<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
    <channel>
        <title>Newest Nessus Plugins from Tenable</title>
        <link>https://www.tenable.com/plugins/feeds?sort=newest&amp;type=nessus</link>
        <description>Get the latest plugin updates from Tenable</description>
        <lastBuildDate>Tue, 14 Jul 2026 15:42:07 GMT</lastBuildDate>
        <docs>https://validator.w3.org/feed/docs/rss2.html</docs>
        <generator>Tenable Plugins</generator>
        <image>
            <title>Newest Nessus Plugins from Tenable</title>
            <url>https://www.tenable.com/themes/custom/tenable/img/favicons/apple-touch-icon.png</url>
            <link>https://www.tenable.com/plugins/feeds?sort=newest&amp;type=nessus</link>
        </image>
        <copyright>Copyright 2026 Tenable, Inc. All rights reserved.</copyright>
        <atom:link href="https://www.tenable.com/plugins/feeds?sort=newest&amp;type=nessus" rel="self" type="application/rss+xml"/>
        <item>
            <title><![CDATA[MiracleLinux 9 : kernel-5.14.0-687.12.1.el9_8 (AXSA:2026-1251:49)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326720</link>
            <guid>https://www.tenable.com/plugins/nessus/326720</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326720 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote MiracleLinux host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote MiracleLinux 9 host has packages installed that are affected by multiple vulnerabilities as referenced in the AXSA:2026-1251:49 advisory.<br /></span><span><br /></span><span>    * kernel: proc: use the same treatment to check proc_lseek as ones for proc_read_iter et.al     (CVE-2025-38653)<br /></span><span>      * kernel: ima: don't clear IMA_DIGSIG flag when setting or removing non-IMA xattr (CVE-2025-68183)<br /></span><span>      * kernel: nbd: defer config unlock in nbd_genl_connect (CVE-2025-68366)<br /></span><span>      * kernel: crypto: asymmetric_keys - prevent overflow in asymmetric_key_generate_id (CVE-2025-68724)<br /></span><span>      * kernel: iommu: disable SVA when CONFIG_X86 is set (CVE-2025-71089)<br /></span><span>      * kernel: netfilter: nf_tables: release flowtable after rcu grace period on error (CVE-2026-23392)<br /></span><span>      * kernel: netfilter: nf_conntrack_h323: check for zero length in DecodeQ931() (CVE-2026-23455)<br /></span><span>      * kernel: Bluetooth: SCO: Fix use-after-free in sco_recv_frame() due to missing sock_hold     (CVE-2026-31408)<br /></span><span>      * kernel: net: sched: act_csum: validate nested VLAN headers (CVE-2026-31684)<br /></span><span>      * kernel: netfilter: ip6t_eui64: reject invalid MAC header for all packets (CVE-2026-31685)<br /></span><span>      * kernel: netfilter: nf_conntrack_helper: pass helper to expect cleanup (CVE-2026-43027)<br /></span><span>      * kernel: Bluetooth: MGMT: validate LTK enc_size on load (CVE-2026-43020)<br /></span><span>      * kernel: HID: wacom: fix out-of-bounds read in wacom_intuos_bt_irq (CVE-2026-43051)<br /></span><span>      * kernel: smb: client: validate the whole DACL before rewriting it in cifsacl (CVE-2026-31709)<br /></span><span>      * kernel: Bluetooth: SCO: fix race conditions in sco_sock_connect() (CVE-2026-43023)<br /></span><span>      * kernel: wifi: brcmfmac: validate bsscfg indices in IF events (CVE-2026-43110)<br /></span><span>      * kernel: netfilter: xt_tcpmss: check remaining length before reading optlen (CVE-2026-43190)<br /></span><span>      * kernel: xfs: fix freemap adjustments when adding xattrs to leaf blocks (CVE-2026-43158)<br /></span><span>      * kernel: mm/page_alloc: clear page->private in free_pages_prepare() (CVE-2026-43303)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the MiracleLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326720">https://www.tenable.com/plugins/nessus/326720</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Photon OS 3.0: Glibc PHSA-2024-3.0-0715]]></title>
            <link>https://www.tenable.com/plugins/nessus/326719</link>
            <guid>https://www.tenable.com/plugins/nessus/326719</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326719 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote PhotonOS host is missing multiple security updates.<br /></span>
      <h3>Description</h3>
      <span>An update of the glibc package has been released.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected Linux packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326719">https://www.tenable.com/plugins/nessus/326719</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Fedora 43 : calibre (2026-6776f4e492)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326718</link>
            <guid>https://www.tenable.com/plugins/nessus/326718</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326718 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Fedora host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Fedora 43 host has a package installed that is affected by a vulnerability as referenced in the FEDORA-2026-6776f4e492 advisory.<br /></span><span><br /></span><span>    Fixes CVE-2026-53511<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Fedora security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected calibre package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326718">https://www.tenable.com/plugins/nessus/326718</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[MiracleLinux 8 : libreoffice-6.4.7.2-21.el8_10.ML.1 (AXSA:2026-1254:02)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326717</link>
            <guid>https://www.tenable.com/plugins/nessus/326717</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326717 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote MiracleLinux host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote MiracleLinux 8 host has packages installed that are affected by a vulnerability as referenced in the AXSA:2026-1254:02 advisory.<br /></span><span><br /></span><span>    * libreoffice: LibreOffice Calc: Arbitrary code execution via heap buffer overflow in formula compilation     (CVE-2026-8357)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the MiracleLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326717">https://www.tenable.com/plugins/nessus/326717</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[openSUSE 16: libipa_hbac-devel / libipa_hbac0 / libnfsidmap-sss / etc (openSUSE-SU-2026:21290-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326716</link>
            <guid>https://www.tenable.com/plugins/nessus/326716</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326716 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote openSUSE host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote openSUSE 16 host has packages installed that are affected by multiple vulnerabilities as referenced in the openSUSE-SU-2026:21290-1 advisory.<br /></span><span><br /></span><span>    This update for sssd fixes the following issues<br /></span><span><br /></span><span>    - CVE-2026-14474: sudo LDAP provider searches entire directory tree for sudoRole objects by default,     enabling privilege       escalation (bsc#1270709).<br /></span><span>    - CVE-2026-14476: GPO cache path traversal via unsanitized gPCFileSysPath allows Kerberos authentication     bypass       (bsc#1270708).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326716">https://www.tenable.com/plugins/nessus/326716</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[SUSE SLES15 Security Update : kernel (Live Patch 12 for SUSE Linux Enterprise 15 SP7) (SUSE-SU-2026:2887-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326715</link>
            <guid>https://www.tenable.com/plugins/nessus/326715</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326715 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote SUSE host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote SUSE Linux SLES15 host has a package installed that is affected by multiple vulnerabilities as referenced in the SUSE-SU-2026:2887-1 advisory.<br /></span><span><br /></span><span>    This update for the SUSE Linux Enterprise Kernel 6.4.0-150700.53.40 fixes various security issues<br /></span><span><br /></span><span>    The following security issues were fixed:<br /></span><span><br /></span><span>    - CVE-2026-23393: bridge: cfm: Fix race condition in peer_mep deletion (bsc#1260524).<br /></span><span>    - CVE-2026-31505: iavf: fix out-of-bounds writes in iavf_get_ethtool_stats() (bsc#1263094).<br /></span><span>    - CVE-2026-31533: net/tls: fix use-after-free in -EBUSY error path of tls_do_encryption (bsc#1262759).<br /></span><span>    - CVE-2026-31570: can: gw: fix OOB heap access in cgw_csum_crc8_rel() (bsc#1263118).<br /></span><span>    - CVE-2026-31586: mm: blk-cgroup: fix use-after-free in cgwb_release_workfn() (bsc#1263177).<br /></span><span>    - CVE-2026-31685: netfilter: ip6t_eui64: reject invalid MAC header for all packets (bsc#1263670).<br /></span><span>    - CVE-2026-43025: netfilter: ctnetlink: ignore explicit helper on new expectations (bsc#1264253).<br /></span><span>    - CVE-2026-43027: netfilter: nf_conntrack_helper: pass helper to expect cleanup (bsc#1264252).<br /></span><span>    - CVE-2026-43037: ip6_tunnel: clear skb2->cb[] in ip4ip6_err() (bsc#1265197).<br /></span><span>    - CVE-2026-43120: RDMA/irdma: Fix double free related to rereg_user_mr (bsc#1264567).<br /></span><span>    - CVE-2026-43190: netfilter: xt_tcpmss: check remaining length before reading optlen (bsc#1264849).<br /></span><span>    - CVE-2026-43366: io_uring/kbuf: check if target buffer list is still legacy on recycle (bsc#1265117).<br /></span><span>    - CVE-2026-43494: RDS zerocopy attack aka PinTheft (bsc#1265945).<br /></span><span>    - CVE-2026-43501: ipv6: rpl: reserve mac_len headroom when recompressed SRH grows (bsc#1266015).<br /></span><span>    - CVE-2026-45970: bonding: alb: fix UAF in rlb_arp_recv during bond up/down (bsc#1267206).<br /></span><span>    - CVE-2026-46120: ip6_gre: Use cached t->net in ip6erspan_changelink() (bsc#1267893).<br /></span><span>    - CVE-2026-46173: exit: prevent preemption of oopsing TASK_DEAD task (bsc#1267723).<br /></span><span>    - CVE-2026-46227: sctp: revalidate list cursor after sctp_sendmsg_to_asoc() in SCTP_SENDALL (bsc#1267698).<br /></span><span>    - CVE-2026-46243: smb: client: reject userspace cifs.spnego descriptions (CIFSwitch) (bsc#1266265).<br /></span><span>    - CVE-2026-52909: ip6_vti: set netns_immutable on the fallback device (bsc#1268662).<br /></span><span>    - CVE-2026-52943: net: skbuff: fix missing zerocopy reference in pskb_carve helpers (bsc#1269023).<br /></span><span>    - CVE-2026-53362: ipv6: account for fraggap on the paged allocation path (bsc#1269495).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected kernel-livepatch-6_4_0-150700_53_40-default package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326715">https://www.tenable.com/plugins/nessus/326715</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2026-54707]]></title>
            <link>https://www.tenable.com/plugins/nessus/326714</link>
            <guid>https://www.tenable.com/plugins/nessus/326714</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326714 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - Debian Linux - onionshare - None (CVE-2026-54707)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326714">https://www.tenable.com/plugins/nessus/326714</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2026-61627]]></title>
            <link>https://www.tenable.com/plugins/nessus/326713</link>
            <guid>https://www.tenable.com/plugins/nessus/326713</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326713 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - Debian Linux - libass - None (CVE-2026-61627)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326713">https://www.tenable.com/plugins/nessus/326713</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[SUSE SLES15 Security Update : kernel (Live Patch 12 for SUSE Linux Enterprise 15 SP6) (SUSE-SU-2026:2894-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326712</link>
            <guid>https://www.tenable.com/plugins/nessus/326712</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326712 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote SUSE host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote SUSE Linux SLES15 host has a package installed that is affected by multiple vulnerabilities as referenced in the SUSE-SU-2026:2894-1 advisory.<br /></span><span><br /></span><span>    This update for the SUSE Linux Enterprise Kernel 6.4.0-150600.23.53 fixes various security issues<br /></span><span><br /></span><span>    The following security issues were fixed:<br /></span><span><br /></span><span>    - CVE-2025-71089: iommu: disable SVA when CONFIG_X86 is set (bsc#1256615).<br /></span><span>    - CVE-2026-23393: bridge: cfm: Fix race condition in peer_mep deletion (bsc#1260524).<br /></span><span>    - CVE-2026-31505: iavf: fix out-of-bounds writes in iavf_get_ethtool_stats() (bsc#1263094).<br /></span><span>    - CVE-2026-31533: net/tls: fix use-after-free in -EBUSY error path of tls_do_encryption (bsc#1262759).<br /></span><span>    - CVE-2026-31570: can: gw: fix OOB heap access in cgw_csum_crc8_rel() (bsc#1263118).<br /></span><span>    - CVE-2026-31586: mm: blk-cgroup: fix use-after-free in cgwb_release_workfn() (bsc#1263177).<br /></span><span>    - CVE-2026-31685: netfilter: ip6t_eui64: reject invalid MAC header for all packets (bsc#1263670).<br /></span><span>    - CVE-2026-31758: usb: usbtmc: Flush anchored URBs in usbtmc_release (bsc#1264094).<br /></span><span>    - CVE-2026-43025: netfilter: ctnetlink: ignore explicit helper on new expectations (bsc#1264253).<br /></span><span>    - CVE-2026-43027: netfilter: nf_conntrack_helper: pass helper to expect cleanup (bsc#1264252).<br /></span><span>    - CVE-2026-43037: ip6_tunnel: clear skb2->cb[] in ip4ip6_err() (bsc#1265197).<br /></span><span>    - CVE-2026-43120: RDMA/irdma: Fix double free related to rereg_user_mr (bsc#1264567).<br /></span><span>    - CVE-2026-43190: netfilter: xt_tcpmss: check remaining length before reading optlen (bsc#1264849).<br /></span><span>    - CVE-2026-43366: io_uring/kbuf: check if target buffer list is still legacy on recycle (bsc#1265117).<br /></span><span>    - CVE-2026-43437: ALSA: pcm: fix use-after-free on linked stream runtime in snd_pcm_drain() (bsc#1265127).<br /></span><span>    - CVE-2026-43494: RDS zerocopy attack aka PinTheft (bsc#1265945).<br /></span><span>    - CVE-2026-43501: ipv6: rpl: reserve mac_len headroom when recompressed SRH grows (bsc#1266015).<br /></span><span>    - CVE-2026-45970: bonding: alb: fix UAF in rlb_arp_recv during bond up/down (bsc#1267206).<br /></span><span>    - CVE-2026-46120: ip6_gre: Use cached t->net in ip6erspan_changelink() (bsc#1267893).<br /></span><span>    - CVE-2026-46173: exit: prevent preemption of oopsing TASK_DEAD task (bsc#1267723).<br /></span><span>    - CVE-2026-46227: sctp: revalidate list cursor after sctp_sendmsg_to_asoc() in SCTP_SENDALL (bsc#1267698).<br /></span><span>    - CVE-2026-46243: smb: client: reject userspace cifs.spnego descriptions (CIFSwitch) (bsc#1266265).<br /></span><span>    - CVE-2026-52909: ip6_vti: set netns_immutable on the fallback device (bsc#1268662).<br /></span><span>    - CVE-2026-52943: net: skbuff: fix missing zerocopy reference in pskb_carve helpers (bsc#1269023).<br /></span><span>    - CVE-2026-53362: ipv6: account for fraggap on the paged allocation path (bsc#1269495).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected kernel-livepatch-6_4_0-150600_23_53-default package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326712">https://www.tenable.com/plugins/nessus/326712</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[SUSE SLES15 Security Update : kernel RT (Live Patch 15 for SUSE Linux Enterprise 15 SP7) (SUSE-SU-2026:2862-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326711</link>
            <guid>https://www.tenable.com/plugins/nessus/326711</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326711 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote SUSE host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote SUSE Linux SLES15 host has a package installed that is affected by multiple vulnerabilities as referenced in the SUSE-SU-2026:2862-1 advisory.<br /></span><span><br /></span><span>    This update for the SUSE Linux Enterprise Kernel 6.4.0-150700.7.54 fixes various security issues<br /></span><span><br /></span><span>    The following security issues were fixed:<br /></span><span><br /></span><span>    - CVE-2026-43501: ipv6: rpl: reserve mac_len headroom when recompressed SRH grows (bsc#1266015).<br /></span><span>    - CVE-2026-45970: bonding: alb: fix UAF in rlb_arp_recv during bond up/down (bsc#1267206).<br /></span><span>    - CVE-2026-46120: ip6_gre: Use cached t->net in ip6erspan_changelink() (bsc#1267893).<br /></span><span>    - CVE-2026-46173: exit: prevent preemption of oopsing TASK_DEAD task (bsc#1267723).<br /></span><span>    - CVE-2026-46227: sctp: revalidate list cursor after sctp_sendmsg_to_asoc() in SCTP_SENDALL (bsc#1267698).<br /></span><span>    - CVE-2026-46243: smb: client: reject userspace cifs.spnego descriptions (CIFSwitch) (bsc#1266265).<br /></span><span>    - CVE-2026-52909: ip6_vti: set netns_immutable on the fallback device (bsc#1268662).<br /></span><span>    - CVE-2026-52943: net: skbuff: fix missing zerocopy reference in pskb_carve helpers (bsc#1269023).<br /></span><span>    - CVE-2026-53362: ipv6: account for fraggap on the paged allocation path (bsc#1269495).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected kernel-livepatch-6_4_0-150700_7_54-rt package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326711">https://www.tenable.com/plugins/nessus/326711</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[SUSE SLES15 Security Update : kernel RT (Live Patch 9 for SUSE Linux Enterprise 15 SP7) (SUSE-SU-2026:2858-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326710</link>
            <guid>https://www.tenable.com/plugins/nessus/326710</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326710 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote SUSE host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote SUSE Linux SLES15 host has a package installed that is affected by multiple vulnerabilities as referenced in the SUSE-SU-2026:2858-1 advisory.<br /></span><span><br /></span><span>    This update for the SUSE Linux Enterprise Kernel 6.4.0-150700.7.31 fixes various security issues<br /></span><span><br /></span><span>    The following security issues were fixed:<br /></span><span><br /></span><span>    - CVE-2026-23393: bridge: cfm: Fix race condition in peer_mep deletion (bsc#1260524).<br /></span><span>    - CVE-2026-31505: iavf: fix out-of-bounds writes in iavf_get_ethtool_stats() (bsc#1263094).<br /></span><span>    - CVE-2026-31533: net/tls: fix use-after-free in -EBUSY error path of tls_do_encryption (bsc#1262759).<br /></span><span>    - CVE-2026-31570: can: gw: fix OOB heap access in cgw_csum_crc8_rel() (bsc#1263118).<br /></span><span>    - CVE-2026-31586: mm: blk-cgroup: fix use-after-free in cgwb_release_workfn() (bsc#1263177).<br /></span><span>    - CVE-2026-31685: netfilter: ip6t_eui64: reject invalid MAC header for all packets (bsc#1263670).<br /></span><span>    - CVE-2026-31758: usb: usbtmc: Flush anchored URBs in usbtmc_release (bsc#1264094).<br /></span><span>    - CVE-2026-43025: netfilter: ctnetlink: ignore explicit helper on new expectations (bsc#1264253).<br /></span><span>    - CVE-2026-43027: netfilter: nf_conntrack_helper: pass helper to expect cleanup (bsc#1264252).<br /></span><span>    - CVE-2026-43037: ip6_tunnel: clear skb2->cb[] in ip4ip6_err() (bsc#1265197).<br /></span><span>    - CVE-2026-43120: RDMA/irdma: Fix double free related to rereg_user_mr (bsc#1264567).<br /></span><span>    - CVE-2026-43190: netfilter: xt_tcpmss: check remaining length before reading optlen (bsc#1264849).<br /></span><span>    - CVE-2026-43366: io_uring/kbuf: check if target buffer list is still legacy on recycle (bsc#1265117).<br /></span><span>    - CVE-2026-43437: ALSA: pcm: fix use-after-free on linked stream runtime in snd_pcm_drain() (bsc#1265127).<br /></span><span>    - CVE-2026-43494: RDS zerocopy attack aka PinTheft (bsc#1265945).<br /></span><span>    - CVE-2026-43501: ipv6: rpl: reserve mac_len headroom when recompressed SRH grows (bsc#1266015).<br /></span><span>    - CVE-2026-45970: bonding: alb: fix UAF in rlb_arp_recv during bond up/down (bsc#1267206).<br /></span><span>    - CVE-2026-46120: ip6_gre: Use cached t->net in ip6erspan_changelink() (bsc#1267893).<br /></span><span>    - CVE-2026-46173: exit: prevent preemption of oopsing TASK_DEAD task (bsc#1267723).<br /></span><span>    - CVE-2026-46227: sctp: revalidate list cursor after sctp_sendmsg_to_asoc() in SCTP_SENDALL (bsc#1267698).<br /></span><span>    - CVE-2026-46243: smb: client: reject userspace cifs.spnego descriptions (CIFSwitch) (bsc#1266265).<br /></span><span>    - CVE-2026-52909: ip6_vti: set netns_immutable on the fallback device (bsc#1268662).<br /></span><span>    - CVE-2026-52943: net: skbuff: fix missing zerocopy reference in pskb_carve helpers (bsc#1269023).<br /></span><span>    - CVE-2026-53362: ipv6: account for fraggap on the paged allocation path (bsc#1269495).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected kernel-livepatch-6_4_0-150700_7_31-rt package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326710">https://www.tenable.com/plugins/nessus/326710</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[SUSE SLES15 Security Update : kernel (Live Patch 27 for SUSE Linux Enterprise 15 SP5) (SUSE-SU-2026:2899-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326709</link>
            <guid>https://www.tenable.com/plugins/nessus/326709</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326709 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote SUSE host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote SUSE Linux SLES15 host has a package installed that is affected by multiple vulnerabilities as referenced in the SUSE-SU-2026:2899-1 advisory.<br /></span><span><br /></span><span>    This update for the SUSE Linux Enterprise Kernel 5.14.21-150500.55.110 fixes various security issues<br /></span><span><br /></span><span>    The following security issues were fixed:<br /></span><span><br /></span><span>    - CVE-2025-71089: iommu: disable SVA when CONFIG_X86 is set (bsc#1256615).<br /></span><span>    - CVE-2026-23393: bridge: cfm: Fix race condition in peer_mep deletion (bsc#1260524).<br /></span><span>    - CVE-2026-31505: iavf: fix out-of-bounds writes in iavf_get_ethtool_stats() (bsc#1263094).<br /></span><span>    - CVE-2026-31533: net/tls: fix use-after-free in -EBUSY error path of tls_do_encryption (bsc#1262759).<br /></span><span>    - CVE-2026-31570: can: gw: fix OOB heap access in cgw_csum_crc8_rel() (bsc#1263118).<br /></span><span>    - CVE-2026-31586: mm: blk-cgroup: fix use-after-free in cgwb_release_workfn() (bsc#1263177).<br /></span><span>    - CVE-2026-31685: netfilter: ip6t_eui64: reject invalid MAC header for all packets (bsc#1263670).<br /></span><span>    - CVE-2026-31758: usb: usbtmc: Flush anchored URBs in usbtmc_release (bsc#1264094).<br /></span><span>    - CVE-2026-43025: netfilter: ctnetlink: ignore explicit helper on new expectations (bsc#1264253).<br /></span><span>    - CVE-2026-43027: netfilter: nf_conntrack_helper: pass helper to expect cleanup (bsc#1264252).<br /></span><span>    - CVE-2026-43037: ip6_tunnel: clear skb2->cb[] in ip4ip6_err() (bsc#1265197).<br /></span><span>    - CVE-2026-43190: netfilter: xt_tcpmss: check remaining length before reading optlen (bsc#1264849).<br /></span><span>    - CVE-2026-43366: io_uring/kbuf: check if target buffer list is still legacy on recycle (bsc#1265117).<br /></span><span>    - CVE-2026-43437: ALSA: pcm: fix use-after-free on linked stream runtime in snd_pcm_drain() (bsc#1265127).<br /></span><span>    - CVE-2026-43494: RDS zerocopy attack aka PinTheft (bsc#1265945).<br /></span><span>    - CVE-2026-43501: ipv6: rpl: reserve mac_len headroom when recompressed SRH grows (bsc#1266015).<br /></span><span>    - CVE-2026-45970: bonding: alb: fix UAF in rlb_arp_recv during bond up/down (bsc#1267206).<br /></span><span>    - CVE-2026-46120: ip6_gre: Use cached t->net in ip6erspan_changelink() (bsc#1267893).<br /></span><span>    - CVE-2026-46173: exit: prevent preemption of oopsing TASK_DEAD task (bsc#1267723).<br /></span><span>    - CVE-2026-46227: sctp: revalidate list cursor after sctp_sendmsg_to_asoc() in SCTP_SENDALL (bsc#1267698).<br /></span><span>    - CVE-2026-46243: smb: client: reject userspace cifs.spnego descriptions (CIFSwitch) (bsc#1266265).<br /></span><span>    - CVE-2026-52909: ip6_vti: set netns_immutable on the fallback device (bsc#1268662).<br /></span><span>    - CVE-2026-52943: net: skbuff: fix missing zerocopy reference in pskb_carve helpers (bsc#1269023).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected kernel-livepatch-5_14_21-150500_55_110-default package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326709">https://www.tenable.com/plugins/nessus/326709</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[SUSE SLES12 Security Update : kernel (Live Patch 72 for SUSE Linux Enterprise 12 SP5) (SUSE-SU-2026:2909-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326708</link>
            <guid>https://www.tenable.com/plugins/nessus/326708</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326708 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote SUSE host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote SUSE Linux SLES12 host has a package installed that is affected by multiple vulnerabilities as referenced in the SUSE-SU-2026:2909-1 advisory.<br /></span><span><br /></span><span>    This update for the SUSE Linux Enterprise Kernel 4.12.14-122.272 fixes various security issues<br /></span><span><br /></span><span>    The following security issues were fixed:<br /></span><span><br /></span><span>    - CVE-2026-31685: netfilter: ip6t_eui64: reject invalid MAC header for all packets (bsc#1263670).<br /></span><span>    - CVE-2026-43025: netfilter: ctnetlink: ignore explicit helper on new expectations (bsc#1264253).<br /></span><span>    - CVE-2026-43037: ip6_tunnel: clear skb2->cb[] in ip4ip6_err() (bsc#1265197).<br /></span><span>    - CVE-2026-43190: netfilter: xt_tcpmss: check remaining length before reading optlen (bsc#1264849).<br /></span><span>    - CVE-2026-43437: ALSA: pcm: fix use-after-free on linked stream runtime in snd_pcm_drain() (bsc#1265127).<br /></span><span>    - CVE-2026-45970: bonding: alb: fix UAF in rlb_arp_recv during bond up/down (bsc#1267206).<br /></span><span>    - CVE-2026-46243: smb: client: reject userspace cifs.spnego descriptions (CIFSwitch) (bsc#1266265).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected kgraft-patch-4_12_14-122_272-default package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326708">https://www.tenable.com/plugins/nessus/326708</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[SUSE SLES15 Security Update : kernel (Live Patch 9 for SUSE Linux Enterprise 15 SP7) (SUSE-SU-2026:2895-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326707</link>
            <guid>https://www.tenable.com/plugins/nessus/326707</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326707 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote SUSE host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote SUSE Linux SLES15 host has a package installed that is affected by multiple vulnerabilities as referenced in the SUSE-SU-2026:2895-1 advisory.<br /></span><span><br /></span><span>    This update for the SUSE Linux Enterprise Kernel 6.4.0-150700.53.31 fixes various security issues<br /></span><span><br /></span><span>    The following security issues were fixed:<br /></span><span><br /></span><span>    - CVE-2026-23393: bridge: cfm: Fix race condition in peer_mep deletion (bsc#1260524).<br /></span><span>    - CVE-2026-31505: iavf: fix out-of-bounds writes in iavf_get_ethtool_stats() (bsc#1263094).<br /></span><span>    - CVE-2026-31533: net/tls: fix use-after-free in -EBUSY error path of tls_do_encryption (bsc#1262759).<br /></span><span>    - CVE-2026-31570: can: gw: fix OOB heap access in cgw_csum_crc8_rel() (bsc#1263118).<br /></span><span>    - CVE-2026-31586: mm: blk-cgroup: fix use-after-free in cgwb_release_workfn() (bsc#1263177).<br /></span><span>    - CVE-2026-31685: netfilter: ip6t_eui64: reject invalid MAC header for all packets (bsc#1263670).<br /></span><span>    - CVE-2026-31758: usb: usbtmc: Flush anchored URBs in usbtmc_release (bsc#1264094).<br /></span><span>    - CVE-2026-43025: netfilter: ctnetlink: ignore explicit helper on new expectations (bsc#1264253).<br /></span><span>    - CVE-2026-43027: netfilter: nf_conntrack_helper: pass helper to expect cleanup (bsc#1264252).<br /></span><span>    - CVE-2026-43037: ip6_tunnel: clear skb2->cb[] in ip4ip6_err() (bsc#1265197).<br /></span><span>    - CVE-2026-43120: RDMA/irdma: Fix double free related to rereg_user_mr (bsc#1264567).<br /></span><span>    - CVE-2026-43190: netfilter: xt_tcpmss: check remaining length before reading optlen (bsc#1264849).<br /></span><span>    - CVE-2026-43366: io_uring/kbuf: check if target buffer list is still legacy on recycle (bsc#1265117).<br /></span><span>    - CVE-2026-43437: ALSA: pcm: fix use-after-free on linked stream runtime in snd_pcm_drain() (bsc#1265127).<br /></span><span>    - CVE-2026-43494: RDS zerocopy attack aka PinTheft (bsc#1265945).<br /></span><span>    - CVE-2026-43501: ipv6: rpl: reserve mac_len headroom when recompressed SRH grows (bsc#1266015).<br /></span><span>    - CVE-2026-45970: bonding: alb: fix UAF in rlb_arp_recv during bond up/down (bsc#1267206).<br /></span><span>    - CVE-2026-46120: ip6_gre: Use cached t->net in ip6erspan_changelink() (bsc#1267893).<br /></span><span>    - CVE-2026-46173: exit: prevent preemption of oopsing TASK_DEAD task (bsc#1267723).<br /></span><span>    - CVE-2026-46227: sctp: revalidate list cursor after sctp_sendmsg_to_asoc() in SCTP_SENDALL (bsc#1267698).<br /></span><span>    - CVE-2026-46243: smb: client: reject userspace cifs.spnego descriptions (CIFSwitch) (bsc#1266265).<br /></span><span>    - CVE-2026-52909: ip6_vti: set netns_immutable on the fallback device (bsc#1268662).<br /></span><span>    - CVE-2026-52943: net: skbuff: fix missing zerocopy reference in pskb_carve helpers (bsc#1269023).<br /></span><span>    - CVE-2026-53362: ipv6: account for fraggap on the paged allocation path (bsc#1269495).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected kernel-livepatch-6_4_0-150700_53_31-default package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326707">https://www.tenable.com/plugins/nessus/326707</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[SUSE SLES15 Security Update : python-Pillow (SUSE-SU-2026:2875-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326706</link>
            <guid>https://www.tenable.com/plugins/nessus/326706</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326706 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote SUSE host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote SUSE Linux SLES15 host has a package installed that is affected by multiple vulnerabilities as referenced in the SUSE-SU-2026:2875-1 advisory.<br /></span><span><br /></span><span>    This update for python-Pillow fixes the following issues<br /></span><span><br /></span><span>    - CVE-2026-54059: crafted PCF font data can cause excessive memory allocation (bsc#1270409).<br /></span><span>    - CVE-2026-54060: a font can trigger excessive allocation during conversion or saving (bsc#1270410).<br /></span><span>    - CVE-2026-55379: bypass of decompression bomb protection, allowing excessive memory allocation     (bsc#1270411).<br /></span><span>    - CVE-2026-55380: crafted .gd file can trigger excessive C-heap allocation when loaded (bsc#1270412).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected python3-Pillow package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326706">https://www.tenable.com/plugins/nessus/326706</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[SUSE SLES12: cluster-md-kmp-default / dlm-kmp-default / gfs2-kmp-default / etc (SUSE-SU-2026:2914-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326705</link>
            <guid>https://www.tenable.com/plugins/nessus/326705</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326705 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote SUSE host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote SUSE Linux SLES12 host has packages installed that are affected by multiple vulnerabilities as referenced in the SUSE-SU-2026:2914-1 advisory.<br /></span><span><br /></span><span>    The SUSE Linux Enterprise 12 SP5 kernel was updated to fix various security issues<br /></span><span><br /></span><span>    The following security issues were fixed:<br /></span><span><br /></span><span>    - CVE-2023-53995: net: ipv4: fix one memleak in __inet_del_ifa() (bsc#1255616).<br /></span><span>    - CVE-2026-23255: net: add proper RCU protection to /proc/net/ptype (bsc#1259891).<br /></span><span>    - CVE-2026-23451: bonding: prevent potential infinite loop in bond_header_parse() (bsc#1261604).<br /></span><span>    - CVE-2026-31462: drm/amdgpu: prevent immediate PASID reuse case (bsc#1262655).<br /></span><span>    - CVE-2026-31499: Bluetooth: L2CAP: Fix deadlock in l2cap_conn_del() (bsc#1262674).<br /></span><span>    - CVE-2026-31502: team: fix header_ops type confusion with non-Ethernet ports (bsc#1263072).<br /></span><span>    - CVE-2026-31592: KVM: SEV: Protect *all* of sev_mem_enc_register_region() with kvm->lock (bsc#1263123).<br /></span><span>    - CVE-2026-31670: net: rfkill: prevent unlimited numbers of rfkill events from being created     (bsc#1263573).<br /></span><span>    - CVE-2026-31677: crypto: af_alg - limit RX SG extraction by receive buffer budget (bsc#1263560).<br /></span><span>    - CVE-2026-31680: net: ipv6: flowlabel: defer exclusive option free until RCU teardown (bsc#1263563).<br /></span><span>    - CVE-2026-31773: Bluetooth: SMP: derive legacy responder STK authentication from MITM state     (bsc#1264039).<br /></span><span>    - CVE-2026-31781: drm/ioc32: stop speculation on the drm_compat_ioctl path (bsc#1264033).<br /></span><span>    - CVE-2026-43035: net: sched: cls_api: fix tc_chain_fill_node to initialize tcm_info to zero to prevent an     info-leak       (bsc#1263996).<br /></span><span>    - CVE-2026-43036: net: use skb_header_pointer() for TCPv4 GSO frag_off check (bsc#1263993).<br /></span><span>    - CVE-2026-43043: crypto: af-alg - fix NULL pointer dereference in scatterwalk (bsc#1264088).<br /></span><span>    - CVE-2026-43047: HID: multitouch: Check to ensure report responses match the request (bsc#1264073).<br /></span><span>    - CVE-2026-43051: HID: wacom: fix out-of-bounds read in wacom_intuos_bt_irq (bsc#1264065).<br /></span><span>    - CVE-2026-43080: l2tp: Drop large packets with UDP encap (bsc#1264236).<br /></span><span>    - CVE-2026-43089: xfrm_user: fix info leak in build_mapping() (bsc#1264261).<br /></span><span>    - CVE-2026-43093: xsk: tighten UMEM headroom validation to account for tailroom and min frame     (bsc#1264254).<br /></span><span>    - CVE-2026-43112: fs/smb/client: fix out-of-bounds read in cifs_sanitize_prepath (bsc#1264437).<br /></span><span>    - CVE-2026-43117: btrfs: tracepoints: get correct superblock from dentry in event btrfs_sync_file()     (bsc#1264414).<br /></span><span>    - CVE-2026-43139: xfrm6: fix uninitialized saddr in xfrm6_get_saddr() (bsc#1264294).<br /></span><span>    - CVE-2026-43233: netfilter: nf_conntrack_h323: fix OOB read in decode_choice() (bsc#1264337).<br /></span><span>    - CVE-2026-43279: ALSA: usb-audio: Add sanity check for OOB writes at silencing (bsc#1264618).<br /></span><span>    - CVE-2026-43336: lib/crypto: chacha: Zeroize permuted_state before it leaves scope (bsc#1265113).<br /></span><span>    - CVE-2026-43456: bonding: fix type confusion in bond_setup_by_slave() (bsc#1264734).<br /></span><span>    - CVE-2026-43472: unshare: fix unshare_fs() handling (bsc#1264748).<br /></span><span>    - CVE-2026-43492: lib/crypto: mpi: Fix integer underflow in mpi_read_raw_from_sgl() (bsc#1265629).<br /></span><span>    - CVE-2026-45840: openvswitch: cap upcall PID array size and pre-size vport replies (bsc#1266397).<br /></span><span>    - CVE-2026-45912: ext4: don't cache extent during splitting extent (bsc#1266899).<br /></span><span>    - CVE-2026-45948: ext4: fix memory leak in ext4_ext_shift_extents() (bsc#1266929).<br /></span><span>    - CVE-2026-45960: hfsplus: return error when node already exists in hfs_bnode_create (bsc#1266971).<br /></span><span>    - CVE-2026-46028: crypto: algif_aead - snapshot IV for async AEAD requests (bsc#1267430).<br /></span><span>    - CVE-2026-46065: fbdev: defio: Disconnect deferred I/O from the lifetime of struct (bsc#1267458).<br /></span><span>    - CVE-2026-46069: wifi: mwifiex: fix use-after-free in mwifiex_adapter_cleanup() (bsc#1267437).<br /></span><span>    - CVE-2026-46082: KVM: SVM: Inject #UD for INVLPGA if EFER.SVME=0 (bsc#1267473).<br /></span><span>    - CVE-2026-46124: isofs: validate block number from NFS file handle in isofs_export_iget (bsc#1266847).<br /></span><span>    - CVE-2026-46133: RDMA/rxe: Reject unknown opcodes before ICRC processing (bsc#1266928).<br /></span><span>    - CVE-2026-46253: pstore/ram: fix buffer overflow in persistent_ram_save_old() (bsc#1267635).<br /></span><span>    - CVE-2026-46254: AppArmor: Allow apparmor to handle unaligned dfa tables (bsc#1267637).<br /></span><span>    - CVE-2026-46266: inet: RAW sockets using IPPROTO_RAW MUST drop incoming ICMP (bsc#1267684).<br /></span><span>    - CVE-2026-46275: Bluetooth: hci_uart: fix UAFs and race conditions in close and init paths (bsc#1267968).<br /></span><span>    - CVE-2026-46299: hfsplus: fix held lock freed on hfsplus_fill_super() (bsc#1267920).<br /></span><span>    - CVE-2026-46320: tap: free page on error paths in tap_get_user_xdp() (bsc#1267993).<br /></span><span>    - CVE-2026-46328: apparmor: fix rlimit for posix cpu timers (bsc#1268037).<br /></span><span>    - CVE-2026-46331: net/sched: fix pedit partial COW leading to page cache (bsc#1265421).<br /></span><span>    - CVE-2026-52918: Bluetooth: serialize accept_q access (bsc#1269100).<br /></span><span>    - CVE-2026-52923: ipc: limit next_id allocation to the valid ID range (bsc#1269033).<br /></span><span>    - CVE-2026-52954: libceph: handle rbtree insertion error in decode_choose_args() (bsc#1269137).<br /></span><span>    - CVE-2026-52955: libceph: Fix potential out-of-bounds access in crush_decode() (bsc#1269159).<br /></span><span>    - CVE-2026-52957: libceph: Fix potential null-ptr-deref in decode_choose_args() (bsc#1269103).<br /></span><span>    - CVE-2026-52962: ceph: fix a buffer leak in __ceph_setxattr() (bsc#1269135).<br /></span><span>    - CVE-2026-52972: crypto: af_alg - Cap AEAD AD length to 0x80000000 (bsc#1269195).<br /></span><span>    - CVE-2026-53040: ocfs2: validate bg_bits during freefrag scan (bsc#1269397).<br /></span><span>    - CVE-2026-53041: ocfs2: fix listxattr handling when the buffer is full (bsc#1269398).<br /></span><span>    - CVE-2026-53075: ppp: require CAP_NET_ADMIN in target netns for unattached ioctls (bsc#1269690).<br /></span><span>    - CVE-2026-53148: thunderbolt: Clamp XDomain response data copy to allocation size (bsc#1269786).<br /></span><span>    - CVE-2026-53150: thunderbolt: Reject zero-length property entries in validator (bsc#1269386).<br /></span><span>    - CVE-2026-53194: USB: serial: kl5kusb105: fix bulk-out buffer overflow (bsc#1269904).<br /></span><span>    - CVE-2026-53253: Bluetooth: bnep: fix incorrect length parsing in bnep_rx_frame() extension handling     (bsc#1269574).<br /></span><span>    - CVE-2026-53287: audit: fix incorrect inheritable capability in CAPSET records (bsc#1269506).<br /></span><span>    - CVE-2026-53359: KVM: x86: Fix shadow paging use-after-free due to unexpected role (bsc#1270059).<br /></span><span><br /></span><span>    The following non security issues were fixed:<br /></span><span><br /></span><span>    - btrfs: tracepoints: fix sleep while in atomic context in btrfs_sync_file() (git-fixes).<br /></span><span>    - libceph: add non-asserting rbtree insertion helper (bsc#1269137).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326705">https://www.tenable.com/plugins/nessus/326705</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[SUSE SLES15 Security Update : kernel (Live Patch 22 for SUSE Linux Enterprise 15 SP6) (SUSE-SU-2026:2866-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326704</link>
            <guid>https://www.tenable.com/plugins/nessus/326704</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326704 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote SUSE host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote SUSE Linux SLES15 host has a package installed that is affected by multiple vulnerabilities as referenced in the SUSE-SU-2026:2866-1 advisory.<br /></span><span><br /></span><span>    This update for the SUSE Linux Enterprise Kernel 6.4.0-150600.23.95 fixes various security issues<br /></span><span><br /></span><span>    The following security issues were fixed:<br /></span><span><br /></span><span>    - CVE-2026-23393: bridge: cfm: Fix race condition in peer_mep deletion (bsc#1260524).<br /></span><span>    - CVE-2026-31505: iavf: fix out-of-bounds writes in iavf_get_ethtool_stats() (bsc#1263094).<br /></span><span>    - CVE-2026-31533: net/tls: fix use-after-free in -EBUSY error path of tls_do_encryption (bsc#1262759).<br /></span><span>    - CVE-2026-31570: can: gw: fix OOB heap access in cgw_csum_crc8_rel() (bsc#1263118).<br /></span><span>    - CVE-2026-31586: mm: blk-cgroup: fix use-after-free in cgwb_release_workfn() (bsc#1263177).<br /></span><span>    - CVE-2026-31685: netfilter: ip6t_eui64: reject invalid MAC header for all packets (bsc#1263670).<br /></span><span>    - CVE-2026-31758: usb: usbtmc: Flush anchored URBs in usbtmc_release (bsc#1264094).<br /></span><span>    - CVE-2026-43025: netfilter: ctnetlink: ignore explicit helper on new expectations (bsc#1264253).<br /></span><span>    - CVE-2026-43027: netfilter: nf_conntrack_helper: pass helper to expect cleanup (bsc#1264252).<br /></span><span>    - CVE-2026-43037: ip6_tunnel: clear skb2->cb[] in ip4ip6_err() (bsc#1265197).<br /></span><span>    - CVE-2026-43120: RDMA/irdma: Fix double free related to rereg_user_mr (bsc#1264567).<br /></span><span>    - CVE-2026-43190: netfilter: xt_tcpmss: check remaining length before reading optlen (bsc#1264849).<br /></span><span>    - CVE-2026-43366: io_uring/kbuf: check if target buffer list is still legacy on recycle (bsc#1265117).<br /></span><span>    - CVE-2026-43437: ALSA: pcm: fix use-after-free on linked stream runtime in snd_pcm_drain() (bsc#1265127).<br /></span><span>    - CVE-2026-43494: RDS zerocopy attack aka PinTheft (bsc#1265945).<br /></span><span>    - CVE-2026-43501: ipv6: rpl: reserve mac_len headroom when recompressed SRH grows (bsc#1266015).<br /></span><span>    - CVE-2026-45970: bonding: alb: fix UAF in rlb_arp_recv during bond up/down (bsc#1267206).<br /></span><span>    - CVE-2026-46120: ip6_gre: Use cached t->net in ip6erspan_changelink() (bsc#1267893).<br /></span><span>    - CVE-2026-46173: exit: prevent preemption of oopsing TASK_DEAD task (bsc#1267723).<br /></span><span>    - CVE-2026-46227: sctp: revalidate list cursor after sctp_sendmsg_to_asoc() in SCTP_SENDALL (bsc#1267698).<br /></span><span>    - CVE-2026-46243: smb: client: reject userspace cifs.spnego descriptions (CIFSwitch) (bsc#1266265).<br /></span><span>    - CVE-2026-52909: ip6_vti: set netns_immutable on the fallback device (bsc#1268662).<br /></span><span>    - CVE-2026-52943: net: skbuff: fix missing zerocopy reference in pskb_carve helpers (bsc#1269023).<br /></span><span>    - CVE-2026-53362: ipv6: account for fraggap on the paged allocation path (bsc#1269495).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected kernel-livepatch-6_4_0-150600_23_95-default package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326704">https://www.tenable.com/plugins/nessus/326704</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[SUSE SLED15: ImageMagick / ImageMagick-config-7-SUSE / etc (SUSE-SU-2026:2877-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326703</link>
            <guid>https://www.tenable.com/plugins/nessus/326703</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326703 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote SUSE host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote SUSE Linux SLED15 / SLED_SAP15 / SLES15 / SLES_SAP15 host has packages installed that are affected by multiple vulnerabilities as referenced in the SUSE-SU-2026:2877-1 advisory.<br /></span><span><br /></span><span>    - CVE-2026-53466: integer overflow in the XCF decoder can result in an out-of-bounds read when a crafted     image is read       (bsc#1270073).<br /></span><span>    - CVE-2026-53467: allocated memory left unchanged in the MNG decoder can lead to a heap information     disclosure       (bsc#1270074).<br /></span><span>    - CVE-2026-55594: missing depth check in the MVG decoder will result in a stack overflow when a crafted     image is       provided (bsc#1270077).<br /></span><span>    - CVE-2026-55595: providing invalid arguments to the `connected-components` option can lead to an infinite     loop       (bsc#1270079).<br /></span><span>    - CVE-2026-55597: incorrect handling of arguments can cause a heap buffer over-write in the JP2 encoder     (bsc#1270080).<br /></span><span>    - CVE-2026-56361: off-by-one error in morphology validation can lead to an out-of-bounds read     (bsc#1270001).<br /></span><span>    - CVE-2026-56363: integer overflow leading to a division by zero in binomial kernel processing can cause     an application       crash (bsc#1270002).<br /></span><span>    - CVE-2026-56364: memory leak in `LoadOpenCLDeviceBenchmark` function when parsing malformed OpenCL device     profile XML       files with unclosed device elements (bsc#1270003).<br /></span><span>    - CVE-2026-56374: missing boundary checks can lead to a heap buffer overflow in the FTXT encoder when     parsing       `ftxt:format` (bsc#1271099).<br /></span><span>    - CVE-2026-56379: arbitrary MVG drawing command injection via the SVG decoder when processing specially     crafted SVG       files (bsc#1268878).<br /></span><span>    - CVE-2026-42050: stack buffer overflow via a malicious MIFF file (bsc#1265048).<br /></span><span>    - CVE-2026-42326: out-of-bounds read of single byte via malicious IPTC file (bsc#1268092).<br /></span><span>    - CVE-2026-45031: missing check in the PSD decoder allows bypass of the list-length resource policy when     decoding a PSD       image (bsc#1268094).<br /></span><span>    - CVE-2026-45358: off-by-one error in the meta encoder can lead to an out-of-bounds read of a single byte       (bsc#1268102).<br /></span><span>    - CVE-2026-45359: heap buffer overread via invalid `connected-components` value (bsc#1268095).<br /></span><span>    - CVE-2026-45624: performing a polynomial distortion can lead to an out-of-bounds over-read of 24 bytes     (bsc#1268096).<br /></span><span>    - CVE-2026-45664: missing check in the MNG coder can lead to excessive resource use and a DoS     (bsc#1268101).<br /></span><span>    - CVE-2026-46520: out-of-bounds write when processing multiple images with different dimensions     (bsc#1268112).<br /></span><span>    - CVE-2026-46521: missing check when using LZMA compression in the MIFF encoder can lead to an out-of-     bounds write       (bsc#1268124).<br /></span><span>    - CVE-2026-46522: missing check in the MIFF decoder can lead to a denial of service via crafted MIFF file     (bsc#1268126).<br /></span><span>    - CVE-2026-46523: heap use-after-free via a crafted MSL image (bsc#1268125).<br /></span><span>    - CVE-2026-46557: missing depth check can lead to a stack buffer overflow in the fx operation when     processing a crafted       argument (bsc#1268123).<br /></span><span>    - CVE-2026-46559: incorrect check in the JP2 can lead to a heap buffer overwrite of a single byte when     specifying       certain options (bsc#1268121).<br /></span><span>    - CVE-2026-46692: heap buffer overwrite in the server process via an attacker who can connect to a magick<br /></span><span>    -distribute-       cache service (bsc#1268120).<br /></span><span>    - CVE-2026-46693: file descriptor hijacking in the server process when a race condition is met via an     attacker who can       connect to a magick -distribute-cache service (bsc#1268117).<br /></span><span>    - CVE-2026-47165: distributed pixel cache was designed to operate without a challenge-response     authentication model       (bsc#1268114).<br /></span><span>    - CVE-2026-47166: heap buffer overread in the server process via an attacker who can connect to a magick<br /></span><span>    -distribute-       cache service (bsc#1268113).<br /></span><span>    - CVE-2026-48724: heap buffer underwrite in the Floyd-Steinberg depth dithering (bsc#1268116).<br /></span><span>    - CVE-2026-48734: missing depth or visited-set check can lead to a stack buffer overflow in the MVG     decoder       (bsc#1268122).<br /></span><span>    - CVE-2026-48994: missing check of a return value in the MAT decoder can lead to a heap buffer overwrite     on 32-bit       systems (bsc#1268111).<br /></span><span>    - CVE-2026-49218: missing check in the DCM decoder can lead to a DoS (bsc#1268110).<br /></span><span>    - CVE-2026-53460: missing check for maximum memory request in `AcquireAlignedMemory` can lead to an OOM     condition       (bsc#1268108).<br /></span><span>    - CVE-2026-53461: incorrect loop in the ICON decoder can lead to an out-of-bounds heap write     (bsc#1268107).<br /></span><span>    - CVE-2026-53463: passing incorrect arguments in the distort operation can lead to NULL pointer     dereference       (bsc#1268105).<br /></span><span>    - CVE-2026-53464: providing invalid options to the wand option parser can lead to a memory leak     (bsc#1268103).<br /></span><span>    - CVE-2026-56367: integer overflow in the PSB (PSD v2) RLE decoding path can lead to an heap out-of-bounds     read       (bsc#1268645).<br /></span><span>    - CVE-2026-56368: improper memory management can lead to memory leak in multiple coders that write raw     pixel data       (bsc#1269064).<br /></span><span>    - CVE-2026-56370: out-of-bounds access in `ConnectedComponentsImage()` when processing `connected-     components:*`       artifacts with invalid indices (bsc#1269063).<br /></span><span>    - CVE-2026-56371: memory leak in `coders/txt.c` when processing TXT files with texture attributes     (bsc#1268879).<br /></span><span>    - CVE-2026-56376: heap use-after-free in the meta coder can lead to denial of service via specially     crafted image files       (bsc#1268880).<br /></span><span>    - GHSA-3j4x-rwrx-xxj9: possible use-after-free write in PDB decoder (bsc#1268640).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326703">https://www.tenable.com/plugins/nessus/326703</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[SUSE SLES15 Security Update : kernel (Live Patch 52 for SUSE Linux Enterprise 15 SP4) (SUSE-SU-2026:2888-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326702</link>
            <guid>https://www.tenable.com/plugins/nessus/326702</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326702 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote SUSE host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote SUSE Linux SLES15 host has a package installed that is affected by multiple vulnerabilities as referenced in the SUSE-SU-2026:2888-1 advisory.<br /></span><span><br /></span><span>    This update for the SUSE Linux Enterprise Kernel 5.14.21-150400.24.209 fixes various security issues<br /></span><span><br /></span><span>    The following security issues were fixed:<br /></span><span><br /></span><span>    - CVE-2026-23393: bridge: cfm: Fix race condition in peer_mep deletion (bsc#1260524).<br /></span><span>    - CVE-2026-31533: net/tls: fix use-after-free in -EBUSY error path of tls_do_encryption (bsc#1262759).<br /></span><span>    - CVE-2026-31570: can: gw: fix OOB heap access in cgw_csum_crc8_rel() (bsc#1263118).<br /></span><span>    - CVE-2026-31586: mm: blk-cgroup: fix use-after-free in cgwb_release_workfn() (bsc#1263177).<br /></span><span>    - CVE-2026-31685: netfilter: ip6t_eui64: reject invalid MAC header for all packets (bsc#1263670).<br /></span><span>    - CVE-2026-31758: usb: usbtmc: Flush anchored URBs in usbtmc_release (bsc#1264094).<br /></span><span>    - CVE-2026-43025: netfilter: ctnetlink: ignore explicit helper on new expectations (bsc#1264253).<br /></span><span>    - CVE-2026-43027: netfilter: nf_conntrack_helper: pass helper to expect cleanup (bsc#1264252).<br /></span><span>    - CVE-2026-43037: ip6_tunnel: clear skb2->cb[] in ip4ip6_err() (bsc#1265197).<br /></span><span>    - CVE-2026-43190: netfilter: xt_tcpmss: check remaining length before reading optlen (bsc#1264849).<br /></span><span>    - CVE-2026-43437: ALSA: pcm: fix use-after-free on linked stream runtime in snd_pcm_drain() (bsc#1265127).<br /></span><span>    - CVE-2026-43494: RDS zerocopy attack aka PinTheft (bsc#1265945).<br /></span><span>    - CVE-2026-43501: ipv6: rpl: reserve mac_len headroom when recompressed SRH grows (bsc#1266015).<br /></span><span>    - CVE-2026-45970: bonding: alb: fix UAF in rlb_arp_recv during bond up/down (bsc#1267206).<br /></span><span>    - CVE-2026-46120: ip6_gre: Use cached t->net in ip6erspan_changelink() (bsc#1267893).<br /></span><span>    - CVE-2026-46173: exit: prevent preemption of oopsing TASK_DEAD task (bsc#1267723).<br /></span><span>    - CVE-2026-46227: sctp: revalidate list cursor after sctp_sendmsg_to_asoc() in SCTP_SENDALL (bsc#1267698).<br /></span><span>    - CVE-2026-46243: smb: client: reject userspace cifs.spnego descriptions (CIFSwitch) (bsc#1266265).<br /></span><span>    - CVE-2026-52909: ip6_vti: set netns_immutable on the fallback device (bsc#1268662).<br /></span><span>    - CVE-2026-52943: net: skbuff: fix missing zerocopy reference in pskb_carve helpers (bsc#1269023).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected kernel-livepatch-5_14_21-150400_24_209-default package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326702">https://www.tenable.com/plugins/nessus/326702</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[SUSE SLES15 Security Update : kernel RT (Live Patch 16 for SUSE Linux Enterprise 15 SP7) (SUSE-SU-2026:2863-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326701</link>
