Oracle Linux 6519 Published by

Oracle Linux released a comprehensive batch of errata covering versions 7 through 10 that deliver critical security patches for .NET SDKs, PostgreSQL databases, glibc libraries, and numerous other packages across all supported distributions. The updates address over two dozen CVEs in .NET 8, 9, and 10 related to memory safety issues, while PostgreSQL 16 and 18 receive fixes for data integrity risks and privilege escalation vulnerabilities found in recent versions. Bug fix advisories resolve functional problems in the Linux kernel with improvements to KVM shadow paging and IOMMU flush notifications, alongside enhancements to systemd logging, libvirt CPU feature sorting, and qemu-kvm live migration reliability for SCSI reservation handling.

ELBA-2026-39305 Oracle Linux 10 iptables bug fix and enhancement update
ELBA-2026-39295 Oracle Linux 10 libvirt bug fix and enhancement update
ELBA-2026-39294 Oracle Linux 10 numpy bug fix and enhancement update
ELBA-2026-39293 Oracle Linux 10 qemu-kvm bug fix and enhancement update
ELBA-2026-34484 Oracle Linux 10 fontawesome4-fonts bug fix and enhancement update
ELBA-2026-28580 Oracle Linux 10 rust-podman-sequoia bug fix and enhancement update
ELBA-2026-28587 Oracle Linux 10 gdm bug fix and enhancement update
ELBA-2026-26196 Oracle Linux 10 openscap bug fix and enhancement update
ELBA-2026-25921 Oracle Linux 10 scap-security-guide bug fix and enhancement update
ELBA-2026-25224 Oracle Linux 10 aide bug fix and enhancement update
ELBA-2026-22537 Oracle Linux 10 cyrus-sasl bug fix and enhancement update
ELBA-2026-22533 Oracle Linux 10 haproxy bug fix and enhancement update
ELBA-2026-22532 Oracle Linux 10 nmstate bug fix and enhancement update
ELBA-2026-22525 Oracle Linux 10 squid bug fix and enhancement update
ELBA-2026-22524 Oracle Linux 10 gnome-desktop3 bug fix and enhancement update
ELBA-2026-19140 Oracle Linux 10 bootc bug fix and enhancement update
ELBA-2026-19804 Oracle Linux 10 python-pip bug fix and enhancement update
ELBA-2026-500007 Oracle Linux 10 sos bug fix update
ELSA-2026-42668 Important: Oracle Linux 9 libtiff security update
ELSA-2026-42089 Important: Oracle Linux 9 glib2 security update
ELSA-2026-42736 Important: Oracle Linux 9 acl security update
ELSA-2026-42062 Important: Oracle Linux 9 webkit2gtk3 security update
ELSA-2026-41906 Important: Oracle Linux 9 httpd security, bug fix, and enhancement update
ELSA-2026-41905 Important: Oracle Linux 9 dovecot security update
ELSA-2026-41898 Important: Oracle Linux 9 .NET 10.0 security, bug fix, and enhancement update
ELSA-2026-38796 Important: Oracle Linux 9 plexus-utils security update
ELSA-2026-41896 Important: Oracle Linux 9 .NET 9.0 security, bug fix, and enhancement update
ELBA-2026-42071 Oracle Linux 9 qemu-kvm bug fix and enhancement update
ELSA-2026-41894 Important: Oracle Linux 9 .NET 8.0 security, bug fix, and enhancement update
ELBA-2026-39310 Oracle Linux 9 papi bug fix and enhancement update
ELBA-2026-28258 Oracle Linux 9 systemd bug fix and enhancement update
ELBA-2026-28249 Oracle Linux 9 cloud-init bug fix and enhancement update
ELBA-2026-50369 Oracle Linux 9 image-builder bug fix update
ELBA-2026-39179-1 Oracle Linux 8 kernel bug fix update
ELBA-2026-39083-1 Oracle Linux 8 kernel bug fix update
ELSA-2026-42090 Important: Oracle Linux 8 glib2 security update
ELSA-2026-42088 Important: Oracle Linux 8 webkit2gtk3 security update
ELSA-2026-41899 Important: Oracle Linux 8 .NET 9.0 security, bug fix, and enhancement update
ELSA-2026-41901 Important: Oracle Linux 8 .NET 8.0 security, bug fix, and enhancement update
ELSA-2026-41900 Important: Oracle Linux 8 .NET 10.0 security, bug fix, and enhancement update
ELSA-2026-39322 Important: Oracle Linux 8 pacemaker security update
ELSA-2026-35838 Important: Oracle Linux 7 python3 security update
ELSA-2026-30843 Important: Oracle Linux 7 perl-IO-Compress security update
ELSA-2026-27743 Important: Oracle Linux 10 postgresql16 security update
ELBA-2026-25084 Oracle Linux 10 guestfs-tools bug fix and enhancement update
ELSA-2026-27742 Important: Oracle Linux 10 postgresql18 security update
ELSA-2026-38513 Important: Oracle Linux 10 perl-DBI security update
ELSA-2026-39296 Moderate: Oracle Linux 10 libinput security update
ELSA-2026-39272 Important: Oracle Linux 10 git-lfs security update
ELSA-2026-19125 Important: Oracle Linux 10 xorg-x11-server-Xwayland security update
ELSA-2026-28234 Low: Oracle Linux 10 libxml2 security update
ELSA-2026-38499 Important: Oracle Linux 10 openexr security update
ELSA-2026-18139 Moderate: Oracle Linux 10 glibc security update




ELBA-2026-39305 Oracle Linux 10 iptables bug fix and enhancement update


Oracle Linux Bug Fix Advisory ELBA-2026-39305

http://linux.oracle.com/errata/ELBA-2026-39305.html

The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:

x86_64:
iptables-devel-1.8.11-15.0.1.el10_2.x86_64.rpm
iptables-libs-1.8.11-15.0.1.el10_2.x86_64.rpm
iptables-nft-1.8.11-15.0.1.el10_2.x86_64.rpm
iptables-nft-services-1.8.11-15.0.1.el10_2.noarch.rpm
iptables-utils-1.8.11-15.0.1.el10_2.x86_64.rpm

aarch64:
iptables-devel-1.8.11-15.0.1.el10_2.aarch64.rpm
iptables-libs-1.8.11-15.0.1.el10_2.aarch64.rpm
iptables-nft-1.8.11-15.0.1.el10_2.aarch64.rpm
iptables-nft-services-1.8.11-15.0.1.el10_2.noarch.rpm
iptables-utils-1.8.11-15.0.1.el10_2.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol10/SRPMS-updates/iptables-1.8.11-15.0.1.el10_2.src.rpm

Description of changes:

[1.8.11-15.0.1]
- Install kernel-modules-extra-matched if kernel-core is installed
- Update dependencies for additional UEK kernel flavours [Orabug: 38000003]
- Also allow installation with kernel-uek-extra-netfilter [Orabug: 37585869]

[[1.8.11-15.el10]]
- spec: Recommend kernel-modules-extra only if no other recommendation applies (Phil Sutter) [RHEL-186232]

[[1.8.11-14.el10]]
- tests: shell: Review nft-only/0009-needless-bitwise_0 (Phil Sutter) [RHEL-179504]
- spec: Soft-depend on kernel-modules-extra (Phil Sutter) [RHEL-176386]

[[1.8.11-13.el10]]
- spec: Use modules-core for conditional modules-extra dependency (Phil Sutter) [RHEL-141880]

[[1.8.11-12.el10]]
- Revert "spec: Require kernel-modules-extra-matched meta package" (Phil Sutter) [RHEL-127030]

[[1.8.11-11.el10]]
- extensions: sctp: Translate bare '-m sctp' match (Phil Sutter) [RHEL-101502]

[[1.8.11-10.el10]]
- spec: Require kernel-modules-extra-matched meta package (Phil Sutter) [RHEL-87455]

[[1.8.11-9.el10]]
- xshared: Accept an option if any given command allows it (Phil Sutter) [RHEL-72061]
- extensions: icmp: Support info-request/-reply type names (Phil Sutter) [RHEL-85286]

[[1.8.11-8.el10]]
- fix kernel-modules-extra dependency for aarch64 64k variant [RHEL-83068]

[[1.8.11-7.el10]]
- spec: Explicitly remove unpackaged files (Michel Lind) [RHEL-67249]



ELBA-2026-39295 Oracle Linux 10 libvirt bug fix and enhancement update


Oracle Linux Bug Fix Advisory ELBA-2026-39295

http://linux.oracle.com/errata/ELBA-2026-39295.html

The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:

