Oracle Linux 6502 Published by

Oracle Linux administrators must install a wide array of security advisories that patch critical flaws across system libraries, container tools, and database servers. These updates address numerous newly disclosed vulnerabilities, including out-of-bounds memory access errors in opencryptoki, buffer over-read flaws in postfix, and use-after-free defects in network drivers. Key components requiring immediate attention include PostgreSQL versions twelve through sixteen, Python urllib3 packages, container networking plugins, and desktop utilities like vim and evince.

ELSA-2026-28256 Moderate: Oracle Linux 9 opencryptoki security update
New Ksplice updates for UEKR6 5.4.17 on OL7 and OL8
ELSA-2026-29844 Important: Oracle Linux 9 tigervnc security update
ELSA-2026-29703 Important: Oracle Linux 9 containernetworking-plugins security update
ELSA-2026-29702 Important: Oracle Linux 9 runc security update
ELSA-2026-29455 Important: Oracle Linux 9 buildah security update
ELSA-2026-28911 Moderate: Oracle Linux 9 coreutils security update
ELSA-2026-28253 Low: Oracle Linux 9 libtasn1 security update
ELSA-2026-28209 Moderate: Oracle Linux 9 vim security update
ELSA-2026-28159 Important: Oracle Linux 9 python3.12-urllib3 security update
ELSA-2026-28158 Important: Oracle Linux 9 python-urllib3 security update
ELSA-2026-28157 Important: Oracle Linux 9 python3.14-urllib3 security update
ELSA-2026-28074 Important: Oracle Linux 9 skopeo security update
ELSA-2026-28037 Important: Oracle Linux 9 postgresql:15 security update
ELSA-2026-27862 Important: Oracle Linux 9 memcached security update
ELSA-2026-27819 Important: Oracle Linux 9 evince security update
ELSA-2026-26610 Important: Oracle Linux 9 xorg-x11-server security, bug fix, and enhancement update
ELSA-2026-26590 Important: Oracle Linux 9 xorg-x11-server-Xwayland security, bug fix, and enhancement update
ELSA-2026-26455 Important: Oracle Linux 9 389-ds-base security, bug fix, and enhancement update
ELSA-2026-26447 Important: Oracle Linux 9 podman security update
ELSA-2026-26205 Important: Oracle Linux 9 postfix security update
ELSA-2026-26297 Important: Oracle Linux 9 hplip security update
ELSA-2026-26206 Important: Oracle Linux 9 fence-agents security update
ELSA-2026-26203 Important: Oracle Linux 9 postgresql:16 security update
ELSA-2026-25927 Important: Oracle Linux 9 webkit2gtk3 security update
ELSA-2026-22553 Moderate: Oracle Linux 9 libexif security update
ELSA-2026-19367 Important: Oracle Linux 9 giflib update
ELSA-2026-19357 Important: Oracle Linux 9 krb5 security update
ELSA-2026-19350 Important: Oracle Linux 9 git-lfs security update
ELSA-2026-19346 Important: Oracle Linux 9 libcap security update
ELSA-2026-19342 Important: Oracle Linux 9 tigervnc security update
ELSA-2026-18693 Moderate: Oracle Linux 9 python3.9 security update
ELBA-2026-25921 Oracle Linux 9 scap-security-guide bug fix and enhancement update
ELSA-2026-28999 Important: Oracle Linux 8 postgresql:12 security update
ELSA-2026-28208 Important: Oracle Linux 8 postgresql:13 security update
OLAMBA-2026-0015 Oracle Linux 9 ol-automation-manager bug fix update
ELBA-2026-24372 Oracle Linux 9 libvirt bug fix and enhancement update
ELBA-2026-23257 Oracle Linux 9 php:8.3 bug fix and enhancement update
ELBA-2026-22562 Oracle Linux 9 lvm2 bug fix and enhancement update
ELBA-2026-22560 Oracle Linux 9 NetworkManager bug fix and enhancement update
ELBA-2026-22559 Oracle Linux 9 libsolv bug fix and enhancement update
ELBA-2026-22556 Oracle Linux 9 nftables bug fix and enhancement update
ELBA-2026-22550 Oracle Linux 9 xorg-x11-drv-wacom bug fix and enhancement update
ELBA-2026-22555 Oracle Linux 9 libeconf bug fix and enhancement update
ELBA-2026-22548 Oracle Linux 9 iperf3 bug fix and enhancement update
ELBA-2026-20537 Oracle Linux 9 tzdata bug fix and enhancement update
ELBA-2026-19803 Oracle Linux 9 python-pip bug fix and enhancement update
ELBA-2026-50347 Oracle Linux 9 mdadm bug fix update
ELSA-2026-29898 Moderate: Oracle Linux 8 libpng security update
ELSA-2026-28922 Moderate: Oracle Linux 8 libreoffice security update



ELSA-2026-28256 Moderate: Oracle Linux 9 opencryptoki security update


Oracle Linux Security Advisory ELSA-2026-28256

http://linux.oracle.com/errata/ELSA-2026-28256.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
opencryptoki-3.26.0-2.el9_8.2.x86_64.rpm
opencryptoki-ccatok-3.26.0-2.el9_8.2.x86_64.rpm
opencryptoki-devel-3.26.0-2.el9_8.2.i686.rpm
opencryptoki-devel-3.26.0-2.el9_8.2.x86_64.rpm
opencryptoki-icsftok-3.26.0-2.el9_8.2.x86_64.rpm
opencryptoki-libs-3.26.0-2.el9_8.2.i686.rpm
opencryptoki-libs-3.26.0-2.el9_8.2.x86_64.rpm
opencryptoki-swtok-3.26.0-2.el9_8.2.x86_64.rpm

aarch64:
opencryptoki-3.26.0-2.el9_8.2.aarch64.rpm
opencryptoki-devel-3.26.0-2.el9_8.2.aarch64.rpm
opencryptoki-icsftok-3.26.0-2.el9_8.2.aarch64.rpm
opencryptoki-libs-3.26.0-2.el9_8.2.aarch64.rpm
opencryptoki-swtok-3.26.0-2.el9_8.2.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/opencryptoki-3.26.0-2.el9_8.2.src.rpm

Related CVEs:

CVE-2026-40253

Description of changes:

[3.26.0-2.2]
- Resolves: RHEL-171562, Fix CVE-2026-40253, possible out-of-bounds access in BER decode functions

[3.26.0-2.1]
- Resolves: RHEL-169586, Fix syslog message printing about different CPs



New Ksplice updates for UEKR6 5.4.17 on OL7 and OL8


Synopsis: The following CVEs can now be patched using Ksplice:
CVE-2022-50073 CVE-2026-31504 CVE-2026-31657 CVE-2026-43037

Users with Oracle Linux Premier Support can now use Ksplice to patch
against the upcoming Oracle kernel update.

INSTALLING THE UPDATES

We recommend that all users of Ksplice Uptrack running UEKR6 5.4.17 on
OL7 and OL8 install these updates.

On systems that have "autoinstall = yes" in /etc/uptrack/uptrack.conf,
these updates will be installed automatically and you do not need to
take any action.

Alternatively, you can install these updates by running:

# /usr/sbin/uptrack-upgrade -y

DESCRIPTION

* CVE-2022-50073: Null pointer dereference in TAP.

Orabug: 39526882

* CVE-2026-31504: Use-after-free in Packet socket driver.

Orabug: 39250953

* CVE-2026-31657: Use-after-free in Bridge Loop Avoidance driver.

Orabug: 39262375

* CVE-2026-43037: Out-of-bounds write in IPv6: IP-in-IPv6 tunnel (RFC2473) driver.

Orabug: 39300926

SUPPORT

Ksplice support is available at ksplice-support_ww@oracle.com.



ELSA-2026-29844 Important: Oracle Linux 9 tigervnc security update


Oracle Linux Security Advisory ELSA-2026-29844

http://linux.oracle.com/errata/ELSA-2026-29844.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
tigervnc-1.15.0-7.el9_8.2.x86_64.rpm
tigervnc-icons-1.15.0-7.el9_8.2.noarch.rpm
tigervnc-license-1.15.0-7.el9_8.2.noarch.rpm
tigervnc-selinux-1.15.0-7.el9_8.2.noarch.rpm
tigervnc-server-1.15.0-7.el9_8.2.x86_64.rpm
tigervnc-server-minimal-1.15.0-7.el9_8.2.x86_64.rpm
tigervnc-server-module-1.15.0-7.el9_8.2.x86_64.rpm

aarch64:
tigervnc-1.15.0-7.el9_8.2.aarch64.rpm
tigervnc-icons-1.15.0-7.el9_8.2.noarch.rpm
tigervnc-license-1.15.0-7.el9_8.2.noarch.rpm
tigervnc-selinux-1.15.0-7.el9_8.2.noarch.rpm
tigervnc-server-1.15.0-7.el9_8.2.aarch64.rpm
tigervnc-server-minimal-1.15.0-7.el9_8.2.aarch64.rpm
tigervnc-server-module-1.15.0-7.el9_8.2.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/tigervnc-1.15.0-7.el9_8.2.src.rpm

Related CVEs:

CVE-2026-50256
CVE-2026-50257
CVE-2026-50258
CVE-2026-50259
CVE-2026-50260
CVE-2026-50261
CVE-2026-50262
CVE-2026-50263
CVE-2026-50264

Description of changes:

[1.15.0-7.2]
- Rebuild for updated xorg-x11-server
Resolves: RHEL-184003



ELSA-2026-29703 Important: Oracle Linux 9 containernetworking-plugins security update


Oracle Linux Security Advisory ELSA-2026-29703

http://linux.oracle.com/errata/ELSA-2026-29703.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
containernetworking-plugins-1.9.0-3.el9_8.x86_64.rpm

aarch64:
containernetworking-plugins-1.9.0-3.el9_8.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/containernetworking-plugins-1.9.0-3.el9_8.src.rpm