            <guid>https://www.tenable.com/plugins/nessus/326701</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326701 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote SUSE host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote SUSE Linux SLES15 host has a package installed that is affected by multiple vulnerabilities as referenced in the SUSE-SU-2026:2863-1 advisory.<br /></span><span><br /></span><span>    This update for the SUSE Linux Enterprise Kernel 6.4.0-150700.7.59 fixes various security issues<br /></span><span><br /></span><span>    The following security issues were fixed:<br /></span><span><br /></span><span>    - CVE-2026-46120: ip6_gre: Use cached t->net in ip6erspan_changelink() (bsc#1267893).<br /></span><span>    - CVE-2026-46173: exit: prevent preemption of oopsing TASK_DEAD task (bsc#1267723).<br /></span><span>    - CVE-2026-46227: sctp: revalidate list cursor after sctp_sendmsg_to_asoc() in SCTP_SENDALL (bsc#1267698).<br /></span><span>    - CVE-2026-52909: ip6_vti: set netns_immutable on the fallback device (bsc#1268662).<br /></span><span>    - CVE-2026-52943: net: skbuff: fix missing zerocopy reference in pskb_carve helpers (bsc#1269023).<br /></span><span>    - CVE-2026-53362: ipv6: account for fraggap on the paged allocation path (bsc#1269495).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected kernel-livepatch-6_4_0-150700_7_59-rt package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326701">https://www.tenable.com/plugins/nessus/326701</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[SUSE SLES15: kernel-livepatch-6_4_0-150600_23_60-default / etc (SUSE-SU-2026:2902-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326700</link>
            <guid>https://www.tenable.com/plugins/nessus/326700</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326700 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote SUSE host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote SUSE Linux SLES15 host has packages installed that are affected by multiple vulnerabilities as referenced in the SUSE-SU-2026:2902-1 advisory.<br /></span><span><br /></span><span>    This update for the SUSE Linux Enterprise Kernel 6.4.0-150600.23.60 fixes various security issues<br /></span><span><br /></span><span>    The following security issues were fixed:<br /></span><span><br /></span><span>    - CVE-2025-71089: iommu: disable SVA when CONFIG_X86 is set (bsc#1256615).<br /></span><span>    - CVE-2026-23393: bridge: cfm: Fix race condition in peer_mep deletion (bsc#1260524).<br /></span><span>    - CVE-2026-31505: iavf: fix out-of-bounds writes in iavf_get_ethtool_stats() (bsc#1263094).<br /></span><span>    - CVE-2026-31533: net/tls: fix use-after-free in -EBUSY error path of tls_do_encryption (bsc#1262759).<br /></span><span>    - CVE-2026-31570: can: gw: fix OOB heap access in cgw_csum_crc8_rel() (bsc#1263118).<br /></span><span>    - CVE-2026-31586: mm: blk-cgroup: fix use-after-free in cgwb_release_workfn() (bsc#1263177).<br /></span><span>    - CVE-2026-31685: netfilter: ip6t_eui64: reject invalid MAC header for all packets (bsc#1263670).<br /></span><span>    - CVE-2026-31758: usb: usbtmc: Flush anchored URBs in usbtmc_release (bsc#1264094).<br /></span><span>    - CVE-2026-43025: netfilter: ctnetlink: ignore explicit helper on new expectations (bsc#1264253).<br /></span><span>    - CVE-2026-43027: netfilter: nf_conntrack_helper: pass helper to expect cleanup (bsc#1264252).<br /></span><span>    - CVE-2026-43037: ip6_tunnel: clear skb2->cb[] in ip4ip6_err() (bsc#1265197).<br /></span><span>    - CVE-2026-43120: RDMA/irdma: Fix double free related to rereg_user_mr (bsc#1264567).<br /></span><span>    - CVE-2026-43190: netfilter: xt_tcpmss: check remaining length before reading optlen (bsc#1264849).<br /></span><span>    - CVE-2026-43366: io_uring/kbuf: check if target buffer list is still legacy on recycle (bsc#1265117).<br /></span><span>    - CVE-2026-43437: ALSA: pcm: fix use-after-free on linked stream runtime in snd_pcm_drain() (bsc#1265127).<br /></span><span>    - CVE-2026-43494: RDS zerocopy attack aka PinTheft (bsc#1265945).<br /></span><span>    - CVE-2026-43501: ipv6: rpl: reserve mac_len headroom when recompressed SRH grows (bsc#1266015).<br /></span><span>    - CVE-2026-45970: bonding: alb: fix UAF in rlb_arp_recv during bond up/down (bsc#1267206).<br /></span><span>    - CVE-2026-46120: ip6_gre: Use cached t->net in ip6erspan_changelink() (bsc#1267893).<br /></span><span>    - CVE-2026-46173: exit: prevent preemption of oopsing TASK_DEAD task (bsc#1267723).<br /></span><span>    - CVE-2026-46227: sctp: revalidate list cursor after sctp_sendmsg_to_asoc() in SCTP_SENDALL (bsc#1267698).<br /></span><span>    - CVE-2026-46243: smb: client: reject userspace cifs.spnego descriptions (CIFSwitch) (bsc#1266265).<br /></span><span>    - CVE-2026-52909: ip6_vti: set netns_immutable on the fallback device (bsc#1268662).<br /></span><span>    - CVE-2026-52943: net: skbuff: fix missing zerocopy reference in pskb_carve helpers (bsc#1269023).<br /></span><span>    - CVE-2026-53362: ipv6: account for fraggap on the paged allocation path (bsc#1269495).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected kernel-livepatch-6_4_0-150600_23_60-default and / or kernel-livepatch-6_4_0-150700_53_25-default packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326700">https://www.tenable.com/plugins/nessus/326700</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[SUSE SLED15: MozillaThunderbird / MozillaThunderbird-translations-common / etc (SUSE-SU-2026:2852-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326699</link>
            <guid>https://www.tenable.com/plugins/nessus/326699</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326699 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote SUSE host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote SUSE Linux SLED15 / SLED_SAP15 / SLES15 / SLES_SAP15 host has packages installed that are affected by multiple vulnerabilities as referenced in the SUSE-SU-2026:2852-1 advisory.<br /></span><span><br /></span><span>    This update for MozillaThunderbird fixes the following issues<br /></span><span><br /></span><span>    Update to Firefox 140.12.0 ESR (MFSA 2026-58, bsc#1268071):<br /></span><span><br /></span><span>    - CVE-2026-12289: Privilege escalation in the Graphics: WebRender component.<br /></span><span>    - CVE-2026-12290: Memory safety bug fixed in Firefox ESR 140.12.<br /></span><span>    - CVE-2026-12291: Use-after-free in the Networking: HTTP component.<br /></span><span>    - CVE-2026-12292: Incorrect boundary conditions in the Web Audio component.<br /></span><span>    - CVE-2026-12294: Sandbox escape in the DOM: Workers component.<br /></span><span>    - CVE-2026-12295: Sandbox escape in the DOM: Navigation component.<br /></span><span>    - CVE-2026-12296: Sandbox escape in the Security: Process Sandboxing component.<br /></span><span>    - CVE-2026-12297: Sandbox escape due to incorrect boundary conditions in the Networking component.<br /></span><span>    - CVE-2026-12298: Memory safety bug fixed in Firefox ESR 140.12.<br /></span><span>    - CVE-2026-12299: JIT miscompilation in the DOM: Core & HTML component.<br /></span><span>    - CVE-2026-12302: Mitigation bypass in the DOM: Security component.<br /></span><span>    - CVE-2026-12304: Same-origin policy bypass in the Networking: Cookies component.<br /></span><span>    - CVE-2026-12305: Memory safety bug fixed in Firefox ESR 140.12.<br /></span><span>    - CVE-2026-12306: Memory safety bug fixed in Firefox ESR 140.12.<br /></span><span>    - CVE-2026-12307: Memory safety bug fixed in Firefox ESR 140.12.<br /></span><span>    - CVE-2026-12308: Memory safety bug fixed in Firefox ESR 140.12.<br /></span><span>    - CVE-2026-12309: Memory safety bug fixed in Firefox ESR 140.12.<br /></span><span>    - CVE-2026-12310: Memory safety bug fixed in Firefox ESR 140.12.<br /></span><span>    - CVE-2026-12311: Information disclosure, sandbox escape in the Security: Process Sandboxing component.<br /></span><span>    - CVE-2026-12312: Memory safety bug fixed in Firefox ESR 140.12.<br /></span><span>    - CVE-2026-12313: Information disclosure, sandbox escape in the Security: Process Sandboxing component.<br /></span><span>    - CVE-2026-12314: Memory safety bug fixed in Firefox ESR 140.12.<br /></span><span>    - CVE-2026-12315: Mitigation bypass in the DOM: Security component.<br /></span><span>    - CVE-2026-12324: Incorrect boundary conditions in the Graphics: CanvasWebGL component.<br /></span><span>    - CVE-2026-12325: Denial-of-service in the Graphics: ImageLib component.<br /></span><span>    - CVE-2026-12327: Memory safety bugs fixed in Firefox ESR 140.12, Thunderbird ESR 140.12, Firefox 152 and     Thunderbird       152.<br /></span><span>    - CVE-2026-12328: Memory safety bugs fixed in Firefox ESR 115.37, Firefox ESR 140.12, Thunderbird ESR     140.12, Firefox       152 and Thunderbird 152.<br /></span><span>    - CVE-2026-12329: Memory safety bug fixed in Firefox ESR 140.12.<br /></span><span>    - CVE-2026-12330: Incorrect boundary conditions in the Internationalization component.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected MozillaThunderbird, MozillaThunderbird-translations-common and / or MozillaThunderbird-translations- other packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326699">https://www.tenable.com/plugins/nessus/326699</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[SUSE SLES15 Security Update : kernel RT (Live Patch 8 for SUSE Linux Enterprise 15 SP7) (SUSE-SU-2026:2857-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326698</link>
            <guid>https://www.tenable.com/plugins/nessus/326698</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326698 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote SUSE host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote SUSE Linux SLES15 host has a package installed that is affected by multiple vulnerabilities as referenced in the SUSE-SU-2026:2857-1 advisory.<br /></span><span><br /></span><span>    This update for the SUSE Linux Enterprise Kernel 6.4.0-150700.7.28 fixes various security issues<br /></span><span><br /></span><span>    The following security issues were fixed:<br /></span><span><br /></span><span>    - CVE-2025-71089: iommu: disable SVA when CONFIG_X86 is set (bsc#1256615).<br /></span><span>    - CVE-2026-23393: bridge: cfm: Fix race condition in peer_mep deletion (bsc#1260524).<br /></span><span>    - CVE-2026-31505: iavf: fix out-of-bounds writes in iavf_get_ethtool_stats() (bsc#1263094).<br /></span><span>    - CVE-2026-31533: net/tls: fix use-after-free in -EBUSY error path of tls_do_encryption (bsc#1262759).<br /></span><span>    - CVE-2026-31570: can: gw: fix OOB heap access in cgw_csum_crc8_rel() (bsc#1263118).<br /></span><span>    - CVE-2026-31586: mm: blk-cgroup: fix use-after-free in cgwb_release_workfn() (bsc#1263177).<br /></span><span>    - CVE-2026-31685: netfilter: ip6t_eui64: reject invalid MAC header for all packets (bsc#1263670).<br /></span><span>    - CVE-2026-31758: usb: usbtmc: Flush anchored URBs in usbtmc_release (bsc#1264094).<br /></span><span>    - CVE-2026-43025: netfilter: ctnetlink: ignore explicit helper on new expectations (bsc#1264253).<br /></span><span>    - CVE-2026-43027: netfilter: nf_conntrack_helper: pass helper to expect cleanup (bsc#1264252).<br /></span><span>    - CVE-2026-43037: ip6_tunnel: clear skb2->cb[] in ip4ip6_err() (bsc#1265197).<br /></span><span>    - CVE-2026-43120: RDMA/irdma: Fix double free related to rereg_user_mr (bsc#1264567).<br /></span><span>    - CVE-2026-43190: netfilter: xt_tcpmss: check remaining length before reading optlen (bsc#1264849).<br /></span><span>    - CVE-2026-43366: io_uring/kbuf: check if target buffer list is still legacy on recycle (bsc#1265117).<br /></span><span>    - CVE-2026-43437: ALSA: pcm: fix use-after-free on linked stream runtime in snd_pcm_drain() (bsc#1265127).<br /></span><span>    - CVE-2026-43494: RDS zerocopy attack aka PinTheft (bsc#1265945).<br /></span><span>    - CVE-2026-43501: ipv6: rpl: reserve mac_len headroom when recompressed SRH grows (bsc#1266015).<br /></span><span>    - CVE-2026-45970: bonding: alb: fix UAF in rlb_arp_recv during bond up/down (bsc#1267206).<br /></span><span>    - CVE-2026-46120: ip6_gre: Use cached t->net in ip6erspan_changelink() (bsc#1267893).<br /></span><span>    - CVE-2026-46173: exit: prevent preemption of oopsing TASK_DEAD task (bsc#1267723).<br /></span><span>    - CVE-2026-46227: sctp: revalidate list cursor after sctp_sendmsg_to_asoc() in SCTP_SENDALL (bsc#1267698).<br /></span><span>    - CVE-2026-46243: smb: client: reject userspace cifs.spnego descriptions (CIFSwitch) (bsc#1266265).<br /></span><span>    - CVE-2026-52909: ip6_vti: set netns_immutable on the fallback device (bsc#1268662).<br /></span><span>    - CVE-2026-52943: net: skbuff: fix missing zerocopy reference in pskb_carve helpers (bsc#1269023).<br /></span><span>    - CVE-2026-53362: ipv6: account for fraggap on the paged allocation path (bsc#1269495).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected kernel-livepatch-6_4_0-150700_7_28-rt package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326698">https://www.tenable.com/plugins/nessus/326698</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[SUSE SLES15 Security Update : kernel (Live Patch 46 for SUSE Linux Enterprise 15 SP4) (SUSE-SU-2026:2910-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326697</link>
            <guid>https://www.tenable.com/plugins/nessus/326697</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326697 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote SUSE host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote SUSE Linux SLES15 host has a package installed that is affected by multiple vulnerabilities as referenced in the SUSE-SU-2026:2910-1 advisory.<br /></span><span><br /></span><span>    This update for the SUSE Linux Enterprise Kernel 5.14.21-150400.24.184 fixes various security issues<br /></span><span><br /></span><span>    The following security issues were fixed:<br /></span><span><br /></span><span>    - CVE-2025-71089: iommu: disable SVA when CONFIG_X86 is set (bsc#1256615).<br /></span><span>    - CVE-2026-23393: bridge: cfm: Fix race condition in peer_mep deletion (bsc#1260524).<br /></span><span>    - CVE-2026-31533: net/tls: fix use-after-free in -EBUSY error path of tls_do_encryption (bsc#1262759).<br /></span><span>    - CVE-2026-31570: can: gw: fix OOB heap access in cgw_csum_crc8_rel() (bsc#1263118).<br /></span><span>    - CVE-2026-31586: mm: blk-cgroup: fix use-after-free in cgwb_release_workfn() (bsc#1263177).<br /></span><span>    - CVE-2026-31685: netfilter: ip6t_eui64: reject invalid MAC header for all packets (bsc#1263670).<br /></span><span>    - CVE-2026-31758: usb: usbtmc: Flush anchored URBs in usbtmc_release (bsc#1264094).<br /></span><span>    - CVE-2026-43025: netfilter: ctnetlink: ignore explicit helper on new expectations (bsc#1264253).<br /></span><span>    - CVE-2026-43027: netfilter: nf_conntrack_helper: pass helper to expect cleanup (bsc#1264252).<br /></span><span>    - CVE-2026-43037: ip6_tunnel: clear skb2->cb[] in ip4ip6_err() (bsc#1265197).<br /></span><span>    - CVE-2026-43190: netfilter: xt_tcpmss: check remaining length before reading optlen (bsc#1264849).<br /></span><span>    - CVE-2026-43437: ALSA: pcm: fix use-after-free on linked stream runtime in snd_pcm_drain() (bsc#1265127).<br /></span><span>    - CVE-2026-43494: RDS zerocopy attack aka PinTheft (bsc#1265945).<br /></span><span>    - CVE-2026-43501: ipv6: rpl: reserve mac_len headroom when recompressed SRH grows (bsc#1266015).<br /></span><span>    - CVE-2026-45970: bonding: alb: fix UAF in rlb_arp_recv during bond up/down (bsc#1267206).<br /></span><span>    - CVE-2026-46120: ip6_gre: Use cached t->net in ip6erspan_changelink() (bsc#1267893).<br /></span><span>    - CVE-2026-46173: exit: prevent preemption of oopsing TASK_DEAD task (bsc#1267723).<br /></span><span>    - CVE-2026-46227: sctp: revalidate list cursor after sctp_sendmsg_to_asoc() in SCTP_SENDALL (bsc#1267698).<br /></span><span>    - CVE-2026-46243: smb: client: reject userspace cifs.spnego descriptions (CIFSwitch) (bsc#1266265).<br /></span><span>    - CVE-2026-52909: ip6_vti: set netns_immutable on the fallback device (bsc#1268662).<br /></span><span>    - CVE-2026-52943: net: skbuff: fix missing zerocopy reference in pskb_carve helpers (bsc#1269023).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected kernel-livepatch-5_14_21-150400_24_184-default package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326697">https://www.tenable.com/plugins/nessus/326697</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[SUSE SLES15 Security Update : kernel (Live Patch 30 for SUSE Linux Enterprise 15 SP5) (SUSE-SU-2026:2868-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326696</link>
            <guid>https://www.tenable.com/plugins/nessus/326696</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326696 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote SUSE host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote SUSE Linux SLES15 host has a package installed that is affected by multiple vulnerabilities as referenced in the SUSE-SU-2026:2868-1 advisory.<br /></span><span><br /></span><span>    This update for the SUSE Linux Enterprise Kernel 5.14.21-150500.55.121 fixes various security issues<br /></span><span><br /></span><span>    The following security issues were fixed:<br /></span><span><br /></span><span>    - CVE-2025-71089: iommu: disable SVA when CONFIG_X86 is set (bsc#1256615).<br /></span><span>    - CVE-2026-23393: bridge: cfm: Fix race condition in peer_mep deletion (bsc#1260524).<br /></span><span>    - CVE-2026-31505: iavf: fix out-of-bounds writes in iavf_get_ethtool_stats() (bsc#1263094).<br /></span><span>    - CVE-2026-31533: net/tls: fix use-after-free in -EBUSY error path of tls_do_encryption (bsc#1262759).<br /></span><span>    - CVE-2026-31570: can: gw: fix OOB heap access in cgw_csum_crc8_rel() (bsc#1263118).<br /></span><span>    - CVE-2026-31586: mm: blk-cgroup: fix use-after-free in cgwb_release_workfn() (bsc#1263177).<br /></span><span>    - CVE-2026-31685: netfilter: ip6t_eui64: reject invalid MAC header for all packets (bsc#1263670).<br /></span><span>    - CVE-2026-31758: usb: usbtmc: Flush anchored URBs in usbtmc_release (bsc#1264094).<br /></span><span>    - CVE-2026-43025: netfilter: ctnetlink: ignore explicit helper on new expectations (bsc#1264253).<br /></span><span>    - CVE-2026-43027: netfilter: nf_conntrack_helper: pass helper to expect cleanup (bsc#1264252).<br /></span><span>    - CVE-2026-43037: ip6_tunnel: clear skb2->cb[] in ip4ip6_err() (bsc#1265197).<br /></span><span>    - CVE-2026-43190: netfilter: xt_tcpmss: check remaining length before reading optlen (bsc#1264849).<br /></span><span>    - CVE-2026-43366: io_uring/kbuf: check if target buffer list is still legacy on recycle (bsc#1265117).<br /></span><span>    - CVE-2026-43437: ALSA: pcm: fix use-after-free on linked stream runtime in snd_pcm_drain() (bsc#1265127).<br /></span><span>    - CVE-2026-43494: RDS zerocopy attack aka PinTheft (bsc#1265945).<br /></span><span>    - CVE-2026-43501: ipv6: rpl: reserve mac_len headroom when recompressed SRH grows (bsc#1266015).<br /></span><span>    - CVE-2026-45970: bonding: alb: fix UAF in rlb_arp_recv during bond up/down (bsc#1267206).<br /></span><span>    - CVE-2026-46120: ip6_gre: Use cached t->net in ip6erspan_changelink() (bsc#1267893).<br /></span><span>    - CVE-2026-46173: exit: prevent preemption of oopsing TASK_DEAD task (bsc#1267723).<br /></span><span>    - CVE-2026-46227: sctp: revalidate list cursor after sctp_sendmsg_to_asoc() in SCTP_SENDALL (bsc#1267698).<br /></span><span>    - CVE-2026-46243: smb: client: reject userspace cifs.spnego descriptions (CIFSwitch) (bsc#1266265).<br /></span><span>    - CVE-2026-52909: ip6_vti: set netns_immutable on the fallback device (bsc#1268662).<br /></span><span>    - CVE-2026-52943: net: skbuff: fix missing zerocopy reference in pskb_carve helpers (bsc#1269023).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected kernel-livepatch-5_14_21-150500_55_121-default package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326696">https://www.tenable.com/plugins/nessus/326696</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[SUSE SLES15 Security Update : kernel (Live Patch 45 for SUSE Linux Enterprise 15 SP4) (SUSE-SU-2026:2864-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326695</link>
            <guid>https://www.tenable.com/plugins/nessus/326695</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326695 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote SUSE host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote SUSE Linux SLES15 host has a package installed that is affected by multiple vulnerabilities as referenced in the SUSE-SU-2026:2864-1 advisory.<br /></span><span><br /></span><span>    This update for the SUSE Linux Enterprise Kernel 5.14.21-150400.24.179 fixes various security issues<br /></span><span><br /></span><span>    The following security issues were fixed:<br /></span><span><br /></span><span>    - CVE-2025-71089: iommu: disable SVA when CONFIG_X86 is set (bsc#1256615).<br /></span><span>    - CVE-2026-23393: bridge: cfm: Fix race condition in peer_mep deletion (bsc#1260524).<br /></span><span>    - CVE-2026-31533: net/tls: fix use-after-free in -EBUSY error path of tls_do_encryption (bsc#1262759).<br /></span><span>    - CVE-2026-31570: can: gw: fix OOB heap access in cgw_csum_crc8_rel() (bsc#1263118).<br /></span><span>    - CVE-2026-31586: mm: blk-cgroup: fix use-after-free in cgwb_release_workfn() (bsc#1263177).<br /></span><span>    - CVE-2026-31685: netfilter: ip6t_eui64: reject invalid MAC header for all packets (bsc#1263670).<br /></span><span>    - CVE-2026-31758: usb: usbtmc: Flush anchored URBs in usbtmc_release (bsc#1264094).<br /></span><span>    - CVE-2026-43025: netfilter: ctnetlink: ignore explicit helper on new expectations (bsc#1264253).<br /></span><span>    - CVE-2026-43027: netfilter: nf_conntrack_helper: pass helper to expect cleanup (bsc#1264252).<br /></span><span>    - CVE-2026-43037: ip6_tunnel: clear skb2->cb[] in ip4ip6_err() (bsc#1265197).<br /></span><span>    - CVE-2026-43190: netfilter: xt_tcpmss: check remaining length before reading optlen (bsc#1264849).<br /></span><span>    - CVE-2026-43437: ALSA: pcm: fix use-after-free on linked stream runtime in snd_pcm_drain() (bsc#1265127).<br /></span><span>    - CVE-2026-43494: RDS zerocopy attack aka PinTheft (bsc#1265945).<br /></span><span>    - CVE-2026-43501: ipv6: rpl: reserve mac_len headroom when recompressed SRH grows (bsc#1266015).<br /></span><span>    - CVE-2026-45970: bonding: alb: fix UAF in rlb_arp_recv during bond up/down (bsc#1267206).<br /></span><span>    - CVE-2026-46120: ip6_gre: Use cached t->net in ip6erspan_changelink() (bsc#1267893).<br /></span><span>    - CVE-2026-46173: exit: prevent preemption of oopsing TASK_DEAD task (bsc#1267723).<br /></span><span>    - CVE-2026-46227: sctp: revalidate list cursor after sctp_sendmsg_to_asoc() in SCTP_SENDALL (bsc#1267698).<br /></span><span>    - CVE-2026-46243: smb: client: reject userspace cifs.spnego descriptions (CIFSwitch) (bsc#1266265).<br /></span><span>    - CVE-2026-52909: ip6_vti: set netns_immutable on the fallback device (bsc#1268662).<br /></span><span>    - CVE-2026-52943: net: skbuff: fix missing zerocopy reference in pskb_carve helpers (bsc#1269023).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected kernel-livepatch-5_14_21-150400_24_179-default package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326695">https://www.tenable.com/plugins/nessus/326695</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[SUSE SLES15 Security Update : kernel (Live Patch 44 for SUSE Linux Enterprise 15 SP4) (SUSE-SU-2026:2889-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326694</link>
            <guid>https://www.tenable.com/plugins/nessus/326694</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326694 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote SUSE host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote SUSE Linux SLES15 host has a package installed that is affected by multiple vulnerabilities as referenced in the SUSE-SU-2026:2889-1 advisory.<br /></span><span><br /></span><span>    This update for the SUSE Linux Enterprise Kernel 5.14.21-150400.24.176 fixes various security issues<br /></span><span><br /></span><span>    The following security issues were fixed:<br /></span><span><br /></span><span>    - CVE-2025-71089: iommu: disable SVA when CONFIG_X86 is set (bsc#1256615).<br /></span><span>    - CVE-2026-23393: bridge: cfm: Fix race condition in peer_mep deletion (bsc#1260524).<br /></span><span>    - CVE-2026-31533: net/tls: fix use-after-free in -EBUSY error path of tls_do_encryption (bsc#1262759).<br /></span><span>    - CVE-2026-31570: can: gw: fix OOB heap access in cgw_csum_crc8_rel() (bsc#1263118).<br /></span><span>    - CVE-2026-31586: mm: blk-cgroup: fix use-after-free in cgwb_release_workfn() (bsc#1263177).<br /></span><span>    - CVE-2026-31685: netfilter: ip6t_eui64: reject invalid MAC header for all packets (bsc#1263670).<br /></span><span>    - CVE-2026-31758: usb: usbtmc: Flush anchored URBs in usbtmc_release (bsc#1264094).<br /></span><span>    - CVE-2026-43025: netfilter: ctnetlink: ignore explicit helper on new expectations (bsc#1264253).<br /></span><span>    - CVE-2026-43027: netfilter: nf_conntrack_helper: pass helper to expect cleanup (bsc#1264252).<br /></span><span>    - CVE-2026-43037: ip6_tunnel: clear skb2->cb[] in ip4ip6_err() (bsc#1265197).<br /></span><span>    - CVE-2026-43190: netfilter: xt_tcpmss: check remaining length before reading optlen (bsc#1264849).<br /></span><span>    - CVE-2026-43437: ALSA: pcm: fix use-after-free on linked stream runtime in snd_pcm_drain() (bsc#1265127).<br /></span><span>    - CVE-2026-43494: RDS zerocopy attack aka PinTheft (bsc#1265945).<br /></span><span>    - CVE-2026-43501: ipv6: rpl: reserve mac_len headroom when recompressed SRH grows (bsc#1266015).<br /></span><span>    - CVE-2026-45970: bonding: alb: fix UAF in rlb_arp_recv during bond up/down (bsc#1267206).<br /></span><span>    - CVE-2026-46120: ip6_gre: Use cached t->net in ip6erspan_changelink() (bsc#1267893).<br /></span><span>    - CVE-2026-46173: exit: prevent preemption of oopsing TASK_DEAD task (bsc#1267723).<br /></span><span>    - CVE-2026-46227: sctp: revalidate list cursor after sctp_sendmsg_to_asoc() in SCTP_SENDALL (bsc#1267698).<br /></span><span>    - CVE-2026-46243: smb: client: reject userspace cifs.spnego descriptions (CIFSwitch) (bsc#1266265).<br /></span><span>    - CVE-2026-52909: ip6_vti: set netns_immutable on the fallback device (bsc#1268662).<br /></span><span>    - CVE-2026-52943: net: skbuff: fix missing zerocopy reference in pskb_carve helpers (bsc#1269023).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected kernel-livepatch-5_14_21-150400_24_176-default package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326694">https://www.tenable.com/plugins/nessus/326694</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[SUSE SLES15 Security Update : kernel (Live Patch 41 for SUSE Linux Enterprise 15 SP4) (SUSE-SU-2026:2867-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326693</link>
            <guid>https://www.tenable.com/plugins/nessus/326693</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326693 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote SUSE host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote SUSE Linux SLES15 host has a package installed that is affected by multiple vulnerabilities as referenced in the SUSE-SU-2026:2867-1 advisory.<br /></span><span><br /></span><span>    This update for the SUSE Linux Enterprise Kernel 5.14.21-150400.24.167 fixes various security issues<br /></span><span><br /></span><span>    The following security issues were fixed:<br /></span><span><br /></span><span>    - CVE-2025-71089: iommu: disable SVA when CONFIG_X86 is set (bsc#1256615).<br /></span><span>    - CVE-2026-23393: bridge: cfm: Fix race condition in peer_mep deletion (bsc#1260524).<br /></span><span>    - CVE-2026-31533: net/tls: fix use-after-free in -EBUSY error path of tls_do_encryption (bsc#1262759).<br /></span><span>    - CVE-2026-31570: can: gw: fix OOB heap access in cgw_csum_crc8_rel() (bsc#1263118).<br /></span><span>    - CVE-2026-31586: mm: blk-cgroup: fix use-after-free in cgwb_release_workfn() (bsc#1263177).<br /></span><span>    - CVE-2026-31685: netfilter: ip6t_eui64: reject invalid MAC header for all packets (bsc#1263670).<br /></span><span>    - CVE-2026-31758: usb: usbtmc: Flush anchored URBs in usbtmc_release (bsc#1264094).<br /></span><span>    - CVE-2026-43025: netfilter: ctnetlink: ignore explicit helper on new expectations (bsc#1264253).<br /></span><span>    - CVE-2026-43027: netfilter: nf_conntrack_helper: pass helper to expect cleanup (bsc#1264252).<br /></span><span>    - CVE-2026-43037: ip6_tunnel: clear skb2->cb[] in ip4ip6_err() (bsc#1265197).<br /></span><span>    - CVE-2026-43190: netfilter: xt_tcpmss: check remaining length before reading optlen (bsc#1264849).<br /></span><span>    - CVE-2026-43437: ALSA: pcm: fix use-after-free on linked stream runtime in snd_pcm_drain() (bsc#1265127).<br /></span><span>    - CVE-2026-43494: RDS zerocopy attack aka PinTheft (bsc#1265945).<br /></span><span>    - CVE-2026-43501: ipv6: rpl: reserve mac_len headroom when recompressed SRH grows (bsc#1266015).<br /></span><span>    - CVE-2026-45970: bonding: alb: fix UAF in rlb_arp_recv during bond up/down (bsc#1267206).<br /></span><span>    - CVE-2026-46120: ip6_gre: Use cached t->net in ip6erspan_changelink() (bsc#1267893).<br /></span><span>    - CVE-2026-46173: exit: prevent preemption of oopsing TASK_DEAD task (bsc#1267723).<br /></span><span>    - CVE-2026-46227: sctp: revalidate list cursor after sctp_sendmsg_to_asoc() in SCTP_SENDALL (bsc#1267698).<br /></span><span>    - CVE-2026-46243: smb: client: reject userspace cifs.spnego descriptions (CIFSwitch) (bsc#1266265).<br /></span><span>    - CVE-2026-52909: ip6_vti: set netns_immutable on the fallback device (bsc#1268662).<br /></span><span>    - CVE-2026-52943: net: skbuff: fix missing zerocopy reference in pskb_carve helpers (bsc#1269023).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected kernel-livepatch-5_14_21-150400_24_167-default package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326693">https://www.tenable.com/plugins/nessus/326693</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[SUSE SLED15 / SLES15 Security Update : tiff (SUSE-SU-2026:2853-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326692</link>
            <guid>https://www.tenable.com/plugins/nessus/326692</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326692 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote SUSE host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote SUSE Linux SLED15 / SLED_SAP15 / SLES15 / SLES_SAP15 host has packages installed that are affected by multiple vulnerabilities as referenced in the SUSE-SU-2026:2853-1 advisory.<br /></span><span><br /></span><span>    Update to version 4.7.2.<br /></span><span><br /></span><span>    Security issues fixed:<br /></span><span><br /></span><span>    - CVE-2026-12912: heap-based buffer overflow when processing crafted PixarLog-compressed TIFF image     (bsc#1269779).<br /></span><span>    - CVE-2026-36849: denial of service when processing a a crafted TIFF file containing a large     SamplesPerPixel tag value       (bsc#1268434).<br /></span><span><br /></span><span>    Other updates and bugfixes:<br /></span><span><br /></span><span>    - Version 4.7.2:<br /></span><span>      - Software configuration changes:<br /></span><span>        * cmake: Fix bundle identifiers to use reverse-DNS format<br /></span><span>        * cmake: Fix and improve Apple framework build support<br /></span><span>        * cmake: Use TurboJPEG CONFIG by default (issue #767)<br /></span><span>        * cmake: changes related to 8-/12-bit modes<br /></span><span>        * cmake: Replace CMath::CMath with direct link to avoid export.<br /></span><span>        * Support for iOS-derived builds<br /></span><span>        * Simplify cmake byte order version check<br /></span><span>        * Add additional warnings, primarily floating precision conversions and integer arithmetic conversions<br /></span><span>        * configure.ac: Require bootstrap with at least Autoconf 2.71.<br /></span><span>      - Library changes:<br /></span><span>        * New/improved functionalities::<br /></span><span>        - Add TIFFGetMaxCompressionRatio() and use it in _TIFFReadEncoded[Tile|Strip)AndAllocBuffer() (issue     #781)<br /></span><span>      - Bug fixes:<br /></span><span>        * Handle negative TIFFReadFile results before state updates (issue #854)<br /></span><span>        * tif_dirread.c: fix copy-paste bug in ChopUpSingleUncompressedStrip<br /></span><span>        * tif_read.c: Fixed division by zero in TIFFStartStrip() (issue #777)<br /></span><span>        * tif_dirwrite.c: add integer overflow checks to allocation size calculations<br /></span><span>        * tif_print.c: add integer overflow checks to allocation size calculations<br /></span><span>        * tif_write.c: fix OOB read and underflow in TIFFAppendToStrip copy loop<br /></span><span>        * DumpModeSeek: add bounds check to prevent OOB pointer advance<br /></span><span>        * TIFFGrowStrips: fix use-after-free on partial realloc failure.<br /></span><span>        * Fix NULL dereference in _TIFFReserveLargeEnoughWriteBuffer() by validating the strip bytecount array     before           accessing it.<br /></span><span>        * TIFFRGBAImage: avoid int overflows in put functions (issue #830)<br /></span><span>        * tif_getimage: fix inconsistent fromskew handling in put16bitbwtile (issue #792)<br /></span><span>        * tif_getimage: Widen pointer-offset arithmetic in tif_getimage<br /></span><span>        * putcontig8bitYCbCr44tile: fix wrong fromskew computation (issue #798)<br /></span><span>        * putcontig8bitYCbCr42tile: Reject invalid YCbCr subsampling when image dimensions are smaller than     the subsampling           block to prevent out-of-bounds writes. (issue #753)<br /></span><span>        * TIFFReadRGBAImage(): prevent integer overflow and later heap overflow (issue #787)<br /></span><span>        * TIFFFillStrip/Tile(): avoid excessive memory allocation (issue #831)<br /></span><span>        * TIFFLinkDirectory() checks for IFD loops (issue #788)<br /></span><span>        * Check result of _TIFFCheckRealloc to prevent memory leaks and segmentation fault when reallocation     fails.<br /></span><span>        * TIFFVTileSize64(): in YCbCr contig non upsampled mode, validate td_samplesperpixel==3 (issue #805)<br /></span><span>        * TIFFReadDirEntryPersampleShort(): be tolerant to tags like SampleFormat not having 1 or     SamplesPerPixel values           (https://github.com/OSGeo/gdal/issues/13465)<br /></span><span>        * tif_getimage: reject tile widths that would overflow toskew (issue #808)<br /></span><span>        * Fix integer overflow in _TIFFPartialReadStripArray on 32-bit.<br /></span><span>        * TIFFAppendToStrip(): add some checks to avoid null-pointer-dereferencing (issue #777).<br /></span><span>        * _TIFFGetStrileOffsetOrByteCountValue(): fix potential crash on corrupted files when file opened in     'O' mode           (https://issues.oss-fuzz.com/issues/471328917)<br /></span><span>        * TIFFReadDirectory(): re-set TIFF_LAZYSTRILELOAD if file opened in 'O' mode<br /></span><span>        * _TIFFMergeFields(): avoid NULL ptr dereference (issue #755).<br /></span><span>        * Check td_stripbytecount_p and td_stripoffset_p for NULL pointer before (re-)writing to file. (issue     #749)<br /></span><span>        * JPEGDecodeRaw: initialize output buffer to avoid returning uninitialized memory (issue #892)<br /></span><span>        * JPEG decompressor: initialize output buffer when JPEG image is smaller than strile dimension to     avoid heap memory           disclosure (issue #826)<br /></span><span>        * JPEG: fix generation of tiled 12-bit JPEG compressed files with libjpeg-turbo 3.0.3 (issue #773)<br /></span><span>        * JPEGDecode(): fix memory leak in error code path (https://issues.oss-fuzz.com/issues/471945501)<br /></span><span>        * tif_jpeg: reject mismatched JPEG data precision to avoid write overflow<br /></span><span>        * Fix signed left-shift UB in LogLuv RANDITHER encoding (issue #850)<br /></span><span>        * PixarLog: error out on invalid ABGR output buffer sizes.<br /></span><span>        * PixarLog: complete ABGR bounds check for multi-row strip decoding.<br /></span><span>        * PixarLog: fix heap-buffer-overflow in 8BITABGR decode with stride 3 (issue #824)<br /></span><span>        * PixarLog: fix undoing horizontal differencing when SamplesPerPixel != 3 and 4 (issue #789).<br /></span><span>        * PixarLog codec: fix potential integer overflow/out-of-bounds access (issue #797)<br /></span><span>        * TIFFAdvanceDirectory(): avoid potential read heap-buffer-overflow in mmap code path on 32 bit builds           (https://issues.oss-fuzz.com/issues/506737072)<br /></span><span>        * OJPEG: fix integer overflow in subsampling buffer allocation.<br /></span><span>        * OJPEG: fix nullptr deref when changing compression method from OJPEG to something else (issue #795).<br /></span><span>        * OJPEG fix potential integer overflow/out-of-bounds access (issue #796).<br /></span><span>        * ojpeg: prevent EOF infinite loop (fixes commit 2a3d55b)<br /></span><span>        * fix null pointer deference in issue #782.<br /></span><span>        * fix stack-overflow in issue #784.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected libtiff-devel, libtiff6, libtiff6-32bit and / or tiff packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326692">https://www.tenable.com/plugins/nessus/326692</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[SUSE SLES15 Security Update : kernel (Live Patch 31 for SUSE Linux Enterprise 15 SP5) (SUSE-SU-2026:2890-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326691</link>
            <guid>https://www.tenable.com/plugins/nessus/326691</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326691 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote SUSE host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote SUSE Linux SLES15 host has a package installed that is affected by multiple vulnerabilities as referenced in the SUSE-SU-2026:2890-1 advisory.<br /></span><span><br /></span><span>    This update for the SUSE Linux Enterprise Kernel 5.14.21-150500.55.124 fixes various security issues<br /></span><span><br /></span><span>    The following security issues were fixed:<br /></span><span><br /></span><span>    - CVE-2025-71089: iommu: disable SVA when CONFIG_X86 is set (bsc#1256615).<br /></span><span>    - CVE-2026-23393: bridge: cfm: Fix race condition in peer_mep deletion (bsc#1260524).<br /></span><span>    - CVE-2026-31505: iavf: fix out-of-bounds writes in iavf_get_ethtool_stats() (bsc#1263094).<br /></span><span>    - CVE-2026-31533: net/tls: fix use-after-free in -EBUSY error path of tls_do_encryption (bsc#1262759).<br /></span><span>    - CVE-2026-31570: can: gw: fix OOB heap access in cgw_csum_crc8_rel() (bsc#1263118).<br /></span><span>    - CVE-2026-31586: mm: blk-cgroup: fix use-after-free in cgwb_release_workfn() (bsc#1263177).<br /></span><span>    - CVE-2026-31685: netfilter: ip6t_eui64: reject invalid MAC header for all packets (bsc#1263670).<br /></span><span>    - CVE-2026-31758: usb: usbtmc: Flush anchored URBs in usbtmc_release (bsc#1264094).<br /></span><span>    - CVE-2026-43025: netfilter: ctnetlink: ignore explicit helper on new expectations (bsc#1264253).<br /></span><span>    - CVE-2026-43027: netfilter: nf_conntrack_helper: pass helper to expect cleanup (bsc#1264252).<br /></span><span>    - CVE-2026-43037: ip6_tunnel: clear skb2->cb[] in ip4ip6_err() (bsc#1265197).<br /></span><span>    - CVE-2026-43190: netfilter: xt_tcpmss: check remaining length before reading optlen (bsc#1264849).<br /></span><span>    - CVE-2026-43366: io_uring/kbuf: check if target buffer list is still legacy on recycle (bsc#1265117).<br /></span><span>    - CVE-2026-43437: ALSA: pcm: fix use-after-free on linked stream runtime in snd_pcm_drain() (bsc#1265127).<br /></span><span>    - CVE-2026-43494: RDS zerocopy attack aka PinTheft (bsc#1265945).<br /></span><span>    - CVE-2026-43501: ipv6: rpl: reserve mac_len headroom when recompressed SRH grows (bsc#1266015).<br /></span><span>    - CVE-2026-45970: bonding: alb: fix UAF in rlb_arp_recv during bond up/down (bsc#1267206).<br /></span><span>    - CVE-2026-46120: ip6_gre: Use cached t->net in ip6erspan_changelink() (bsc#1267893).<br /></span><span>    - CVE-2026-46173: exit: prevent preemption of oopsing TASK_DEAD task (bsc#1267723).<br /></span><span>    - CVE-2026-46227: sctp: revalidate list cursor after sctp_sendmsg_to_asoc() in SCTP_SENDALL (bsc#1267698).<br /></span><span>    - CVE-2026-46243: smb: client: reject userspace cifs.spnego descriptions (CIFSwitch) (bsc#1266265).<br /></span><span>    - CVE-2026-52909: ip6_vti: set netns_immutable on the fallback device (bsc#1268662).<br /></span><span>    - CVE-2026-52943: net: skbuff: fix missing zerocopy reference in pskb_carve helpers (bsc#1269023).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected kernel-livepatch-5_14_21-150500_55_124-default package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326691">https://www.tenable.com/plugins/nessus/326691</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[SUSE SLES12 Security Update : libpng15 (SUSE-SU-2026:2878-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326690</link>
            <guid>https://www.tenable.com/plugins/nessus/326690</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326690 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote SUSE host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote SUSE Linux SLES12 host has a package installed that is affected by a vulnerability as referenced in the SUSE- SU-2026:2878-1 advisory.<br /></span><span><br /></span><span>    This update for libpng15 fixes the following issue<br /></span><span><br /></span><span>    - CVE-2026-25646: heap buffer overflow vulnerability in png_set_dither/png_set_quantize (bsc#1258020).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected libpng15-15 package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326690">https://www.tenable.com/plugins/nessus/326690</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[SUSE SLED15 / SLES15 Security Update : python-urllib3 (SUSE-SU-2026:2854-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326689</link>
            <guid>https://www.tenable.com/plugins/nessus/326689</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326689 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote SUSE host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote SUSE Linux SLED15 / SLED_SAP15 / SLES15 / SLES_SAP15 host has a package installed that is affected by a vulnerability as referenced in the SUSE-SU-2026:2854-1 advisory.<br /></span><span><br /></span><span>    This update for python-urllib3 fixes the following issue<br /></span><span><br /></span><span>    - egression introduced by CVE-2025-66471 fix during file download with pySSL (bsc#1270365).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected python3-urllib3 package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326689">https://www.tenable.com/plugins/nessus/326689</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[SUSE SLES15 Security Update : kernel RT (Live Patch 11 for SUSE Linux Enterprise 15 SP7) (SUSE-SU-2026:2855-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326688</link>
            <guid>https://www.tenable.com/plugins/nessus/326688</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326688 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote SUSE host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote SUSE Linux SLES15 host has a package installed that is affected by multiple vulnerabilities as referenced in the SUSE-SU-2026:2855-1 advisory.<br /></span><span><br /></span><span>    This update for the SUSE Linux Enterprise Kernel 6.4.0-150700.7.37 fixes various security issues<br /></span><span><br /></span><span>    The following security issues were fixed:<br /></span><span><br /></span><span>    - CVE-2026-23393: bridge: cfm: Fix race condition in peer_mep deletion (bsc#1260524).<br /></span><span>    - CVE-2026-31505: iavf: fix out-of-bounds writes in iavf_get_ethtool_stats() (bsc#1263094).<br /></span><span>    - CVE-2026-31533: net/tls: fix use-after-free in -EBUSY error path of tls_do_encryption (bsc#1262759).<br /></span><span>    - CVE-2026-31570: can: gw: fix OOB heap access in cgw_csum_crc8_rel() (bsc#1263118).<br /></span><span>    - CVE-2026-31586: mm: blk-cgroup: fix use-after-free in cgwb_release_workfn() (bsc#1263177).<br /></span><span>    - CVE-2026-31685: netfilter: ip6t_eui64: reject invalid MAC header for all packets (bsc#1263670).<br /></span><span>    - CVE-2026-43025: netfilter: ctnetlink: ignore explicit helper on new expectations (bsc#1264253).<br /></span><span>    - CVE-2026-43027: netfilter: nf_conntrack_helper: pass helper to expect cleanup (bsc#1264252).<br /></span><span>    - CVE-2026-43037: ip6_tunnel: clear skb2->cb[] in ip4ip6_err() (bsc#1265197).<br /></span><span>    - CVE-2026-43120: RDMA/irdma: Fix double free related to rereg_user_mr (bsc#1264567).<br /></span><span>    - CVE-2026-43190: netfilter: xt_tcpmss: check remaining length before reading optlen (bsc#1264849).<br /></span><span>    - CVE-2026-43366: io_uring/kbuf: check if target buffer list is still legacy on recycle (bsc#1265117).<br /></span><span>    - CVE-2026-43494: RDS zerocopy attack aka PinTheft (bsc#1265945).<br /></span><span>    - CVE-2026-43501: ipv6: rpl: reserve mac_len headroom when recompressed SRH grows (bsc#1266015).<br /></span><span>    - CVE-2026-45970: bonding: alb: fix UAF in rlb_arp_recv during bond up/down (bsc#1267206).<br /></span><span>    - CVE-2026-46120: ip6_gre: Use cached t->net in ip6erspan_changelink() (bsc#1267893).<br /></span><span>    - CVE-2026-46173: exit: prevent preemption of oopsing TASK_DEAD task (bsc#1267723).<br /></span><span>    - CVE-2026-46227: sctp: revalidate list cursor after sctp_sendmsg_to_asoc() in SCTP_SENDALL (bsc#1267698).<br /></span><span>    - CVE-2026-46243: smb: client: reject userspace cifs.spnego descriptions (CIFSwitch) (bsc#1266265).<br /></span><span>    - CVE-2026-52909: ip6_vti: set netns_immutable on the fallback device (bsc#1268662).<br /></span><span>    - CVE-2026-52943: net: skbuff: fix missing zerocopy reference in pskb_carve helpers (bsc#1269023).<br /></span><span>    - CVE-2026-53362: ipv6: account for fraggap on the paged allocation path (bsc#1269495).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected kernel-livepatch-6_4_0-150700_7_37-rt package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326688">https://www.tenable.com/plugins/nessus/326688</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Fedora 43 : golang-github-openprinting-ipp-usb (2026-d7dfd8e9ba)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326687</link>
            <guid>https://www.tenable.com/plugins/nessus/326687</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326687 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Fedora host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Fedora 43 host has a package installed that is affected by multiple vulnerabilities as referenced in the FEDORA-2026-d7dfd8e9ba advisory.<br /></span><span><br /></span><span>    0.9.34 - security fixes for CVE-2026-27145<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Fedora security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected golang-github-openprinting-ipp-usb package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326687">https://www.tenable.com/plugins/nessus/326687</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[openSUSE 16: agama / agama-autoinstall / agama-cli / agama-cli-bash-completion / etc (openSUSE-SU-2026:21292-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326686</link>
            <guid>https://www.tenable.com/plugins/nessus/326686</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326686 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote openSUSE host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote openSUSE 16 host has packages installed that are affected by multiple vulnerabilities as referenced in the openSUSE-SU-2026:21292-1 advisory.<br /></span><span><br /></span><span>    This update for agama fixes the following issues<br /></span><span><br /></span><span>    - CVE-2026-41677: openssl: out-of-bounds read in PEM password callback when returning an oversized length     in rust-       openssl crate (bsc#1270602).<br /></span><span>    - CVE-2026-41678: openssl: incorrect bounds assertion in aes key wrap in rust-openssl crate (bsc#1270678).<br /></span><span>    - CVE-2026-41681: openssl: MdCtxRef::digest_final() writes past caller buffer with no length check in     rust-openssl crate       (bsc#1270784).<br /></span><span>    - CVE-2026-41898: openssl: unchecked callback-returned length in PSK and cookie generate trampolines can     leak adjacent       memory in rust-openssl crate (bsc#1270850).<br /></span><span>    - CVE-2026-42327: openssl: arbitrary code execution via specially crafted certificate in rust-openssl     crate       (bsc#1270526).<br /></span><span>    - CVE-2026-44662: openssl: heap buffer overflow when encrypting with AES key-wrap-with-padding in rust-     openssl crate       (bsc#1270891).<br /></span><span>    - CVE-2026-45784: openssl: out-of-bounds write in `CipherCtxRef::cipher_update_inplace` for AES-KW-PAD     ciphers in rust-       openssl crate (bsc#1270992).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326686">https://www.tenable.com/plugins/nessus/326686</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[openSUSE 16 Security Update : uriparser (openSUSE-SU-2026:21297-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326685</link>
            <guid>https://www.tenable.com/plugins/nessus/326685</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326685 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote openSUSE host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote openSUSE 16 host has packages installed that are affected by multiple vulnerabilities as referenced in the openSUSE-SU-2026:21297-1 advisory.<br /></span><span><br /></span><span>    This update for uriparser fixes the following issues<br /></span><span><br /></span><span>    - CVE-2026-42371: numeric truncation in text range comparison when an application accepts URIs with a     length in       gigabytes (bsc#1262999).<br /></span><span>    - CVE-2026-44927: truncation of `ptrdiff_t` to `int` in various places (bsc#1264578).<br /></span><span>    - CVE-2026-44928: function family `EqualsUri` can misclassify two unequal URIs as equal (bsc#1264579).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected liburiparser1, uriparser and / or uriparser-devel packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326685">https://www.tenable.com/plugins/nessus/326685</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[openSUSE 16 Security Update : yelp (openSUSE-SU-2026:21295-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326684</link>
            <guid>https://www.tenable.com/plugins/nessus/326684</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326684 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote openSUSE host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote openSUSE 16 host has packages installed that are affected by a vulnerability as referenced in the openSUSE- SU-2026:21295-1 advisory.<br /></span><span><br /></span><span>    This update for yelp fixes the following issue<br /></span><span><br /></span><span>    - CVE-2026-13601: overly permissive Content Security Policy allows host file disclosure via Flatpak     applications       (bsc#1269625).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected libyelp0, yelp, yelp-devel and / or yelp-lang packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326684">https://www.tenable.com/plugins/nessus/326684</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[openSUSE 16: GraphicsMagick / GraphicsMagick-devel / libGraphicsMagick++-Q16-12 / etc (openSUSE-SU-2026:21282-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326683</link>
