Oracle Linux 6465 Published by

Oracle Linux administrators need to review several new security advisories that impact versions 8 through 10 of the operating system. These updates include critical fixes for golang and freerdp software alongside necessary patches for ncurses and mysql databases that resolve several known vulnerabilities. Specific issues like buffer overflows and other CVEs are being addressed by updating the software packages to newer stable releases available on the network.

ELSA-2026-5941 Important: Oracle Linux 10 golang security update
ELSA-2026-5939 Important: Oracle Linux 10 freerdp security update
ELSA-2026-5913 Moderate: Oracle Linux 10 ncurses security update
ELSA-2026-5942 Important: Oracle Linux 9 golang security update
ELSA-2026-5580 Moderate: Oracle Linux 8 mysql:8.0 security update




ELSA-2026-5941 Important: Oracle Linux 10 golang security update


Oracle Linux Security Advisory ELSA-2026-5941

http://linux.oracle.com/errata/ELSA-2026-5941.html

The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:

x86_64:
go-toolset-1.25.8-1.el10_1.x86_64.rpm
golang-1.25.8-1.el10_1.x86_64.rpm
golang-bin-1.25.8-1.el10_1.x86_64.rpm
golang-docs-1.25.8-1.el10_1.noarch.rpm
golang-misc-1.25.8-1.el10_1.noarch.rpm
golang-race-1.25.8-1.el10_1.x86_64.rpm
golang-src-1.25.8-1.el10_1.noarch.rpm
golang-tests-1.25.8-1.el10_1.noarch.rpm

aarch64:
go-toolset-1.25.8-1.el10_1.aarch64.rpm
golang-1.25.8-1.el10_1.aarch64.rpm
golang-bin-1.25.8-1.el10_1.aarch64.rpm
golang-docs-1.25.8-1.el10_1.noarch.rpm
golang-misc-1.25.8-1.el10_1.noarch.rpm
golang-race-1.25.8-1.el10_1.aarch64.rpm
golang-src-1.25.8-1.el10_1.noarch.rpm
golang-tests-1.25.8-1.el10_1.noarch.rpm

SRPMS:
http://oss.oracle.com/ol10/SRPMS-updates/golang-1.25.8-1.el10_1.src.rpm

Related CVEs:

CVE-2025-61731
CVE-2026-25679

Description of changes:

[1.25.8-1]
- Update to Go 1.25.8 (fips-1)



ELSA-2026-5939 Important: Oracle Linux 10 freerdp security update


Oracle Linux Security Advisory ELSA-2026-5939

http://linux.oracle.com/errata/ELSA-2026-5939.html

The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:

x86_64:
freerdp-3.10.3-5.el10_1.3.x86_64.rpm
freerdp-devel-3.10.3-5.el10_1.3.x86_64.rpm
freerdp-libs-3.10.3-5.el10_1.3.x86_64.rpm
freerdp-server-3.10.3-5.el10_1.3.x86_64.rpm
libwinpr-3.10.3-5.el10_1.3.x86_64.rpm
libwinpr-devel-3.10.3-5.el10_1.3.x86_64.rpm

aarch64:
freerdp-3.10.3-5.el10_1.3.aarch64.rpm
freerdp-devel-3.10.3-5.el10_1.3.aarch64.rpm
freerdp-libs-3.10.3-5.el10_1.3.aarch64.rpm
freerdp-server-3.10.3-5.el10_1.3.aarch64.rpm
libwinpr-3.10.3-5.el10_1.3.aarch64.rpm
libwinpr-devel-3.10.3-5.el10_1.3.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol10/SRPMS-updates/freerdp-3.10.3-5.el10_1.3.src.rpm

Related CVEs:

CVE-2026-26955
CVE-2026-26965

Description of changes:

