AlmaLinux 2626 Published by Philipp Esselbach 0

AlmaLinux released a batch of security errata for versions 8, 9, and 10. These updates patch vulnerabilities across widely used software such as the Linux kernel, vim, FreeRDP, Grafana, and the Xwayland display server. Administrators should apply the fixes immediately to resolve issues ranging from arbitrary code execution and privilege escalation to denial of service and memory corruption. Complete patch details and installation commands are available on the official AlmaLinux errata pages for each affected package.

ALSA-2026:54481: python-idna security update (Moderate)
ALSA-2026:28231: opencryptoki security update (Moderate)
ALSA-2026:53330: kernel security, bug fix, and enhancement update (Important)
ALSA-2026:25216: valkey security update (Important)
ALSA-2026:40833: pacemaker security update (Important)
ALSA-2026:28582: keylime security update (Moderate)
ALSA-2026:25999: yggdrasil-worker-package-manager security update (Moderate)
ALSA-2026:26566: xorg-x11-server-Xwayland security, bug fix, and enhancement update (Important)
ALSA-2026:53451: gstreamer1-plugins-good security update (Moderate)
ALSA-2026:49526: osbuild-composer security update (Important)
ALSA-2026:54178: grafana security, bug fix, and enhancement update (Moderate)
ALSA-2026:39297: edk2 security, bug fix, and enhancement update (Moderate)
ALSA-2026:38489: xorg-x11-server-Xwayland security update (Important)
ALSA-2026:54210: dhcpcd security update (Moderate)
ALSA-2026:38509: vim security update (Important)
ALSA-2026:53435: udisks2 security update (Important)
ALSA-2026:54268: python3.9 security update (Important)
ALSA-2026:54484: python-idna security update (Moderate)
ALSA-2026:53329: kernel security, bug fix, and enhancement update (Important)
ALSA-2026:38511: vim security update (Important)
ALSA-2026:25051: libyang security update (Important)
ALSA-2026:38510: vim security update (Important)
ALSA-2026:54485: freerdp security update (Important)
ALSA-2026:54247: kernel-rt security update (Moderate)

AlmaLinux 2626 Published by Philipp Esselbach 0

AlmaLinux issued a batch of security advisories, affecting versions 8, 9, and 10 of its operating system. The updates address vulnerabilities across essential components including the Linux kernel, PostgreSQL, Firefox, iSCSI utilities, and the automatic bug reporting tool. Remediated flaws span denial of service attacks, arbitrary code execution, privilege escalation, and memory corruption issues tied to dozens of tracked CVE identifiers. Organizations running these versions must install the updated packages immediately to prevent unauthorized access and service interruptions.

ALSA-2026:53365: fence-agents security update (Important)
ALSA-2026:49607: frr10 security, bug fix, and enhancement update (Important)
ALSA-2026:53844: iscsi-initiator-utils security, bug fix, and enhancement update (Important)
ALSA-2026:53847: isns-utils security update (Important)
ALSA-2026:47104: firefox security update (Important)
ALSA-2026:52395: postgresql security update (Important)
ALSA-2026:52772: perl-DBI:1.641 security update (Important)
ALSA-2026:53848: isns-utils security update (Important)
ALSA-2026:53452: gstreamer1-plugins-good security update (Moderate)
ALSA-2026:53363: fence-agents security update (Important)
ALSA-2026:53364: resource-agents security update (Important)
ALSA-2026:52396: postgresql:12 security update (Important)
ALSA-2026:52765: kernel security update (Moderate)
ALSA-2026:52761: kernel-rt security update (Moderate)
ALSA-2026:53845: iscsi-initiator-utils security, bug fix, and enhancement update (Important)
ALSA-2026:53846: isns-utils security update (Important)
ALSA-2026:27742: postgresql18 security update (Important)
ALSA-2026:24348: postgresql-jdbc security update (Important)
ALSA-2026:51295: kernel security, bug fix, and enhancement update (Moderate)
ALSA-2026:52841: nodejs-nodemon security update (Important)
ALSA-2026:52675: libarchive security update (Moderate)
ALSA-2026:38490: xorg-x11-server-Xwayland security update (Important)
ALSA-2026:38497: gegl04 security update (Important)
ALSA-2026:49838: osbuild-composer security, bug fix, and enhancement update (Important)
ALSA-2026:54272: abrt security update (Important)
ALSA-2026:54246: kernel security update (Moderate)
ALSA-2026:54290: python-idna security update (Moderate)