Related CVEs:

CVE-2026-25679
CVE-2026-32280
CVE-2026-32281
CVE-2026-32283

Description of changes:

[1:1.9.0-3]
- Rebuild for CVE-2026-25679
- Resolves: RHEL-158763



ELSA-2026-29702 Important: Oracle Linux 9 runc security update


Oracle Linux Security Advisory ELSA-2026-29702

http://linux.oracle.com/errata/ELSA-2026-29702.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
runc-1.4.2-2.el9_8.x86_64.rpm

aarch64:
runc-1.4.2-2.el9_8.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/runc-1.4.2-2.el9_8.src.rpm

Related CVEs:

CVE-2026-25679
CVE-2026-32280
CVE-2026-32281

Description of changes:

[4:1.4.2-2]
- Rebuild for CVE-2026-25679
- Resolves: RHEL-158787



ELSA-2026-29455 Important: Oracle Linux 9 buildah security update


Oracle Linux Security Advisory ELSA-2026-29455

http://linux.oracle.com/errata/ELSA-2026-29455.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
buildah-1.43.1-2.0.1.el9_8.x86_64.rpm
buildah-tests-1.43.1-2.0.1.el9_8.x86_64.rpm

aarch64:
buildah-1.43.1-2.0.1.el9_8.aarch64.rpm
buildah-tests-1.43.1-2.0.1.el9_8.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/buildah-1.43.1-2.0.1.el9_8.src.rpm

Related CVEs:

CVE-2026-25679
CVE-2026-32280
CVE-2026-32281
CVE-2026-32283
CVE-2026-39829
CVE-2026-39830

Description of changes:

[1.43.1-2.0.1]
- Drop nmap-ncat requirement and skip ignore-socket test case [Orabug: 34117178]

[102:1.43.1-2]
- Rebuild for CVE-2026-25679
- Resolves: RHEL-158759



ELSA-2026-28911 Moderate: Oracle Linux 9 coreutils security update


Oracle Linux Security Advisory ELSA-2026-28911

http://linux.oracle.com/errata/ELSA-2026-28911.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
coreutils-8.32-41.0.1.el9_8.x86_64.rpm
coreutils-common-8.32-41.0.1.el9_8.x86_64.rpm
coreutils-single-8.32-41.0.1.el9_8.x86_64.rpm

aarch64:
coreutils-8.32-41.0.1.el9_8.aarch64.rpm
coreutils-common-8.32-41.0.1.el9_8.aarch64.rpm
coreutils-single-8.32-41.0.1.el9_8.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/coreutils-8.32-41.0.1.el9_8.src.rpm

Related CVEs:

CVE-2025-5278

Description of changes:

[8.32-41.0.1]
- clean up empty file if cp is failed [Orabug 15973168]

[9.5-8]
- CVE-2025-5278 - Fix Heap Buffer Under-Read in sort via Key Specification (RHEL-180331)



ELSA-2026-28253 Low: Oracle Linux 9 libtasn1 security update


Oracle Linux Security Advisory ELSA-2026-28253

http://linux.oracle.com/errata/ELSA-2026-28253.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
libtasn1-4.16.0-10.el9_8.i686.rpm
libtasn1-4.16.0-10.el9_8.x86_64.rpm
libtasn1-devel-4.16.0-10.el9_8.i686.rpm
libtasn1-devel-4.16.0-10.el9_8.x86_64.rpm
libtasn1-tools-4.16.0-10.el9_8.x86_64.rpm

aarch64:
libtasn1-4.16.0-10.el9_8.aarch64.rpm
libtasn1-devel-4.16.0-10.el9_8.aarch64.rpm
libtasn1-tools-4.16.0-10.el9_8.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/libtasn1-4.16.0-10.el9_8.src.rpm

Related CVEs:

CVE-2025-13151

Description of changes:

[4.16.0-10]
- Backport the fix for CVE-2025-13151 (RHEL-139568)



ELSA-2026-28209 Moderate: Oracle Linux 9 vim security update


Oracle Linux Security Advisory ELSA-2026-28209

http://linux.oracle.com/errata/ELSA-2026-28209.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
vim-X11-8.2.2637-26.0.1.el9_8.6.x86_64.rpm
vim-common-8.2.2637-26.0.1.el9_8.6.x86_64.rpm
vim-enhanced-8.2.2637-26.0.1.el9_8.6.x86_64.rpm
vim-filesystem-8.2.2637-26.0.1.el9_8.6.noarch.rpm
vim-minimal-8.2.2637-26.0.1.el9_8.6.x86_64.rpm

aarch64:
vim-X11-8.2.2637-26.0.1.el9_8.6.aarch64.rpm
vim-common-8.2.2637-26.0.1.el9_8.6.aarch64.rpm
vim-enhanced-8.2.2637-26.0.1.el9_8.6.aarch64.rpm
vim-filesystem-8.2.2637-26.0.1.el9_8.6.noarch.rpm
vim-minimal-8.2.2637-26.0.1.el9_8.6.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/vim-8.2.2637-26.0.1.el9_8.6.src.rpm

Related CVEs:

CVE-2026-41411

Description of changes:

[8.2.2637-26.0.1.el9_8.6]
- Remove upstream references [Orabug: 31197557]

[2:8.2.2637-26.6]
- CVE-2026-41411 vim: Command injection via backticks in tag files

[2:8.2.2637-26.5]
- RHEL-170136 CVE-2026-35177 vim: Vim zip.vim plugin: Arbitrary file overwrite
via path traversal bypass

[2:8.2.2637-26.4]
- Resolves: RHEL-164966 vim: arbitrary command execution via modeline sandbox bypass

[2:8.2.2637-26.3]
- Related: RHEL-159630 rebuild to build with exception target

[2:8.2.2637-26.2]
- remove -O0 from flags

[2:8.2.2637-26.1]
- RHEL-159630 CVE-2026-33412 vim: Vim: Arbitrary code execution via command injection in glob() function



ELSA-2026-28159 Important: Oracle Linux 9 python3.12-urllib3 security update


Oracle Linux Security Advisory ELSA-2026-28159

http://linux.oracle.com/errata/ELSA-2026-28159.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
python3.12-urllib3-1.26.19-3.el9_8.noarch.rpm

aarch64:
python3.12-urllib3-1.26.19-3.el9_8.noarch.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/python3.12-urllib3-1.26.19-3.el9_8.src.rpm

Related CVEs:

CVE-2026-44431
CVE-2026-44432

Description of changes:

[1.26.19-3]
- Security fix for CVE-2026-44431
- Security fix for CVE-2026-44432
Resolves: RHEL-184901, RHEL-185126

[1.26.19-2]
- Security fix for CVE-2025-66471
- Security fix for CVE-2025-66418
- Security fix for CVE-2026-21441
Resolves: RHEL-142909, RHEL-139399, RHEL-142922



ELSA-2026-28158 Important: Oracle Linux 9 python-urllib3 security update


Oracle Linux Security Advisory ELSA-2026-28158

http://linux.oracle.com/errata/ELSA-2026-28158.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
python3-urllib3-1.26.5-8.el9_8.noarch.rpm

aarch64:
python3-urllib3-1.26.5-8.el9_8.noarch.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/python-urllib3-1.26.5-8.el9_8.src.rpm

Related CVEs:

CVE-2026-44431
CVE-2026-44432

Description of changes:

[1.26.5-8]
- Security fix for CVE-2026-44431 and CVE-2026-44432
Resolves: RHEL-184816, RHEL-185123

[1.26.5-7]
- Security fix for CVE-2025-66471
- Security fix for CVE-2025-66418
- Security fix for CVE-2026-21441
Resolves: RHEL-142750, RHEL-139398, RHEL-142767



ELSA-2026-28157 Important: Oracle Linux 9 python3.14-urllib3 security update


Oracle Linux Security Advisory ELSA-2026-28157

http://linux.oracle.com/errata/ELSA-2026-28157.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
python3.14-urllib3-2.6.3-2.el9_8.noarch.rpm

aarch64:
python3.14-urllib3-2.6.3-2.el9_8.noarch.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/python3.14-urllib3-2.6.3-2.el9_8.src.rpm

Related CVEs:

CVE-2026-44431
CVE-2026-44432

Description of changes:

[2.6.3-2]
- Security fix for CVE-2026-44431 and CVE-2026-44432
- Resolves: RHEL-184902
- Resolves: RHEL-185127



ELSA-2026-28074 Important: Oracle Linux 9 skopeo security update


Oracle Linux Security Advisory ELSA-2026-28074

http://linux.oracle.com/errata/ELSA-2026-28074.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
skopeo-1.22.2-6.el9_8.x86_64.rpm
skopeo-tests-1.22.2-6.el9_8.x86_64.rpm

aarch64:
skopeo-1.22.2-6.el9_8.aarch64.rpm
skopeo-tests-1.22.2-6.el9_8.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/skopeo-1.22.2-6.el9_8.src.rpm

Related CVEs:

CVE-2026-32280
CVE-2026-32281
CVE-2026-32283

Description of changes:

[1:1.22.2-6]
- Rebuild for CVE-2026-32283
- Resolves: RHEL-167688

[1:1.22.2-5]
- Rebuild for CVE-2026-25679
- Re-add test file installation to fix tier0 tests
- Resolves: RHEL-158789



