ELSA-2025-11537 Important: Oracle Linux 10 sudo security update
ELSA-2025-11533 Important: Oracle Linux 10 git security update
ELSA-2025-11428 Important: Oracle Linux 10 kernel security update
ELBA-2025-11538 Oracle Linux 10 sos bug fix and enhancement update
ELSA-2025-11453 Important: Oracle Linux 9 redis security update
ELSA-2025-11411 Important: Oracle Linux 9 kernel security update
ELBA-2025-11538 Oracle Linux 9 sos bug fix and enhancement update
ELBA-2025-11455-1 Oracle Linux 8 kernel bug fix update
ELSA-2025-11534 Important: Oracle Linux 8 git security update
ELBA-2025-11538 Oracle Linux 8 sos bug fix and enhancement update
ELSA-2025-11537 Important: Oracle Linux 10 sudo security update
Oracle Linux Security Advisory ELSA-2025-11537
http://linux.oracle.com/errata/ELSA-2025-11537.html
The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:
x86_64:
sudo-1.9.15-8.p5.el10_0.2.x86_64.rpm
sudo-python-plugin-1.9.15-8.p5.el10_0.2.x86_64.rpm
aarch64:
sudo-1.9.15-8.p5.el10_0.2.aarch64.rpm
sudo-python-plugin-1.9.15-8.p5.el10_0.2.aarch64.rpm
SRPMS:
http://oss.oracle.com/ol10/SRPMS-updates/sudo-1.9.15-8.p5.el10_0.2.src.rpm
Related CVEs:
CVE-2025-32462
CVE-2025-32463
Description of changes:
[1.9.15-8.p5.2]
- RHEL 10.1 ERRATUM
- CVE-2025-32462 sudo: LPE via host option Resolves: RHEL-100009
- CVE-2025-32463 sudo: LPE via chroot option Resolves: RHEL-100022
ELSA-2025-11533 Important: Oracle Linux 10 git security update
Oracle Linux Security Advisory ELSA-2025-11533
http://linux.oracle.com/errata/ELSA-2025-11533.html
The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:
x86_64:
git-2.47.3-1.el10_0.x86_64.rpm
git-all-2.47.3-1.el10_0.noarch.rpm
git-core-2.47.3-1.el10_0.x86_64.rpm
git-core-doc-2.47.3-1.el10_0.noarch.rpm
git-credential-libsecret-2.47.3-1.el10_0.x86_64.rpm
git-daemon-2.47.3-1.el10_0.x86_64.rpm
git-email-2.47.3-1.el10_0.noarch.rpm
git-gui-2.47.3-1.el10_0.noarch.rpm
git-instaweb-2.47.3-1.el10_0.noarch.rpm
git-subtree-2.47.3-1.el10_0.noarch.rpm
git-svn-2.47.3-1.el10_0.noarch.rpm
gitk-2.47.3-1.el10_0.noarch.rpm
gitweb-2.47.3-1.el10_0.noarch.rpm
perl-Git-2.47.3-1.el10_0.noarch.rpm
perl-Git-SVN-2.47.3-1.el10_0.noarch.rpm
aarch64:
git-2.47.3-1.el10_0.aarch64.rpm
git-all-2.47.3-1.el10_0.noarch.rpm
git-core-2.47.3-1.el10_0.aarch64.rpm
git-core-doc-2.47.3-1.el10_0.noarch.rpm
git-credential-libsecret-2.47.3-1.el10_0.aarch64.rpm
git-daemon-2.47.3-1.el10_0.aarch64.rpm
git-email-2.47.3-1.el10_0.noarch.rpm
git-gui-2.47.3-1.el10_0.noarch.rpm
git-instaweb-2.47.3-1.el10_0.noarch.rpm
git-subtree-2.47.3-1.el10_0.noarch.rpm
git-svn-2.47.3-1.el10_0.noarch.rpm
gitk-2.47.3-1.el10_0.noarch.rpm
gitweb-2.47.3-1.el10_0.noarch.rpm
perl-Git-2.47.3-1.el10_0.noarch.rpm
perl-Git-SVN-2.47.3-1.el10_0.noarch.rpm
SRPMS:
http://oss.oracle.com/ol10/SRPMS-updates/git-2.47.3-1.el10_0.src.rpm
Related CVEs:
CVE-2024-50349
CVE-2024-52006
CVE-2025-27613
CVE-2025-27614
CVE-2025-46835
CVE-2025-48384
CVE-2025-48385
Description of changes:
[2.47.3-1]
- update to 2.47.3
- Resolves: RHEL-102437, RHEL-102451, RHEL-102673, RHEL-102679