AlmaLinux 2626 Published by Philipp Esselbach 0

AlmaLinux has issued security errata for versions 9 and 10 addressing vulnerabilities across libarchive, gpsd, the kernel, perl-DBI, golang, and tomcat9. The patches resolve command injection flaws in gpsd packages and a double-free error in libarchive used for RAR5 decompression, alongside fixes for XFS data corruption and cryptographic state handling within the kernel. Golang updates advance AlmaLinux 10 systems to version 1.26.5, remediating privilege escalation risks in Punycode label processing and directory traversal via symlinks. Tomcat 9 installations gain protections against information disclosure caused by a padding oracle flaw in EncryptInterceptor and bypassed encryption of sensitive data.

ALSA-2026:52674: libarchive security update (Moderate)
ALSA-2026:51153: gpsd-minimal security update (Important)
ALSA-2026:51075: gpsd security update (Important)
ALSA-2026:39494: kernel security, bug fix, and enhancement update (Important)
ALSA-2026:45114: kernel security update (Important)
ALSA-2026:38513: perl-DBI security update (Important)
ALSA-2026:37436: golang security, bug fix, and enhancement update (Important)
ALSA-2026:36790: tomcat9 security, bug fix, and enhancement update (Important)

AlmaLinux 2626 Published by Philipp Esselbach 0

AlmaLinux 2626 Published by Philipp Esselbach 0

AlmaLinux issued a batch of security errata, targeting versions 8, 9, and 10 of the operating system. The updates patch critical flaws across the Linux kernel, networking utilities like FRRouting and libldns, and multimedia components including GStreamer and PipeWire. System administrators running Node.js 22 and 24, OpenJDK 25, and image editing software like GIMP must apply these patches to block remote code execution and buffer overflow attacks. Firefox and Thunderbird also receive major fixes for sandbox escapes, memory safety bugs, and same-origin policy bypasses across both the browser and email client engines.

ALSA-2026:47117: libgcrypt security update (Moderate)
ALSA-2026:47126: resource-agents security update (Moderate)
ALSA-2026:47177: yelp security update (Important)
ALSA-2026:47183: compat-libtiff3 security update (Important)
ALSA-2026:50978: kernel security, bug fix, and enhancement update (Important)
ALSA-2026:50979: kernel-rt security, bug fix, and enhancement update (Important)
ALSA-2026:49870: kernel security, bug fix, and enhancement update (Low)
ALSA-2026:47058: nodejs:22 security update (Important)
ALSA-2026:50141: sg3_utils security, bug fix, and enhancement update (Important)
ALSA-2026:49527: frr security, bug fix, and enhancement update (Important)
ALSA-2026:49212: kernel security update (Important)
ALSA-2026:49667: p11-kit security update (Moderate)
ALSA-2026:50108: ldns security update (Important)
ALSA-2026:47178: yelp security update (Important)
ALSA-2026:47082: pipewire security update (Important)
ALSA-2026:49921: thunderbird security update (Important)
ALSA-2026:47084: libXfont2 security update (Important)
ALSA-2026:50317: fence-agents security update (Important)
ALSA-2026:42899: java-25-openjdk security update (Important)
ALSA-2026:47057: nodejs:24 security update (Important)
ALSA-2026:47179: gstreamer1-plugins-bad-free security update (Important)
ALSA-2026:50817: gimp security update (Important)
ALSA-2026:49621: thunderbird security update (Important)
ALSA-2026:49211: kernel security, bug fix, and enhancement update (Important)
ALSA-2026:42899: java-25-openjdk security update (Important)
ALSA-2026:47101: firefox security update (Important)
ALSA-2026:49836: ldns security update (Important)
ALSA-2026:50747: freerdp security update (Important)
ALSA-2026:50142: sg3_utils security, bug fix, and enhancement update (Important)
ALSA-2026:50144: libgcrypt security update (Moderate)

AlmaLinux 2626 Published by Philipp Esselbach 0

AlmaLinux issued eight security errata covering versions 8 through 10 of its operating system. The patches resolve critical flaws in the Linux kernel, Thunderbird email client, GStreamer media framework, and several Perl modules including DBI and Archive::Tar. Attackers could exploit buffer overflows and use-after-free conditions to execute arbitrary code or bypass sandbox restrictions on affected systems.