            <guid>https://www.tenable.com/plugins/nessus/326683</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326683 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote openSUSE host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote openSUSE 16 host has packages installed that are affected by a vulnerability as referenced in the openSUSE- SU-2026:21282-1 advisory.<br /></span><span><br /></span><span>    This update for GraphicsMagick fixes the following issue<br /></span><span><br /></span><span>    - CVE-2026-13606: crafted Photo CD (PCD) file can cause memory corruption (bsc#1269891).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326683">https://www.tenable.com/plugins/nessus/326683</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[openSUSE 16 Security Update : dash (openSUSE-SU-2026:21301-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326682</link>
            <guid>https://www.tenable.com/plugins/nessus/326682</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326682 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote openSUSE host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote openSUSE 16 host has packages installed that are affected by a vulnerability as referenced in the openSUSE- SU-2026:21301-1 advisory.<br /></span><span><br /></span><span>    This update for dash fixes the following issues<br /></span><span><br /></span><span>    - CVE-2026-31323: Fix CVE-2026-31323 INTMAX_MIN / -1 overflow (bsc#1269494).<br /></span><span>    - executes code even when noexec (-n) is specified (bsc#1178978).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected dash and / or dash-sh packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326682">https://www.tenable.com/plugins/nessus/326682</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[openSUSE 16 Security Update : tiff (openSUSE-SU-2026:21289-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326681</link>
            <guid>https://www.tenable.com/plugins/nessus/326681</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326681 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote openSUSE host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote openSUSE 16 host has packages installed that are affected by multiple vulnerabilities as referenced in the openSUSE-SU-2026:21289-1 advisory.<br /></span><span><br /></span><span>    This update for tiff fixes the following issues<br /></span><span><br /></span><span>    - CVE-2026-12912: heap-based buffer overflow when processing crafted PixarLog-compressed TIFF image     (bsc#1269779).<br /></span><span>    - CVE-2026-36849: denial of service when processing a a crafted TIFF file containing a large     SamplesPerPixel tag value       (bsc#1268434).<br /></span><span><br /></span><span>    Changes for tiff:<br /></span><span><br /></span><span>    - Update to 4.7.2:<br /></span><span><br /></span><span>     Software configuration changes:<br /></span><span><br /></span><span>     * cmake: Fix bundle identifiers to use reverse-DNS format<br /></span><span>     * cmake: Fix and improve Apple framework build support<br /></span><span>     * cmake: Use TurboJPEG CONFIG by default (issue #767)<br /></span><span>     * cmake: changes related to 8-/12-bit modes<br /></span><span>     * cmake: Replace CMath::CMath with direct link to avoid export.<br /></span><span>     * Support for iOS-derived builds<br /></span><span>     * Simplify cmake byte order version check<br /></span><span>     * Add additional warnings, primarily floating precision conversions and integer arithmetic conversions<br /></span><span>     * configure.ac: Require bootstrap with at least Autoconf 2.71.<br /></span><span><br /></span><span>     Bug fixes:<br /></span><span><br /></span><span>     * Handle negative TIFFReadFile results before state updates (issue #854)<br /></span><span>     * tif_dirread.c: fix copy-paste bug in ChopUpSingleUncompressedStrip<br /></span><span>     * tif_read.c: Fixed division by zero in TIFFStartStrip() (issue #777)<br /></span><span>     * tif_dirwrite.c: add integer overflow checks to allocation size calculations<br /></span><span>     * tif_print.c: add integer overflow checks to allocation size calculations<br /></span><span>     * tif_write.c: fix OOB read and underflow in TIFFAppendToStrip copy loop<br /></span><span>     * DumpModeSeek: add bounds check to prevent OOB pointer advance<br /></span><span>     * TIFFGrowStrips: fix use-after-free on partial realloc failure.<br /></span><span>     * Fix NULL dereference in _TIFFReserveLargeEnoughWriteBuffer() by validating the strip bytecount array     before accessing it.<br /></span><span>     * TIFFRGBAImage: avoid int overflows in put functions (issue #830)<br /></span><span>     * tif_getimage: fix inconsistent fromskew handling in put16bitbwtile (issue #792)<br /></span><span>     * tif_getimage: Widen pointer-offset arithmetic in tif_getimage<br /></span><span>     * putcontig8bitYCbCr44tile: fix wrong fromskew computation (issue #798)<br /></span><span>     * putcontig8bitYCbCr42tile: Reject invalid YCbCr subsampling when image dimensions are smaller than the     subsampling block to prevent out-of-bounds writes. (issue #753)<br /></span><span>     * TIFFFillStrip/Tile(): avoid excessive memory allocation (issue #831)<br /></span><span>     * TIFFLinkDirectory() checks for IFD loops (issue #788)<br /></span><span>     * Check result of _TIFFCheckRealloc to prevent memory leaks and segmentation fault when reallocation     fails.<br /></span><span>     * TIFFVTileSize64(): in YCbCr contig non upsampled mode, validate td_samplesperpixel==3 (issue #805)<br /></span><span>     * TIFFReadDirEntryPersampleShort(): be tolerant to tags like SampleFormat not having 1 or SamplesPerPixel     values (https://github.com/OSGeo/gdal/issues/13465)<br /></span><span>     * tif_getimage: reject tile widths that would overflow toskew (issue #808)<br /></span><span>     * Fix integer overflow in _TIFFPartialReadStripArray on 32-bit.<br /></span><span>     * TIFFAppendToStrip(): add some checks to avoid null-pointer-dereferencing (issue #777).<br /></span><span>     * _TIFFGetStrileOffsetOrByteCountValue(): fix potential crash on corrupted files when file opened in 'O'     mode (https://issues.oss-fuzz.com/issues/471328917)<br /></span><span>     * TIFFReadDirectory(): re-set TIFF_LAZYSTRILELOAD if file opened in 'O' mode<br /></span><span>     * _TIFFMergeFields(): avoid NULL ptr dereference (issue #755).<br /></span><span>     * Check td_stripbytecount_p and td_stripoffset_p for NULL pointer before (re-)writing to file. (issue     #749)<br /></span><span>     * JPEGDecodeRaw: initialize output buffer to avoid returning uninitialized memory (issue #892)<br /></span><span>     * JPEG decompressor: initialize output buffer when JPEG image is smaller than strile dimension to avoid     heap memory disclosure (issue #826)<br /></span><span>     * JPEG: fix generation of tiled 12-bit JPEG compressed files with libjpeg-turbo 3.0.3 (issue #773)<br /></span><span>     * JPEGDecode(): fix memory leak in error code path (https://issues.oss-fuzz.com/issues/471945501)<br /></span><span>     * tif_jpeg: reject mismatched JPEG data precision to avoid write overflow<br /></span><span>     * Fix signed left-shift UB in LogLuv RANDITHER encoding (issue #850)<br /></span><span>     * PixarLog: error out on invalid ABGR output buffer sizes.<br /></span><span>     * PixarLog: complete ABGR bounds check for multi-row strip decoding.<br /></span><span>     * PixarLog: fix undoing horizontal differencing when SamplesPerPixel != 3 and 4 (issue #789).<br /></span><span>     * PixarLog codec: fix potential integer overflow/out-of-bounds access (issue #797)<br /></span><span>     * TIFFAdvanceDirectory(): avoid potential read heap-buffer-overflow in mmap code path on 32 bit builds     (https://issues.oss-fuzz.com/issues/506737072)<br /></span><span>     * OJPEG: fix integer overflow in subsampling buffer allocation.<br /></span><span>     * OJPEG: fix nullptr deref when changing compression method from OJPEG to something else (issue #795).<br /></span><span>     * OJPEG fix potential integer overflow/out-of-bounds access (issue #796).<br /></span><span>     * ojpeg: prevent EOF infinite loop (fixes commit 2a3d55b)<br /></span><span>     * fix null pointer deference in issue #782.<br /></span><span>     * fix stack-overflow in issue #784.<br /></span><span><br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected libtiff-devel, libtiff6 and / or tiff packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326681">https://www.tenable.com/plugins/nessus/326681</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[openSUSE 16 Security Update : gh (openSUSE-SU-2026:21310-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326680</link>
            <guid>https://www.tenable.com/plugins/nessus/326680</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326680 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote openSUSE host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote openSUSE 16 host has packages installed that are affected by multiple vulnerabilities as referenced in the openSUSE-SU-2026:21310-1 advisory.<br /></span><span><br /></span><span>    Changes in gh:<br /></span><span><br /></span><span>    - Update to version 2.96.0:<br /></span><span>      * Critical security fix: patched vulnerability in gh codespace jupyter         that could allow command execution when connecting to malicious         Codespaces<br /></span><span>      * Merge commit from fork<br /></span><span>      * Fix concurrent map writes in codespace port forwarding (#13313)<br /></span><span>      * docs: fix broken install command and link/grammar errors (#13690)<br /></span><span>      * Clarify `--clone` boolean flag behaviour in `gh repo fork` help (#13786)<br /></span><span>      * docs: fix duplicated word in primer README (#13677)<br /></span><span>      * fix(skills): honor --dir without agent prompt (#13766)<br /></span><span>      * Support antigravity-cli and antigravity2.0 in gh skill (#13784)<br /></span><span>      * chore(deps): bump golangci/golangci-lint-action from 9.2.1 to 9.3.0<br /></span><span>      * docs(search): reword raw qualifier examples<br /></span><span>      * chore(deps): bump goreleaser/goreleaser-action from 7.2.2 to 7.2.3<br /></span><span>      * docs(search): simplify raw qualifier examples<br /></span><span>      * docs(search): add examples for multiple qualifiers<br /></span><span>      * chore(deps): bump actions/attest from 4.1.0 to 4.1.1<br /></span><span>      * chore(deps): bump actions/setup-go from 6.4.0 to 6.5.0<br /></span><span>      * fix(cmdutil): honor DisableAuthCheck under repo-override parents<br /></span><span>      * feat(release): allow download without authentication<br /></span><span>      * fix(release): don't let a failed draft lookup mask a found release<br /></span><span>      * Fix flaky TestHuhPrompterMultiSelectWithSearchPersistence on slow architectures (#13675)<br /></span><span>      * Detect additional third-party coding agents (#13722)<br /></span><span>      * Add security disclosure guidance to AGENTS.md (#13720)<br /></span><span>      * chore(deps): bump actions/checkout from 6.0.3 to 7.0.0<br /></span><span>      * chore(deps): bump github.com/microsoft/dev-tunnels from 0.1.19 to 0.1.27<br /></span><span>      * ci: pin GitHub Actions to commit SHAs<br /></span><span>      * chore(deps): bump github.com/google/go-containerregistry<br /></span><span>      * Use int64 for GitHub database IDs (#13403)<br /></span><span>      * docs: fix broken anchor link in release-process-deep-dive (#13688)<br /></span><span>      * Cover all printSummary branches in a table test<br /></span><span>      * fix(skills): install universal agent to ~/.agents/skills<br /></span><span>      * fix: show checks summary when all checks were cancelled<br /></span><span>    - The following bugs are no longer present in this release (may have       been fixed in previous releases): bsc#1234566, bsc#1235345,       bsc#1237669, bsc#1239496, bsc#1241837, bsc#1243930, bsc#1251464,       bsc#1251666, bsc#1253929, bsc#1258617, bsc#1260271, bsc#1262339,       bsc#1262943, bsc#1265405, bsc#1265777, bsc#1266173, bsc#1266618,       bsc#1266975, bsc#1267158, bsc#1269427<br /></span><span><br /></span><span>    - Update to version 2.95.0:<br /></span><span>      * feat(skills): list available skills when install runs non-interactively (#13548)<br /></span><span>      * fix(skills): stage updates in a temp dir and swap in-place (#13449)<br /></span><span>      * feat: add `repo read-file` and `repo read-dir` (#13580)<br /></span><span>      * Bump Go in devcontainer<br /></span><span>      * Make filtering by bot authors more discoverable (#13642)<br /></span><span>      * chore(deps): bump golang.org/x/crypto from 0.52.0 to 0.53.0<br /></span><span>      * chore(deps): bump golang.org/x/term from 0.43.0 to 0.44.0<br /></span><span>      * chore(deps): bump charm.land/lipgloss/v2 from 2.0.3 to 2.0.4<br /></span><span>      * chore(deps): bump github.com/sigstore/sigstore-go from 1.1.4 to 1.2.1<br /></span><span>      * chore(deps): bump golang.org/x/text from 0.37.0 to 0.38.0<br /></span><span>      * test(skill): fix test case name<br /></span><span>      * test(skill): merge isolated test into table<br /></span><span>      * Potential fix for pull request finding<br /></span><span>      * docs(discussion): polish help docs<br /></span><span>      * chore(deps): bump github/codeql-action from 4.36.1 to 4.36.2<br /></span><span>      * fix test<br /></span><span>      * support custom CLAUDE_CONFIG_DIR in install<br /></span><span><br /></span><span>    - Update to version 2.94.0:<br /></span><span>      * Add gh discussion and Issues 2.0 reference to the `gh` skill, plus a README note (#13631)<br /></span><span>      * fix(discussion comment): fix bug in requiring body/body-file in add/edit mode<br /></span><span>      * chore(discussion/client): rename client files<br /></span><span>      * test(acceptance): fix discussion comment acceptance tests<br /></span><span>      * fix(discussion/shared): error on out-of-range discussion number in URL<br /></span><span>      * fix(discussion view): print only requested items in non-tty output<br /></span><span>      * docs(discussion list): clarify answered examples refer to Q&A discussions<br /></span><span>      * fix(discussion view): show comments and replies in chronological order<br /></span><span>      * refactor(discussion list): simplify no-results message and use success icon helper<br /></span><span>      * fix(discussion view): use color scheme method for success icon<br /></span><span>      * fix(discussion view): error when --comments is used with a comment argument<br /></span><span>      * test(acceptance): use positional comment argument in discussion view test<br /></span><span>      * refactor(discussion/client): take host instead of repo in GetComment<br /></span><span>      * refactor(discussion view): replace --replies flag with positional comment argument<br /></span><span>      * chore: fix formatting<br /></span><span>      * test(acceptance): cover discussion comment URLs in comment and view tests<br /></span><span>      * feat(discussion): support comment URLs in --replies and comment command<br /></span><span>      * test(discussion comment): add non-tty delete flag validation test case<br /></span><span>      * test(acceptance): add discussion comment acceptance test<br /></span><span>      * refactor(acceptance): use discussion comment command instead of raw API calls<br /></span><span>      * feat(discussion): add discussion comment command<br /></span><span>      * feat(discussion/client): add comment manipulation methods<br /></span><span>      * chore: apply formatting<br /></span><span>      * chore(discussion): remove unused HttpClient field from create and edit<br /></span><span>      * fix(discussion): remove redundant error wrapping on ListCategories<br /></span><span>      * test(discussion list): rename TestNewCmdList2 to TestNewCmdList<br /></span><span>      * Add terminal-mockup canvas extension for marketing screenshots (#13612)<br /></span><span>      * fix(discussion): add missing repo flag override<br /></span><span>      * test(discussion list): consolidate tests into table-driven format<br /></span><span>      * docs(acceptance): add new jq2env and jq-assert functions<br /></span><span>      * test(discussion): add acceptance tests for discussion commands<br /></span><span>      * fix(discussion list): print answered instead of checkmark in non-tty mode<br /></span><span>      * refactor(discussion/client): precheck discussions enabled via getRepositoryMeta<br /></span><span>      * refactor(discussion): add Cursor field and ExportData to DiscussionListResult<br /></span><span>      * feat(extension): alias `uninstall` to `remove`<br /></span><span>      * chore(deps): bump actions/checkout from 6.0.2 to 6.0.3<br /></span><span>      * chore(deps): bump github/codeql-action from 4.36.0 to 4.36.1<br /></span><span>      * chore(deps): bump charm.land/bubbletea/v2 from 2.0.6 to 2.0.7<br /></span><span>      * docs(discussion view): improve long help text for clarity<br /></span><span>      * fix(discussion): handle partial failure on create/update label mutations<br /></span><span>      * Clean up deferred issue update helper (#13584)<br /></span><span>      * Auto-install official extension stubs in CI (#13581)<br /></span><span>      * chore(discussion/client): fix formatting<br /></span><span>      * docs(discussion/client): add godoc to exported consts<br /></span><span>      * refactor(discussion list): make pager call/error consistent with view command<br /></span><span>      * refactor(discussion): extract command-level consts for enums<br /></span><span>      * fix(discussion): various polish and small fixes<br /></span><span>      * Merge pull request #13057 from cli/kw/issues-2.0<br /></span><span>      * Bump Go to 1.26.4<br /></span><span>      * chore(deps): bump github.com/mattn/go-colorable from 0.1.14 to 0.1.15<br /></span><span>      * address review comments<br /></span><span>      * feat(discussion edit): add discussion edit command<br /></span><span>      * feat(discussion create): add discussion create command<br /></span><span>      * feat(discussion view): add discussion view command<br /></span><span>      * feat(discussion list): add discussion list command<br /></span><span>      * feat(discussion/shared): add shared utilities for discussion commands<br /></span><span>      * feat(discussion/client): add discussion client package<br /></span><span>      * Use github-copilot agent ID in skill list tests and help text<br /></span><span>      * Rename hosts field and helpers to agentHosts in skill list<br /></span><span>      * Stat SKILL.md before reading in skill list<br /></span><span>      * Sanitize terminal control characters in skill list output<br /></span><span>      * chore(deps): bump golangci/golangci-lint-action from 9.2.0 to 9.2.1<br /></span><span>      * chore(deps): bump github.com/gdamore/tcell/v2 from 2.13.9 to 2.13.10<br /></span><span>      * address copilot comments, clarify text<br /></span><span>      * address copilot comments<br /></span><span>      * handle skills in skills/ folder when running list command, by marking them as published<br /></span><span>      * address bagtoad's feedback<br /></span><span>      * add --all flag to install all skills in a repo<br /></span><span>      * fix warning message to make it clear<br /></span><span>      * skip prompting for skills without metadata when running gh skill update --all<br /></span><span>      * add logic to preview too<br /></span><span>      * fix discovery support in nested dirs<br /></span><span>      * fix test<br /></span><span>      * fix tests<br /></span><span>      * fix linting<br /></span><span>      * add skill list command<br /></span><span><br /></span><span>    - Update to version 2.93.0:<br /></span><span>      * test(attestation): align integration tests with new external HTTP client<br /></span><span>      * fix: use separate http client for non-github hosts<br /></span><span>      * docs: note immutable releases starting v2.93.0<br /></span><span>      * bump golang.org/x/net<br /></span><span>      * Link to Accessibility category for community discussions instead of ACR (#13481)<br /></span><span>      * Allow agents as application for secrets (#13421)<br /></span><span>      * SHA pin first-party GitHub Actions<br /></span><span>      * chore(deps): bump github/codeql-action from 4 to 4.35.5<br /></span><span>      * Add 3 day dependabot cooldown period<br /></span><span>      * chore(deps): bump github.com/google/go-containerregistry<br /></span><span>      * Run govulncheck daily instead of weekly<br /></span><span>      * Merge pull request #13486 from cli/tommy/update-x-crypto<br /></span><span>      * Potential fix for pull request finding<br /></span><span>      * Potential fix for pull request finding<br /></span><span>      * Stop bumping homebrew on release<br /></span><span>      * chore(deps): bump goreleaser/goreleaser-action from 7.2.1 to 7.2.2 (#13461)<br /></span><span>      * Remove discussion workflow<br /></span><span>      * Remove dependency on persistent token<br /></span><span>      * Remove third-party license debris<br /></span><span>      * chore(deps): bump github.com/theupdateframework/go-tuf/v2<br /></span><span>      * docs: drop --repo gh-cli from dnf install lines<br /></span><span>      * Assert digest prefix in release verify no-attestation tests<br /></span><span>      * chore(deps): bump google.golang.org/grpc from 1.81.0 to 1.81.1<br /></span><span>      * Derive digest algorithm from ref length in release verify commands<br /></span><span>      * docs: fix duplicated of in release-process-deep-dive<br /></span><span>      * chore(deps): bump golang.org/x/crypto from 0.50.0 to 0.51.0<br /></span><span>      * Simplify bump-go.sh toolchain logic<br /></span><span>      * Remove unnecessary null checks in jq output handling<br /></span><span>      * Rewrite script to use go mod edit instead of grep/sed<br /></span><span>      * Address code review comments<br /></span><span>      * Improve version comparison to handle both X.Y.0 and X.Y.Z formats<br /></span><span>      * Update bump-go.sh to handle missing toolchain directive<br /></span><span>      * Initial plan<br /></span><span>      * Update CODEOWNERS for skills directory ownership<br /></span><span>      * chore(deps): bump golang.org/x/text from 0.36.0 to 0.37.0<br /></span><span>      * chore(deps): bump google.golang.org/grpc from 1.80.0 to 1.81.0<br /></span><span>      * chore(deps): bump golang.org/x/term from 0.42.0 to 0.43.0<br /></span><span>      * fix(copilot): update test assertion to match updated error message<br /></span><span>      * fix(copilot): provide full path to copilot binary on exec error<br /></span><span>      * fix(copilot): hint to run copilot directly when exec fails<br /></span><span>      * fix(telemetry): use CREATE_NO_WINDOW to prevent tzutil console flash on Windows<br /></span><span>      * Fix triage-pull-requests skipping PRs that open as draft<br /></span><span>      * chore(deps): bump golang.org/x/sys from 0.43.0 to 0.44.0<br /></span><span>      * Bump Go toolchain to 1.26.3<br /></span><span>      * Fix skills acceptance tests<br /></span><span>      * Add explicit build tags to platform-specific echo test files<br /></span><span>      * Address review feedback on echo mode polling<br /></span><span>      * Poll TTY echo mode instead of sleeping in password tests<br /></span><span>      * Record accessibility state in telemetry<br /></span><span>      * Bump copilot telemetry sampling to 100%<br /></span><span>      * chore(deps): bump github.com/klauspost/compress from 1.18.5 to 1.18.6<br /></span><span>      * Remove numberFieldOnly API shortcut<br /></span><span>      * Grammar fixes<br /></span><span>      * Switch from actions/attest-build-provenance to actions/attest<br /></span><span>      * Enable extended PR screening for external PRs<br /></span><span>      * Fix flaky Password test by increasing echo mode setup timeout<br /></span><span>      * Add missing //go:build integration tag to verify_integration_test.go<br /></span><span>      * chore(deps): bump goreleaser/goreleaser-action from 7.0.0 to 7.2.1<br /></span><span>      * Apply patch from code review feedback.<br /></span><span>      * Print `gh auth refresh` for 401 returns<br /></span><span>      * Update installation commands for GitHub CLI<br /></span><span><br /></span><span>    - Update to version 2.92.0:<br /></span><span>      * Bump Go to 1.26.2<br /></span><span>      * chore(deps): bump github.com/mattn/go-isatty from 0.0.21 to 0.0.22<br /></span><span>      * Update command.go<br /></span><span>      * Add Resource not accessible to ProjectsV2IgnorableError<br /></span><span>      * chore: fix zsh completion on debian<br /></span><span>      * install_linux: correct typo in Homebrew copy<br /></span><span>      * chore(deps): bump charm.land/bubbletea/v2 from 2.0.2 to 2.0.6<br /></span><span>      * chore(deps): bump github.com/gdamore/tcell/v2 from 2.13.8 to 2.13.9<br /></span><span>      * Update acceptance/testdata/workflow/run-view-log-escape-sequences.txtar<br /></span><span>      * Fix log terminal injection<br /></span><span>      * fix(skills): include --allow-hidden-dirs in preview hint from install<br /></span><span>      * Install skills flat by Name, not namespaced InstallName<br /></span><span>      * feat(skills): add --allow-hidden-dirs flag to preview command<br /></span><span>      * feat(skills): support GHEC with data residency hosts<br /></span><span>      * Fix SetSampleRate not updating sample_rate dimension<br /></span><span>      * fix: yaml.github-actions.security.run-shell-injection.run-shell-injection security vulnerability<br /></span><span>      * Enable telemetry without env var<br /></span><span>      * test(telemetry): assert ANSI escape chars for color codes<br /></span><span>      * fix(telemetry): lower bias in sample bucket calc<br /></span><span>      * feat(skills): detect re-published skills and offer upstream install<br /></span><span>      * Log when there is no telemetry<br /></span><span>      * Add telemetry command<br /></span><span>      * Record official extension telemetry<br /></span><span>      * fix(skills): prioritize DisplayName/Name over InstallName match<br /></span><span>      * fix(skills): match skills by install name in preview command<br /></span><span>      * use the right json field names for skills<br /></span><span>      * fix totalCount guidance<br /></span><span>      * docs(skills): note --template collisions and single-string search<br /></span><span>      * backtick skill filename<br /></span><span>      * docs(skills): drop hand-copied naming rules from gh-skill<br /></span><span>      * use hyphen instead<br /></span><span>      * docs(skills): add gh and gh-skill agent skills<br /></span><span>      * feat(skills): support nested skills/ directories in discovery<br /></span><span>      * fix(skills): make --fix and --dry-run mutually exclusive, suppress publish prompt<br /></span><span>      * fix(skills): use canonical 'gh skill' not 'gh skills' alias<br /></span><span>      * fix(skills): stop publish --fix from publishing<br /></span><span>      * Include CI context in telemetry<br /></span><span>      * refactor: decouple hidden-dir filtering from discovery layer<br /></span><span>      * Add support for installation in multiple agent hosts in `gh skills install` (#13209)<br /></span><span>      * Add skills specific telemetry<br /></span><span>      * chore(deps): bump github.com/google/go-containerregistry<br /></span><span>      * Do not send telemetry for aliases<br /></span><span>      * Apply review feedback<br /></span><span>      * Disable telemetry for GHES<br /></span><span>      * remove misleading text<br /></span><span>      * Add sampled command telemetry<br /></span><span>      * Update publish_test.go<br /></span><span>      * refactor: replace real git with run.CommandStubber in publish tests<br /></span><span>      * fix: apply review feedback  nil HttpClient, local dedup type<br /></span><span>      * Remove dispatch after install, install only<br /></span><span>      * Rename official extension files and types to stubs<br /></span><span>      * Replace em-dashes with regular dashes<br /></span><span>      * Address PR review feedback<br /></span><span>      * Add no em dash rule to AGENTS.md<br /></span><span>      * Suggest and install official extensions via stub commands<br /></span><span>      * Add @cli/code-reviewers to all CODEOWNERS rules<br /></span><span>      * Add cli/skill-reviewers as CODEOWNERS for skills packages<br /></span><span>      * style: fix gofmt alignment in publish tests<br /></span><span>      * fix: update acceptance test to match current error message<br /></span><span>      * fix: address post-merge review feedback for skills commands<br /></span><span>      * refactor: remove redundant nil-client fallback in skills publish (#13168)<br /></span><span>      * feat(skills): auto-push unpushed commits before publish<br /></span><span>      * refactor: use shared discovery logic in publish command<br /></span><span>      * fix(skill publish): remove misleading `validate` alias<br /></span><span>      * docs(skill): improve help docs<br /></span><span>      * fix skills names in examples<br /></span><span>      * Disable auth check for `gh extension install`<br /></span><span>      * Suggest and install official extensions for unknown commands<br /></span><span>      * Update acceptance/testdata/skills/skills-search-noresults.txtar<br /></span><span>      * URL-encode parentPath in skills discovery API call<br /></span><span>      * Disable auth check for local-only skill flags<br /></span><span>      * fix: address review feedback on namespace changes<br /></span><span>      * chore: remove unused newTestGitClient function<br /></span><span>      * fix: preserve namespace in skills search deduplication<br /></span><span>      * fix: use target directory remotes in skills publish<br /></span><span>      * fix: enforce size cap on first preview file, surface corrupted skills, fail on path traversal<br /></span><span>      * fix: align relevanceScore comments with implementation and fix typo<br /></span><span>      * chore(deps): bump charm.land/lipgloss/v2 from 2.0.2 to 2.0.3<br /></span><span>      * chore(deps): bump github.com/mattn/go-isatty from 0.0.20 to 0.0.21<br /></span><span>      * address review comments<br /></span><span>      * clean up interface and fix a few bugs<br /></span><span>      * cleanup frontmatter fields<br /></span><span>      * add .agents/skills as default installation path for hosts that support it: cursor, codex, gemini CLI,     github copilot, antigravity.<br /></span><span>      * show loading spinner during installation, even for multi-file skills<br /></span><span>      * use markdown renderer in preview when previewing multi-file skills<br /></span><span>      * Expand test coverage and fix invariants/bugs<br /></span><span>      * add core logic and improve test coverage<br /></span><span>      * improve test coverage/cleanup<br /></span><span>      * register initial skills commands<br /></span><span>      * add skills command scaffold<br /></span><span>      * docs: fix SHA512 checksum for GPG key<br /></span><span>      * chore(deps): bump github.com/hashicorp/go-version from 1.8.0 to 1.9.0<br /></span><span>      * chore(deps): bump google.golang.org/grpc from 1.79.3 to 1.80.0<br /></span><span>      * chore(deps): bump github.com/sigstore/timestamp-authority/v2<br /></span><span>      * docs: add sha/md5 checksums of keyring files<br /></span><span>      * chore(deps): bump github.com/google/go-containerregistry<br /></span><span>      * chore(deps): bump github.com/sigstore/protobuf-specs from 0.5.0 to 0.5.1<br /></span><span>      * chore: delete experimental script/debian-devel<br /></span><span>      * chore(deps): bump charm.land/bubbles/v2 from 2.0.0 to 2.1.0<br /></span><span>      * Document dependency CVE policy in SECURITY.md<br /></span><span>      * docs: add manual PGP key verification commands<br /></span><span>      * chore: re-add toolchain to go1.26.2<br /></span><span>      * docs: polish wording around PGP keys<br /></span><span>      * docs: include PGP key fingerprints<br /></span><span>      * Fix infinite loop in 'gh release list --limit 0'<br /></span><span>      * chore(deps): bump github.com/in-toto/attestation from 1.1.2 to 1.2.0<br /></span><span>      * chore(deps): bump github.com/klauspost/compress from 1.18.4 to 1.18.5<br /></span><span>      * test(internal/authflow): assert user-agent header is not modified/added<br /></span><span>      * replace github.com/golang/snappy with klauspost/compress/snappy<br /></span><span>      * docs: require tests and linter pass before committing<br /></span><span>      * fix(auth): preserve User-Agent in authflow getViewer<br /></span><span>      * fix(api): propagate InvokingAgent in gh api HTTP client<br /></span><span>      * chore(deps): bump github.com/yuin/goldmark from 1.7.16 to 1.8.2<br /></span><span>      * chore(deps): bump advanced-security/filter-sarif from 1.0.1 to 1.1<br /></span><span><br /></span><span>    - Update to version 2.89.0:<br /></span><span>      * Ensure huh prompter cleans up<br /></span><span>      * fix(huh prompter): remove unused fields and imports<br /></span><span>      * go mod tidy<br /></span><span>      * feat(huh prompter): clear search input after submitting query<br /></span><span>      * refactor(huh prompter): custom Field for MultiSelectWithSearch<br /></span><span>      * feat(huh prompter): add placeholder to search input<br /></span><span>      * fix(huh prompter): use synchronized accessors to eliminate data race<br /></span><span>      * fix(accessible prompter): update test expectations for huh v2<br /></span><span>      * refactor(huh prompter): pipe-based test harness with full coverage<br /></span><span>      * test(huh prompter): add table-driven tests for all prompt types<br /></span><span>      * Upgrade to huh/v2 and fix selection persistence in MultiSelectWithSearch<br /></span><span>      * Fix gofmt alignment for prompter-enabled fields in IOStreams<br /></span><span>      * Use LayoutStack for huhPrompter MultiSelectWithSearch<br /></span><span>      * Add experimental huh-only prompter gated by GH_EXPERIMENTAL_PROMPTER<br /></span><span>      * Add nameWithOwner to necessary tests<br /></span><span>      * fix(pr view): fetch nameWithOwner in headRepository GraphQL query<br /></span><span>      * test(acceptance): remove run-download-traversal test<br /></span><span>      * fix(acceptance): set git identity in testscript sandbox<br /></span><span>      * internal/codespaces/portforwarder: define err in go func instead of use err defined in outer scope<br /></span><span>      * chore(deps): bump github.com/zalando/go-keyring from 0.2.6 to 0.2.8<br /></span><span>      * Update docs/triage.md<br /></span><span>      * Update docs/triage.md<br /></span><span>      * Align triage.md with unified triage process<br /></span><span>      * Fix typo: remove extra space in README.md link<br /></span><span>      * fix(survey): use useReviewerSearch consistently in prompt path<br /></span><span>      * fix(pr create): wire up @copilot assignee replacement and [bot] suffix<br /></span><span>      * refactor(survey): simplify ApiActorsSupported in RepoMetadataInput<br /></span><span>      * docs(featuredetection): document GHES removal criteria for ApiActorsSupported<br /></span><span>      * refactor(featuredetection): rename ActorIsAssignable to ApiActorsSupported<br /></span><span>      * refactor(pr shared): consolidate ActorAssignees and ActorReviewers into ApiActorsSupported<br /></span><span>      * refactor(pr shared): extract SpecialAssigneeReplacer for @me and Copilot expansion<br /></span><span>      * chore(deps): bump github.com/google/go-containerregistry<br /></span><span>      * Record agentic invocations in User-Agent header<br /></span><span>      * Address review: table tests, godocs, code style<br /></span><span>      * Add AGENTS.md optimized for AI agent token efficiency<br /></span><span>      * docs: simplify flag text<br /></span><span>      * docs(pr edit): improve command examples with grouped sections<br /></span><span>      * docs: clarify that --add-reviewer can re-request reviews<br /></span><span>      * feat(pr create, issue create): search-based assignee selection in MetadataSurvey<br /></span><span>      * review: address code review feedback<br /></span><span>      * refactor(issue edit): wire up search-based assignee selection<br /></span><span>      * refactor(pr edit): remove actor accumulation hack from assignee search<br /></span><span>      * refactor(pr edit, issue edit): use login-based assignee mutation for flag flows<br /></span><span>      * fix(pr create): use login-based assignee mutation on github.com<br /></span><span>      * chore(deps): bump microsoft/setup-msbuild from 2.0.0 to 3.0.0<br /></span><span>      * chore(deps): bump mislav/bump-homebrew-formula-action from 3.6 to 4.1<br /></span><span>      * Remove auto-labels from issue templates<br /></span><span>      * fix(agent-task): resolve Copilot API URL dynamically (#12956)<br /></span><span>      * chore(deps): bump google.golang.org/grpc from 1.79.2 to 1.79.3<br /></span><span>      * chore(deps): bump azure/login from 2.3.0 to 3.0.0<br /></span><span>      * fix: improve docs around IssueRepoInfo<br /></span><span>      * test(issue transfer): update stub for IssueRepositoryInfo query<br /></span><span>      * fix(issue transfer): use IssueRepoInfo to fetch minimal fields for issues<br /></span><span>      * test(issue create): update stubs for IssueRepositoryInfo query<br /></span><span>      * fix(issue create): use IssueRepoInfo to avoid requiring Contents:Read permission<br /></span><span>      * test(api): add tests for GitHubRepo and IssueRepoInfo<br /></span><span>      * refactor(api): add IssueRepoInfo for minimal issue repo queries<br /></span><span><br /></span><span>    - Update to version 2.88.1:<br /></span><span>      * Revert fix: clarify scope error while creating issues for projects<br /></span><span>      * Revert refactor: deduplicate scope error handling between api/client.go and project queries<br /></span><span>      * Switch deployment signing to OIDC authentication<br /></span><span><br /></span><span>    - Update to version 2.88.0:<br /></span><span>      * fix: add if guard to no-response job to prevent running on workflow_dispatch<br /></span><span>      * Add pitch surfacing workflow (monthly + manual dispatch)<br /></span><span>      * fix: address review feedback on squash merge commit message<br /></span><span>      * fix: gofmt alignment in test struct literals<br /></span><span>      * feat(repo): add --squash-merge-commit-message flag to gh repo edit<br /></span><span>      * chore(deps): bump golang.org/x/sync from 0.19.0 to 0.20.0<br /></span><span>      * refactor: change extractFileName param from []byte to string<br /></span><span>      * Update Go version requirement to 1.26+<br /></span><span>      * Bump golangci-lint from v2.6.0 to v2.11.0 for Go 1.26 support<br /></span><span>      * Bump Go from 1.25.7 to 1.26.1 to fix stdlib vulnerabilities<br /></span><span>      * Address review comments: use actorDisplayName for Copilot author display<br /></span><span>      * Show friendly display names in gh issue view<br /></span><span>      * Add generic actorDisplayName for all actor display names<br /></span><span>      * Show friendly Copilot (AI) name in gh pr view<br /></span><span>      * fix: align example indentation with codebase convention<br /></span><span>      * fix: address review feedback for --exclude flag<br /></span><span>      * fix: share diffHeaderRegexp between changedFilesNames and extractFileName, fix gofmt<br /></span><span>      * feat(pr diff): add --exclude flag to filter files from diff output<br /></span><span>      * Fetch org teams via repository.owner inline fragment<br /></span><span>      * chore(deps): bump google.golang.org/grpc from 1.79.1 to 1.79.2<br /></span><span>      * Exclude PR author from reviewer candidates in SuggestedReviewerActors<br /></span><span>      * Fix duplicate reviewers in gh pr edit by passing logins as defaults<br /></span><span>      * Exclude current user from suggested reviewers in gh pr create<br /></span><span>      * Replace @copilot with Copilot reviewer login in gh pr create<br /></span><span>      * Add TODO requestReviewsByLoginCleanup on GHES ID-based reviewer path<br /></span><span>      * Remove /slug team reviewer shorthand normalization<br /></span><span>      * Add TODO requestReviewsByLoginCleanup on static reviewer MultiSelect<br /></span><span>      * Check state.ActorReviewers in MetadataSurvey reviewer search gate<br /></span><span>      * Label Copilot detection in SuggestedReviewerActorsForRepo as a hack<br /></span><span>      * Add TODO requestReviewsByLoginCleanup in CreatePullRequest<br /></span><span>      * refactor: deduplicate scope error handling between api/client.go and project queries<br /></span><span>      * Fix extension install error message showing raw struct instead of owner/repo (#12836)<br /></span><span>      * chore(deps): bump github.com/docker/cli<br /></span><span>      * Remove StateReason feature detection for issue close<br /></span><span>      * Remove unnecessary StateReasonDuplicate feature detection<br /></span><span>      * docs: add examples to gh issue close help text (#12830)<br /></span><span>      * Fix incorrect integer conversion from int to uint16 in port forwarder (#12831)<br /></span><span>      * Combine issue feature detection into a single GraphQL query<br /></span><span>      * feat(browse): add blame flag<br /></span><span>      * Reword `--no-upstream` help doc<br /></span><span>      * test(issue list): cover additional PR search qualifier variants<br /></span><span>      * fix(issue list): reject pull request-only search qualifiers<br /></span><span>      * chore(deps): bump goreleaser/goreleaser-action from 6.4.0 to 7.0.0<br /></span><span>      * chore(deps): bump github.com/gabriel-vasile/mimetype<br /></span><span>      * chore(deps): bump google.golang.org/grpc from 1.78.0 to 1.79.1<br /></span><span>      * chore(deps): bump actions/attest-build-provenance from 3.2.0 to 4.1.0<br /></span><span>      * chore(deps): bump actions/download-artifact from 7 to 8<br /></span><span>      * chore(deps): bump actions/upload-artifact from 6 to 7<br /></span><span>      * Set COPILOT_GH env var when launching Copilot CLI<br /></span><span>      * Simplify progress indicators in issue develop<br /></span><span>      * Emit null for zero createdAt/updatedAt values<br /></span><span>      * Address Copilot review feedback<br /></span><span>      * Polish --json support for agent-task view<br /></span><span>      * Polish --json support for agent-task list<br /></span><span>      * Fix gofmt alignment in view_test.go<br /></span><span>      * feat(pr): add changeType field to files JSON output<br /></span><span>      * Add --duplicate-of flag and duplicate reason to gh issue close<br /></span><span>      * Add --json support to `gh agent-task view`<br /></span><span>      * Add --json support to `gh agent-task list`<br /></span><span>      * fix(project/item-edit): preserve title/body when editing draft issue with partial flags<br /></span><span>      * Add databaseId to assignees GraphQL fragment<br /></span><span>      * fix(licenses): implement VCS-friendly embedding<br /></span><span>      * chore(gitignore): ignore generated license files<br /></span><span>      * Use pre-compiled regexp for matching Content-Type<br /></span><span>      * chore(script/licenses): fix indentation<br /></span><span>      * fix(script/licenses): generate licenses in separate dirs<br /></span><span>      * Fix invalid ANSI SGR escape code in JSON and diff colorization<br /></span><span>      * Add --no-upstream flag to gh repo clone<br /></span><span>      * Clarify ReviewerCandidate relationship to AssignableActor<br /></span><span>      * Move PR review queries from queries_pr.go to queries_pr_review.go<br /></span><span>      * Use org/slug format in test fixtures and remove /slug normalization<br /></span><span>      * Normalize /slug team shorthand to org/slug and fix docs<br /></span><span>      * Include bot logins in login-based reviewer mutation guard<br /></span><span>      * Skip reviewer metadata fetch when using search-based selection<br /></span><span>      * Update test assertions to expect org/slug team format<br /></span><span>      * Wire bot reviewer logins through CreatePullRequest<br /></span><span>      * Partition bot reviewers separately for RequestReviewsByLogin    ...<br /></span><span><br /></span><span>  Please note that the description has been truncated due to length. Please refer to vendor advisory for the full description.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected gh, gh-bash-completion, gh-fish-completion and / or gh-zsh-completion packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326680">https://www.tenable.com/plugins/nessus/326680</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[openSUSE 16 Security Update : libXfont2 (openSUSE-SU-2026:21284-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326679</link>
            <guid>https://www.tenable.com/plugins/nessus/326679</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326679 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote openSUSE host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote openSUSE 16 host has packages installed that are affected by multiple vulnerabilities as referenced in the openSUSE-SU-2026:21284-1 advisory.<br /></span><span><br /></span><span>    This update for libXfont2 fixes the following issues<br /></span><span><br /></span><span>    - CVE-2026-56001: BitmapScaleBitmaps Integer Overflow Heap Buffer Overflow (bsc#1269018).<br /></span><span>    - CVE-2026-56002: PCF Font Parsing Heap Buffer Overflow (bsc#1269019).<br /></span><span>    - CVE-2026-56003: computeProps Property Buffer Heap Buffer Overflow (bsc#1269020).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected libXfont2-2 and / or libXfont2-devel packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326679">https://www.tenable.com/plugins/nessus/326679</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[openSUSE 16: cosign / cosign-bash-completion / cosign-fish-completion / etc (openSUSE-SU-2026:21281-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326678</link>
            <guid>https://www.tenable.com/plugins/nessus/326678</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326678 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote openSUSE host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote openSUSE 16 host has packages installed that are affected by multiple vulnerabilities as referenced in the openSUSE-SU-2026:21281-1 advisory.<br /></span><span><br /></span><span>    This update for cosign fixes the following issues<br /></span><span><br /></span><span>    - CVE-2026-25680,CVE-2026-25681,CVE-2026-27136,CVE-2026-42502,CVE-2026-42506: multiple issues when parsing     HTML files (bsc#1267044).<br /></span><span>    - CVE-2026-33815: memory-safety vulnerability (bsc#1261811).<br /></span><span>    - CVE-2026-39827,CVE-2026-39828,CVE-2026-39829,CVE-2026-39830,CVE-2026-39831,CVE-2026-39832,CVE-2026-     39833,CVE-2026-39834,CVE-2026-39835,CVE-2026-42508,CVE-2026-46595,CVE-2026-46597,CVE-2026-46598: Fixed     multiple issues in golang.org/x/crypto/ssh. (bsc#1266049).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected cosign, cosign-bash-completion, cosign-fish-completion and / or cosign-zsh-completion packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326678">https://www.tenable.com/plugins/nessus/326678</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[openSUSE 16: ImageMagick / ImageMagick-config-7-SUSE / etc (openSUSE-SU-2026:21291-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326677</link>
            <guid>https://www.tenable.com/plugins/nessus/326677</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326677 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote openSUSE host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote openSUSE 16 host has packages installed that are affected by multiple vulnerabilities as referenced in the openSUSE-SU-2026:21291-1 advisory.<br /></span><span><br /></span><span>    This update for ImageMagick fixes the following issues<br /></span><span><br /></span><span>    - CVE-2026-53466: integer overflow in the XCF decoder can result in an out-of-bounds read when a crafted     image is read       (bsc#1270073).<br /></span><span>    - CVE-2026-53467: allocated memory left unchanged in the MNG decoder can lead to a heap information     disclosure       (bsc#1270074).<br /></span><span>    - CVE-2026-55594: missing depth check in the MVG decoder will result in a stack overflow when a crafted     image is       provided (bsc#1270077).<br /></span><span>    - CVE-2026-55595: providing invalid arguments to the `connected-components` option can lead to an infinite     loop       (bsc#1270079).<br /></span><span>    - CVE-2026-55597: incorrect handling of arguments can cause a heap buffer over-write in the JP2 encoder     (bsc#1270080).<br /></span><span>    - CVE-2026-56361: off-by-one error in morphology validation can lead to an out-of-bounds read     (bsc#1270001).<br /></span><span>    - CVE-2026-56363: integer overflow leading to a division by zero in binomial kernel processing can cause     an application       crash (bsc#1270002).<br /></span><span>    - CVE-2026-56364: memory leak in `LoadOpenCLDeviceBenchmark` function when parsing malformed OpenCL device     profile XML       files       with unclosed device elements (bsc#1270003).<br /></span><span>    - CVE-2026-56374: missing boundary checks can lead to a heap buffer overflow in the FTXT encoder when     parsing       `ftxt:format` (bsc#1271099).<br /></span><span>    - CVE-2026-56379: arbitrary MVG drawing command injection via the SVG decoder when processing specially     crafted SVG       files (bsc#1268878).<br /></span><span>    - GHSA-3j4x-rwrx-xxj9: possible use-after-free write in PDB decoder (bsc#1268640).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326677">https://www.tenable.com/plugins/nessus/326677</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[openSUSE 16 Security Update : gsasl (openSUSE-SU-2026:21303-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326676</link>
            <guid>https://www.tenable.com/plugins/nessus/326676</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326676 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote openSUSE host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote openSUSE 16 host has packages installed that are affected by a vulnerability as referenced in the openSUSE- SU-2026:21303-1 advisory.<br /></span><span><br /></span><span>    This update for gsasl fixes the following issue<br /></span><span><br /></span><span>    - CVE-2026-56968: improper sanitization of a short challenge in `_gsasl_ntlm_client_step` of the NTLM     client can lead to       memory disclosure (bsc#1268885).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected gsasl, gsasl-devel, gsasl-lang and / or libgsasl18 packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326676">https://www.tenable.com/plugins/nessus/326676</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[openSUSE 16 Security Update : python-pytest-html (openSUSE-SU-2026:21312-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326675</link>
            <guid>https://www.tenable.com/plugins/nessus/326675</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326675 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote openSUSE host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote openSUSE 16 host has a package installed that is affected by a vulnerability as referenced in the openSUSE- SU-2026:21312-1 advisory.<br /></span><span><br /></span><span>    Changes in python-pytest-html:<br /></span><span><br /></span><span>    - Revendor updating brace-expansion:<br /></span><span>      - force brace-expansion minimum version to fix CVE-2026-13149 (bsc#1269923)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected python313-pytest-html package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326675">https://www.tenable.com/plugins/nessus/326675</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[openSUSE 16: apache2-mod_php8 / php8 / php8-bcmath / php8-bz2 / php8-calendar / etc (openSUSE-SU-2026:21308-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326674</link>
            <guid>https://www.tenable.com/plugins/nessus/326674</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326674 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote openSUSE host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote openSUSE 16 host has packages installed that are affected by multiple vulnerabilities as referenced in the openSUSE-SU-2026:21308-1 advisory.<br /></span><span><br /></span><span>    This update for php8 fixes the following issues<br /></span><span><br /></span><span>    - Update to versio 8.4.23<br /></span><span>    - CVE-2026-14355: The AES-WRAP-PAD algorithm implementation in OpenSSL extension contains a buffer     allocation flaw (bsc#1270351).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326674">https://www.tenable.com/plugins/nessus/326674</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[openSUSE 16 Security Update : xwayland (openSUSE-SU-2026:21283-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326673</link>