ELSA-2026-28037 Important: Oracle Linux 9 postgresql:15 security update


Oracle Linux Security Advisory ELSA-2026-28037

http://linux.oracle.com/errata/ELSA-2026-28037.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
pgaudit-1.7.0-1.module+el9.8.0+90926+92e334e4.x86_64.rpm
pg_repack-1.4.8-2.module+el9.8.0+90926+92e334e4.x86_64.rpm
postgres-decoderbufs-1.9.7-1.Final.module+el9.8.0+90926+92e334e4.x86_64.rpm
postgresql-15.18-1.module+el9.8.0+90926+92e334e4.x86_64.rpm
postgresql-contrib-15.18-1.module+el9.8.0+90926+92e334e4.x86_64.rpm
postgresql-docs-15.18-1.module+el9.8.0+90926+92e334e4.x86_64.rpm
postgresql-plperl-15.18-1.module+el9.8.0+90926+92e334e4.x86_64.rpm
postgresql-plpython3-15.18-1.module+el9.8.0+90926+92e334e4.x86_64.rpm
postgresql-pltcl-15.18-1.module+el9.8.0+90926+92e334e4.x86_64.rpm
postgresql-private-devel-15.18-1.module+el9.8.0+90926+92e334e4.x86_64.rpm
postgresql-private-libs-15.18-1.module+el9.8.0+90926+92e334e4.x86_64.rpm
postgresql-server-15.18-1.module+el9.8.0+90926+92e334e4.x86_64.rpm
postgresql-server-devel-15.18-1.module+el9.8.0+90926+92e334e4.x86_64.rpm
postgresql-static-15.18-1.module+el9.8.0+90926+92e334e4.x86_64.rpm
postgresql-test-15.18-1.module+el9.8.0+90926+92e334e4.x86_64.rpm
postgresql-test-rpm-macros-15.18-1.module+el9.8.0+90926+92e334e4.noarch.rpm
postgresql-upgrade-15.18-1.module+el9.8.0+90926+92e334e4.x86_64.rpm
postgresql-upgrade-devel-15.18-1.module+el9.8.0+90926+92e334e4.x86_64.rpm

aarch64:
pgaudit-1.7.0-1.module+el9.8.0+90926+92e334e4.aarch64.rpm
pg_repack-1.4.8-2.module+el9.8.0+90926+92e334e4.aarch64.rpm
postgres-decoderbufs-1.9.7-1.Final.module+el9.8.0+90926+92e334e4.aarch64.rpm
postgresql-15.18-1.module+el9.8.0+90926+92e334e4.aarch64.rpm
postgresql-contrib-15.18-1.module+el9.8.0+90926+92e334e4.aarch64.rpm
postgresql-docs-15.18-1.module+el9.8.0+90926+92e334e4.aarch64.rpm
postgresql-plperl-15.18-1.module+el9.8.0+90926+92e334e4.aarch64.rpm
postgresql-plpython3-15.18-1.module+el9.8.0+90926+92e334e4.aarch64.rpm
postgresql-pltcl-15.18-1.module+el9.8.0+90926+92e334e4.aarch64.rpm
postgresql-private-devel-15.18-1.module+el9.8.0+90926+92e334e4.aarch64.rpm
postgresql-private-libs-15.18-1.module+el9.8.0+90926+92e334e4.aarch64.rpm
postgresql-server-15.18-1.module+el9.8.0+90926+92e334e4.aarch64.rpm
postgresql-server-devel-15.18-1.module+el9.8.0+90926+92e334e4.aarch64.rpm
postgresql-static-15.18-1.module+el9.8.0+90926+92e334e4.aarch64.rpm
postgresql-test-15.18-1.module+el9.8.0+90926+92e334e4.aarch64.rpm
postgresql-test-rpm-macros-15.18-1.module+el9.8.0+90926+92e334e4.noarch.rpm
postgresql-upgrade-15.18-1.module+el9.8.0+90926+92e334e4.aarch64.rpm
postgresql-upgrade-devel-15.18-1.module+el9.8.0+90926+92e334e4.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/pgaudit-1.7.0-1.module+el9.8.0+90926+92e334e4.src.rpm
http://oss.oracle.com/ol9/SRPMS-updates/pg_repack-1.4.8-2.module+el9.8.0+90926+92e334e4.src.rpm
http://oss.oracle.com/ol9/SRPMS-updates/postgres-decoderbufs-1.9.7-1.Final.module+el9.8.0+90926+92e334e4.src.rpm
http://oss.oracle.com/ol9/SRPMS-updates/postgresql-15.18-1.module+el9.8.0+90926+92e334e4.src.rpm

Related CVEs:

CVE-2026-6473
CVE-2026-6475
CVE-2026-6477
CVE-2026-6478

Description of changes:

pgaudit
[1.7.0-1]
- Initial import for postgresql 15 module
- Update to 1.7.0
- Support postgresql 15
- Related: #2128410

pg_repack
[1.4.8-2]
- Add new build dependencies to fix build with lz4 enabled
- Related: RHEL-47350

[1.4.8-1]
- Update to version 1.4.8
- Postgresql 15 is supported
- Related: #2128410

postgres-decoderbufs
[1.9.7-1.Final]
- Iitial import for postgresql 15 stream
- Related: #2128410

postgresql
[15.18-1]
- Update to 15.18
- Fix CVE-2026-6478



ELSA-2026-27862 Important: Oracle Linux 9 memcached security update


Oracle Linux Security Advisory ELSA-2026-27862

http://linux.oracle.com/errata/ELSA-2026-27862.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
memcached-1.6.9-7.el9_8.1.x86_64.rpm
memcached-selinux-1.6.9-7.el9_8.1.x86_64.rpm

aarch64:
memcached-1.6.9-7.el9_8.1.aarch64.rpm
memcached-selinux-1.6.9-7.el9_8.1.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/memcached-1.6.9-7.el9_8.1.src.rpm

Related CVEs:

CVE-2026-47783

Description of changes:

[0:1.6.9-7.1]
- Fix timing side-channel in SASL password database authentication
(CVE-2026-47783)
- Resolves: RHEL-179093



ELSA-2026-27819 Important: Oracle Linux 9 evince security update


Oracle Linux Security Advisory ELSA-2026-27819

http://linux.oracle.com/errata/ELSA-2026-27819.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
evince-40.5-4.el9_8.1.x86_64.rpm
evince-libs-40.5-4.el9_8.1.i686.rpm
evince-libs-40.5-4.el9_8.1.x86_64.rpm
evince-nautilus-40.5-4.el9_8.1.x86_64.rpm
evince-previewer-40.5-4.el9_8.1.x86_64.rpm
evince-thumbnailer-40.5-4.el9_8.1.x86_64.rpm

aarch64:
evince-40.5-4.el9_8.1.aarch64.rpm
evince-libs-40.5-4.el9_8.1.aarch64.rpm
evince-nautilus-40.5-4.el9_8.1.aarch64.rpm
evince-previewer-40.5-4.el9_8.1.aarch64.rpm
evince-thumbnailer-40.5-4.el9_8.1.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/evince-40.5-4.el9_8.1.src.rpm

Related CVEs:

CVE-2026-46529

Description of changes:

[40.5-4.el9_8.1]
- Sanitize arguments (CVE-2026-46529)
- Resolves: RHEL-184047



ELSA-2026-26610 Important: Oracle Linux 9 xorg-x11-server security, bug fix, and enhancement update


Oracle Linux Security Advisory ELSA-2026-26610

http://linux.oracle.com/errata/ELSA-2026-26610.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
xorg-x11-server-Xdmx-1.20.11-34.el9_8.2.x86_64.rpm
xorg-x11-server-Xephyr-1.20.11-34.el9_8.2.x86_64.rpm
xorg-x11-server-Xnest-1.20.11-34.el9_8.2.x86_64.rpm
xorg-x11-server-Xorg-1.20.11-34.el9_8.2.x86_64.rpm
xorg-x11-server-Xvfb-1.20.11-34.el9_8.2.x86_64.rpm
xorg-x11-server-common-1.20.11-34.el9_8.2.x86_64.rpm
xorg-x11-server-devel-1.20.11-34.el9_8.2.i686.rpm
xorg-x11-server-devel-1.20.11-34.el9_8.2.x86_64.rpm
xorg-x11-server-source-1.20.11-34.el9_8.2.noarch.rpm

aarch64:
xorg-x11-server-Xdmx-1.20.11-34.el9_8.2.aarch64.rpm
xorg-x11-server-Xephyr-1.20.11-34.el9_8.2.aarch64.rpm
xorg-x11-server-Xnest-1.20.11-34.el9_8.2.aarch64.rpm
xorg-x11-server-Xorg-1.20.11-34.el9_8.2.aarch64.rpm
xorg-x11-server-Xvfb-1.20.11-34.el9_8.2.aarch64.rpm
xorg-x11-server-common-1.20.11-34.el9_8.2.aarch64.rpm
xorg-x11-server-devel-1.20.11-34.el9_8.2.aarch64.rpm
xorg-x11-server-source-1.20.11-34.el9_8.2.noarch.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/xorg-x11-server-1.20.11-34.el9_8.2.src.rpm

Related CVEs:

CVE-2026-50256
CVE-2026-50257
CVE-2026-50258
CVE-2026-50259
CVE-2026-50260
CVE-2026-50261
CVE-2026-50262
CVE-2026-50263
CVE-2026-50264

Description of changes:

[1.20.11-34.2]
- Other security related fixes
Resolves: https://redhat.atlassian.net/browse/RHEL-184288

[1.20.11-34.1]
- CVE fix for: CVE-2026-50256, CVE-2026-50257, CVE-2026-50258,
CVE-2026-50259, CVE-2026-50260, CVE-2026-50261,
CVE-2026-50262, CVE-2026-50263, CVE-2026-50264
Resolves: https://redhat.atlassian.net/browse/RHEL-182435