ALSA-2026:49668: p11-kit security update (Moderate)
ALSA-2026:49508: gstreamer1-plugins-good security update (Important)
ALSA-2026:49612: perl-DBI security update (Important)
ALSA-2026:49523: perl-Archive-Tar security update (Important)
ALSA-2026:49927: fence-agents security update (Moderate)
ALSA-2026:49857: kernel security, bug fix, and enhancement update (Moderate)
ALSA-2026:49851: kernel-rt security, bug fix, and enhancement update (Moderate)
ALSA-2026:49922: thunderbird security update (Important)

AlmaLinux 2626 Published by Philipp Esselbach 0

AlmaLinux released a batch of important security errata, targeting system versions 8, 9, and 10. The patches address critical vulnerabilities across six key packages, including vim, perl-DBI, perl-Archive-Tar, ldns, FRRouting, and mingw-glib2. Flaws in these components range from arbitrary code execution via malicious docstrings and crafted tar headers to heap corruption and DNS poisoning attacks caused by insufficient query-response matching.

ALSA-2026:48650: vim security update (Important)
ALSA-2026:49514: perl-DBI security update (Important)
ALSA-2026:49525: perl-Archive-Tar security update (Important)
ALSA-2026:49520: ldns security update (Important)
ALSA-2026:49524: perl-Archive-Tar security update (Important)
ALSA-2026:49511: frr security update (Important)
ALSA-2026:49512: mingw-glib2 security update (Important)

AlmaLinux 2626 Published by Philipp Esselbach 0

AlmaLinux released a batch of important security errata for versions 8 and 10, targeting core system components and developer frameworks. The kernel packages on both releases received patches for networking memory management flaws, double-free errors, and potential use-after-free vulnerabilities across multiple subsystems. .NET frameworks 8 through 10 received over a dozen patches addressing remote code execution attempts, privilege escalation flaws, and denial of service conditions linked to authentication bypasses and unsafe data deserialization. Additional advisories hardened the Unbound DNS resolver against cache poisoning and resource exhaustion attacks, patched Python Pillow for memory disclosure risks, and fixed stack overflow bugs in coreutils and perl archives.

ALSA-2026:49214: kernel security update (Important)
ALSA-2026:49213: kernel-rt security update (Important)
ALSA-2026:37282: unbound security update (Important)
ALSA-2026:41899: .NET 9.0 security, bug fix, and enhancement update (Important)
ALSA-2026:47736: fence-agents security update (Important)
ALSA-2026:41901: .NET 8.0 security, bug fix, and enhancement update (Important)
ALSA-2026:41900: .NET 10.0 security, bug fix, and enhancement update (Important)
ALSA-2026:48225: perl:5.32 security update (Important)
ALBA-2026:47115: coreutils bug fix and enhancement update (None)
ALSA-2026:48021: python-pillow security update (Important)
ALSA-2026:48790: osbuild-composer security update (Important)
ALSA-2026:47017: kernel security, bug fix, and enhancement update (Important)

AlmaLinux 2626 Published by Philipp Esselbach 0

AlmaLinux released errata ALSA-2026:47040 for version 9 to patch five kernel vulnerabilities affecting network security, memory management, and storage subsystems. The update resolves specific issues tied to CVE-2025-39797 through CVE-2026-64017 while fixing a general protection fault that triggered during NFS state revocation operations. Deployment also enables Pretimeout Watchdog Panic functionality for x86 processors, which streamlines crash reporting and system recovery procedures.

ALSA-2026:47040: kernel security, bug fix, and enhancement update (Important)

AlmaLinux 2626 Published by Philipp Esselbach 0

AlmaLinux distributed a batch of security errata, targeting both the AlmaLinux 9 and AlmaLinux 10 distributions. The patches address dozens of known vulnerabilities across core system components including unbound DNS resolver, .NET versions 8 through 10, the Linux kernel, OpenSSH client and server, Vim editor, PipeWire, fence-agents, and qemu-kvm. Attack vectors covered by these fixes span memory corruption flaws, denial-of-service conditions, privilege escalation paths, arbitrary code execution risks via crafted files, and sandbox escape techniques in multimedia services.