[2:3.10.3-5.3]
- Backport several CVE fixes
Resolves: RHEL-151975, RHEL-152202



ELSA-2026-5913 Moderate: Oracle Linux 10 ncurses security update


Oracle Linux Security Advisory ELSA-2026-5913

http://linux.oracle.com/errata/ELSA-2026-5913.html

The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:

x86_64:
ncurses-6.4-15.20240127.el10_1.x86_64.rpm
ncurses-base-6.4-15.20240127.el10_1.noarch.rpm
ncurses-c++-libs-6.4-15.20240127.el10_1.x86_64.rpm
ncurses-devel-6.4-15.20240127.el10_1.x86_64.rpm
ncurses-libs-6.4-15.20240127.el10_1.x86_64.rpm
ncurses-term-6.4-15.20240127.el10_1.noarch.rpm

aarch64:
ncurses-6.4-15.20240127.el10_1.aarch64.rpm
ncurses-base-6.4-15.20240127.el10_1.noarch.rpm
ncurses-c++-libs-6.4-15.20240127.el10_1.aarch64.rpm
ncurses-devel-6.4-15.20240127.el10_1.aarch64.rpm
ncurses-libs-6.4-15.20240127.el10_1.aarch64.rpm
ncurses-term-6.4-15.20240127.el10_1.noarch.rpm

SRPMS:
http://oss.oracle.com/ol10/SRPMS-updates/ncurses-6.4-15.20240127.el10_1.src.rpm

Related CVEs:

CVE-2025-69720

Description of changes:

[6.4-15.20240127]
- fix buffer overflow in infocmp -i (CVE-2025-69720)



ELSA-2026-5942 Important: Oracle Linux 9 golang security update


Oracle Linux Security Advisory ELSA-2026-5942

http://linux.oracle.com/errata/ELSA-2026-5942.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
go-toolset-1.25.8-1.el9_7.x86_64.rpm
golang-1.25.8-1.el9_7.x86_64.rpm
golang-bin-1.25.8-1.el9_7.x86_64.rpm
golang-docs-1.25.8-1.el9_7.noarch.rpm
golang-misc-1.25.8-1.el9_7.noarch.rpm
golang-race-1.25.8-1.el9_7.x86_64.rpm
golang-src-1.25.8-1.el9_7.noarch.rpm
golang-tests-1.25.8-1.el9_7.noarch.rpm

aarch64:
go-toolset-1.25.8-1.el9_7.aarch64.rpm
golang-1.25.8-1.el9_7.aarch64.rpm
golang-bin-1.25.8-1.el9_7.aarch64.rpm
golang-docs-1.25.8-1.el9_7.noarch.rpm
golang-misc-1.25.8-1.el9_7.noarch.rpm
golang-race-1.25.8-1.el9_7.aarch64.rpm
golang-src-1.25.8-1.el9_7.noarch.rpm
golang-tests-1.25.8-1.el9_7.noarch.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/golang-1.25.8-1.el9_7.src.rpm

Related CVEs:

CVE-2025-61731
CVE-2026-25679

Description of changes:

[1.25.8-2]
- Update to Go 1.25.8 (fips-1)
- Resolves: RHEL-157451



ELSA-2026-5580 Moderate: Oracle Linux 8 mysql:8.0 security update


Oracle Linux Security Advisory ELSA-2026-5580

http://linux.oracle.com/errata/ELSA-2026-5580.html

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:

x86_64:
mecab-0.996-2.module+el8.10.0+90675+bf1d9af8.x86_64.rpm
mecab-devel-0.996-2.module+el8.10.0+90675+bf1d9af8.x86_64.rpm
mecab-ipadic-2.7.0.20070801-17.0.1.module+el8.10.0+90675+bf1d9af8.x86_64.rpm
mecab-ipadic-EUCJP-2.7.0.20070801-17.0.1.module+el8.10.0+90675+bf1d9af8.x86_64.rpm
mysql-8.0.45-1.module+el8.10.0+90852+2347412b.x86_64.rpm
mysql-common-8.0.45-1.module+el8.10.0+90852+2347412b.x86_64.rpm
mysql-devel-8.0.45-1.module+el8.10.0+90852+2347412b.x86_64.rpm
mysql-errmsg-8.0.45-1.module+el8.10.0+90852+2347412b.x86_64.rpm
mysql-libs-8.0.45-1.module+el8.10.0+90852+2347412b.x86_64.rpm
mysql-server-8.0.45-1.module+el8.10.0+90852+2347412b.x86_64.rpm
mysql-test-8.0.45-1.module+el8.10.0+90852+2347412b.x86_64.rpm