x86_64:
libvirt-11.10.0-12.4.0.1.el10_2.x86_64.rpm
libvirt-client-11.10.0-12.4.0.1.el10_2.x86_64.rpm
libvirt-client-qemu-11.10.0-12.4.0.1.el10_2.x86_64.rpm
libvirt-daemon-11.10.0-12.4.0.1.el10_2.x86_64.rpm
libvirt-daemon-common-11.10.0-12.4.0.1.el10_2.x86_64.rpm
libvirt-daemon-config-network-11.10.0-12.4.0.1.el10_2.x86_64.rpm
libvirt-daemon-config-nwfilter-11.10.0-12.4.0.1.el10_2.x86_64.rpm
libvirt-daemon-driver-interface-11.10.0-12.4.0.1.el10_2.x86_64.rpm
libvirt-daemon-driver-network-11.10.0-12.4.0.1.el10_2.x86_64.rpm
libvirt-daemon-driver-nodedev-11.10.0-12.4.0.1.el10_2.x86_64.rpm
libvirt-daemon-driver-nwfilter-11.10.0-12.4.0.1.el10_2.x86_64.rpm
libvirt-daemon-driver-qemu-11.10.0-12.4.0.1.el10_2.x86_64.rpm
libvirt-daemon-driver-secret-11.10.0-12.4.0.1.el10_2.x86_64.rpm
libvirt-daemon-driver-storage-11.10.0-12.4.0.1.el10_2.x86_64.rpm
libvirt-daemon-driver-storage-core-11.10.0-12.4.0.1.el10_2.x86_64.rpm
libvirt-daemon-driver-storage-disk-11.10.0-12.4.0.1.el10_2.x86_64.rpm
libvirt-daemon-driver-storage-iscsi-11.10.0-12.4.0.1.el10_2.x86_64.rpm
libvirt-daemon-driver-storage-logical-11.10.0-12.4.0.1.el10_2.x86_64.rpm
libvirt-daemon-driver-storage-mpath-11.10.0-12.4.0.1.el10_2.x86_64.rpm
libvirt-daemon-driver-storage-rbd-11.10.0-12.4.0.1.el10_2.x86_64.rpm
libvirt-daemon-driver-storage-scsi-11.10.0-12.4.0.1.el10_2.x86_64.rpm
libvirt-daemon-kvm-11.10.0-12.4.0.1.el10_2.x86_64.rpm
libvirt-daemon-lock-11.10.0-12.4.0.1.el10_2.x86_64.rpm
libvirt-daemon-log-11.10.0-12.4.0.1.el10_2.x86_64.rpm
libvirt-daemon-plugin-lockd-11.10.0-12.4.0.1.el10_2.x86_64.rpm
libvirt-daemon-plugin-sanlock-11.10.0-12.4.0.1.el10_2.x86_64.rpm
libvirt-daemon-proxy-11.10.0-12.4.0.1.el10_2.x86_64.rpm
libvirt-devel-11.10.0-12.4.0.1.el10_2.x86_64.rpm
libvirt-docs-11.10.0-12.4.0.1.el10_2.x86_64.rpm
libvirt-libs-11.10.0-12.4.0.1.el10_2.x86_64.rpm
libvirt-nss-11.10.0-12.4.0.1.el10_2.x86_64.rpm
libvirt-ssh-proxy-11.10.0-12.4.0.1.el10_2.x86_64.rpm

aarch64:
libvirt-11.10.0-12.4.0.1.el10_2.aarch64.rpm
libvirt-client-11.10.0-12.4.0.1.el10_2.aarch64.rpm
libvirt-client-qemu-11.10.0-12.4.0.1.el10_2.aarch64.rpm
libvirt-daemon-11.10.0-12.4.0.1.el10_2.aarch64.rpm
libvirt-daemon-common-11.10.0-12.4.0.1.el10_2.aarch64.rpm
libvirt-daemon-config-network-11.10.0-12.4.0.1.el10_2.aarch64.rpm
libvirt-daemon-config-nwfilter-11.10.0-12.4.0.1.el10_2.aarch64.rpm
libvirt-daemon-driver-interface-11.10.0-12.4.0.1.el10_2.aarch64.rpm
libvirt-daemon-driver-network-11.10.0-12.4.0.1.el10_2.aarch64.rpm
libvirt-daemon-driver-nodedev-11.10.0-12.4.0.1.el10_2.aarch64.rpm
libvirt-daemon-driver-nwfilter-11.10.0-12.4.0.1.el10_2.aarch64.rpm
libvirt-daemon-driver-qemu-11.10.0-12.4.0.1.el10_2.aarch64.rpm
libvirt-daemon-driver-secret-11.10.0-12.4.0.1.el10_2.aarch64.rpm
libvirt-daemon-driver-storage-11.10.0-12.4.0.1.el10_2.aarch64.rpm
libvirt-daemon-driver-storage-core-11.10.0-12.4.0.1.el10_2.aarch64.rpm
libvirt-daemon-driver-storage-disk-11.10.0-12.4.0.1.el10_2.aarch64.rpm
libvirt-daemon-driver-storage-iscsi-11.10.0-12.4.0.1.el10_2.aarch64.rpm
libvirt-daemon-driver-storage-logical-11.10.0-12.4.0.1.el10_2.aarch64.rpm
libvirt-daemon-driver-storage-mpath-11.10.0-12.4.0.1.el10_2.aarch64.rpm
libvirt-daemon-driver-storage-rbd-11.10.0-12.4.0.1.el10_2.aarch64.rpm
libvirt-daemon-driver-storage-scsi-11.10.0-12.4.0.1.el10_2.aarch64.rpm
libvirt-daemon-kvm-11.10.0-12.4.0.1.el10_2.aarch64.rpm
libvirt-daemon-lock-11.10.0-12.4.0.1.el10_2.aarch64.rpm
libvirt-daemon-log-11.10.0-12.4.0.1.el10_2.aarch64.rpm
libvirt-daemon-plugin-lockd-11.10.0-12.4.0.1.el10_2.aarch64.rpm
libvirt-daemon-plugin-sanlock-11.10.0-12.4.0.1.el10_2.aarch64.rpm
libvirt-daemon-proxy-11.10.0-12.4.0.1.el10_2.aarch64.rpm
libvirt-devel-11.10.0-12.4.0.1.el10_2.aarch64.rpm
libvirt-docs-11.10.0-12.4.0.1.el10_2.aarch64.rpm
libvirt-libs-11.10.0-12.4.0.1.el10_2.aarch64.rpm
libvirt-nss-11.10.0-12.4.0.1.el10_2.aarch64.rpm
libvirt-ssh-proxy-11.10.0-12.4.0.1.el10_2.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol10/SRPMS-updates/libvirt-11.10.0-12.4.0.1.el10_2.src.rpm

Description of changes:

[11.10.0-12.4.0.1]
- Set SOURCE_DATE_EPOCH from changelog [Orabug: 32019554]

[11.10.0-12.4.el10_2]
- cpu_conf: Introduce virCPUDefSortFeatures (RHEL-180449)
- qemu_capabilities: Split virQEMUCapsFillDomainCPUCaps (RHEL-180449)
- qemu: Move domain caps flags handling to virQEMUCapsFillDomainCPUHostModel (RHEL-180449)
- qemu_capabilities: Always sort features in host-model CPU (RHEL-180449)
- qemu_capabilities: Use g_autoptr in virQEMUCapsInitHostCPUModel (RHEL-180449)
- qemu_capabilities: Split conditions in virQEMUCapsInitHostCPUModel (RHEL-180449)
- qemu_capabilities: Cache expanded CPU (RHEL-180449)
- domaincapstest: Test EXPAND_CPU_FEATURES flag (RHEL-180449)
- util: Publish and mock virHostCPUGetMSRFromKVM (RHEL-180449)
- cpu_x86: Introduce virCPUx86DataAddMSR (RHEL-180449)
- cpu: Introduce virCPUUpdateFeatures (RHEL-180449)
- Fix documentation of VIR_CONNECT_GET_DOMAIN_CAPABILITIES_EXPAND_CPU_FEATURES (RHEL-180449)
- Introduce VIR_CONNECT_GET_DOMAIN_CAPABILITIES_SUPPORTED_CPU_FEATURES flag (RHEL-180449)
- virsh: Add --supported-cpu-features option for domcapabilities (RHEL-180449)
- domaincapstest: Test SUPPORTED_CPU_FEATURES flag (RHEL-180449)
- qemu_capabilities: Fix domain capabilities on AMD CPUs (RHEL-180449)
- distro: Replace old gating with tmt

[11.10.0-12.3.el10_2]
- esx: Track VMs by instanceUuid instead of UUID (RHEL-177479)

[11.10.0-12.2.el10_2]
- Introduce EXPAND_CPU_FEATURES flag for domain capabilities (RHEL-154553)
- qemu: Implement VIR_CONNECT_GET_DOMAIN_CAPABILITIES_EXPAND_CPU_FEATURES (RHEL-154553)
- virsh: Add --expand-cpu-features option for domcapabilities (RHEL-154553)
- docs: Clarify host-model description in domain capabilities (RHEL-154553)
- security_apparmor: Use g_auto* in AppArmorSetSecurityHostdevLabel (RHEL-159912)
- security: Cleanup hostdev label error logic (RHEL-159912)
- qemu: Fix IOMMUFD and VFIO security labels (RHEL-159912)
- viriommufd: Set IOMMU_OPTION_RLIMIT_MODE only when running privileged (RHEL-159175)
- conf: Move and rename virStorageSourceFDTuple object (RHEL-159175)
- conf: Refactor virHostdevIsPCIDevice (RHEL-159175)
- hypervisor: Fix virHostdevNeedsVFIO detection (RHEL-159175)
- qemu: Expand call to qemuDomainNeedsVFIO (RHEL-159175)
- qemu: Update qemuDomainNeedsVFIO to ignore PCI hostdev with IOMMUFD (RHEL-159175)
- src: Use virHostdevIsPCIDeviceWith* to check for IOMMUFD (RHEL-159175)
- conf: Introduce domain iommufd element (RHEL-159175)
- qemu: Implement iommufd (RHEL-159175)
- conf: Add iommufd fdgroup support (RHEL-159175)
- qemu: Implement iommufd fdgroup (RHEL-159175)
- tests: Add iommufd fdgroup test (RHEL-159175)
- hypervisor: Call virWaitForDevices() after detaching host devices (RHEL-159175)



ELBA-2026-39294 Oracle Linux 10 numpy bug fix and enhancement update


Oracle Linux Bug Fix Advisory ELBA-2026-39294

http://linux.oracle.com/errata/ELBA-2026-39294.html

The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:

x86_64:
python3-numpy-1.26.4-7.el10_2.x86_64.rpm
python3-numpy-f2py-1.26.4-7.el10_2.x86_64.rpm

aarch64:
python3-numpy-1.26.4-7.el10_2.aarch64.rpm
python3-numpy-f2py-1.26.4-7.el10_2.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol10/SRPMS-updates/numpy-1.26.4-7.el10_2.src.rpm

Description of changes:

[1:1.26.4-7]
- Fix tests for IEEE long double on PPC (RHEL-145970)