            <guid>https://www.tenable.com/plugins/nessus/326673</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326673 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote openSUSE host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote openSUSE 16 host has packages installed that are affected by multiple vulnerabilities as referenced in the openSUSE-SU-2026:21283-1 advisory.<br /></span><span><br /></span><span>    This update for xwayland fixes the following issues<br /></span><span><br /></span><span>    - CVE-2026-55999: missing bounds check in `glamor_font_get` can lead to a heap buffer overflow when a font     loaded from       a malicious PCF file is processed (bsc#1268893).<br /></span><span>    - CVE-2026-56000: improper memory management in `CommonMakeCurrent` can lead to a heap use-after-free when     an       interaction with a malicious client creating GLX contexts happens (bsc#1268894).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected xwayland and / or xwayland-devel packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326673">https://www.tenable.com/plugins/nessus/326673</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[openSUSE 16 Security Update : python-cryptography (openSUSE-SU-2026:21294-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326672</link>
            <guid>https://www.tenable.com/plugins/nessus/326672</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326672 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote openSUSE host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote openSUSE 16 host has a package installed that is affected by multiple vulnerabilities as referenced in the openSUSE-SU-2026:21294-1 advisory.<br /></span><span><br /></span><span>    This update for python-cryptography fixes the following issues<br /></span><span><br /></span><span>    - CVE-2026-41676: openssl: `Deriver:derive` and `PkeyCtxRef:derive` can overflow short buffers on OpenSSL     1.1.1       (bsc#1270208).<br /></span><span>    - CVE-2026-41677: openssl: out-of-bounds read in PEM password callback when returning an oversized length       (bsc#1270620).<br /></span><span>    - CVE-2026-41678: openssl: out-of-bounds write due to incorrect bounds assertion in `aes::unwrap_key()`     (bsc#1270706).<br /></span><span>    - CVE-2026-41681: openssl: `MdCtxRef::digest_final()` writes past caller buffer with no length check     (bsc#1270772).<br /></span><span>    - CVE-2026-41898: openssl: unchecked callback-returned length in PSK and cookie generate trampolines can     leak adjacent       memory to the network (bsc#1270801).<br /></span><span>    - CVE-2026-42327: openssl: undefined behavior in `X509Ref::ocsp_responders` for certificates with non-     UTF-8 OCSP URLs       (bsc#1270515).<br /></span><span>    - CVE-2026-44662: openssl: heap buffer overflow when encrypting with AES key-wrap-with-padding due to     incorrectly sized       output buffers (bsc#1270936).<br /></span><span>    - CVE-2026-45784: openssl: out-of-bounds write in `CipherCtxRef::cipher_update_inplace` for AES-KW-PAD     ciphers due to       incorrectly sized output buffer (bsc#1270994).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected python313-cryptography package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326672">https://www.tenable.com/plugins/nessus/326672</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[openSUSE 16 Security Update : perl-DBI (openSUSE-SU-2026:21293-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326671</link>
            <guid>https://www.tenable.com/plugins/nessus/326671</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326671 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote openSUSE host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote openSUSE 16 host has a package installed that is affected by multiple vulnerabilities as referenced in the openSUSE-SU-2026:21293-1 advisory.<br /></span><span><br /></span><span>    This update for perl-DBI fixes the following issues<br /></span><span><br /></span><span>    - CVE-2026-14380: unvalidated string eval interpolation of the Profile package name can lead to arbitrary     Perl code       execution (bsc#1271018).<br /></span><span>    - CVE-2026-14740: one-byte out-of-bounds read when deleting an initial SQL comment line can lead to a     process crash       (bsc#1271017).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected perl-DBI package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326671">https://www.tenable.com/plugins/nessus/326671</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[openSUSE 16 Security Update : python-maturin (openSUSE-SU-2026:21285-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326670</link>
            <guid>https://www.tenable.com/plugins/nessus/326670</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326670 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote openSUSE host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote openSUSE 16 host has a package installed that is affected by multiple vulnerabilities as referenced in the openSUSE-SU-2026:21285-1 advisory.<br /></span><span><br /></span><span>    This update for python-maturin fixes the following issues<br /></span><span><br /></span><span>    - CVE-2026-41676: openssl: `Deriver:derive` and `PkeyCtxRef:derive` can overflow short buffers on OpenSSL     1.1.1       (bsc#1270208).<br /></span><span>    - CVE-2026-41677: openssl: out-of-bounds read in PEM password callback when returning an oversized length       (bsc#1270620).<br /></span><span>    - CVE-2026-41678: openssl: out-of-bounds write due to incorrect bounds assertion in `aes::unwrap_key()`     (bsc#1270706).<br /></span><span>    - CVE-2026-41681: openssl: `MdCtxRef::digest_final()` writes past caller buffer with no length check     (bsc#1270772).<br /></span><span>    - CVE-2026-41898: openssl: unchecked callback-returned length in PSK and cookie generate trampolines can     leak adjacent       memory to the network (bsc#1270801).<br /></span><span>    - CVE-2026-42327: openssl: undefined behavior in `X509Ref::ocsp_responders` for certificates with non-     UTF-8 OCSP URLs       (bsc#1270515).<br /></span><span>    - CVE-2026-44662: openssl: heap buffer overflow when encrypting with AES key-wrap-with-padding due to     incorrectly sized       output buffers (bsc#1270936).<br /></span><span>    - CVE-2026-45784: openssl: out-of-bounds write in `CipherCtxRef::cipher_update_inplace` for AES-KW-PAD     ciphers due to       incorrectly sized output buffer (bsc#1270994).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected python313-maturin package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326670">https://www.tenable.com/plugins/nessus/326670</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[openSUSE 16 Security Update : python-Pillow (openSUSE-SU-2026:21296-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326669</link>
            <guid>https://www.tenable.com/plugins/nessus/326669</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326669 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote openSUSE host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote openSUSE 16 host has packages installed that are affected by multiple vulnerabilities as referenced in the openSUSE-SU-2026:21296-1 advisory.<br /></span><span><br /></span><span>    This update for python-Pillow fixes the following issues<br /></span><span><br /></span><span>    - CVE-2026-42311: malicious PSD file processing can lead to arbitrary code execution (bsc#1270404).<br /></span><span>    - CVE-2026-54059: crafted PCF font data can cause excessive memory allocation (bsc#1270409).<br /></span><span>    - CVE-2026-54060: fonts can trigger excessive memory allocation during conversion or saving (bsc#1270410).<br /></span><span>    - CVE-2026-55379: bypass of decompression bomb protection allows excessive memory allocation     (bsc#1270411).<br /></span><span>    - CVE-2026-55380: crafted `.gd` file can trigger excessive C-heap allocation when loaded (bsc#1270412).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected python313-Pillow and / or python313-Pillow-tk packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326669">https://www.tenable.com/plugins/nessus/326669</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[openSUSE 16 Security Update : python-Django (openSUSE-SU-2026:21313-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326668</link>
            <guid>https://www.tenable.com/plugins/nessus/326668</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326668 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote openSUSE host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote openSUSE 16 host has a package installed that is affected by multiple vulnerabilities as referenced in the openSUSE-SU-2026:21313-1 advisory.<br /></span><span><br /></span><span>    Changes in python-Django:<br /></span><span><br /></span><span>    - CVE-2026-48588: Potential exposure of private data via cached       Set-Cookie response (bsc#1271029)<br /></span><span>    - CVE-2026-53877: Heap buffer over-read in GDALRaster (bsc#1271030)<br /></span><span>    - CVE-2026-53878: Header injection possibility since       DomainNameValidator accepted newlines in input (bsc#1271031)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected python313-Django package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326668">https://www.tenable.com/plugins/nessus/326668</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[openSUSE 16 Security Update : nghttp2 (openSUSE-SU-2026:21302-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326667</link>
            <guid>https://www.tenable.com/plugins/nessus/326667</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326667 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote openSUSE host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote openSUSE 16 host has packages installed that are affected by a vulnerability as referenced in the openSUSE- SU-2026:21302-1 advisory.<br /></span><span><br /></span><span>    This update for nghttp2 fixes the following issue<br /></span><span><br /></span><span>    - CVE-2026-58055: HTTP request/response smuggling via upgrade request with `Content-Length` (bsc#1269489).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected libnghttp2-14, libnghttp2-devel and / or nghttp2 packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326667">https://www.tenable.com/plugins/nessus/326667</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RHEL 8 : kernel-rt update (Important) (RHSA-2026:39082)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326666</link>
            <guid>https://www.tenable.com/plugins/nessus/326666</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326666 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Red Hat host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Redhat Enterprise Linux 8 host has packages installed that are affected by multiple vulnerabilities as referenced in the RHSA-2026:39082 advisory.<br /></span><span><br /></span><span>    Please update<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Red Hat Enterprise Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326666">https://www.tenable.com/plugins/nessus/326666</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Debian dla-4682 : redis - security update]]></title>
            <link>https://www.tenable.com/plugins/nessus/326665</link>
            <guid>https://www.tenable.com/plugins/nessus/326665</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326665 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Debian host is missing one or more security-related updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Debian 12 host has packages installed that are affected by multiple vulnerabilities as referenced in the dla-4682 advisory.<br /></span><span><br /></span><span>    - -------------------------------------------------------------------------     Debian LTS Advisory DLA-4682-1                debian-lts@lists.debian.org     https://www.debian.org/lts/security/                           Chris Lamb     July 13, 2026                                 https://wiki.debian.org/LTS<br /></span><span>    - -------------------------------------------------------------------------<br /></span><span><br /></span><span>    Package        : redis     Version        : 5:7.0.15-1~deb12u8     CVE ID         : CVE-2026-23631 CVE-2026-25243<br /></span><span><br /></span><span>    It was discovered that there were two issues in Redis, the in-memory     key/value database:<br /></span><span><br /></span><span>    CVE-2026-23631<br /></span><span><br /></span><span>        An authenticated attacker could have exploited the master-replica         synchronization mechanism to trigger a use-after-free on replicas         where replica-read-only is disabled (or could be disabled),         which may have led to remote code execution. Installations that         prevent users from executing Lua scripts were unaffected.<br /></span><span><br /></span><span>    CVE-2026-25243<br /></span><span><br /></span><span>        The RESTORE command did not properly validate serialized values.<br /></span><span>        An authenticated attacker with permission to execute RESTORE         could have suppled a crafted serialized payload that triggers         invalid memory access and this could have led to remote code         execution.<br /></span><span><br /></span><span>    For Debian 12 bookworm, these problems have been fixed in version     5:7.0.15-1~deb12u8.<br /></span><span><br /></span><span>    We recommend that you upgrade your redis packages.<br /></span><span><br /></span><span>    For the detailed security status of redis please refer to     its security tracker page at:<br /></span><span>    https://security-tracker.debian.org/tracker/redis<br /></span><span><br /></span><span>    Further information about Debian LTS security advisories, how to apply     these updates to your system and frequently asked questions can be     found at: https://wiki.debian.org/LTS<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Debian security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade the redis packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326665">https://www.tenable.com/plugins/nessus/326665</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Oracle Linux 8 : openssl (ELSA-2026-38503)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326664</link>
            <guid>https://www.tenable.com/plugins/nessus/326664</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326664 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Oracle Linux host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote Oracle Linux 8 host has packages installed that are affected by a vulnerability as referenced in the ELSA-2026-38503 advisory.<br /></span><span><br /></span><span>    [1:1.1.1k-17]<br /></span><span>    - Fixes CVE-2026-28390: Denial of Service due to NULL pointer dereference in CMS EnvelopedData processing       Resolves: RHEL-165783<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Oracle Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326664">https://www.tenable.com/plugins/nessus/326664</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Oracle Linux 8 : vim (ELSA-2026-38510)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326663</link>
            <guid>https://www.tenable.com/plugins/nessus/326663</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326663 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Oracle Linux host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Oracle Linux 8 host has packages installed that are affected by multiple vulnerabilities as referenced in the ELSA-2026-38510 advisory.<br /></span><span><br /></span><span>    - RHEL-186656 CVE-2026-47162 vim: netrw code injection via NetrwBookHistSave<br /></span><span>    - RHEL-186648 CVE-2026-52858 vim: possible code execution with python3complete<br /></span><span>    - CVE-2026-47167 vim: Code Injection in cucumber filetype plugin<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Oracle Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326663">https://www.tenable.com/plugins/nessus/326663</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Oracle Linux 8 : kernel (ELSA-2026-33743)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326662</link>
            <guid>https://www.tenable.com/plugins/nessus/326662</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326662 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Oracle Linux host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Oracle Linux 8 host has packages installed that are affected by multiple vulnerabilities as referenced in the ELSA-2026-33743 advisory.<br /></span><span><br /></span><span>    - fs/smb/client: fix out-of-bounds read in cifs_sanitize_prepath (CKI Backport Bot) [RHEL-189506]     {CVE-2026-43112}<br /></span><span>    - Enable workaround for ARM64 ERRATUM 4118414 (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - arm64: errata: Mitigate TLBI errata on Microsoft Azure Cobalt 100 CPU (Mark Salter) [RHEL-183619]     {CVE-2025-10263}<br /></span><span>    - arm64: errata: Mitigate TLBI errata on NVIDIA Olympus CPU (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - arm64: errata: Mitigate TLBI errata on various Arm CPUs (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - arm64: Add part number for Arm Cortex-A78AE (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - arm64: Subscribe Microsoft Azure Cobalt 100 to ARM Neoverse N2 errata (Mark Salter) [RHEL-183619]     {CVE-2025-10263}<br /></span><span>    - arm64: cputype: Add NVIDIA Olympus definitions (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - arm64: cputype: Add C1-Premium definitions (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - arm64: cputype: Add C1-Ultra definitions (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - arm64: cputype: Add C1-Pro definitions (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - arm64: cputype: Add Cortex-A720AE definitions (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - arm64: cputype: Add Neoverse-N3 definitions (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - arm64: cputype: Add Cortex-A725 definitions (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - arm64: cputype: Add Cortex-A720 definitions (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - arm64: Add Cortex-715 CPU part definition (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - arm64: cputype: Add Neoverse-V3AE definitions (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - arm64: cputype: Add MIDR_CORTEX_A76AE (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - arm64: cputype: Add Cortex-X1C definitions (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - arm64: cputype: Add Cortex-X925 definitions (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - arm64: cputype: Add Cortex-X3 definitions (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - arm64: cputype: Add Neoverse-V3 definitions (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - arm64: cputype: Add Cortex-X4 definitions (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - arm64: Add Neoverse-V2 part (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - tcp: fix potential race in tcp_v6_syn_recv_sock() (Antoine Tenart) [RHEL-174237] {CVE-2026-43198}<br /></span><span>    - procfs: fix missing RCU protection when reading real_parent in do_task_stat() (CKI Backport Bot)     [RHEL-181898] {CVE-2026-46259}<br /></span><span>    - drm/gem: Fix inconsistent plane dimension calculation in drm_gem_fb_init_with_funcs() (CKI Backport Bot)     [RHEL-179907] {CVE-2026-46209}<br /></span><span>    - sctp: revalidate list cursor after sctp_sendmsg_to_asoc() in SCTP_SENDALL (CKI Backport Bot)     [RHEL-179857] {CVE-2026-46227}<br /></span><span>    - netfilter: nfnetlink_cthelper: fix OOB read in nfnl_cthelper_dump_table() (CKI Backport Bot)     [RHEL-179736] {CVE-2026-43450}<br /></span><span>    - gfs2: Fix use-after-free in iomap inline data write path (Andrew Price) [RHEL-179596] {CVE-2026-45984}<br /></span><span>    - gfs2: Add metapath_dibh helper (Andrew Price) [RHEL-179596] {CVE-2026-45984}<br /></span><span>    - RDMA/vmw_pvrdma: Fix double free on pvrdma_alloc_ucontext() error path (CKI Backport Bot) [RHEL-179963]     {CVE-2026-46189}<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Oracle Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326662">https://www.tenable.com/plugins/nessus/326662</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Oracle Linux 8 : freerdp (ELSA-2026-38501)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326661</link>
            <guid>https://www.tenable.com/plugins/nessus/326661</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326661 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Oracle Linux host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote Oracle Linux 8 host has packages installed that are affected by a vulnerability as referenced in the ELSA-2026-38501 advisory.<br /></span><span><br /></span><span>    [2:2.11.7-10]<br /></span><span>    - Fix incorrect bounds checks in planar codec (CVE-2026-45700)       Resolves: RHEL-186983<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Oracle Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326661">https://www.tenable.com/plugins/nessus/326661</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Oracle Linux 8 : xorg-x11-server-Xwayland (ELSA-2026-38488)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326660</link>
            <guid>https://www.tenable.com/plugins/nessus/326660</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326660 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Oracle Linux host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote Oracle Linux 8 host has a package installed that is affected by a vulnerability as referenced in the ELSA-2026-38488 advisory.<br /></span><span><br /></span><span>    [21.1.3-20.3]<br /></span><span>    - CVE fix for: CVE-2026-55999       Resolves: https://redhat.atlassian.net/browse/RHEL-191516<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Oracle Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected xorg-x11-server-Xwayland package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326660">https://www.tenable.com/plugins/nessus/326660</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Oracle Linux 9 : nginx (ELSA-2026-36331)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326659</link>
            <guid>https://www.tenable.com/plugins/nessus/326659</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326659 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Oracle Linux host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote Oracle Linux 9 host has packages installed that are affected by a vulnerability as referenced in the ELSA-2026-36331 advisory.<br /></span><span><br /></span><span>    - Resolves: RHEL-188418 - nginx: NGINX: Arbitrary code execution or       Denial of Service via heap-based buffer overflow with crafted HTTP/2       headers (CVE-2026-42055)<br /></span><span>    - Resolves: RHEL-178684 - nginx: code execution and denial of       service (CVE-2026-9256)<br /></span><span>    - Resolves: RHEL-176232 - nginx: NGINX: Arbitrary Code Execution       Vulnerability (CVE-2026-42945)<br /></span><span>    - RHEL-159560 CVE-2026-27654 nginx: NGINX: Denial of Service or file modification via buffer overflow in     ngx_http_dav_module<br /></span><span>    - RHEL-159539 CVE-2026-27784 nginx: NGINX: Denial of Service due to memory corruption via crafted MP4 file<br /></span><span>    - RHEL-159447 CVE-2026-27651 nginx: NGINX: Denial of Service via undisclosed requests when     ngx_mail_auth_http_module is enabled<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Oracle Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326659">https://www.tenable.com/plugins/nessus/326659</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Oracle Linux 8 : kernel (ELSA-2026-36349)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326658</link>
            <guid>https://www.tenable.com/plugins/nessus/326658</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326658 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Oracle Linux host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Oracle Linux 8 host has packages installed that are affected by multiple vulnerabilities as referenced in the ELSA-2026-36349 advisory.<br /></span><span><br /></span><span>    - fs/smb/client: fix out-of-bounds read in cifs_sanitize_prepath (CKI Backport Bot) [RHEL-189506]     {CVE-2026-43112}<br /></span><span>    - Enable workaround for ARM64 ERRATUM 4118414 (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - arm64: errata: Mitigate TLBI errata on Microsoft Azure Cobalt 100 CPU (Mark Salter) [RHEL-183619]     {CVE-2025-10263}<br /></span><span>    - arm64: errata: Mitigate TLBI errata on NVIDIA Olympus CPU (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - arm64: errata: Mitigate TLBI errata on various Arm CPUs (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - arm64: Add part number for Arm Cortex-A78AE (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - arm64: Subscribe Microsoft Azure Cobalt 100 to ARM Neoverse N2 errata (Mark Salter) [RHEL-183619]     {CVE-2025-10263}<br /></span><span>    - arm64: cputype: Add NVIDIA Olympus definitions (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - arm64: cputype: Add C1-Premium definitions (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - arm64: cputype: Add C1-Ultra definitions (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - arm64: cputype: Add C1-Pro definitions (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - arm64: cputype: Add Cortex-A720AE definitions (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - arm64: cputype: Add Neoverse-N3 definitions (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - arm64: cputype: Add Cortex-A725 definitions (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - arm64: cputype: Add Cortex-A720 definitions (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - arm64: Add Cortex-715 CPU part definition (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - arm64: cputype: Add Neoverse-V3AE definitions (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - arm64: cputype: Add MIDR_CORTEX_A76AE (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - arm64: cputype: Add Cortex-X1C definitions (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - arm64: cputype: Add Cortex-X925 definitions (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - arm64: cputype: Add Cortex-X3 definitions (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - arm64: cputype: Add Neoverse-V3 definitions (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - arm64: cputype: Add Cortex-X4 definitions (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - arm64: Add Neoverse-V2 part (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - tcp: fix potential race in tcp_v6_syn_recv_sock() (Antoine Tenart) [RHEL-174237] {CVE-2026-43198}<br /></span><span>    - procfs: fix missing RCU protection when reading real_parent in do_task_stat() (CKI Backport Bot)     [RHEL-181898] {CVE-2026-46259}<br /></span><span>    - drm/gem: Fix inconsistent plane dimension calculation in drm_gem_fb_init_with_funcs() (CKI Backport Bot)     [RHEL-179907] {CVE-2026-46209}<br /></span><span>    - sctp: revalidate list cursor after sctp_sendmsg_to_asoc() in SCTP_SENDALL (CKI Backport Bot)     [RHEL-179857] {CVE-2026-46227}<br /></span><span>    - netfilter: nfnetlink_cthelper: fix OOB read in nfnl_cthelper_dump_table() (CKI Backport Bot)     [RHEL-179736] {CVE-2026-43450}<br /></span><span>    - gfs2: Fix use-after-free in iomap inline data write path (Andrew Price) [RHEL-179596] {CVE-2026-45984}<br /></span><span>    - gfs2: Add metapath_dibh helper (Andrew Price) [RHEL-179596] {CVE-2026-45984}<br /></span><span>    - RDMA/vmw_pvrdma: Fix double free on pvrdma_alloc_ucontext() error path (CKI Backport Bot) [RHEL-179963]     {CVE-2026-46189}<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Oracle Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326658">https://www.tenable.com/plugins/nessus/326658</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RockyLinux 8 : xorg-x11-server (RLSA-2026:38487)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326657</link>
            <guid>https://www.tenable.com/plugins/nessus/326657</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326657 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote RockyLinux host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote RockyLinux 8 host has packages installed that are affected by a vulnerability as referenced in the RLSA-2026:38487 advisory.<br /></span><span><br /></span><span>    * xorg: X11: xserver: X.org: glamor Font Atlas Heap Buffer Overflow (CVE-2026-55999)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the RockyLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326657">https://www.tenable.com/plugins/nessus/326657</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RockyLinux 8 : xorg-x11-server-Xwayland (RLSA-2026:38488)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326656</link>
            <guid>https://www.tenable.com/plugins/nessus/326656</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326656 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote RockyLinux host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote RockyLinux 8 host has packages installed that are affected by a vulnerability as referenced in the RLSA-2026:38488 advisory.<br /></span><span><br /></span><span>    * xorg: X11: xserver: X.org: glamor Font Atlas Heap Buffer Overflow (CVE-2026-55999)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the RockyLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected xorg-x11-server-Xwayland, xorg-x11-server-Xwayland-debuginfo and / or xorg-x11-server-Xwayland- debugsource packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326656">https://www.tenable.com/plugins/nessus/326656</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RockyLinux 8 : openssl (RLSA-2026:38503)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326655</link>
            <guid>https://www.tenable.com/plugins/nessus/326655</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326655 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote RockyLinux host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote RockyLinux 8 host has packages installed that are affected by a vulnerability as referenced in the RLSA-2026:38503 advisory.<br /></span><span><br /></span><span>    * openssl: OpenSSL: Denial of Service due to NULL pointer dereference in CMS EnvelopedData processing     (CVE-2026-28390)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the RockyLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326655">https://www.tenable.com/plugins/nessus/326655</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RockyLinux 8 : freerdp (RLSA-2026:38501)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326654</link>
            <guid>https://www.tenable.com/plugins/nessus/326654</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326654 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote RockyLinux host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote RockyLinux 8 host has packages installed that are affected by a vulnerability as referenced in the RLSA-2026:38501 advisory.<br /></span><span><br /></span><span>    * freerdp: FreeRDP: Out-of-bounds write in planar bitmap decoder allows arbitrary code execution     (CVE-2026-45700)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the RockyLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326654">https://www.tenable.com/plugins/nessus/326654</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RockyLinux 8 : gegl (RLSA-2026:38485)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326653</link>
            <guid>https://www.tenable.com/plugins/nessus/326653</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326653 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote RockyLinux host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote RockyLinux 8 host has packages installed that are affected by a vulnerability as referenced in the RLSA-2026:38485 advisory.<br /></span><span><br /></span><span>    * gimp: GIMP: Arbitrary code execution via heap-based buffer overflow in HDR file parsing (CVE-2026-2050)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the RockyLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected gegl, gegl-debuginfo and / or gegl-debugsource packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326653">https://www.tenable.com/plugins/nessus/326653</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : libtheora (EulerOS-SA-2026-2701)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326652</link>
            <guid>https://www.tenable.com/plugins/nessus/326652</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326652 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the libtheora packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    A flaw was found in libtheora. This heap-based out-of-bounds read vulnerability exists within the AVI     (Audio Video Interleave) parser, specifically in the avi_parse_input_file() function. A local attacker     could exploit this by tricking a user into opening a specially crafted AVI file containing a truncated     header sub-chunk. This could lead to a denial-of-service (application crash) or potentially leak sensitive     information from the heap.(CVE-2026-5673)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS libtheora security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected libtheora packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326652">https://www.tenable.com/plugins/nessus/326652</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : openssl (EulerOS-SA-2026-2665)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326651</link>
            <guid>https://www.tenable.com/plugins/nessus/326651</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326651 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing multiple security updates.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the openssl packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    Issue summary: An uncommon configuration of clients performing DANE TLSA-based     server authentication, when paired with uncommon server DANE TLSA records, may     result in a use-after-free and/or double-free on the client side.<br /></span><span><br /></span><span>    Impact summary: A use after free can have a range of potential consequences     such as the corruption of valid data, crashes or execution of arbitrary code.<br /></span><span><br /></span><span>    However, the issue only affects clients that make use of TLSA records with both     the PKIX-TA(0/PKIX-EE(1) certificate usages and the DANE-TA(2) certificate     usage.<br /></span><span><br /></span><span>    By far the most common deployment of DANE is in SMTP MTAs for which RFC7672     recommends that clients treat as 'unusable' any TLSA records that have the PKIX     certificate usages.  These SMTP (or other similar) clients are not vulnerable     to this issue.  Conversely, any clients that support only the PKIX usages, and     ignore the DANE-TA(2) usage are also not vulnerable.<br /></span><span><br /></span><span>    The client would also need to be communicating with a server that publishes a     TLSA RRset with both types of TLSA records.<br /></span><span><br /></span><span>    No FIPS modules are affected by this issue, the problem code is outside the     FIPS module boundary.(CVE-2026-28387)<br /></span><span><br /></span><span>    Issue summary: When a delta CRL that contains a Delta CRL Indicator extension     is processed a NULL pointer dereference might happen if the required CRL     Number extension is missing.<br /></span><span><br /></span><span>    Impact summary: A NULL pointer dereference can trigger a crash which     leads to a Denial of Service for an application.<br /></span><span><br /></span><span>    When CRL processing and delta CRL processing is enabled during X.509     certificate verification, the delta CRL processing does not check     whether the CRL Number extension is NULL before dereferencing it.<br /></span><span>    When a malformed delta CRL file is being processed, this parameter     can be NULL, causing a NULL pointer dereference.<br /></span><span><br /></span><span>    Exploiting this issue requires the X509_V_FLAG_USE_DELTAS flag to be enabled in     the verification context, the certificate being verified to contain a     freshestCRL extension or the base CRL to have the EXFLAG_FRESHEST flag set, and     an attacker to provide a malformed CRL to an application that processes it.<br /></span><span><br /></span><span>    The vulnerability is limited to Denial of Service and cannot be escalated to     achieve code execution or memory disclosure. For that reason the issue was     assessed as Low severity according to our Security Policy.<br /></span><span><br /></span><span>    The FIPS modules in 3.6, 3.5, 3.4, 3.3 and 3.0 are not affected by this issue,     as the affected code is outside the OpenSSL FIPS module boundary.(CVE-2026-28388)<br /></span><span><br /></span><span>    Issue summary: During processing of a crafted CMS EnvelopedData message     with KeyAgreeRecipientInfo a NULL pointer dereference can happen.<br /></span><span><br /></span><span>    Impact summary: Applications that process attacker-controlled CMS data may     crash before authentication or cryptographic operations occur resulting in     Denial of Service.<br /></span><span><br /></span><span>    When a CMS EnvelopedData message that uses KeyAgreeRecipientInfo is     processed, the optional parameters field of KeyEncryptionAlgorithmIdentifier     is examined without checking for its presence. This results in a NULL     pointer dereference if the field is missing.<br /></span><span><br /></span><span>    Applications and services that call CMS_decrypt() on untrusted input     (e.g., S/MIME processing or CMS-based protocols) are vulnerable.<br /></span><span><br /></span><span>    The FIPS modules in 3.6, 3.5, 3.4, 3.3 and 3.0 are not affected by this     issue, as the affected code is outside the OpenSSL FIPS module boundary.(CVE-2026-28389)<br /></span><span><br /></span><span>    Issue summary: During processing of a crafted CMS EnvelopedData message     with KeyTransportRecipientInfo a NULL pointer dereference can happen.<br /></span><span><br /></span><span>    Impact summary: Applications that process attacker-controlled CMS data may     crash before authentication or cryptographic operations occur resulting in     Denial of Service.<br /></span><span><br /></span><span>    When a CMS EnvelopedData message that uses KeyTransportRecipientInfo with     RSA-OAEP encryption is processed, the optional parameters field of     RSA-OAEP SourceFunc algorithm identifier is examined without checking     for its presence. This results in a NULL pointer dereference if the field     is missing.<br /></span><span><br /></span><span>    Applications and services that call CMS_decrypt() on untrusted input     (e.g., S/MIME processing or CMS-based protocols) are vulnerable.<br /></span><span><br /></span><span>    The FIPS modules in 3.6, 3.5, 3.4, 3.3 and 3.0 are not affected by this     issue, as the affected code is outside the OpenSSL FIPS module boundary.(CVE-2026-28390)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS openssl security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected openssl packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326651">https://www.tenable.com/plugins/nessus/326651</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : xorg-x11-server (EulerOS-SA-2026-2719)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326650</link>
            <guid>https://www.tenable.com/plugins/nessus/326650</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326650 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing multiple security updates.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the xorg-x11-server packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    A flaw was found in the X.Org X server. This vulnerability, an out-of-bounds read, affects the XKB (X     Keyboard Extension) modifier map handling. An attacker with access to the X11 server can exploit this by     sending a malformed request, which causes the server to read beyond its intended memory boundaries. This     can lead to the exposure of sensitive information or cause the server to crash, resulting in a denial of     service.(CVE-2026-34002)<br /></span><span><br /></span><span>    A flaw was found in the X.Org X server. This out-of-bounds read vulnerability in the XKB geometry     processing, specifically within the `CheckSetGeom()` and `XkbAddGeomKeyAlias` functions, allows an     attacker to read uninitialized or out-of-bounds memory. An attacker with a connection to the X11 server,     either locally or remotely, can exploit this without user interaction. This could lead to the disclosure     of memory contents or cause a denial of service by crashing the server.(CVE-2026-34000)<br /></span><span><br /></span><span>    A flaw was found in the X.Org X server. This use-after-free vulnerability occurs in the XSYNC fence     triggering logic, specifically within the miSyncTriggerFence() function. An attacker with access to the     X11 server can exploit this without user interaction, leading to a server crash and potentially enabling     memory corruption. This could result in a denial of service or further compromise of the     system.(CVE-2026-34001)<br /></span><span><br /></span><span>    A flaw was found in the X.Org X server's XKB key types request validation. A local attacker could send a     specially crafted request to the X server, leading to an out-of-bounds memory access vulnerability. This     could result in the disclosure of sensitive information or cause the server to crash, leading to a Denial     of Service (DoS). In certain configurations, higher impact outcomes may be possible.(CVE-2026-34003)<br /></span><span><br /></span><span>    A flaw was found in the X.Org X server. This integer underflow vulnerability, specifically in the XKB     compatibility map handling, allows an attacker with local or remote X11 server access to trigger a buffer     read overrun. This can lead to memory-safety violations and potentially a denial of service (DoS) or other     severe impacts.(CVE-2026-33999)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS xorg-x11-server security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected xorg-x11-server packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326650">https://www.tenable.com/plugins/nessus/326650</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : sqlite (EulerOS-SA-2026-2713)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326649</link>
            <guid>https://www.tenable.com/plugins/nessus/326649</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326649 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the sqlite packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    An information disclosure issue in the zipfileInflate function in the zipfile extension in SQLite v3.51.1     and earlier allows attackers to obtain heap memory via supplying a crafted ZIP file.(CVE-2025-70873)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS sqlite security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected sqlite packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326649">https://www.tenable.com/plugins/nessus/326649</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : lcms2 (EulerOS-SA-2026-2655)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326648</link>
            <guid>https://www.tenable.com/plugins/nessus/326648</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326648 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the lcms2 packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    Little CMS (lcms2) through 2.18 has an integer overflow in CubeSize in cmslut.c because the overflow check     is performed after the multiplication.(CVE-2026-41254)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS lcms2 security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected lcms2 packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326648">https://www.tenable.com/plugins/nessus/326648</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : zlib (EulerOS-SA-2026-2679)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326647</link>
            <guid>https://www.tenable.com/plugins/nessus/326647</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326647 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the zlib packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    zlib before 1.3.2 allows CPU consumption via crc32_combine64 and crc32_combine_gen64 because x2nmodp can     do right shifts within a loop that has no termination condition.(CVE-2026-27171)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS zlib security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected zlib packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326647">https://www.tenable.com/plugins/nessus/326647</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : golang (EulerOS-SA-2026-2691)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326646</link>
            <guid>https://www.tenable.com/plugins/nessus/326646</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326646 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing multiple security updates.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the golang packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    SWIG file names containing 'cgo' and well-crafted payloads could lead to code smuggling and arbitrary code     execution at build time due to trust layer bypass.(CVE-2026-27140)<br /></span><span><br /></span><span>    Actions which insert URLs into the content attribute of HTML meta tags are not escaped. This can allow XSS     if the meta tag also has an http-equiv attribute with the value 'refresh'. A new GODEBUG setting has been     added, htmlmetacontenturlescape, which can be used to disable escaping URLs in actions in the meta content     attribute which follow 'url=' by setting htmlmetacontenturlescape=0.(CVE-2026-27142)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS golang security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected golang packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326646">https://www.tenable.com/plugins/nessus/326646</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : busybox (EulerOS-SA-2026-2682)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326645</link>
            <guid>https://www.tenable.com/plugins/nessus/326645</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326645 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing multiple security updates.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the busybox packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    BusyBox wget thru 1.3.7 accepted raw CR (0x0D)/LF (0x0A) and other C0 control bytes in the HTTP request-     target (path/query), allowing the request line to be split and attacker-controlled headers to be injected.<br /></span><span>    To preserve the HTTP/1.1 request-line shape METHOD SP request-target SP HTTP/1.1, a raw space (0x20) in     the request-target must also be rejected (clients should use %20).(CVE-2025-60876)<br /></span><span><br /></span><span>    BusyBox before commit 42202bf contains a heap buffer overflow vulnerability in the DHCPv6 client (udhcpc6)     DNS_SERVERS option handler in networking/udhcp/d6_dhcpc.c that allows network-adjacent attackers to     trigger memory corruption by sending a crafted DHCPv6 response with a malformed D6_OPT_DNS_SERVERS option.<br /></span><span>    Attackers can exploit incorrect heap buffer allocation calculations in the option_to_env() function to     cause denial of service or achieve arbitrary code execution on embedded systems without heap     hardening.(CVE-2026-29004)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS busybox security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected busybox packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326645">https://www.tenable.com/plugins/nessus/326645</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : python-lxml (EulerOS-SA-2026-2708)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326644</link>
            <guid>https://www.tenable.com/plugins/nessus/326644</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326644 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the python-lxml packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    lxml is a library for processing XML and HTML in the Python language. Prior to 6.1.0, using either of the     two parsers in the default configuration (with resolve_entities=True) allows untrusted XML input to read     local files. Setting the resolve_entities option explicitly to resolve_entities='internal' or     resolve_entities=False disables the local file access. This vulnerability is fixed in     6.1.0.(CVE-2026-41066)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS python-lxml security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected python-lxml packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326644">https://www.tenable.com/plugins/nessus/326644</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : perl (EulerOS-SA-2026-2707)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326643</link>
            <guid>https://www.tenable.com/plugins/nessus/326643</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326643 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the perl packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    Perl versions through 5.43.10 have a heap buffer overflow when compiling regular expressions with a     repeated fixed string on 32-bit builds.<br /></span><span><br /></span><span>    Perl_study_chunk in regcomp_study.c checked the size of the joined substring buffer in characters rather     than bytes. For a quantified fixed substring with a large minimum count, the byte length mincount * l     could overflow SSize_t, producing an undersized SvGROW allocation; the subsequent copy writes past the end     of the buffer.<br /></span><span><br /></span><span>    A caller that compiles an attacker-controlled regular expression on a 32-bit perl build triggers a heap     buffer overflow at compile time.(CVE-2026-8376)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS perl security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected perl packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326643">https://www.tenable.com/plugins/nessus/326643</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : httpd (EulerOS-SA-2026-2693)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326642</link>
            <guid>https://www.tenable.com/plugins/nessus/326642</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326642 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing multiple security updates.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the httpd packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    Allocation of Resources Without Limits or Throttling vulnerability in Apache HTTP Server's   mod_md via     OCSP response data.<br /></span><span><br /></span><span>    This issue affects Apache HTTP Server: from 2.4.30 through 2.4.66.<br /></span><span><br /></span><span>    Users are recommended to upgrade to version 2.4.67, which fixes the issue.(CVE-2026-29168)<br /></span><span><br /></span><span>    An escalation of privilege bug in various modules in Apache HTTP 2.4.66 and earlier allows local .htaccess     authors to read files with the privileges of the httpd user.<br /></span><span><br /></span><span>    Users are recommended to upgrade to version 2.4.67, which fixes this issue.(CVE-2026-24072)<br /></span><span><br /></span><span>    A NULL pointer dereference in mod_dav_lock in Apache HTTP Server 2.4.66 and earlier may allow an attacker     to crash the server with a malicious request.mod_dav_lock is not used internally by mod_dav or mod_dav_fs.<br /></span><span><br /></span><span>    The only known use-case for mod_dav_lock was mod_dav_svn from Apache Subversion earlier than version     1.2.0.<br /></span><span><br /></span><span>    Users are recommended to upgrade to version 2.4.66, which fixes this issue, or remove     mod_dav_lock.(CVE-2026-29169)<br /></span><span><br /></span><span>    Buffer Over-read vulnerability in Apache HTTP Server.<br /></span><span><br /></span><span>    This issue affects Apache HTTP Server: through 2.4.66.<br /></span><span><br /></span><span>    Users are recommended to upgrade to version 2.4.67, which fixes the issue.(CVE-2026-34059)<br /></span><span><br /></span><span>    Heap-based Buffer Overflow vulnerability in mod_proxy_ajp of Apache HTTP Server.<br /></span><span>    If mod_proxy_ajp connects to a malicious AJP server this AJP server can send a malicious AJP message back     to mod_proxy_ajp and cause it to write 4 attacker controlled bytes after the end of a heap based buffer.<br /></span><span><br /></span><span>    This issue affects Apache HTTP Server: through 2.4.66.<br /></span><span><br /></span><span>    Users are recommended to upgrade to version 2.4.67, which fixes the issue.(CVE-2026-28780)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS httpd security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected httpd packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326642">https://www.tenable.com/plugins/nessus/326642</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : cups (EulerOS-SA-2026-2683)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326641</link>
