Security News

Cybersecurity news aggregator

🔄
MEDIUM Updates Red Hat Errata

RHSA-2026:42694: Moderate: glibc security update

  • What: Security update for glibc in Red Hat Enterprise Linux 10
  • Impact: Systems using glibc may be vulnerable if not updated
Read Full Article →

Red Hat Product Errata RHSA-2026:42694 - Security Advisory Issued: 2026-07-21 Updated: 2026-07-21 RHSA-2026:42694 - Security Advisory Overview Updated Packages Synopsis Moderate: glibc security update Type/Severity Security Advisory: Moderate Red Hat Lightspeed patch analysis Identify and remediate systems affected by this advisory. View affected systems Topic An update for glibc is now available for Red Hat Enterprise Linux 10. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. Description The glibc packages provide the standard C libraries (libc), POSIX thread libraries (libpthread), standard math libraries (libm), and the name service cache daemon (nscd) used by multiple programs on the system. Without these libraries, the Linux system cannot function correctly. Security Fix(es): glibc: glibc: Information disclosure or denial of service via ungetwc function with specific wide character encodings (CVE-2026-5928) glibc: glibc: Out-of-bounds write via TSIG record processing (CVE-2026-5435) glibc: glibc: Application crash or uninitialized memory read via crafted DNS response (CVE-2026-6238) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Solution For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 Affected Products Red Hat Enterprise Linux for x86_64 10 x86_64 Red Hat Enterprise Linux for x86_64 - Extended Update Support 10.2 x86_64 Red Hat Enterprise Linux for IBM z Systems 10 s390x Red Hat Enterprise Linux for IBM z Systems - Extended Update Support 10.2 s390x Red Hat Enterprise Linux for Power, little endian 10 ppc64le Red Hat Enterprise Linux for Power, little endian - Extended Update Support 10.2 ppc64le Red Hat Enterprise Linux for ARM 64 10 aarch64 Red Hat Enterprise Linux for ARM 64 - Extended Update Support 10.2 aarch64 Red Hat CodeReady Linux Builder for x86_64 10 x86_64 Red Hat CodeReady Linux Builder for Power, little endian 10 ppc64le Red Hat CodeReady Linux Builder for ARM 64 10 aarch64 Red Hat CodeReady Linux Builder for IBM z Systems 10 s390x Red Hat CodeReady Linux Builder for x86_64 - Extended Update Support 10.2 x86_64 Red Hat CodeReady Linux Builder for Power, little endian - Extended Update Support 10.2 ppc64le Red Hat CodeReady Linux Builder for IBM z Systems - Extended Update Support 10.2 s390x Red Hat CodeReady Linux Builder for ARM 64 - Extended Update Support 10.2 aarch64 Red Hat Enterprise Linux for ARM 64 - 4 years of updates 10.2 aarch64 Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 10.2 s390x Red Hat Enterprise Linux for Power, little endian - 4 years of support 10.2 ppc64le Red Hat Enterprise Linux for x86_64 - 4 years of updates 10.2 x86_64 Red Hat Enterprise Linux for x86_64 - Extended Life Cycle 10.2 x86_64 Red Hat Enterprise Linux for ARM 64 - Extended Life Cycle 10.2 aarch64 Red Hat Enterprise Linux for Power, little endian - Extended Life Cycle 10.2 ppc64le Red Hat Enterprise Linux for IBM z Systems - Extended Life Cycle 10.2 s390x Fixes BZ - 2459854 - CVE-2026-5928 glibc: glibc: Information