ELBA-2026-39293 Oracle Linux 10 qemu-kvm bug fix and enhancement update


Oracle Linux Bug Fix Advisory ELBA-2026-39293

http://linux.oracle.com/errata/ELBA-2026-39293.html

The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:

x86_64:
qemu-guest-agent-10.1.0-16.el10_2.2.x86_64.rpm
qemu-img-10.1.0-16.el10_2.2.x86_64.rpm
qemu-kvm-10.1.0-16.el10_2.2.x86_64.rpm
qemu-kvm-audio-pa-10.1.0-16.el10_2.2.x86_64.rpm
qemu-kvm-block-blkio-10.1.0-16.el10_2.2.x86_64.rpm
qemu-kvm-block-curl-10.1.0-16.el10_2.2.x86_64.rpm
qemu-kvm-block-rbd-10.1.0-16.el10_2.2.x86_64.rpm
qemu-kvm-common-10.1.0-16.el10_2.2.x86_64.rpm
qemu-kvm-core-10.1.0-16.el10_2.2.x86_64.rpm
qemu-kvm-device-display-virtio-gpu-10.1.0-16.el10_2.2.x86_64.rpm
qemu-kvm-device-display-virtio-gpu-pci-10.1.0-16.el10_2.2.x86_64.rpm
qemu-kvm-device-display-virtio-vga-10.1.0-16.el10_2.2.x86_64.rpm
qemu-kvm-device-usb-host-10.1.0-16.el10_2.2.x86_64.rpm
qemu-kvm-device-usb-redirect-10.1.0-16.el10_2.2.x86_64.rpm
qemu-kvm-docs-10.1.0-16.el10_2.2.x86_64.rpm
qemu-kvm-tools-10.1.0-16.el10_2.2.x86_64.rpm
qemu-kvm-ui-egl-headless-10.1.0-16.el10_2.2.x86_64.rpm
qemu-kvm-ui-opengl-10.1.0-16.el10_2.2.x86_64.rpm
qemu-pr-helper-10.1.0-16.el10_2.2.x86_64.rpm

aarch64:
qemu-guest-agent-10.1.0-16.el10_2.2.aarch64.rpm
qemu-img-10.1.0-16.el10_2.2.aarch64.rpm
qemu-kvm-10.1.0-16.el10_2.2.aarch64.rpm
qemu-kvm-audio-pa-10.1.0-16.el10_2.2.aarch64.rpm
qemu-kvm-block-blkio-10.1.0-16.el10_2.2.aarch64.rpm
qemu-kvm-block-curl-10.1.0-16.el10_2.2.aarch64.rpm
qemu-kvm-block-rbd-10.1.0-16.el10_2.2.aarch64.rpm
qemu-kvm-common-10.1.0-16.el10_2.2.aarch64.rpm
qemu-kvm-core-10.1.0-16.el10_2.2.aarch64.rpm
qemu-kvm-device-display-virtio-gpu-10.1.0-16.el10_2.2.aarch64.rpm
qemu-kvm-device-display-virtio-gpu-pci-10.1.0-16.el10_2.2.aarch64.rpm
qemu-kvm-device-usb-host-10.1.0-16.el10_2.2.aarch64.rpm
qemu-kvm-device-usb-redirect-10.1.0-16.el10_2.2.aarch64.rpm
qemu-kvm-docs-10.1.0-16.el10_2.2.aarch64.rpm
qemu-kvm-tools-10.1.0-16.el10_2.2.aarch64.rpm
qemu-pr-helper-10.1.0-16.el10_2.2.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol10/SRPMS-updates/qemu-kvm-10.1.0-16.el10_2.2.src.rpm

Description of changes:

[10.1.0-16.el10_2.2]
- kvm-scsi-adjust-error_prepend-formatting.patch [RHEL-166007]
- kvm-scsi-always-send-valid-PREEMPT-TYPE-field.patch [RHEL-166007]
- kvm-scsi-register-again-after-PREEMPT-without-reservatio.patch [RHEL-166007]
- kvm-scsi-change-buf_size-to-unsigned-int-in-scsi_SG_IO.patch [RHEL-166033]
- kvm-scsi-handle-reservation-changes-across-migration.patch [RHEL-166033]
- Resolves: RHEL-166007
(live migration failed the VM just register key only [rhel-10.2.z])
- Resolves: RHEL-166033
(live migration failed or get failed WSFC test result during WSFC testing [rhel-10.2.z])

[10.1.0-16.el10_2.1]
- kvm-scsi-Don-t-consider-LOGICAL-UNIT-NOT-SUPPORTED-guest.patch [RHEL-164536]
- Resolves: RHEL-164536
(qemu-kvm doesn't retry SG-IO on 05/25/00 (ILLEGAL REQUEST / LOGICAL UNIT NOT SUPPORTED) [rhel-10.2.z])



ELBA-2026-34484 Oracle Linux 10 fontawesome4-fonts bug fix and enhancement update


Oracle Linux Bug Fix Advisory ELBA-2026-34484

http://linux.oracle.com/errata/ELBA-2026-34484.html

The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:

x86_64:
fontawesome4-fonts-4.7.0-24.el10_2.noarch.rpm
fontawesome4-fonts-web-4.7.0-24.el10_2.noarch.rpm

aarch64:
fontawesome4-fonts-4.7.0-24.el10_2.noarch.rpm
fontawesome4-fonts-web-4.7.0-24.el10_2.noarch.rpm

SRPMS:
http://oss.oracle.com/ol10/SRPMS-updates/fontawesome4-fonts-4.7.0-24.el10_2.src.rpm

Description of changes:

[1:4.7.0-24]
- Rebuilt to make web subpackage available in AppStream
Resolves: RHEL-190850



ELBA-2026-28580 Oracle Linux 10 rust-podman-sequoia bug fix and enhancement update


Oracle Linux Bug Fix Advisory ELBA-2026-28580

http://linux.oracle.com/errata/ELBA-2026-28580.html

The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:

x86_64:
podman-sequoia-0.4.0~pqc.3-1.el10_2.x86_64.rpm

aarch64:
podman-sequoia-0.4.0~pqc.3-1.el10_2.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol10/SRPMS-updates/rust-podman-sequoia-0.4.0~pqc.3-1.el10_2.src.rpm

Description of changes:

[0.4.0~pqc.3-1]
- Update to 0.4.0-pqc.3 for LLVM 22 compatibility



ELBA-2026-28587 Oracle Linux 10 gdm bug fix and enhancement update


Oracle Linux Bug Fix Advisory ELBA-2026-28587

http://linux.oracle.com/errata/ELBA-2026-28587.html

The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:

x86_64:
gdm-47.0-21.el10_2.x86_64.rpm
gdm-devel-47.0-21.el10_2.x86_64.rpm
gdm-pam-extensions-devel-47.0-21.el10_2.x86_64.rpm

aarch64:
gdm-47.0-21.el10_2.aarch64.rpm
gdm-devel-47.0-21.el10_2.aarch64.rpm
gdm-pam-extensions-devel-47.0-21.el10_2.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol10/SRPMS-updates/gdm-47.0-21.el10_2.src.rpm

Description of changes:

[1:47.0-21]
- Resolves: https://redhat.atlassian.net/browse/RHEL-178665

[1:47.0-20]
- Update how GDM handles Registering session/display to properly



ELBA-2026-26196 Oracle Linux 10 openscap bug fix and enhancement update


Oracle Linux Bug Fix Advisory ELBA-2026-26196

http://linux.oracle.com/errata/ELBA-2026-26196.html

The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:

x86_64:
openscap-1.4.4-1.el10_2.x86_64.rpm
openscap-engine-sce-1.4.4-1.el10_2.x86_64.rpm
openscap-scanner-1.4.4-1.el10_2.x86_64.rpm
openscap-utils-1.4.4-1.el10_2.x86_64.rpm

SRPMS:
http://oss.oracle.com/ol10/SRPMS-updates/openscap-1.4.4-1.el10_2.src.rpm

Description of changes:

[1:1.4.4-1]
- Upgrade to the latest upstream release (RHEL-167941)



ELBA-2026-25921 Oracle Linux 10 scap-security-guide bug fix and enhancement update


Oracle Linux Bug Fix Advisory ELBA-2026-25921

http://linux.oracle.com/errata/ELBA-2026-25921.html

The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:

x86_64:
scap-security-guide-0.1.81-1.0.1.el10_2.noarch.rpm
scap-security-guide-doc-0.1.81-1.0.1.el10_2.noarch.rpm

aarch64:
scap-security-guide-0.1.81-1.0.1.el10_2.noarch.rpm
scap-security-guide-doc-0.1.81-1.0.1.el10_2.noarch.rpm

SRPMS:
http://oss.oracle.com/ol10/SRPMS-updates/scap-security-guide-0.1.81-1.0.1.el10_2.src.rpm

Description of changes:

[0.1.81-1.0.1]
- Update OL8 STIG to V2R8 [Orabug: 39590112]
- Update OL9 STIG to V1R5 [Orabug: 39590112]
- Fix RH rerefences for OL10 [Orabug : 39590112]

[0.1.81-1]
- Rebase scap-security-guide to 0.1.81 (RHEL-180768)
- Rules *xccdf_org.ssgproject.content_rule_file_permission_user_init_files* and *xccdf_org.ssgproject.content_rule_file_permission_user_init_files_root* were updated to include text instructions on how to perform the remediation without losing previously set permissions on files that are not compliant. (RHEL-150283)
- Enabled specifying a custom text (including newlines) in multiple rules checking login banners (RHEL-118499)



ELBA-2026-25224 Oracle Linux 10 aide bug fix and enhancement update


Oracle Linux Bug Fix Advisory ELBA-2026-25224

http://linux.oracle.com/errata/ELBA-2026-25224.html

The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:

x86_64:
aide-0.19.2-4.el10_2.1.x86_64.rpm

aarch64:
aide-0.19.2-4.el10_2.1.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol10/SRPMS-updates/aide-0.19.2-4.el10_2.1.src.rpm

Description of changes:

[0.19.2-4.1]
- Re-add syslog_format config option dropped during rebase to 0.19.2
Resolves: RHEL-178845
- Add aide-migrate-config to automate config migration from pre-0.19 syntax



