Rocky Linux 962 Published by

New security errata are now available for Rocky Linux versions 8, 9, and 10, covering packages with severity ratings from moderate to important across a wide range of system components. Key affected software includes the kernel for Rocky Linux 9, acl builds for Rocky Linux 8 and 10, python3.14 for all three releases, plus infrastructure tools like httpd, sssd, glibc, libtiff, dovecot, and webkit2gtk3. The pki-deps:10.6 update targets Rocky Linux 8 and modifies numerous dependencies such as javassist, apache-commons-collections, xsom, slf4j, and glassfish-jaxb-api to close security gaps referenced by CVE identifiers.

RLBA-2026:39332: Important:kernel bug fix and enhancement update
RLSA-2026:42739: Important: acl security update
RLSA-2026:40833: Important: pacemaker security update
RLSA-2026:41937: Important: sssd security update
RLSA-2026:41892: Important: libtiff security, bug fix, and enhancement update
RLSA-2026:42694: Moderate: glibc security update
RLSA-2026:41988: Important: dovecot security update
RLSA-2026:42063: Important: glib2 security update
RLSA-2026:40856: Important: python3.14 security update
RLSA-2026:42096: Important: c-ares security update
RLSA-2026:42736: Important: acl security update
RLSA-2026:42089: Important: glib2 security update
RLSA-2026:42062: Important: webkit2gtk3 security update
RLSA-2026:41905: Important: dovecot security update
RLSA-2026:41949: Important: python3.14 security update
RLSA-2026:41906: Important: httpd security, bug fix, and enhancement update
RLSA-2026:42668: Important: libtiff security update
RLSA-2026:42122: Important: sssd security update
RLSA-2026:43218: Important: pki-deps:10.6 security update
RLSA-2026:42550: Important: kernel-rt security, bug fix, and enhancement update
RLSA-2026:43218: Important: pki-deps:10.6 security update




RLBA-2026:39332: Important:kernel bug fix and enhancement update


An update is available for kernel.
This update affects Rocky Linux 9.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RLBA-2026:39332: Important:kernel bug fix and enhancement update



RLSA-2026:42739: Important: acl security update


An update is available for acl.
This update affects Rocky Linux 10.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RLSA-2026:42739: Important: acl security update



RLSA-2026:40833: Important: pacemaker security update


An update is available for pacemaker.
This update affects Rocky Linux 10.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RLSA-2026:40833: Important: pacemaker security update



RLSA-2026:41937: Important: sssd security update


An update is available for sssd.
This update affects Rocky Linux 10.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RLSA-2026:41937: Important: sssd security update



RLSA-2026:41892: Important: libtiff security, bug fix, and enhancement update


An update is available for libtiff.
This update affects Rocky Linux 10.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RLSA-2026:41892: Important: libtiff security, bug fix, and enhancement update



RLSA-2026:42694: Moderate: glibc security update


An update is available for glibc.
This update affects Rocky Linux 10.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RLSA-2026:42694: Moderate: glibc security update



RLSA-2026:41988: Important: dovecot security update


An update is available for dovecot.
This update affects Rocky Linux 10.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RLSA-2026:41988: Important: dovecot security update



RLSA-2026:42063: Important: glib2 security update


An update is available for glib2.
This update affects Rocky Linux 10.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RLSA-2026:42063: Important: glib2 security update



RLSA-2026:40856: Important: python3.14 security update


An update is available for python3.14.
This update affects Rocky Linux 10.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RLSA-2026:40856: Important: python3.14 security update



RLSA-2026:42096: Important: c-ares security update


An update is available for c-ares.
This update affects Rocky Linux 10.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RLSA-2026:42096: Important: c-ares security update



RLSA-2026:42736: Important: acl security update


An update is available for acl.
This update affects Rocky Linux 9.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RLSA-2026:42736: Important: acl security update



RLSA-2026:42089: Important: glib2 security update


An update is available for glib2.
This update affects Rocky Linux 9.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RLSA-2026:42089: Important: glib2 security update



RLSA-2026:42062: Important: webkit2gtk3 security update


An update is available for webkit2gtk3.
This update affects Rocky Linux 9.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RLSA-2026:42062: Important: webkit2gtk3 security update



RLSA-2026:41905: Important: dovecot security update


An update is available for dovecot.
This update affects Rocky Linux 9.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RLSA-2026:41905: Important: dovecot security update



RLSA-2026:41949: Important: python3.14 security update


An update is available for python3.14.
This update affects Rocky Linux 9.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RLSA-2026:41949: Important: python3.14 security update



RLSA-2026:41906: Important: httpd security, bug fix, and enhancement update


An update is available for httpd.
This update affects Rocky Linux 9.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RLSA-2026:41906: Important: httpd security, bug fix, and enhancement update



RLSA-2026:42668: Important: libtiff security update


An update is available for libtiff.
This update affects Rocky Linux 9.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RLSA-2026:42668: Important: libtiff security update



RLSA-2026:42122: Important: sssd security update


An update is available for sssd.
This update affects Rocky Linux 9.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RLSA-2026:42122: Important: sssd security update



RLSA-2026:43218: Important: pki-deps:10.6 security update


An update is available for javassist, apache-commons-collections, xsom, slf4j, module.xerces-j2, module.javassist, module.jakarta-commons-httpclient, glassfish-fastinfoset, glassfish-jaxb-api, bea-stax, module.relaxngDatatype, xalan-j2, stax-ex, module.xsom, module.apache-commons-net, velocity, module.glassfish-jaxb-api, apache-commons-lang, module.glassfish-jaxb, module.pki-servlet-engine, relaxngDatatype, xml-commons-apis, module.xml-commons-apis, xml-commons-resolver, glassfish-jaxb, module.stax-ex, module.glassfish-fastinfoset, jakarta-commons-httpclient, module.apache-commons-lang, module.xml-commons-resolver, xmlstreambuffer, module.apache-commons-collections, module.bea-stax, module.xmlstreambuffer, module.slf4j, module.velocity, xerces-j2, module.xalan-j2, pki-servlet-engine, apache-commons-net.
This update affects Rocky Linux 8.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RLSA-2026:43218: Important: pki-deps:10.6 security update



RLSA-2026:42550: Important: kernel-rt security, bug fix, and enhancement update


An update is available for kernel-rt.
This update affects Rocky Linux 8.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RLSA-2026:42550: Important: kernel-rt security, bug fix, and enhancement update



RLSA-2026:43218: Important: pki-deps:10.6 security update


An update is available for module.slf4j, velocity, xml-commons-resolver, javassist, relaxngDatatype, module.glassfish-jaxb-api, slf4j, module.apache-commons-lang, xsom, module.bea-stax, module.apache-commons-collections, module.xalan-j2, glassfish-jaxb, xerces-j2, module.glassfish-fastinfoset, module.pki-servlet-engine, glassfish-jaxb-api, xalan-j2, pki-servlet-engine, module.xml-commons-apis, apache-commons-collections, xml-commons-apis, module.stax-ex, module.xml-commons-resolver, module.jakarta-commons-httpclient, stax-ex, xmlstreambuffer, module.velocity, module.relaxngDatatype, module.xerces-j2, glassfish-fastinfoset, bea-stax, module.javassist, module.xmlstreambuffer, jakarta-commons-httpclient, module.xsom, module.glassfish-jaxb, module.apache-commons-net, apache-commons-lang, apache-commons-net.
This update affects Rocky Linux 8.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RLSA-2026:43218: Important: pki-deps:10.6 security update