            <guid>https://www.tenable.com/plugins/nessus/326641</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326641 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing multiple security updates.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the cups packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    OpenPrinting CUPS is an open source printing system for Linux and other Unix-like operating systems. In     versions 2.4.16 and prior, in a network-exposed cupsd with a shared target queue, an unauthorized client     can send a Print-Job to that shared PostScript queue without authentication. The server accepts a page-     border value supplied as textWithoutLanguage, preserves an embedded newline through option escaping and     reparse, and then reparses the resulting second-line PPD: text as a trusted scheduler control record. A     follow-up raw print job can therefore make the server execute an attacker-chosen existing binary such as     /usr/bin/vim as lp. At time of publication, there are no publicly available patches.(CVE-2026-34980)<br /></span><span><br /></span><span>    OpenPrinting CUPS is an open source printing system for Linux and other Unix-like operating systems. In     versions 2.4.16 and prior, a local unprivileged user can coerce cupsd into authenticating to an attacker-     controlled localhost IPP service with a reusable Authorization: Local ... token. That token is enough to     drive /admin/ requests on localhost, and the attacker can combine CUPS-Create-Local-Printer with printer-     is-shared=true to persist a file:///... queue even though the normal FileDevice policy rejects such URIs.<br /></span><span>    Printing to that queue gives an arbitrary root file overwrite; the PoC below uses that primitive to drop a     sudoers fragment and demonstrate root command execution. At time of publication, there are no publicly     available patches.(CVE-2026-34990)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS cups security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected cups packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326641">https://www.tenable.com/plugins/nessus/326641</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : gnutls (EulerOS-SA-2026-2690)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326640</link>
            <guid>https://www.tenable.com/plugins/nessus/326640</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326640 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing multiple security updates.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the gnutls packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    A flaw was found in gnutls. A remote attacker could exploit an issue in the Datagram Transport Layer     Security (DTLS) packet reordering logic. The comparator function, responsible for ordering DTLS packets by     sequence numbers, did not correctly handle packets with duplicate sequence numbers. This could lead to     unstable packet ordering or undefined behavior, resulting in a denial of service.(CVE-2026-42009)<br /></span><span><br /></span><span>    This ID has been reserved by a CNA(CVE-2026-42014)<br /></span><span><br /></span><span>    A flaw was found in gnutls. Servers configured with RSA-PSK (Rivest-Shamir-Adleman - Pre-Shared Key)     wrongfully matched usernames containing a NUL character with truncated usernames. A remote attacker could     exploit this by sending a specially crafted username, leading to an authentication bypass. This     vulnerability allows an attacker to gain unauthorized access by circumventing the authentication     process.(CVE-2026-42010)<br /></span><span><br /></span><span>    A heap buffer overflow vulnerability exists in the DTLS handshake fragment reassembly logic of GnuTLS. The     issue arises in merge_handshake_packet() where incoming handshake fragments are matched and merged based     solely on handshake type, without validating that the message_length field remains consistent across all     fragments of the same logical message. An attacker can exploit this by sending crafted DTLS fragments with     conflicting message_length values, causing the implementation to allocate a buffer based on a smaller     initial fragment and subsequently write beyond its bounds using larger, inconsistent fragments. Because     the merge operation does not enforce proper bounds checking against the allocated buffer size, this     results in an out-of-bounds write on the heap. The vulnerability is remotely exploitable without     authentication via the DTLS handshake path and can lead to application crashes or potential memory     corruption.(CVE-2026-33846)<br /></span><span><br /></span><span>    A flaw in GnuTLS DTLS handshake parsing allows malformed fragments with zero length and non-zero offset,     leading to an integer underflow during reassembly and resulting in an out-of-bounds read. This issue is     remotely exploitable and may cause information disclosure or denial of service.(CVE-2026-33845)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS gnutls security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected gnutls packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326640">https://www.tenable.com/plugins/nessus/326640</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : kernel (EulerOS-SA-2026-2642)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326639</link>
            <guid>https://www.tenable.com/plugins/nessus/326639</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326639 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing multiple security updates.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the kernel packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    mrp: introduce active flags to prevent UAF when applicant uninit(CVE-2022-50697)<br /></span><span><br /></span><span>    net: skbuff: propagate shared-frag marker through frag-transfer helpers(CVE-2026-43503)<br /></span><span><br /></span><span>    crypto: authencesn - Do not place hiseq at end of dst for out-of-place decryption(CVE-2026-43033)<br /></span><span><br /></span><span>    PCI: Fix pci_slot_trylock() error handling(CVE-2026-43211)<br /></span><span><br /></span><span>    HID: multitouch: Check to ensure report responses match the request(CVE-2026-43047)<br /></span><span><br /></span><span>    HID: core: Mitigate potential OOB by removing bogus memset()(CVE-2026-43048)<br /></span><span><br /></span><span>    smb: client: fix OOB read in smb2_ioctl_query_info QUERY_INFO path(CVE-2026-31708)<br /></span><span><br /></span><span>    crypto: pcrypt - Fix handling of MAY_BACKLOG requests(CVE-2026-43493)<br /></span><span><br /></span><span>    mm: blk-cgroup: fix use-after-free in cgwb_release_workfn()(CVE-2026-31586)<br /></span><span><br /></span><span>    crypto: algif_aead - Fix minimum RX size check for decryption(CVE-2026-43077)<br /></span><span><br /></span><span>    ptrace: slightly saner #39;get_dumpable()#39; logic(CVE-2026-46333)<br /></span><span><br /></span><span>    dlm: validate length in dlm_search_rsb_tree(CVE-2026-43125)<br /></span><span><br /></span><span>    lib/crypto: chacha: Zeroize permuted_state before it leaves scope(CVE-2026-43336)<br /></span><span><br /></span><span>    openvswitch: defer tunnel netdev_put to RCU release(CVE-2026-31678)<br /></span><span><br /></span><span>    mailbox: Prevent out-of-bounds access in fw_mbox_index_xlate()(CVE-2026-43281)<br /></span><span><br /></span><span>    ext4: validate p_idx bounds in ext4_ext_correct_indexes(CVE-2026-31449)<br /></span><span><br /></span><span>    af_unix: read UNIX_DIAG_VFS data under unix_state_lock(CVE-2026-31673)<br /></span><span><br /></span><span>    ext4: publish jinode after initialization(CVE-2026-31450)<br /></span><span><br /></span><span>    Buffer overflow in drivers/xen/sys-hypervisor.c(CVE-2026-31786)<br /></span><span><br /></span><span>    xen/privcmd: fix double free via VMA splitting(CVE-2026-31787)<br /></span><span><br /></span><span>    crypto: ccp: Don#39;t attempt to copy PDH cert to userspace if PSP command failed(CVE-2026-31698)<br /></span><span><br /></span><span>    crypto: ccp: Don#39;t attempt to copy CSR to userspace if PSP command failed(CVE-2026-31699)<br /></span><span><br /></span><span>    bridge: br_nd_send: linearize skb before parsing ND options(CVE-2026-31682)<br /></span><span><br /></span><span>    netfilter: ip6t_rt: reject oversized addrnr in rt_mt6_check()(CVE-2026-31674)<br /></span><span><br /></span><span>    KVM: x86: Use scratch field in MMIO fragment to hold small write values(CVE-2026-31588)<br /></span><span><br /></span><span>    RDMA/umad: Reject negative data_len in ib_umad_write(CVE-2026-23243)<br /></span><span><br /></span><span>    net: hv_netvsc: reject RSS hash key programming without RX indirection table(CVE-2026-23054)<br /></span><span><br /></span><span>    ip6_tunnel: use skb_vlan_inet_prepare() in __ip6_tnl_rcv()(CVE-2026-23003)<br /></span><span><br /></span><span>    md/raid10: fix memleak of md thread(CVE-2023-54294)<br /></span><span><br /></span><span>    usb: typec: altmodes/displayport: fix pin_assignment_show(CVE-2023-54186)<br /></span><span><br /></span><span>    RDMA/rxe: Fix NULL-ptr-deref in rxe_qp_do_cleanup() when socket create failed(CVE-2022-50885)<br /></span><span><br /></span><span>    iavf: fix off-by-one issues in iavf_config_rss_reg()(CVE-2025-71087)<br /></span><span><br /></span><span>    media: af9005: Fix null-ptr-deref in af9005_i2c_xfer(CVE-2023-54314)<br /></span><span><br /></span><span>    tracing: Fix warning in trace_buffered_event_disable()(CVE-2023-54211)<br /></span><span><br /></span><span>    ubi: Fix possible null-ptr-deref in ubi_free_volume()(CVE-2023-54087)<br /></span><span><br /></span><span>    bpf: Address KCSAN report on bpf_lru_list(CVE-2023-54283)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS kernel security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected kernel packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326639">https://www.tenable.com/plugins/nessus/326639</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : unbound (EulerOS-SA-2026-2676)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326638</link>
            <guid>https://www.tenable.com/plugins/nessus/326638</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326638 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing multiple security updates.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the unbound packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    NLnet Labs Unbound up to and including version 1.25.0 has a denial of service vulnerability in the DNSSEC     validator that can lead to a crash given malicious upstream replies. When Unbound constructs chase-reply     messages for validation, the code uses the wrong counter to calculate write offsets for ADDITIONAL section     rrsets. DNAME duplication could increase the ANSWER section count and authority filtering could decrease     the AUTHORITY section count and create an uninitialized array slot. Combining these two, the validator     later dereferences this uninitialized pointer, causing an immediate process crash. An adversary     controlling a DNSSEC-signed domain can trigger this bug with a single query by configuring a DNAME chain     with unsigned CNAMEs and a response containing unsigned AUTHORITY records alongside signed ADDITIONAL glue     records. Unbound 1.25.1 contains a patch with a fix to use the proper counters to calculate the write     offsets.(CVE-2026-42959)<br /></span><span><br /></span><span>    NLnet Labs Unbound up to and including version 1.25.0 is vulnerable to poisoning via promiscuous records     for the authority section. Promiscuous RRSets that complement DNS replies in the authority section can be     used to trick Unbound to cache such records. If an adversary is able to attach such records in a reply     (i.e., spoofed packet, fragmentation attack) he would be able to poison Unbound's cache. A malicious actor     can exploit the possible poisonous effect by injecting RRSets other than NS that are also accompanied by     address records in a reply, for example MX. This could be achieved by trying to spoof a reply packet or     fragmentation attacks. Unbound would then accept the relative address records in the additional section     and cache them if the authority RRSet has enough trust at this point, i.e., in-zone data for the     delegation point. Unbound 1.25.1 contains a patch with a fix that disregards address records from the     additional section if they are not explicitly relevant only to authority NS records, mitigating the     possible poison effect. This is a complement fix to CVE-2025-11411.(CVE-2026-42960)<br /></span><span><br /></span><span>    NLnet Labs Unbound up to and including version 1.25.0 is vulnerable to a degradation of service attack     related to parsing long lists of incoming EDNS options. An adversary sending queries with too many EDNS     options can hold Unbound threads hostage while they are parsing and creating internal data structures for     the options. Coordinated attacks can result in degradation and/or denial of service. Unbound 1.25.1     contains a patch with a fix to limit acceptable incoming EDNS options (100).(CVE-2026-41292)<br /></span><span><br /></span><span>    NLnet Labs Unbound 1.19.1 up to and including version 1.25.0 has a vulnerability in the DNSSEC validator     that enables denial of service and possible remote code execution as a result of deep copying a data     structure and erroneously overwriting a destination pointer. An adversary can exploit the vulnerability by     controlling a malicious signed zone and querying a vulnerable Unbound. When DS sub-queries need to suspend     validation due to NSEC3 computational budget exhaustion (introduced in Unbound 1.19.1), Unbound deep-     copies response messages to preserve them across memory region teardown. A struct-assignment bug     overwrites the destination's pointer with the source's pointer. After the sub-query region is freed, the     resumed validator dereferences this dangling pointer, triggering a crash or potentially enabling arbitrary     code execution. Unbound 1.25.1 contains a patch with a fix to preserve the correct pointer when deep     copying the data structure.(CVE-2026-33278)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS unbound security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected unbound packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326638">https://www.tenable.com/plugins/nessus/326638</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : xorg-x11-server (EulerOS-SA-2026-2678)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326637</link>
            <guid>https://www.tenable.com/plugins/nessus/326637</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326637 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing multiple security updates.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the xorg-x11-server packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    A flaw was found in the X.Org X server. This vulnerability, an out-of-bounds read, affects the XKB (X     Keyboard Extension) modifier map handling. An attacker with access to the X11 server can exploit this by     sending a malformed request, which causes the server to read beyond its intended memory boundaries. This     can lead to the exposure of sensitive information or cause the server to crash, resulting in a denial of     service.(CVE-2026-34002)<br /></span><span><br /></span><span>    A flaw was found in the X.Org X server. This out-of-bounds read vulnerability in the XKB geometry     processing, specifically within the `CheckSetGeom()` and `XkbAddGeomKeyAlias` functions, allows an     attacker to read uninitialized or out-of-bounds memory. An attacker with a connection to the X11 server,     either locally or remotely, can exploit this without user interaction. This could lead to the disclosure     of memory contents or cause a denial of service by crashing the server.(CVE-2026-34000)<br /></span><span><br /></span><span>    A flaw was found in the X.Org X server. This use-after-free vulnerability occurs in the XSYNC fence     triggering logic, specifically within the miSyncTriggerFence() function. An attacker with access to the     X11 server can exploit this without user interaction, leading to a server crash and potentially enabling     memory corruption. This could result in a denial of service or further compromise of the     system.(CVE-2026-34001)<br /></span><span><br /></span><span>    A flaw was found in the X.Org X server's XKB key types request validation. A local attacker could send a     specially crafted request to the X server, leading to an out-of-bounds memory access vulnerability. This     could result in the disclosure of sensitive information or cause the server to crash, leading to a Denial     of Service (DoS). In certain configurations, higher impact outcomes may be possible.(CVE-2026-34003)<br /></span><span><br /></span><span>    A flaw was found in the X.Org X server. This integer underflow vulnerability, specifically in the XKB     compatibility map handling, allows an attacker with local or remote X11 server access to trigger a buffer     read overrun. This can lead to memory-safety violations and potentially a denial of service (DoS) or other     severe impacts.(CVE-2026-33999)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS xorg-x11-server security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected xorg-x11-server packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326637">https://www.tenable.com/plugins/nessus/326637</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : zlib (EulerOS-SA-2026-2720)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326636</link>
            <guid>https://www.tenable.com/plugins/nessus/326636</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326636 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the zlib packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    zlib before 1.3.2 allows CPU consumption via crc32_combine64 and crc32_combine_gen64 because x2nmodp can     do right shifts within a loop that has no termination condition.(CVE-2026-27171)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS zlib security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected zlib packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326636">https://www.tenable.com/plugins/nessus/326636</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : python-pyasn1 (EulerOS-SA-2026-2709)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326635</link>
            <guid>https://www.tenable.com/plugins/nessus/326635</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326635 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the python-pyasn1 packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    pyasn1 is a generic ASN.1 library for Python. Prior to 0.6.2, a Denial-of-Service issue has been found     that leads to memory exhaustion from malformed RELATIVE-OID with excessive continuation octets. This     vulnerability is fixed in 0.6.2.(CVE-2026-23490)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS python-pyasn1 security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected python-pyasn1 packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326635">https://www.tenable.com/plugins/nessus/326635</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : sqlite (EulerOS-SA-2026-2672)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326634</link>
            <guid>https://www.tenable.com/plugins/nessus/326634</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326634 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the sqlite packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    An information disclosure issue in the zipfileInflate function in the zipfile extension in SQLite v3.51.1     and earlier allows attackers to obtain heap memory via supplying a crafted ZIP file.(CVE-2025-70873)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS sqlite security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected sqlite packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326634">https://www.tenable.com/plugins/nessus/326634</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : glibc (EulerOS-SA-2026-2689)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326633</link>
            <guid>https://www.tenable.com/plugins/nessus/326633</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326633 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing multiple security updates.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the glibc packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    Calling the ungetwc function on a FILE stream with wide characters encoded in a character set that has     overlaps between its single byte and multi-byte character encodings, in the GNU C Library version 2.43 or     earlier, may result in an attempt to read bytes before an allocated buffer, potentially resulting in     unintentional disclosure of neighboring data in the heap, or a program crash.<br /></span><span><br /></span><span>    A bug in the wide character pushback implementation (_IO_wdefault_pbackfail in libio/wgenops.c) causes     ungetwc() to operate on the regular character buffer (fp-_IO_read_ptr) instead of the actual wide-     stream read pointer (fp-_wide_data-_IO_read_ptr). The program crash may happen in cases where fp-<br /></span><span>    _IO_read_ptr is not initialized and hence points to NULL. The buffer under-read requires a special     situation where the input character encoding is such that there are overlaps between single byte     representations and multibyte representations in that encoding, resulting in spurious matches. The     spurious match case is not possible in the standard Unicode character sets.(CVE-2026-5928)<br /></span><span><br /></span><span>    Calling the scanf family of functions with a %mc (malloc'd character match) in the GNU C Library version     2.7 to version 2.43 with a format width specifier with an explicit width greater than 1024 could result in     a one byte heap buffer overflow.(CVE-2026-5450)<br /></span><span><br /></span><span>    The iconv() function in the GNU C Library versions 2.43 and earlier may crash due to an assertion failure     when converting inputs from the IBM1390 or IBM1399 character sets, which may be used to remotely crash an     application.<br /></span><span><br /></span><span><br /></span><span><br /></span><span>    This vulnerability can be trivially mitigated by removing the IBM1390 and IBM1399 character sets from     systems that do not need them.(CVE-2026-4046)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS glibc security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected glibc packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326633">https://www.tenable.com/plugins/nessus/326633</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : dnsmasq (EulerOS-SA-2026-2645)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326632</link>
            <guid>https://www.tenable.com/plugins/nessus/326632</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326632 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the dnsmasq packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    A heap-based out-of-bounds write vulnerability in the DHCPv6 implementation of dnsmasq allows local     attackers to execute arbitrary code with root privileges via a crafted DHCPv6 packet.(CVE-2026-4892)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS dnsmasq security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected dnsmasq packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326632">https://www.tenable.com/plugins/nessus/326632</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : curl (EulerOS-SA-2026-2684)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326631</link>
            <guid>https://www.tenable.com/plugins/nessus/326631</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326631 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing multiple security updates.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the curl packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    libcurl might in some circumstances reuse the wrong connection for SMB(S)     transfers.<br /></span><span><br /></span><span>    libcurl features a pool of recent connections so that subsequent requests can     reuse an existing connection to avoid overhead.<br /></span><span><br /></span><span>    When reusing a connection a range of criteria must be met. Due to a logical     error in the code, a network transfer operation that was requested by an     application could wrongfully reuse an existing SMB connection to the same     server that was using a different 'share' than the new subsequent transfer     should.<br /></span><span><br /></span><span>    This could in unlucky situations lead to the download of the wrong file or the     upload of a file to the wrong place. When this happens, the same credentials     are used and the server name is the same.(CVE-2026-5773)<br /></span><span><br /></span><span>    Using libcurl, when a custom `Host:` header is first set for an HTTP request     and a second request is subsequently done using the same *easy handle* but     without the custom `Host:` header set, the second request would use stale     information and pass on cookies meant for the first host in the second     request. Leak them.(CVE-2026-6276)<br /></span><span><br /></span><span>    curl would wrongly reuse an existing HTTP proxy connection doing CONNECT to a     server, even if the new request uses different credentials for the HTTP proxy.<br /></span><span>    The proper behavior is to create or use a separate connection.(CVE-2026-3784)<br /></span><span><br /></span><span>    libcurl can in some circumstances reuse the wrong connection when asked to do     an Negotiate-authenticated HTTP or HTTPS request.<br /></span><span><br /></span><span>    libcurl features a pool of recent connections so that subsequent requests can     reuse an existing connection to avoid overhead.<br /></span><span><br /></span><span>    When reusing a connection a range of criterion must first be met. Due to a     logical error in the code, a request that was issued by an application could     wrongfully reuse an existing connection to the same server that was     authenticated using different credentials. One underlying reason being that     Negotiate sometimes authenticates *connections* and not *requests*, contrary     to how HTTP is designed to work.<br /></span><span><br /></span><span>    An application that allows Negotiate authentication to a server (that responds     wanting Negotiate) with `user1:password1` and then does another operation to     the same server also using Negotiate but with `user2:password2` (while the     previous connection is still alive) - the second request wrongly reused the     same connection and since it then sees that the Negotiate negotiation is     already made, it just sends the request over that connection thinking it uses     the user2 credentials when it is in fact still using the connection     authenticated for user1...<br /></span><span><br /></span><span>    The set of authentication methods to use is set with  `CURLOPT_HTTPAUTH`.<br /></span><span><br /></span><span>    Applications can disable libcurl's reuse of connections and thus mitigate this     problem, by using one of the following libcurl options to alter how     connections are or are not reused: `CURLOPT_FRESH_CONNECT`,     `CURLOPT_MAXCONNECTS` and `CURLMOPT_MAX_HOST_CONNECTIONS` (if using the     curl_multi API).(CVE-2026-1965)<br /></span><span><br /></span><span>    When an OAuth2 bearer token is used for an HTTP(S) transfer, and that transfer     performs a redirect to a second URL, curl could leak that token to the second     hostname under some circumstances.<br /></span><span><br /></span><span>    If the hostname that the first request is redirected to has information in the     used .netrc file, with either of the `machine` or `default` keywords, curl     would pass on the bearer token set for the first host also to the second one.(CVE-2026-3783)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS curl security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected curl packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326631">https://www.tenable.com/plugins/nessus/326631</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : vim (EulerOS-SA-2026-2677)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326630</link>
            <guid>https://www.tenable.com/plugins/nessus/326630</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326630 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing multiple security updates.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the vim packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    Vim is an open source, command line text editor. Prior to 9.2.0479, a command injection vulnerability     exists in tar#Vimuntar() in     runtime/autoload/tar.vim when decompressing .tgz archives on Unix-like systems. The function builds     :!gunzip and :!gzip -d commands using shellescape(tartail) without the {special} flag, allowing a crafted     archive filename to trigger Vim cmdline-special expansion and execute shell commands in the user's     context. This vulnerability is fixed in 9.2.0479.(CVE-2026-46483)<br /></span><span><br /></span><span>    Vim is an open source, command line text editor. Prior to 9.2.0280, a path traversal bypass in Vim's     zip.vim plugin allows overwriting of arbitrary files when opening specially crafted zip archives,     circumventing the previous fix for CVE-2025-53906. This vulnerability is fixed in     9.2.0280.(CVE-2026-35177)<br /></span><span><br /></span><span>    Vim is an open source, command line text editor. Prior to version 9.2.0276, a modeline sandbox bypass in     Vim allows arbitrary OS command execution when a user opens a crafted file. The `complete`,     `guitabtooltip` and `printheader` options are missing the `P_MLE` flag, allowing a modeline to be     executed. Additionally, the `mapset()` function lacks a `check_secure()` call, allowing it to be abused     from sandboxed expressions. Commit 9.2.0276 fixes the issue.(CVE-2026-34982)<br /></span><span><br /></span><span>    Vim is an open source, command line text editor. Prior to 9.2.0316, a command injection vulnerability in     Vim's netbeans interface allows a malicious netbeans server to execute arbitrary Ex commands when Vim     connects to it, via unsanitized strings in the defineAnnoType and specialKeys protocol messages. This     vulnerability is fixed in 9.2.0316.(CVE-2026-39881)<br /></span><span><br /></span><span>    Vim is an open source, command line text editor. Prior to version 9.2.0202, a command injection     vulnerability exists in Vim's glob() function on Unix-like systems. By including a newline character (\n)     in a pattern passed to glob(), an attacker may be able to execute arbitrary shell commands. This     vulnerability depends on the user's 'shell' setting. This issue has been patched in version     9.2.0202.(CVE-2026-33412)<br /></span><span><br /></span><span>    Vim is an open source, command line text editor. Prior to version 9.2.0074, a heap-based buffer overflow     out-of-bounds read exists in Vim's Emacs-style tags file parsing logic. When processing a malformed tags     file, Vim can be tricked into reading up to 7 bytes beyond the allocated memory boundary. Version 9.2.0074     fixes the issue.(CVE-2026-28418)<br /></span><span><br /></span><span>    Vim is an open source, command line text editor. Prior to version 9.2.0073, an OS command injection     vulnerability exists in the `netrw` standard plugin bundled with Vim. By inducing a user to open a crafted     URL (e.g., using the `scp://` protocol handler), an attacker can execute arbitrary shell commands with the     privileges of the Vim process. Version 9.2.0073 fixes the issue.(CVE-2026-28417)<br /></span><span><br /></span><span>    Vim is an open source, command line text editor. Versions prior to 9.2.0077 have a heap-buffer-overflow     and a segmentation fault (SEGV) exist in Vim's swap file recovery logic. Both are caused by unvalidated     fields read from crafted pointer blocks within a swap file. Version 9.2.0077 fixes the     issue.(CVE-2026-28421)<br /></span><span><br /></span><span>    Vim is an open source, command line text editor. Prior to version 9.2.0078, a stack-buffer-overflow occurs     in `build_stl_str_hl()` when rendering a statusline with a multi-byte fill character on a very wide     terminal. Version 9.2.0078 patches the issue.(CVE-2026-28422)<br /></span><span><br /></span><span>    Vim is an open source, command line text editor. Prior to version 9.2.0076, a heap-based buffer overflow     WRITE and an out-of-bounds READ exist in Vim's terminal emulator when processing maximum combining     characters from Unicode supplementary planes. Version 9.2.0076 fixes the issue.(CVE-2026-28420)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS vim security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected vim packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326630">https://www.tenable.com/plugins/nessus/326630</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : python-pyasn1 (EulerOS-SA-2026-2668)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326629</link>
            <guid>https://www.tenable.com/plugins/nessus/326629</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326629 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the python-pyasn1 packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    pyasn1 is a generic ASN.1 library for Python. Prior to 0.6.2, a Denial-of-Service issue has been found     that leads to memory exhaustion from malformed RELATIVE-OID with excessive continuation octets. This     vulnerability is fixed in 0.6.2.(CVE-2026-23490)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS python-pyasn1 security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected python-pyasn1 packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326629">https://www.tenable.com/plugins/nessus/326629</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : docker-engine (EulerOS-SA-2026-2686)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326628</link>
            <guid>https://www.tenable.com/plugins/nessus/326628</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326628 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the docker-engine package installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    Moby is an open source container framework. Prior to version 29.3.1, a security vulnerability has been     detected that allows attackers to bypass authorization plugins (AuthZ). This issue has been patched in     version 29.3.1.(CVE-2026-34040)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS docker-engine security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected docker-engine packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326628">https://www.tenable.com/plugins/nessus/326628</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : mesa (EulerOS-SA-2026-2703)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326627</link>
            <guid>https://www.tenable.com/plugins/nessus/326627</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326627 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the mesa packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    In Mesa before 25.3.6 and 26 before 26.0.1, out-of-bounds memory access can occur in WebGPU because the     amount of to-be-allocated data depends on an untrusted party, and is then used for alloca.(CVE-2026-40393)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS mesa security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected mesa packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326627">https://www.tenable.com/plugins/nessus/326627</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : bind (EulerOS-SA-2026-2681)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326626</link>
            <guid>https://www.tenable.com/plugins/nessus/326626</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326626 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the bind packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    If a BIND resolver is performing DNSSEC validation and encounters a maliciously crafted zone, the resolver     may consume excessive CPU. Authoritative-only servers are generally unaffected, although there are     circumstances where authoritative servers may make recursive queries (see: https://kb.isc.org/docs/why-     does-my-authoritative-server-make-recursive-queries).<br /></span><span>    This issue affects BIND 9 versions 9.11.0 through 9.16.50, 9.18.0 through 9.18.46, 9.20.0 through 9.20.20,     9.21.0 through 9.21.19, 9.11.3-S1 through 9.16.50-S1, 9.18.11-S1 through 9.18.46-S1, and 9.20.9-S1 through     9.20.20-S1.(CVE-2026-1519)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS bind security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected bind packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326626">https://www.tenable.com/plugins/nessus/326626</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : busybox (EulerOS-SA-2026-2641)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326625</link>
            <guid>https://www.tenable.com/plugins/nessus/326625</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326625 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing multiple security updates.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the busybox package installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    BusyBox wget thru 1.3.7 accepted raw CR (0x0D)/LF (0x0A) and other C0 control bytes in the HTTP request-     target (path/query), allowing the request line to be split and attacker-controlled headers to be injected.<br /></span><span>    To preserve the HTTP/1.1 request-line shape METHOD SP request-target SP HTTP/1.1, a raw space (0x20) in     the request-target must also be rejected (clients should use %20).(CVE-2025-60876)<br /></span><span><br /></span><span>    BusyBox before commit 42202bf contains a heap buffer overflow vulnerability in the DHCPv6 client (udhcpc6)     DNS_SERVERS option handler in networking/udhcp/d6_dhcpc.c that allows network-adjacent attackers to     trigger memory corruption by sending a crafted DHCPv6 response with a malformed D6_OPT_DNS_SERVERS option.<br /></span><span>    Attackers can exploit incorrect heap buffer allocation calculations in the option_to_env() function to     cause denial of service or achieve arbitrary code execution on embedded systems without heap     hardening.(CVE-2026-29004)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS busybox security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected busybox packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326625">https://www.tenable.com/plugins/nessus/326625</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : systemd (EulerOS-SA-2026-2714)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326624</link>
            <guid>https://www.tenable.com/plugins/nessus/326624</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326624 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the systemd packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    A flaw was found in systemd. The systemd-machined service contains an Improper Access Control     vulnerability due to insufficient validation of the class parameter in the RegisterMachine D-Bus (Desktop     Bus) method. A local unprivileged user can exploit this by attempting to register a machine with a     specific class value, which may leave behind a usable, attacker-controlled machine object. This allows the     attacker to invoke methods on the privileged object, leading to the execution of arbitrary commands with     root privileges on the host system.(CVE-2026-4105)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS systemd security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected systemd packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326624">https://www.tenable.com/plugins/nessus/326624</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : alsa-lib (EulerOS-SA-2026-2639)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326623</link>
            <guid>https://www.tenable.com/plugins/nessus/326623</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326623 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the alsa-lib packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    alsa-lib versions 1.2.2 up to and including 1.2.15.2, prior to commit 5f7fe33, contain a heap-based buffer     overflow in the topology mixer control decoder. The tplg_decode_control_mixer1() function reads the     num_channels field from untrusted .tplg data and uses it as a loop bound without validating it against the     fixed-size channel array (SND_TPLG_MAX_CHAN). A crafted topology file with an excessive num_channels value     can cause out-of-bounds heap writes, leading to a crash.(CVE-2026-25068)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS alsa-lib security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected alsa-lib packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326623">https://www.tenable.com/plugins/nessus/326623</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : ncurses (EulerOS-SA-2026-2663)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326622</link>
            <guid>https://www.tenable.com/plugins/nessus/326622</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326622 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the ncurses packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    The infocmp command-line tool in ncurses before 6.5-20251213 has a stack-based buffer overflow in     analyze_string in progs/infocmp.c.(CVE-2025-69720)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS ncurses security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected ncurses packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326622">https://www.tenable.com/plugins/nessus/326622</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : dnsmasq (EulerOS-SA-2026-2685)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326621</link>
            <guid>https://www.tenable.com/plugins/nessus/326621</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326621 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the dnsmasq packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    A heap-based out-of-bounds write vulnerability in the DHCPv6 implementation of dnsmasq allows local     attackers to execute arbitrary code with root privileges via a crafted DHCPv6 packet.(CVE-2026-4892)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS dnsmasq security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected dnsmasq packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326621">https://www.tenable.com/plugins/nessus/326621</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : mesa (EulerOS-SA-2026-2662)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326620</link>
            <guid>https://www.tenable.com/plugins/nessus/326620</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326620 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the mesa packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    In Mesa before 25.3.6 and 26 before 26.0.1, out-of-bounds memory access can occur in WebGPU because the     amount of to-be-allocated data depends on an untrusted party, and is then used for alloca.(CVE-2026-40393)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS mesa security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected mesa packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326620">https://www.tenable.com/plugins/nessus/326620</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : shim (EulerOS-SA-2026-2671)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326619</link>
            <guid>https://www.tenable.com/plugins/nessus/326619</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326619 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the shim package installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    Issue summary: When a delta CRL that contains a Delta CRL Indicator extension     is processed a NULL pointer dereference might happen if the required CRL     Number extension is missing.<br /></span><span><br /></span><span>    Impact summary: A NULL pointer dereference can trigger a crash which     leads to a Denial of Service for an application.<br /></span><span><br /></span><span>    When CRL processing and delta CRL processing is enabled during X.509     certificate verification, the delta CRL processing does not check     whether the CRL Number extension is NULL before dereferencing it.<br /></span><span>    When a malformed delta CRL file is being processed, this parameter     can be NULL, causing a NULL pointer dereference.<br /></span><span><br /></span><span>    Exploiting this issue requires the X509_V_FLAG_USE_DELTAS flag to be enabled in     the verification context, the certificate being verified to contain a     freshestCRL extension or the base CRL to have the EXFLAG_FRESHEST flag set, and     an attacker to provide a malformed CRL to an application that processes it.<br /></span><span><br /></span><span>    The vulnerability is limited to Denial of Service and cannot be escalated to     achieve code execution or memory disclosure. For that reason the issue was     assessed as Low severity according to our Security Policy.<br /></span><span><br /></span><span>    The FIPS modules in 3.6, 3.5, 3.4, 3.3 and 3.0 are not affected by this issue,     as the affected code is outside the OpenSSL FIPS module boundary.(CVE-2026-28388)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS shim security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected shim packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326619">https://www.tenable.com/plugins/nessus/326619</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : perl (EulerOS-SA-2026-2666)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326618</link>
            <guid>https://www.tenable.com/plugins/nessus/326618</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326618 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the perl packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    Perl versions through 5.43.10 have a heap buffer overflow when compiling regular expressions with a     repeated fixed string on 32-bit builds.<br /></span><span><br /></span><span>    Perl_study_chunk in regcomp_study.c checked the size of the joined substring buffer in characters rather     than bytes. For a quantified fixed substring with a large minimum count, the byte length mincount * l     could overflow SSize_t, producing an undersized SvGROW allocation; the subsequent copy writes past the end     of the buffer.<br /></span><span><br /></span><span>    A caller that compiles an attacker-controlled regular expression on a 32-bit perl build triggers a heap     buffer overflow at compile time.(CVE-2026-8376)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS perl security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected perl packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326618">https://www.tenable.com/plugins/nessus/326618</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : libtiff (EulerOS-SA-2026-2661)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326617</link>
            <guid>https://www.tenable.com/plugins/nessus/326617</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326617 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the libtiff packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    A flaw was found in the libtiff library. A remote attacker could exploit a signed integer overflow     vulnerability in the putcontig8bitYCbCr44tile function by providing a specially crafted TIFF file. This     flaw can lead to an out-of-bounds heap write due to incorrect memory pointer calculations, potentially     causing a denial of service (application crash) or arbitrary code execution.(CVE-2026-4775)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS libtiff security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected libtiff packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326617">https://www.tenable.com/plugins/nessus/326617</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : libssh2 (EulerOS-SA-2026-2700)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326616</link>
            <guid>https://www.tenable.com/plugins/nessus/326616</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326616 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the libssh2 packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    A security vulnerability has been detected in libssh2 up to 1.11.1. The impacted element is the function     userauth_password of the file src/userauth.c. Such manipulation of the argument username_len/password_len     leads to integer overflow. The attack may be launched remotely. The name of the patch is     256d04b60d80bf1190e96b0ad1e91b2174d744b1. A patch should be applied to remediate this     issue.(CVE-2026-7598)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS libssh2 security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected libssh2 packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326616">https://www.tenable.com/plugins/nessus/326616</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : cups (EulerOS-SA-2026-2643)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326615</link>
            <guid>https://www.tenable.com/plugins/nessus/326615</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326615 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing multiple security updates.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the cups packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    OpenPrinting CUPS is an open source printing system for Linux and other Unix-like operating systems. In     versions 2.4.16 and prior, in a network-exposed cupsd with a shared target queue, an unauthorized client     can send a Print-Job to that shared PostScript queue without authentication. The server accepts a page-     border value supplied as textWithoutLanguage, preserves an embedded newline through option escaping and     reparse, and then reparses the resulting second-line PPD: text as a trusted scheduler control record. A     follow-up raw print job can therefore make the server execute an attacker-chosen existing binary such as     /usr/bin/vim as lp. At time of publication, there are no publicly available patches.(CVE-2026-34980)<br /></span><span><br /></span><span>    OpenPrinting CUPS is an open source printing system for Linux and other Unix-like operating systems. In     versions 2.4.16 and prior, a local unprivileged user can coerce cupsd into authenticating to an attacker-     controlled localhost IPP service with a reusable Authorization: Local ... token. That token is enough to     drive /admin/ requests on localhost, and the attacker can combine CUPS-Create-Local-Printer with printer-     is-shared=true to persist a file:///... queue even though the normal FileDevice policy rejects such URIs.<br /></span><span>    Printing to that queue gives an arbitrary root file overwrite; the PoC below uses that primitive to drop a     sudoers fragment and demonstrate root command execution. At time of publication, there are no publicly     available patches.(CVE-2026-34990)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS cups security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected cups packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326615">https://www.tenable.com/plugins/nessus/326615</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : shim (EulerOS-SA-2026-2712)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326614</link>
            <guid>https://www.tenable.com/plugins/nessus/326614</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326614 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the shim packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    Issue summary: When a delta CRL that contains a Delta CRL Indicator extension     is processed a NULL pointer dereference might happen if the required CRL     Number extension is missing.<br /></span><span><br /></span><span>    Impact summary: A NULL pointer dereference can trigger a crash which     leads to a Denial of Service for an application.<br /></span><span><br /></span><span>    When CRL processing and delta CRL processing is enabled during X.509     certificate verification, the delta CRL processing does not check     whether the CRL Number extension is NULL before dereferencing it.<br /></span><span>    When a malformed delta CRL file is being processed, this parameter     can be NULL, causing a NULL pointer dereference.<br /></span><span><br /></span><span>    Exploiting this issue requires the X509_V_FLAG_USE_DELTAS flag to be enabled in     the verification context, the certificate being verified to contain a     freshestCRL extension or the base CRL to have the EXFLAG_FRESHEST flag set, and     an attacker to provide a malformed CRL to an application that processes it.<br /></span><span><br /></span><span>    The vulnerability is limited to Denial of Service and cannot be escalated to     achieve code execution or memory disclosure. For that reason the issue was     assessed as Low severity according to our Security Policy.<br /></span><span><br /></span><span>    The FIPS modules in 3.6, 3.5, 3.4, 3.3 and 3.0 are not affected by this issue,     as the affected code is outside the OpenSSL FIPS module boundary.(CVE-2026-28388)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS shim security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected shim packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326614">https://www.tenable.com/plugins/nessus/326614</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : python-lxml (EulerOS-SA-2026-2667)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326613</link>