ELBA-2026-22537 Oracle Linux 10 cyrus-sasl bug fix and enhancement update


Oracle Linux Bug Fix Advisory ELBA-2026-22537

http://linux.oracle.com/errata/ELBA-2026-22537.html

The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:

x86_64:
cyrus-sasl-2.1.28-30.el10_2.x86_64.rpm
cyrus-sasl-devel-2.1.28-30.el10_2.x86_64.rpm
cyrus-sasl-gs2-2.1.28-30.el10_2.x86_64.rpm
cyrus-sasl-gssapi-2.1.28-30.el10_2.x86_64.rpm
cyrus-sasl-ldap-2.1.28-30.el10_2.x86_64.rpm
cyrus-sasl-lib-2.1.28-30.el10_2.x86_64.rpm
cyrus-sasl-md5-2.1.28-30.el10_2.x86_64.rpm
cyrus-sasl-plain-2.1.28-30.el10_2.x86_64.rpm
cyrus-sasl-scram-2.1.28-30.el10_2.x86_64.rpm
cyrus-sasl-sql-2.1.28-30.el10_2.x86_64.rpm

aarch64:
cyrus-sasl-2.1.28-30.el10_2.aarch64.rpm
cyrus-sasl-devel-2.1.28-30.el10_2.aarch64.rpm
cyrus-sasl-gs2-2.1.28-30.el10_2.aarch64.rpm
cyrus-sasl-gssapi-2.1.28-30.el10_2.aarch64.rpm
cyrus-sasl-ldap-2.1.28-30.el10_2.aarch64.rpm
cyrus-sasl-lib-2.1.28-30.el10_2.aarch64.rpm
cyrus-sasl-md5-2.1.28-30.el10_2.aarch64.rpm
cyrus-sasl-plain-2.1.28-30.el10_2.aarch64.rpm
cyrus-sasl-scram-2.1.28-30.el10_2.aarch64.rpm
cyrus-sasl-sql-2.1.28-30.el10_2.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol10/SRPMS-updates/cyrus-sasl-2.1.28-30.el10_2.src.rpm

Description of changes:

[2.1.28-30]
- Remove the sanity-ldapdb-plugin test



ELBA-2026-22533 Oracle Linux 10 haproxy bug fix and enhancement update


Oracle Linux Bug Fix Advisory ELBA-2026-22533

http://linux.oracle.com/errata/ELBA-2026-22533.html

The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:

x86_64:
haproxy-3.0.5-6.el10_2.1.x86_64.rpm

aarch64:
haproxy-3.0.5-6.el10_2.1.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol10/SRPMS-updates/haproxy-3.0.5-6.el10_2.1.src.rpm

Description of changes:

[3.0.5-6.1]
- peers: fix OOB heap write in dictionary cache update
Resolves: RHEL-173335



ELBA-2026-22532 Oracle Linux 10 nmstate bug fix and enhancement update


Oracle Linux Bug Fix Advisory ELBA-2026-22532

http://linux.oracle.com/errata/ELBA-2026-22532.html

The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:

x86_64:
nmstate-2.2.60-2.el10_2.x86_64.rpm
nmstate-devel-2.2.60-2.el10_2.x86_64.rpm
nmstate-libs-2.2.60-2.el10_2.x86_64.rpm
nmstate-static-2.2.60-2.el10_2.x86_64.rpm
python3-libnmstate-2.2.60-2.el10_2.x86_64.rpm

aarch64:
nmstate-2.2.60-2.el10_2.aarch64.rpm
nmstate-devel-2.2.60-2.el10_2.aarch64.rpm
nmstate-libs-2.2.60-2.el10_2.aarch64.rpm
nmstate-static-2.2.60-2.el10_2.aarch64.rpm
python3-libnmstate-2.2.60-2.el10_2.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol10/SRPMS-updates/nmstate-2.2.60-2.el10_2.src.rpm

Description of changes:

[2.2.60-2]
- Fix infiniband devices

[2.2.60-1]
- Upgrade to 2.2.60
- ipv4: Add new parameter prefix-route-metric RHEL-170697

[2.2.59-1]
- Upgrade to 2.2.59
- Add support for lock-mtu option. RHEL-151937



ELBA-2026-22525 Oracle Linux 10 squid bug fix and enhancement update


Oracle Linux Bug Fix Advisory ELBA-2026-22525

http://linux.oracle.com/errata/ELBA-2026-22525.html

The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:

x86_64:
squid-6.10-12.el10_2.1.x86_64.rpm

aarch64:
squid-6.10-12.el10_2.1.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol10/SRPMS-updates/squid-6.10-12.el10_2.1.src.rpm

Description of changes:

[7:6.10-12.1]
- Resolves: RHEL-172001 - Setting "http_reply_access" in squid.conf
causes a memory leak



ELBA-2026-22524 Oracle Linux 10 gnome-desktop3 bug fix and enhancement update


Oracle Linux Bug Fix Advisory ELBA-2026-22524

http://linux.oracle.com/errata/ELBA-2026-22524.html

The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:

x86_64:
gnome-desktop3-44.1-5.el10_2.x86_64.rpm
gnome-desktop3-devel-44.1-5.el10_2.x86_64.rpm
gnome-desktop4-44.1-5.el10_2.x86_64.rpm
gnome-desktop4-devel-44.1-5.el10_2.x86_64.rpm

aarch64:
gnome-desktop3-44.1-5.el10_2.aarch64.rpm
gnome-desktop3-devel-44.1-5.el10_2.aarch64.rpm
gnome-desktop4-44.1-5.el10_2.aarch64.rpm
gnome-desktop4-devel-44.1-5.el10_2.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol10/SRPMS-updates/gnome-desktop3-44.1-5.el10_2.src.rpm

Description of changes:

[44.1-5]
- Sync gnome-qr library patch series with upstream MR

[44.1-4]
- Get qrcodegen tar file from lookaside cache



ELBA-2026-19140 Oracle Linux 10 bootc bug fix and enhancement update


Oracle Linux Bug Fix Advisory ELBA-2026-19140

http://linux.oracle.com/errata/ELBA-2026-19140.html

The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:

x86_64:
bootc-1.15.2-1.el10_2.x86_64.rpm
system-reinstall-bootc-1.15.2-1.el10_2.x86_64.rpm

aarch64:
bootc-1.15.2-1.el10_2.aarch64.rpm
system-reinstall-bootc-1.15.2-1.el10_2.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol10/SRPMS-updates/bootc-1.15.2-1.el10_2.src.rpm

Description of changes:

[1.15.2-1]
- Release 1.15.2



ELBA-2026-19804 Oracle Linux 10 python-pip bug fix and enhancement update


Oracle Linux Bug Fix Advisory ELBA-2026-19804

http://linux.oracle.com/errata/ELBA-2026-19804.html

The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:

x86_64:
python3-pip-23.3.2-11.el10_2.noarch.rpm
python3-pip-wheel-23.3.2-11.el10_2.noarch.rpm

aarch64:
python3-pip-23.3.2-11.el10_2.noarch.rpm
python3-pip-wheel-23.3.2-11.el10_2.noarch.rpm

SRPMS:
http://oss.oracle.com/ol10/SRPMS-updates/python-pip-23.3.2-11.el10_2.src.rpm

Description of changes:

[23.3.2-11]
- Bump epoch for the virtual pip Provide, for this package to take
precedence over python3.14-pip

[23.3.2-10]
- Change the test source location

[23.3.2-8]
- rpminspect: Disable the unicode inspection



ELBA-2026-500007 Oracle Linux 10 sos bug fix update


Oracle Linux Bug Fix Advisory ELBA-2026-500007

http://linux.oracle.com/errata/ELBA-2026-500007.html

The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:

x86_64:
sos-4.10.2-2.0.2.el10_2.noarch.rpm

aarch64:
sos-4.10.2-2.0.2.el10_2.noarch.rpm

SRPMS:
http://oss.oracle.com/ol10/SRPMS-updates/sos-4.10.2-2.0.2.el10_2.src.rpm

Description of changes:

[4.10.2-2.0.2]
- Add optional proc/ and sys/ regular file de-duplication step and reduplication binary [Orabug: 38765115]



ELSA-2026-42668 Important: Oracle Linux 9 libtiff security update


Oracle Linux Security Advisory ELSA-2026-42668

http://linux.oracle.com/errata/ELSA-2026-42668.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
libtiff-4.4.0-18.el9_8.1.i686.rpm
libtiff-4.4.0-18.el9_8.1.x86_64.rpm
libtiff-devel-4.4.0-18.el9_8.1.i686.rpm
libtiff-devel-4.4.0-18.el9_8.1.x86_64.rpm
libtiff-tools-4.4.0-18.el9_8.1.x86_64.rpm

aarch64:
libtiff-4.4.0-18.el9_8.1.aarch64.rpm
libtiff-devel-4.4.0-18.el9_8.1.aarch64.rpm
libtiff-tools-4.4.0-18.el9_8.1.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/libtiff-4.4.0-18.el9_8.1.src.rpm

Related CVEs:

CVE-2026-12912

Description of changes:

[4.4.0-18.1]
- fix CVE-2026-12912: heap-buffer-overflow in PixarLog 8BITABGR decode with stride 3 (RHEL-189387)



ELSA-2026-42089 Important: Oracle Linux 9 glib2 security update


Oracle Linux Security Advisory ELSA-2026-42089

http://linux.oracle.com/errata/ELSA-2026-42089.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
glib2-2.68.4-19.el9_8.2.i686.rpm
glib2-2.68.4-19.el9_8.2.x86_64.rpm
glib2-devel-2.68.4-19.el9_8.2.i686.rpm
glib2-devel-2.68.4-19.el9_8.2.x86_64.rpm
glib2-doc-2.68.4-19.el9_8.2.noarch.rpm
glib2-static-2.68.4-19.el9_8.2.i686.rpm
glib2-static-2.68.4-19.el9_8.2.x86_64.rpm
glib2-tests-2.68.4-19.el9_8.2.x86_64.rpm

aarch64:
glib2-2.68.4-19.el9_8.2.aarch64.rpm
glib2-devel-2.68.4-19.el9_8.2.aarch64.rpm
glib2-doc-2.68.4-19.el9_8.2.noarch.rpm
glib2-static-2.68.4-19.el9_8.2.aarch64.rpm
glib2-tests-2.68.4-19.el9_8.2.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/glib2-2.68.4-19.el9_8.2.src.rpm