[1.20.11-34]
- CVE fix for: CVE-2026-33999, CVE-2026-34000, CVE-2026-34001
CVE-2026-34002, CVE-2026-34003
Resolves: https://redhat.atlassian.net/browse/RHEL-163226
Resolves: https://redhat.atlassian.net/browse/RHEL-163308
Resolves: https://redhat.atlassian.net/browse/RHEL-163239



ELSA-2026-26590 Important: Oracle Linux 9 xorg-x11-server-Xwayland security, bug fix, and enhancement update


Oracle Linux Security Advisory ELSA-2026-26590

http://linux.oracle.com/errata/ELSA-2026-26590.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
xorg-x11-server-Xwayland-24.1.9-4.el9_8.2.i686.rpm
xorg-x11-server-Xwayland-24.1.9-4.el9_8.2.x86_64.rpm
xorg-x11-server-Xwayland-devel-24.1.9-4.el9_8.2.i686.rpm
xorg-x11-server-Xwayland-devel-24.1.9-4.el9_8.2.x86_64.rpm

aarch64:
xorg-x11-server-Xwayland-24.1.9-4.el9_8.2.aarch64.rpm
xorg-x11-server-Xwayland-devel-24.1.9-4.el9_8.2.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/xorg-x11-server-Xwayland-24.1.9-4.el9_8.2.src.rpm

Related CVEs:

CVE-2026-50256
CVE-2026-50257
CVE-2026-50258
CVE-2026-50259
CVE-2026-50260
CVE-2026-50261
CVE-2026-50262
CVE-2026-50263
CVE-2026-50264

Description of changes:

[24.1.9-4.2]
- Other security related fixes
Resolves: https://redhat.atlassian.net/browse/RHEL-184292

[24.1.9-4.1]
- CVE fix for: CVE-2026-50256, CVE-2026-50257, CVE-2026-50258,
CVE-2026-50259, CVE-2026-50260, CVE-2026-50261,
CVE-2026-50262, CVE-2026-50263
Resolves: https://redhat.atlassian.net/browse/RHEL-182426

[24.1.9-4]
- CVE fix for: CVE-2026-33999, CVE-2026-34000, CVE-2026-34001
CVE-2026-34002, CVE-2026-34003
Resolves: https://redhat.atlassian.net/browse/RHEL-163199
Resolves: https://redhat.atlassian.net/browse/RHEL-163295
Resolves: https://redhat.atlassian.net/browse/RHEL-163253

[24.1.9-3]
- Fix a regression in Xwayland 24.1.9 with XTS test Xlib10
Resolves: https://redhat.atlassian.net/browse/RHEL-170368



ELSA-2026-26455 Important: Oracle Linux 9 389-ds-base security, bug fix, and enhancement update


Oracle Linux Security Advisory ELSA-2026-26455

http://linux.oracle.com/errata/ELSA-2026-26455.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
389-ds-base-2.8.0-7.el9_8.x86_64.rpm
389-ds-base-devel-2.8.0-7.el9_8.x86_64.rpm
389-ds-base-libs-2.8.0-7.el9_8.x86_64.rpm
389-ds-base-snmp-2.8.0-7.el9_8.x86_64.rpm
python3-lib389-2.8.0-7.el9_8.noarch.rpm

aarch64:
389-ds-base-2.8.0-7.el9_8.aarch64.rpm
389-ds-base-devel-2.8.0-7.el9_8.aarch64.rpm
389-ds-base-libs-2.8.0-7.el9_8.aarch64.rpm
389-ds-base-snmp-2.8.0-7.el9_8.aarch64.rpm
python3-lib389-2.8.0-7.el9_8.noarch.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/389-ds-base-2.8.0-7.el9_8.src.rpm

Related CVEs:

CVE-2026-9064

Description of changes:

[2.8.0-7]
- Resolves: RHEL-152356 - Getting "build_candidate_list - Database error 11" messages after migrating to LMDB. [rhel-9.8.z]
- Resolves: RHEL-168967 - Web console doesn't show the sub suffix of ou=foo,ou=people,dc=example,dc=com. [rhel-9.8.z]
- Resolves: RHEL-170269 - DS 12 does not handle escape char in bind user [rhel-9.8.z]
- Resolves: RHEL-174524 - [RFE] Add OS-level thread names to all server threads [rhel-9.8.z]
- Resolves: RHEL-178086 - CVE-2026-9064 389-ds-base: 389-ds-base: unbounded LDAP controls count in get_ldapmessage_controls_ext() causes CPU and heap amplification (remote DoS) [rhel-9.8]
- Resolves: RHEL-180716 - Online export is failing when using the option "-s" [rhel-9.8.z]
- Resolves: RHEL-183895 - Server shutdown during online reindex may lead to data loss [rhel-9.8.z]



ELSA-2026-26447 Important: Oracle Linux 9 podman security update


Oracle Linux Security Advisory ELSA-2026-26447

http://linux.oracle.com/errata/ELSA-2026-26447.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
podman-5.8.2-3.0.1.el9_8.x86_64.rpm
podman-docker-5.8.2-3.0.1.el9_8.noarch.rpm
podman-plugins-5.8.2-3.0.1.el9_8.x86_64.rpm
podman-remote-5.8.2-3.0.1.el9_8.x86_64.rpm
podman-tests-5.8.2-3.0.1.el9_8.x86_64.rpm

aarch64:
podman-5.8.2-3.0.1.el9_8.aarch64.rpm
podman-docker-5.8.2-3.0.1.el9_8.noarch.rpm
podman-plugins-5.8.2-3.0.1.el9_8.aarch64.rpm
podman-remote-5.8.2-3.0.1.el9_8.aarch64.rpm
podman-tests-5.8.2-3.0.1.el9_8.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/podman-5.8.2-3.0.1.el9_8.src.rpm

Related CVEs:

CVE-2026-32280
CVE-2026-32281
CVE-2026-32283

Description of changes:

[5.8.2-3.0.1]
- Rework CNI/Netavark detection logic [JIRA: EVG-3769]
- Rebuild on new golang to support experimental GODEBUG fipsnoenforceems
- Drop nmap-ncat requirement and skip ignore-socket test case [Orabug: 34117404]

[6:5.8.2-3]
- Rebuild for CVE-2026-32283
- Resolves: RHEL-167685

[6:5.8.2-2]
- Rebuild for CVE-2026-25679
- Resolves: RHEL-158781



ELSA-2026-26205 Important: Oracle Linux 9 postfix security update


Oracle Linux Security Advisory ELSA-2026-26205

http://linux.oracle.com/errata/ELSA-2026-26205.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
postfix-3.5.25-3.el9_8.x86_64.rpm
postfix-cdb-3.5.25-3.el9_8.x86_64.rpm
postfix-ldap-3.5.25-3.el9_8.x86_64.rpm
postfix-lmdb-3.5.25-3.el9_8.x86_64.rpm
postfix-mysql-3.5.25-3.el9_8.x86_64.rpm
postfix-pcre-3.5.25-3.el9_8.x86_64.rpm
postfix-perl-scripts-3.5.25-3.el9_8.x86_64.rpm
postfix-pgsql-3.5.25-3.el9_8.x86_64.rpm
postfix-sqlite-3.5.25-3.el9_8.x86_64.rpm

aarch64:
postfix-3.5.25-3.el9_8.aarch64.rpm
postfix-cdb-3.5.25-3.el9_8.aarch64.rpm
postfix-ldap-3.5.25-3.el9_8.aarch64.rpm
postfix-lmdb-3.5.25-3.el9_8.aarch64.rpm
postfix-mysql-3.5.25-3.el9_8.aarch64.rpm
postfix-pcre-3.5.25-3.el9_8.aarch64.rpm
postfix-perl-scripts-3.5.25-3.el9_8.aarch64.rpm
postfix-pgsql-3.5.25-3.el9_8.aarch64.rpm
postfix-sqlite-3.5.25-3.el9_8.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/postfix-3.5.25-3.el9_8.src.rpm

Related CVEs:

CVE-2026-43964

Description of changes:

[2:3.5.25-3]
- Fix for CVE-2026-43964: buffer over-read via malformed enhanced status code.
Resolves: RHEL-176550



ELSA-2026-26297 Important: Oracle Linux 9 hplip security update


Oracle Linux Security Advisory ELSA-2026-26297

http://linux.oracle.com/errata/ELSA-2026-26297.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
hplip-3.21.2-6.el9_8.4.x86_64.rpm
hplip-common-3.21.2-6.el9_8.4.i686.rpm
hplip-common-3.21.2-6.el9_8.4.x86_64.rpm
hplip-libs-3.21.2-6.el9_8.4.i686.rpm
hplip-libs-3.21.2-6.el9_8.4.x86_64.rpm
libsane-hpaio-3.21.2-6.el9_8.4.i686.rpm
libsane-hpaio-3.21.2-6.el9_8.4.x86_64.rpm

aarch64:
hplip-3.21.2-6.el9_8.4.aarch64.rpm
hplip-common-3.21.2-6.el9_8.4.aarch64.rpm
hplip-libs-3.21.2-6.el9_8.4.aarch64.rpm
libsane-hpaio-3.21.2-6.el9_8.4.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/hplip-3.21.2-6.el9_8.4.src.rpm

Related CVEs:

CVE-2026-8631
CVE-2026-8632

Description of changes:

[3.21.2-6.4]
- Fix more leaks in hpcups

[3.21.2-6.3]
- OSH fixes after CVE-2026-8631

[3.21.2-6.2]
- CVE-2026-8631 hplip: HPLIP: Arbitrary code execution and privilege escalation
via integer overflow in hpcups

[3.21.2-6.1]
- CVE-2026-8632 hplip: Privilege escalation and arbitrary code execution
via OS command injection in Is_Process_Running()