ALSA-2026:36320: unbound security update (Important)
ALSA-2026:41897: .NET 10.0 security, bug fix, and enhancement update (Important)
ALSA-2026:41895: .NET 9.0 security, bug fix, and enhancement update (Important)
ALSA-2026:45192: kernel security, bug fix, and enhancement update (Important)
ALSA-2026:36777: unbound security update (Important)
ALSA-2026:41898: .NET 10.0 security, bug fix, and enhancement update (Important)
ALSA-2026:39311: qemu-kvm security update (Low)
ALSA-2026:41896: .NET 9.0 security, bug fix, and enhancement update (Important)
ALSA-2026:41894: .NET 8.0 security, bug fix, and enhancement update (Important)
ALSA-2026:47756: openssh security update (Important)
ALSA-2026:41893: .NET 8.0 security, bug fix, and enhancement update (Important)
ALSA-2026:47982: vim security update (Important)
ALSA-2026:48585: fence-agents security update (Important)
ALSA-2026:47083: pipewire security update (Important)
ALSA-2026:45114: kernel security update (Important)

AlmaLinux 2626 Published by Philipp Esselbach 0

AlmaLinux issued five security errata addressing critical vulnerabilities in Node.js versions 22 and 24, OpenSSH clients, and Vim across its Linux distributions. The advisories resolve denial-of-service flaws in the brace-expansion and tar libraries that impact Node.js packages, while a distinct Vim patch targets arbitrary code execution risks arising from malicious Python docstrings and crafted tags files used during omni-completion. OpenSSH updates mitigate severe threats including remote man-in-the-middle attacks via X11 forwarding, client-side denials of service triggered by double-free errors in DH-GEX validation, heap out-of-bounds reads in GSSAPI cleanup, use-after-free conditions during host key re-exchange, and scp file misplacement issues.

ALSA-2026:48034: nodejs24 security update (Important)
ALSA-2026:48032: nodejs-nodemon security update (Important)
ALSA-2026:48033: nodejs22 security update (Important)
ALSA-2026:47757: openssh security update (Important)
ALSA-2026:48703: vim security update (Important)
ALSA-2026:47755: openssh security update (Moderate)

AlmaLinux 2626 Published by Philipp Esselbach 0

AlmaLinux released a batch of important security errata, targeting multiple core libraries across both the AlmaLinux 8 and 10 operating systems. The updates address memory corruption flaws in gstreamer1-plugins-bad-free, libXfont2, rest, nodejs versions 22 and 24, and libtiff that could allow remote code execution or cause system crashes. Administrators will also find patches for denial-of-service vulnerabilities in the Node.js tar and brace-expansion modules alongside a weak random number generation issue inside the librest PKCE implementation.

ALSA-2026:47180: gstreamer1-plugins-bad-free security update (Important)
ALSA-2026:47079: libXfont2 security update (Important)
ALSA-2026:47085: rest security update (Important)
ALSA-2026:47059: nodejs:22 security update (Important)
ALSA-2026:47060: nodejs:24 security update (Important)
ALSA-2026:47184: libtiff security update (Important)
ALSA-2026:47731: gstreamer1-plugins-bad-free security update (Important)
ALSA-2026:47103: libXfont2 security update (Important)

AlmaLinux 2626 Published by Philipp Esselbach 0

AlmaLinux released security updates for packages including sssd, kernel, kernel-rt, dovecot, go-fdo-server, and go-fdo-client across AlmaLinux versions 8 and 10. The sssd update addresses privilege escalation via sudo LDAP provider searches (CVE-2026-14474) and Kerberos authentication bypass through GPO cache path traversal (CVE-2026-14476), while also resolving bugs in the AD UPN override tool. Kernel and kernel-rt packages fix a use-after-free vulnerability in ipv6 ICMPv6 handling (CVE-2026-53006), and dovecot resolves a denial of service issue caused by excessive IMAP bracing (CVE-2026-42006). The go-fdo-server and go-fdo-client updates for AlmaLinux 10 patch privilege escalation via Punycode processing (CVE-2026-39821) and denial of service attacks targeting DNS SAN entries (CVE-2026-27145).

ALSA-2026:46990: sssd security, bug fix, and enhancement update (Important)
ALSA-2026:47011: kernel security update (Important)
ALSA-2026:47010: kernel-rt security update (Important)
ALSA-2026:46532: dovecot security update (Important)
ALSA-2026:46395: go-fdo-server security update (Important)
ALSA-2026:46394: go-fdo-client security update (Important)

AlmaLinux 2626 Published by Philipp Esselbach 0

AlmaLinux released four important security errata covering Libreswan across versions 8 through 10 and Grafana for version 8. The Libreswan updates patch four separate flaws that enable denial of service attacks or daemon crashes when attackers send malformed IKE packets or improperly formatted X.509 certificates. A dedicated Grafana release fixes a validation weakness in the go-billy Git library while adjusting a build macro for the Konflux pipeline. Operators need to deploy these patches immediately to close CVE gaps spanning from 2026-12413 through 2026-50722 before threat actors exploit the VPN tunneling weaknesses.