            <guid>https://www.tenable.com/plugins/nessus/326613</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326613 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the python-lxml packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    lxml is a library for processing XML and HTML in the Python language. Prior to 6.1.0, using either of the     two parsers in the default configuration (with resolve_entities=True) allows untrusted XML input to read     local files. Setting the resolve_entities option explicitly to resolve_entities='internal' or     resolve_entities=False disables the local file access. This vulnerability is fixed in     6.1.0.(CVE-2026-41066)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS python-lxml security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected python-lxml packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326613">https://www.tenable.com/plugins/nessus/326613</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : libsoup (EulerOS-SA-2026-2658)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326612</link>
            <guid>https://www.tenable.com/plugins/nessus/326612</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326612 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the libsoup packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    A flaw was found in libsoup. When establishing HTTPS tunnels through a configured HTTP proxy, sensitive     session cookies are transmitted in cleartext within the initial HTTP CONNECT request. A network-positioned     attacker or a malicious HTTP proxy can intercept these cookies, leading to potential session hijacking or     user impersonation.(CVE-2026-5119)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS libsoup security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected libsoup packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326612">https://www.tenable.com/plugins/nessus/326612</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : vim (EulerOS-SA-2026-2718)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326611</link>
            <guid>https://www.tenable.com/plugins/nessus/326611</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326611 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing multiple security updates.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the vim packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    Vim is an open source, command line text editor. Prior to 9.2.0479, a command injection vulnerability     exists in tar#Vimuntar() in     runtime/autoload/tar.vim when decompressing .tgz archives on Unix-like systems. The function builds     :!gunzip and :!gzip -d commands using shellescape(tartail) without the {special} flag, allowing a crafted     archive filename to trigger Vim cmdline-special expansion and execute shell commands in the user's     context. This vulnerability is fixed in 9.2.0479.(CVE-2026-46483)<br /></span><span><br /></span><span>    Vim is an open source, command line text editor. Prior to 9.2.0280, a path traversal bypass in Vim's     zip.vim plugin allows overwriting of arbitrary files when opening specially crafted zip archives,     circumventing the previous fix for CVE-2025-53906. This vulnerability is fixed in     9.2.0280.(CVE-2026-35177)<br /></span><span><br /></span><span>    Vim is an open source, command line text editor. Prior to version 9.2.0276, a modeline sandbox bypass in     Vim allows arbitrary OS command execution when a user opens a crafted file. The `complete`,     `guitabtooltip` and `printheader` options are missing the `P_MLE` flag, allowing a modeline to be     executed. Additionally, the `mapset()` function lacks a `check_secure()` call, allowing it to be abused     from sandboxed expressions. Commit 9.2.0276 fixes the issue.(CVE-2026-34982)<br /></span><span><br /></span><span>    Vim is an open source, command line text editor. Prior to 9.2.0316, a command injection vulnerability in     Vim's netbeans interface allows a malicious netbeans server to execute arbitrary Ex commands when Vim     connects to it, via unsanitized strings in the defineAnnoType and specialKeys protocol messages. This     vulnerability is fixed in 9.2.0316.(CVE-2026-39881)<br /></span><span><br /></span><span>    Vim is an open source, command line text editor. Prior to version 9.2.0202, a command injection     vulnerability exists in Vim's glob() function on Unix-like systems. By including a newline character (\n)     in a pattern passed to glob(), an attacker may be able to execute arbitrary shell commands. This     vulnerability depends on the user's 'shell' setting. This issue has been patched in version     9.2.0202.(CVE-2026-33412)<br /></span><span><br /></span><span>    Vim is an open source, command line text editor. Prior to version 9.2.0074, a heap-based buffer overflow     out-of-bounds read exists in Vim's Emacs-style tags file parsing logic. When processing a malformed tags     file, Vim can be tricked into reading up to 7 bytes beyond the allocated memory boundary. Version 9.2.0074     fixes the issue.(CVE-2026-28418)<br /></span><span><br /></span><span>    Vim is an open source, command line text editor. Prior to version 9.2.0073, an OS command injection     vulnerability exists in the `netrw` standard plugin bundled with Vim. By inducing a user to open a crafted     URL (e.g., using the `scp://` protocol handler), an attacker can execute arbitrary shell commands with the     privileges of the Vim process. Version 9.2.0073 fixes the issue.(CVE-2026-28417)<br /></span><span><br /></span><span>    Vim is an open source, command line text editor. Versions prior to 9.2.0077 have a heap-buffer-overflow     and a segmentation fault (SEGV) exist in Vim's swap file recovery logic. Both are caused by unvalidated     fields read from crafted pointer blocks within a swap file. Version 9.2.0077 fixes the     issue.(CVE-2026-28421)<br /></span><span><br /></span><span>    Vim is an open source, command line text editor. Prior to version 9.2.0078, a stack-buffer-overflow occurs     in `build_stl_str_hl()` when rendering a statusline with a multi-byte fill character on a very wide     terminal. Version 9.2.0078 patches the issue.(CVE-2026-28422)<br /></span><span><br /></span><span>    Vim is an open source, command line text editor. Prior to version 9.2.0076, a heap-based buffer overflow     WRITE and an out-of-bounds READ exist in Vim's terminal emulator when processing maximum combining     characters from Unicode supplementary planes. Version 9.2.0076 fixes the issue.(CVE-2026-28420)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS vim security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected vim packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326611">https://www.tenable.com/plugins/nessus/326611</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : openssh (EulerOS-SA-2026-2664)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326610</link>
            <guid>https://www.tenable.com/plugins/nessus/326610</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326610 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing multiple security updates.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the openssh packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    OpenSSH before 10.3 omits connection multiplexing confirmation for proxy-mode multiplexing     sessions.(CVE-2026-35388)<br /></span><span><br /></span><span>    In OpenSSH before 10.3, command execution can occur via shell metacharacters in a username within a     command line. This requires a scenario where the username on the command line is untrusted, and also     requires a non-default configurations of % in ssh_config.(CVE-2026-35386)<br /></span><span><br /></span><span>    OpenSSH before 10.3 can use unintended ECDSA algorithms. Listing of any ECDSA algorithm in     PubkeyAcceptedAlgorithms or HostbasedAcceptedAlgorithms is misinterpreted to mean all ECDSA     algorithms.(CVE-2026-35387)<br /></span><span><br /></span><span>    Vulnerability in the OpenSSH GSSAPI delta included in various Linux distributions. This vulnerability     affects the GSSAPI patches added by various Linux distributions and does not affect the OpenSSH upstream     project itself. The usage of sshpkt_disconnect() on an error, which does not terminate the process, allows     an attacker to send an unexpected GSSAPI message type during the GSSAPI key exchange to the server, which     will call the underlying function and continue the execution of the program without setting the related     connection variables. As the variables are not initialized to NULL the code later accesses those     uninitialized variables, accessing random memory, which could lead to undefined behavior. The recommended     workaround is to use ssh_packet_disconnect() instead, which does terminate the process. The impact of the     vulnerability depends heavily on the compiler flag hardening configuration.(CVE-2026-3497)<br /></span><span><br /></span><span>    In OpenSSH before 10.3, a file downloaded by scp may be installed setuid or setgid, an outcome contrary to     some users' expectations, if the download is performed as root with -O (legacy scp protocol) and without<br /></span><span>    -p (preserve mode).(CVE-2026-35385)<br /></span><span><br /></span><span>    OpenSSH before 10.3 mishandles the authorized_keys principals option in uncommon scenarios involving a     principals list in conjunction with a Certificate Authority that makes certain use of comma     characters.(CVE-2026-35414)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS openssh security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected openssh packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326610">https://www.tenable.com/plugins/nessus/326610</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : bind (EulerOS-SA-2026-2640)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326609</link>
            <guid>https://www.tenable.com/plugins/nessus/326609</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326609 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the bind packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    If a BIND resolver is performing DNSSEC validation and encounters a maliciously crafted zone, the resolver     may consume excessive CPU. Authoritative-only servers are generally unaffected, although there are     circumstances where authoritative servers may make recursive queries (see: https://kb.isc.org/docs/why-     does-my-authoritative-server-make-recursive-queries).<br /></span><span>    This issue affects BIND 9 versions 9.11.0 through 9.16.50, 9.18.0 through 9.18.46, 9.20.0 through 9.20.20,     9.21.0 through 9.21.19, 9.11.3-S1 through 9.16.50-S1, 9.18.11-S1 through 9.18.46-S1, and 9.20.9-S1 through     9.20.20-S1.(CVE-2026-1519)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS bind security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected bind packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326609">https://www.tenable.com/plugins/nessus/326609</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : expat (EulerOS-SA-2026-2647)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326608</link>
            <guid>https://www.tenable.com/plugins/nessus/326608</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326608 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing multiple security updates.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the expat packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    In libexpat before 2.8.1, the computational complexity of attribute name collision checks allows a denial     of service via moderately sized crafted XML input.(CVE-2026-45186)<br /></span><span><br /></span><span>    libexpat before 2.7.5 allows an infinite loop while parsing DTD content.(CVE-2026-32777)<br /></span><span><br /></span><span>    libexpat before 2.7.5 allows a NULL pointer dereference with empty external parameter entity     content.(CVE-2026-32776)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS expat security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected expat packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326608">https://www.tenable.com/plugins/nessus/326608</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : libpng (EulerOS-SA-2026-2657)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326607</link>
            <guid>https://www.tenable.com/plugins/nessus/326607</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326607 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing multiple security updates.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the libpng packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable     Network Graphics) raster image files. In versions 1.6.36 through 1.6.55, an out-of-bounds read and write     exists in libpng's ARM/AArch64 Neon-optimized palette expansion path. When expanding 8-bit paletted rows     to RGB or RGBA, the Neon loop processes a final partial chunk without verifying that enough input pixels     remain. Because the implementation works backward from the end of the row, the final iteration     dereferences pointers before the start of the row buffer (OOB read) and writes expanded pixel data to the     same underflowed positions (OOB write). This is reachable via normal decoding of attacker-controlled PNG     input if Neon is enabled. Version 1.6.56 fixes the issue.(CVE-2026-33636)<br /></span><span><br /></span><span>    LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable     Network Graphics) raster image files. In versions 1.2.1 through 1.6.55, `png_set_tRNS` and `png_set_PLTE`     each alias a heap-allocated buffer between `png_struct` and `png_info`, sharing a single allocation across     two structs with independent lifetimes. The `trans_alpha` aliasing has been present since at least libpng     1.0, and the `palette` aliasing since at least 1.2.1. Both affect all prior release lines `png_set_tRNS`     sets `png_ptr-trans_alpha = info_ptr-trans_alpha` (256-byte buffer) and `png_set_PLTE` sets     `info_ptr-palette = png_ptr-palette` (768-byte buffer). In both cases, calling `png_free_data` (with     `PNG_FREE_TRNS` or `PNG_FREE_PLTE`) frees the buffer through `info_ptr` while the corresponding `png_ptr`     pointer remains dangling. Subsequent row-transform functions dereference and, in some code paths, write to     the freed memory. A second call to `png_set_tRNS` or `png_set_PLTE` has the same effect, because both     functions call `png_free_data` internally before reallocating the `info_ptr` buffer. Version 1.6.56 fixes     the issue.(CVE-2026-33416)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS libpng security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected libpng packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326607">https://www.tenable.com/plugins/nessus/326607</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : glibc (EulerOS-SA-2026-2649)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326606</link>
            <guid>https://www.tenable.com/plugins/nessus/326606</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326606 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing multiple security updates.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the glibc packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    Calling the ungetwc function on a FILE stream with wide characters encoded in a character set that has     overlaps between its single byte and multi-byte character encodings, in the GNU C Library version 2.43 or     earlier, may result in an attempt to read bytes before an allocated buffer, potentially resulting in     unintentional disclosure of neighboring data in the heap, or a program crash.<br /></span><span><br /></span><span>    A bug in the wide character pushback implementation (_IO_wdefault_pbackfail in libio/wgenops.c) causes     ungetwc() to operate on the regular character buffer (fp-_IO_read_ptr) instead of the actual wide-     stream read pointer (fp-_wide_data-_IO_read_ptr). The program crash may happen in cases where fp-<br /></span><span>    _IO_read_ptr is not initialized and hence points to NULL. The buffer under-read requires a special     situation where the input character encoding is such that there are overlaps between single byte     representations and multibyte representations in that encoding, resulting in spurious matches. The     spurious match case is not possible in the standard Unicode character sets.(CVE-2026-5928)<br /></span><span><br /></span><span>    Calling the scanf family of functions with a %mc (malloc'd character match) in the GNU C Library version     2.7 to version 2.43 with a format width specifier with an explicit width greater than 1024 could result in     a one byte heap buffer overflow.(CVE-2026-5450)<br /></span><span><br /></span><span>    The iconv() function in the GNU C Library versions 2.43 and earlier may crash due to an assertion failure     when converting inputs from the IBM1390 or IBM1399 character sets, which may be used to remotely crash an     application.<br /></span><span><br /></span><span><br /></span><span><br /></span><span>    This vulnerability can be trivially mitigated by removing the IBM1390 and IBM1399 character sets from     systems that do not need them.(CVE-2026-4046)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS glibc security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected glibc packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326606">https://www.tenable.com/plugins/nessus/326606</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : ncurses (EulerOS-SA-2026-2704)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326605</link>
            <guid>https://www.tenable.com/plugins/nessus/326605</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326605 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the ncurses packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    The infocmp command-line tool in ncurses before 6.5-20251213 has a stack-based buffer overflow in     analyze_string in progs/infocmp.c.(CVE-2025-69720)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS ncurses security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected ncurses packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326605">https://www.tenable.com/plugins/nessus/326605</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : gdk-pixbuf2 (EulerOS-SA-2026-2648)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326604</link>
            <guid>https://www.tenable.com/plugins/nessus/326604</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326604 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the gdk-pixbuf2 packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    A flaw was found in the gdk-pixbuf library. This heap-based buffer overflow vulnerability occurs in the     JPEG image loader due to improper validation of color component counts when processing a specially crafted     JPEG image. A remote attacker can exploit this flaw without user interaction, for example, via thumbnail     generation. Successful exploitation leads to application crashes and denial of service (DoS)     conditions.(CVE-2026-5201)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS gdk-pixbuf2 security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected gdk-pixbuf2 packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326604">https://www.tenable.com/plugins/nessus/326604</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : gnutls (EulerOS-SA-2026-2650)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326603</link>
            <guid>https://www.tenable.com/plugins/nessus/326603</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326603 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing multiple security updates.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the gnutls packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    A flaw was found in gnutls. A remote attacker could exploit an issue in the Datagram Transport Layer     Security (DTLS) packet reordering logic. The comparator function, responsible for ordering DTLS packets by     sequence numbers, did not correctly handle packets with duplicate sequence numbers. This could lead to     unstable packet ordering or undefined behavior, resulting in a denial of service.(CVE-2026-42009)<br /></span><span><br /></span><span>    This ID has been reserved by a CNA(CVE-2026-42014)<br /></span><span><br /></span><span>    A flaw was found in gnutls. Servers configured with RSA-PSK (Rivest-Shamir-Adleman - Pre-Shared Key)     wrongfully matched usernames containing a NUL character with truncated usernames. A remote attacker could     exploit this by sending a specially crafted username, leading to an authentication bypass. This     vulnerability allows an attacker to gain unauthorized access by circumventing the authentication     process.(CVE-2026-42010)<br /></span><span><br /></span><span>    A heap buffer overflow vulnerability exists in the DTLS handshake fragment reassembly logic of GnuTLS. The     issue arises in merge_handshake_packet() where incoming handshake fragments are matched and merged based     solely on handshake type, without validating that the message_length field remains consistent across all     fragments of the same logical message. An attacker can exploit this by sending crafted DTLS fragments with     conflicting message_length values, causing the implementation to allocate a buffer based on a smaller     initial fragment and subsequently write beyond its bounds using larger, inconsistent fragments. Because     the merge operation does not enforce proper bounds checking against the allocated buffer size, this     results in an out-of-bounds write on the heap. The vulnerability is remotely exploitable without     authentication via the DTLS handshake path and can lead to application crashes or potential memory     corruption.(CVE-2026-33846)<br /></span><span><br /></span><span>    A flaw in GnuTLS DTLS handshake parsing allows malformed fragments with zero length and non-zero offset,     leading to an integer underflow during reassembly and resulting in an out-of-bounds read. This issue is     remotely exploitable and may cause information disclosure or denial of service.(CVE-2026-33845)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS gnutls security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected gnutls packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326603">https://www.tenable.com/plugins/nessus/326603</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : curl (EulerOS-SA-2026-2644)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326602</link>
            <guid>https://www.tenable.com/plugins/nessus/326602</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326602 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing multiple security updates.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the curl packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    libcurl might in some circumstances reuse the wrong connection for SMB(S)     transfers.<br /></span><span><br /></span><span>    libcurl features a pool of recent connections so that subsequent requests can     reuse an existing connection to avoid overhead.<br /></span><span><br /></span><span>    When reusing a connection a range of criteria must be met. Due to a logical     error in the code, a network transfer operation that was requested by an     application could wrongfully reuse an existing SMB connection to the same     server that was using a different 'share' than the new subsequent transfer     should.<br /></span><span><br /></span><span>    This could in unlucky situations lead to the download of the wrong file or the     upload of a file to the wrong place. When this happens, the same credentials     are used and the server name is the same.(CVE-2026-5773)<br /></span><span><br /></span><span>    Using libcurl, when a custom `Host:` header is first set for an HTTP request     and a second request is subsequently done using the same *easy handle* but     without the custom `Host:` header set, the second request would use stale     information and pass on cookies meant for the first host in the second     request. Leak them.(CVE-2026-6276)<br /></span><span><br /></span><span>    curl would wrongly reuse an existing HTTP proxy connection doing CONNECT to a     server, even if the new request uses different credentials for the HTTP proxy.<br /></span><span>    The proper behavior is to create or use a separate connection.(CVE-2026-3784)<br /></span><span><br /></span><span>    libcurl can in some circumstances reuse the wrong connection when asked to do     an Negotiate-authenticated HTTP or HTTPS request.<br /></span><span><br /></span><span>    libcurl features a pool of recent connections so that subsequent requests can     reuse an existing connection to avoid overhead.<br /></span><span><br /></span><span>    When reusing a connection a range of criterion must first be met. Due to a     logical error in the code, a request that was issued by an application could     wrongfully reuse an existing connection to the same server that was     authenticated using different credentials. One underlying reason being that     Negotiate sometimes authenticates *connections* and not *requests*, contrary     to how HTTP is designed to work.<br /></span><span><br /></span><span>    An application that allows Negotiate authentication to a server (that responds     wanting Negotiate) with `user1:password1` and then does another operation to     the same server also using Negotiate but with `user2:password2` (while the     previous connection is still alive) - the second request wrongly reused the     same connection and since it then sees that the Negotiate negotiation is     already made, it just sends the request over that connection thinking it uses     the user2 credentials when it is in fact still using the connection     authenticated for user1...<br /></span><span><br /></span><span>    The set of authentication methods to use is set with  `CURLOPT_HTTPAUTH`.<br /></span><span><br /></span><span>    Applications can disable libcurl's reuse of connections and thus mitigate this     problem, by using one of the following libcurl options to alter how     connections are or are not reused: `CURLOPT_FRESH_CONNECT`,     `CURLOPT_MAXCONNECTS` and `CURLMOPT_MAX_HOST_CONNECTIONS` (if using the     curl_multi API).(CVE-2026-1965)<br /></span><span><br /></span><span>    When an OAuth2 bearer token is used for an HTTP(S) transfer, and that transfer     performs a redirect to a second URL, curl could leak that token to the second     hostname under some circumstances.<br /></span><span><br /></span><span>    If the hostname that the first request is redirected to has information in the     used .netrc file, with either of the `machine` or `default` keywords, curl     would pass on the bearer token set for the first host also to the second one.(CVE-2026-3783)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS curl security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected curl packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326602">https://www.tenable.com/plugins/nessus/326602</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : haveged (EulerOS-SA-2026-2652)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326601</link>
            <guid>https://www.tenable.com/plugins/nessus/326601</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326601 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the haveged packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    In `src/havegecmd.c`, the `socket_handler` function performs a credential check on the abstract UNIX     socket (`\0/sys/entropy/haveged`). However, while it detects if the connecting user is not root (`cred.uid     != 0`) and prepares a negative acknowledgement (`ASCII_NAK`), it **fails to stop execution**. The code     proceeds to the `switch` statement, allowing any local unprivileged user to execute privileged commands     such as `MAGIC_CHROOT`.(CVE-2026-41054)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS haveged security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected haveged packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326601">https://www.tenable.com/plugins/nessus/326601</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : libtheora (EulerOS-SA-2026-2660)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326600</link>
            <guid>https://www.tenable.com/plugins/nessus/326600</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326600 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the libtheora packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    A flaw was found in libtheora. This heap-based out-of-bounds read vulnerability exists within the AVI     (Audio Video Interleave) parser, specifically in the avi_parse_input_file() function. A local attacker     could exploit this by tricking a user into opening a specially crafted AVI file containing a truncated     header sub-chunk. This could lead to a denial-of-service (application crash) or potentially leak sensitive     information from the heap.(CVE-2026-5673)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS libtheora security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected libtheora packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326600">https://www.tenable.com/plugins/nessus/326600</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : ruby (EulerOS-SA-2026-2711)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326599</link>
            <guid>https://www.tenable.com/plugins/nessus/326599</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326599 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the ruby packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    ERB is a templating system for Ruby. Ruby 2.7.0 (before ERB 2.2.0 was published on rubygems.org)     introduced an `@_init` instance variable guard in `ERB#result` and `ERB#run` to prevent code execution     when an ERB object is reconstructed via `Marshal.load` (deserialization). However, three other public     methods that also evaluate `@src` via `eval()` were not given the same guard: `ERB#def_method`,     `ERB#def_module`, and `ERB#def_class`. An attacker who can trigger `Marshal.load` on untrusted data in a     Ruby application that has `erb` loaded can use `ERB#def_module` (zero-arg, default parameters) as a code     execution sink, bypassing the `@_init` protection entirely. ERB 4.0.3.1, 4.0.4.1, 6.0.1.1, and 6.0.4 patch     the issue.(CVE-2026-41316)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS ruby security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected ruby packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326599">https://www.tenable.com/plugins/nessus/326599</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : haveged (EulerOS-SA-2026-2692)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326598</link>
            <guid>https://www.tenable.com/plugins/nessus/326598</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326598 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the haveged packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    In `src/havegecmd.c`, the `socket_handler` function performs a credential check on the abstract UNIX     socket (`\0/sys/entropy/haveged`). However, while it detects if the connecting user is not root (`cred.uid     != 0`) and prepares a negative acknowledgement (`ASCII_NAK`), it **fails to stop execution**. The code     proceeds to the `switch` statement, allowing any local unprivileged user to execute privileged commands     such as `MAGIC_CHROOT`.(CVE-2026-41054)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS haveged security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected haveged packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326598">https://www.tenable.com/plugins/nessus/326598</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : unbound (EulerOS-SA-2026-2717)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326597</link>
            <guid>https://www.tenable.com/plugins/nessus/326597</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326597 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing multiple security updates.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the unbound packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    NLnet Labs Unbound up to and including version 1.25.0 has a denial of service vulnerability in the DNSSEC     validator that can lead to a crash given malicious upstream replies. When Unbound constructs chase-reply     messages for validation, the code uses the wrong counter to calculate write offsets for ADDITIONAL section     rrsets. DNAME duplication could increase the ANSWER section count and authority filtering could decrease     the AUTHORITY section count and create an uninitialized array slot. Combining these two, the validator     later dereferences this uninitialized pointer, causing an immediate process crash. An adversary     controlling a DNSSEC-signed domain can trigger this bug with a single query by configuring a DNAME chain     with unsigned CNAMEs and a response containing unsigned AUTHORITY records alongside signed ADDITIONAL glue     records. Unbound 1.25.1 contains a patch with a fix to use the proper counters to calculate the write     offsets.(CVE-2026-42959)<br /></span><span><br /></span><span>    NLnet Labs Unbound up to and including version 1.25.0 is vulnerable to poisoning via promiscuous records     for the authority section. Promiscuous RRSets that complement DNS replies in the authority section can be     used to trick Unbound to cache such records. If an adversary is able to attach such records in a reply     (i.e., spoofed packet, fragmentation attack) he would be able to poison Unbound's cache. A malicious actor     can exploit the possible poisonous effect by injecting RRSets other than NS that are also accompanied by     address records in a reply, for example MX. This could be achieved by trying to spoof a reply packet or     fragmentation attacks. Unbound would then accept the relative address records in the additional section     and cache them if the authority RRSet has enough trust at this point, i.e., in-zone data for the     delegation point. Unbound 1.25.1 contains a patch with a fix that disregards address records from the     additional section if they are not explicitly relevant only to authority NS records, mitigating the     possible poison effect. This is a complement fix to CVE-2025-11411.(CVE-2026-42960)<br /></span><span><br /></span><span>    NLnet Labs Unbound up to and including version 1.25.0 is vulnerable to a degradation of service attack     related to parsing long lists of incoming EDNS options. An adversary sending queries with too many EDNS     options can hold Unbound threads hostage while they are parsing and creating internal data structures for     the options. Coordinated attacks can result in degradation and/or denial of service. Unbound 1.25.1     contains a patch with a fix to limit acceptable incoming EDNS options (100).(CVE-2026-41292)<br /></span><span><br /></span><span>    NLnet Labs Unbound 1.19.1 up to and including version 1.25.0 has a vulnerability in the DNSSEC validator     that enables denial of service and possible remote code execution as a result of deep copying a data     structure and erroneously overwriting a destination pointer. An adversary can exploit the vulnerability by     controlling a malicious signed zone and querying a vulnerable Unbound. When DS sub-queries need to suspend     validation due to NSEC3 computational budget exhaustion (introduced in Unbound 1.19.1), Unbound deep-     copies response messages to preserve them across memory region teardown. A struct-assignment bug     overwrites the destination's pointer with the source's pointer. After the sub-query region is freed, the     resumed validator dereferences this dangling pointer, triggering a crash or potentially enabling arbitrary     code execution. Unbound 1.25.1 contains a patch with a fix to preserve the correct pointer when deep     copying the data structure.(CVE-2026-33278)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS unbound security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected unbound packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326597">https://www.tenable.com/plugins/nessus/326597</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : libpng (EulerOS-SA-2026-2698)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326596</link>
            <guid>https://www.tenable.com/plugins/nessus/326596</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326596 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing multiple security updates.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the libpng packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable     Network Graphics) raster image files. In versions 1.6.36 through 1.6.55, an out-of-bounds read and write     exists in libpng's ARM/AArch64 Neon-optimized palette expansion path. When expanding 8-bit paletted rows     to RGB or RGBA, the Neon loop processes a final partial chunk without verifying that enough input pixels     remain. Because the implementation works backward from the end of the row, the final iteration     dereferences pointers before the start of the row buffer (OOB read) and writes expanded pixel data to the     same underflowed positions (OOB write). This is reachable via normal decoding of attacker-controlled PNG     input if Neon is enabled. Version 1.6.56 fixes the issue.(CVE-2026-33636)<br /></span><span><br /></span><span>    LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable     Network Graphics) raster image files. In versions 1.2.1 through 1.6.55, `png_set_tRNS` and `png_set_PLTE`     each alias a heap-allocated buffer between `png_struct` and `png_info`, sharing a single allocation across     two structs with independent lifetimes. The `trans_alpha` aliasing has been present since at least libpng     1.0, and the `palette` aliasing since at least 1.2.1. Both affect all prior release lines `png_set_tRNS`     sets `png_ptr-trans_alpha = info_ptr-trans_alpha` (256-byte buffer) and `png_set_PLTE` sets     `info_ptr-palette = png_ptr-palette` (768-byte buffer). In both cases, calling `png_free_data` (with     `PNG_FREE_TRNS` or `PNG_FREE_PLTE`) frees the buffer through `info_ptr` while the corresponding `png_ptr`     pointer remains dangling. Subsequent row-transform functions dereference and, in some code paths, write to     the freed memory. A second call to `png_set_tRNS` or `png_set_PLTE` has the same effect, because both     functions call `png_free_data` internally before reallocating the `info_ptr` buffer. Version 1.6.56 fixes     the issue.(CVE-2026-33416)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS libpng security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected libpng packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326596">https://www.tenable.com/plugins/nessus/326596</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : libssh2 (EulerOS-SA-2026-2659)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326595</link>
            <guid>https://www.tenable.com/plugins/nessus/326595</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326595 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the libssh2 packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    A security vulnerability has been detected in libssh2 up to 1.11.1. The impacted element is the function     userauth_password of the file src/userauth.c. Such manipulation of the argument username_len/password_len     leads to integer overflow. The attack may be launched remotely. The name of the patch is     256d04b60d80bf1190e96b0ad1e91b2174d744b1. A patch should be applied to remediate this     issue.(CVE-2026-7598)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS libssh2 security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected libssh2 packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326595">https://www.tenable.com/plugins/nessus/326595</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : gdk-pixbuf2 (EulerOS-SA-2026-2688)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326594</link>
            <guid>https://www.tenable.com/plugins/nessus/326594</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326594 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the gdk-pixbuf2 packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    A flaw was found in the gdk-pixbuf library. This heap-based buffer overflow vulnerability occurs in the     JPEG image loader due to improper validation of color component counts when processing a specially crafted     JPEG image. A remote attacker can exploit this flaw without user interaction, for example, via thumbnail     generation. Successful exploitation leads to application crashes and denial of service (DoS)     conditions.(CVE-2026-5201)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS gdk-pixbuf2 security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected gdk-pixbuf2 packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326594">https://www.tenable.com/plugins/nessus/326594</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : rsync (EulerOS-SA-2026-2710)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326593</link>
            <guid>https://www.tenable.com/plugins/nessus/326593</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326593 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the rsync packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    In rsync 3.0.1 through 3.4.1, receive_xattr relies on an untrusted length value during a qsort call,     leading to a receiver use-after-free. The victim must run rsync with -X (aka --xattrs). On Linux, many     (but not all) common configurations are vulnerable. Non-Linux platforms are more widely     vulnerable.(CVE-2026-41035)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS rsync security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected rsync packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326593">https://www.tenable.com/plugins/nessus/326593</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : ruby (EulerOS-SA-2026-2670)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326592</link>
            <guid>https://www.tenable.com/plugins/nessus/326592</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326592 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the ruby packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    ERB is a templating system for Ruby. Ruby 2.7.0 (before ERB 2.2.0 was published on rubygems.org)     introduced an `@_init` instance variable guard in `ERB#result` and `ERB#run` to prevent code execution     when an ERB object is reconstructed via `Marshal.load` (deserialization). However, three other public     methods that also evaluate `@src` via `eval()` were not given the same guard: `ERB#def_method`,     `ERB#def_module`, and `ERB#def_class`. An attacker who can trigger `Marshal.load` on untrusted data in a     Ruby application that has `erb` loaded can use `ERB#def_module` (zero-arg, default parameters) as a code     execution sink, bypassing the `@_init` protection entirely. ERB 4.0.3.1, 4.0.4.1, 6.0.1.1, and 6.0.4 patch     the issue.(CVE-2026-41316)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS ruby security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected ruby packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326592">https://www.tenable.com/plugins/nessus/326592</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : rsync (EulerOS-SA-2026-2669)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326591</link>
            <guid>https://www.tenable.com/plugins/nessus/326591</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326591 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the rsync packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    In rsync 3.0.1 through 3.4.1, receive_xattr relies on an untrusted length value during a qsort call,     leading to a receiver use-after-free. The victim must run rsync with -X (aka --xattrs). On Linux, many     (but not all) common configurations are vulnerable. Non-Linux platforms are more widely     vulnerable.(CVE-2026-41035)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS rsync security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected rsync packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326591">https://www.tenable.com/plugins/nessus/326591</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : kernel (EulerOS-SA-2026-2695)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326590</link>
            <guid>https://www.tenable.com/plugins/nessus/326590</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326590 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing multiple security updates.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the kernel packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    net: skbuff: propagate shared-frag marker through frag-transfer helpers(CVE-2026-43503)<br /></span><span><br /></span><span>    mailbox: Prevent out-of-bounds access in fw_mbox_index_xlate()(CVE-2026-43281)<br /></span><span><br /></span><span>    ptrace: slightly saner #39;get_dumpable()#39; logic(CVE-2026-46333)<br /></span><span><br /></span><span>    crypto: authencesn - Do not place hiseq at end of dst for out-of-place decryption(CVE-2026-43033)<br /></span><span><br /></span><span>    usb: ulpi: fix double free in ulpi_register_interface() error path(CVE-2026-31759)<br /></span><span><br /></span><span>    openvswitch: defer tunnel netdev_put to RCU release(CVE-2026-31678)<br /></span><span><br /></span><span>    KVM: x86: Use scratch field in MMIO fragment to hold small write values(CVE-2026-31588)<br /></span><span><br /></span><span>    af_unix: read UNIX_DIAG_VFS data under unix_state_lock(CVE-2026-31673)<br /></span><span><br /></span><span>    mm: blk-cgroup: fix use-after-free in cgwb_release_workfn()(CVE-2026-31586)<br /></span><span><br /></span><span>    ext4: publish jinode after initialization(CVE-2026-31450)<br /></span><span><br /></span><span>    ext4: validate p_idx bounds in ext4_ext_correct_indexes(CVE-2026-31449)<br /></span><span><br /></span><span>    net: fix fanout UAF in packet_release() via NETDEV_UP race(CVE-2026-31504)<br /></span><span><br /></span><span>    netfilter: ip6t_rt: reject oversized addrnr in rt_mt6_check()(CVE-2026-31674)<br /></span><span><br /></span><span>    RDMA/umad: Reject negative data_len in ib_umad_write(CVE-2026-23243)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS kernel security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected kernel packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326590">https://www.tenable.com/plugins/nessus/326590</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : libsoup (EulerOS-SA-2026-2699)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326589</link>
            <guid>https://www.tenable.com/plugins/nessus/326589</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326589 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the libsoup packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    A flaw was found in libsoup. When establishing HTTPS tunnels through a configured HTTP proxy, sensitive     session cookies are transmitted in cleartext within the initial HTTP CONNECT request. A network-positioned     attacker or a malicious HTTP proxy can intercept these cookies, leading to potential session hijacking or     user impersonation.(CVE-2026-5119)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS libsoup security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected libsoup packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326589">https://www.tenable.com/plugins/nessus/326589</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : libcap (EulerOS-SA-2026-2697)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326588</link>
            <guid>https://www.tenable.com/plugins/nessus/326588</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326588 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the libcap packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    A flaw was found in libcap. A local unprivileged user can exploit a Time-of-check-to-time-of-use (TOCTOU)     race condition in the `cap_set_file()` function. This allows an attacker with write access to a parent     directory to redirect file capability updates to an attacker-controlled file. By doing so, capabilities     can be injected into or stripped from unintended executables, leading to privilege     escalation.(CVE-2026-4878)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS libcap security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected libcap packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326588">https://www.tenable.com/plugins/nessus/326588</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : openssl (EulerOS-SA-2026-2706)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326587</link>
            <guid>https://www.tenable.com/plugins/nessus/326587</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326587 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing multiple security updates.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the openssl packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    Issue summary: An uncommon configuration of clients performing DANE TLSA-based     server authentication, when paired with uncommon server DANE TLSA records, may     result in a use-after-free and/or double-free on the client side.<br /></span><span><br /></span><span>    Impact summary: A use after free can have a range of potential consequences     such as the corruption of valid data, crashes or execution of arbitrary code.<br /></span><span><br /></span><span>    However, the issue only affects clients that make use of TLSA records with both     the PKIX-TA(0/PKIX-EE(1) certificate usages and the DANE-TA(2) certificate     usage.<br /></span><span><br /></span><span>    By far the most common deployment of DANE is in SMTP MTAs for which RFC7672     recommends that clients treat as 'unusable' any TLSA records that have the PKIX     certificate usages.  These SMTP (or other similar) clients are not vulnerable     to this issue.  Conversely, any clients that support only the PKIX usages, and     ignore the DANE-TA(2) usage are also not vulnerable.<br /></span><span><br /></span><span>    The client would also need to be communicating with a server that publishes a     TLSA RRset with both types of TLSA records.<br /></span><span><br /></span><span>    No FIPS modules are affected by this issue, the problem code is outside the     FIPS module boundary.(CVE-2026-28387)<br /></span><span><br /></span><span>    Issue summary: When a delta CRL that contains a Delta CRL Indicator extension     is processed a NULL pointer dereference might happen if the required CRL     Number extension is missing.<br /></span><span><br /></span><span>    Impact summary: A NULL pointer dereference can trigger a crash which     leads to a Denial of Service for an application.<br /></span><span><br /></span><span>    When CRL processing and delta CRL processing is enabled during X.509     certificate verification, the delta CRL processing does not check     whether the CRL Number extension is NULL before dereferencing it.<br /></span><span>    When a malformed delta CRL file is being processed, this parameter     can be NULL, causing a NULL pointer dereference.<br /></span><span><br /></span><span>    Exploiting this issue requires the X509_V_FLAG_USE_DELTAS flag to be enabled in     the verification context, the certificate being verified to contain a     freshestCRL extension or the base CRL to have the EXFLAG_FRESHEST flag set, and     an attacker to provide a malformed CRL to an application that processes it.<br /></span><span><br /></span><span>    The vulnerability is limited to Denial of Service and cannot be escalated to     achieve code execution or memory disclosure. For that reason the issue was     assessed as Low severity according to our Security Policy.<br /></span><span><br /></span><span>    The FIPS modules in 3.6, 3.5, 3.4, 3.3 and 3.0 are not affected by this issue,     as the affected code is outside the OpenSSL FIPS module boundary.(CVE-2026-28388)<br /></span><span><br /></span><span>    Issue summary: During processing of a crafted CMS EnvelopedData message     with KeyAgreeRecipientInfo a NULL pointer dereference can happen.<br /></span><span><br /></span><span>    Impact summary: Applications that process attacker-controlled CMS data may     crash before authentication or cryptographic operations occur resulting in     Denial of Service.<br /></span><span><br /></span><span>    When a CMS EnvelopedData message that uses KeyAgreeRecipientInfo is     processed, the optional parameters field of KeyEncryptionAlgorithmIdentifier     is examined without checking for its presence. This results in a NULL     pointer dereference if the field is missing.<br /></span><span><br /></span><span>    Applications and services that call CMS_decrypt() on untrusted input     (e.g., S/MIME processing or CMS-based protocols) are vulnerable.<br /></span><span><br /></span><span>    The FIPS modules in 3.6, 3.5, 3.4, 3.3 and 3.0 are not affected by this     issue, as the affected code is outside the OpenSSL FIPS module boundary.(CVE-2026-28389)<br /></span><span><br /></span><span>    Issue summary: During processing of a crafted CMS EnvelopedData message     with KeyTransportRecipientInfo a NULL pointer dereference can happen.<br /></span><span><br /></span><span>    Impact summary: Applications that process attacker-controlled CMS data may     crash before authentication or cryptographic operations occur resulting in     Denial of Service.<br /></span><span><br /></span><span>    When a CMS EnvelopedData message that uses KeyTransportRecipientInfo with     RSA-OAEP encryption is processed, the optional parameters field of     RSA-OAEP SourceFunc algorithm identifier is examined without checking     for its presence. This results in a NULL pointer dereference if the field     is missing.<br /></span><span><br /></span><span>    Applications and services that call CMS_decrypt() on untrusted input     (e.g., S/MIME processing or CMS-based protocols) are vulnerable.<br /></span><span><br /></span><span>    The FIPS modules in 3.6, 3.5, 3.4, 3.3 and 3.0 are not affected by this     issue, as the affected code is outside the OpenSSL FIPS module boundary.(CVE-2026-28390)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS openssl security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected openssl packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326587">https://www.tenable.com/plugins/nessus/326587</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : openssh (EulerOS-SA-2026-2705)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326586</link>