ELSA-2026-26206 Important: Oracle Linux 9 fence-agents security update


Oracle Linux Security Advisory ELSA-2026-26206

http://linux.oracle.com/errata/ELSA-2026-26206.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
fence-agents-aliyun-4.10.0-110.el9_8.3.x86_64.rpm
fence-agents-all-4.10.0-110.el9_8.3.x86_64.rpm
fence-agents-amt-ws-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-apc-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-apc-snmp-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-aws-4.10.0-110.el9_8.3.x86_64.rpm
fence-agents-azure-arm-4.10.0-110.el9_8.3.x86_64.rpm
fence-agents-bladecenter-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-brocade-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-cisco-mds-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-cisco-ucs-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-common-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-compute-4.10.0-110.el9_8.3.x86_64.rpm
fence-agents-drac5-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-eaton-snmp-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-emerson-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-eps-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-gce-4.10.0-110.el9_8.3.x86_64.rpm
fence-agents-heuristics-ping-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-hpblade-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-ibm-powervs-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-ibm-vpc-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-ibmblade-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-ifmib-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-ilo-moonshot-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-ilo-mp-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-ilo-ssh-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-ilo2-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-intelmodular-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-ipdu-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-ipmilan-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-kdump-4.10.0-110.el9_8.3.x86_64.rpm
fence-agents-kubevirt-4.10.0-110.el9_8.3.x86_64.rpm
fence-agents-lpar-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-mpath-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-nutanix-ahv-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-openstack-4.10.0-110.el9_8.3.x86_64.rpm
fence-agents-redfish-4.10.0-110.el9_8.3.x86_64.rpm
fence-agents-rhevm-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-rsa-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-rsb-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-sbd-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-scsi-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-virsh-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-vmware-rest-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-vmware-soap-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-wti-4.10.0-110.el9_8.3.noarch.rpm
fence-virt-4.10.0-110.el9_8.3.x86_64.rpm
fence-virtd-4.10.0-110.el9_8.3.x86_64.rpm
fence-virtd-cpg-4.10.0-110.el9_8.3.x86_64.rpm
fence-virtd-libvirt-4.10.0-110.el9_8.3.x86_64.rpm
fence-virtd-multicast-4.10.0-110.el9_8.3.x86_64.rpm
fence-virtd-serial-4.10.0-110.el9_8.3.x86_64.rpm
fence-virtd-tcp-4.10.0-110.el9_8.3.x86_64.rpm
ha-cloud-support-4.10.0-110.el9_8.3.x86_64.rpm

aarch64:
fence-agents-all-4.10.0-110.el9_8.3.aarch64.rpm
fence-agents-amt-ws-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-apc-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-apc-snmp-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-bladecenter-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-brocade-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-cisco-mds-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-cisco-ucs-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-common-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-drac5-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-eaton-snmp-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-emerson-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-eps-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-heuristics-ping-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-hpblade-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-ibm-powervs-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-ibm-vpc-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-ibmblade-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-ifmib-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-ilo-moonshot-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-ilo-mp-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-ilo-ssh-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-ilo2-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-intelmodular-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-ipdu-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-ipmilan-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-kdump-4.10.0-110.el9_8.3.aarch64.rpm
fence-agents-kubevirt-4.10.0-110.el9_8.3.aarch64.rpm
fence-agents-lpar-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-mpath-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-nutanix-ahv-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-redfish-4.10.0-110.el9_8.3.aarch64.rpm
fence-agents-rhevm-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-rsa-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-rsb-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-sbd-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-scsi-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-virsh-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-vmware-rest-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-vmware-soap-4.10.0-110.el9_8.3.noarch.rpm
fence-agents-wti-4.10.0-110.el9_8.3.noarch.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/fence-agents-4.10.0-110.el9_8.3.src.rpm

Related CVEs:

CVE-2026-48526

Description of changes:

[4.10.0-110.3]
- bundled PyJWT: upgrade to v2.13.0 to fix CVE-2026-48526
Resolves: RHEL-182313

[4.10.0-110.2]
- bundled pyasn1: fix CVE-2026-30922
Resolves: RHEL-157202

[4.10.0-110.1]
- bundled cryptography: replace with dependency to fix CVE-2026-26007
- bundled PyJWT: upgrade to v2.12.1 to fix CVE-2026-32597
Resolves: RHEL-167241, RHEL-155676



ELSA-2026-26203 Important: Oracle Linux 9 postgresql:16 security update


Oracle Linux Security Advisory ELSA-2026-26203

http://linux.oracle.com/errata/ELSA-2026-26203.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
pgaudit-16.0-1.module+el9.8.0+90925+e22a792e.x86_64.rpm
pg_repack-1.5.1-1.module+el9.8.0+90925+e22a792e.x86_64.rpm
pgvector-0.6.2-2.module+el9.8.0+90925+e22a792e.x86_64.rpm
postgis-3.5.3-5.module+el9.8.0+90925+e22a792e.x86_64.rpm
postgis-client-3.5.3-5.module+el9.8.0+90925+e22a792e.x86_64.rpm
postgis-docs-3.5.3-5.module+el9.8.0+90925+e22a792e.x86_64.rpm
postgis-upgrade-3.5.3-5.module+el9.8.0+90925+e22a792e.x86_64.rpm
postgis-utils-3.5.3-5.module+el9.8.0+90925+e22a792e.x86_64.rpm
postgres-decoderbufs-2.4.0-1.Final.module+el9.8.0+90925+e22a792e.x86_64.rpm
postgresql-16.14-1.module+el9.8.0+90925+e22a792e.x86_64.rpm
postgresql-contrib-16.14-1.module+el9.8.0+90925+e22a792e.x86_64.rpm
postgresql-docs-16.14-1.module+el9.8.0+90925+e22a792e.x86_64.rpm
postgresql-plperl-16.14-1.module+el9.8.0+90925+e22a792e.x86_64.rpm
postgresql-plpython3-16.14-1.module+el9.8.0+90925+e22a792e.x86_64.rpm
postgresql-pltcl-16.14-1.module+el9.8.0+90925+e22a792e.x86_64.rpm
postgresql-private-devel-16.14-1.module+el9.8.0+90925+e22a792e.x86_64.rpm
postgresql-private-libs-16.14-1.module+el9.8.0+90925+e22a792e.x86_64.rpm
postgresql-server-16.14-1.module+el9.8.0+90925+e22a792e.x86_64.rpm
postgresql-server-devel-16.14-1.module+el9.8.0+90925+e22a792e.x86_64.rpm
postgresql-static-16.14-1.module+el9.8.0+90925+e22a792e.x86_64.rpm
postgresql-test-16.14-1.module+el9.8.0+90925+e22a792e.x86_64.rpm
postgresql-test-rpm-macros-16.14-1.module+el9.8.0+90925+e22a792e.noarch.rpm
postgresql-upgrade-16.14-1.module+el9.8.0+90925+e22a792e.x86_64.rpm
postgresql-upgrade-devel-16.14-1.module+el9.8.0+90925+e22a792e.x86_64.rpm

aarch64:
pgaudit-16.0-1.module+el9.8.0+90925+e22a792e.aarch64.rpm
pg_repack-1.5.1-1.module+el9.8.0+90925+e22a792e.aarch64.rpm
pgvector-0.6.2-2.module+el9.8.0+90925+e22a792e.aarch64.rpm
postgis-3.5.3-5.module+el9.8.0+90925+e22a792e.aarch64.rpm
postgis-client-3.5.3-5.module+el9.8.0+90925+e22a792e.aarch64.rpm
postgis-docs-3.5.3-5.module+el9.8.0+90925+e22a792e.aarch64.rpm
postgis-upgrade-3.5.3-5.module+el9.8.0+90925+e22a792e.aarch64.rpm
postgis-utils-3.5.3-5.module+el9.8.0+90925+e22a792e.aarch64.rpm
postgres-decoderbufs-2.4.0-1.Final.module+el9.8.0+90925+e22a792e.aarch64.rpm
postgresql-16.14-1.module+el9.8.0+90925+e22a792e.aarch64.rpm
postgresql-contrib-16.14-1.module+el9.8.0+90925+e22a792e.aarch64.rpm
postgresql-docs-16.14-1.module+el9.8.0+90925+e22a792e.aarch64.rpm
postgresql-plperl-16.14-1.module+el9.8.0+90925+e22a792e.aarch64.rpm
postgresql-plpython3-16.14-1.module+el9.8.0+90925+e22a792e.aarch64.rpm
postgresql-pltcl-16.14-1.module+el9.8.0+90925+e22a792e.aarch64.rpm
postgresql-private-devel-16.14-1.module+el9.8.0+90925+e22a792e.aarch64.rpm
postgresql-private-libs-16.14-1.module+el9.8.0+90925+e22a792e.aarch64.rpm
postgresql-server-16.14-1.module+el9.8.0+90925+e22a792e.aarch64.rpm
postgresql-server-devel-16.14-1.module+el9.8.0+90925+e22a792e.aarch64.rpm
postgresql-static-16.14-1.module+el9.8.0+90925+e22a792e.aarch64.rpm
postgresql-test-16.14-1.module+el9.8.0+90925+e22a792e.aarch64.rpm
postgresql-test-rpm-macros-16.14-1.module+el9.8.0+90925+e22a792e.noarch.rpm
postgresql-upgrade-16.14-1.module+el9.8.0+90925+e22a792e.aarch64.rpm
postgresql-upgrade-devel-16.14-1.module+el9.8.0+90925+e22a792e.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/pgaudit-16.0-1.module+el9.8.0+90925+e22a792e.src.rpm
http://oss.oracle.com/ol9/SRPMS-updates/pg_repack-1.5.1-1.module+el9.8.0+90925+e22a792e.src.rpm
http://oss.oracle.com/ol9/SRPMS-updates/pgvector-0.6.2-2.module+el9.8.0+90925+e22a792e.src.rpm
http://oss.oracle.com/ol9/SRPMS-updates/postgis-3.5.3-5.module+el9.8.0+90925+e22a792e.src.rpm
http://oss.oracle.com/ol9/SRPMS-updates/postgres-decoderbufs-2.4.0-1.Final.module+el9.8.0+90925+e22a792e.src.rpm
http://oss.oracle.com/ol9/SRPMS-updates/postgresql-16.14-1.module+el9.8.0+90925+e22a792e.src.rpm