ALSA-2026:46398: libreswan security update (Important)
ALSA-2026:46397: libreswan security update (Important)
ALSA-2026:46391: grafana security, bug fix, and enhancement update (Important)
ALSA-2026:46396: libreswan security update (Important)

AlmaLinux 2626 Published by Philipp Esselbach 0

AlmaLinux released two kernel errata: an important security update for AlmaLinux 10 and a bugfix advisory for AlmaLinux 9. The AlmaLinux 10 patch addresses CVE-2026-46323, which resolves a use-after-free vulnerability in the net/gro subsystem caused by improper handling of zerocopy skbs. The AlmaLinux 9 advisory fixes data corruption issues with XFS reflink operations in version almalinux-9.8.z, resolving JIRA issue AlmaLinux-193937.

ALSA-2026:44270: kernel security update (Important)
ALBA-2026:39332: kernel bug fix and enhancement update (None)

AlmaLinux 2626 Published by Philipp Esselbach 0

AlmaLinux published critical security errata targeting the Linux kernel, OpenJDK versions 8 through 21, SSSD, and OpenSSL 1.1.1 across operating system releases 8, 9, and 10. These patches close memory corruption flaws, fix privilege escalation risks in the SSSD LDAP provider, and address TLS certificate handling weaknesses inside multiple Java runtime components. Production servers running these components face immediate exposure to kernel memory leaks, Java image processing vulnerabilities, and SSSD path traversal exploits until administrators install the new RPM packages.

ALSA-2026:45115: kernel security update (Important)
ALSA-2026:45116: kernel-rt security update (Important)
ALSA-2026:42877: java-1.8.0-openjdk security update (Important)
ALSA-2026:42895: java-21-openjdk security update (Important)
ALSA-2026:42887: java-17-openjdk security update (Important)
ALSA-2026:42877: java-1.8.0-openjdk security update (Important)
ALSA-2026:43307: kernel security, bug fix, and enhancement update (Important)
ALSA-2026:42887: java-17-openjdk security update (Important)
ALSA-2026:42122: sssd security update (Important)
ALSA-2026:42895: java-21-openjdk security update (Important)
ALSA-2026:44438: compat-openssl11 security update (Important)
ALSA-2026:42919: kernel security, bug fix, and enhancement update (Important)
ALSA-2026:42895: java-21-openjdk security update (Important)

AlmaLinux 2626 Published by Philipp Esselbach 0

AlmaLinux released security updates targeting the libpq, mariadb-connector-c, and glibc packages for AlmaLinux versions 9 and 10 to address important vulnerabilities affecting database connectivity and core system libraries. The patches resolve buffer overflow flaws in PostgreSQL's libpq that allow a server superuser to overwrite client stack memory, plus a SQL injection weakness in the MariaDB connector caused by improper big5 character set handling. A moderate-severity update for glibc on AlmaLinux 9 resolves three additional bugs, including information disclosure via ungetwc with specific wide character encodings and out-of-bounds writes triggered by TSIG record processing. System administrators should install these updates to mitigate the documented risks, which include potential stack memory corruption, data exfiltration, denial of service, and application crashes across the affected components.

ALSA-2026:44391: libpq security update (Important)
ALSA-2026:43505: mariadb-connector-c security update (Important)
ALSA-2026:44308: libpq security update (Important)
ALSA-2026:42952: glibc security update (Moderate)

AlmaLinux 2626 Published by Philipp Esselbach 0

AlmaLinux published a batch of security errata on July 22, 2026, targeting widely used system components across versions 8, 9, and 10 to patch critical vulnerabilities. The updates address Important and Moderate severity flaws in packages including Apache HTTP Server, glibc, the Go toolset, Grafana, SSSD, Dovecot, libtiff, and Jackson-databind. Attackers could exploit unpatched systems through symlink traversal privilege escalation, heap-based buffer overflows, arbitrary code execution via polymorphic type validation bypasses, and denial of service conditions triggered by malformed network requests or TLS messages.