ELSA-2025-11428 Important: Oracle Linux 10 kernel security update
Oracle Linux Security Advisory ELSA-2025-11428
http://linux.oracle.com/errata/ELSA-2025-11428.html
The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:
x86_64:
kernel-6.12.0-55.22.1.0.1.el10_0.x86_64.rpm
kernel-abi-stablelists-6.12.0-55.22.1.0.1.el10_0.noarch.rpm
kernel-core-6.12.0-55.22.1.0.1.el10_0.x86_64.rpm
kernel-debug-6.12.0-55.22.1.0.1.el10_0.x86_64.rpm
kernel-debug-core-6.12.0-55.22.1.0.1.el10_0.x86_64.rpm
kernel-debug-modules-6.12.0-55.22.1.0.1.el10_0.x86_64.rpm
kernel-debug-modules-core-6.12.0-55.22.1.0.1.el10_0.x86_64.rpm
kernel-debug-modules-extra-6.12.0-55.22.1.0.1.el10_0.x86_64.rpm
kernel-debug-uki-virt-6.12.0-55.22.1.0.1.el10_0.x86_64.rpm
kernel-modules-6.12.0-55.22.1.0.1.el10_0.x86_64.rpm
kernel-modules-core-6.12.0-55.22.1.0.1.el10_0.x86_64.rpm
kernel-modules-extra-6.12.0-55.22.1.0.1.el10_0.x86_64.rpm
kernel-tools-6.12.0-55.22.1.0.1.el10_0.x86_64.rpm
kernel-tools-libs-6.12.0-55.22.1.0.1.el10_0.x86_64.rpm
kernel-uki-virt-6.12.0-55.22.1.0.1.el10_0.x86_64.rpm
kernel-uki-virt-addons-6.12.0-55.22.1.0.1.el10_0.x86_64.rpm
kernel-cross-headers-6.12.0-55.22.1.0.1.el10_0.x86_64.rpm
kernel-debug-devel-matched-6.12.0-55.22.1.0.1.el10_0.x86_64.rpm
kernel-debug-devel-6.12.0-55.22.1.0.1.el10_0.x86_64.rpm
kernel-devel-matched-6.12.0-55.22.1.0.1.el10_0.x86_64.rpm
kernel-devel-6.12.0-55.22.1.0.1.el10_0.x86_64.rpm
kernel-doc-6.12.0-55.22.1.0.1.el10_0.noarch.rpm
kernel-headers-6.12.0-55.22.1.0.1.el10_0.x86_64.rpm
kernel-tools-libs-devel-6.12.0-55.22.1.0.1.el10_0.x86_64.rpm
libperf-6.12.0-55.22.1.0.1.el10_0.x86_64.rpm
perf-6.12.0-55.22.1.0.1.el10_0.x86_64.rpm
python3-perf-6.12.0-55.22.1.0.1.el10_0.x86_64.rpm
rtla-6.12.0-55.22.1.0.1.el10_0.x86_64.rpm
rv-6.12.0-55.22.1.0.1.el10_0.x86_64.rpm
aarch64:
kernel-cross-headers-6.12.0-55.22.1.0.1.el10_0.aarch64.rpm
kernel-headers-6.12.0-55.22.1.0.1.el10_0.aarch64.rpm
kernel-tools-libs-devel-6.12.0-55.22.1.0.1.el10_0.aarch64.rpm
kernel-tools-libs-6.12.0-55.22.1.0.1.el10_0.aarch64.rpm
kernel-tools-6.12.0-55.22.1.0.1.el10_0.aarch64.rpm
libperf-6.12.0-55.22.1.0.1.el10_0.aarch64.rpm
perf-6.12.0-55.22.1.0.1.el10_0.aarch64.rpm
python3-perf-6.12.0-55.22.1.0.1.el10_0.aarch64.rpm
rtla-6.12.0-55.22.1.0.1.el10_0.aarch64.rpm
rv-6.12.0-55.22.1.0.1.el10_0.aarch64.rpm
SRPMS:
http://oss.oracle.com/ol10/SRPMS-updates/kernel-6.12.0-55.22.1.0.1.el10_0.src.rpm
Related CVEs:
CVE-2024-57980
CVE-2024-58002
CVE-2025-21905
CVE-2025-37958
CVE-2025-38089
Description of changes:
[6.12.0-55.22.1.0.1.el10_0.OL10]
- nvme-pci: remove two deallocate zeroes quirks [Orabug: 37756650]
- Add new Oracle Linux Driver Signing (key 1) certificate [Orabug: 37985782]
- Disable UKI signing [Orabug: 36571828]
- Update Oracle Linux certificates (Kevin Lyons)
- Disable signing for aarch64 (Ilya Okomin)
- Oracle Linux RHCK Module Signing Key was added to the kernel trusted keys list (olkmod_signing_key.pem) [Orabug: 29539237]
- Update x509.genkey [Orabug: 24817676]
- Conflict with shim-ia32 and shim-x64