Related CVEs:

CVE-2026-6473
CVE-2026-6475
CVE-2026-6477
CVE-2026-6478

Description of changes:

pgaudit
[16.0-1]
- Update to 16.0
- Support postgresql 16
- Initial import for PG 16 module
- Resolves: RHEL-3635

pg_repack
[1.5.1-1]
- Update to v1.5.1

[1.4.8-2]
- Add new build dependencies to fix build with lz4 enabled
- Related: RHEL-47604

[1.4.8-1]
- Resolves: RHEL-3636
- Initial import for PG 16 module

pgvector
[0.6.2-2]
- Enable Portable build
- Resolves: RHEL-84405

[0.6.2-1]
- Initial packaging

postgis
[3.5.3-5]
- Rebuild for adding tmt metadata

[3.5.3-4]
- Avoid perl(Pg) dependency on RHEL,
from the Fedora spec change from yselkowi@redhat.com

[3.5.3-3]
- Rebuild (gdal)

[3.5.3-2]
- Rebuilt for https://fedoraproject.org/wiki/Fedora_43_Mass_Rebuild

[3.5.3-1]
- Update to 3.5.3

[3.5.2-2]
- Rebuild (SFCGAL)

[3.5.2-1]
- Update to 3.5.2

[3.5.1-2]
- Rebuilt for https://fedoraproject.org/wiki/Fedora_42_Mass_Rebuild

[3.5.1-1]
- Update to 3.5.1

[3.5.0-3]
- Rebuild (GDAL)

postgres-decoderbufs
[2.4.0-1.Final]
- Initial import for postgresql 16 stream
- Related: RHEL-3635

postgresql
[16.14-1]
- Update to 16.14
- Fix CVE-2026-6478



ELSA-2026-25927 Important: Oracle Linux 9 webkit2gtk3 security update


Oracle Linux Security Advisory ELSA-2026-25927

http://linux.oracle.com/errata/ELSA-2026-25927.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
webkit2gtk3-2.52.4-1.el9_8.i686.rpm
webkit2gtk3-2.52.4-1.el9_8.x86_64.rpm
webkit2gtk3-devel-2.52.4-1.el9_8.i686.rpm
webkit2gtk3-devel-2.52.4-1.el9_8.x86_64.rpm
webkit2gtk3-jsc-2.52.4-1.el9_8.i686.rpm
webkit2gtk3-jsc-2.52.4-1.el9_8.x86_64.rpm
webkit2gtk3-jsc-devel-2.52.4-1.el9_8.i686.rpm
webkit2gtk3-jsc-devel-2.52.4-1.el9_8.x86_64.rpm

aarch64:
webkit2gtk3-2.52.4-1.el9_8.aarch64.rpm
webkit2gtk3-devel-2.52.4-1.el9_8.aarch64.rpm
webkit2gtk3-jsc-2.52.4-1.el9_8.aarch64.rpm
webkit2gtk3-jsc-devel-2.52.4-1.el9_8.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/webkit2gtk3-2.52.4-1.el9_8.src.rpm

Related CVEs:

CVE-2026-28847
CVE-2026-28883
CVE-2026-28901
CVE-2026-28902
CVE-2026-28903
CVE-2026-28904
CVE-2026-28905
CVE-2026-28907
CVE-2026-28942
CVE-2026-28946
CVE-2026-28947
CVE-2026-28953
CVE-2026-28955
CVE-2026-28958
CVE-2026-43658
CVE-2026-43660

Description of changes:

[2.52.4-1]
- Update to 2.52.4



ELSA-2026-22553 Moderate: Oracle Linux 9 libexif security update


Oracle Linux Security Advisory ELSA-2026-22553

http://linux.oracle.com/errata/ELSA-2026-22553.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
libexif-0.6.22-6.el9_8.1.i686.rpm
libexif-0.6.22-6.el9_8.1.x86_64.rpm
libexif-devel-0.6.22-6.el9_8.1.i686.rpm
libexif-devel-0.6.22-6.el9_8.1.x86_64.rpm

aarch64:
libexif-0.6.22-6.el9_8.1.aarch64.rpm
libexif-devel-0.6.22-6.el9_8.1.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/libexif-0.6.22-6.el9_8.1.src.rpm

Related CVEs:

CVE-2026-40385
CVE-2026-40386

Description of changes:

[0.6.22-6.1]
- Fix integer underflow in MakerNote decoding (CVE-2026-40386)
- Fix integer overflow in Nikon MakerNote handling (CVE-2026-40385)
Resolves: RHEL-170253, RHEL-170234



ELSA-2026-19367 Important: Oracle Linux 9 giflib update


Oracle Linux Security Advisory ELSA-2026-19367

http://linux.oracle.com/errata/ELSA-2026-19367.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
giflib-5.2.1-10.el9_8.1.i686.rpm
giflib-5.2.1-10.el9_8.1.x86_64.rpm
giflib-devel-5.2.1-10.el9_8.1.i686.rpm
giflib-devel-5.2.1-10.el9_8.1.x86_64.rpm

aarch64:
giflib-5.2.1-10.el9_8.1.aarch64.rpm
giflib-devel-5.2.1-10.el9_8.1.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/giflib-5.2.1-10.el9_8.1.src.rpm

Related CVEs:

CVE-2026-23868

Description of changes:

[5.2.1-10.1]
- rebuild

[5.2.1-10]
- fix CVE-2026-23868: double free in GifMakeSavedImage (RHEL-154864)



ELSA-2026-19357 Important: Oracle Linux 9 krb5 security update


Oracle Linux Security Advisory ELSA-2026-19357

http://linux.oracle.com/errata/ELSA-2026-19357.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
krb5-devel-1.21.1-10.0.1.el9_8.i686.rpm
krb5-devel-1.21.1-10.0.1.el9_8.x86_64.rpm
krb5-libs-1.21.1-10.0.1.el9_8.i686.rpm
krb5-libs-1.21.1-10.0.1.el9_8.x86_64.rpm
krb5-pkinit-1.21.1-10.0.1.el9_8.i686.rpm
krb5-pkinit-1.21.1-10.0.1.el9_8.x86_64.rpm
krb5-server-1.21.1-10.0.1.el9_8.i686.rpm
krb5-server-1.21.1-10.0.1.el9_8.x86_64.rpm
krb5-server-ldap-1.21.1-10.0.1.el9_8.i686.rpm
krb5-server-ldap-1.21.1-10.0.1.el9_8.x86_64.rpm
krb5-workstation-1.21.1-10.0.1.el9_8.x86_64.rpm
krb5-xrealmauthz-1.21.1-10.0.1.el9_8.i686.rpm
krb5-xrealmauthz-1.21.1-10.0.1.el9_8.x86_64.rpm
libkadm5-1.21.1-10.0.1.el9_8.i686.rpm
libkadm5-1.21.1-10.0.1.el9_8.x86_64.rpm

aarch64:
krb5-devel-1.21.1-10.0.1.el9_8.aarch64.rpm
krb5-libs-1.21.1-10.0.1.el9_8.aarch64.rpm
krb5-pkinit-1.21.1-10.0.1.el9_8.aarch64.rpm
krb5-server-1.21.1-10.0.1.el9_8.aarch64.rpm
krb5-server-ldap-1.21.1-10.0.1.el9_8.aarch64.rpm
krb5-workstation-1.21.1-10.0.1.el9_8.aarch64.rpm
krb5-xrealmauthz-1.21.1-10.0.1.el9_8.aarch64.rpm
libkadm5-1.21.1-10.0.1.el9_8.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/krb5-1.21.1-10.0.1.el9_8.src.rpm

Related CVEs:

CVE-2026-40355
CVE-2026-40356

Description of changes:

[1.21.1-10.0.1]
- Fixed race condition in krb5_set_password() [Orabug: 33609767]

[1.21.1-10]
- Fix NegoEx parsing vulnerabilities (CVE-2026-40355, CVE-2026-40356)
Resolves: RHEL-171590 RHEL-171596



ELSA-2026-19350 Important: Oracle Linux 9 git-lfs security update


Oracle Linux Security Advisory ELSA-2026-19350

http://linux.oracle.com/errata/ELSA-2026-19350.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
git-lfs-3.7.1-4.el9_8.x86_64.rpm

aarch64:
git-lfs-3.7.1-4.el9_8.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/git-lfs-3.7.1-4.el9_8.src.rpm

Related CVEs:

CVE-2026-25679
CVE-2026-32280
CVE-2026-32282
CVE-2026-32283

Description of changes:

[3.7.1-4]
- Rebuild with new Golang
- Resolves: RHEL-158765, RHEL-166675, RHEL-167677, RHEL-170838



ELSA-2026-19346 Important: Oracle Linux 9 libcap security update


Oracle Linux Security Advisory ELSA-2026-19346

http://linux.oracle.com/errata/ELSA-2026-19346.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
libcap-2.48-10.el9_8.1.i686.rpm
libcap-2.48-10.el9_8.1.x86_64.rpm
libcap-devel-2.48-10.el9_8.1.i686.rpm
libcap-devel-2.48-10.el9_8.1.x86_64.rpm

aarch64:
libcap-2.48-10.el9_8.1.aarch64.rpm
libcap-devel-2.48-10.el9_8.1.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/libcap-2.48-10.el9_8.1.src.rpm