Related CVEs:

CVE-2026-58016

Description of changes:

[2.68.4-19.2]
- Fix CVE-2026-58016: broken node element nesting validation in
D-Bus introspection XML parsing
- Resolves: RHEL-190632



ELSA-2026-42736 Important: Oracle Linux 9 acl security update


Oracle Linux Security Advisory ELSA-2026-42736

http://linux.oracle.com/errata/ELSA-2026-42736.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
acl-2.4.0-1.el9_8.x86_64.rpm
libacl-2.4.0-1.el9_8.i686.rpm
libacl-2.4.0-1.el9_8.x86_64.rpm
libacl-devel-2.4.0-1.el9_8.i686.rpm
libacl-devel-2.4.0-1.el9_8.x86_64.rpm

aarch64:
acl-2.4.0-1.el9_8.aarch64.rpm
libacl-2.4.0-1.el9_8.aarch64.rpm
libacl-devel-2.4.0-1.el9_8.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/acl-2.4.0-1.el9_8.src.rpm

Related CVEs:

CVE-2026-54369
CVE-2026-54370

Description of changes:

[2.4.0-1]
- rebase to 2.4.0 to fix the following CVEs:
- CVE-2026-54369 - Symlink traversal privilege escalation via libacl functions (RHEL-186111)
- CVE-2026-54370 - TOCTOU Symlink Traversal via getfacl/setfacl (RHEL-186216)



ELSA-2026-42062 Important: Oracle Linux 9 webkit2gtk3 security update


Oracle Linux Security Advisory ELSA-2026-42062

http://linux.oracle.com/errata/ELSA-2026-42062.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
webkit2gtk3-2.52.5-1.el9_8.i686.rpm
webkit2gtk3-2.52.5-1.el9_8.x86_64.rpm
webkit2gtk3-devel-2.52.5-1.el9_8.i686.rpm
webkit2gtk3-devel-2.52.5-1.el9_8.x86_64.rpm
webkit2gtk3-jsc-2.52.5-1.el9_8.i686.rpm
webkit2gtk3-jsc-2.52.5-1.el9_8.x86_64.rpm
webkit2gtk3-jsc-devel-2.52.5-1.el9_8.i686.rpm
webkit2gtk3-jsc-devel-2.52.5-1.el9_8.x86_64.rpm

aarch64:
webkit2gtk3-2.52.5-1.el9_8.aarch64.rpm
webkit2gtk3-devel-2.52.5-1.el9_8.aarch64.rpm
webkit2gtk3-jsc-2.52.5-1.el9_8.aarch64.rpm
webkit2gtk3-jsc-devel-2.52.5-1.el9_8.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/webkit2gtk3-2.52.5-1.el9_8.src.rpm

Related CVEs:

CVE-2024-4367
CVE-2026-39872
CVE-2026-43663
CVE-2026-43676
CVE-2026-43699
CVE-2026-43701
CVE-2026-43705
CVE-2026-43707
CVE-2026-43712
CVE-2026-43713
CVE-2026-43715
CVE-2026-43716
CVE-2026-43720
CVE-2026-43721
CVE-2026-43725
CVE-2026-43726
CVE-2026-43727
CVE-2026-43731
CVE-2026-43732
CVE-2026-43734
CVE-2026-43740
CVE-2026-43742
CVE-2026-43745

Description of changes:

[2.52.5-1]
- Update to 2.52.5



ELSA-2026-41906 Important: Oracle Linux 9 httpd security, bug fix, and enhancement update


Oracle Linux Security Advisory ELSA-2026-41906

http://linux.oracle.com/errata/ELSA-2026-41906.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
httpd-2.4.62-13.0.1.el9_8.5.x86_64.rpm
httpd-core-2.4.62-13.0.1.el9_8.5.x86_64.rpm
httpd-devel-2.4.62-13.0.1.el9_8.5.x86_64.rpm
httpd-filesystem-2.4.62-13.0.1.el9_8.5.noarch.rpm
httpd-manual-2.4.62-13.0.1.el9_8.5.noarch.rpm
httpd-tools-2.4.62-13.0.1.el9_8.5.x86_64.rpm
mod_ldap-2.4.62-13.0.1.el9_8.5.x86_64.rpm
mod_lua-2.4.62-13.0.1.el9_8.5.x86_64.rpm
mod_proxy_html-2.4.62-13.0.1.el9_8.5.x86_64.rpm
mod_session-2.4.62-13.0.1.el9_8.5.x86_64.rpm
mod_ssl-2.4.62-13.0.1.el9_8.5.x86_64.rpm

aarch64:
httpd-2.4.62-13.0.1.el9_8.5.aarch64.rpm
httpd-core-2.4.62-13.0.1.el9_8.5.aarch64.rpm
httpd-devel-2.4.62-13.0.1.el9_8.5.aarch64.rpm
httpd-filesystem-2.4.62-13.0.1.el9_8.5.noarch.rpm
httpd-manual-2.4.62-13.0.1.el9_8.5.noarch.rpm
httpd-tools-2.4.62-13.0.1.el9_8.5.aarch64.rpm
mod_ldap-2.4.62-13.0.1.el9_8.5.aarch64.rpm
mod_lua-2.4.62-13.0.1.el9_8.5.aarch64.rpm
mod_proxy_html-2.4.62-13.0.1.el9_8.5.aarch64.rpm
mod_session-2.4.62-13.0.1.el9_8.5.aarch64.rpm
mod_ssl-2.4.62-13.0.1.el9_8.5.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/httpd-2.4.62-13.0.1.el9_8.5.src.rpm

Related CVEs:

CVE-2024-42516
CVE-2026-24072
CVE-2026-29169
CVE-2026-33006
CVE-2026-34355
CVE-2026-34356
CVE-2026-42535
CVE-2026-42536
CVE-2026-43951
CVE-2026-44119
CVE-2026-44185
CVE-2026-44186
CVE-2026-44631

Description of changes:

[2.4.62-13.0.1.el9_8.5]
- Replace index.html with Oracle's index page oracle_index.html.

[2.4.62-13.5]
- Resolves: RHEL-192752 - mod_proxy_html regression in CVE-2026-34355 fix

[2.4.62-13.4]
- Resolves: RHEL-186217 - httpd: Apache HTTP Server: Heap-based Buffer Overflow
via malicious backend servers (CVE-2026-34356)
- Resolves: RHEL-182578 - httpd: incomplete fix
for CVE-2023-38709 (CVE-2024-42516)
- Also addresses CVE-2026-24072, CVE-2026-33006, CVE-2026-42535, CVE-2026-43951,
CVE-2026-44119, CVE-2026-44186

[2.4.62-13.3]
- Resolves: RHEL-186186 - httpd: mod_proxy_html buffer handling
vulnerability (CVE-2026-34355)
- Resolves: RHEL-175636 - httpd: mod_dav_lock uses wrong lock discovery
(CVE-2026-29169)
- Resolves: RHEL-186196 - mod_xml2enc: fix bblen accounting in fix_skipto
(CVE-2026-42536)
- Resolves: RHEL-186164 - httpd: fix OCSP write buffer advancement
bug in mod_ssl (CVE-2026-44185)

[2.4.62-13.2]
- Resolves: RHEL-184312 - httpd: ap_regname restrict to reasonable captures
(CVE-2026-44631)

[2.4.62-13.1]
- Resolves: RHEL-173555 - httpd: Apache HTTP Server mod_proxy_ajp: Arbitrary
code execution via heap-based buffer overflow (CVE-2026-28780)
- Resolves: RHEL-175080 - httpd: NULL pointer dereference can cause a child
process crash (CVE-2026-33007)
- Resolves: RHEL-175100 - httpd: off-by-one out-of-bounds reads in AJP getter
functions (CVE-2026-33857)
- Resolves: RHEL-175028 - httpd: heap-based buffer over-read due to missing
null-termination check (CVE-2026-34032)
- Resolves: RHEL-175062 - httpd: heap-based buffer over-read and memory
disclosure in ajp_parse_data() (CVE-2026-34059)



ELSA-2026-41905 Important: Oracle Linux 9 dovecot security update


Oracle Linux Security Advisory ELSA-2026-41905

http://linux.oracle.com/errata/ELSA-2026-41905.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
dovecot-2.3.16-18.el9_8.1.i686.rpm
dovecot-2.3.16-18.el9_8.1.x86_64.rpm
dovecot-devel-2.3.16-18.el9_8.1.i686.rpm
dovecot-devel-2.3.16-18.el9_8.1.x86_64.rpm
dovecot-mysql-2.3.16-18.el9_8.1.x86_64.rpm
dovecot-pgsql-2.3.16-18.el9_8.1.x86_64.rpm
dovecot-pigeonhole-2.3.16-18.el9_8.1.x86_64.rpm

aarch64:
dovecot-2.3.16-18.el9_8.1.aarch64.rpm
dovecot-devel-2.3.16-18.el9_8.1.aarch64.rpm
dovecot-mysql-2.3.16-18.el9_8.1.aarch64.rpm
dovecot-pgsql-2.3.16-18.el9_8.1.aarch64.rpm
dovecot-pigeonhole-2.3.16-18.el9_8.1.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/dovecot-2.3.16-18.el9_8.1.src.rpm

Related CVEs:

CVE-2026-42006

Description of changes:

[1:2.3.16-18.1]
- fix CVE-2026-42006: IMAP parser list_count_limit bypass via open
parentheses (RHEL-188468)



ELSA-2026-41898 Important: Oracle Linux 9 .NET 10.0 security, bug fix, and enhancement update