aarch64:
mecab-0.996-2.module+el8.10.0+90675+bf1d9af8.aarch64.rpm
mecab-devel-0.996-2.module+el8.10.0+90675+bf1d9af8.aarch64.rpm
mecab-ipadic-2.7.0.20070801-17.0.1.module+el8.10.0+90675+bf1d9af8.aarch64.rpm
mecab-ipadic-EUCJP-2.7.0.20070801-17.0.1.module+el8.10.0+90675+bf1d9af8.aarch64.rpm
mysql-8.0.45-1.module+el8.10.0+90852+2347412b.aarch64.rpm
mysql-common-8.0.45-1.module+el8.10.0+90852+2347412b.aarch64.rpm
mysql-devel-8.0.45-1.module+el8.10.0+90852+2347412b.aarch64.rpm
mysql-errmsg-8.0.45-1.module+el8.10.0+90852+2347412b.aarch64.rpm
mysql-libs-8.0.45-1.module+el8.10.0+90852+2347412b.aarch64.rpm
mysql-server-8.0.45-1.module+el8.10.0+90852+2347412b.aarch64.rpm
mysql-test-8.0.45-1.module+el8.10.0+90852+2347412b.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol8/SRPMS-updates/mecab-0.996-2.module+el8.10.0+90675+bf1d9af8.src.rpm
http://oss.oracle.com/ol8/SRPMS-updates/mecab-ipadic-2.7.0.20070801-17.0.1.module+el8.10.0+90675+bf1d9af8.src.rpm
http://oss.oracle.com/ol8/SRPMS-updates/mysql-8.0.45-1.module+el8.10.0+90852+2347412b.src.rpm

Related CVEs:

CVE-2026-21936
CVE-2026-21937
CVE-2026-21941
CVE-2026-21948
CVE-2026-21964
CVE-2026-21968

Description of changes:

mecab
[0.996-2.12]
- Bump version for 'mysql' module rebuild
We are moving the 'mecab-devel' RPM from the 'buildroot' repo to the 'AppStream' repo
- Resolves: #2180411

[0.996-2]
- Rebuild to fix the issue described in #2000986
- Resolves: #2000986

[0.996-1.9]
- Release bump for rebuilding on new arches
Related: #1518842

[0.996-1.8]
- skip %verify of /etc/opt/rh/rh-mysql57/mecabrc
Resolves: #1382315

[0.996-1.7]
- Prefix library major number with SCL name in soname

[0.996-1.6]
- Require runtime package from the scl

[0.996-1.5]
- Convert to SCL package

[0.996-1.4]
- Rebuilt for https://fedoraproject.org/wiki/Fedora_24_Mass_Rebuild

[0.996-1.3]
- Rebuilt for https://fedoraproject.org/wiki/Fedora_23_Mass_Rebuild

[0.996-1.2]
- Rebuilt for GCC 5 C++11 ABI change

mecab-ipadic
[2.7.0.20070801-17.0.1]
- Rename the LICENSE.Fedora to LICENSE.oracle

[2.7.0.20070801-17]
- Bump the release
- Resolves: RHEL-24525

[2.7.0.20070801-16]
- Rename the LICENSE.fedora to LICENSE.rhel

[2.7.0.20070801-15]
- Release bump for rebuilding on new arches
Related: #1518842

[2.7.0.20070801-14.1]
- Require runtime package from the scl

[2.7.0.20070801-13.1]
- Convert to SCL package

[2.7.0.20070801-12.1]
- Rebuilt for https://fedoraproject.org/wiki/Fedora_24_Mass_Rebuild

[2.7.0.20070801-11.1]
- Rebuilt for https://fedoraproject.org/wiki/Fedora_23_Mass_Rebuild

[2.7.0.20070801-10.1]
- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_22_Mass_Rebuild

[2.7.0.20070801-9.1]
- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild

mysql
[8.0.45-1]
- Rebase to 8.0.45