disclosure or denial of service via ungetwc function with specific wide character encodings BZ - 2463465 - CVE-2026-5435 glibc: glibc: Out-of-bounds write via TSIG record processing BZ - 2463539 - CVE-2026-6238 glibc: glibc: Application crash or uninitialized memory read via crafted DNS response CVEs CVE-2026-5435 CVE-2026-5928 CVE-2026-6238 References https://access.redhat.com/security/updates/classification/#moderate Note: More recent versions of these packages may be available. Click a package name for more details. Red Hat Enterprise Linux for x86_64 10 SRPM x86_64 glibc-common-2.39-128.el10_2.x86_64.rpm SHA-256: 18044ab8318d974b54cd3ef812340a7cc44242cd32fc3db45b90816dceee7372 glibc-common-debuginfo-2.39-128.el10_2.x86_64.rpm SHA-256: c0b3b27b7cd20fd13e767f2f38c8551a8aae96d781d0a9f21dbc6ce3df4cf0f9 glibc-common-debuginfo-2.39-128.el10_2.x86_64.rpm SHA-256: c0b3b27b7cd20fd13e767f2f38c8551a8aae96d781d0a9f21dbc6ce3df4cf0f9 glibc-debugsource-2.39-128.el10_2.x86_64.rpm SHA-256: dac7990f2c07b30d27f1882e19e9b9235a7d7ccdc5c804d085b1764aeec794fc glibc-debugsource-2.39-128.el10_2.x86_64.rpm SHA-256: dac7990f2c07b30d27f1882e19e9b9235a7d7ccdc5c804d085b1764aeec794fc glibc-devel-2.39-128.el10_2.x86_64.rpm SHA-256: e5567978471d6447e41b921a8e3d95491292e4b6da1487abf3b87e80b2f9057a glibc-doc-2.39-128.el10_2.noarch.rpm SHA-256: fb5025b1e191a22f8f8f585ef50b741f8dfcd9554f038d048c141be466844653 glibc-gconv-extra-2.39-128.el10_2.x86_64.rpm SHA-256: e5f0a464f1a7a2e9c3b09e32fa27479d9184d70be4a9811975b4ac3fc6423fae glibc-gconv-extra-debuginfo-2.39-128.el10_2.x86_64.rpm SHA-256: 8d2db402c1203394787ff22da56d910baf386358347852dd16d5517878fe74c0 glibc-gconv-extra-debuginfo-2.39-128.el10_2.x86_64.rpm SHA-256: 8d2db402c1203394787ff22da56d910baf386358347852dd16d5517878fe74c0 glibc-langpack-aa-2.39-128.el10_2.x86_64.rpm SHA-256: 216287cfba6201eb7b97e179e06bff07978ae5e6999325a4e0a3bdfbbad50fc8 glibc-langpack-ak-2.39-128.el10_2.x86_64.rpm SHA-256: f80af021a8de3dd3bff8dffb356fc9b3c80c814d2ffbb3a453d561f83dbf61aa glibc-langpack-am-2.39-128.el10_2.x86_64.rpm SHA-256: 8ed53374eb0bf74ddc78d7c34732ab401d979fa8ebdb20aae60178a4dce3f56d glibc-langpack-ar-2.39-128.el10_2.x86_64.rpm SHA-256: 5c3d33524d547512e87969346841e4e05bc994589392eabbf7e2f273c17f2a11 glibc-langpack-as-2.39-128.el10_2.x86_64.rpm SHA-256: 00e8263673f443a319869bebbb183d31f9af35ed6fad8efb6218d714d8cb116c glibc-langpack-chr-2.39-128.el10_2.x86_64.rpm SHA-256: ffd41a99f6393b253cb75c757781358fb71b42df7d7fc671f8a9fb78050b36f6 glibc-langpack-ckb-2.39-128.el10_2.x86_64.rpm SHA-256: 496af384ee88f3c1a4987039280559268e77d89a85f2a6c517f2a5a8928c4747 glibc-langpack-dz-2.39-128.el10_2.x86_64.rpm SHA-256: 3a032481fb356c8a07855e41c95f853eccc454099ac7e207ba5981e4dfff9828 glibc-langpack-el-2.39-128.el10_2.x86_64.rpm SHA-256: 1dd3a6d1c4f2713f1fca12db47c74f1323e92baa356a046bf03a9e44423b82be glibc-langpack-en-2.39-128.el10_2.x86_64.rpm SHA-256: 266458a6a80ea817983b88bc9ce514d8ba2af16fd9579b52a452d732bce994be glibc-langpack-es-2.39-128.el10_2.x86_64.rpm SHA-256: d233f36e6741586157b35ffb093acd8e9b9570a9e28c7a88f0d4b28a7c4335a5 glibc-langpack-eu-2.39-128.el10_2.x86_64.rpm SHA-256: 31f8bcd39a0cc9977fe4aaaf8dbe506b4b85c9ffac1651e4413991e3631b722f glibc-langpack-ff-2.39-128.el10_2.x86_64.rpm SHA-256: 