Oracle Linux Security Advisory ELSA-2026-41898

http://linux.oracle.com/errata/ELSA-2026-41898.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
aspnetcore-runtime-10.0-10.0.10-1.0.1.el9_8.x86_64.rpm
aspnetcore-runtime-dbg-10.0-10.0.10-1.0.1.el9_8.x86_64.rpm
aspnetcore-targeting-pack-10.0-10.0.10-1.0.1.el9_8.x86_64.rpm
dotnet-apphost-pack-10.0-10.0.10-1.0.1.el9_8.x86_64.rpm
dotnet-host-10.0.10-1.0.1.el9_8.x86_64.rpm
dotnet-hostfxr-10.0-10.0.10-1.0.1.el9_8.x86_64.rpm
dotnet-runtime-10.0-10.0.10-1.0.1.el9_8.x86_64.rpm
dotnet-runtime-dbg-10.0-10.0.10-1.0.1.el9_8.x86_64.rpm
dotnet-sdk-10.0-10.0.110-1.0.1.el9_8.x86_64.rpm
dotnet-sdk-10.0-source-built-artifacts-10.0.110-1.0.1.el9_8.x86_64.rpm
dotnet-sdk-aot-10.0-10.0.110-1.0.1.el9_8.x86_64.rpm
dotnet-sdk-dbg-10.0-10.0.110-1.0.1.el9_8.x86_64.rpm
dotnet-targeting-pack-10.0-10.0.10-1.0.1.el9_8.x86_64.rpm
dotnet-templates-10.0-10.0.110-1.0.1.el9_8.x86_64.rpm

aarch64:
aspnetcore-runtime-10.0-10.0.10-1.0.1.el9_8.aarch64.rpm
aspnetcore-runtime-dbg-10.0-10.0.10-1.0.1.el9_8.aarch64.rpm
aspnetcore-targeting-pack-10.0-10.0.10-1.0.1.el9_8.aarch64.rpm
dotnet-apphost-pack-10.0-10.0.10-1.0.1.el9_8.aarch64.rpm
dotnet-host-10.0.10-1.0.1.el9_8.aarch64.rpm
dotnet-hostfxr-10.0-10.0.10-1.0.1.el9_8.aarch64.rpm
dotnet-runtime-10.0-10.0.10-1.0.1.el9_8.aarch64.rpm
dotnet-runtime-dbg-10.0-10.0.10-1.0.1.el9_8.aarch64.rpm
dotnet-sdk-10.0-10.0.110-1.0.1.el9_8.aarch64.rpm
dotnet-sdk-10.0-source-built-artifacts-10.0.110-1.0.1.el9_8.aarch64.rpm
dotnet-sdk-aot-10.0-10.0.110-1.0.1.el9_8.aarch64.rpm
dotnet-sdk-dbg-10.0-10.0.110-1.0.1.el9_8.aarch64.rpm
dotnet-targeting-pack-10.0-10.0.10-1.0.1.el9_8.aarch64.rpm
dotnet-templates-10.0-10.0.110-1.0.1.el9_8.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/dotnet10.0-10.0.110-1.0.1.el9_8.src.rpm

Related CVEs:

CVE-2026-47300
CVE-2026-47302
CVE-2026-47303
CVE-2026-47304
CVE-2026-50524
CVE-2026-50525
CVE-2026-50526
CVE-2026-50527
CVE-2026-50528
CVE-2026-50646
CVE-2026-50648
CVE-2026-50649
CVE-2026-50650
CVE-2026-50651
CVE-2026-50659
CVE-2026-56170
CVE-2026-57108

Description of changes:

[10.0.110-1.0.1]
- Add support for Oracle Linux

[10.0.110-1]
- Update to .NET SDK 10.0.110 and Runtime 10.0.10
- Resolves: RHEL-192462

[10.0.109-2]
- Reduce time to detect hanging builds
- Resolves: RHEL-191641



ELSA-2026-38796 Important: Oracle Linux 9 plexus-utils security update


Oracle Linux Security Advisory ELSA-2026-38796

http://linux.oracle.com/errata/ELSA-2026-38796.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
plexus-utils-3.3.0-14.el9_8.noarch.rpm

aarch64:
plexus-utils-3.3.0-14.el9_8.noarch.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/plexus-utils-3.3.0-14.el9_8.src.rpm

Related CVEs:

CVE-2025-67030

Description of changes:

[3.3.0-14]
- Fix CVE-2025-67030: Directory Traversal in Expand.extractFile
Resolves: RHEL-165350



ELSA-2026-41896 Important: Oracle Linux 9 .NET 9.0 security, bug fix, and enhancement update


Oracle Linux Security Advisory ELSA-2026-41896

http://linux.oracle.com/errata/ELSA-2026-41896.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
aspnetcore-runtime-9.0-9.0.18-1.0.1.el9_8.x86_64.rpm
aspnetcore-runtime-dbg-9.0-9.0.18-1.0.1.el9_8.x86_64.rpm
aspnetcore-targeting-pack-9.0-9.0.18-1.0.1.el9_8.x86_64.rpm
dotnet-apphost-pack-9.0-9.0.18-1.0.1.el9_8.x86_64.rpm
dotnet-hostfxr-9.0-9.0.18-1.0.1.el9_8.x86_64.rpm
dotnet-runtime-9.0-9.0.18-1.0.1.el9_8.x86_64.rpm
dotnet-runtime-dbg-9.0-9.0.18-1.0.1.el9_8.x86_64.rpm
dotnet-sdk-9.0-9.0.119-1.0.1.el9_8.x86_64.rpm
dotnet-sdk-9.0-source-built-artifacts-9.0.119-1.0.1.el9_8.x86_64.rpm
dotnet-sdk-aot-9.0-9.0.119-1.0.1.el9_8.x86_64.rpm
dotnet-sdk-dbg-9.0-9.0.119-1.0.1.el9_8.x86_64.rpm
dotnet-targeting-pack-9.0-9.0.18-1.0.1.el9_8.x86_64.rpm
dotnet-templates-9.0-9.0.119-1.0.1.el9_8.x86_64.rpm
netstandard-targeting-pack-2.1-9.0.119-1.0.1.el9_8.x86_64.rpm

aarch64:
aspnetcore-runtime-9.0-9.0.18-1.0.1.el9_8.aarch64.rpm
aspnetcore-runtime-dbg-9.0-9.0.18-1.0.1.el9_8.aarch64.rpm
aspnetcore-targeting-pack-9.0-9.0.18-1.0.1.el9_8.aarch64.rpm
dotnet-apphost-pack-9.0-9.0.18-1.0.1.el9_8.aarch64.rpm
dotnet-hostfxr-9.0-9.0.18-1.0.1.el9_8.aarch64.rpm
dotnet-runtime-9.0-9.0.18-1.0.1.el9_8.aarch64.rpm
dotnet-runtime-dbg-9.0-9.0.18-1.0.1.el9_8.aarch64.rpm
dotnet-sdk-9.0-9.0.119-1.0.1.el9_8.aarch64.rpm
dotnet-sdk-9.0-source-built-artifacts-9.0.119-1.0.1.el9_8.aarch64.rpm
dotnet-sdk-aot-9.0-9.0.119-1.0.1.el9_8.aarch64.rpm
dotnet-sdk-dbg-9.0-9.0.119-1.0.1.el9_8.aarch64.rpm
dotnet-targeting-pack-9.0-9.0.18-1.0.1.el9_8.aarch64.rpm
dotnet-templates-9.0-9.0.119-1.0.1.el9_8.aarch64.rpm
netstandard-targeting-pack-2.1-9.0.119-1.0.1.el9_8.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/dotnet9.0-9.0.119-1.0.1.el9_8.src.rpm

Related CVEs:

CVE-2026-47300
CVE-2026-47302
CVE-2026-47303
CVE-2026-47304
CVE-2026-50524
CVE-2026-50525
CVE-2026-50526
CVE-2026-50527
CVE-2026-50528
CVE-2026-50646
CVE-2026-50648
CVE-2026-50649
CVE-2026-50650
CVE-2026-50651
CVE-2026-50659
CVE-2026-56170
CVE-2026-57108

Description of changes:

[9.0.119-1.0.1]
- Add support for Oracle Linux

[9.0.119-1]
- Update to .NET SDK 9.0.119 and Runtime 9.0.18
- Resolves: RHEL-192472

[9.0.118-2]
- Reduce time to detect hanging builds
- Resolves: RHEL-191646



ELBA-2026-42071 Oracle Linux 9 qemu-kvm bug fix and enhancement update


Oracle Linux Bug Fix Advisory ELBA-2026-42071

http://linux.oracle.com/errata/ELBA-2026-42071.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
qemu-guest-agent-10.1.0-17.el9_8.5.x86_64.rpm
qemu-img-10.1.0-17.el9_8.5.x86_64.rpm
qemu-kvm-10.1.0-17.el9_8.5.x86_64.rpm
qemu-kvm-audio-pa-10.1.0-17.el9_8.5.x86_64.rpm
qemu-kvm-block-blkio-10.1.0-17.el9_8.5.x86_64.rpm
qemu-kvm-block-curl-10.1.0-17.el9_8.5.x86_64.rpm
qemu-kvm-block-rbd-10.1.0-17.el9_8.5.x86_64.rpm
qemu-kvm-common-10.1.0-17.el9_8.5.x86_64.rpm
qemu-kvm-core-10.1.0-17.el9_8.5.x86_64.rpm
qemu-kvm-device-display-virtio-gpu-10.1.0-17.el9_8.5.x86_64.rpm
qemu-kvm-device-display-virtio-gpu-pci-10.1.0-17.el9_8.5.x86_64.rpm
qemu-kvm-device-display-virtio-vga-10.1.0-17.el9_8.5.x86_64.rpm
qemu-kvm-device-usb-host-10.1.0-17.el9_8.5.x86_64.rpm
qemu-kvm-device-usb-redirect-10.1.0-17.el9_8.5.x86_64.rpm
qemu-kvm-docs-10.1.0-17.el9_8.5.x86_64.rpm
qemu-kvm-tools-10.1.0-17.el9_8.5.x86_64.rpm
qemu-kvm-ui-egl-headless-10.1.0-17.el9_8.5.x86_64.rpm
qemu-kvm-ui-opengl-10.1.0-17.el9_8.5.x86_64.rpm
qemu-pr-helper-10.1.0-17.el9_8.5.x86_64.rpm

