Rocky Linux 971 Published by

Rocky Linux has issued important security advisories for versions 8 and 9, patching vulnerabilities in packages such as Node.js, Firefox, PipeWire, libXfont2, yelp, gstreamer1-plugins-bad-free, and libtiff. Advisory RLSA-2026:47058 addresses Node.js 22 while RLSA-2026:47057 covers Node.js 24, affecting module.nodejs and associated packaging components on Rocky Linux 9. Distinct updates also target Firefox and multimedia libraries for Rocky Linux 9, plus yelp, compat-libtiff3, and libtiff packages for the older Rocky Linux 8 distribution.

RLSA-2026:47058: Important: nodejs:22 security update
RLSA-2026:47057: Important: nodejs:24 security update
RLSA-2026:47104: Important: firefox security update
RLSA-2026:47082: Important: pipewire security update
RLSA-2026:47084: Important: libXfont2 security update
RLSA-2026:47178: Important: yelp security update
RLSA-2026:47179: Important: gstreamer1-plugins-bad-free security update
RLSA-2026:47184: Important: libtiff security update
RLSA-2026:47183: Important: compat-libtiff3 security update
RLSA-2026:47177: Important: yelp security update




RLSA-2026:47058: Important: nodejs:22 security update


An update is available for module.nodejs, nodejs, module.nodejs-packaging, nodejs-packaging, nodejs-nodemon, module.nodejs-nodemon.
This update affects Rocky Linux 9.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RLSA-2026:47058: Important: nodejs:22 security update



RLSA-2026:47057: Important: nodejs:24 security update


An update is available for module.nodejs, nodejs, module.nodejs-packaging, nodejs-packaging, nodejs-nodemon, module.nodejs-nodemon.
This update affects Rocky Linux 9.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RLSA-2026:47057: Important: nodejs:24 security update



RLSA-2026:47104: Important: firefox security update


An update is available for firefox.
This update affects Rocky Linux 9.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RLSA-2026:47104: Important: firefox security update



RLSA-2026:47082: Important: pipewire security update


An update is available for pipewire.
This update affects Rocky Linux 9.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RLSA-2026:47082: Important: pipewire security update



RLSA-2026:47084: Important: libXfont2 security update


An update is available for libXfont2.
This update affects Rocky Linux 9.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RLSA-2026:47084: Important: libXfont2 security update



RLSA-2026:47178: Important: yelp security update


An update is available for yelp.
This update affects Rocky Linux 9.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RLSA-2026:47178: Important: yelp security update



RLSA-2026:47179: Important: gstreamer1-plugins-bad-free security update


An update is available for gstreamer1-plugins-bad-free.
This update affects Rocky Linux 9.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RLSA-2026:47179: Important: gstreamer1-plugins-bad-free security update



RLSA-2026:47184: Important: libtiff security update


An update is available for libtiff.
This update affects Rocky Linux 8.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RLSA-2026:47184: Important: libtiff security update



RLSA-2026:47183: Important: compat-libtiff3 security update


An update is available for compat-libtiff3.
This update affects Rocky Linux 8.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RLSA-2026:47183: Important: compat-libtiff3 security update



RLSA-2026:47177: Important: yelp security update


An update is available for yelp.
This update affects Rocky Linux 8.
A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RLSA-2026:47177: Important: yelp security update