Rocky Linux 938 Published by

Rocky Linux just dropped a wave of RLSA security advisories covering versions 8, 9, and 10. The heavy hitters are Important patches for nginx 1.24, PostgreSQL 18 and 16, python-urllib3, and Firefox, which means ignoring them leaves the digital doors wide open. Moderate fixes target libpng, opencryptoki, and libsolv, while libtasn1 and libxml2 get tagged Low.

RLSA-2026:28212: Important: nginx:1.24 security update
RLSA-2026:28243: Moderate: libxslt security update
RLSA-2026:28231: Moderate: opencryptoki security update
RLSA-2026:28000: Important: python-urllib3 security update
RLSA-2026:27740: Moderate: golang-github-openprinting-ipp-usb security update
RLSA-2026:28234: Low: libxml2 security update
RLSA-2026:27742: Important: postgresql18 security update
RLSA-2026:27929: Important: python3.14-urllib3 security update
RLSA-2026:28233: Moderate: libpng security update
RLSA-2026:27842: Important: memcached security update
RLSA-2026:26566: Important: xorg-x11-server-Xwayland security, bug fix, and enhancement update
RLSA-2026:28236: Moderate: libsolv security update
RLSA-2026:28235: Low: libtasn1 security update
RLSA-2026:27733: Important: firefox security update
RLSA-2026:28210: Moderate: vim security update
RLSA-2026:27743: Important: postgresql16 security update
RLSA-2026:28158: Important: python-urllib3 security update
RLSA-2026:28256: Moderate: opencryptoki security update
RLSA-2026:28255: Moderate: libpng security update
RLSA-2026:28253: Low: libtasn1 security update
RLSA-2026:28244: Moderate: libpng15 security update
RLSA-2026:27734: Important: firefox security update
RLSA-2026:28999: Important: postgresql:12 security update




RLSA-2026:28212: Important: nginx:1.24 security update


An update is available for nginx, module.nginx.
This update affects Rocky Linux 9.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RLSA-2026:28212: Important: nginx:1.24 security update



RLSA-2026:28243: Moderate: libxslt security update


An update is available for libxslt.
This update affects Rocky Linux 9.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RLSA-2026:28243: Moderate: libxslt security update



RLSA-2026:28231: Moderate: opencryptoki security update


An update is available for opencryptoki.
This update affects Rocky Linux 10.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RLSA-2026:28231: Moderate: opencryptoki security update



RLSA-2026:28000: Important: python-urllib3 security update


An update is available for python-urllib3.
This update affects Rocky Linux 10.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RLSA-2026:28000: Important: python-urllib3 security update



RLSA-2026:27740: Moderate: golang-github-openprinting-ipp-usb security update


An update is available for golang-github-openprinting-ipp-usb.
This update affects Rocky Linux 10.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RLSA-2026:27740: Moderate: golang-github-openprinting-ipp-usb security update



RLSA-2026:28234: Low: libxml2 security update


An update is available for libxml2.
This update affects Rocky Linux 10.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RLSA-2026:28234: Low: libxml2 security update



RLSA-2026:27742: Important: postgresql18 security update


An update is available for postgresql18.
This update affects Rocky Linux 10.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RLSA-2026:27742: Important: postgresql18 security update



RLSA-2026:27929: Important: python3.14-urllib3 security update


An update is available for python3.14-urllib3.
This update affects Rocky Linux 10.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RLSA-2026:27929: Important: python3.14-urllib3 security update



RLSA-2026:28233: Moderate: libpng security update


An update is available for libpng.
This update affects Rocky Linux 10.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RLSA-2026:28233: Moderate: libpng security update



RLSA-2026:27842: Important: memcached security update


An update is available for memcached.
This update affects Rocky Linux 10.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RLSA-2026:27842: Important: memcached security update



RLSA-2026:26566: Important: xorg-x11-server-Xwayland security, bug fix, and enhancement update


An update is available for xorg-x11-server-Xwayland.
This update affects Rocky Linux 10.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RLSA-2026:26566: Important: xorg-x11-server-Xwayland security, bug fix, and enhancement update



RLSA-2026:28236: Moderate: libsolv security update


An update is available for libsolv.
This update affects Rocky Linux 10.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RLSA-2026:28236: Moderate: libsolv security update



RLSA-2026:28235: Low: libtasn1 security update


An update is available for libtasn1.
This update affects Rocky Linux 10.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RLSA-2026:28235: Low: libtasn1 security update



RLSA-2026:27733: Important: firefox security update


An update is available for firefox.
This update affects Rocky Linux 10.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RLSA-2026:27733: Important: firefox security update



RLSA-2026:28210: Moderate: vim security update


An update is available for vim.
This update affects Rocky Linux 10.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RLSA-2026:28210: Moderate: vim security update



RLSA-2026:27743: Important: postgresql16 security update


An update is available for postgresql16.
This update affects Rocky Linux 10.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RLSA-2026:27743: Important: postgresql16 security update



RLSA-2026:28158: Important: python-urllib3 security update


An update is available for python-urllib3.
This update affects Rocky Linux 9.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RLSA-2026:28158: Important: python-urllib3 security update



RLSA-2026:28256: Moderate: opencryptoki security update


An update is available for opencryptoki.
This update affects Rocky Linux 9.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RLSA-2026:28256: Moderate: opencryptoki security update



RLSA-2026:28255: Moderate: libpng security update


An update is available for libpng.
This update affects Rocky Linux 9.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RLSA-2026:28255: Moderate: libpng security update



RLSA-2026:28253: Low: libtasn1 security update


An update is available for libtasn1.
This update affects Rocky Linux 9.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RLSA-2026:28253: Low: libtasn1 security update



RLSA-2026:28244: Moderate: libpng15 security update


An update is available for libpng15.
This update affects Rocky Linux 9.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RLSA-2026:28244: Moderate: libpng15 security update



RLSA-2026:27734: Important: firefox security update


An update is available for firefox.
This update affects Rocky Linux 9.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RLSA-2026:27734: Important: firefox security update



RLSA-2026:28999: Important: postgresql:12 security update


An update is available for postgres-decoderbufs, module.postgres-decoderbufs, module.pgaudit, module.pg_repack, pgaudit, pg_repack.
This update affects Rocky Linux 8.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RLSA-2026:28999: Important: postgresql:12 security update