aarch64:
qemu-guest-agent-10.1.0-17.el9_8.5.aarch64.rpm
qemu-img-10.1.0-17.el9_8.5.aarch64.rpm
qemu-kvm-10.1.0-17.el9_8.5.aarch64.rpm
qemu-kvm-audio-pa-10.1.0-17.el9_8.5.aarch64.rpm
qemu-kvm-block-blkio-10.1.0-17.el9_8.5.aarch64.rpm
qemu-kvm-block-curl-10.1.0-17.el9_8.5.aarch64.rpm
qemu-kvm-block-rbd-10.1.0-17.el9_8.5.aarch64.rpm
qemu-kvm-common-10.1.0-17.el9_8.5.aarch64.rpm
qemu-kvm-core-10.1.0-17.el9_8.5.aarch64.rpm
qemu-kvm-device-display-virtio-gpu-10.1.0-17.el9_8.5.aarch64.rpm
qemu-kvm-device-display-virtio-gpu-pci-10.1.0-17.el9_8.5.aarch64.rpm
qemu-kvm-device-usb-host-10.1.0-17.el9_8.5.aarch64.rpm
qemu-kvm-device-usb-redirect-10.1.0-17.el9_8.5.aarch64.rpm
qemu-kvm-docs-10.1.0-17.el9_8.5.aarch64.rpm
qemu-kvm-tools-10.1.0-17.el9_8.5.aarch64.rpm
qemu-pr-helper-10.1.0-17.el9_8.5.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/qemu-kvm-10.1.0-17.el9_8.5.src.rpm

Description of changes:

[10.1.0-17.el9_8.5]
- kvm-file-posix-populate-pwrite_zeroes_alignment.patch [RHEL-207387]
- kvm-block-use-pwrite_zeroes_alignment-when-writing-first.patch [RHEL-207387]
- kvm-iotests-add-Linux-loop-device-image-creation-test.patch [RHEL-207387]
- Resolves: RHEL-207387
(qemu-img create/convert fails on target block device with 4k sector size [rhel-9.8.z])



ELSA-2026-41894 Important: Oracle Linux 9 .NET 8.0 security, bug fix, and enhancement update


Oracle Linux Security Advisory ELSA-2026-41894

http://linux.oracle.com/errata/ELSA-2026-41894.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
aspnetcore-runtime-8.0-8.0.29-1.0.1.el9_8.x86_64.rpm
aspnetcore-runtime-dbg-8.0-8.0.29-1.0.1.el9_8.x86_64.rpm
aspnetcore-targeting-pack-8.0-8.0.29-1.0.1.el9_8.x86_64.rpm
dotnet-apphost-pack-8.0-8.0.29-1.0.1.el9_8.x86_64.rpm
dotnet-hostfxr-8.0-8.0.29-1.0.1.el9_8.x86_64.rpm
dotnet-runtime-8.0-8.0.29-1.0.1.el9_8.x86_64.rpm
dotnet-runtime-dbg-8.0-8.0.29-1.0.1.el9_8.x86_64.rpm
dotnet-sdk-8.0-8.0.129-1.0.1.el9_8.x86_64.rpm
dotnet-sdk-8.0-source-built-artifacts-8.0.129-1.0.1.el9_8.x86_64.rpm
dotnet-sdk-dbg-8.0-8.0.129-1.0.1.el9_8.x86_64.rpm
dotnet-targeting-pack-8.0-8.0.29-1.0.1.el9_8.x86_64.rpm
dotnet-templates-8.0-8.0.129-1.0.1.el9_8.x86_64.rpm

aarch64:
aspnetcore-runtime-8.0-8.0.29-1.0.1.el9_8.aarch64.rpm
aspnetcore-runtime-dbg-8.0-8.0.29-1.0.1.el9_8.aarch64.rpm
aspnetcore-targeting-pack-8.0-8.0.29-1.0.1.el9_8.aarch64.rpm
dotnet-apphost-pack-8.0-8.0.29-1.0.1.el9_8.aarch64.rpm
dotnet-hostfxr-8.0-8.0.29-1.0.1.el9_8.aarch64.rpm
dotnet-runtime-8.0-8.0.29-1.0.1.el9_8.aarch64.rpm
dotnet-runtime-dbg-8.0-8.0.29-1.0.1.el9_8.aarch64.rpm
dotnet-sdk-8.0-8.0.129-1.0.1.el9_8.aarch64.rpm
dotnet-sdk-8.0-source-built-artifacts-8.0.129-1.0.1.el9_8.aarch64.rpm
dotnet-sdk-dbg-8.0-8.0.129-1.0.1.el9_8.aarch64.rpm
dotnet-targeting-pack-8.0-8.0.29-1.0.1.el9_8.aarch64.rpm
dotnet-templates-8.0-8.0.129-1.0.1.el9_8.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/dotnet8.0-8.0.129-1.0.1.el9_8.src.rpm

Related CVEs:

CVE-2026-47300
CVE-2026-47302
CVE-2026-47303
CVE-2026-47304
CVE-2026-50524
CVE-2026-50525
CVE-2026-50526
CVE-2026-50527
CVE-2026-50528
CVE-2026-50646
CVE-2026-50648
CVE-2026-50649
CVE-2026-50650
CVE-2026-50651
CVE-2026-50659
CVE-2026-56170
CVE-2026-57108

Description of changes:

[8.0.129-1.0.1]
- Add support for Oracle Linux

[8.0.129-1]
- Update to .NET SDK 8.0.129 and Runtime 8.0.29
- Resolves: RHEL-192467

[8.0.128-2]
- Reduce time to detect hanging builds
- Resolves: RHEL-191652



ELBA-2026-39310 Oracle Linux 9 papi bug fix and enhancement update


Oracle Linux Bug Fix Advisory ELBA-2026-39310

http://linux.oracle.com/errata/ELBA-2026-39310.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
papi-7.2.0-1.el9_8.1.i686.rpm
papi-7.2.0-1.el9_8.1.x86_64.rpm
papi-devel-7.2.0-1.el9_8.1.i686.rpm
papi-devel-7.2.0-1.el9_8.1.x86_64.rpm
papi-libs-7.2.0-1.el9_8.1.i686.rpm
papi-libs-7.2.0-1.el9_8.1.x86_64.rpm
papi-testsuite-7.2.0-1.el9_8.1.x86_64.rpm

aarch64:
papi-7.2.0-1.el9_8.1.aarch64.rpm
papi-devel-7.2.0-1.el9_8.1.aarch64.rpm
papi-libs-7.2.0-1.el9_8.1.aarch64.rpm
papi-testsuite-7.2.0-1.el9_8.1.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/papi-7.2.0-1.el9_8.1.src.rpm

Description of changes:

[7.2.0-1.1]
- Generate Fortran headers deterministically to fix multilib file
conflict on papi-devel. (RHEL-145965, RHEL-180678)

[7.2.0-1]
- Rebase to papi 7.2.0
- Update license tag to BSD-3-Clause
- Remove old patches and add new patches for 7.2.0 compatibility
- Update configure options and package files
- Resolves: RHEL-121673



ELBA-2026-28258 Oracle Linux 9 systemd bug fix and enhancement update


Oracle Linux Bug Fix Advisory ELBA-2026-28258

http://linux.oracle.com/errata/ELBA-2026-28258.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
rhel-net-naming-sysattrs-252-67.0.1.el9_8.4.noarch.rpm
systemd-252-67.0.1.el9_8.4.i686.rpm
systemd-252-67.0.1.el9_8.4.x86_64.rpm
systemd-boot-unsigned-252-67.0.1.el9_8.4.x86_64.rpm
systemd-container-252-67.0.1.el9_8.4.i686.rpm
systemd-container-252-67.0.1.el9_8.4.x86_64.rpm
systemd-devel-252-67.0.1.el9_8.4.i686.rpm
systemd-devel-252-67.0.1.el9_8.4.x86_64.rpm
systemd-journal-remote-252-67.0.1.el9_8.4.x86_64.rpm
systemd-libs-252-67.0.1.el9_8.4.i686.rpm
systemd-libs-252-67.0.1.el9_8.4.x86_64.rpm
systemd-oomd-252-67.0.1.el9_8.4.x86_64.rpm
systemd-pam-252-67.0.1.el9_8.4.x86_64.rpm
systemd-resolved-252-67.0.1.el9_8.4.x86_64.rpm
systemd-rpm-macros-252-67.0.1.el9_8.4.noarch.rpm
systemd-udev-252-67.0.1.el9_8.4.x86_64.rpm
systemd-ukify-252-67.0.1.el9_8.4.noarch.rpm

aarch64:
rhel-net-naming-sysattrs-252-67.0.1.el9_8.4.noarch.rpm
systemd-252-67.0.1.el9_8.4.aarch64.rpm
systemd-boot-unsigned-252-67.0.1.el9_8.4.aarch64.rpm
systemd-container-252-67.0.1.el9_8.4.aarch64.rpm
systemd-devel-252-67.0.1.el9_8.4.aarch64.rpm
systemd-journal-remote-252-67.0.1.el9_8.4.aarch64.rpm
systemd-libs-252-67.0.1.el9_8.4.aarch64.rpm
systemd-oomd-252-67.0.1.el9_8.4.aarch64.rpm
systemd-pam-252-67.0.1.el9_8.4.aarch64.rpm
systemd-resolved-252-67.0.1.el9_8.4.aarch64.rpm
systemd-rpm-macros-252-67.0.1.el9_8.4.noarch.rpm
systemd-udev-252-67.0.1.el9_8.4.aarch64.rpm
systemd-ukify-252-67.0.1.el9_8.4.noarch.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/systemd-252-67.0.1.el9_8.4.src.rpm