3d5aaf82102e5ec5a92cbefb42297b3063c7edd8e26e2245bd3680bf19d41312 glibc-langpack-fi-2.39-128.el10_2.x86_64.rpm SHA-256: 49851a20705996abe3af8e15fc83dd55331fca2b65c1e51aef9c1830c40c84e6 glibc-langpack-ga-2.39-128.el10_2.x86_64.rpm SHA-256: e88a1af18c445197d0613f5d8f31db18d79af0de8ae679aaf75478ace7a617b0 glibc-langpack-gbm-2.39-128.el10_2.x86_64.rpm SHA-256: cbf5b307faa1bc6e4922856868e974d176fa6a358ed17c3fa0fd6784346ca9e0 glibc-langpack-gl-2.39-128.el10_2.x86_64.rpm SHA-256: 3846c160b4d66cb415596e65bb7b6a902e4976ba8d3cf261d5e0cb25ecf7ed13 glibc-langpack-gu-2.39-128.el10_2.x86_64.rpm SHA-256: 3625136a7eb5ec8999a906f82d852227375603a8c5e0920e288b021220b68854 glibc-langpack-ha-2.39-128.el10_2.x86_64.rpm SHA-256: c0d92347696442a819c8178fcfbb2ec638b285a72a935363e41d3d2ee211b7c2 glibc-langpack-hne-2.39-128.el10_2.x86_64.rpm SHA-256: 01bb50da68f50b67f19377bb31c85d61bfb6a66f17b22c80718709162fbd9e09 glibc-langpack-hy-2.39-128.el10_2.x86_64.rpm SHA-256: 01c1838975731bafb4c382550aeeca834eb9a357ec60f6a22b2c664bfecf850c glibc-langpack-ia-2.39-128.el10_2.x86_64.rpm SHA-256: 12fbf70c1eb854f95710ede45660c6fbf488a6b0d06f17fc909b5264338147cc glibc-langpack-is-2.39-128.el10_2.x86_64.rpm SHA-256: 9a04a5f504d57a0eb7bc36b61c59fb83a9ff9fff0c14db8921b8bf7708418960 glibc-langpack-it-2.39-128.el10_2.x86_64.rpm SHA-256: cb692651cd036dc680caa9a16ecf9e2583461122d31ffe7ff418b56b242e734f glibc-langpack-iu-2.39-128.el10_2.x86_64.rpm SHA-256: d405a873836f219fda3e5a25ed86c8247fad309f2de193be7de7fe719a3d5255 glibc-langpack-ka-2.39-128.el10_2.x86_64.rpm SHA-256: ebe71d35c36c09accaca2383f36446279b9a68dd1aa8a7f896b3a11392cd78c4 glibc-langpack-kab-2.39-128.el10_2.x86_64.rpm SHA-256: 8e38fe30af2dc895beccc0b59c91ee626dc1b72c297b72f116dae72ed9233c99 glibc-langpack-kk-2.39-128.el10_2.x86_64.rpm SHA-256: b9b8912b68d82c54fde87a986605d6cb51dea103583e4524c79027ce4d88fe4e glibc-langpack-kl-2.39-128.el10_2.x86_64.rpm SHA-256: 69fcb6e8c1a30e71a84eb9169ca621ac224a3fabb73f4101d5b11ad3fa533704 glibc-langpack-ky-2.39-128.el10_2.x86_64.rpm SHA-256: 467f8573e751b16bdd26351b395a00c58b2288fc8f92d267fb6374864204e194 glibc-langpack-lb-2.39-128.el10_2.x86_64.rpm SHA-256: 58b8ffb5ec3b46700f20bb4e659041f75a4fcb4ef22417c2dcb0457dbb1bfaf4 glibc-langpack-lg-2.39-128.el10_2.x86_64.rpm SHA-256: 0d85b1ae35e5c9dbf8ec5cda7d302b5b3ccc99b0e494d3edac47b8348c2ade3c glibc-langpack-mag-2.39-128.el10_2.x86_64.rpm SHA-256: 64048b51b57323d5500cbb936bfecdd80cbab664fb56b16268539dab77da5d49 glibc-langpack-mhr-2.39-128.el10_2.x86_64.rpm SHA-256: 9de78376a243efc1c9b4b58164503884f61b3db04645559188329357647ad551 glibc-langpack-ml-2.39-128.el10_2.x86_64.rpm SHA-256: cc763c381b8ec0d2204ff68953eead2833584ad0d6202fc6935628479a8dd0de glibc-langpack-mr-2.39-128.el10_2.x86_64.rpm SHA-256: d4700d580a417ee8514dea1941a2302c90379a77a23b1a5638f056040fbe683c glibc-langpack-nb-2.39-128.el10_2.x86_64.rpm SHA-256: 31b81da842186e8cb8b9e8cbd9147579c8767f49e126c8ea5b1b1f76899935e1 glibc-langpack-nds-2.39-128.el10_2.x86_64.rpm SHA-256: 9db964c78336a63c816d7affd82f5adeea98d2efd2cc8d5465bfd2541e2d8443 glibc-langpack-ne-2.39-128.el10_2.x86_64.rpm SHA-256: b830659eff9a1aff2402c450f2aba49c6a840a4849323340bdf8feb9d0a78210 glibc-langpack-nl-2.39-128.el10_2.x86_64.rpm SHA-256: 0504885d8d8fd41fde909765bfddc9f0b44c2ad3daa7a32df644563641e403a0 gl

Share this article