ALSA-2026:43420: acl security update (Important)
ALSA-2026:43218: pki-deps:10.6 security update (Important)
ALSA-2026:42733: glibc security update (Moderate)
ALSA-2026:41948: javapackages-tools:201801 security update (Important)
ALSA-2026:42828: httpd:2.4 security, bug fix, and enhancement update (Important)
ALSA-2026:11507: grafana security update (Important)
ALSA-2026:11514: grafana-pcp security update (Important)
ALSA-2026:10704: go-toolset:rhel8 security update (Important)
ALSA-2026:42694: glibc security update (Moderate)
ALSA-2026:35826: grafana-pcp security update (Important)
ALSA-2026:35832: golang-github-openprinting-ipp-usb security update (Important)
ALSA-2026:36189: perl-HTTP-Daemon security update (Important)
ALSA-2026:35827: grafana security update (Important)
ALSA-2026:41937: sssd security update (Important)
ALSA-2026:43400: dogtag-pki security update (Important)
ALSA-2026:42739: acl security update (Important)
ALSA-2026:41905: dovecot security update (Important)
ALSA-2026:42736: acl security update (Important)
ALSA-2026:42668: libtiff security update (Important)

AlmaLinux 2626 Published by Philipp Esselbach 0

AlmaLinux issued a batch of security advisories on July 21, 2026, patching dozens of critical vulnerabilities across packages like gstreamer1-plugins-good, freerdp, webkit2gtk3, nodejs, python3.14, and the Apache httpd server for versions 8, 9, and 10. The flaws span memory corruption issues, heap buffer overflows triggered by malformed media files or network packets, denial of service conditions caused by unbounded resource consumption, and remote code execution risks embedded in directory services and web rendering engines. Several advisories specifically address sandbox escape vulnerabilities that allow malicious websites to access restricted system resources or leak sensitive user data directly from the browser process.

ALSA-2026:36675: gstreamer1-plugins-good security update (Important)
ALSA-2026:39547: perl-XML-LibXML security update (Important)
ALSA-2026:36196: 389-ds-base security update (Important)
ALSA-2026:39976: hplip security update (Important)
ALSA-2026:36203: freerdp security update (Important)
ALSA-2026:36673: gstreamer1-plugins-ugly-free security update (Moderate)
ALSA-2026:39573: yggdrasil security update (Important)
ALSA-2026:41988: dovecot security update (Important)
ALSA-2026:42063: glib2 security update (Important)
ALSA-2026:42096: c-ares security update (Important)
ALSA-2026:41947: nodejs:22 security, bug fix, and enhancement update (Important)
ALSA-2026:42088: webkit2gtk3 security update (Important)
ALSA-2026:42090: glib2 security update (Important)
ALSA-2026:42550: kernel-rt security, bug fix, and enhancement update (Important)
ALSA-2026:42552: kernel security, bug fix, and enhancement update (Important)
ALSA-2026:42062: webkit2gtk3 security update (Important)
ALSA-2026:42089: glib2 security update (Important)
ALSA-2026:41949: python3.14 security update (Important)
ALSA-2026:41906: httpd security, bug fix, and enhancement update (Important)

AlmaLinux 2626 Published by Philipp Esselbach 0

AlmaLinux issued ten security advisories, targeting distribution versions 8, 9, and 10. The patches resolve high-risk vulnerabilities in widely deployed tools including Python 3.14, the Jackson data-binding suite, GIMP, Pacemaker, fence-agents, libtiff, capstone, HPLIP, and Maven. Attackers could exploit these flaws to bypass authentication, trigger arbitrary code execution, cause memory corruption, or force denial of service conditions on affected systems. Infrastructure teams should deploy the updated packages through standard repository channels before threat actors take advantage of the published CVEs.

ALSA-2026:25902: fence-agents security update (Important)
ALSA-2026:39323: pacemaker security update (Important)
ALSA-2026:41892: libtiff security, bug fix, and enhancement update (Important)
ALSA-2026:39309: capstone security update (Low)
ALSA-2026:40831: hplip security update (Important)
ALSA-2026:40856: python3.14 security update (Important)
ALSA-2026:40895: jackson-annotations, jackson-core, jackson-databind, jackson-jaxrs-providers, and jackson-modules-base security update (Important)
ALSA-2026:40751: gimp security update (Important)
ALSA-2026:40841: maven:3.8 security update (Important)
ALSA-2026:40894: hplip security update (Important)