            <guid>https://www.tenable.com/plugins/nessus/326586</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326586 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing multiple security updates.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the openssh packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    OpenSSH before 10.3 omits connection multiplexing confirmation for proxy-mode multiplexing     sessions.(CVE-2026-35388)<br /></span><span><br /></span><span>    In OpenSSH before 10.3, command execution can occur via shell metacharacters in a username within a     command line. This requires a scenario where the username on the command line is untrusted, and also     requires a non-default configurations of % in ssh_config.(CVE-2026-35386)<br /></span><span><br /></span><span>    OpenSSH before 10.3 can use unintended ECDSA algorithms. Listing of any ECDSA algorithm in     PubkeyAcceptedAlgorithms or HostbasedAcceptedAlgorithms is misinterpreted to mean all ECDSA     algorithms.(CVE-2026-35387)<br /></span><span><br /></span><span>    Vulnerability in the OpenSSH GSSAPI delta included in various Linux distributions. This vulnerability     affects the GSSAPI patches added by various Linux distributions and does not affect the OpenSSH upstream     project itself. The usage of sshpkt_disconnect() on an error, which does not terminate the process, allows     an attacker to send an unexpected GSSAPI message type during the GSSAPI key exchange to the server, which     will call the underlying function and continue the execution of the program without setting the related     connection variables. As the variables are not initialized to NULL the code later accesses those     uninitialized variables, accessing random memory, which could lead to undefined behavior. The recommended     workaround is to use ssh_packet_disconnect() instead, which does terminate the process. The impact of the     vulnerability depends heavily on the compiler flag hardening configuration.(CVE-2026-3497)<br /></span><span><br /></span><span>    In OpenSSH before 10.3, a file downloaded by scp may be installed setuid or setgid, an outcome contrary to     some users' expectations, if the download is performed as root with -O (legacy scp protocol) and without<br /></span><span>    -p (preserve mode).(CVE-2026-35385)<br /></span><span><br /></span><span>    OpenSSH before 10.3 mishandles the authorized_keys principals option in uncommon scenarios involving a     principals list in conjunction with a Certificate Authority that makes certain use of comma     characters.(CVE-2026-35414)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS openssh security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected openssh packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326586">https://www.tenable.com/plugins/nessus/326586</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : golang (EulerOS-SA-2026-2651)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326585</link>
            <guid>https://www.tenable.com/plugins/nessus/326585</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326585 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing multiple security updates.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the golang packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    SWIG file names containing 'cgo' and well-crafted payloads could lead to code smuggling and arbitrary code     execution at build time due to trust layer bypass.(CVE-2026-27140)<br /></span><span><br /></span><span>    Actions which insert URLs into the content attribute of HTML meta tags are not escaped. This can allow XSS     if the meta tag also has an http-equiv attribute with the value 'refresh'. A new GODEBUG setting has been     added, htmlmetacontenturlescape, which can be used to disable escaping URLs in actions in the meta content     attribute which follow 'url=' by setting htmlmetacontenturlescape=0.(CVE-2026-27142)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS golang security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected golang packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326585">https://www.tenable.com/plugins/nessus/326585</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : httpd (EulerOS-SA-2026-2653)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326584</link>
            <guid>https://www.tenable.com/plugins/nessus/326584</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326584 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing multiple security updates.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the httpd packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    Allocation of Resources Without Limits or Throttling vulnerability in Apache HTTP Server's   mod_md via     OCSP response data.<br /></span><span><br /></span><span>    This issue affects Apache HTTP Server: from 2.4.30 through 2.4.66.<br /></span><span><br /></span><span>    Users are recommended to upgrade to version 2.4.67, which fixes the issue.(CVE-2026-29168)<br /></span><span><br /></span><span>    An escalation of privilege bug in various modules in Apache HTTP 2.4.66 and earlier allows local .htaccess     authors to read files with the privileges of the httpd user.<br /></span><span><br /></span><span>    Users are recommended to upgrade to version 2.4.67, which fixes this issue.(CVE-2026-24072)<br /></span><span><br /></span><span>    A NULL pointer dereference in mod_dav_lock in Apache HTTP Server 2.4.66 and earlier may allow an attacker     to crash the server with a malicious request.mod_dav_lock is not used internally by mod_dav or mod_dav_fs.<br /></span><span><br /></span><span>    The only known use-case for mod_dav_lock was mod_dav_svn from Apache Subversion earlier than version     1.2.0.<br /></span><span><br /></span><span>    Users are recommended to upgrade to version 2.4.66, which fixes this issue, or remove     mod_dav_lock.(CVE-2026-29169)<br /></span><span><br /></span><span>    Buffer Over-read vulnerability in Apache HTTP Server.<br /></span><span><br /></span><span>    This issue affects Apache HTTP Server: through 2.4.66.<br /></span><span><br /></span><span>    Users are recommended to upgrade to version 2.4.67, which fixes the issue.(CVE-2026-34059)<br /></span><span><br /></span><span>    Heap-based Buffer Overflow vulnerability in mod_proxy_ajp of Apache HTTP Server.<br /></span><span>    If mod_proxy_ajp connects to a malicious AJP server this AJP server can send a malicious AJP message back     to mod_proxy_ajp and cause it to write 4 attacker controlled bytes after the end of a heap based buffer.<br /></span><span><br /></span><span>    This issue affects Apache HTTP Server: through 2.4.66.<br /></span><span><br /></span><span>    Users are recommended to upgrade to version 2.4.67, which fixes the issue.(CVE-2026-28780)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS httpd security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected httpd packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326584">https://www.tenable.com/plugins/nessus/326584</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : tigervnc (EulerOS-SA-2026-2715)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326583</link>
            <guid>https://www.tenable.com/plugins/nessus/326583</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326583 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the tigervnc packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    In TigerVNC before 1.16.2, Image.cxx in x0vncserver allows other users to observe or manipulate the screen     contents, or cause an application crash, because of incorrect permissions.(CVE-2026-34352)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS tigervnc security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected tigervnc packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326583">https://www.tenable.com/plugins/nessus/326583</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : uboot-tools (EulerOS-SA-2026-2716)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326582</link>
            <guid>https://www.tenable.com/plugins/nessus/326582</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326582 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the uboot-tools packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    barebox is a bootloader. In barebox from version 2016.03.0 to before version 2026.03.1 (and the     corresponding backport to 2025.09.3), an attacker could exploit a FIT signature verification vulnerability     to trick the bootloader into booting different images than those that were verified as part of a signed     configuration. mkimage(1) sets the hashed-nodes property of the FIT signature node to list which nodes of     the FIT were hashed as part of the signing process as these will need to be verified later on by the     bootloader. However, hashed-nodes itself is not part of the hash and could therefore be modified to allow     booting different images than those that have been verified. This issue has been patched in barebox     versions 2026.03.1 and backported to 2025.09.3.(CVE-2026-33243)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS uboot-tools security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected uboot-tools packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326582">https://www.tenable.com/plugins/nessus/326582</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : libtiff (EulerOS-SA-2026-2702)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326581</link>
            <guid>https://www.tenable.com/plugins/nessus/326581</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326581 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the libtiff packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    A flaw was found in the libtiff library. A remote attacker could exploit a signed integer overflow     vulnerability in the putcontig8bitYCbCr44tile function by providing a specially crafted TIFF file. This     flaw can lead to an out-of-bounds heap write due to incorrect memory pointer calculations, potentially     causing a denial of service (application crash) or arbitrary code execution.(CVE-2026-4775)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS libtiff security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected libtiff packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326581">https://www.tenable.com/plugins/nessus/326581</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : uboot-tools (EulerOS-SA-2026-2675)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326580</link>
            <guid>https://www.tenable.com/plugins/nessus/326580</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326580 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the uboot-tools package installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    barebox is a bootloader. In barebox from version 2016.03.0 to before version 2026.03.1 (and the     corresponding backport to 2025.09.3), an attacker could exploit a FIT signature verification vulnerability     to trick the bootloader into booting different images than those that were verified as part of a signed     configuration. mkimage(1) sets the hashed-nodes property of the FIT signature node to list which nodes of     the FIT were hashed as part of the signing process as these will need to be verified later on by the     bootloader. However, hashed-nodes itself is not part of the hash and could therefore be modified to allow     booting different images than those that have been verified. This issue has been patched in barebox     versions 2026.03.1 and backported to 2025.09.3.(CVE-2026-33243)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS uboot-tools security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected uboot-tools packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326580">https://www.tenable.com/plugins/nessus/326580</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : alsa-lib (EulerOS-SA-2026-2680)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326579</link>
            <guid>https://www.tenable.com/plugins/nessus/326579</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326579 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the alsa-lib packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    alsa-lib versions 1.2.2 up to and including 1.2.15.2, prior to commit 5f7fe33, contain a heap-based buffer     overflow in the topology mixer control decoder. The tplg_decode_control_mixer1() function reads the     num_channels field from untrusted .tplg data and uses it as a loop bound without validating it against the     fixed-size channel array (SND_TPLG_MAX_CHAN). A crafted topology file with an excessive num_channels value     can cause out-of-bounds heap writes, leading to a crash.(CVE-2026-25068)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS alsa-lib security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected alsa-lib packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326579">https://www.tenable.com/plugins/nessus/326579</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : expat (EulerOS-SA-2026-2687)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326578</link>
            <guid>https://www.tenable.com/plugins/nessus/326578</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326578 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing multiple security updates.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the expat packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    In libexpat before 2.8.1, the computational complexity of attribute name collision checks allows a denial     of service via moderately sized crafted XML input.(CVE-2026-45186)<br /></span><span><br /></span><span>    libexpat before 2.7.5 allows an infinite loop while parsing DTD content.(CVE-2026-32777)<br /></span><span><br /></span><span>    libexpat before 2.7.5 allows a NULL pointer dereference with empty external parameter entity     content.(CVE-2026-32776)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS expat security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected expat packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326578">https://www.tenable.com/plugins/nessus/326578</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : systemd (EulerOS-SA-2026-2673)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326577</link>
            <guid>https://www.tenable.com/plugins/nessus/326577</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326577 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the systemd packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    A flaw was found in systemd. The systemd-machined service contains an Improper Access Control     vulnerability due to insufficient validation of the class parameter in the RegisterMachine D-Bus (Desktop     Bus) method. A local unprivileged user can exploit this by attempting to register a machine with a     specific class value, which may leave behind a usable, attacker-controlled machine object. This allows the     attacker to invoke methods on the privileged object, leading to the execution of arbitrary commands with     root privileges on the host system.(CVE-2026-4105)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS systemd security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected systemd packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326577">https://www.tenable.com/plugins/nessus/326577</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : libcap (EulerOS-SA-2026-2656)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326576</link>
            <guid>https://www.tenable.com/plugins/nessus/326576</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326576 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the libcap packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    A flaw was found in libcap. A local unprivileged user can exploit a Time-of-check-to-time-of-use (TOCTOU)     race condition in the `cap_set_file()` function. This allows an attacker with write access to a parent     directory to redirect file capability updates to an attacker-controlled file. By doing so, capabilities     can be injected into or stripped from unintended executables, leading to privilege     escalation.(CVE-2026-4878)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS libcap security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected libcap packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326576">https://www.tenable.com/plugins/nessus/326576</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : lcms2 (EulerOS-SA-2026-2696)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326575</link>
            <guid>https://www.tenable.com/plugins/nessus/326575</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326575 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the lcms2 packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    Little CMS (lcms2) through 2.18 has an integer overflow in CubeSize in cmslut.c because the overflow check     is performed after the multiplication.(CVE-2026-41254)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS lcms2 security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected lcms2 packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326575">https://www.tenable.com/plugins/nessus/326575</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : tigervnc (EulerOS-SA-2026-2674)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326574</link>
            <guid>https://www.tenable.com/plugins/nessus/326574</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326574 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the tigervnc packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    In TigerVNC before 1.16.2, Image.cxx in x0vncserver allows other users to observe or manipulate the screen     contents, or cause an application crash, because of incorrect permissions.(CVE-2026-34352)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS tigervnc security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected tigervnc packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326574">https://www.tenable.com/plugins/nessus/326574</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP10 : docker-engine (EulerOS-SA-2026-2646)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326573</link>
            <guid>https://www.tenable.com/plugins/nessus/326573</guid>
            <pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326573 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the docker-engine package installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    Moby is an open source container framework. Prior to version 29.3.1, a security vulnerability has been     detected that allows attackers to bypass authorization plugins (AuthZ). This issue has been patched in     version 29.3.1.(CVE-2026-34040)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS docker-engine security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected docker-engine packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326573">https://www.tenable.com/plugins/nessus/326573</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Fedora 44 : breezy (2026-c872d91489)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326572</link>
            <guid>https://www.tenable.com/plugins/nessus/326572</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326572 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Fedora host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Fedora 44 host has a package installed that is affected by a vulnerability as referenced in the FEDORA-2026-c872d91489 advisory.<br /></span><span><br /></span><span>    Allow PyO3 0.29, which fixes RUSTSEC-2026-0194 and RUSTSEC-2026-0195.<br /></span><span><br /></span><span>    Update to 3.3.21, including upstream fixes for compatibility with dulwich     0.25 and later.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Fedora security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected breezy package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326572">https://www.tenable.com/plugins/nessus/326572</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Fedora 44 : calibre (2026-79a5573be3)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326571</link>
            <guid>https://www.tenable.com/plugins/nessus/326571</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326571 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Fedora host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Fedora 44 host has a package installed that is affected by a vulnerability as referenced in the FEDORA-2026-79a5573be3 advisory.<br /></span><span><br /></span><span>    Update to 9.11.0. Fixes rhbz#2493338 and CVE-2026-53511<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Fedora security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected calibre package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326571">https://www.tenable.com/plugins/nessus/326571</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2026-40467]]></title>
            <link>https://www.tenable.com/plugins/nessus/326570</link>
            <guid>https://www.tenable.com/plugins/nessus/326570</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326570 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - Use After Free vulnerability has been found in io.c program file of gawk (do_getline_redir() routine).<br /></span><span>    This issue may lead to a crash. It affects gawk in versions 5.4.0 and below. (CVE-2026-40467)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326570">https://www.tenable.com/plugins/nessus/326570</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2026-40553]]></title>
            <link>https://www.tenable.com/plugins/nessus/326569</link>
            <guid>https://www.tenable.com/plugins/nessus/326569</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326569 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - Buffer overflow vulnerability has been found in extension/readdir.c program file of gawk (ftype()     routine). This issue could be used to crash the program and potentially to achieve code execution,     although the latter has not been confirmed to be feasible. It affects gawk in versions 5.4.0 and below.<br /></span><span>    (CVE-2026-40553)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326569">https://www.tenable.com/plugins/nessus/326569</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2026-57432]]></title>
            <link>https://www.tenable.com/plugins/nessus/326568</link>
            <guid>https://www.tenable.com/plugins/nessus/326568</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326568 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - Perl versions through 5.43.10 have an integer overflow in S_measure_struct leading to an out-of-bounds     heap read in pack and unpack. S_measure_struct adds each item's size times its repeat count to a running     total with no overflow check, so a large repeat count in a pack or unpack template wraps the signed     SSize_t total negative. The @, X, and x position codes then guard their moves with a signed length     comparison that passes when the length is negative, advancing the buffer pointer out of bounds. A template     derived from untrusted input can read heap memory past the buffer and return it to the caller.<br /></span><span>    (CVE-2026-57432)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326568">https://www.tenable.com/plugins/nessus/326568</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2026-57433]]></title>
            <link>https://www.tenable.com/plugins/nessus/326567</link>
            <guid>https://www.tenable.com/plugins/nessus/326567</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326567 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - Storable versions before 3.41 for Perl have a signed integer overflow when deserializing a crafted SX_HOOK     record. retrieve_hook_common reads a signed 32-bit item count from an SX_HOOK record and calls av_extend     with that count plus one. A count of I32_MAX wraps the addition to a negative value. A crafted blob passed     to thaw or retrieve triggers the overflow; av_extend receives the negative count and dies with a panic,     terminating the deserialization. (CVE-2026-57433)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326567">https://www.tenable.com/plugins/nessus/326567</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2026-40468]]></title>
            <link>https://www.tenable.com/plugins/nessus/326566</link>
            <guid>https://www.tenable.com/plugins/nessus/326566</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326566 with Low Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - Integer overflow vulnerability has been found in builtin.c program file of gawk. This issue may lead to     memory exhaustion on the hosting operating system and could be used to overwrite gawk heap metadata and     objects with attacker-controlled bytes. It affects gawk in versions 5.4.0 and below. (CVE-2026-40468)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326566">https://www.tenable.com/plugins/nessus/326566</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2026-58052]]></title>
            <link>https://www.tenable.com/plugins/nessus/326565</link>
            <guid>https://www.tenable.com/plugins/nessus/326565</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326565 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - 7-Zip for Windows through 26.02 fails to preserve the Mark-of-the-Web when extracting a crafted RAR5     archive, because its guard that suppresses an archive-supplied Zone.Identifier stream matches the exact     name 'Zone.Identifier' while a RAR5 STM record named ':Zone.Identifier:$DATA' is not matched and NTFS     canonicalizes it to the same stream, overwriting the propagated Internet-zone marker with ZoneId=0. A     second STM record named '::$DATA' overwrites the extracted file's default data stream, letting an attacker     defeat SmartScreen/MotW warnings and spoof file content. (CVE-2026-58052)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326565">https://www.tenable.com/plugins/nessus/326565</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2026-53365]]></title>
            <link>https://www.tenable.com/plugins/nessus/326564</link>
            <guid>https://www.tenable.com/plugins/nessus/326564</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326564 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - vsock/virtio: fix zerocopy completion for multi-skb sends When a large message is fragmented into multiple     skbs, the zerocopy uarg is only allocated and attached to the last skb in the loop. Non-final skbs carry     pinned user pages with no completion tracking, so the kernel has no way to notify userspace when those     pages are safe to reuse. If the loop breaks early the uarg is never allocated at all, leaking pinned pages     with no completion notification. Fix this by following the approach used by TCP: allocate the zerocopy     uarg (if not provided by the caller) before the send loop and attach it to every skb via skb_zcopy_set(),     which takes a reference per skb. Each skb's completion properly decrements the refcount, and the     notification only fires after the last skb is freed. On failure, if no data was sent, the uarg is cleanly     aborted via net_zcopy_put_abort(). This issue was initially discovered by sashiko while reviewing commit     1cb36e252211 (vsock/virtio: fix MSG_ZEROCOPY pinned-pages accounting) but was pre-existing.<br /></span><span>    (CVE-2026-53365)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326564">https://www.tenable.com/plugins/nessus/326564</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2026-60103]]></title>
            <link>https://www.tenable.com/plugins/nessus/326563</link>
            <guid>https://www.tenable.com/plugins/nessus/326563</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326563 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - Blender 3.0.0 through 5.1.2 contains an out-of-bounds read vulnerability that allows attackers to trigger     a crash or read adjacent heap memory by supplying a crafted .blend file with a malicious signed short     member_index value in the SDNA block. The member_index field is used as an array index into the     sdna->members[] array in sdna_expand_names() without bounds validation, allowing any value outside the     allocated range to produce an invalid pointer subsequently passed to strlen(), resulting in a SIGSEGV     crash or unintended heap memory disclosure. (CVE-2026-60103)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326563">https://www.tenable.com/plugins/nessus/326563</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2026-40469]]></title>
            <link>https://www.tenable.com/plugins/nessus/326562</link>
            <guid>https://www.tenable.com/plugins/nessus/326562</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326562 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - Integer overflow vulnerability has been found in builtin.c program file of gawk (do_sub() routine). This     issue could be used to overwrite gawk heap metadata and objects causing the program to crash. It affects     32-bit builds of gawk in versions 5.4.0 and below. (CVE-2026-40469)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326562">https://www.tenable.com/plugins/nessus/326562</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2026-13221]]></title>
            <link>https://www.tenable.com/plugins/nessus/326561</link>
            <guid>https://www.tenable.com/plugins/nessus/326561</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326561 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - Perl versions through 5.43.9 produce silently incorrect regular expression matches when an alternation of     more than 65535 fixed string branches is compiled into a trie in Perl_study_chunk. When such branches are     combined into a trie, the delta between the first branch and the shared tail is stored in a 16-bit field.<br /></span><span>    A branch count above 65535 overflows the field, and the trie's match decision table is truncated with no     warning or error. A pattern of this shape produces false positive matches (matching strings it should not)     and false negative matches (failing to match strings it should). When such a pattern gates an access or     filtering decision, the result is wrong. (CVE-2026-13221)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326561">https://www.tenable.com/plugins/nessus/326561</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[AlmaLinux 9 : kernel (ALSA-2026:38491)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326560</link>
            <guid>https://www.tenable.com/plugins/nessus/326560</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326560 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote AlmaLinux host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote AlmaLinux 9 host has packages installed that are affected by multiple vulnerabilities as referenced in the ALSA-2026:38491 advisory.<br /></span><span><br /></span><span>    * kernel: Linux kernel: Memory leak in networking due to incorrect GRO packet handling (CVE-2026-22979)<br /></span><span>      * kernel: rtmutex: Use waiter::task instead of current in remove_waiter() (CVE-2026-43499)<br /></span><span>      * kernel: net: bridge: use a stable FDB dst snapshot in RCU readers (CVE-2026-46086)<br /></span><span>      * kernel: crypto: ccp - copy IV using skcipher ivsize (CVE-2026-53016)<br /></span><span>      * kernel: futex/requeue: Prevent NULL pointer dereference in remove_waiter() on self-deadlock     (CVE-2026-53166)<br /></span><span><br /></span><span><br /></span><span>    Bug Fix(es) and Enhancement(s):<br /></span><span><br /></span><span>      * Kernel panic very early during boot while reading a tracefs file (available_filter_functions) due to     invalid module name pointer [9.8.z] (JIRA:AlmaLinux-183236)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the AlmaLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326560">https://www.tenable.com/plugins/nessus/326560</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[AlmaLinux 10 : kernel (ALSA-2026:38492)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326559</link>
            <guid>https://www.tenable.com/plugins/nessus/326559</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326559 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote AlmaLinux host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote AlmaLinux 10 host has packages installed that are affected by multiple vulnerabilities as referenced in the ALSA-2026:38492 advisory.<br /></span><span><br /></span><span>    * kernel: md/bitmap: fix GPF in write_page caused by resize race (CVE-2026-43163)<br /></span><span>      * kernel: rtmutex: Use waiter::task instead of current in remove_waiter() (CVE-2026-43499)<br /></span><span>      * kernel: futex/requeue: Prevent NULL pointer dereference in remove_waiter() on self-deadlock     (CVE-2026-53166)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the AlmaLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326559">https://www.tenable.com/plugins/nessus/326559</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Oracle Linux 9 : perl-DBI (ELSA-2026-38512)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326558</link>
            <guid>https://www.tenable.com/plugins/nessus/326558</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326558 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Oracle Linux host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote Oracle Linux 9 host has a package installed that is affected by a vulnerability as referenced in the ELSA-2026-38512 advisory.<br /></span><span><br /></span><span>    - Fix possible stack overflow and buffer overflow in DBI.xs       (CVE-2026-9698)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Oracle Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected perl-DBI package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326558">https://www.tenable.com/plugins/nessus/326558</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Oracle Linux 9 : gimp (ELSA-2026-38496)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326557</link>
            <guid>https://www.tenable.com/plugins/nessus/326557</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326557 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Oracle Linux host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote Oracle Linux 9 host has packages installed that are affected by a vulnerability as referenced in the ELSA-2026-38496 advisory.<br /></span><span><br /></span><span>    - fix CVE-2026-58379<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Oracle Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected gimp and / or gimp-libs packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326557">https://www.tenable.com/plugins/nessus/326557</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Oracle Linux 9 : openexr (ELSA-2026-38498)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326556</link>
            <guid>https://www.tenable.com/plugins/nessus/326556</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326556 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Oracle Linux host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Oracle Linux 9 host has packages installed that are affected by multiple vulnerabilities as referenced in the ELSA-2026-38498 advisory.<br /></span><span><br /></span><span>    - fix CVE-2026-41142<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Oracle Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected openexr, openexr-devel and / or openexr-libs packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326556">https://www.tenable.com/plugins/nessus/326556</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Oracle Linux 9 : xorg-x11-server (ELSA-2026-38486)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326555</link>
            <guid>https://www.tenable.com/plugins/nessus/326555</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326555 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Oracle Linux host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote Oracle Linux 9 host has packages installed that are affected by a vulnerability as referenced in the ELSA-2026-38486 advisory.<br /></span><span><br /></span><span>    [1.20.11-34.3]<br /></span><span>    - CVE fix for CVE-2026-55999       Resolves: https://redhat.atlassian.net/browse/RHEL-191493<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Oracle Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326555">https://www.tenable.com/plugins/nessus/326555</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RHEL 9 : openexr (RHSA-2026:39025)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326554</link>
            <guid>https://www.tenable.com/plugins/nessus/326554</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326554 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Red Hat host is missing one or more security updates for openexr.<br /></span>
      <h3>Description</h3>
      <span>The remote Redhat Enterprise Linux 9 host has packages installed that are affected by multiple vulnerabilities as referenced in the RHSA-2026:39025 advisory.<br /></span><span><br /></span><span>    OpenEXR is an open-source high-dynamic-range floating-point image file format for high-quality image     processing and storage. This document presents a brief overview of OpenEXR and explains concepts that are     specific to this format.  This package containes the binaries for OpenEXR.<br /></span><span><br /></span><span>    Security Fix(es):<br /></span><span><br /></span><span>    * OpenEXR: OpenEXR: Arbitrary code execution via integer overflow in image resizing (CVE-2026-41142)<br /></span><span><br /></span><span>    * OpenEXR: OpenEXR: Information disclosure and denial of service via malformed EXR files (CVE-2026-42216)<br /></span><span><br /></span><span>    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and     other related information, refer to the CVE page(s) listed in the References section.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Red Hat Enterprise Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the RHEL openexr package based on the guidance in RHSA-2026:39025.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326554">https://www.tenable.com/plugins/nessus/326554</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RHEL 9 : openexr (RHSA-2026:39026)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326553</link>
            <guid>https://www.tenable.com/plugins/nessus/326553</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326553 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Red Hat host is missing one or more security updates for openexr.<br /></span>
      <h3>Description</h3>
      <span>The remote Redhat Enterprise Linux 9 host has packages installed that are affected by multiple vulnerabilities as referenced in the RHSA-2026:39026 advisory.<br /></span><span><br /></span><span>    OpenEXR is an open-source high-dynamic-range floating-point image file format for high-quality image     processing and storage. This document presents a brief overview of OpenEXR and explains concepts that are     specific to this format.  This package containes the binaries for OpenEXR.<br /></span><span><br /></span><span>    Security Fix(es):<br /></span><span><br /></span><span>    * OpenEXR: OpenEXR: Arbitrary code execution via integer overflow in image resizing (CVE-2026-41142)<br /></span><span><br /></span><span>    * OpenEXR: OpenEXR: Information disclosure and denial of service via malformed EXR files (CVE-2026-42216)<br /></span><span><br /></span><span>    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and     other related information, refer to the CVE page(s) listed in the References section.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Red Hat Enterprise Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the RHEL openexr package based on the guidance in RHSA-2026:39026.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326553">https://www.tenable.com/plugins/nessus/326553</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RHEL 10 : openexr (RHSA-2026:39024)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326552</link>
            <guid>https://www.tenable.com/plugins/nessus/326552</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326552 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Red Hat host is missing one or more security updates for openexr.<br /></span>
      <h3>Description</h3>
      <span>The remote Redhat Enterprise Linux 10 host has packages installed that are affected by multiple vulnerabilities as referenced in the RHSA-2026:39024 advisory.<br /></span><span><br /></span><span>    OpenEXR is an open-source high-dynamic-range floating-point image file format for high-quality image     processing and storage. This document presents a brief overview of OpenEXR and explains concepts that are     specific to this format.  This package containes the binaries for OpenEXR.<br /></span><span><br /></span><span>    Security Fix(es):<br /></span><span><br /></span><span>    * OpenEXR: OpenEXR: Arbitrary code execution via integer overflow in image resizing (CVE-2026-41142)<br /></span><span><br /></span><span>    * OpenEXR: OpenEXR: Information disclosure and denial of service via malformed EXR files (CVE-2026-42216)<br /></span><span><br /></span><span>    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and     other related information, refer to the CVE page(s) listed in the References section.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Red Hat Enterprise Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the RHEL openexr package based on the guidance in RHSA-2026:39024.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326552">https://www.tenable.com/plugins/nessus/326552</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RHEL 9 : openexr (RHSA-2026:39027)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326551</link>
            <guid>https://www.tenable.com/plugins/nessus/326551</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326551 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Red Hat host is missing one or more security updates for openexr.<br /></span>
      <h3>Description</h3>
      <span>The remote Redhat Enterprise Linux 9 host has packages installed that are affected by multiple vulnerabilities as referenced in the RHSA-2026:39027 advisory.<br /></span><span><br /></span><span>    OpenEXR is an open-source high-dynamic-range floating-point image file format for high-quality image     processing and storage. This document presents a brief overview of OpenEXR and explains concepts that are     specific to this format.  This package containes the binaries for OpenEXR.<br /></span><span><br /></span><span>    Security Fix(es):<br /></span><span><br /></span><span>    * OpenEXR: OpenEXR: Arbitrary code execution via integer overflow in image resizing (CVE-2026-41142)<br /></span><span><br /></span><span>    * OpenEXR: OpenEXR: Information disclosure and denial of service via malformed EXR files (CVE-2026-42216)<br /></span><span><br /></span><span>    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and     other related information, refer to the CVE page(s) listed in the References section.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Red Hat Enterprise Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the RHEL openexr package based on the guidance in RHSA-2026:39027.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326551">https://www.tenable.com/plugins/nessus/326551</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Debian dla-4681 : p7zip - security update]]></title>
            <link>https://www.tenable.com/plugins/nessus/326550</link>
            <guid>https://www.tenable.com/plugins/nessus/326550</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326550 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Debian host is missing one or more security-related updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Debian 11 host has packages installed that are affected by multiple vulnerabilities as referenced in the dla-4681 advisory.<br /></span><span><br /></span><span>    - -------------------------------------------------------------------------     Debian LTS Advisory DLA-4681-1                debian-lts@lists.debian.org     https://www.debian.org/lts/security/                      Sylvain Beucler     July 13, 2026                                 https://wiki.debian.org/LTS<br /></span><span>    - -------------------------------------------------------------------------<br /></span><span><br /></span><span>    Package        : p7zip     Version        : 16.02+really26.01+dfsg-0+deb11u1     CVE ID         : CVE-2026-48092 CVE-2026-48095 CVE-2026-48101 CVE-2026-48102                      CVE-2026-48103 CVE-2026-48104 CVE-2026-48111 CVE-2026-48112<br /></span><span><br /></span><span>    Multiple memory corruption vulnerabilities were discovered in p7zip, a     now unmaintained fork of 7-Zip, which itself is a file archiver     handling multiple formats.<br /></span><span><br /></span><span>    To address these security vulnerabilities, whose fixes are     unfortunately not isolated, this update again replaces p7zip with a     recent 7-Zip (now v26.01), slightly modified to make it reasonably     compatible with p7zip.<br /></span><span><br /></span><span>    CVE-2026-48092<br /></span><span><br /></span><span>        SquashFS Fragment Offset Overflow<br /></span><span><br /></span><span>    CVE-2026-48095<br /></span><span><br /></span><span>        Heap Buffer Write Overflow<br /></span><span><br /></span><span>    CVE-2026-48101<br /></span><span><br /></span><span>        UEFI Capsule uninitialized heap memory disclosure<br /></span><span><br /></span><span>    CVE-2026-48102<br /></span><span><br /></span><span>        UDF Field OOB Read<br /></span><span><br /></span><span>    CVE-2026-48103<br /></span><span><br /></span><span>        WIM SecurityId OOB read<br /></span><span><br /></span><span>    CVE-2026-48104<br /></span><span><br /></span><span>        SquashFS BlockToNode uninitialized heap read<br /></span><span><br /></span><span>    CVE-2026-48111<br /></span><span><br /></span><span>        UEFI DEPEX OOB Read<br /></span><span><br /></span><span>    CVE-2026-48112<br /></span><span><br /></span><span>        Ar SYMDEF OOB Read<br /></span><span><br /></span><span>    For Debian 11 bullseye, these problems have been fixed in version     16.02+really26.01+dfsg-0+deb11u1.<br /></span><span><br /></span><span>    We recommend that you upgrade your p7zip packages.<br /></span><span><br /></span><span>    For the detailed security status of p7zip please refer to     its security tracker page at:<br /></span><span>    https://security-tracker.debian.org/tracker/p7zip<br /></span><span><br /></span><span>    Further information about Debian LTS security advisories, how to apply     these updates to your system and frequently asked questions can be     found at: https://wiki.debian.org/LTS<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Debian security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade the p7zip packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326550">https://www.tenable.com/plugins/nessus/326550</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Debian dla-4680 : imagemagick - security update]]></title>
            <link>https://www.tenable.com/plugins/nessus/326549</link>
            <guid>https://www.tenable.com/plugins/nessus/326549</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326549 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Debian host is missing one or more security-related updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Debian 11 / 12 host has packages installed that are affected by multiple vulnerabilities as referenced in the dla-4680 advisory.<br /></span><span><br /></span><span>    - -------------------------------------------------------------------------     Debian LTS Advisory DLA-4680-1                debian-lts@lists.debian.org     https://www.debian.org/lts/security/                   Bastien Roucaris     July 13, 2026                                 https://wiki.debian.org/LTS<br /></span><span>    - -------------------------------------------------------------------------<br /></span><span><br /></span><span>    Package        : imagemagick     Version        : 8:6.9.11.60+dfsg-1.3+deb11u15 8:6.9.11.60+dfsg-1.6+deb12u12     CVE ID         : CVE-2026-53466 CVE-2026-53467 CVE-2026-55577 CVE-2026-55594                      CVE-2026-55595 CVE-2026-55597 CVE-2026-55628 CVE-2026-56361                      CVE-2026-56363 CVE-2026-56365 CVE-2026-56366 CVE-2026-56367                      CVE-2026-56368 CVE-2026-56370 CVE-2026-56371 CVE-2026-56373                      CVE-2026-56376 CVE-2026-56377 CVE-2026-56378<br /></span><span><br /></span><span>    Multiple security vulnerabilities were discovered in imagemagick, a     software suite used for editing and manipulating digital images, which     could lead to denial of service, information disclosure or potentially     arbitrary code execution if malformed images are processed.<br /></span><span><br /></span><span>    For Debian 11 bullseye, these problems have been fixed in version     8:6.9.11.60+dfsg-1.3+deb11u15.<br /></span><span><br /></span><span>    For Debian 12 bookworm, these problems have been fixed in version     8:6.9.11.60+dfsg-1.6+deb12u12<br /></span><span><br /></span><span>    We recommend that you upgrade your imagemagick packages.<br /></span><span><br /></span><span>    For the detailed security status of imagemagick please refer to     its security tracker page at:<br /></span><span>    https://security-tracker.debian.org/tracker/imagemagick<br /></span><span><br /></span><span>    Further information about Debian LTS security advisories, how to apply     these updates to your system and frequently asked questions can be     found at: https://wiki.debian.org/LTS<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Debian security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade the imagemagick packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326549">https://www.tenable.com/plugins/nessus/326549</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2026-15146]]></title>
            <link>https://www.tenable.com/plugins/nessus/326548</link>
            <guid>https://www.tenable.com/plugins/nessus/326548</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326548 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - GNU Wget does not validate the IP address provided by an FTP PASV response while operating in FTP passive     mode. A malicious FTP server, or an HTTP server that redirects to an FTP URL, can exploit this behavior to     redirect Wget's data connection to an arbitrary IP address and port. This allows an attacker to forge     server-side requests (SSRF) from the machine running Wget, potentially accessing localhost services or     internal network resources. (CVE-2026-15146)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326548">https://www.tenable.com/plugins/nessus/326548</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2026-14373]]></title>
            <link>https://www.tenable.com/plugins/nessus/326547</link>
            <guid>https://www.tenable.com/plugins/nessus/326547</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326547 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - HashiCorp Nomad and Nomad Enterprise did not enforce the allow_privileged restriction for the Docker task     driver's host namespace mode options. This may allow an authenticated job submitter to run a container in     a host namespace and access information belonging to the host or to other workloads on the same client.<br /></span><span>    This vulnerability, CVE-2026-14373, is fixed in Nomad Community Edition 2.0.4 and Nomad Enterprise 2.0.4,     1.11.8, and 1.10.14. (CVE-2026-14373)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326547">https://www.tenable.com/plugins/nessus/326547</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2026-57221]]></title>