Related CVEs:

CVE-2026-4878

Description of changes:

[2.48-10.1]
- Fix TOCTOU race condition in cap_set_file() (CVE-2026-4878)
Resolves: RHEL-169312



ELSA-2026-19342 Important: Oracle Linux 9 tigervnc security update


Oracle Linux Security Advisory ELSA-2026-19342

http://linux.oracle.com/errata/ELSA-2026-19342.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
tigervnc-1.15.0-7.el9_8.1.x86_64.rpm
tigervnc-icons-1.15.0-7.el9_8.1.noarch.rpm
tigervnc-license-1.15.0-7.el9_8.1.noarch.rpm
tigervnc-selinux-1.15.0-7.el9_8.1.noarch.rpm
tigervnc-server-1.15.0-7.el9_8.1.x86_64.rpm
tigervnc-server-minimal-1.15.0-7.el9_8.1.x86_64.rpm
tigervnc-server-module-1.15.0-7.el9_8.1.x86_64.rpm

aarch64:
tigervnc-1.15.0-7.el9_8.1.aarch64.rpm
tigervnc-icons-1.15.0-7.el9_8.1.noarch.rpm
tigervnc-license-1.15.0-7.el9_8.1.noarch.rpm
tigervnc-selinux-1.15.0-7.el9_8.1.noarch.rpm
tigervnc-server-1.15.0-7.el9_8.1.aarch64.rpm
tigervnc-server-minimal-1.15.0-7.el9_8.1.aarch64.rpm
tigervnc-server-module-1.15.0-7.el9_8.1.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/tigervnc-1.15.0-7.el9_8.1.src.rpm

Related CVEs:

CVE-2026-33999
CVE-2026-34000
CVE-2026-34001
CVE-2026-34003
CVE-2026-34352

Description of changes:

[1.15.0-7.1]
- Fix CVE-2026-33999, CVE-2026-34000, CVE-2026-34001, CVE-2026-34002,
CVE-2026-34003 xorg-x11-server: various XKB and XSYNC vulnerabilities
Resolves: RHEL-163213
Resolves: RHEL-163281
Resolves: RHEL-163267
- Fix CVE-2026-34352
Resolves: RHEL-167986

[1.15.0-7]
- Fix CVE-2025-62229: xorg-x11-server: Use-after-free in XPresentNotify structures creation
Resolves: RHEL-119989

- Fix CVE-2025-62230: xorg-x11-server: Use-after-free in Xkb client resource removal
Resolves: RHEL-120009

- Fix CVE-2025-62231: xorg-x11-server: Value overflow in Xkb extension XkbSetCompatMap()
Resolves: RHEL-120770

[1.15.0-5]
- Fix CVE-2025-49175: xorg-x11-server: Out-of-Bounds Read in X Rendering Extension Animated Cursors
Resolves: RHEL-97284

- Fix CVE-2025-49176: xorg-x11-server: Integer Overflow in Big Requests Extension
Resolves: RHEL-97303

- Fix CVE-2025-49178: xorg-x11-server: Unprocessed Client Request Due to Bytes to Ignore
Resolves: RHEL-97379

- Fix CVE-2025-49179: xorg-x11-server: Integer overflow in X Record extension
Resolves: RHEL-97414

- Fix CVE-2025-49180: xorg-x11-server: Integer Overflow in X Resize, Rotate and Reflect (RandR) Extension
Resolves: RHEL-97429

[1.15.0-4]
- Fix broken authentication with x0vncserver
Resolves: RHEL-93573

[1.15.0-3]
- Only warn about 8 characters limit, but let it proceed
Resolves: RHEL-89432

[1.15.0-2]
- Fix inetd mode not working
Resolves: RHEL-86511

[1.15.0-1]
- 1.15.0
Resolves: RHEL-78617
- Add SELinux policy rules allowing to access /proc/sys/fs/nr_open
Resolves: RHEL-77973
- Add SELinux policy rules allowing to create directories under /root
Resolves: RHEL-77975
- Fix CVE-2025-26594 xorg-x11-server Use-after-free of the root cursor
Resolves: RHEL-80208
- Fix CVE-2025-26595 xorg-x11-server Buffer overflow in XkbVModMaskText()
Resolves: RHEL-80189
- Fix CVE-2025-26596 xorg-x11-server Heap overflow in XkbWriteKeySyms()
Resolves: RHEL-80194
- Fix CVE-2025-26597 xorg-x11-server Buffer overflow in XkbChangeTypesOfKey()
Resolves: RHEL-80196
- Fix CVE-2025-26598 xorg-x11-server Out-of-bounds write in CreatePointerBarrierClient()
Resolves: RHEL-80197
- Fix CVE-2025-26599 xorg-x11-server Use of uninitialized pointer in compRedirectWindow()
Resolves: RHEL-80206
- Fix CVE-2025-26600 xorg-x11-server Use-after-free in PlayReleasedEvents()
Resolves: RHEL-80205
- Fix CVE-2025-26601 xorg-x11-server Use-after-free in SyncInitTrigger()
Resolves: RHEL-80209

[1.14.1-4]
- Fix crash in clipboard support in x0vncserver
Resolves: RHEL-74216

[1.14.1-3]
- Add clipboard support to x0vncserver
Resolves: RHEL-74216

[1.14.1-2]
- Fix CVE-2024-9632: xorg-x11-server: heap-based buffer overflow privilege escalation vulnerability
Resolves: RHEL-62001



ELSA-2026-18693 Moderate: Oracle Linux 9 python3.9 security update


Oracle Linux Security Advisory ELSA-2026-18693

http://linux.oracle.com/errata/ELSA-2026-18693.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
python-unversioned-command-3.9.25-7.0.1.el9_8.noarch.rpm
python3-3.9.25-7.0.1.el9_8.i686.rpm
python3-3.9.25-7.0.1.el9_8.x86_64.rpm
python3-debug-3.9.25-7.0.1.el9_8.i686.rpm
python3-debug-3.9.25-7.0.1.el9_8.x86_64.rpm
python3-devel-3.9.25-7.0.1.el9_8.i686.rpm
python3-devel-3.9.25-7.0.1.el9_8.x86_64.rpm
python3-idle-3.9.25-7.0.1.el9_8.i686.rpm
python3-idle-3.9.25-7.0.1.el9_8.x86_64.rpm
python3-libs-3.9.25-7.0.1.el9_8.i686.rpm
python3-libs-3.9.25-7.0.1.el9_8.x86_64.rpm
python3-test-3.9.25-7.0.1.el9_8.i686.rpm
python3-test-3.9.25-7.0.1.el9_8.x86_64.rpm
python3-tkinter-3.9.25-7.0.1.el9_8.i686.rpm
python3-tkinter-3.9.25-7.0.1.el9_8.x86_64.rpm

aarch64:
python-unversioned-command-3.9.25-7.0.1.el9_8.noarch.rpm
python3-3.9.25-7.0.1.el9_8.aarch64.rpm
python3-debug-3.9.25-7.0.1.el9_8.aarch64.rpm
python3-devel-3.9.25-7.0.1.el9_8.aarch64.rpm
python3-idle-3.9.25-7.0.1.el9_8.aarch64.rpm
python3-libs-3.9.25-7.0.1.el9_8.aarch64.rpm
python3-test-3.9.25-7.0.1.el9_8.aarch64.rpm
python3-tkinter-3.9.25-7.0.1.el9_8.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/python3.9-3.9.25-7.0.1.el9_8.src.rpm

Related CVEs:

CVE-2026-0865

Description of changes:

[3.9.25-7.0.1]
- Remove upstream URL reference

[3.9.25-7]
- Security fixes for CVE-2026-4786 and CVE-2026-6100
Resolves: RHEL-167919, RHEL-168161

[3.9.25-6]
- Security fix for CVE-2026-4519
Resolves: RHEL-158117

[3.9.25-5]
- Rebuilding previous fixes for different build target
Related: RHEL-143117, RHEL-143174, RHEL-144897

[3.9.25-4]
- Security fixes for CVE-2026-0865, CVE-2025-15366, CVE-2025-15367 and CVE-2026-1299
Resolves: RHEL-143117
Resolves: RHEL-143174
Resolves: RHEL-144897



ELBA-2026-25921 Oracle Linux 9 scap-security-guide bug fix and enhancement update


Oracle Linux Bug Fix Advisory ELBA-2026-25921

http://linux.oracle.com/errata/ELBA-2026-25921.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
scap-security-guide-0.1.81-1.0.1.el9_8.noarch.rpm
scap-security-guide-doc-0.1.81-1.0.1.el9_8.noarch.rpm

aarch64:
scap-security-guide-0.1.81-1.0.1.el9_8.noarch.rpm
scap-security-guide-doc-0.1.81-1.0.1.el9_8.noarch.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/scap-security-guide-0.1.81-1.0.1.el9_8.src.rpm

Description of changes:

[0.1.81-1.0.1]
- Update OL8 STIG to V2R8 [Orabug: 39589905]
- Update OL9 STIG to V1R5 [Orabug: 39589905]
- Fix RH rerefences for OL10 [Orabug : 39589905]

[0.1.81.openela.1.0]
- Add OpenELA as derivative of RHEL

[0.1.81-1]
- rule rsyslog_remote_access_monitoring handles Rainer syntax objects as case insensitive (RHEL-171951)
- Fixed remediation problems occurring when authselect profiles contain multiple authselect features (RHEL-165050)
- Rebase scap-security-guide to 0.1.81 (RHEL-180787)



