overflow in lookup in xmlparse.c (CVE-2022-22825) * expat: Integer overflow in nextScaffoldPart in xmlparse.c (CVE-2022-22826) * expat: Integer overflow in storeAtts in xmlparse.c (CVE-2022-22827) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 Moderate An update is available for xmlrpc-c. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list XML-RPC is a remote procedure call (RPC) protocol that uses XML to encode its calls and HTTP as a transport mechanism. The xmlrpc-c packages provide a network protocol to allow a client program to make a simple RPC (remote procedure call) over the Internet. It converts an RPC into an XML document, sends it to a remote server using HTTP, and gets back the response in XML. Security Fix(es): * expat: Integer overflow in doProlog in xmlparse.c (CVE-2021-46143) * expat: Integer overflow in addBinding in xmlparse.c (CVE-2022-22822) * expat: Integer overflow in build_model in xmlparse.c (CVE-2022-22823) * expat: Integer overflow in defineAttribute in xmlparse.c (CVE-2022-22824) * expat: Integer overflow in lookup in xmlparse.c (CVE-2022-22825) * expat: Integer overflow in nextScaffoldPart in xmlparse.c (CVE-2022-22826) * expat: Integer overflow in storeAtts in xmlparse.c (CVE-2022-22827) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms xmlrpc-c-1.51.0-8.el8.aarch64.rpm 341bc55b17daf302817098b8153e3f06ddfdd2a1bcd28419ce42470d583f1b37 xmlrpc-c-client-1.51.0-8.el8.aarch64.rpm c833ece05ba9350a70ecf2fb0e88bcab410b8af9f9e390d4d84fb3aa798a7fa2 RLBA-2022:7693 binutils bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for binutils. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms binutils-2.30-117.el8.aarch64.rpm 52ca3e2c4d5746334a06d58fb1433dc8db28b326697c4bb52d2dfee75da9b239 RLBA-2022:7695 virt-what bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for virt-what. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms virt-what-1.25-1.el8.aarch64.rpm 52f657e37dca6203008e30bec18798a73741481cc11b5be8e4b37b71391b0803 RLBA-2022:7696 krb5 bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for krb5. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms krb5-devel-1.18.2-21.el8.aarch64.rpm f93b2288f852bf6035768f62234daa4d9fdb53b7c7636b1a3220860e00209c58 krb5-libs-1.18.2-21.el8.aarch64.rpm 7784c5b5fe04d4814824d60f0d8704a428bd3a5bcded30900f01586e99d9d40c krb5-pkinit-1.18.2-21.el8.aarch64.rpm 7485af41b8f7ae01c567c2d2ef72e84ef27a373a0cfa43ef0e34ad6d037855b5 krb5-server-1.18.2-21.el8.aarch64.rpm 7801e71174c21c2bbc3764e547b3dd871046288d62ea912ce947cc0d936c2a1f krb5-server-ldap-1.18.2-21.el8.aarch64.rpm bf86dbed3a99885d35906d7c4a46bd558c8b1bdf4edd17af75d2b3e082293e0d krb5-workstation-1.18.2-21.el8.aarch64.rpm 66f908dcece1a942d7b58e9ab75d8a3c454bc922c32dbc98798eeddec4f28e21 libkadm5-1.18.2-21.el8.aarch64.rpm 854efe4e7029c52886ca198de6f90ebbf18ba7c63b0eb23cfc154e31f35c0395 RLBA-2022:7698 samba bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for samba. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms ctdb-4.16.4-2.el8.aarch64.rpm 373c6f7564c54e10cfbc059906be9378eaf4e1aed54a90062d913649053b5262 libsmbclient-4.16.4-2.el8.aarch64.rpm b8cc880c2b00855c9d7409e64f0fc483d6597217a209424c56f2a18a18e843fc libwbclient-4.16.4-2.el8.aarch64.rpm 2d583b34b4dd1c316138aadd710fa89e70e878c18b7dc93ddf380d9c7f06067d python3-samba-4.16.4-2.el8.aarch64.rpm 371d05313653e66148f74cc968f79e2fc21bcfa91299c5aad0dcdfd9703dfe28 python3-samba-test-4.16.4-2.el8.aarch64.rpm 1aa43dae83437562f6a18ed6b1940ebf31f56c231caa3bad14dcc6ca0d6c5f51 samba-4.16.4-2.el8.aarch64.rpm 4211992158e00809236b4f8f36f4211032465568f32eddc6af3839f1f41e601f samba-client-4.16.4-2.el8.aarch64.rpm 95e9b0734e4c53a8dee491063d28cfaca0e83c5ab437a61f39bdcb2085bae03d samba-client-libs-4.16.4-2.el8.aarch64.rpm 893c71be87e9f2857af897a881d6675f8b06d40570a7b95e728a2314d13db0a7 samba-common-libs-4.16.4-2.el8.aarch64.rpm 92351ddfb6a48d3972dc15a11d496f759ce431f178e5de242fc8f8280c0f3933 samba-common-tools-4.16.4-2.el8.aarch64.rpm 9b2a1bc041dd24aa4d3717cf42fb7e4400d19772bbaf3d32bf1881b490cd7ddd samba-krb5-printing-4.16.4-2.el8.aarch64.rpm d5448647be58c0c6ce2ce5b010e8287c3954ccbf13513d870b36671157c97a14 samba-libs-4.16.4-2.el8.aarch64.rpm e4b5ad42bd28b70a0c53a60fd595b09c0e10a974ddcd8e068b06df56dbef89b9 samba-test-4.16.4-2.el8.aarch64.rpm 849723c0d3327ce435df22d0a13a07067b8f29e6258ed8b39735f49b02445540 samba-test-libs-4.16.4-2.el8.aarch64.rpm 1d6ab4f620d703b4d6a858f7dd473b26fdabb017038972a619226ac367378c24 samba-winbind-4.16.4-2.el8.aarch64.rpm c357b10b9ee86dfa841c50b1470f2953d048b714cd40f7edbce33c691ba40222 samba-winbind-clients-4.16.4-2.el8.aarch64.rpm 450ca76b3227a6130b3c97d7750784ea73246326672bf6e94915b640054867ea samba-winbind-krb5-locator-4.16.4-2.el8.aarch64.rpm 3505e4846977d7ae2af17681f4306df3c1a89792bcb48ee4a7aebd076f266867 samba-winbind-modules-4.16.4-2.el8.aarch64.rpm 6b73f84d5c9193f21fd64a591dffefbbfae34946fd1ee9092aa47b6a240879ac RLSA-2022:7700 Moderate: gdisk security update The gdisk packages provide the gdisk partitioning utility for GUID Partition Table (GPT) disks. The utility features a command-line interface similar to fdisk, direct manipulation of partition table structures, recovery tools to deal with corrupt partition tables, and the ability to convert Master Boot Record (MBR) disks to the GPT format. Security Fix(es): * gdisk: possible out-of-bounds-write in LoadPartitionTable of gpt.cc (CVE-2020-0256) * gdisk: possible out-of-bounds-write in ReadLogicalParts of basicmbr.cc (CVE-2021-0308) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 Moderate An update is available for gdisk. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list The gdisk packages provide the gdisk partitioning utility for GUID Partition Table (GPT) disks. The utility features a command-line interface similar to fdisk, direct manipulation of partition table structures, recovery tools to deal with corrupt partition tables, and the ability to convert Master Boot Record (MBR) disks to the GPT format. Security Fix(es): * gdisk: possible out-of-bounds-write in LoadPartitionTable of gpt.cc (CVE-2020-0256) * gdisk: possible out-of-bounds-write in ReadLogicalParts of basicmbr.cc (CVE-2021-0308) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms gdisk-1.0.3-11.el8.aarch64.rpm 31de6f698b4a43d5dd1895414cacaa2fa4f1b656c6d4c7d70abc074dfcc7fa18 RLBA-2022:7701 at bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for at. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms at-3.1.20-12.el8.aarch64.rpm 4183db36570c37d3471a52d9c5b8042fbd86b9538e7d00894d0c2d11cce991a0 RLBA-2022:7702 mokutil bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for mokutil. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms mokutil-0.3.0-12.el8.aarch64.rpm 8013721b4692a704a2bcb678d297ea519108efe028d12d1d6786e2daa7f8bfad RLBA-2022:7705 kexec-tools bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for kexec-tools. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms kexec-tools-2.0.24-6.el8.aarch64.rpm 6e43ec02a6dbbcbf12563d737eba2ac8b5c74a63cebdba34f9efcd4dd8e276c9 RLBA-2022:7706 which bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for which. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms which-2.21-18.el8.aarch64.rpm 41054bc8f83b774d48e4f53822cb25ff1d96fc2d612d6ea3a83222c8efb3bf10 RLBA-2022:7708 expat bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for expat. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms expat-2.2.5-10.el8.aarch64.rpm 1a4d6629d01b30ab165269869db246fdcf821b787af9d19c8f72b984223d907b expat-devel-2.2.5-10.el8.aarch64.rpm aace88d2b38ac8563b4110c94a650a1ac1c980e4f3c9feaee96fd592dd3e0cfd RLBA-2022:7707 nftables bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for nftables. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms nftables-0.9.3-26.el8.aarch64.rpm 02a4f8f9f2cb39a6c5af5717c54489f217c19cc142006f53bf7521df779938fe python3-nftables-0.9.3-26.el8.aarch64.rpm 8e6dd7444905087bcd502df09affcce2b00351d5a14745c86ab6a2bbdcc6cccd RLBA-2022:7710 rng-tools bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for rng-tools. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms rng-tools-6.15-1.el8.aarch64.rpm 5043f5c2ae5183e085bb85e66dd1ce5b8c08a9b8ff2d37dece03a51884eb79a7 RLBA-2022:7711 libdnf bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for libdnf. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms libdnf-0.63.0-11.1.el8.aarch64.rpm a3378a0d62d8207115e8d95cd14e8331b4f0b00ee8e523d30538ef3fca857e57 python3-hawkey-0.63.0-11.1.el8.aarch64.rpm 0208293953fe904d5aa56e64c3eab83d7ca1de1b7211f380f43fc9109bcf8a13 python3-libdnf-0.63.0-11.1.el8.aarch64.rpm 8ed15a58f64f07b4128affac69a06c2d2bc02c48a3f075cc601ecbe68d6dba94 RLBA-2022:7713 libsolv bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for libsolv. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms libsolv-0.7.20-3.el8.aarch64.rpm f3b25b4127dbb41a459dda58bfcb24fee8f68599dfbf7d77164d709c68976d7a python3-solv-0.7.20-3.el8.aarch64.rpm 2051e9b66bb68249b03a4875d4b99ab944b14ce6e2d7afe8844532cce11eb09f RLBA-2022:7714 device-mapper-multipath bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for device-mapper-multipath. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms device-mapper-multipath-0.8.4-28.el8.aarch64.rpm 9d799ca1bef26086197d96e92b67718b96a5a0a3c2c01297cbcac1698be45f7d device-mapper-multipath-libs-0.8.4-28.el8.aarch64.rpm a5911f7f5d16abb547486d90972e5bb8f95af224e8e57d1e32dd1eb45d23c6d6 kpartx-0.8.4-28.el8.aarch64.rpm 0d6cc830d05f15e12a01e03dd012a9a864d7153d241936d35c2e3318fadfd78d libdmmp-0.8.4-28.el8.aarch64.rpm 3e64bd0ecc47d3175673c399752efdc867cfbeafbaddbaf1b64ddac4b7f02ffb RLSA-2022:7715 Moderate: libxml2 security update The libxml2 library is a development toolbox providing the implementation of various XML standards. Security Fix(es): * libxml2: Incorrect server side include parsing can lead to XSS (CVE-2016-3709) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 Moderate An update is available for libxml2. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list The libxml2 library is a development toolbox providing the implementation of various XML standards. Security Fix(es): * libxml2: Incorrect server side include parsing can lead to XSS (CVE-2016-3709) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms libxml2-2.9.7-15.el8.aarch64.rpm 43e683ddabc66c02bbd94f3919959e282cc9cd7c046e018ecba1155f09f66888 python3-libxml2-2.9.7-15.el8.aarch64.rpm c5232872ace6a15cb0affec511f7becda665623e5a94f6aeb836052a5c309dd3 RLBA-2022:7716 cups bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for cups. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms cups-libs-2.2.6-50.el8.aarch64.rpm c75c73fe017051b6475e875dc68aacf1d7e84a1429d62f37b20dd0a1dd7cd372 RLBA-2022:7717 elfutils bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for elfutils. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms elfutils-0.187-4.el8.aarch64.rpm b197ff9345104888bd020a0eab56549dfab4d69a32a3b934dd4adc7f5fd096bd elfutils-debuginfod-0.187-4.el8.aarch64.rpm b9a8ac1745e2d9ccd4c8fe82bdfd40286509caea69a836861d33d8e5aef34e12 elfutils-debuginfod-client-0.187-4.el8.aarch64.rpm 43663f8d52f375180446bd24d1fef9a2e91be00d707cd86876af5206631d2066 elfutils-debuginfod-client-devel-0.187-4.el8.aarch64.rpm 7b5f77e658bc0ed0ecba9ca45eb071a2be74bd894b99bd3bb229787e80da8a93 elfutils-devel-0.187-4.el8.aarch64.rpm 65e951b75e3c5f0b9d939e8b9557869b23883e80b6ea0915ef11c21168d0f636 elfutils-libelf-0.187-4.el8.aarch64.rpm 3f6c94500494649d6891baffa568e269d3c4768cd43fa536b5ad1952d2df5718 elfutils-libelf-devel-0.187-4.el8.aarch64.rpm fb177dc94282b6d51d0327aee1a6465cf3eea92ee26f8657ffa485561a1596eb elfutils-libs-0.187-4.el8.aarch64.rpm 3a89cf77b460201241ceea83cfbecf8d42af13c7e7950ff3d70b17f8e39273c6 RLBA-2022:7718 cockpit bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for cockpit. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms cockpit-276.1-1.el8.aarch64.rpm 31c45064844599834958ae7fb10560da088406eaea97321e26377faf55af8cf1 cockpit-bridge-276.1-1.el8.aarch64.rpm d74dc791c3d29ea3906126a5629d53fef5c8d79c1325c56e2ea2687b36d00f6b cockpit-ws-276.1-1.el8.aarch64.rpm 8f7710f75a5c38d5287e4d5d431252b04c3268f650c7a5e52c2df236205dadd1 RLEA-2022:7719 subscription-manager bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for subscription-manager. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms dnf-plugin-subscription-manager-1.28.32-1.el8.aarch64.rpm efee581fa7518cf70e09a5d2fe8c0f461f459d15622cb58dd3843e6a9d1fe64a python3-cloud-what-1.28.32-1.el8.aarch64.rpm 0155dfb1d4c6ae08aa6fd6b9168b87a5b7716a12ce76a6ebcde703303e7ad1f5 python3-subscription-manager-rhsm-1.28.32-1.el8.aarch64.rpm db1e4daa11011f399d2589ebdde213187b501171906aa65dea9c8d94004b20d4 python3-syspurpose-1.28.32-1.el8.aarch64.rpm cf0f74058abbe15733bafc24b4c37c4fc647745f9d6bb5a8def301440fdbb032 subscription-manager-1.28.32-1.el8.aarch64.rpm b172f7e474009856babf32ab682adb98ea937edb9666d8cd1cc9f35b10bdc148 subscription-manager-plugin-ostree-1.28.32-1.el8.aarch64.rpm 2f70504faa9272eb9ae31b456c6fc60da7c6811417656b7053ceecca73c928cf subscription-manager-rhsm-certificates-1.28.32-1.el8.aarch64.rpm 5476d2b0b26b9e824e7c06a1aed6c38037a37b1d117ebdf84495f766f6aba36c RLBA-2022:7721 cronie bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for cronie. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms cronie-1.5.2-8.el8.aarch64.rpm 1028a30e4ffc27675dc090a63843beb8d2a4e7c35dcdf92eb5c35c05cede283b cronie-anacron-1.5.2-8.el8.aarch64.rpm 46c894d2c6686d91e7cb865b5996e040aa8b80ac0961ac0ca379a5b70bc216fd cronie-noanacron-1.5.2-8.el8.aarch64.rpm 03d935a9c85b8452bc7576771b2c73dd703c083956d2d1f7f8b831509436c6ed RLSA-2022:7720 Moderate: e2fsprogs security and bug fix update The e2fsprogs packages provide a number of utilities for creating, checking, modifying, and correcting the ext2, ext3, and ext4 file systems. Security Fix(es): * e2fsprogs: out-of-bounds read/write via crafted filesystem (CVE-2022-1304) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 Moderate An update is available for e2fsprogs. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list The e2fsprogs packages provide a number of utilities for creating, checking, modifying, and correcting the ext2, ext3, and ext4 file systems. Security Fix(es): * e2fsprogs: out-of-bounds read/write via crafted filesystem (CVE-2022-1304) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms e2fsprogs-1.45.6-5.el8.aarch64.rpm f52e817441ae687a686aacc76de7ae07736cd90bafd63f8b125e519244311ca3 e2fsprogs-devel-1.45.6-5.el8.aarch64.rpm f2570247b5cd3bc7a2b0ca550b457f43bc3fbae6e96ef73f8c9a933e42ac6d25 e2fsprogs-libs-1.45.6-5.el8.aarch64.rpm 322d25761e7dbd03de6b0aa38fa35670956664cddc9da2a3708a525500d24707 libcom_err-1.45.6-5.el8.aarch64.rpm 04345d892920580a6537dbf7fa6b250d6fa99d2fd88c7c968dee035b8357d9fb libcom_err-devel-1.45.6-5.el8.aarch64.rpm ae502367f259788a82ba041fd11dc76323618afd245a27f0d61ae61b549c72a8 libss-1.45.6-5.el8.aarch64.rpm 1685db6916a9f177c293384543cc7b60d3633c9bbb44a709edff0b4de3d74145 RLBA-2022:7722 libcap bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for libcap. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms libcap-2.48-4.el8.aarch64.rpm e0f4d5d562d39babf5d84be3f45160fc074dc7b03b9c7747d664b1ec5277a196 libcap-devel-2.48-4.el8.aarch64.rpm 8f01cfbddb47ee443fc58a2704513ad220e0b20424cde2c9f4df964c0ac1f9d7 RLBA-2022:7723 pam bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for pam. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms pam-1.3.1-22.el8.aarch64.rpm c0d4909fe50c180104be117994926fb59ccd8c70a64b64fe1b007ea89d021b8f pam-devel-1.3.1-22.el8.aarch64.rpm bba09141115a9737df62c4cb9821160d135d003aa1eae2b4cedc9a3aee90aefb RLBA-2022:7724 zlib bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for zlib. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms zlib-1.2.11-20.el8.aarch64.rpm e125c1fad08781fa7fc040e1226812b5db49d4d75199fe937e1dca26a48a2864 zlib-devel-1.2.11-20.el8.aarch64.rpm 9b7d238d0291e7d6eeae4addc992f789aafd1358d06a19b277e9bef8a50977fd RLBA-2022:7725 dracut bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for dracut. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms dracut-049-209.git20220815.el8.aarch64.rpm 7a3c09062109db831898b3fc0ff522384bfab279762a1add054a06043eadca3e dracut-caps-049-209.git20220815.el8.aarch64.rpm 8596dea8ff9ba138189917aa339979012583b6f3f385cafdbd356bd57c1385a2 dracut-config-generic-049-209.git20220815.el8.aarch64.rpm 69d796f04adb3aad56b3cf502658d5d0e948b44717cf7d6aa93830f8e2b434ed dracut-config-rescue-049-209.git20220815.el8.aarch64.rpm 87aaa19d8cd163a5dc230cc6eeb0091db7bbe780bb68c7a59f89a0509fb20e4f dracut-live-049-209.git20220815.el8.aarch64.rpm ade369e031ca7628f14269289327e08d927dc6cb92d1ca4d58e7a4c57421f284 dracut-network-049-209.git20220815.el8.aarch64.rpm de82ead1daab19cfdf70857bf2252b444b9d52429873cb965a21116f795b8db6 dracut-squash-049-209.git20220815.el8.aarch64.rpm 8f29856ae4598ec1de24b6a2a6657471f41842fa0e6bd597c5d065b0a2737626 dracut-tools-049-209.git20220815.el8.aarch64.rpm 0ec31db9ea0b2431cd65e080ff8d69557f464ff963c988db0917eaa2e0f99e6b RLBA-2022:7727 systemd bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for systemd. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms systemd-239-68.el8.aarch64.rpm 7d73207ef3dfb42a0bbfb9afd82dacee2b23e4a8b6e5a07b3752b05ad976b887 systemd-container-239-68.el8.aarch64.rpm 3a793e428720878cfdc25b7c4692055b716678bb4b933f849a6f3b5ce6cd102a systemd-devel-239-68.el8.aarch64.rpm 1c49d251b203a36ce92016f1b8f2b958d54ad2ed1ea28c9865455157c57c7eb3 systemd-journal-remote-239-68.el8.aarch64.rpm f9cb9d0e084e5a95a8ff3360d0340134f5f9d96ba673edc9c25847be8a565ab9 systemd-libs-239-68.el8.aarch64.rpm 39e9441543bdd4adcc37355da183ff57c659a553c2dc3f4bb8c227bb20351b31 systemd-pam-239-68.el8.aarch64.rpm 58ee752d2d291e01ac25143379d816dccaec4aa8fe003604bbec215cade2fa79 systemd-tests-239-68.el8.aarch64.rpm d98c97b63e0d66fdd7f6456828750d61abba89e34646eb033883c2dafb54aea8 systemd-udev-239-68.el8.aarch64.rpm c74e59a7135dec2aee660d58cd3ae401ecfa0ea43d69e4ec40f8bffbc103f6e6 RLBA-2022:7728 libtevent bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for libtevent. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms libtevent-0.12.0-0.el8.aarch64.rpm a852c69a39ef394eb3e0c5804212247fc9453f630d493226316a3b9ee94bc9d2 libtevent-devel-0.12.0-0.el8.aarch64.rpm 02cf1186cbf018ffa58d51d451e4cbf14b10c9bcb44b5091caeb1eef1ee31bdf python3-tevent-0.12.0-0.el8.aarch64.rpm 194da3b5f39ed5dbddcd84fbbb1581714b95396af0e3e21abee630ae64b9d668 RLBA-2022:7729 libtdb bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for libtdb. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms libtdb-1.4.6-1.el8.aarch64.rpm 28e72fec7a88d6edc2ac0615794bca414e33491ec498c953e3fec2b353f5a1be libtdb-devel-1.4.6-1.el8.aarch64.rpm 7ef9ddffc50e3abdab962317ee7ad7c98d30bab3dc564d1e564baac6b19ab55e python3-tdb-1.4.6-1.el8.aarch64.rpm 11be3430e90656cd1cf21124f18facef26978bc0ad9827a8ee9556175b67eab0 tdb-tools-1.4.6-1.el8.aarch64.rpm 42f896fd8d072a286ded11e731d353e7e799dbbf07aeb8f7f24fcd9c30cec6d5 RLBA-2022:7731 ding-libs bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for ding-libs. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms libbasicobjects-0.1.1-40.el8.aarch64.rpm ed623791870778478a01619045ba86d73c01d9f04b4e6cc258f5866cb2048e33 libcollection-0.7.0-40.el8.aarch64.rpm 69d2c132badcdf45e86df1e1ba358237b599284c22e3dbfa7638d902e0652193 libdhash-0.5.0-40.el8.aarch64.rpm aa5d496dfa7f798184cd964156c674fef28436a86e275462a985088d20872e27 libini_config-1.3.1-40.el8.aarch64.rpm eec9c0c59ddf5df518666b260dd7c1515ab187782bd80637eaace5585153f49a libpath_utils-0.2.1-40.el8.aarch64.rpm 7d8e665d7cffada799046073a535da46a84b3ee7a5b02c398c5ba0102ed1f797 libref_array-0.1.5-40.el8.aarch64.rpm ad40da01469046f1eff11e8d00e1aeb569e27c4f4a0ba5150e6eea116e6d7718 RLSA-2022:7730 Moderate: libldb security, bug fix, and enhancement update The libldb packages provide an extensible library that implements an LDAP-like API to access remote LDAP servers, or use local TDB databases. The following packages have been upgraded to a later upstream version: libldb (2.5.2). (BZ#2077484) Security Fix(es): * samba: AD users can induce a use-after-free in the server process with an LDAP add or modify request (CVE-2022-32746) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 Moderate An update is available for libldb. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list The libldb packages provide an extensible library that implements an LDAP-like API to access remote LDAP servers, or use local TDB databases. The following packages have been upgraded to a later upstream version: libldb (2.5.2). (BZ#2077484) Security Fix(es): * samba: AD users can induce a use-after-free in the server process with an LDAP add or modify request (CVE-2022-32746) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms ldb-tools-2.5.2-2.el8.aarch64.rpm fd9e9f04511fe6b138f7d74e9ae9fb7d0d57e981e66be613d542bd63d6ff79be libldb-2.5.2-2.el8.aarch64.rpm 11aea5bedcbf8869b0302d309acec8dbe1d49e9d03e76661d813369829f1e7eb libldb-devel-2.5.2-2.el8.aarch64.rpm 7a0a92bab36a2dbe0e3bb2eb56b012b0b9075a9b52cb711f7c506e9590c56f77 python3-ldb-2.5.2-2.el8.aarch64.rpm 268be5d108fda5034461cb05970664445d3a82b22c76317b700cf8fc0f3f0f9b RLBA-2022:7734 rpcbind bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for rpcbind. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms rpcbind-1.2.5-10.el8.aarch64.rpm 435709c555c6a03229eec4b5264663b2cb93eab60f8241c8b10fe545fe156f36 RLBA-2022:7735 bluez bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for bluez. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms bluez-5.63-1.el8.aarch64.rpm 334da38938a510a18a6d9968ff52f6bc9199f5e8fd40f6f99fd289b0d78d3ca7 bluez-hid2hci-5.63-1.el8.aarch64.rpm 4bae2a1725fc9b4d88b5f41a11b27427e81c0b5a74c0fc1ec968cf04235f1f54 bluez-libs-5.63-1.el8.aarch64.rpm 9e6beb99633cadca9f282c599134b79f7296d236b0f5681699d6a3932ef46e14 bluez-obexd-5.63-1.el8.aarch64.rpm 3ab18df88a241a8728c28e3268edeebfefc53aa54d670a49fbca8d5294bb78a6 RLBA-2022:7737 opencryptoki bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for opencryptoki. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms opencryptoki-3.18.0-3.el8.aarch64.rpm 154aacfb7e4c385afcbbaf1906b1ee10eb91f64a6d8c4cf610eb4dad813c4056 opencryptoki-icsftok-3.18.0-3.el8.aarch64.rpm 71bf2b98fcbfe59705ce707f8f608451e48423e298d1036e2f4ca2d6b6d350dc opencryptoki-libs-3.18.0-3.el8.aarch64.rpm 5448582e28488467b3fd6a44036af5f677dc18016a94dc42ec4de568ae6a3047 opencryptoki-swtok-3.18.0-3.el8.aarch64.rpm 23917ed66c5bdde810c1ed2d1ca1e5f12cedf2c947da28e541531e04f470e013 opencryptoki-tpmtok-3.18.0-3.el8.aarch64.rpm 4de016ee6cc8e4cdf9dfc1608b6fb2495a36982421a9afe6f206fe0abe7ed4fb RLBA-2022:7738 authselect bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for authselect. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms authselect-1.2.5-1.el8.aarch64.rpm 29ea70ecbb39aac065908b764d7be2e047ead57e0c5fd7ec6d5b12f60831a7e1 authselect-libs-1.2.5-1.el8.aarch64.rpm 58dadbd9affe71b64c46273b0b8538c2645875aacc9fd55e607310ad357a8457 RLBA-2022:7741 mdadm bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for mdadm. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms mdadm-4.2-5.el8.aarch64.rpm 4836c8b354d3c11df1972d687f2d325a6da480f5d0d0fe1bea447d52e2b87be2 RLBA-2022:7740 libtirpc bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for libtirpc. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms libtirpc-1.1.4-8.el8.aarch64.rpm 57d8beb5dadf3caa8624abcffd7e85f2faeccb86ede420d2e1fe06a5fadefc71 libtirpc-devel-1.1.4-8.el8.aarch64.rpm d725a2718b36630d1330db9e93b8224b48ace5d140f983c0395ed8da49b9e0bf RLBA-2022:7743 autofs bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for autofs. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms autofs-5.1.4-83.el8.aarch64.rpm 23b2102b167ffadc17b45aa044a822e55e415c53aecc0f8efdb7bb72a83af1a4 RLSA-2022:7745 Moderate: freetype security update FreeType is a free, high-quality, portable font engine that can open and manage font files. FreeType loads, hints, and renders individual glyphs efficiently. Security Fix(es): * FreeType: Buffer overflow in sfnt_init_face (CVE-2022-27404) * FreeType: Segmentation violation via FNT_Size_Request (CVE-2022-27405) * Freetype: Segmentation violation via FT_Request_Size (CVE-2022-27406) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 Moderate An update is available for freetype. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list FreeType is a free, high-quality, portable font engine that can open and manage font files. FreeType loads, hints, and renders individual glyphs efficiently. Security Fix(es): * FreeType: Buffer overflow in sfnt_init_face (CVE-2022-27404) * FreeType: Segmentation violation via FNT_Size_Request (CVE-2022-27405) * Freetype: Segmentation violation via FT_Request_Size (CVE-2022-27406) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms freetype-2.9.1-9.el8.aarch64.rpm 6b4b48a1202663dbb1fcf6333273938d1ecb16acd75368efc9b264fa046270f4 freetype-devel-2.9.1-9.el8.aarch64.rpm 19fc86a5b68199fe2294b121bf9e2e8a09c69d5850aef54d64338afc59b02202 RLBA-2022:7746 zsh bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for zsh. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms zsh-5.5.1-10.el8.aarch64.rpm 0748ee41e423147a5761291b63e2396da5ce8b2be070bdac4c9374806f23d523 RLBA-2022:7753 ledmon bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for ledmon. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms ledmon-0.96-2.el8.aarch64.rpm e30d4d468c4eeb0e18f288748c6e0e07bef8aed1e3b5a29b8d182b585416f557 RLBA-2022:7752 iproute bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for iproute. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms iproute-5.18.0-1.el8.aarch64.rpm 0a83cfd263c2a9e56394e7a8f1cc4864069a19b24400ccf6a3bdd0ce77fbe369 iproute-tc-5.18.0-1.el8.aarch64.rpm 1cc4fe3e18e30bb1065b758519912128d0f54d1962ae373067860289f460c644 RLBA-2022:7754 environment-modules bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for environment-modules. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms environment-modules-4.5.2-2.el8.aarch64.rpm aa8b8106185a9f4bfe3726e7f3a94d3ebb02b32a19bd051f2eb5a3ecfc0440ec RLBA-2022:7757 sg3_utils bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for sg3_utils. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms sg3_utils-1.44-6.el8.aarch64.rpm 7acaa63a419d3459c20ae077812d0c90d9a8d65eb6f29ae1dbbab62a5bf3b7d4 sg3_utils-libs-1.44-6.el8.aarch64.rpm 10cb2a71a204b51722f393b571f1e2cb1be5e7fb748a8904a9d0c973fe2273d5 RLBA-2022:7758 coreutils bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for coreutils. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms coreutils-8.30-13.el8.aarch64.rpm 46023daf2614bb5c6854b4437d80865d146818c2809ab148723f04f00404bd11 coreutils-common-8.30-13.el8.aarch64.rpm 249f34a8e5818881ab99cc2ba04190e1736069fa8554acab5b835acf0c58bbca coreutils-single-8.30-13.el8.aarch64.rpm f90b171face4602d82296ad88c6b1b0fab26e76503a9125e7e7e4b70aa76b1e2 RLBA-2022:7760 ndctl bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for ndctl. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms daxctl-71.1-4.el8.aarch64.rpm 7ec9c82419c6d19f63ef48b0e5908a114a9d9d8e1af0d27776418e2035e5258d daxctl-libs-71.1-4.el8.aarch64.rpm 6e29f6d57950ca242ceee01ab0aadce1b8bad7bf6a230ad032030be892768eda ndctl-71.1-4.el8.aarch64.rpm cc988032ab22cee018d018b1f8fe7d8a45fdb9c76e44e4297bf51dd73008484e ndctl-libs-71.1-4.el8.aarch64.rpm 1178f34b89ccb8f820d01df308eba4feb9f9c4143e40e74f690562e0e6b3e2f1 RLBA-2022:7761 fuse bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for fuse. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms fuse-2.9.7-16.el8.aarch64.rpm b1be35d06c89612fab22faf58fb478aa5f9ebd5664122b158c949c40c57d32f8 fuse3-3.3.0-16.el8.aarch64.rpm 8b9f65dd804ee6952bb71f9eb65f3a42e6012db93572d620b078b6a2b861611d fuse3-devel-3.3.0-16.el8.aarch64.rpm a8f488e5d53caaaf1a83cae1c0cce87efd4ce8225c836e6c510f629b2f1d1ced fuse3-libs-3.3.0-16.el8.aarch64.rpm df689a9c829991499c43dd10f2bbd84fd656d957e268b430c15433d2e98bb39f fuse-common-3.3.0-16.el8.aarch64.rpm 25817e5c4d65dce7b310479a1577d0483f61ffa2f961c22186ffdc635f43fef0 fuse-devel-2.9.7-16.el8.aarch64.rpm 7cc3957c7a4d5ef7e0a6cd0dfa6ab7bdeaa8b1cc618a6e2daf7bfec225b718b0 fuse-libs-2.9.7-16.el8.aarch64.rpm 392a9ebe5f882f4c36b91b5786b9a0bc7d747b0f7331c2bd96d209fb23b9c669 RLBA-2022:7763 openssh bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for openssh. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms openssh-8.0p1-16.el8.aarch64.rpm 9ea64cc540a49ae272ed532ce8922a6a4bbcb5cf817d07f4295e03ebb67d0a07 openssh-cavs-8.0p1-16.el8.aarch64.rpm 538679ddaa17f9ab0df40bd3c473369c215a6a1bbd51f070bb0ff31f29f6f586 openssh-clients-8.0p1-16.el8.aarch64.rpm e7f498c1115f571341ecdd0a78072a61ca3b82456dec9dffac6c1571c387280b openssh-keycat-8.0p1-16.el8.aarch64.rpm 76734e5e6391c34ec2fa2176fc87962bc92d55d26a770522b4d68a5fc025b07f openssh-ldap-8.0p1-16.el8.aarch64.rpm 371a21f8ddd7698cfb7ef40e6dbbdb166a961649bc63a5aa3b2e4d23a2b18598 openssh-server-8.0p1-16.el8.aarch64.rpm b991c98b9f8cc22a7b79fb6ec89fc23b6b9be016fb53f5b53e9d34345d4e5e6f pam_ssh_agent_auth-0.10.3-7.16.el8.aarch64.rpm 1d6fce8d5f0adb8fd8d47247c593d7a09214903ac445894c221c7fa348443d24 RLBA-2022:7765 ethtool bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for ethtool. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms ethtool-5.13-2.el8.aarch64.rpm 534bb57d24f7aa2da23197a8b38715970be11ea7c5a7f1e284bbf88475a45267 RLBA-2022:7767 libbpf bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for libbpf. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms libbpf-0.5.0-1.el8.aarch64.rpm ad7cb1bbc34647c0680451ed9467790766b0e1433d0de29c830c602d9bd94eb0 RLBA-2022:7768 nfs-utils bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for nfs-utils. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms libnfsidmap-2.3.3-57.el8.aarch64.rpm bfbd77bc5e93d17ad3bcd4debc9e03c8273df29fca6ffaa123a017e4fc262f01 nfs-utils-2.3.3-57.el8.aarch64.rpm a77e705a6de7417e92def62209d41ff1071fd8bdf3305b5c0f2b3d82e670994a RLBA-2022:7769 dbus bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for dbus. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms dbus-1.12.8-23.el8.aarch64.rpm 56943f4d010328992a964ea62efe7a3e8e59b349f9acc49fa8f7164fc6977a7b dbus-daemon-1.12.8-23.el8.aarch64.rpm 70575113a295243c480e375f6e14127803ba0570c8289ceafcc4b19251438f7f dbus-libs-1.12.8-23.el8.aarch64.rpm e9173f6df4b19e672d97a0b443706af370df5c81df1a0f78e9226e538c7e9547 dbus-tools-1.12.8-23.el8.aarch64.rpm d0574605c91490fc6027ee40813cdb3a02576cb2d02452fec6fd39593f0f84ee RLBA-2022:7770 tar bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for tar. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms tar-1.30-6.el8.aarch64.rpm 0a2b06b2d86a366d7e738e58269ee3e2866407ca57f6ef0bf98bbe544d018363 RLBA-2022:7771 device-mapper-persistent-data bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for device-mapper-persistent-data. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms device-mapper-persistent-data-0.9.0-7.el8.aarch64.rpm a5964a029ab2e25d05b8664209864ba6a7197d5eb3927f89be20d8271fc85ae8 RLBA-2022:7772 smc-tools bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for smc-tools. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms smc-tools-1.8.1-1.gitbbf7e8c.el8.aarch64.rpm 7cf456c583d8d8dc1ac50300c867fe3e37367b3e1d0e94da4f66db55c328849f RLBA-2022:7774 sanlock bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for sanlock. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms sanlock-lib-3.8.4-4.el8.aarch64.rpm 71fe1aa717fc05ef342377a0dfd5b7e7aca648e7a10412d415688a34281f38e7 RLBA-2022:7775 libnl3 bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for libnl3. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms libnl3-3.7.0-1.el8.aarch64.rpm 0110c7329976d152551a79b498b728d98ec4c79ec7dac05b32ab788ad47c6a6b libnl3-cli-3.7.0-1.el8.aarch64.rpm 1ec8ea11a547686cea0513699d68e110515ee25e54e2336d8bf796d703c1fbe4 libnl3-devel-3.7.0-1.el8.aarch64.rpm 58395d42ada00b14c764ba7ff850b04ca2d253f5b6a1c3b10063d53c31b7aaaf libnl3-doc-3.7.0-1.el8.aarch64.rpm ec52fd6fdfd1a32373536649082396350645ff0f00d802d805639d3a326b3e63 python3-libnl3-3.7.0-1.el8.aarch64.rpm 6e40fab42b4cfe8dbd1b1a7223a4b2beef8594bc9909a3a60763a49537e50b93 RLBA-2022:7776 libverto bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for libverto. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms libverto-0.3.2-2.el8.aarch64.rpm e4ddc4cd25f70d80627e43a09ac1ad358910f1ea99404e429dcef457951ebebb libverto-devel-0.3.2-2.el8.aarch64.rpm 971b5295750d252cbaf71e7c31a5157d50bb2546a0e2318b3c860bc71a5164d6 libverto-libevent-0.3.2-2.el8.aarch64.rpm a9ac9a7a67ce7dd2d32e77964365a981248d6f72c4aa37a79d385c96ac50a4ef RLBA-2022:7778 kmod-kvdo bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for kmod-kvdo, vdo. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms kmod-kvdo-6.2.7.17-87.el8.aarch64.rpm 2a9564faab4bcca5d511660bb9af1819e140a0165de49ac6e39a876dbb7c8686 vdo-6.2.7.17-14.el8.aarch64.rpm 7dcf1ae56f5e6eee746cb4bbfa7811d3d3496cc28c99498940091b8c7e1e4ddf vdo-support-6.2.7.17-14.el8.aarch64.rpm 9f8749bf98a1148a38479985f948d7885a1abeb01306645064c1e1ef10aec100 RLBA-2022:7779 curl bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for curl. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms curl-7.61.1-25.el8.aarch64.rpm b981fef665f0332215e318f26ae24dd098bef5091fdc5ec809028a18325ed21d libcurl-7.61.1-25.el8.aarch64.rpm 63d5e3a1a5d5b238bc2712398ccef5c0727caea70041304a826fb7d8edb78231 libcurl-devel-7.61.1-25.el8.aarch64.rpm f3d4056277d05ad21033f82deef468ec1a7e717ee7ffd4e5853bcf60d05f9145 libcurl-minimal-7.61.1-25.el8.aarch64.rpm 6a4435ed437d24f5ec3257711ca275598cd8265516a405a0e262d40356bdc556 RLBA-2022:7780 librepo bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for librepo. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms librepo-1.14.2-3.el8.aarch64.rpm 816c1e1d3f912812a2eed48fcca9712653353ad20f515d83e280f07a2d83eba9 python3-librepo-1.14.2-3.el8.aarch64.rpm 97a6171af3eae2ccae633ae990b527c76595b4b7e91f9c0f971a506f74447dac RLBA-2022:7781 gdbm bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for gdbm. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms gdbm-1.18-2.el8.aarch64.rpm 889c94613424f05568f5a8168f6900b0892de4deb1e5f0b7b92d05092343faac gdbm-devel-1.18-2.el8.aarch64.rpm fe9b81519d961d73ce03b29e7f5cf2e1b11cc37228a389c1c370308d8828e56d gdbm-libs-1.18-2.el8.aarch64.rpm 757a7b77239d690b9ec7dc2c9ece601f68937dc3c32d52024437fb8a9ff85b8d RLEA-2022:7782 strace bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for strace. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms strace-5.18-2.el8.aarch64.rpm 4cf10ded21ce208ae40b96c3d5a076a79d3ba7818662e941154d4a80858764c8 RLBA-2022:7783 util-linux bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for util-linux. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms libblkid-2.32.1-38.el8.aarch64.rpm 2489ce02f28396bed800e976286b5ef854a9a8ed288003b99202fa0af6b06cd7 libblkid-devel-2.32.1-38.el8.aarch64.rpm 048c10225569da196929f33e2cac1cf16c612356cd5aa8984800b6000ae71c37 libfdisk-2.32.1-38.el8.aarch64.rpm 6742e311f7c77cd63e2b9227c5f658bcaa11d07dc293a99de1c56bdd882a00b4 libfdisk-devel-2.32.1-38.el8.aarch64.rpm 7e637b48786aa587a1504d1775a4afd6b2a171659ad67e65afc14dd7f954945c libmount-2.32.1-38.el8.aarch64.rpm c6881554fe953e87f7b1912ac1fbe52f3c93dc7ce724013f2a3a589e35ed621c libsmartcols-2.32.1-38.el8.aarch64.rpm bfad837820729e47016f1025b1d76e7571e63d804599a26daae09f263929306e libsmartcols-devel-2.32.1-38.el8.aarch64.rpm 28c6f2448776e6e6e9a18b679297747a5b4f8e9439bec2b53b4cab2ff6dbd6e1 libuuid-2.32.1-38.el8.aarch64.rpm 5be535b4fbadfcbc44ea07dda43ddb05ecea440fc9cf4dd539cf2a6fe39074ee libuuid-devel-2.32.1-38.el8.aarch64.rpm 094be6c5eaf6306611ed102f35c8a3909f75f048479448cb1152ad81fd0bd67b util-linux-2.32.1-38.el8.aarch64.rpm 16c074c6d64a4479a0942a45354a80ff24ae5223bcb27dd5f06bd613739f5396 util-linux-user-2.32.1-38.el8.aarch64.rpm 901c19733abbe6718ed84b3f10cb4b233f06d6d5ff90779433039a122641f459 uuidd-2.32.1-38.el8.aarch64.rpm 1354f36641bc85fd1bf256f0431220fca9d7ca979818d8e969601118ec47e64e RLBA-2022:7785 nvme-cli bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for nvme-cli. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms nvme-cli-1.16-5.el8.aarch64.rpm fd583fd32a66673a420f80629ba4dc7de33b2895804658b339909f9adc2731e5 RLBA-2022:7786 libselinux bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for libselinux. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms libselinux-2.9-6.el8.aarch64.rpm abc20d7c41df771da4e5b3f813d41585b7feaf840c70e4979ecfd8127f79b234 libselinux-devel-2.9-6.el8.aarch64.rpm 3af85183bd8b03b2367246aa080cde19637d94af82cc8094d6aa0e48b22a69b4 libselinux-utils-2.9-6.el8.aarch64.rpm 341b79e728ede7478f96a51f04cfe1daaeafd063ad6f9ebc592c19e1ffc6ac71 python3-libselinux-2.9-6.el8.aarch64.rpm 4b38a482781e27998320ef7bc889b13aac52774be8d59b88b7032d106ba1c603 RLBA-2022:7787 irqbalance bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for irqbalance. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms irqbalance-1.9.0-3.el8.aarch64.rpm aa50e055b1660c675166197934f15167f8e77811e20bac2e2c211c824ad95d66 RLBA-2022:7788 libarchive bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for libarchive. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms bsdtar-3.3.3-4.el8.aarch64.rpm 6829b3a8dfe3a6ae92802ec1b93deb3d01279faf3cf241639212e653b88021e3 libarchive-3.3.3-4.el8.aarch64.rpm 21de63ec3b04e67e1a8536436d16f4ed24bfc052c253da53b3d34dcdd8bf299f RLBA-2022:7792 lvm2 bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for lvm2. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms device-mapper-1.02.181-6.el8.aarch64.rpm 515cbe27579d14f8a377f831252d8a76db713eda53c218290c9b63700026a553 device-mapper-event-1.02.181-6.el8.aarch64.rpm 039633cca65cd6723eef9e0353d2c3fd802cc8bd0cb34958995ce78c16db2dc1 device-mapper-event-libs-1.02.181-6.el8.aarch64.rpm 891aff3102389366ce85444ca82fed2413d629f636eaf55292d2046de5a0565f device-mapper-libs-1.02.181-6.el8.aarch64.rpm bbe4b5da4c8ab61bf63ad4e39aac6c6c241ba57f1722ada1e9fd8ccbe59327b1 lvm2-2.03.14-6.el8.aarch64.rpm 856c9752842a3f064f59f91aa7dec45c121af084990a0f4e8e26cebaac66903f lvm2-libs-2.03.14-6.el8.aarch64.rpm 6820fd510e4ee4dd30cd6926ba970bf0d63300737bda3f6c2ee49ed604fa1aee lvm2-lockd-2.03.14-6.el8.aarch64.rpm b53869e35c12881cca41e8953b4cc976d3b9b2ea6a2b764e458f0ca7e7b570c1 RLSA-2022:7793 Moderate: rsync security and enhancement update The rsync utility enables the users to copy and synchronize files locally or across a network. Synchronization with rsync is fast because rsync only sends the differences in files over the network instead of sending whole files. The rsync utility is also used as a mirroring tool. Security Fix(es): * zlib: heap-based buffer over-read and overflow in inflate() in inflate.c via a large gzip header extra field (CVE-2022-37434) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 Moderate An update is available for rsync. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list The rsync utility enables the users to copy and synchronize files locally or across a network. Synchronization with rsync is fast because rsync only sends the differences in files over the network instead of sending whole files. The rsync utility is also used as a mirroring tool. Security Fix(es): * zlib: heap-based buffer over-read and overflow in inflate() in inflate.c via a large gzip header extra field (CVE-2022-37434) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms rsync-3.1.3-19.el8.aarch64.rpm 591c18962c35b9d5564181cc09987b1ed99535fb634adc4b8ce28fcf2e83f4da RLBA-2022:7794 shadow-utils bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for shadow-utils. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms shadow-utils-4.6-17.el8.aarch64.rpm 187aaa6bae4b09ee63b160fa85ab9b531b0b0dc43c882c61c9dfe9f764b4982e shadow-utils-subid-4.6-17.el8.aarch64.rpm 317c754af1dab336c0e45c69e3ba472522d9715c86795e9de85766b41c597eb0 RLBA-2022:7795 gssproxy bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for gssproxy. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms gssproxy-0.8.0-21.el8.aarch64.rpm b39ab6ed779c99afc8dba0bc4c1772a3acbea2cb6318c60fa1b709ae98afbaaa RLBA-2022:7796 iptables bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for iptables. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms iptables-1.8.4-23.el8.aarch64.rpm ea4636ee30470cb685f02f9c2165d41562c628c9d0887094903e727317cb29a6 iptables-arptables-1.8.4-23.el8.aarch64.rpm 980b29a6e0045becc7a960bbf071f60a017218ccb6d45bcfa517920ab0ab25d3 iptables-devel-1.8.4-23.el8.aarch64.rpm 92481bd559ba60fedbbf752efb9ebe15cf71e594ea3377bc99ad1ef9eb99fcba iptables-ebtables-1.8.4-23.el8.aarch64.rpm d4299317548f9659f529d91cf5d418691f818fb058ed7cbdda25047b95baf50a iptables-libs-1.8.4-23.el8.aarch64.rpm 0a515e48c4015665e1a868ca90594a3b7fa3437867b95cd7edb25ff6caefdd86 iptables-services-1.8.4-23.el8.aarch64.rpm 4dbff8f4b10a001201e773651f3d5d7750edbad3729cf128a9b8907168ac9049 iptables-utils-1.8.4-23.el8.aarch64.rpm 06206477593450e0b3270b6708d22f54f2e97660c954c55d3a0ccc8750633c17 RLEA-2022:7797 RDMA stack bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for ucx, rdma-core, mstflint, libvma, fabtests, eth-tools, libfabric. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms ibacm-41.0-1.el8.aarch64.rpm 8bad7001d372091b664334b96669c4f9d051b3439a84fdc8e2e0eddff7652d56 infiniband-diags-41.0-1.el8.aarch64.rpm 6825b589b848f389000fd87b9c0c3d965d2b89316efab1ec40c99c3b34a68124 iwpmd-41.0-1.el8.aarch64.rpm 7dee8b2c5412f833adb8dd6115f41a80c1afde3af353859ee47189d689c6e309 libfabric-1.15.1-1.el8.aarch64.rpm c7c5ed9507fbaaa921a292471284d6c7ca1d9edb1873944a44cd9213da8ccfde libibumad-41.0-1.el8.aarch64.rpm ceaa9fa02db3af0eaa46fd33101ad480542d483119eb9b29e1956613cbcbaab0 libibverbs-41.0-1.el8.aarch64.rpm 600252f17726e48d5b93ba9548ef639f6a5629de602eb2c2fbf835bd5d138e3b libibverbs-utils-41.0-1.el8.aarch64.rpm e908cb170dbb423bfdc1c347806485158350379492ebaac93fb3c77dd2d4e04a librdmacm-41.0-1.el8.aarch64.rpm ec9d80f841424b7cd6cf28c98d28cdac779e9297d42485f5f208524e5716b75e librdmacm-utils-41.0-1.el8.aarch64.rpm 31a6c495a58913bc01acf604668e071b69b1cd1bcc3e19410989cab9b23dce7d python3-pyverbs-41.0-1.el8.aarch64.rpm 00d5c9ad9227845f597350d61330638f9f57ef4e2a9ce7725d6ddce93bd497c4 rdma-core-41.0-1.el8.aarch64.rpm 73fe93d3bb9762f48ab2a2295f81cb1734deca41a949011d6492c592842920f7 rdma-core-devel-41.0-1.el8.aarch64.rpm 83d6593fcb1ce9a8fa06cfc606eedc680b00c15386f5112de8b8f85b86c288b5 srp_daemon-41.0-1.el8.aarch64.rpm ef722e8554180bc7d2d7ebf6edbe176515a120aaeb58cb1b0b4810fcefb0db7c RLBA-2022:7798 initscripts bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for initscripts. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms initscripts-10.00.18-1.el8.aarch64.rpm 83b6e124ea1c18f5f5a865f31d695ef5d387ae6d54fe644b909ed9874aebde94 network-scripts-10.00.18-1.el8.aarch64.rpm 9997e7585dad04a4e59cee16b2d7cb5717d94092da2d1b42bf6a6a949f889183 RLBA-2022:7799 grubby bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for grubby. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms grubby-8.40-47.el8.aarch64.rpm 9856a74869e8e425d8ca10d7bb59958d8db6e92f13178f6af36cf026afc82b6f RLBA-2022:7800 tpm2-abrmd bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for tpm2-abrmd. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms tpm2-abrmd-2.3.3-3.el8.aarch64.rpm 94a8b87f04c645e09ac27faa23b328cc76346ed77388edc4bf42a63453e692c5 RLBA-2022:7801 memstrack bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for memstrack. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms memstrack-0.2.4-2.el8.aarch64.rpm c090b2fe7d1c23cf103d742b62308e3c002e209b88a9f8d4133fada6ffb8269a RLBA-2022:7802 liblockfile bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for liblockfile. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms liblockfile-1.14-2.el8.aarch64.rpm 835821b7de4c2f2603673eef08fb6f548be9c25ad24e8d856aeebff7cceb837a RLBA-2022:7803 libtalloc bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for libtalloc. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms libtalloc-2.3.3-2.el8.aarch64.rpm ea31361d31c2329490ae00cee863a1879914c07259004f273a0b78d855f2f20f libtalloc-devel-2.3.3-2.el8.aarch64.rpm 60f064adf01c4ae1a72c84116f61b312ef8581a4b78cdb6edae54e0313c2e474 python3-talloc-2.3.3-2.el8.aarch64.rpm 4f7170d927e91ef492f5588716e33af1733b5b02691947ec3e6537c9d1866cc9 RLBA-2022:7804 libsemanage bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for libsemanage. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms libsemanage-2.9-9.el8.aarch64.rpm 42c73e3fd94d62928882f6defbb0d78759c80f54971b161c2725ce1b3af61fc9 python3-libsemanage-2.9-9.el8.aarch64.rpm 5cd9a3d2868464a09b6d4c8c8d546ecaf628192c8207aa72b53e7eacf6b17f2d RLBA-2022:7805 policycoreutils bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for policycoreutils. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms policycoreutils-2.9-20.el8.aarch64.rpm a07a3a903174b35c7a9b0dae691a9d4a312133704cbede54e0fbfa3f80d0886d policycoreutils-devel-2.9-20.el8.aarch64.rpm 7b112f4172a4f47fa331104b75069cccc990d2dd2a8b712d6791aef7b579a508 policycoreutils-newrole-2.9-20.el8.aarch64.rpm b219134008e8ea15a8ce065d00f6dc8cf191033cf77649d72ffe1d44751498ce policycoreutils-restorecond-2.9-20.el8.aarch64.rpm d75520cd2c6a0ae242902fa8b1ffdf613472031fd31a67716b28875eb90f4823 RLBA-2022:7807 lldpad bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for lldpad. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms lldpad-1.0.1-19.git036e314.el8.aarch64.rpm 0506cb59eb2a04c36f84949d4585cfb41f5b711ba43b99fdee7f57b41b39da59 RLBA-2022:7808 file bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for file. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms file-5.33-21.el8.aarch64.rpm ec2d75e6920a192aaa15470df68d22a74c2419a1cf3e169ebd1c4bb8ac009598 file-libs-5.33-21.el8.aarch64.rpm 61821e076c7a20df3e4c68cd37d22605c94552d6031ce2fb04d3bdf739d315bd RLBA-2022:7809 libpwquality bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for libpwquality. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms libpwquality-1.4.4-5.el8.aarch64.rpm 27f75248d473950ed6354f814ffc5538c678d82b611ffd32b4ce12066ca1f564 python3-pwquality-1.4.4-5.el8.aarch64.rpm 918b6c99f9f88e9307988b72ac9687d35d6adaef266152359e09b919ddb4ceed RLBA-2022:7819 rpm bug fix and enhancement update The RPM Package Manager (RPM) is a command-line driven package management system capable of installing, uninstalling, verifying, querying, and updating software packages. Bug Fix(es): * rpm-plugin-fapolicyd breaks system upgrade, leaving yum in hung state (BZ#2124522) Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for rpm. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list The RPM Package Manager (RPM) is a command-line driven package management system capable of installing, uninstalling, verifying, querying, and updating software packages. Bug Fix(es): * rpm-plugin-fapolicyd breaks system upgrade, leaving yum in hung state (BZ#2124522) rocky-linux-8-aarch64-baseos-rpms python3-rpm-4.14.3-24.el8_7.aarch64.rpm c9927c97d69913572bb7ff3a695c329ba023a92dc37eec864cee2b188025f7f9 rpm-4.14.3-24.el8_7.aarch64.rpm 0d0117a179a20abc617a4a47473f757ab55696a4d89413718dc65c0b1c0d6fab rpm-build-libs-4.14.3-24.el8_7.aarch64.rpm b5c2b41fb6f91def661b1684cd142586a634b89fd7a007cd66206e170eecd9fe rpm-devel-4.14.3-24.el8_7.aarch64.rpm 6cdd4b81da7a942c9421e6294a831d2ff76679b1fc914be7c1e81fefb22fdd3d rpm-libs-4.14.3-24.el8_7.aarch64.rpm 4e6f21d79a5363e24486e75cd7bdaca1b280ac3dfc67ad53eb4e518e49b5c274 rpm-plugin-ima-4.14.3-24.el8_7.aarch64.rpm 7cee4cfd57f17ebdcf01ea3575d1cdbd796978154f39a62c399865ea062e63f1 rpm-plugin-prioreset-4.14.3-24.el8_7.aarch64.rpm deb2fd79b798f3de854fe81a6e7229db694a8d58b671a91ba5aefa2cc583d209 rpm-plugin-selinux-4.14.3-24.el8_7.aarch64.rpm 42970eaedf7385ec475ba67126ab37c2579d3e03525c8ed4a42ed37b20623f89 rpm-plugin-syslog-4.14.3-24.el8_7.aarch64.rpm 9e254538db70708897180623b4a6631b03d4b10eabb4097378527215682f1e2d rpm-plugin-systemd-inhibit-4.14.3-24.el8_7.aarch64.rpm 22cfd5523cab528991fabb2c5d32179288498d05e600b9e9e7060fb8f232ccd4 rpm-sign-4.14.3-24.el8_7.aarch64.rpm 3395b5e2eeac8bec0930f4ce95fbe163923c768545da2b829e8f868744a806b4 RLBA-2022:7828 NetworkManager bug fix and enhancement update NetworkManager is a system network service that manages network devices and connections, attempting to keep active network connectivity when available. Its capabilities include managing Ethernet, wireless, mobile broadband (WWAN), and PPPoE devices, as well as providing VPN integration with a variety of different VPN services. Bug Fix(es) and Enhancement(s): * Host ip changed when start vm (BZ#2132285) Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for NetworkManager. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list NetworkManager is a system network service that manages network devices and connections, attempting to keep active network connectivity when available. Its capabilities include managing Ethernet, wireless, mobile broadband (WWAN), and PPPoE devices, as well as providing VPN integration with a variety of different VPN services. Bug Fix(es) and Enhancement(s): * Host ip changed when start vm (BZ#2132285) rocky-linux-8-aarch64-baseos-rpms NetworkManager-1.40.0-2.el8_7.aarch64.rpm 49a6fb399dcb2ba9420c7944744a928e8ebfe51a3afbbb5733c96cc5cb41dadd NetworkManager-adsl-1.40.0-2.el8_7.aarch64.rpm ac0afddca496fb033aea5e6d11d6a6cb235910d33947e0fea905cc0a3c413f81 NetworkManager-bluetooth-1.40.0-2.el8_7.aarch64.rpm 8ac05b97b0ebad7754151062a785c082a0c0c0502a968a690f04098dec2424eb NetworkManager-libnm-1.40.0-2.el8_7.aarch64.rpm 5595236eb31ef1028858cd825a5fbbfbdaa36e1256d43d7ff4a1d49a5a0a705d NetworkManager-ovs-1.40.0-2.el8_7.aarch64.rpm fb8b07d819cfcdd4df0e3aad6f1b9482271b30bbba88d6aa15c778be292557d8 NetworkManager-ppp-1.40.0-2.el8_7.aarch64.rpm 64d0f3182e92ce09197115c5afc46ffaedab279b283d136d3b6a5195b14522e1 NetworkManager-team-1.40.0-2.el8_7.aarch64.rpm cb5f174003ab5ad3428f8b57cb38465906b518f5b7e99c0e24d6f95fb942cc52 NetworkManager-tui-1.40.0-2.el8_7.aarch64.rpm 43a677ff990358b1f3b430ceac9668ce96cdbd9049de0c1c20471bc7abbe1bde NetworkManager-wifi-1.40.0-2.el8_7.aarch64.rpm 1d101e117eb02f6c138ab24b7126532e49258f0aed599d7357750e65b12890eb NetworkManager-wwan-1.40.0-2.el8_7.aarch64.rpm 1ac43fd29c0cae8fcc91421d369ec0f6eda1a8cb34969855cf3efb097abb9939 RLBA-2022:7829 sssd bug fix and enhancement update The System Security Services Daemon (SSSD) service provides a set of daemons to manage access to remote directories and authentication mechanisms. It also provides the Name Service Switch (NSS) and the Pluggable Authentication Modules (PAM) interfaces toward the system, and a pluggable back-end system to connect to multiple different account sources. Bug Fix(es) and Enhancement(s): * Cannot SSH with AD user to ipa-client (`krb5_validate` and `pac_check` settings conflict) (BZ#2128544) Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for sssd. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list The System Security Services Daemon (SSSD) service provides a set of daemons to manage access to remote directories and authentication mechanisms. It also provides the Name Service Switch (NSS) and the Pluggable Authentication Modules (PAM) interfaces toward the system, and a pluggable back-end system to connect to multiple different account sources. Bug Fix(es) and Enhancement(s): * Cannot SSH with AD user to ipa-client (`krb5_validate` and `pac_check` settings conflict) (BZ#2128544) rocky-linux-8-aarch64-baseos-rpms libipa_hbac-2.7.3-4.el8_7.1.aarch64.rpm f6ca2b24f0094be6e8d8f1bb1400989c7bb09ceada8343d4e81294bc404a8278 libsss_autofs-2.7.3-4.el8_7.1.aarch64.rpm 8988f55f5f17c81049b97f280d8745f88491bf9a82e83465028c90ca89125d15 libsss_certmap-2.7.3-4.el8_7.1.aarch64.rpm a9454aaa161abdac527c120ddc2e4c08a80407004f4eb7697afff9b7f1b3b452 libsss_idmap-2.7.3-4.el8_7.1.aarch64.rpm a1ee51f3874cf52d1c9d5bc4d6b17afd98bfc779220d856a483876f543cdd41f libsss_nss_idmap-2.7.3-4.el8_7.1.aarch64.rpm f5f688cdbc09bfb23fb13b086113df23d3977676ad1c6af2828c03040cbab3d5 libsss_simpleifp-2.7.3-4.el8_7.1.aarch64.rpm ee7a2cf5e9f157944b7c6f710f4b3555ddba1b164aa2cba35a49a0be992a0a0c libsss_sudo-2.7.3-4.el8_7.1.aarch64.rpm 38b1770a78bbfcc1e3dceb89b0c84c1e60d339f235189881bd46214749c03a6d python3-libipa_hbac-2.7.3-4.el8_7.1.aarch64.rpm 0256a0d370205f1342febe2316bc8374f106d55336a34ee22a71f9b91d91486a python3-libsss_nss_idmap-2.7.3-4.el8_7.1.aarch64.rpm 6d5ca0b568fee971d5ba0e228e00f710bd4f02480b71503c7989856707e9b40d python3-sss-2.7.3-4.el8_7.1.aarch64.rpm b2075424a1ae98c819326d6ca212bafa6d4de2fb0071d8f6aade9a52917fe04d python3-sss-murmur-2.7.3-4.el8_7.1.aarch64.rpm e4589d466fe5b91f31af1133764d188b9ac7dec579e896efbeedc81f4f160055 sssd-2.7.3-4.el8_7.1.aarch64.rpm 53b9778e7f74b30592a792ee307223c152ae8b54a781983e43df0396b755a24d sssd-ad-2.7.3-4.el8_7.1.aarch64.rpm e1f9df087cb16869a4802174b5bcc8e4a1d078e1f1705c119fd3e96bbbba0d09 sssd-client-2.7.3-4.el8_7.1.aarch64.rpm 41549ade31322026fa9727f97616ce6d6d97060e22d7aa6313a2f0ccfb574de5 sssd-common-2.7.3-4.el8_7.1.aarch64.rpm 901e447910ccd0a2de3b87b6c214f0d59e90af84a9f509c05d2d2c1e2846d50d sssd-common-pac-2.7.3-4.el8_7.1.aarch64.rpm 3ae9235f551fa5b3a60f3402bc45adbfd0cf25f3446b4b8b1a773c2414fb20db sssd-dbus-2.7.3-4.el8_7.1.aarch64.rpm 6fdf3e565cc091c308b5e9c93ead29304999c2daa293eafbe3191e770b30568c sssd-ipa-2.7.3-4.el8_7.1.aarch64.rpm 97c0610f3d7b7ba7ecfa9f9f235abac8c1dcf207ba14d42b242083c2deb0c3c7 sssd-kcm-2.7.3-4.el8_7.1.aarch64.rpm f14e314cdf3c8219686dcb63fecb701fb908243c3f11f39b17233a55cb2b8877 sssd-krb5-2.7.3-4.el8_7.1.aarch64.rpm 183067a7111c75c935f6f1a3169ad498b3f56cad2b34f8fde63e06c67d5c0743 sssd-krb5-common-2.7.3-4.el8_7.1.aarch64.rpm a0b2344f398c259b58a689c41a05090e0f6fd0c441228eaca08bc03ba967f6c0 sssd-ldap-2.7.3-4.el8_7.1.aarch64.rpm 71d6b994645253eaba4e6566a2fb3938dd072d2a3d3b250c58b27b56ce5cf368 sssd-nfs-idmap-2.7.3-4.el8_7.1.aarch64.rpm 3122023820615f39f71aa8cab46fb0d366877c9a8b2674c54847b0ccf024a710 sssd-polkit-rules-2.7.3-4.el8_7.1.aarch64.rpm 4e39328478a67acc3d3df1ed01729c8ad3f643866057cd43e72657dc6cc157f5 sssd-proxy-2.7.3-4.el8_7.1.aarch64.rpm 97a736d8a1b73b1b5d25d357256e787a227177a91aafdf28eaed2a02a1b1ae0a sssd-tools-2.7.3-4.el8_7.1.aarch64.rpm 08edbdecee4de860ae28e94fd11903411d226c5512849ec5dfebdb523fb68fea sssd-winbind-idmap-2.7.3-4.el8_7.1.aarch64.rpm e555c731c11ad6807d8c413a4323d7fa8dde9b7d85f9241aaffeb9083887f91d RLSA-2022:7928 Important: device-mapper-multipath security update The device-mapper-multipath packages provide tools that use the device-mapper multipath kernel module to manage multipath devices. Security Fix(es): * device-mapper-multipath: Regression of CVE-2022-41974 fix in Rocky Linux (CVE-2022-3787) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 Important An update is available for device-mapper-multipath. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list The device-mapper-multipath packages provide tools that use the device-mapper multipath kernel module to manage multipath devices. Security Fix(es): * device-mapper-multipath: Regression of CVE-2022-41974 fix in Rocky Linux (CVE-2022-3787) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. rocky-linux-8-aarch64-baseos-rpms device-mapper-multipath-0.8.4-28.el8_7.1.aarch64.rpm 477bf33d56141e0517a23bbe4d9662e82744726ba2793f5089c95f33c9d283bc device-mapper-multipath-libs-0.8.4-28.el8_7.1.aarch64.rpm 8d5b36bc9f026200b5cb9373e7dceef4d7444c5f0781b121be0321b66009c01c kpartx-0.8.4-28.el8_7.1.aarch64.rpm 32a9a90c06230f4ad7f5e7658328f13f6cf05e36bdd2cc950a64940011f09c18 libdmmp-0.8.4-28.el8_7.1.aarch64.rpm c0c755af7e4910eb12963fe0d7a02b747fe955e516de57e615708bdc869ac016 RLSA-2022:8638 Important: krb5 security update Kerberos is a network authentication system, which can improve the security of your network by eliminating the insecure practice of sending passwords over the network in unencrypted form. It allows clients and servers to authenticate to each other with the help of a trusted third party, the Kerberos key distribution center (KDC). Security Fix(es): * krb5: integer overflow vulnerabilities in PAC parsing (CVE-2022-42898) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 Important An update is available for krb5. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list Kerberos is a network authentication system, which can improve the security of your network by eliminating the insecure practice of sending passwords over the network in unencrypted form. It allows clients and servers to authenticate to each other with the help of a trusted third party, the Kerberos key distribution center (KDC). Security Fix(es): * krb5: integer overflow vulnerabilities in PAC parsing (CVE-2022-42898) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. rocky-linux-8-aarch64-baseos-rpms krb5-devel-1.18.2-22.el8_7.aarch64.rpm 8aa75ec82a78ea65708116e3d1028eda74d74aa61513398a2c4b73dfefde5316 krb5-libs-1.18.2-22.el8_7.aarch64.rpm a8f2a13bc353e9989d1ad3ae184def628941e5b1446267a407df86a06a0a60d3 krb5-pkinit-1.18.2-22.el8_7.aarch64.rpm a505df104fbfc55047b1688cac3f5166aa9202b9cb2596ab786b120a70602a8e krb5-server-1.18.2-22.el8_7.aarch64.rpm a1d7bd77da87c20b01a0d0f1aa26e7cb01364ca0b9cf6f66f10baa06d13d76c3 krb5-server-ldap-1.18.2-22.el8_7.aarch64.rpm 956f90647a936a6e7effef18207ede991b82b934d301fc58c5514170fbbff859 krb5-workstation-1.18.2-22.el8_7.aarch64.rpm f4599c52ccce9bd4bb17868d7cfa05798760c982c407442b162d0b7d65641bd2 libkadm5-1.18.2-22.el8_7.aarch64.rpm c1913ebb43e8659e42914ac67b0d2c41adc924c27188635d093d2d4772e0b3e8 RLBA-2022:9028 libsolv bug fix and enhancement update The libsolv packages provide a library for resolving package dependencies using a satisfiability algorithm. Bug Fix(es) and Enhancement(s): * Transaction picks old build to satisfy dependencies (BZ#2151895) Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for libsolv. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list The libsolv packages provide a library for resolving package dependencies using a satisfiability algorithm. Bug Fix(es) and Enhancement(s): * Transaction picks old build to satisfy dependencies (BZ#2151895) rocky-linux-8-aarch64-baseos-rpms libsolv-0.7.20-4.el8_7.aarch64.rpm 484e387a8c85503ed55dd25dcfb5f1581c670da6b71d28707c58eb114156b791 python3-solv-0.7.20-4.el8_7.aarch64.rpm b396061f35d4cb6b34e7569a120201d3f5431055bc41a8cf1a53084a2e4fd6ed RLBA-2023:0085 net-snmp bug fix and enhancement update The net-snmp packages provide various libraries and tools for the Simple Network Management Protocol (SNMP), including an SNMP library, an extensible agent, tools for requesting or setting information from SNMP agents, tools for generating and handling SNMP traps, a version of the netstat command which uses SNMP, and a Tk/Perl Management Information Base (MIB) browser. Bug Fix(es) and Enhancement(s): * backport two memory leak fixes in snmplib - missed for Rocky Linux 8 (BZ#2134764) Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for net-snmp. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list The net-snmp packages provide various libraries and tools for the Simple Network Management Protocol (SNMP), including an SNMP library, an extensible agent, tools for requesting or setting information from SNMP agents, tools for generating and handling SNMP traps, a version of the netstat command which uses SNMP, and a Tk/Perl Management Information Base (MIB) browser. Bug Fix(es) and Enhancement(s): * backport two memory leak fixes in snmplib - missed for Rocky Linux 8 (BZ#2134764) rocky-linux-8-aarch64-baseos-rpms net-snmp-libs-5.8-25.el8_7.1.aarch64.rpm 998cfd09379b26f9d5b81f641010104cf38d1f4000cc3d1b958c84c5531f333f RLBA-2023:0086 opencryptoki bug fix and enhancement update The opencryptoki packages contain version 2.11 of the PKCS#11 API, implemented for IBM Cryptocards, such as IBM 4764 and 4765 crypto cards. These packages includes support for the IBM 4758 Cryptographic CoProcessor (with the PKCS#11 firmware loaded), the IBM eServer Cryptographic Accelerator (FC 4960 on IBM eServer System p), the IBM Crypto Express2 (FC 0863 or FC 0870 on IBM System z), and the IBM CP Assist for Cryptographic Function (FC 3863 on IBM System z). The opencryptoki packages also bring a software token implementation that can be used without any cryptographic hardware. These packages contain the Slot Daemon (pkcsslotd) and general utilities. Bug Fix(es) and Enhancement(s): * Rocky Linux8.7 - opencryptoki C_GenerateKeyPair() fails after generating > 500 RSA keys with CEX7 crypto cards (BZ#2129059) Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for opencryptoki. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list The opencryptoki packages contain version 2.11 of the PKCS#11 API, implemented for IBM Cryptocards, such as IBM 4764 and 4765 crypto cards. These packages includes support for the IBM 4758 Cryptographic CoProcessor (with the PKCS#11 firmware loaded), the IBM eServer Cryptographic Accelerator (FC 4960 on IBM eServer System p), the IBM Crypto Express2 (FC 0863 or FC 0870 on IBM System z), and the IBM CP Assist for Cryptographic Function (FC 3863 on IBM System z). The opencryptoki packages also bring a software token implementation that can be used without any cryptographic hardware. These packages contain the Slot Daemon (pkcsslotd) and general utilities. Bug Fix(es) and Enhancement(s): * Rocky Linux8.7 - opencryptoki C_GenerateKeyPair() fails after generating > 500 RSA keys with CEX7 crypto cards (BZ#2129059) rocky-linux-8-aarch64-baseos-rpms opencryptoki-3.18.0-5.el8_7.aarch64.rpm 21a76c83ca635c90f9df2b83e7d43db792df1f2d65f95ccf28ca7b846b4a215d opencryptoki-icsftok-3.18.0-5.el8_7.aarch64.rpm 870c730cb00bee134a0dc84d3140b631274f4a14e9f4695bf3fe02e8e45ace03 opencryptoki-libs-3.18.0-5.el8_7.aarch64.rpm 0d02f076621490c0e4315e00c4abcf2a6a9ecea8eb63e14a84efeed811485e7d opencryptoki-swtok-3.18.0-5.el8_7.aarch64.rpm a5318b00892785330215eec56943cbb444f1e2e215b521257841fdec194092fd opencryptoki-tpmtok-3.18.0-5.el8_7.aarch64.rpm 080cf84289a0a71921b12b4eeeb587c6cdc41c30ca462b684abe6468ba816340 RLBA-2023:0090 zlib bug fix and enhancement update The zlib packages provide a general-purpose lossless data compression library that is used by many different programs. Bug Fix(es) and Enhancement(s): * Rocky Linux8.4 - zlib: inflate() does not update strm.adler if DFLTCC is used (BZ#2137336) Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for zlib. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list The zlib packages provide a general-purpose lossless data compression library that is used by many different programs. Bug Fix(es) and Enhancement(s): * Rocky Linux8.4 - zlib: inflate() does not update strm.adler if DFLTCC is used (BZ#2137336) rocky-linux-8-aarch64-baseos-rpms zlib-1.2.11-21.el8_7.aarch64.rpm 20a747975777d59fff85c98796b15151068fd11da077aca7863cc5afda3f90a6 zlib-devel-1.2.11-21.el8_7.aarch64.rpm 941647e609730ddaebf3d1eccb5ab972ddb882d30b8c81605f7ea877eae55a2a RLBA-2023:0094 rsync bug fix and enhancement update The rsync utility enables the users to copy and synchronize files locally or across a network. Synchronization with rsync is fast because rsync only sends the differences in files over the network instead of sending whole files. The rsync utility is also used as a mirroring tool. Bug Fix(es) and Enhancement(s): * rsync-daemon fail on 3.1.3 (BZ#2139118) Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for rsync. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list The rsync utility enables the users to copy and synchronize files locally or across a network. Synchronization with rsync is fast because rsync only sends the differences in files over the network instead of sending whole files. The rsync utility is also used as a mirroring tool. Bug Fix(es) and Enhancement(s): * rsync-daemon fail on 3.1.3 (BZ#2139118) rocky-linux-8-aarch64-baseos-rpms rsync-3.1.3-19.el8_7.1.aarch64.rpm 8026b069c506b8a1f73a6767f26d22c216222c3d69aa0d29dfa1dd2607a54af6 RLSA-2023:0096 Moderate: dbus security update D-Bus is a system for sending messages between applications. It is used both for the system-wide message bus service, and as a per-user-login-session messaging facility. Security Fix(es): * dbus: dbus-daemon crashes when receiving message with incorrectly nested parentheses and curly brackets (CVE-2022-42010) * dbus: dbus-daemon can be crashed by messages with array length inconsistent with element type (CVE-2022-42011) * dbus: `_dbus_marshal_byteswap` doesn't process fds in messages with "foreign" endianness correctly (CVE-2022-42012) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 Moderate An update is available for dbus. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list D-Bus is a system for sending messages between applications. It is used both for the system-wide message bus service, and as a per-user-login-session messaging facility. Security Fix(es): * dbus: dbus-daemon crashes when receiving message with incorrectly nested parentheses and curly brackets (CVE-2022-42010) * dbus: dbus-daemon can be crashed by messages with array length inconsistent with element type (CVE-2022-42011) * dbus: `_dbus_marshal_byteswap` doesn't process fds in messages with "foreign" endianness correctly (CVE-2022-42012) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. rocky-linux-8-aarch64-baseos-rpms dbus-1.12.8-23.el8_7.1.aarch64.rpm 5681430586fbfe8a5a7aad2c7fc69f21c38b9f4269a1c9dd884fbfa37badd221 dbus-daemon-1.12.8-23.el8_7.1.aarch64.rpm 6dcf33aa4cbab4b7c980d3a6cf48ec2e932845342efdca0b2636d5c80a4a9c96 dbus-libs-1.12.8-23.el8_7.1.aarch64.rpm 006e19115a1b61dd6e5347bfc110260639da961435f60ece029aea5359575bcf dbus-tools-1.12.8-23.el8_7.1.aarch64.rpm 36b5e150a2b4c66d3400ae16a8cf0bbec6194a9a03061334d46f42c7eb000580 RLBA-2023:0098 NetworkManager bug fix and enhancement update NetworkManager is a system network service that manages network devices and connections, attempting to keep active network connectivity when available. Its capabilities include managing Ethernet, wireless, mobile broadband (WWAN), and PPPoE devices, as well as providing VPN integration with a variety of different VPN services. Bug Fix(es) and Enhancement(s): * crio occasionally fails to start during deployment (BZ#2132281) * DNS servers are not sorted according to priority in resolv.conf (BZ#2135733) * Hostname is not configured during IPI installation of OpenShift 4.10.3 on baremetal when using NMState and static IP config for a bond network interface. (BZ#2152891) * NMCLI OVS connections intermittently get stuck in "activating" state after power cycle or crash (BZ#2153429) Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for NetworkManager. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list NetworkManager is a system network service that manages network devices and connections, attempting to keep active network connectivity when available. Its capabilities include managing Ethernet, wireless, mobile broadband (WWAN), and PPPoE devices, as well as providing VPN integration with a variety of different VPN services. Bug Fix(es) and Enhancement(s): * crio occasionally fails to start during deployment (BZ#2132281) * DNS servers are not sorted according to priority in resolv.conf (BZ#2135733) * Hostname is not configured during IPI installation of OpenShift 4.10.3 on baremetal when using NMState and static IP config for a bond network interface. (BZ#2152891) * NMCLI OVS connections intermittently get stuck in "activating" state after power cycle or crash (BZ#2153429) rocky-linux-8-aarch64-baseos-rpms NetworkManager-1.40.0-5.el8_7.aarch64.rpm 950b80d29270489c26fac177eab0e544928934b49bc1f3af8bd91de2dfdf748e NetworkManager-adsl-1.40.0-5.el8_7.aarch64.rpm 974aacdc9079b199aebbd9a85ac5014d756bd92c76d9f1af9fef1f875a97ad38 NetworkManager-bluetooth-1.40.0-5.el8_7.aarch64.rpm ceee8b34e1cca11d6bbe5b4c655ed149b1d9fee29dfc0d9a1ca2c7c87190d94a NetworkManager-libnm-1.40.0-5.el8_7.aarch64.rpm f3ab320705577f3b1131c2127ff85c2edd3ac14c83ee6a44e7e8cd6252ba5ba7 NetworkManager-ovs-1.40.0-5.el8_7.aarch64.rpm 754619bc03085d79131afeb5608d523fb6dedaf2220ba9fe0b648839d69f9fdf NetworkManager-ppp-1.40.0-5.el8_7.aarch64.rpm 21883084c430f71ffe750ed1a5e1d26cbf06cdb573560512de8c868d7621e121 NetworkManager-team-1.40.0-5.el8_7.aarch64.rpm 37a9241378af8c20da95bb6c557c3955acbdd71b8ddeb339fbd3540efd29c4a2 NetworkManager-tui-1.40.0-5.el8_7.aarch64.rpm ef9286fa1342eaf573938c960de50e31329dc11b6541ce16cfe0e37d970237ee NetworkManager-wifi-1.40.0-5.el8_7.aarch64.rpm e89c99d5ead4ac4c25489a06c796e4a33686e557e3ff8c5e823f86ca31cdd70b NetworkManager-wwan-1.40.0-5.el8_7.aarch64.rpm 040e4053dd4d385b4ac69897f7fe2ac9a6e33137313dbe9f751b023e3c0b7622 RLSA-2023:0101 Important: kernel security and bug fix update The kernel packages contain the Linux kernel, the core of any Linux operating system. Security Fix(es): * kernel: memory corruption in AX88179_178A based USB ethernet device. (CVE-2022-2964) * kernel: i915: Incorrect GPU TLB flush can lead to random memory access (CVE-2022-4139) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Bug Fix(es): * Rocky Linux8.4 - zfcp: fix missing auto port scan and thus missing target ports (BZ#2127849) * vfio zero page mappings fail after 2M instances (BZ#2128515) * ice: Driver Update up to 5.19 (BZ#2130992) * atlantic: missing hybernate/resume fixes (BZ#2131935) * Bluefield 2 DPU would crash and reboot due to a kernel panic (BZ#2134084) * Fix issue that enables STABLE_WRITES by default and causes performance regressions (BZ#2135813) * ice: Intel E810 PTP clock glitching (BZ#2136036) * ice: configure link-down-on-close on and change interface mtu to 9000,the interface can't up (BZ#2136216) * ice: dump additional CSRs for Tx hang debugging (BZ#2136513) * ice,iavf: system panic during sriov sriov_test_cntvf_reboot testing (BZ#2137270) * After upgrading to ocp4.11.1, our dpdk application using vlan strip offload is not working (BZ#2138157) * i40e: orphaned-leaky memory when interacting with driver memory parameters (BZ#2138205) * WARNING: CPU: 0 PID: 9637 at kernel/time/hrtimer.c:1309 hrtimer_start_range_ns+0x35d/0x400 (BZ#2138953) * DELL EMC 8.6-RT: System is not booting into RT Kernel with perc12. (BZ#2139216) * Lenovo 8.7: The VGA display shows no signal when install Rocky Linux8.7 (BZ#2140152) * Host Pod -> NodePort Service traffic (Host Backend - Same Node) Flow Iperf Cannot Pass Traffic (BZ#2141878) * mlx5_core: mlx5_cmd_check messages scrolling with hardware offload enabled (BZ#2141957) * net/ice: VIRTCHNL_OP_CONFIG_VSI_QUEUES command handling failure with in-tree driver (BZ#2142017) * Rocky Linux:8.6+ IBM Partner issue - Loopback driver with ABORT_TASKS causing hangs in scsi eh, this bug was cloned for Rocky Linux8.6 and need this patch in 8.6+ (BZ#2144583) * AMdCLIENT 8.8: The kernel command line parameter "nomodeset" not working properly (BZ#2145218) * Path loss during Volume Ownership Change on Rocky Linux 8.7 SAS (BZ#2147374) * net/ice: OP_SET_RSS_HENA command not supported with in-tree driver (BZ#2148130) * iavf panic: iavf 0000:ca:01.0: Failed to init adminq: -53 (BZ#2149081) * Intel 8.8 iavf: Driver Update (bugfixes) (BZ#2149742) * Azure Rocky Linux-8 PCI: hv: Do not set PCI_COMMAND_MEMORY to reduce VM boot time (BZ#2150912) * Rocky Linux-8.7: System fails to boot with soft lockup while loading/unloading an unsigned (E) kernel module. (BZ#2152206) Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 Important An update is available for kernel. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list The kernel packages contain the Linux kernel, the core of any Linux operating system. Security Fix(es): * kernel: memory corruption in AX88179_178A based USB ethernet device. (CVE-2022-2964) * kernel: i915: Incorrect GPU TLB flush can lead to random memory access (CVE-2022-4139) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Bug Fix(es): * Rocky Linux8.4 - zfcp: fix missing auto port scan and thus missing target ports (BZ#2127849) * vfio zero page mappings fail after 2M instances (BZ#2128515) * ice: Driver Update up to 5.19 (BZ#2130992) * atlantic: missing hybernate/resume fixes (BZ#2131935) * Bluefield 2 DPU would crash and reboot due to a kernel panic (BZ#2134084) * Fix issue that enables STABLE_WRITES by default and causes performance regressions (BZ#2135813) * ice: Intel E810 PTP clock glitching (BZ#2136036) * ice: configure link-down-on-close on and change interface mtu to 9000,the interface can't up (BZ#2136216) * ice: dump additional CSRs for Tx hang debugging (BZ#2136513) * ice,iavf: system panic during sriov sriov_test_cntvf_reboot testing (BZ#2137270) * After upgrading to ocp4.11.1, our dpdk application using vlan strip offload is not working (BZ#2138157) * i40e: orphaned-leaky memory when interacting with driver memory parameters (BZ#2138205) * WARNING: CPU: 0 PID: 9637 at kernel/time/hrtimer.c:1309 hrtimer_start_range_ns+0x35d/0x400 (BZ#2138953) * DELL EMC 8.6-RT: System is not booting into RT Kernel with perc12. (BZ#2139216) * Lenovo 8.7: The VGA display shows no signal when install Rocky Linux8.7 (BZ#2140152) * Host Pod -> NodePort Service traffic (Host Backend - Same Node) Flow Iperf Cannot Pass Traffic (BZ#2141878) * mlx5_core: mlx5_cmd_check messages scrolling with hardware offload enabled (BZ#2141957) * net/ice: VIRTCHNL_OP_CONFIG_VSI_QUEUES command handling failure with in-tree driver (BZ#2142017) * Rocky Linux:8.6+ IBM Partner issue - Loopback driver with ABORT_TASKS causing hangs in scsi eh, this bug was cloned for Rocky Linux8.6 and need this patch in 8.6+ (BZ#2144583) * AMdCLIENT 8.8: The kernel command line parameter "nomodeset" not working properly (BZ#2145218) * Path loss during Volume Ownership Change on Rocky Linux 8.7 SAS (BZ#2147374) * net/ice: OP_SET_RSS_HENA command not supported with in-tree driver (BZ#2148130) * iavf panic: iavf 0000:ca:01.0: Failed to init adminq: -53 (BZ#2149081) * Intel 8.8 iavf: Driver Update (bugfixes) (BZ#2149742) * Azure Rocky Linux-8 PCI: hv: Do not set PCI_COMMAND_MEMORY to reduce VM boot time (BZ#2150912) * Rocky Linux-8.7: System fails to boot with soft lockup while loading/unloading an unsigned (E) kernel module. (BZ#2152206) rocky-linux-8-aarch64-baseos-rpms bpftool-4.18.0-425.10.1.el8_7.aarch64.rpm 655376e7923a5cd6e7e1e4215ca9de11b826c5c8276334a4ed30b81c33e60bf8 kernel-4.18.0-425.10.1.el8_7.aarch64.rpm 253aa8da58777911c48c9f2f5394d6723b692279ac4b9611d7e5bd0bccfe5987 kernel-core-4.18.0-425.10.1.el8_7.aarch64.rpm f38ef2865d5b9c03a90ad21744530a03e66086d505d7f6d00cf48717e235fc30 kernel-cross-headers-4.18.0-425.10.1.el8_7.aarch64.rpm f2b296167528c4fc42e9ce9f390ab498e53eb4736a2bd3259296fcc201372442 kernel-debug-4.18.0-425.10.1.el8_7.aarch64.rpm 2096a3b99788524bbac746b73330c736130d1ee8a90f30e9c23c47ae9a09a8c9 kernel-debug-core-4.18.0-425.10.1.el8_7.aarch64.rpm 6d11abc288081b2383f43544d27db2fa97e90e3a48dbe6404e6557f0bb7dbd5b kernel-debug-devel-4.18.0-425.10.1.el8_7.aarch64.rpm 8523f2825ac2a90d666b6176c5ebea3eb2567d8641a1d9ebf303424e66aa753a kernel-debuginfo-common-aarch64-4.18.0-425.10.1.el8_7.aarch64.rpm 20f0f57b81350f149c0391ad2876f47aa0aa5ddda77846d25bcfedd771e81fa5 kernel-debug-modules-4.18.0-425.10.1.el8_7.aarch64.rpm 4bbcfb29ab3dbe3c8778d3fac356f6bf81d792718631c87cc03ab197fc8dc959 kernel-debug-modules-extra-4.18.0-425.10.1.el8_7.aarch64.rpm a3976cb267775772d9afbe1a0c9944d4935f34d1d7997a230d4aedd0e2e6e13e kernel-devel-4.18.0-425.10.1.el8_7.aarch64.rpm e71a1eaf35aaa9e721382c2f199b371bb43e4821f12446fde6856db2e04f26a2 kernel-headers-4.18.0-425.10.1.el8_7.aarch64.rpm e57c1ff64193ffa75ac37c647ff26c016cd457b6717840fd7334ef8cb79e260c kernel-modules-4.18.0-425.10.1.el8_7.aarch64.rpm 5446e8128119feb9d10c37fbd3aca39cdcd4c7cfceb403673a2dc9ae0951b646 kernel-modules-extra-4.18.0-425.10.1.el8_7.aarch64.rpm 41cc3e9c91be3c9e5b077ddaef6a1517529ae87623ba20b3055d2fc9508c61bc kernel-tools-4.18.0-425.10.1.el8_7.aarch64.rpm 978e39ca44e9e8e55a4cd14fe3f23479b5761632abaa39fc069303f38fe6fff1 kernel-tools-libs-4.18.0-425.10.1.el8_7.aarch64.rpm 9794b6f8526915bed89be61897ce19ad82eeed48d0ded3b7d0d27ece246d1b3b perf-4.18.0-425.10.1.el8_7.aarch64.rpm 93991ef9fe041674624a898f8c763fbf4d0986e7adfa2bb488bd1f62470c65e4 python3-perf-4.18.0-425.10.1.el8_7.aarch64.rpm fbc0af1bb4aa27cd537a9a6fed27f388f51d1707937364cf8f1893f223beba85 RLBA-2023:0104 dracut bug fix and enhancement update The dracut packages contain an event-driven initial RAM file system (initramfs) generator infrastructure based on the udev device manager. The virtual file system, initramfs, is loaded together with the kernel at boot time and initializes the system, so it can read and boot from the root partition. Bug Fix(es) and Enhancement(s): * booting over iscsi can enter a loop forever in dracut-initqueue if one netroot path is lost. (BZ#2132045) Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for dracut. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list The dracut packages contain an event-driven initial RAM file system (initramfs) generator infrastructure based on the udev device manager. The virtual file system, initramfs, is loaded together with the kernel at boot time and initializes the system, so it can read and boot from the root partition. Bug Fix(es) and Enhancement(s): * booting over iscsi can enter a loop forever in dracut-initqueue if one netroot path is lost. (BZ#2132045) rocky-linux-8-aarch64-baseos-rpms dracut-049-218.git20221019.el8_7.aarch64.rpm de520e82a2fa3487ac44311137e2cc3ed56ea920dcc4fb0945c22f796961eab7 dracut-caps-049-218.git20221019.el8_7.aarch64.rpm 12dfa34259d427129fcd1c76e52b2b6f8a059efe35c57c35ba94af4fcd6b1e7b dracut-config-generic-049-218.git20221019.el8_7.aarch64.rpm 1ee3ebbf175c5ca5e16c66c59ae979fac5fd35e155b2ef6e605ed9d9dd437134 dracut-config-rescue-049-218.git20221019.el8_7.aarch64.rpm 900229471ea2657f16d5a85e26de497a7234b773737d96535a9afb27fc63c820 dracut-live-049-218.git20221019.el8_7.aarch64.rpm b3a9e789b0d3723e13d06a6ccb943f103d010d59a240337f546ffa99c3de0660 dracut-network-049-218.git20221019.el8_7.aarch64.rpm 666eb7155d1cf915dea2b77688bb2a93f36ba258a9eca62e7e9896f85dea455d dracut-squash-049-218.git20221019.el8_7.aarch64.rpm 2e43997fec1e908266bae7c0caadf4495210ec5f4db69770f868649eba313c59 dracut-tools-049-218.git20221019.el8_7.aarch64.rpm 501abfa427c24beccd4b47a070e5f256b46124392df3c68fdefb7b906c887326 RLSA-2023:0103 Moderate: expat security update Expat is a C library for parsing XML documents. Security Fix(es): * expat: use-after free caused by overeager destruction of a shared DTD in XML_ExternalEntityParserCreate (CVE-2022-43680) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 Moderate An update is available for expat. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list Expat is a C library for parsing XML documents. Security Fix(es): * expat: use-after free caused by overeager destruction of a shared DTD in XML_ExternalEntityParserCreate (CVE-2022-43680) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. rocky-linux-8-aarch64-baseos-rpms expat-2.2.5-10.el8_7.1.aarch64.rpm f24c6d74b9e1c422442b39248f049f82a874a2c0827806a992ceb30a8285cccd expat-devel-2.2.5-10.el8_7.1.aarch64.rpm 04efac0a114bff05c81e111b72aa5b334c57c2e843a53050cd68c3db9cdedc8c RLBA-2023:0105 util-linux bug fix and enhancement update The util-linux packages contain a large variety of low-level system utilities necessary for a Linux system to function. Among others, these include the libuuid and uuidd daemon. Bug Fix(es) and Enhancement(s): * Add --cont-clock feature for libuuid and uuidd [Rocky Linux-8] (BZ#2143252) Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for util-linux. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list The util-linux packages contain a large variety of low-level system utilities necessary for a Linux system to function. Among others, these include the libuuid and uuidd daemon. Bug Fix(es) and Enhancement(s): * Add --cont-clock feature for libuuid and uuidd [Rocky Linux-8] (BZ#2143252) rocky-linux-8-aarch64-baseos-rpms libblkid-2.32.1-39.el8_7.aarch64.rpm c64e2852190d2108d9aecf05528f719ca0d4573e89ca72b85e2c3899d1378088 libblkid-devel-2.32.1-39.el8_7.aarch64.rpm 68af95be57789e6928fc76420fbed2b1472a0a71f33f886f68d5174fb184a015 libfdisk-2.32.1-39.el8_7.aarch64.rpm 938bfb791a72a438c0453f5527e53474e918039da98679da9dfdb74d7277f8cc util-linux-2.32.1-39.el8_7.aarch64.rpm e2da688eaa8a0ac797811140e403914c2e0c2dbeed33fa902d3c64e496e23c8d libfdisk-devel-2.32.1-39.el8_7.aarch64.rpm 31699548d7ef164c9e620930d6acc014406839533d644588b5350bdbe82e4c41 libmount-2.32.1-39.el8_7.aarch64.rpm c4862acb1732d75f563f0776a8c2dcfeee0bc6b1bef3838423e3ebe663908040 libsmartcols-2.32.1-39.el8_7.aarch64.rpm 9e447bfe23b9499ff6156341f3c0d70602772ea2113c48016a3c9274b7a99c5a libsmartcols-devel-2.32.1-39.el8_7.aarch64.rpm 0174b45145386a284aaebfe738bcfd333c7993d34f91c4edbd205505375a3815 libuuid-2.32.1-39.el8_7.aarch64.rpm 8298c67523f164645b1262225f3db5aef46e368c4e19cf06676140092288fc02 libuuid-devel-2.32.1-39.el8_7.aarch64.rpm 48c70d4149b9c846a8342c613a9b694f6c41430deb90e4857c5f2d4aa23e234d util-linux-user-2.32.1-39.el8_7.aarch64.rpm 91a67144d1202403ac6e64e360735807e4e6cf665e533b3ece721c0051135ee0 uuidd-2.32.1-39.el8_7.aarch64.rpm fbcebec4fcb17436b3d6eedd1afb547c7296dc1c53a8f99c93c7da70dd1109f7 RLBA-2023:0106 gcc bug fix and enhancement update The gcc packages provide compilers for C, C++, Java, Fortran, Objective C, and Ada 95 GNU, as well as related support libraries. Bug Fix(es) and Enhancement(s): * The ">>" operator of std::normal_distribution does not work properly. (BZ#2144075) Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for gcc. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list The gcc packages provide compilers for C, C++, Java, Fortran, Objective C, and Ada 95 GNU, as well as related support libraries. Bug Fix(es) and Enhancement(s): * The ">>" operator of std::normal_distribution does not work properly. (BZ#2144075) rocky-linux-8-aarch64-baseos-rpms libasan-8.5.0-16.el8_7.aarch64.rpm 7bb117589dac16b12139c0908c1a6a453900e6a0059b2a6a5168b5ec2495d1cb libatomic-8.5.0-16.el8_7.aarch64.rpm cf094e446587955b88df77091ef516eb87ec3f873de6b4da09a617d26e4bc172 libatomic-static-8.5.0-16.el8_7.aarch64.rpm 81f150ddb7d43b42f47509844dce047bbb76708fb1e1052b29598b09a4814189 libgcc-8.5.0-16.el8_7.aarch64.rpm 69810345e10c44f8b02ae8ad793b49d61b7d0455487169cd5007406fc5f39645 libgfortran-8.5.0-16.el8_7.aarch64.rpm e1688bb37ecff5284693155697118f3eebc2baff31f34afad7e5e0fc16f88cf5 libgomp-8.5.0-16.el8_7.aarch64.rpm d5d3b463dc4f688779d1ca7ea2d15a23365a83a4983eb72adada32f7b5b097a5 libitm-8.5.0-16.el8_7.aarch64.rpm 6430f8a4f425f076dec54b2484afc8fc7d9e43cb5cf3a113ae48f5129340dc73 liblsan-8.5.0-16.el8_7.aarch64.rpm 12314a1be0ddb73c65fb13bf32943cbe6f65907f83f37e3dca9669d7c6e71619 libstdc++-8.5.0-16.el8_7.aarch64.rpm 8a2f84baee858119a090eb9496d915098502c4e1ee79f4544c14bac61233e49d libtsan-8.5.0-16.el8_7.aarch64.rpm d313d0fcc505e605bc0515ff4a9b8bab110b674e3be4169b4cb9965d0e5ed0dc libubsan-8.5.0-16.el8_7.aarch64.rpm 4fb73c9ceab30894956a5615d32de56f4e69ec40dc640a3eeb42fc51de3cc29f RLBA-2023:0109 systemd bug fix and enhancement update The systemd packages contain systemd, a system and service manager for Linux, compatible with the SysV and LSB init scripts. It provides aggressive parallelism capabilities, uses socket and D-Bus activation for starting services, offers on-demand starting of daemons, and keeps track of processes using Linux cgroups. In addition, it supports snapshotting and restoring of the system state, maintains mount and automount points, and implements an elaborate transactional dependency-based service control logic. It can also work as a drop-in replacement for sysvinit. Bug Fix(es) and Enhancement(s): * Ordering cycles at shutdown time causing delay in the shutdown (BZ#2143100) Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for systemd. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list The systemd packages contain systemd, a system and service manager for Linux, compatible with the SysV and LSB init scripts. It provides aggressive parallelism capabilities, uses socket and D-Bus activation for starting services, offers on-demand starting of daemons, and keeps track of processes using Linux cgroups. In addition, it supports snapshotting and restoring of the system state, maintains mount and automount points, and implements an elaborate transactional dependency-based service control logic. It can also work as a drop-in replacement for sysvinit. Bug Fix(es) and Enhancement(s): * Ordering cycles at shutdown time causing delay in the shutdown (BZ#2143100) rocky-linux-8-aarch64-baseos-rpms systemd-239-68.el8_7.2.aarch64.rpm fff9a78110a069c83a7c58735fd08d76eef04309fb22c1ef84b44e94fa72bfd2 systemd-container-239-68.el8_7.2.aarch64.rpm 93de7faa67575b08038f58572b218768c6f49ef08518b785deccae37d51385bf systemd-devel-239-68.el8_7.2.aarch64.rpm 6f12910303707a2791f5fb77e442453e48da263591743572ff6d676bb7a5e609 systemd-journal-remote-239-68.el8_7.2.aarch64.rpm f1faeb3ca1643720ea243300a896d2587fd4b64a32589bdf1ed86f96e5c6d16b systemd-libs-239-68.el8_7.2.aarch64.rpm b15bb17d57100447bc389f4bfe9c4f798dcdcf77f704f677e8cec4c93b56e3be systemd-pam-239-68.el8_7.2.aarch64.rpm 8eee3c99a4fd7acfccb3a970403977eeee8d2c41b70e641d6fb0340b48eb59b6 systemd-tests-239-68.el8_7.2.aarch64.rpm cffd4cde3fe68ef993eeef6d34c75d507a53d28208303239435abe351fa9d934 systemd-udev-239-68.el8_7.2.aarch64.rpm a6ebe69e8341e09091e97d321e37e304b160fe7bc2a41f0f02fadffa3154b185 RLSA-2023:0110 Moderate: sqlite security update SQLite is a C library that implements an SQL database engine. A large subset of SQL92 is supported. A complete database is stored in a single disk file. The API is designed for convenience and ease of use. Applications that link against SQLite can enjoy the power and flexibility of an SQL database without the administrative hassles of supporting a separate database server. Security Fix(es): * sqlite: an array-bounds overflow if billions of bytes are used in a string argument to a C API (CVE-2022-35737) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 Moderate An update is available for sqlite. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list SQLite is a C library that implements an SQL database engine. A large subset of SQL92 is supported. A complete database is stored in a single disk file. The API is designed for convenience and ease of use. Applications that link against SQLite can enjoy the power and flexibility of an SQL database without the administrative hassles of supporting a separate database server. Security Fix(es): * sqlite: an array-bounds overflow if billions of bytes are used in a string argument to a C API (CVE-2022-35737) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. rocky-linux-8-aarch64-baseos-rpms sqlite-3.26.0-17.el8_7.aarch64.rpm 3887f489a80e4aa991adcef79d2716e24bb0d1d8d704097f8b0d623669c4f12b sqlite-devel-3.26.0-17.el8_7.aarch64.rpm 5305ecce03b91a9f6749d98b0aec32a41d28d43a4866499cc173eadb641be932 sqlite-libs-3.26.0-17.el8_7.aarch64.rpm 06c57b9b8b9d0bcedb122776cf14fc36750733c5c2068f7c75adb925d04758fa RLBA-2023:0111 curl bug fix and enhancement update The curl packages provide the libcurl library and the curl utility for downloading files from servers using various protocols, including HTTP, FTP, and LDAP. Bug Fix(es) and Enhancement(s): * Fall back automatically to HTTP1.1 from HTTP2.0 when performing auth method. (BZ#2144493) Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for curl. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list The curl packages provide the libcurl library and the curl utility for downloading files from servers using various protocols, including HTTP, FTP, and LDAP. Bug Fix(es) and Enhancement(s): * Fall back automatically to HTTP1.1 from HTTP2.0 when performing auth method. (BZ#2144493) rocky-linux-8-aarch64-baseos-rpms curl-7.61.1-25.el8_7.1.aarch64.rpm 3b36c930e925f55247ee2f8f8cbbf29eb4e77db6540cd395be2a9fc6954acf32 libcurl-7.61.1-25.el8_7.1.aarch64.rpm b2bf4ebe6aafbfc813d5a20ecf1acfe70e9d706f3604e43c0adb9730ed0de985 libcurl-devel-7.61.1-25.el8_7.1.aarch64.rpm 141137fa2a6a818e48428dd45d29ce9f74ec5d15314c7c5c0e30d01f2db1c28a libcurl-minimal-7.61.1-25.el8_7.1.aarch64.rpm 50acd07115bdb8a9ffb58e10df534c0caea8b655c206623247a4c87ada9b8507 RLSA-2023:0116 Moderate: libtasn1 security update A library that provides Abstract Syntax Notation One (ASN.1, as specified by the X.680 ITU-T recommendation) parsing and structures management, and Distinguished Encoding Rules (DER, as per X.690) encoding and decoding functions. Security Fix(es): * libtasn1: Out-of-bound access in ETYPE_OK (CVE-2021-46848) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 Moderate An update is available for libtasn1. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list A library that provides Abstract Syntax Notation One (ASN.1, as specified by the X.680 ITU-T recommendation) parsing and structures management, and Distinguished Encoding Rules (DER, as per X.690) encoding and decoding functions. Security Fix(es): * libtasn1: Out-of-bound access in ETYPE_OK (CVE-2021-46848) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. rocky-linux-8-aarch64-baseos-rpms libtasn1-4.13-4.el8_7.aarch64.rpm 5b648be244c23d9ff819e0878ddce6e1b08a0b90563d8db614bfa8902a5dadd5 RLBA-2023:0120 authselect bug fix and enhancement update The authselect package configures authentication and identity sources from supported profiles. Bug Fix(es) and Enhancements: * Change the default password encryption algorithm back to sha512. (BZ#2151229) Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for authselect. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list The authselect package configures authentication and identity sources from supported profiles. Bug Fix(es) and Enhancements: * Change the default password encryption algorithm back to sha512. (BZ#2151229) rocky-linux-8-aarch64-baseos-rpms authselect-1.2.5-2.el8_7.aarch64.rpm b87be0458659a4c0639fc7b61e0b7d2df899ff4ad4b4d25ffcaed4918ebb1a80 authselect-libs-1.2.5-2.el8_7.aarch64.rpm 5e9b87ca44da9e4292f7251a6309a5798de786e10ee64887adf38abef8c4c0c8 RLBA-2023:0121 libqb bug fix and enhancement update The libqb packages provide a library with the primary purpose of providing high performance client/server reusable features, such as high performance logging, tracing, inter-process communication, and polling. Bug Fix(es) and Enhancement(s): * pacemaker command "crm_attribute" intermittently fails with error code 102 (BZ#2151300) Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for libqb. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list The libqb packages provide a library with the primary purpose of providing high performance client/server reusable features, such as high performance logging, tracing, inter-process communication, and polling. Bug Fix(es) and Enhancement(s): * pacemaker command "crm_attribute" intermittently fails with error code 102 (BZ#2151300) rocky-linux-8-aarch64-baseos-rpms libqb-1.0.3-13.el8_7.aarch64.rpm c2aaead054e587dbc69dd24ae166c004f20f5d4b8b8a177bcf8517e662bc537d libqb-devel-1.0.3-13.el8_7.aarch64.rpm f46d441721960fd16039bcf3e2442e8301a8f319225c2caafb506eec6b57ef9e RLBA-2023:0124 sssd bug fix and enhancement update The System Security Services Daemon (SSSD) service provides a set of daemons to manage access to remote directories and authentication mechanisms. It also provides the Name Service Switch (NSS) and the Pluggable Authentication Modules (PAM) interfaces toward the system, and a pluggable back-end system to connect to multiple different account sources. Bug Fix(es) and Enhancement(s): * Analyzer: Optimize and remove duplicate messages in verbose list (BZ#2139871) * SSSD: `sssctl analyze` command shouldn't require 'root' privileged (BZ#2142961) * UPN check cannot be disabled explicitly but requires krb5_validate = false' as a work-around (BZ#2148989) * authenticating against external IdP services okta (native app) with OAuth client secret failed (BZ#2152883) Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for sssd. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list The System Security Services Daemon (SSSD) service provides a set of daemons to manage access to remote directories and authentication mechanisms. It also provides the Name Service Switch (NSS) and the Pluggable Authentication Modules (PAM) interfaces toward the system, and a pluggable back-end system to connect to multiple different account sources. Bug Fix(es) and Enhancement(s): * Analyzer: Optimize and remove duplicate messages in verbose list (BZ#2139871) * SSSD: `sssctl analyze` command shouldn't require 'root' privileged (BZ#2142961) * UPN check cannot be disabled explicitly but requires krb5_validate = false' as a work-around (BZ#2148989) * authenticating against external IdP services okta (native app) with OAuth client secret failed (BZ#2152883) rocky-linux-8-aarch64-baseos-rpms libipa_hbac-2.7.3-4.el8_7.3.aarch64.rpm 7dabc262cc08afb60171c9b92ea30096f551db55a39b9a65cb5cfc6076c60877 libsss_autofs-2.7.3-4.el8_7.3.aarch64.rpm 16ce414b8e864d62505d47b2dbbc3d15040e2034fa66d855276f1bf5f288e0d8 libsss_certmap-2.7.3-4.el8_7.3.aarch64.rpm f1da81d814f7c67a4e7bff0783b9906ac88b37eab357a0a888df3cd0ed8e145f libsss_idmap-2.7.3-4.el8_7.3.aarch64.rpm a32e2ad1cc5487a8f324279ecdffe2cf52c018f8677a3fff8efcd8f5240c4546 libsss_nss_idmap-2.7.3-4.el8_7.3.aarch64.rpm a13c5c4e365d3ee4e7e0e69978dd16374b5274602f90c829401b5cff4384a436 libsss_simpleifp-2.7.3-4.el8_7.3.aarch64.rpm 858a71ca604a28237f6ec31d94d26175cdebe69d90e5a1a21aba85431dc70446 libsss_sudo-2.7.3-4.el8_7.3.aarch64.rpm bf7df035b7a78f7383eeae21c6b6fa8f75d477bfc362465097a2ccd3a553c2b3 python3-libipa_hbac-2.7.3-4.el8_7.3.aarch64.rpm 4e4cebe951fcf35222ed7835d33b9dd2117fa1d7c0b19c7a59cd86e1c8354d93 python3-libsss_nss_idmap-2.7.3-4.el8_7.3.aarch64.rpm 0d5d758524854df329cca7dac78b1ad617fb808e5e485988cda2c6b2c29ca00b python3-sss-2.7.3-4.el8_7.3.aarch64.rpm 4033a1c11e8e7c53d9b396008e2136c2981353cfb0d836bee9a61b90b6acf7b9 python3-sss-murmur-2.7.3-4.el8_7.3.aarch64.rpm 7a6dac950aab9af103943d12ace1e541d2d0d7012933d6856e586ef0245c753b sssd-2.7.3-4.el8_7.3.aarch64.rpm bc66608ce5c266858eaff4948e6140c7c464b6b50e097d645383227861dea318 sssd-ad-2.7.3-4.el8_7.3.aarch64.rpm f6c1a5786e2f173c176b61ea1270173a6cd7fb1c80930b33597ae2c75891efad sssd-client-2.7.3-4.el8_7.3.aarch64.rpm 6307f60b1d2dc2cf01c1ea747c4eb5508f3e7d8e102a75e92f6a4a9baded8307 sssd-common-2.7.3-4.el8_7.3.aarch64.rpm 159bf4fb7bca589ecf093898345c3837690143d4e8edad5e25915bb49cac9b68 sssd-common-pac-2.7.3-4.el8_7.3.aarch64.rpm 16a46dd7194e3f285bfa5b57ef3fc88a4f11c8a1a844694ee6b1faea4326f3f2 sssd-dbus-2.7.3-4.el8_7.3.aarch64.rpm 13e27f35733a71a97283e9d24b8acf01ea8ff19efeb16c58bb2934f22bbc1902 sssd-ipa-2.7.3-4.el8_7.3.aarch64.rpm d2966b63f55efe752c625b4ca0cc344be30b1b83bfc37a69996e85f9f16b6dca sssd-kcm-2.7.3-4.el8_7.3.aarch64.rpm 5f68298e608d8fe536bd76ef738d78f4691a6f73da4a399e9f2c7354cf139cf0 sssd-krb5-2.7.3-4.el8_7.3.aarch64.rpm c366c7d78729154a05b2c01a67bd7dbe7b5d1cdb012e46eef012bf30de9fc028 sssd-krb5-common-2.7.3-4.el8_7.3.aarch64.rpm a7a152f20adfd3520151e27aaf409d8a083ee3e2caf677647da66afcc3604934 sssd-ldap-2.7.3-4.el8_7.3.aarch64.rpm 01434bae2c68af104962ff129ba83557492526a7690738127c9203ee61219e4b sssd-nfs-idmap-2.7.3-4.el8_7.3.aarch64.rpm 9d4b207c51c5bf6c44874837f7ff2121abfff1f24bfe8ceafa839fc3fa96d3e1 sssd-polkit-rules-2.7.3-4.el8_7.3.aarch64.rpm ba8d53e20c0ba9cdb668df0b522197ce95f71dd7a62ae56238f573e126e9ddba sssd-proxy-2.7.3-4.el8_7.3.aarch64.rpm 4a4ed6066660bdce3a04493788167b70de06064612d8cbc8a6b0b80e6f415cce sssd-tools-2.7.3-4.el8_7.3.aarch64.rpm 411ef474850a6250fa3f1d6333c9967f71077fd959cb64872acdce2a1b56ea5c sssd-winbind-idmap-2.7.3-4.el8_7.3.aarch64.rpm eda0f7ae463df47c5831aa6f1805504eba7a302d578d3ce565c3f769b10ae1bb RLSA-2023:0173 Moderate: libxml2 security update The libxml2 library is a development toolbox providing the implementation of various XML standards. Security Fix(es): * libxml2: integer overflows with XML_PARSE_HUGE (CVE-2022-40303) * libxml2: dict corruption caused by entity reference cycles (CVE-2022-40304) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 Moderate An update is available for libxml2. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list The libxml2 library is a development toolbox providing the implementation of various XML standards. Security Fix(es): * libxml2: integer overflows with XML_PARSE_HUGE (CVE-2022-40303) * libxml2: dict corruption caused by entity reference cycles (CVE-2022-40304) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. rocky-linux-8-aarch64-baseos-rpms libxml2-2.9.7-15.el8_7.1.aarch64.rpm 8082aca701eace0d912c01aac15728280e0f2876aa1038d93e235bfd34545d99 python3-libxml2-2.9.7-15.el8_7.1.aarch64.rpm a74dc2f40eec968c29cb4cdfa2886138c881a46a1e441c03183d1a4dcfb2f31d RLSA-2023:0284 Important: sudo security update The sudo packages contain the sudo utility which allows system administrators to provide certain users with the permission to execute privileged commands, which are used for system management purposes, without having to log in as root. Security Fix(es): * sudo: arbitrary file write with privileges of the RunAs user (CVE-2023-22809) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 Important An update is available for sudo. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list The sudo packages contain the sudo utility which allows system administrators to provide certain users with the permission to execute privileged commands, which are used for system management purposes, without having to log in as root. Security Fix(es): * sudo: arbitrary file write with privileges of the RunAs user (CVE-2023-22809) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. rocky-linux-8-aarch64-baseos-rpms sudo-1.8.29-8.el8_7.1.aarch64.rpm 2e036b6b7181b3837fae5ed883f13df10df2ebf32170fc3fbc85d68e0a994677 RLBA-2020:4435 abrt bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.3 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for gnome-abrt, abrt. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.3 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms libreport-filesystem-2.9.5-15.el8.rocky.6.3.aarch64.rpm 4695adc6d30e666d097155de8a950ddee663626f3486b1fc6e00c7f5e7f12117 RLBA-2021:4402 opencsd bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for opencsd. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.5 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms opencsd-1.0.0-4.el8.aarch64.rpm 0eab55e32ce2f92bf7d376f9097e89a2ab12d70d60b3fd3111d85a6ff4f37143 RLBA-2020:4499 NetworkManager bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.3 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for network-manager-applet. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.3 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms jimtcl-0.77-6.el8.1.aarch64.rpm 87d714e47cc7fa5195d68974ad1027f044ea098f0c6210d9634653044272a833 RLBA-2022:2000 glib2 bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for glib2. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms glib2-2.56.4-158.el8_6.1.aarch64.rpm 5183edb75014cfb1b3d341b12c19692d7c331bbff17cf767b6d4cb99d92c0830 glib2-devel-2.56.4-158.el8_6.1.aarch64.rpm ea8ece579861a004a9d3ef7edcc83e33b242d1ea666c30f8ee0c481f2f87e8bf glib2-fam-2.56.4-158.el8_6.1.aarch64.rpm 83f3317938248342e2ef36c029f0d1b9e9f52b86c8c645d5b38b95c4c5fcaf88 glib2-tests-2.56.4-158.el8_6.1.aarch64.rpm 0e82c10313b40160ec9d95e8b1ce9f3570de15fb7c8ad7d377947c1c8dd0b9bd RLBA-2019:1957 python3 bug fix update Bug Fix(es): * urlsplit doesn't accept a NFKD hostname with a port number (BZ#1714756) Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for python3. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list Bug Fix(es): * urlsplit doesn't accept a NFKD hostname with a port number (BZ#1714756) rocky-linux-8-aarch64-baseos-rpms platform-python-3.6.8-48.el8_7.rocky.0.aarch64.rpm 2cbdc696809c998a98df3588174a4867bbff5dab2aee3ed2f04582adfcf3bf58 python3-libs-3.6.8-48.el8_7.rocky.0.aarch64.rpm 0911260fb7e4c19d0f7950da395e71ce080aa134bbe2eb92161817f75e604ee2 python3-test-3.6.8-48.el8_7.rocky.0.aarch64.rpm 68e6b32bb1f0cbbadfeb68b215ac93969b8bd724869e6518484bf69649fd62ca RLBA-2019:3628 xfsprogs bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.1 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for xfsprogs. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.1 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms xfsprogs-5.0.0-10.el8.aarch64.rpm dab31500b020c6b5caf69b5d6b8fdff9637e4cc84ce5a13464c38a12cadc55c4 xfsprogs-devel-5.0.0-10.el8.aarch64.rpm d2a76cb9bde3a18aad91add45c3411e30954ff49475b0046540d952d81ddcd08 RLEA-2020:4552 atlas bug fix and enhancement update For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.3 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for atlas. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Enterprise Software Foundation Enterprise Linux 8.3 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms atlas-3.10.3-8.el8.1.aarch64.rpm 3281c1ad7e4b864147e913413f4e37389e5bd9100803f9049b0c2d9f9062d223 atlas-devel-3.10.3-8.el8.1.aarch64.rpm ca99f99c3a72acd833e7e944073102a5b644ea0a84a39d5435e49297529779c6 RLBA-2022:7726 grub2 bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for grub2. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms grub2-efi-aa64-2.02-142.el8.rocky.0.2.aarch64.rpm 44921fce9c4c369c8e24c35c668a99a642d4bf43632b287e0a61b72bc17a9a97 grub2-efi-aa64-cdboot-2.02-142.el8.rocky.0.2.aarch64.rpm c4fd913a470902d33a14e93c6b9b993066486fec80878628dd06b6b63d69f215 grub2-tools-2.02-142.el8.rocky.0.2.aarch64.rpm bfde4af1e96ce6dc24979c4dd2dffb40a4ac37444dc802a30305b0cdc21153c5 grub2-tools-extra-2.02-142.el8.rocky.0.2.aarch64.rpm f3eb57e7ba3a08f6d7a2ec80bbd09b2a38d1eb1f5903564990184cee441d8cfc grub2-tools-minimal-2.02-142.el8.rocky.0.2.aarch64.rpm 77c6568b7ab29c608f88d10e8123377c10f8deb19bf44543de42a53f77ec6f20 RLBA-2022:7739 sssd bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for sssd. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms libipa_hbac-2.7.3-4.el8_7.1.aarch64.rpm f6ca2b24f0094be6e8d8f1bb1400989c7bb09ceada8343d4e81294bc404a8278 libsss_autofs-2.7.3-4.el8_7.1.aarch64.rpm 8988f55f5f17c81049b97f280d8745f88491bf9a82e83465028c90ca89125d15 libsss_certmap-2.7.3-4.el8_7.1.aarch64.rpm a9454aaa161abdac527c120ddc2e4c08a80407004f4eb7697afff9b7f1b3b452 libsss_idmap-2.7.3-4.el8_7.1.aarch64.rpm a1ee51f3874cf52d1c9d5bc4d6b17afd98bfc779220d856a483876f543cdd41f libsss_nss_idmap-2.7.3-4.el8_7.1.aarch64.rpm f5f688cdbc09bfb23fb13b086113df23d3977676ad1c6af2828c03040cbab3d5 libsss_simpleifp-2.7.3-4.el8_7.1.aarch64.rpm ee7a2cf5e9f157944b7c6f710f4b3555ddba1b164aa2cba35a49a0be992a0a0c libsss_sudo-2.7.3-4.el8_7.1.aarch64.rpm 38b1770a78bbfcc1e3dceb89b0c84c1e60d339f235189881bd46214749c03a6d python3-libipa_hbac-2.7.3-4.el8_7.1.aarch64.rpm 0256a0d370205f1342febe2316bc8374f106d55336a34ee22a71f9b91d91486a python3-libsss_nss_idmap-2.7.3-4.el8_7.1.aarch64.rpm 6d5ca0b568fee971d5ba0e228e00f710bd4f02480b71503c7989856707e9b40d python3-sss-2.7.3-4.el8_7.1.aarch64.rpm b2075424a1ae98c819326d6ca212bafa6d4de2fb0071d8f6aade9a52917fe04d python3-sss-murmur-2.7.3-4.el8_7.1.aarch64.rpm e4589d466fe5b91f31af1133764d188b9ac7dec579e896efbeedc81f4f160055 sssd-2.7.3-4.el8_7.1.aarch64.rpm 53b9778e7f74b30592a792ee307223c152ae8b54a781983e43df0396b755a24d sssd-ad-2.7.3-4.el8_7.1.aarch64.rpm e1f9df087cb16869a4802174b5bcc8e4a1d078e1f1705c119fd3e96bbbba0d09 sssd-client-2.7.3-4.el8_7.1.aarch64.rpm 41549ade31322026fa9727f97616ce6d6d97060e22d7aa6313a2f0ccfb574de5 sssd-common-2.7.3-4.el8_7.1.aarch64.rpm 901e447910ccd0a2de3b87b6c214f0d59e90af84a9f509c05d2d2c1e2846d50d sssd-common-pac-2.7.3-4.el8_7.1.aarch64.rpm 3ae9235f551fa5b3a60f3402bc45adbfd0cf25f3446b4b8b1a773c2414fb20db sssd-dbus-2.7.3-4.el8_7.1.aarch64.rpm 6fdf3e565cc091c308b5e9c93ead29304999c2daa293eafbe3191e770b30568c sssd-ipa-2.7.3-4.el8_7.1.aarch64.rpm 97c0610f3d7b7ba7ecfa9f9f235abac8c1dcf207ba14d42b242083c2deb0c3c7 sssd-kcm-2.7.3-4.el8_7.1.aarch64.rpm f14e314cdf3c8219686dcb63fecb701fb908243c3f11f39b17233a55cb2b8877 sssd-krb5-2.7.3-4.el8_7.1.aarch64.rpm 183067a7111c75c935f6f1a3169ad498b3f56cad2b34f8fde63e06c67d5c0743 sssd-krb5-common-2.7.3-4.el8_7.1.aarch64.rpm a0b2344f398c259b58a689c41a05090e0f6fd0c441228eaca08bc03ba967f6c0 sssd-ldap-2.7.3-4.el8_7.1.aarch64.rpm 71d6b994645253eaba4e6566a2fb3938dd072d2a3d3b250c58b27b56ce5cf368 sssd-nfs-idmap-2.7.3-4.el8_7.1.aarch64.rpm 3122023820615f39f71aa8cab46fb0d366877c9a8b2674c54847b0ccf024a710 sssd-polkit-rules-2.7.3-4.el8_7.1.aarch64.rpm 4e39328478a67acc3d3df1ed01729c8ad3f643866057cd43e72657dc6cc157f5 sssd-proxy-2.7.3-4.el8_7.1.aarch64.rpm 97a736d8a1b73b1b5d25d357256e787a227177a91aafdf28eaed2a02a1b1ae0a sssd-tools-2.7.3-4.el8_7.1.aarch64.rpm 08edbdecee4de860ae28e94fd11903411d226c5512849ec5dfebdb523fb68fea sssd-winbind-idmap-2.7.3-4.el8_7.1.aarch64.rpm e555c731c11ad6807d8c413a4323d7fa8dde9b7d85f9241aaffeb9083887f91d RLBA-2022:7766 fwupd bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for fwupd. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms fwupd-1.7.8-1.el8.rocky.0.3.aarch64.rpm a976f5167496b2def93a551777946c778d8571dd4a4202e5762b7617ffd4db98 RLBA-2022:7784 chrony bug fix and enhancement update For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for chrony. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list For detailed information on changes in this release, see the Rocky Linux 8.7 Release Notes linked from the References section. rocky-linux-8-aarch64-baseos-rpms chrony-4.2-1.el8.rocky.0.1.aarch64.rpm bb21f910d5368e3394b5f5bd81676c4d8026a2a757833ba22cad90f79ab25c7a RLBA-2022:7832 python3 bug fix update Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems. This package provides the "python3" executable: the reference interpreter for the Python language, version 3. The majority of its standard library is provided in the python3-libs package, which should be installed automatically along with python3. The remaining parts of the Python standard library are broken out into the python3-tkinter and python3-test packages. Bug Fix(es) and Enhancement(s): * python3: Bump the release of python3 to fix the upgrade path. (BZ#2136436) Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 None An update is available for python3. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems. This package provides the "python3" executable: the reference interpreter for the Python language, version 3. The majority of its standard library is provided in the python3-libs package, which should be installed automatically along with python3. The remaining parts of the Python standard library are broken out into the python3-tkinter and python3-test packages. Bug Fix(es) and Enhancement(s): * python3: Bump the release of python3 to fix the upgrade path. (BZ#2136436) rocky-linux-8-aarch64-baseos-rpms platform-python-3.6.8-48.el8_7.rocky.0.aarch64.rpm 2cbdc696809c998a98df3588174a4867bbff5dab2aee3ed2f04582adfcf3bf58 python3-libs-3.6.8-48.el8_7.rocky.0.aarch64.rpm 0911260fb7e4c19d0f7950da395e71ce080aa134bbe2eb92161817f75e604ee2 python3-test-3.6.8-48.el8_7.rocky.0.aarch64.rpm 68e6b32bb1f0cbbadfeb68b215ac93969b8bd724869e6518484bf69649fd62ca RLSA-2023:0049 Moderate: grub2 security update The grub2 packages provide version 2 of the Grand Unified Boot Loader (GRUB), a highly configurable and customizable boot loader with modular architecture. The packages support a variety of kernel formats, file systems, computer architectures, and hardware devices. Security Fix(es): * grub2: Buffer overflow in grub_font_construct_glyph() can lead to out-of-bound write and possible secure boot bypass (CVE-2022-2601) * grub2: Heap based out-of-bounds write when redering certain unicode sequences (CVE-2022-3775) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Copyright 2023 Rocky Enterprise Software Foundation Rocky Linux 8 1 Moderate An update is available for grub2. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list The grub2 packages provide version 2 of the Grand Unified Boot Loader (GRUB), a highly configurable and customizable boot loader with modular architecture. The packages support a variety of kernel formats, file systems, computer architectures, and hardware devices. Security Fix(es): * grub2: Buffer overflow in grub_font_construct_glyph() can lead to out-of-bound write and possible secure boot bypass (CVE-2022-2601) * grub2: Heap based out-of-bounds write when redering certain unicode sequences (CVE-2022-3775) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. rocky-linux-8-aarch64-baseos-rpms grub2-efi-aa64-2.02-142.el8_7.1.rocky.0.2.aarch64.rpm e4527f13d0a56e4aa6e230a158103053e16e9288ca571eea25edb7c246bad49e grub2-efi-aa64-cdboot-2.02-142.el8_7.1.rocky.0.2.aarch64.rpm 12902e75bf00ddc063d5f3526bdbb99acab44515b608fa9c9d5e164af8316986 grub2-tools-2.02-142.el8_7.1.rocky.0.2.aarch64.rpm b352f0f39cfbe35b244853379699821a0b99da89e1e657cf044f260d506b0625 grub2-tools-extra-2.02-142.el8_7.1.rocky.0.2.aarch64.rpm 0238d279a49dba959f21d2d9c7e6d630a753bfe31a61a0f967291e45658d41b2 grub2-tools-minimal-2.02-142.el8_7.1.rocky.0.2.aarch64.rpm 09951dd97b206d390b931fbeee0325bc5bb30db539fe0e9cd3ea5df809ede60f