Description of changes:

[252-67.0.1.el9_8.4]
- serialize: don't allocate 1M on the stack just like that [LINUX-16166]
- Route logs from container mapped uids to the system journal [Orabug: 38135007]
- Drop delay when nspawn fails to reset loginuid [Orabug: 37793135]
- Improve logging for api bus connection and subscribers [Orabug: 38040980]
- Defer processing of timeout events in sd-bus api [Orabug: 38064217]
- coredump: use %d in kernel core pattern - CVE-2025-4598
- Add bus description to sd-bus outgoing sockets [Orabug: 37347576]
- Add log messages about daemon-reload requester and duration [Orabug: 37347576]
- Reverted back to previous Tony Lam patch [Orabug: 25897792] until issue with [Orabug: 36564551] is resolved.
- drop IN_ATTRIB from parent directory inotify watches [Orabug: 37118224]
- 1A) Fix local-fs and remote-fs targets during system boot (replaces old Orabug: 25897792) [Orabug: 36269319]
- 1B) Add "systemd-fstab-generator-reload-targets.service" file [Orabug: 36269319]
- 1C) Add required rpms for correct kickstart/systemd functionality within systemd.spec [Orabug: 36269319]
- 1D) Important: Review 1001-systemd-fstab-generator-reload-targets.patch for important build details/steps [Orabug: 36269319]
- Due to a new [Orabug: 36564551] filed on April 29 2024, reverting from back to
- previous Tony Lam patch [Orabug: 25897792] until issue with [Orabug: 36564551] is resolved.
- drop IN_ATTRIB from parent directory inotify watches [Orabug: 37118224]
- Reverted back to previous Tony Lam patch [Orabug: 25897792] until issue with [Orabug: 36564551] is resolved.
- Re-Added 1001-Fix-missing-netdev-for-iscsi-entry-in-fstab.patch [Orabug: 25897792]
- Backport upstream pstore dmesg fix [Orabug: 34868110]
- Remove upstream references [Orabug: 33995357]
- Disable unprivileged BPF by default [Orabug: 32870980]
- udev rules: fix memory hot add and remove [Orabug: 31310273]
- set "RemoveIPC=no" in logind.conf as default for OL7.2 [Orabug: 22224874]
- allow dm remove ioctl to co-operate with UEK3 [Orabug: 18467469]
- shutdown: get only active md arrays. [Orabug: 34467234]
- Wait for an extra configurable time before udevd kills a worker [Orabug: 36017407]
- Removed unneeded patches from the systemd.spec
- 1A) 1004-orabug34272490-0001-core-device-ignore-DEVICE_FOUND_UDEV-bit-on-switchin.patch [Orabug: 34272490]
- 1B) 1005-orabug34272490-0002-core-device-drop-unnecessary-condition.patch [Orabug: 34272490]
- 1C) 1007-orabug34868110-pstore-fixes-for-dmesg.txt-reconstruction.patch [Orabug: 34868110]
- Removed the following, associated with [Orabug: 36269319]:
- 2A) Remove 1001-systemd-fstab-generator-reload-targets.patch
- 2B) Remove Fix local-fs and remote-fs targets during system boot [Orabug: 36269319]
- 2C) Remove "systemd-fstab-generator-reload-targets.service" file [Orabug: 36269319]
- 2D) Remove required rpms for correct kickstart/systemd functionality within systemd.spec [Orabug: 36269319]
- 2E) Remove Important: Review 1001-systemd-fstab-generator-reload-targets.patch for important build details/steps [Orabug: 36269319]

[252-67.4]
- fstab-generator: support swap on network block devices (RHEL-166186)

[252-67.3]
- nspawn: apply BindUser/Ephemeral from settings file only if trusted (RHEL-163870)
- nspawn: normalize pivot_root paths (RHEL-163870)
- udev: check for invalid chars in various fields received from the kernel (RHEL-163876)
- udev: fix review mixup (RHEL-163876)
- udev/scsi-id: check for invalid chars in various fields received from the kernel (RHEL-163876)

[252-67.2]
- core: validate input cgroup path more prudently (RHEL-152082)

[252-67.1]
- manager: fix scope for environment generators (RHEL-154262)



ELBA-2026-28249 Oracle Linux 9 cloud-init bug fix and enhancement update


Oracle Linux Bug Fix Advisory ELBA-2026-28249

http://linux.oracle.com/errata/ELBA-2026-28249.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
cloud-init-24.4-8.0.1.el9_8.1.noarch.rpm

aarch64:
cloud-init-24.4-8.0.1.el9_8.1.noarch.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/cloud-init-24.4-8.0.1.el9_8.1.src.rpm

Description of changes:

[24.4-8.0.1.el9_8.1]
- Fix Oracle Datasource network and getdata methods for OCI OL [Orabug: 35950168]
- Fix log file permission [Orabug: 35302969]
- Update detection logic for OL distros in config template [Orabug: 34845400]
- Added missing services in rhel/systemd/cloud-init.service [Orabug: 32183938]
- Added missing services in cloud-init.service.tmpl for sshd [Orabug: 32183938]
- Forward port applicable cloud-init 18.4-2.0.3 changes to cloud-init-18-5 [Orabug: 30435672]
- limit permissions [Orabug: 31352433]
- Changes to ignore all enslaved interfaces [Orabug: 30092148]
- Make Oracle datasource detect dracut based config files [Orabug: 29956753]
- add modified version of enable-ec2_utils-to-stop-retrying-to-get-ec2-metadata.patch:
1. Enable ec2_utils.py having a way to stop retrying to get ec2 metadata
2. Apply stop retrying to get ec2 metadata to helper/openstack.py MetadataReader
Resolves: Oracle-Bug:41660 (Bugzilla)
- added OL to list of known distros
Resolves: rhbz#1427280
Resolves: rhbz#1427280

[24.4-8.el9_8.1]
- ci-fix-Pass-interface-string-to-get_newest_lease-6648.patch [RHEL-159095]
- ci-fix-cloudstack-Improve-domain-name-DHCP-lease-lookup.patch [RHEL-159095]
- ci-downstream-fix-test_cloudstack.py-since-pytest-fixtu.patch [RHEL-159095]
- Resolves: RHEL-159095
(CLONE - [GSS][Secure Support] [RHEL-9] cloud-init requests lease before DHCP can provide one [rhel-9.8.z])



ELBA-2026-50369 Oracle Linux 9 image-builder bug fix update


Oracle Linux Bug Fix Advisory ELBA-2026-50369

http://linux.oracle.com/errata/ELBA-2026-50369.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
image-builder-72.0.0-1.0.1.el9.x86_64.rpm

aarch64:
image-builder-72.0.0-1.0.1.el9.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/image-builder-72.0.0-1.0.1.el9.src.rpm

Description of changes:

[72.0.0-1.0.1]
- Adopt upstream image-builder 72.0.0 tarball and spec file [Orabug: 39666668]
- Adopt Oracle Linux Support merged upstream in PR 2404



ELBA-2026-39179-1 Oracle Linux 8 kernel bug fix update


Oracle Linux Bug Fix Advisory ELBA-2026-39179-1

http://linux.oracle.com/errata/ELBA-2026-39179-1.html

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:

x86_64:
bpftool-4.18.0-553.144.1.0.1.el8_10.x86_64.rpm
kernel-4.18.0-553.144.1.0.1.el8_10.x86_64.rpm
kernel-abi-stablelists-4.18.0-553.144.1.0.1.el8_10.noarch.rpm
kernel-core-4.18.0-553.144.1.0.1.el8_10.x86_64.rpm
kernel-cross-headers-4.18.0-553.144.1.0.1.el8_10.x86_64.rpm
kernel-debug-4.18.0-553.144.1.0.1.el8_10.x86_64.rpm
kernel-debug-core-4.18.0-553.144.1.0.1.el8_10.x86_64.rpm
kernel-debug-devel-4.18.0-553.144.1.0.1.el8_10.x86_64.rpm
kernel-debug-modules-4.18.0-553.144.1.0.1.el8_10.x86_64.rpm
kernel-debug-modules-extra-4.18.0-553.144.1.0.1.el8_10.x86_64.rpm
kernel-devel-4.18.0-553.144.1.0.1.el8_10.x86_64.rpm
kernel-doc-4.18.0-553.144.1.0.1.el8_10.noarch.rpm
kernel-headers-4.18.0-553.144.1.0.1.el8_10.x86_64.rpm
kernel-modules-4.18.0-553.144.1.0.1.el8_10.x86_64.rpm
kernel-modules-extra-4.18.0-553.144.1.0.1.el8_10.x86_64.rpm
kernel-tools-4.18.0-553.144.1.0.1.el8_10.x86_64.rpm
kernel-tools-libs-4.18.0-553.144.1.0.1.el8_10.x86_64.rpm
kernel-tools-libs-devel-4.18.0-553.144.1.0.1.el8_10.x86_64.rpm
perf-4.18.0-553.144.1.0.1.el8_10.x86_64.rpm
python3-perf-4.18.0-553.144.1.0.1.el8_10.x86_64.rpm

SRPMS:
http://oss.oracle.com/ol8/SRPMS-updates/kernel-4.18.0-553.144.1.0.1.el8_10.src.rpm

Description of changes:

[4.18.0-553.144.1.0.1]
- scsi: core: Restrict legal sdev_state transitions via sysfs (Uday Shankar) [Orabug: 37778230]

[4.18.0-553.144.1]
- Update Oracle Linux certificates (Kevin Lyons)
- Disable signing for aarch64 (Ilya Okomin)
- Oracle Linux RHCK Module Signing Key was added to the kernel trusted keys list (olkmod_signing_key.pem) [Orabug: 29539237]
- Update x509.genkey [Orabug: 24817676]
- Conflict with shim-ia32 and shim-x64