ELSA-2026-28999 Important: Oracle Linux 8 postgresql:12 security update


Oracle Linux Security Advisory ELSA-2026-28999

http://linux.oracle.com/errata/ELSA-2026-28999.html

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:

x86_64:
postgresql-12.22-6.0.1.module+el8.10.0+90932+f6d78e3c.x86_64.rpm
postgresql-contrib-12.22-6.0.1.module+el8.10.0+90932+f6d78e3c.x86_64.rpm
postgresql-docs-12.22-6.0.1.module+el8.10.0+90932+f6d78e3c.x86_64.rpm
postgresql-plperl-12.22-6.0.1.module+el8.10.0+90932+f6d78e3c.x86_64.rpm
postgresql-plpython3-12.22-6.0.1.module+el8.10.0+90932+f6d78e3c.x86_64.rpm
postgresql-pltcl-12.22-6.0.1.module+el8.10.0+90932+f6d78e3c.x86_64.rpm
postgresql-server-12.22-6.0.1.module+el8.10.0+90932+f6d78e3c.x86_64.rpm
postgresql-server-devel-12.22-6.0.1.module+el8.10.0+90932+f6d78e3c.x86_64.rpm
postgresql-static-12.22-6.0.1.module+el8.10.0+90932+f6d78e3c.x86_64.rpm
postgresql-test-12.22-6.0.1.module+el8.10.0+90932+f6d78e3c.x86_64.rpm
postgresql-test-rpm-macros-12.22-6.0.1.module+el8.10.0+90932+f6d78e3c.noarch.rpm
postgresql-upgrade-12.22-6.0.1.module+el8.10.0+90932+f6d78e3c.x86_64.rpm
postgresql-upgrade-devel-12.22-6.0.1.module+el8.10.0+90932+f6d78e3c.x86_64.rpm

aarch64:
postgresql-12.22-6.0.1.module+el8.10.0+90932+f6d78e3c.aarch64.rpm
postgresql-contrib-12.22-6.0.1.module+el8.10.0+90932+f6d78e3c.aarch64.rpm
postgresql-docs-12.22-6.0.1.module+el8.10.0+90932+f6d78e3c.aarch64.rpm
postgresql-plperl-12.22-6.0.1.module+el8.10.0+90932+f6d78e3c.aarch64.rpm
postgresql-plpython3-12.22-6.0.1.module+el8.10.0+90932+f6d78e3c.aarch64.rpm
postgresql-pltcl-12.22-6.0.1.module+el8.10.0+90932+f6d78e3c.aarch64.rpm
postgresql-server-12.22-6.0.1.module+el8.10.0+90932+f6d78e3c.aarch64.rpm
postgresql-server-devel-12.22-6.0.1.module+el8.10.0+90932+f6d78e3c.aarch64.rpm
postgresql-static-12.22-6.0.1.module+el8.10.0+90932+f6d78e3c.aarch64.rpm
postgresql-test-12.22-6.0.1.module+el8.10.0+90932+f6d78e3c.aarch64.rpm
postgresql-test-rpm-macros-12.22-6.0.1.module+el8.10.0+90932+f6d78e3c.noarch.rpm
postgresql-upgrade-12.22-6.0.1.module+el8.10.0+90932+f6d78e3c.aarch64.rpm
postgresql-upgrade-devel-12.22-6.0.1.module+el8.10.0+90932+f6d78e3c.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol8/SRPMS-updates/postgresql-12.22-6.0.1.module+el8.10.0+90932+f6d78e3c.src.rpm

Related CVEs:

CVE-2026-6473
CVE-2026-6478

Description of changes:

[12.22-6.0.1]
- Add backport of CVE-2025-8714 [Orabug: 38667546]

[12.22-6]
- Fix CVE-2026-2004 CVE-2026-2005 CVE-2026-2006

[12.22-5]
- Fix previous Backport

[12.22-4]
- Backport CVE-2025-8715

[12.22-3]
- Fix backport for CVE-2025-1094

[12.22-2]
- Backport fix for CVE-2025-1094

[12.22-1]
- Update to 12.22
- Fixes: CVE-2024-10976 CVE-2024-10978

[12.20-1]
- Update to 12.20
- Fix CVE-2024-7348

[12.18-1]
- Update to 12.18
- Fix CVE-2024-0985

[12.17-1]
- Update to version 12.17
Fix: CVE-2023-5868, CVE-2023-5869, CVE-2023-5870



ELSA-2026-28208 Important: Oracle Linux 8 postgresql:13 security update


Oracle Linux Security Advisory ELSA-2026-28208

http://linux.oracle.com/errata/ELSA-2026-28208.html

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:

x86_64:
pgaudit-1.5.0-1.module+el8.9.0+90098+1560b6c2.x86_64.rpm
pg_repack-1.4.6-3.module+el8.9.0+90098+1560b6c2.x86_64.rpm
postgres-decoderbufs-0.10.0-2.module+el8.9.0+90098+1560b6c2.x86_64.rpm
postgresql-13.23-3.module+el8.10.0+90927+50389279.x86_64.rpm
postgresql-contrib-13.23-3.module+el8.10.0+90927+50389279.x86_64.rpm
postgresql-docs-13.23-3.module+el8.10.0+90927+50389279.x86_64.rpm
postgresql-plperl-13.23-3.module+el8.10.0+90927+50389279.x86_64.rpm
postgresql-plpython3-13.23-3.module+el8.10.0+90927+50389279.x86_64.rpm
postgresql-pltcl-13.23-3.module+el8.10.0+90927+50389279.x86_64.rpm
postgresql-server-13.23-3.module+el8.10.0+90927+50389279.x86_64.rpm
postgresql-server-devel-13.23-3.module+el8.10.0+90927+50389279.x86_64.rpm
postgresql-static-13.23-3.module+el8.10.0+90927+50389279.x86_64.rpm
postgresql-test-13.23-3.module+el8.10.0+90927+50389279.x86_64.rpm
postgresql-test-rpm-macros-13.23-3.module+el8.10.0+90927+50389279.noarch.rpm
postgresql-upgrade-13.23-3.module+el8.10.0+90927+50389279.x86_64.rpm
postgresql-upgrade-devel-13.23-3.module+el8.10.0+90927+50389279.x86_64.rpm

aarch64:
pgaudit-1.5.0-1.module+el8.9.0+90098+1560b6c2.aarch64.rpm
pg_repack-1.4.6-3.module+el8.9.0+90098+1560b6c2.aarch64.rpm
postgres-decoderbufs-0.10.0-2.module+el8.9.0+90098+1560b6c2.aarch64.rpm
postgresql-13.23-3.module+el8.10.0+90927+50389279.aarch64.rpm
postgresql-contrib-13.23-3.module+el8.10.0+90927+50389279.aarch64.rpm
postgresql-docs-13.23-3.module+el8.10.0+90927+50389279.aarch64.rpm
postgresql-plperl-13.23-3.module+el8.10.0+90927+50389279.aarch64.rpm
postgresql-plpython3-13.23-3.module+el8.10.0+90927+50389279.aarch64.rpm
postgresql-pltcl-13.23-3.module+el8.10.0+90927+50389279.aarch64.rpm
postgresql-server-13.23-3.module+el8.10.0+90927+50389279.aarch64.rpm
postgresql-server-devel-13.23-3.module+el8.10.0+90927+50389279.aarch64.rpm
postgresql-static-13.23-3.module+el8.10.0+90927+50389279.aarch64.rpm
postgresql-test-13.23-3.module+el8.10.0+90927+50389279.aarch64.rpm
postgresql-test-rpm-macros-13.23-3.module+el8.10.0+90927+50389279.noarch.rpm
postgresql-upgrade-13.23-3.module+el8.10.0+90927+50389279.aarch64.rpm
postgresql-upgrade-devel-13.23-3.module+el8.10.0+90927+50389279.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol8/SRPMS-updates/pgaudit-1.5.0-1.module+el8.9.0+90098+1560b6c2.src.rpm
http://oss.oracle.com/ol8/SRPMS-updates/pg_repack-1.4.6-3.module+el8.9.0+90098+1560b6c2.src.rpm
http://oss.oracle.com/ol8/SRPMS-updates/postgres-decoderbufs-0.10.0-2.module+el8.9.0+90098+1560b6c2.src.rpm
http://oss.oracle.com/ol8/SRPMS-updates/postgresql-13.23-3.module+el8.10.0+90927+50389279.src.rpm

Related CVEs:

CVE-2026-6478

Description of changes:

pgaudit
[1.5.0-1]
- Update to version 1.5.0
Related: #1855776

[1.4.0-4]
- Bump release for rebuild against libpq-12.1-3

[1.4.0-3]
- BuildRequires libpq-devel

[1.4.0-2]
- BuildRequires postgresql-server-devel

[1.4.0-1]
- Update to 1.4.0

[1.3.1-1]
- Update to 1.3.1 and apply patch for pgsql v12 compatibility

[1.2.0-4]
- SCLize the SPEC

[1.2.0-3]
- Rebuilt for https://fedoraproject.org/wiki/Fedora_29_Mass_Rebuild

[1.2.0-2]
- Rebuilt for https://fedoraproject.org/wiki/Fedora_28_Mass_Rebuild

[1.2.0-1]
- Initial RPM packaging for Fedora
- Based on Devrim Gündüz's packaging for PostgreSQL RPM Repo

pg_repack
[1.4.6-3]
- Release bump - enable gating

[1.4.6-2]
- Rebuild
- Resolves:#1954442

[1.4.6-1]
- Rebase to upstream release 1.4.6

[1.4.5-2]
- Rebuilt for https://fedoraproject.org/wiki/Fedora_33_Mass_Rebuild

[1.4.5-1]
- Initial packaging

postgres-decoderbufs
[0.10.0-2]
- Release bump for rebuild against libpq-12.1-3

* Wed Oct 09 2019 Patrik Novotný