            <link>https://www.tenable.com/plugins/nessus/326546</link>
            <guid>https://www.tenable.com/plugins/nessus/326546</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326546 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - RabbitMQ is a messaging and streaming broker. Prior to 3.13.15, 4.0.20, 4.1.11, and 4.2.6, RabbitMQ does     not perform authorization checks on passive queue.declare and exchange.declare AMQP 0-9-1 operations,     allowing any authenticated user who can connect to a virtual host to enumerate queue and exchange names     and read queue message and consumer counts. This issue is fixed in versions 3.13.15, 4.0.20, 4.1.11, and     4.2.6. (CVE-2026-57221)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326546">https://www.tenable.com/plugins/nessus/326546</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2026-57213]]></title>
            <link>https://www.tenable.com/plugins/nessus/326545</link>
            <guid>https://www.tenable.com/plugins/nessus/326545</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326545 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - RabbitMQ is a messaging and streaming broker. Prior to 3.13.14, 4.0.19, 4.1.10, and 4.2.5, the     rabbitmq_federation_management plugin renders the consumer_tag field on the Federation Status page without     HTML escaping, allowing a user who can configure a federation upstream or policy to execute JavaScript in     the browser of a user viewing that page. This issue is fixed in versions 3.13.14, 4.0.19, 4.1.10, and     4.2.5. (CVE-2026-57213)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326545">https://www.tenable.com/plugins/nessus/326545</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2026-57219]]></title>
            <link>https://www.tenable.com/plugins/nessus/326544</link>
            <guid>https://www.tenable.com/plugins/nessus/326544</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326544 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - RabbitMQ is a messaging and streaming broker. Prior to 3.13.15, 4.0.20, 4.1.11, and 4.2.6, the obsolete     GET /api/auth endpoint can disclose the OAuth 2 client secret on RabbitMQ installations configured with     management.oauth_client_secret, exposing credentials to unauthenticated callers when the management plugin     and that OAuth configuration are enabled. This issue is fixed in versions 3.13.15, 4.0.20, 4.1.11, and     4.2.6. (CVE-2026-57219)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326544">https://www.tenable.com/plugins/nessus/326544</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2026-57215]]></title>
            <link>https://www.tenable.com/plugins/nessus/326543</link>
            <guid>https://www.tenable.com/plugins/nessus/326543</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326543 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - RabbitMQ is a messaging and streaming broker. Prior to 3.13.15, 4.0.20, 4.1.11, and 4.2.6, RabbitMQ allows     foreign bindings to amq.rabbitmq.reply-to destinations because volatile direct-reply-to queues can be     accepted at bind and route time but are missing from Khepri-backed deletion checks, leaving persistent     route entries after unbind. This issue is fixed in versions 3.13.15, 4.0.20, 4.1.11, and 4.2.6.<br /></span><span>    (CVE-2026-57215)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326543">https://www.tenable.com/plugins/nessus/326543</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2026-57211]]></title>
            <link>https://www.tenable.com/plugins/nessus/326542</link>
            <guid>https://www.tenable.com/plugins/nessus/326542</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326542 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - RabbitMQ is a messaging and streaming broker. Prior to 4.1.11 and 4.2.6 on Windows, the RabbitMQ     management plugin static file handler rabbit_mgmt_wm_static can pass URL-encoded backslashes to     erl_prim_loader:read_file_info before path validation when multiple management extension plugins are     enabled, causing outbound DNS and SMB requests to attacker-controlled UNC paths. This issue is fixed in     versions 4.1.11 and 4.2.6. (CVE-2026-57211)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326542">https://www.tenable.com/plugins/nessus/326542</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2026-14896]]></title>
            <link>https://www.tenable.com/plugins/nessus/326541</link>
            <guid>https://www.tenable.com/plugins/nessus/326541</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326541 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - HashiCorp Nomad and Nomad Enterprise are vulnerable to a cross-namespace authorization bypass in the     dynamic host volumes feature that may allow an operator holding the host volume delete permission in one     namespace to delete a sticky volume claim belonging to a job in another namespace. This vulnerability,     CVE-2026-14896, is fixed in Nomad Community Edition 2.0.4 and Nomad Enterprise 2.0.4, 1.11.8, and 1.10.14.<br /></span><span>    (CVE-2026-14896)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326541">https://www.tenable.com/plugins/nessus/326541</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2026-57218]]></title>
            <link>https://www.tenable.com/plugins/nessus/326540</link>
            <guid>https://www.tenable.com/plugins/nessus/326540</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326540 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - RabbitMQ is a messaging and streaming broker. Prior to 4.2.6, RabbitMQ AMQP 0-9-1 allows an existing     consumer to keep receiving messages after OAuth token expiry or connection.update_secret refresh to     reduced scopes because existing consumers are not canceled or reauthorized at delivery time after the     channel user state changes. This issue is fixed in version 4.2.6. (CVE-2026-57218)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326540">https://www.tenable.com/plugins/nessus/326540</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2026-57214]]></title>
            <link>https://www.tenable.com/plugins/nessus/326539</link>
            <guid>https://www.tenable.com/plugins/nessus/326539</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326539 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - RabbitMQ is a messaging and streaming broker. Prior to 4.2.5, the RabbitMQ management UI renders the     x-internal-purpose queue or exchange argument into an HTML title attribute without proper escaping on the     Queues and Exchanges pages, allowing a user with permission to declare a queue or exchange to execute     JavaScript in another user's browser. This issue is fixed in version 4.2.5. (CVE-2026-57214)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326539">https://www.tenable.com/plugins/nessus/326539</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2026-57216]]></title>
            <link>https://www.tenable.com/plugins/nessus/326538</link>
            <guid>https://www.tenable.com/plugins/nessus/326538</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326538 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - RabbitMQ is a messaging and streaming broker. Prior to 3.13.15, 4.0.20, 4.1.11, and 4.2.6, AMQP 0-9-1,     AMQP 1.0, and Stream Protocol authentication can allow a loopback-restricted user such as guest to connect     remotely when traffic is accepted through a trusted PROXY-protocol path and the backend listener is     loopback-bound because the loopback check uses the listener-side socket address instead of the real client     source. This issue is fixed in versions 3.13.15, 4.0.20, 4.1.11, and 4.2.6. (CVE-2026-57216)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326538">https://www.tenable.com/plugins/nessus/326538</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2026-15551]]></title>
            <link>https://www.tenable.com/plugins/nessus/326537</link>
            <guid>https://www.tenable.com/plugins/nessus/326537</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326537 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - Integer overflow or wraparound vulnerability in Samsung Open Source rlottie allows Overflow Buffers. This     issue affects . (CVE-2026-15551)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326537">https://www.tenable.com/plugins/nessus/326537</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2026-57220]]></title>
            <link>https://www.tenable.com/plugins/nessus/326536</link>
            <guid>https://www.tenable.com/plugins/nessus/326536</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326536 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - RabbitMQ is a messaging and streaming broker. Prior to 4.2.6, the RabbitMQ stream listener does not     enforce the configured stream frame-size limit while assembling frames during authentication and before     Tune negotiation, allowing an unauthenticated remote client to declare oversized frame lengths and consume     broker memory in rabbit_stream_core. This issue is fixed in version 4.2.6. (CVE-2026-57220)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326536">https://www.tenable.com/plugins/nessus/326536</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2026-57217]]></title>
            <link>https://www.tenable.com/plugins/nessus/326535</link>
            <guid>https://www.tenable.com/plugins/nessus/326535</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326535 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - RabbitMQ is a messaging and streaming broker. Prior to 3.13.15, 4.0.21, 4.1.11, and 4.2.6, RabbitMQ topic     authorization can allow restricted topic writes and binds during metadata-store failures because topic-     permission lookup errors from Khepri can collapse to undefined, which the internal backend treats as     allow. This issue is fixed in versions 3.13.15, 4.0.21, 4.1.11, and 4.2.6. (CVE-2026-57217)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326535">https://www.tenable.com/plugins/nessus/326535</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2026-14461]]></title>
            <link>https://www.tenable.com/plugins/nessus/326534</link>
            <guid>https://www.tenable.com/plugins/nessus/326534</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326534 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - mtr is vulnerable to Out-of-bound read vulnerability in ipinfo_lookup() function. An attacker who can     influence the TXT response used for AS lookups can trigger this bug by returning a DNS response that is     larger than 512 bytes and uses a crafted compression pointer in the answer NAME field. ipinfo_lookup()     function uses the length of the response as the end-of-message boundary for dn_expand() function. The     result is a reliable crash. This issue exists in the mtr through version 0.96 and it was fixed in commit     48e1794414d338ce47abc0f27c25ade8788af9c3. (CVE-2026-14461)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326534">https://www.tenable.com/plugins/nessus/326534</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2026-14891]]></title>
            <link>https://www.tenable.com/plugins/nessus/326533</link>
            <guid>https://www.tenable.com/plugins/nessus/326533</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326533 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - HashiCorp Nomad and Nomad Enterprise are vulnerable to a sandbox escape in the Docker task driver that may     allow a job submitter to bind-mount a host path into a container even when volume bind mounts are     disabled, potentially leading to reading and writing files on the host. This vulnerability,     CVE-2026-14891, is fixed in Nomad Community Edition 2.0.4 and Nomad Enterprise 2.0.4, 1.11.8, and 1.10.14.<br /></span><span>    (CVE-2026-14891)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326533">https://www.tenable.com/plugins/nessus/326533</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2026-57212]]></title>
            <link>https://www.tenable.com/plugins/nessus/326532</link>
            <guid>https://www.tenable.com/plugins/nessus/326532</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326532 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - RabbitMQ is a messaging and streaming broker. Prior to 3.13.14, 4.0.19, 4.1.10, and 4.2.5, the     rabbitmq_management HTTP API accepts oversized valid JSON bodies on with_decode and direct_request paths     because read_complete_body checks the accumulated size before the final chunk but not the final combined     size. This issue is fixed in versions 3.13.14, 4.0.19, 4.1.10, and 4.2.5. (CVE-2026-57212)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326532">https://www.tenable.com/plugins/nessus/326532</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[AlmaLinux 8 : xorg-x11-server (ALSA-2026:38487)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326531</link>
            <guid>https://www.tenable.com/plugins/nessus/326531</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326531 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote AlmaLinux host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote AlmaLinux 8 host has packages installed that are affected by a vulnerability as referenced in the ALSA-2026:38487 advisory.<br /></span><span><br /></span><span>    * xorg: X11: xserver: X.org: glamor Font Atlas Heap Buffer Overflow (CVE-2026-55999)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the AlmaLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326531">https://www.tenable.com/plugins/nessus/326531</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[AlmaLinux 10 : golang (ALSA-2026:37436)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326530</link>
            <guid>https://www.tenable.com/plugins/nessus/326530</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326530 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote AlmaLinux host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote AlmaLinux 10 host has packages installed that are affected by multiple vulnerabilities as referenced in the ALSA-2026:37436 advisory.<br /></span><span><br /></span><span>    * golang.org/x/net/idna: golang: golang.org/x/net/idna: Privilege escalation via incorrect Punycode label     processing (CVE-2026-39821)<br /></span><span>      * os: golang: Go os.Root: Symlink following vulnerability allows directory traversal (CVE-2026-39822)<br /></span><span><br /></span><span><br /></span><span>    Bug Fix(es) and Enhancement(s):<br /></span><span><br /></span><span>      * Update Go to version 1.26.5+1 [almalinux-10.2.z] (JIRA:AlmaLinux-193473)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the AlmaLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326530">https://www.tenable.com/plugins/nessus/326530</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[AlmaLinux 8 : gegl (ALSA-2026:38485)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326529</link>
            <guid>https://www.tenable.com/plugins/nessus/326529</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326529 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote AlmaLinux host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote AlmaLinux 8 host has a package installed that is affected by a vulnerability as referenced in the ALSA-2026:38485 advisory.<br /></span><span><br /></span><span>    * gimp: GIMP: Arbitrary code execution via heap-based buffer overflow in HDR file parsing (CVE-2026-2050)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the AlmaLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected gegl package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326529">https://www.tenable.com/plugins/nessus/326529</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[AlmaLinux 9 : golang (ALSA-2026:37435)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326528</link>
            <guid>https://www.tenable.com/plugins/nessus/326528</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326528 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote AlmaLinux host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote AlmaLinux 9 host has packages installed that are affected by multiple vulnerabilities as referenced in the ALSA-2026:37435 advisory.<br /></span><span><br /></span><span>    * golang.org/x/net/idna: golang: golang.org/x/net/idna: Privilege escalation via incorrect Punycode label     processing (CVE-2026-39821)<br /></span><span>      * os: golang: Go os.Root: Symlink following vulnerability allows directory traversal (CVE-2026-39822)<br /></span><span><br /></span><span><br /></span><span>    Bug Fix(es) and Enhancement(s):<br /></span><span><br /></span><span>      * Update Go to version 1.26.5+1 [almalinux-9.8.z] (JIRA:AlmaLinux-193476)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the AlmaLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326528">https://www.tenable.com/plugins/nessus/326528</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[AlmaLinux 10 : tomcat (ALSA-2026:36788)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326527</link>
            <guid>https://www.tenable.com/plugins/nessus/326527</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326527 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote AlmaLinux host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote AlmaLinux 10 host has packages installed that are affected by multiple vulnerabilities as referenced in the ALSA-2026:36788 advisory.<br /></span><span><br /></span><span>    * Apache Tomcat: Apache Tomcat: Information disclosure via Padding Oracle vulnerability in     EncryptInterceptor (CVE-2026-29146)<br /></span><span>      * Apache Tomcat: Apache Tomcat: Missing Encryption of Sensitive Data due to EncryptInterceptor bypass     (CVE-2026-34486)<br /></span><span><br /></span><span><br /></span><span>    Bug Fix(es) and Enhancement(s):<br /></span><span><br /></span><span>      * Remove tomcat clustering JAR from RPM builds (JIRA:AlmaLinux-168577)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the AlmaLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326527">https://www.tenable.com/plugins/nessus/326527</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[AlmaLinux 9 : buildah (ALSA-2026:37410)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326526</link>
            <guid>https://www.tenable.com/plugins/nessus/326526</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326526 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote AlmaLinux host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote AlmaLinux 9 host has packages installed that are affected by multiple vulnerabilities as referenced in the ALSA-2026:37410 advisory.<br /></span><span><br /></span><span>    * golang.org/x/crypto/ssh: golang: golang.org/x/crypto/ssh: Denial of Service via crafted SSH certificate     (CVE-2026-39835)<br /></span><span>      * golang.org/x/crypto/ssh/agent: golang.org/x/crypto/ssh/agent: Security bypass due to improper handling     of key restrictions (CVE-2026-39832)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the AlmaLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected buildah and / or buildah-tests packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326526">https://www.tenable.com/plugins/nessus/326526</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[AlmaLinux 10 : tomcat9 (ALSA-2026:36790)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326525</link>
            <guid>https://www.tenable.com/plugins/nessus/326525</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326525 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote AlmaLinux host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote AlmaLinux 10 host has packages installed that are affected by multiple vulnerabilities as referenced in the ALSA-2026:36790 advisory.<br /></span><span><br /></span><span>    * Apache Tomcat: Apache Tomcat: Information disclosure via Padding Oracle vulnerability in     EncryptInterceptor (CVE-2026-29146)<br /></span><span>      * Apache Tomcat: Apache Tomcat: Missing Encryption of Sensitive Data due to EncryptInterceptor bypass     (CVE-2026-34486)<br /></span><span><br /></span><span><br /></span><span>    Bug Fix(es) and Enhancement(s):<br /></span><span><br /></span><span>      * Remove tomcat clustering JAR from RPM builds (JIRA:AlmaLinux-185571)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the AlmaLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326525">https://www.tenable.com/plugins/nessus/326525</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[AlmaLinux 8 : 389-ds:1.4 (ALSA-2026:36201)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326524</link>
            <guid>https://www.tenable.com/plugins/nessus/326524</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326524 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote AlmaLinux host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote AlmaLinux 8 host has packages installed that are affected by multiple vulnerabilities as referenced in the ALSA-2026:36201 advisory.<br /></span><span><br /></span><span>    * 389-ds-base: 389-ds-base: Heap buffer overflow in sasl_io_recv() via padded SASL UNBIND (CVE-2026-11610)<br /></span><span>      * 389-ds-base: 389-ds-base: integer overflow in SASL packet length bypasses size limit leading to heap     buffer overflow (CVE-2026-11774)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the AlmaLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326524">https://www.tenable.com/plugins/nessus/326524</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[AlmaLinux 10 : freeipmi (ALSA-2026:36211)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326523</link>
            <guid>https://www.tenable.com/plugins/nessus/326523</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326523 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote AlmaLinux host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote AlmaLinux 10 host has packages installed that are affected by a vulnerability as referenced in the ALSA-2026:36211 advisory.<br /></span><span><br /></span><span>    * freeipmi: FreeIPMI: Denial of service via buffer overflow in ipmi-oem client (CVE-2026-50031)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the AlmaLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326523">https://www.tenable.com/plugins/nessus/326523</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[AlmaLinux 9 : freerdp (ALSA-2026:37207)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326522</link>
            <guid>https://www.tenable.com/plugins/nessus/326522</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326522 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote AlmaLinux host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote AlmaLinux 9 host has packages installed that are affected by a vulnerability as referenced in the ALSA-2026:37207 advisory.<br /></span><span><br /></span><span>    * freerdp: FreeRDP: Out-of-bounds write in planar bitmap decoder allows arbitrary code execution     (CVE-2026-45700)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the AlmaLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326522">https://www.tenable.com/plugins/nessus/326522</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[AlmaLinux 8 : xorg-x11-server-Xwayland (ALSA-2026:38488)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326521</link>
            <guid>https://www.tenable.com/plugins/nessus/326521</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326521 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote AlmaLinux host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote AlmaLinux 8 host has a package installed that is affected by a vulnerability as referenced in the ALSA-2026:38488 advisory.<br /></span><span><br /></span><span>    * xorg: X11: xserver: X.org: glamor Font Atlas Heap Buffer Overflow (CVE-2026-55999)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the AlmaLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected xorg-x11-server-Xwayland package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326521">https://www.tenable.com/plugins/nessus/326521</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[AlmaLinux 9 : podman (ALSA-2026:37123)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326520</link>
            <guid>https://www.tenable.com/plugins/nessus/326520</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326520 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote AlmaLinux host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote AlmaLinux 9 host has packages installed that are affected by multiple vulnerabilities as referenced in the ALSA-2026:37123 advisory.<br /></span><span><br /></span><span>    * golang.org/x/crypto/ssh: golang: golang.org/x/crypto/ssh: Denial of Service via crafted SSH certificate     (CVE-2026-39835)<br /></span><span>      * golang.org/x/crypto/ssh: golang.org/x/crypto/ssh: Denial of Service via crafted public key with     excessive parameters (CVE-2026-39829)<br /></span><span>      * golang.org/x/crypto/ssh/agent: golang.org/x/crypto/ssh/agent: Security bypass due to improper handling     of key restrictions (CVE-2026-39832)<br /></span><span>      * golang.org/x/crypto/ssh/knownhosts: golang: golang.org/x/crypto/ssh/knownhosts: Revocation bypass via     unchecked SignatureKey (CVE-2026-42508)<br /></span><span>      * golang.org/x/net/html: golang: golang.org/x/net/html: Cross-Site Scripting via HTML parsing bypass     (CVE-2026-27136)<br /></span><span>      * golang.org/x/net/html: golang.org/x/net/html: Arbitrary code execution via Cross-Site Scripting     (CVE-2026-25681)<br /></span><span>      * podman: Podman: Information disclosure via malicious container image environment variables     (CVE-2026-57231)<br /></span><span><br /></span><span><br /></span><span>    Bug Fix(es) and Enhancement(s):<br /></span><span><br /></span><span>      * podman does not clean up all files and leaves orphaned files consuming disk space [almalinux-9.8.z]     (JIRA:AlmaLinux-173988)<br /></span><span>      * [FJ9.8 Bug]: [REG]The podman-remote save command fails for rootless users. [almalinux-9.8.z]     (JIRA:AlmaLinux-192439)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the AlmaLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326520">https://www.tenable.com/plugins/nessus/326520</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[AlmaLinux 9 : libreoffice (ALSA-2026:28290)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326519</link>
            <guid>https://www.tenable.com/plugins/nessus/326519</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326519 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote AlmaLinux host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote AlmaLinux 9 host has packages installed that are affected by a vulnerability as referenced in the ALSA-2026:28290 advisory.<br /></span><span><br /></span><span>    * LibreOffice: LibreOffice: Denial of Service via crafted OOXML documents (CVE-2026-4430)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the AlmaLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326519">https://www.tenable.com/plugins/nessus/326519</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RHEL 9 : kernel (RHSA-2026:38491)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326518</link>
            <guid>https://www.tenable.com/plugins/nessus/326518</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326518 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Red Hat host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Redhat Enterprise Linux 9 host has packages installed that are affected by multiple vulnerabilities as referenced in the RHSA-2026:38491 advisory.<br /></span><span><br /></span><span>    The kernel packages contain the Linux kernel, the core of any Linux operating system.<br /></span><span><br /></span><span>    Security Fix(es):<br /></span><span><br /></span><span>    * kernel: Linux kernel: Memory leak in networking due to incorrect GRO packet handling (CVE-2026-22979)<br /></span><span><br /></span><span>    * kernel: rtmutex: Use waiter::task instead of current in remove_waiter() (CVE-2026-43499)<br /></span><span><br /></span><span>    * kernel: net: bridge: use a stable FDB dst snapshot in RCU readers (CVE-2026-46086)<br /></span><span><br /></span><span>    * kernel: crypto: ccp - copy IV using skcipher ivsize (CVE-2026-53016)<br /></span><span><br /></span><span>    * kernel: futex/requeue: Prevent NULL pointer dereference in remove_waiter() on self-deadlock     (CVE-2026-53166)<br /></span><span><br /></span><span>    Bug Fix(es) and Enhancement(s):<br /></span><span><br /></span><span>    * Kernel panic very early during boot while reading a tracefs file (available_filter_functions) due to     invalid module name pointer [9.8.z] (JIRA:RHEL-183236)<br /></span><span><br /></span><span>    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and     other related information, refer to the CVE page(s) listed in the References section.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Red Hat Enterprise Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326518">https://www.tenable.com/plugins/nessus/326518</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RHEL 9 : kernel (RHSA-2026:38902)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326517</link>
            <guid>https://www.tenable.com/plugins/nessus/326517</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326517 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Red Hat host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Redhat Enterprise Linux 9 host has packages installed that are affected by multiple vulnerabilities as referenced in the RHSA-2026:38902 advisory.<br /></span><span><br /></span><span>    The kernel packages contain the Linux kernel, the core of any Linux operating system.<br /></span><span><br /></span><span>    Security Fix(es):<br /></span><span><br /></span><span>    * kernel: ima: don't clear IMA_DIGSIG flag when setting or removing non-IMA xattr (CVE-2025-68183)<br /></span><span><br /></span><span>    * kernel: Bluetooth: SCO: Fix use-after-free in sco_recv_frame() due to missing sock_hold (CVE-2026-31408)<br /></span><span><br /></span><span>    * kernel: eventpoll: defer struct eventpoll free to RCU grace period (CVE-2026-43074)<br /></span><span><br /></span><span>    * kernel: ALSA: usb-audio: Add sanity check for OOB writes at silencing (CVE-2026-43279)<br /></span><span><br /></span><span>    * kernel: gfs2: Fix use-after-free in iomap inline data write path (CVE-2026-45984)<br /></span><span><br /></span><span>    * kernel: wifi: mac80211: drop stray 'static' from fast-RX rx_result (CVE-2026-46152)<br /></span><span><br /></span><span>    * kernel: RDMA/vmw_pvrdma: Fix double free on pvrdma_alloc_ucontext() error path (CVE-2026-46189)<br /></span><span><br /></span><span>    * kernel: nvmet-tcp: fix race between ICReq handling and queue teardown (CVE-2026-46135)<br /></span><span><br /></span><span>    * kernel: eventpoll: fix ep_remove struct eventpoll / struct file UAF (CVE-2026-46242)<br /></span><span><br /></span><span>    * kernel: KVM: arm64: vgic-its: Drop the translation cache reference only for the erased entry     (CVE-2026-46316)<br /></span><span><br /></span><span>    * kernel: KVM: x86: Fix shadow paging use-after-free due to unexpected role (CVE-2026-53359)<br /></span><span><br /></span><span>    Bug Fix(es) and Enhancement(s):<br /></span><span><br /></span><span>    * Possible THP Stalls on Multi-NUMA Systems for HANA on RHEL [rhel-9.6.z] (JIRA:RHEL-164774)<br /></span><span><br /></span><span>    * crypto: testmgr - allow authenc(hmac(sha{256,384}),cts(cbc(aes))) in FIPS mode [rhel-9.6.z]     (JIRA:RHEL-182539)<br /></span><span><br /></span><span>    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and     other related information, refer to the CVE page(s) listed in the References section.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Red Hat Enterprise Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326517">https://www.tenable.com/plugins/nessus/326517</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RHEL 9 : freeipmi (RHSA-2026:39006)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326516</link>
            <guid>https://www.tenable.com/plugins/nessus/326516</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326516 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Red Hat host is missing one or more security updates for freeipmi.<br /></span>
      <h3>Description</h3>
      <span>The remote Redhat Enterprise Linux 9 host has packages installed that are affected by multiple vulnerabilities as referenced in the RHSA-2026:39006 advisory.<br /></span><span><br /></span><span>    The freeipmi packages contain an Intelligent Platform Management Interface (IPMI) remote console and     system management software based on the IPMI specification.<br /></span><span><br /></span><span>    Security Fix(es):<br /></span><span><br /></span><span>    * freeipmi: buffer overflows on response messages via ipmi-oem (CVE-2026-33554)<br /></span><span><br /></span><span>    * freeipmi: FreeIPMI: Denial of service via buffer overflow in ipmi-oem client (CVE-2026-50031)<br /></span><span><br /></span><span>    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and     other related information, refer to the CVE page(s) listed in the References section.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Red Hat Enterprise Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the RHEL freeipmi package based on the guidance in RHSA-2026:39006.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326516">https://www.tenable.com/plugins/nessus/326516</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RHEL 9 : compat-openssl11 (RHSA-2026:39009)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326515</link>
            <guid>https://www.tenable.com/plugins/nessus/326515</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326515 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Red Hat host is missing one or more security updates for compat-openssl11.<br /></span>
      <h3>Description</h3>
      <span>The remote Redhat Enterprise Linux 9 host has a package installed that is affected by multiple vulnerabilities as referenced in the RHSA-2026:39009 advisory.<br /></span><span><br /></span><span>    The OpenSSL toolkit provides support for secure communications between machines. This version of OpenSSL     package contains only the libraries from the 1.1.1 version and is provided for compatibility with previous     releases.<br /></span><span><br /></span><span>    Security Fix(es):<br /></span><span><br /></span><span>    * openssl: OpenSSL: Denial of Service due to NULL pointer dereference in CMS EnvelopedData processing     (CVE-2026-28390)<br /></span><span><br /></span><span>    * openssl: Heap Use-After-Free in OpenSSL PKCS7_verify() (CVE-2026-45447)<br /></span><span><br /></span><span>    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and     other related information, refer to the CVE page(s) listed in the References section.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Red Hat Enterprise Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the RHEL compat-openssl11 package based on the guidance in RHSA-2026:39009.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326515">https://www.tenable.com/plugins/nessus/326515</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RHEL 9 : freeipmi (RHSA-2026:39010)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326514</link>
            <guid>https://www.tenable.com/plugins/nessus/326514</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326514 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Red Hat host is missing one or more security updates for freeipmi.<br /></span>
      <h3>Description</h3>
      <span>The remote Redhat Enterprise Linux 9 host has packages installed that are affected by multiple vulnerabilities as referenced in the RHSA-2026:39010 advisory.<br /></span><span><br /></span><span>    The freeipmi packages contain an Intelligent Platform Management Interface (IPMI) remote console and     system management software based on the IPMI specification.<br /></span><span><br /></span><span>    Security Fix(es):<br /></span><span><br /></span><span>    * freeipmi: buffer overflows on response messages via ipmi-oem (CVE-2026-33554)<br /></span><span><br /></span><span>    * freeipmi: FreeIPMI: Denial of service via buffer overflow in ipmi-oem client (CVE-2026-50031)<br /></span><span><br /></span><span>    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and     other related information, refer to the CVE page(s) listed in the References section.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Red Hat Enterprise Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the RHEL freeipmi package based on the guidance in RHSA-2026:39010.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326514">https://www.tenable.com/plugins/nessus/326514</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RHEL 10 : freeipmi (RHSA-2026:39007)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326513</link>
            <guid>https://www.tenable.com/plugins/nessus/326513</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326513 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Red Hat host is missing one or more security updates for freeipmi.<br /></span>
      <h3>Description</h3>
      <span>The remote Redhat Enterprise Linux 10 host has packages installed that are affected by multiple vulnerabilities as referenced in the RHSA-2026:39007 advisory.<br /></span><span><br /></span><span>    The freeipmi packages contain an Intelligent Platform Management Interface (IPMI) remote console and     system management software based on the IPMI specification.<br /></span><span><br /></span><span>    Security Fix(es):<br /></span><span><br /></span><span>    * freeipmi: buffer overflows on response messages via ipmi-oem (CVE-2026-33554)<br /></span><span><br /></span><span>    * freeipmi: FreeIPMI: Denial of service via buffer overflow in ipmi-oem client (CVE-2026-50031)<br /></span><span><br /></span><span>    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and     other related information, refer to the CVE page(s) listed in the References section.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Red Hat Enterprise Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the RHEL freeipmi package based on the guidance in RHSA-2026:39007.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326513">https://www.tenable.com/plugins/nessus/326513</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RHEL 9 : maven:3.9 (RHSA-2026:38500)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326512</link>
            <guid>https://www.tenable.com/plugins/nessus/326512</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326512 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Red Hat host is missing a security update for maven:3.9.<br /></span>
      <h3>Description</h3>
      <span>The remote Redhat Enterprise Linux 9 host has packages installed that are affected by a vulnerability as referenced in the RHSA-2026:38500 advisory.<br /></span><span><br /></span><span>    Maven is a software project management and comprehension tool. Based on the concept of a project object     model (POM), Maven can manage a project's build, reporting and documentation from a central piece of     information.<br /></span><span><br /></span><span>    Security Fix(es):<br /></span><span><br /></span><span>    * org.codehaus.plexus:plexus-utils: Plexus-utils: Directory Traversal in extractFile method     (CVE-2025-67030)<br /></span><span><br /></span><span>    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and     other related information, refer to the CVE page(s) listed in the References section.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Red Hat Enterprise Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the RHEL maven:3.9 package based on the guidance in RHSA-2026:38500.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326512">https://www.tenable.com/plugins/nessus/326512</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RHEL 8 : perl-DBI:1.641 (RHSA-2026:38901)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326511</link>
            <guid>https://www.tenable.com/plugins/nessus/326511</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326511 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Red Hat host is missing a security update for perl-DBI:1.641.<br /></span>
      <h3>Description</h3>
      <span>The remote Redhat Enterprise Linux 8 host has a package installed that is affected by a vulnerability as referenced in the RHSA-2026:38901 advisory.<br /></span><span><br /></span><span>    The perl-DBI package provides the standard database interface module for the Perl programming language. It     implements a database-independent interface, meaning it defines a consistent set of methods, variables,     and conventions for database operations.<br /></span><span><br /></span><span>    Security Fix(es):<br /></span><span><br /></span><span>    * DBI: DBI: Buffer overflow in error handling can lead to arbitrary code execution (CVE-2026-9698)<br /></span><span><br /></span><span>    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and     other related information, refer to the CVE page(s) listed in the References section.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Red Hat Enterprise Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the RHEL perl-DBI:1.641 package based on the guidance in RHSA-2026:38901.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326511">https://www.tenable.com/plugins/nessus/326511</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RHEL 9 : freeipmi (RHSA-2026:39008)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326510</link>
            <guid>https://www.tenable.com/plugins/nessus/326510</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326510 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Red Hat host is missing one or more security updates for freeipmi.<br /></span>
      <h3>Description</h3>
      <span>The remote Redhat Enterprise Linux 9 host has packages installed that are affected by multiple vulnerabilities as referenced in the RHSA-2026:39008 advisory.<br /></span><span><br /></span><span>    The freeipmi packages contain an Intelligent Platform Management Interface (IPMI) remote console and     system management software based on the IPMI specification.<br /></span><span><br /></span><span>    Security Fix(es):<br /></span><span><br /></span><span>    * freeipmi: buffer overflows on response messages via ipmi-oem (CVE-2026-33554)<br /></span><span><br /></span><span>    * freeipmi: FreeIPMI: Denial of service via buffer overflow in ipmi-oem client (CVE-2026-50031)<br /></span><span><br /></span><span>    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and     other related information, refer to the CVE page(s) listed in the References section.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Red Hat Enterprise Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the RHEL freeipmi package based on the guidance in RHSA-2026:39008.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326510">https://www.tenable.com/plugins/nessus/326510</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RHEL 9 : firefox (RHSA-2026:39011)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326509</link>
            <guid>https://www.tenable.com/plugins/nessus/326509</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326509 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Red Hat host is missing one or more security updates for firefox.<br /></span>
      <h3>Description</h3>
      <span>The remote Redhat Enterprise Linux 9 host has packages installed that are affected by multiple vulnerabilities as referenced in the RHSA-2026:39011 advisory.<br /></span><span><br /></span><span>    Mozilla Firefox is an open-source web browser, designed for standards compliance, performance, and     portability.<br /></span><span><br /></span><span>    Security Fix(es):<br /></span><span><br /></span><span>    * firefox: thunderbird: Sandbox escape in the DOM: Workers component (CVE-2026-12294)<br /></span><span><br /></span><span>    * firefox: thunderbird: Information disclosure, sandbox escape in the Security: Process Sandboxing     component (CVE-2026-12313)<br /></span><span><br /></span><span>    * firefox: thunderbird: Information disclosure, sandbox escape in the Security: Process Sandboxing     component (CVE-2026-12311)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12290)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bugs fixed in Firefox ESR 140.12, Thunderbird ESR 140.12, Firefox     152 and Thunderbird 152 (CVE-2026-12327)<br /></span><span><br /></span><span>    * firefox: thunderbird: JIT miscompilation in the DOM: Core & HTML component (CVE-2026-12299)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12329)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12312)<br /></span><span><br /></span><span>    * firefox: thunderbird: Mitigation bypass in the DOM: Security component (CVE-2026-12302)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bugs fixed in Firefox ESR 115.37, Firefox ESR 140.12, Thunderbird     ESR 140.12, Firefox 152 and Thunderbird 152 (CVE-2026-12328)<br /></span><span><br /></span><span>    * firefox: thunderbird: Incorrect boundary conditions in the Internationalization component     (CVE-2026-12330)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12314)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12309)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12310)<br /></span><span><br /></span><span>    * firefox: thunderbird: Denial-of-service in the Graphics: ImageLib component (CVE-2026-12325)<br /></span><span><br /></span><span>    * firefox: thunderbird: Sandbox escape in the DOM: Navigation component (CVE-2026-12295)<br /></span><span><br /></span><span>    * firefox: thunderbird: Privilege escalation in the Graphics: WebRender component (CVE-2026-12289)<br /></span><span><br /></span><span>    * firefox: thunderbird: Mitigation bypass in the DOM: Security component (CVE-2026-12315)<br /></span><span><br /></span><span>    * firefox: thunderbird: Sandbox escape in the Security: Process Sandboxing component (CVE-2026-12296)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12306)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12307)<br /></span><span><br /></span><span>    * firefox: thunderbird: Sandbox escape due to incorrect boundary conditions in the Networking component     (CVE-2026-12297)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12305)<br /></span><span><br /></span><span>    * firefox: thunderbird: Incorrect boundary conditions in the Web Audio component (CVE-2026-12292)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12308)<br /></span><span><br /></span><span>    * firefox: thunderbird: Incorrect boundary conditions in the Graphics: CanvasWebGL component     (CVE-2026-12324)<br /></span><span><br /></span><span>    * firefox: thunderbird: Same-origin policy bypass in the Networking: Cookies component (CVE-2026-12304)<br /></span><span><br /></span><span>    * firefox: thunderbird: Use-after-free in the Networking: HTTP component (CVE-2026-12291)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bug fixed in Firefox ESR 140.12 (CVE-2026-12298)<br /></span><span><br /></span><span>    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and     other related information, refer to the CVE page(s) listed in the References section.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Red Hat Enterprise Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the RHEL firefox package based on the guidance in RHSA-2026:39011.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326509">https://www.tenable.com/plugins/nessus/326509</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RHEL 9 : compat-openssl11 (RHSA-2026:39012)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326508</link>
            <guid>https://www.tenable.com/plugins/nessus/326508</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326508 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Red Hat host is missing one or more security updates for compat-openssl11.<br /></span>
      <h3>Description</h3>
      <span>The remote Redhat Enterprise Linux 9 host has a package installed that is affected by multiple vulnerabilities as referenced in the RHSA-2026:39012 advisory.<br /></span><span><br /></span><span>    The OpenSSL toolkit provides support for secure communications between machines. This version of OpenSSL     package contains only the libraries from the 1.1.1 version and is provided for compatibility with previous     releases.<br /></span><span><br /></span><span>    Security Fix(es):<br /></span><span><br /></span><span>    * openssl: OpenSSL: Denial of Service due to NULL pointer dereference in CMS EnvelopedData processing     (CVE-2026-28390)<br /></span><span><br /></span><span>    * openssl: Heap Use-After-Free in OpenSSL PKCS7_verify() (CVE-2026-45447)<br /></span><span><br /></span><span>    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and     other related information, refer to the CVE page(s) listed in the References section.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Red Hat Enterprise Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the RHEL compat-openssl11 package based on the guidance in RHSA-2026:39012.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326508">https://www.tenable.com/plugins/nessus/326508</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RHEL 9 : podman (RHSA-2026:38878)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326507</link>
            <guid>https://www.tenable.com/plugins/nessus/326507</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326507 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Red Hat host is missing a security update for podman.<br /></span>
      <h3>Description</h3>
      <span>The remote Redhat Enterprise Linux 9 host has packages installed that are affected by a vulnerability as referenced in the RHSA-2026:38878 advisory.<br /></span><span><br /></span><span>    The podman tool manages pods, container images, and containers. It is part of the libpod library, which is     for applications that use container pods. Container pods is a concept in Kubernetes.<br /></span><span><br /></span><span>    Security Fix(es):<br /></span><span><br /></span><span>    * os: golang: Go os.Root: Symlink following vulnerability allows directory traversal (CVE-2026-39822)<br /></span><span><br /></span><span>    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and     other related information, refer to the CVE page(s) listed in the References section.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Red Hat Enterprise Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the RHEL podman package based on the guidance in RHSA-2026:38878.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326507">https://www.tenable.com/plugins/nessus/326507</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RHEL 8 : go-toolset:rhel8 (RHSA-2026:38995)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326506</link>
            <guid>https://www.tenable.com/plugins/nessus/326506</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326506 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Red Hat host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Redhat Enterprise Linux 8 host has packages installed that are affected by multiple vulnerabilities as referenced in the RHSA-2026:38995 advisory.<br /></span><span><br /></span><span>    Go Toolset provides the Go programming language tools and libraries. Go is alternatively known as golang.<br /></span><span><br /></span><span>    Security Fix(es):<br /></span><span><br /></span><span>    * golang.org/x/net/idna: golang: golang.org/x/net/idna: Privilege escalation via incorrect Punycode label     processing (CVE-2026-39821)<br /></span><span><br /></span><span>    * crypto/x509: golang: golang crypto/x509: Denial of Service via excessive processing of DNS SAN entries     (CVE-2026-27145)<br /></span><span><br /></span><span>    * os: golang: Go os.Root: Symlink following vulnerability allows directory traversal (CVE-2026-39822)<br /></span><span><br /></span><span>    Bug Fix(es) and Enhancement(s):<br /></span><span><br /></span><span>    * Update Go to version 1.26.5+1 [rhel-8.10.z] (JIRA:RHEL-193478)<br /></span><span><br /></span><span>    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and     other related information, refer to the CVE page(s) listed in the References section.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Red Hat Enterprise Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326506">https://www.tenable.com/plugins/nessus/326506</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RHEL 10 : rhc (RHSA-2026:39005)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326505</link>
            <guid>https://www.tenable.com/plugins/nessus/326505</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326505 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Red Hat host is missing one or more security updates for rhc.<br /></span>
      <h3>Description</h3>
      <span>The remote Redhat Enterprise Linux 10 host has a package installed that is affected by multiple vulnerabilities as referenced in the RHSA-2026:39005 advisory.<br /></span><span><br /></span><span>    rhc is a client tool and daemon that connects the system to Red Hat hosted services enabling system and     subscription management.<br /></span><span><br /></span><span>    Security Fix(es):<br /></span><span><br /></span><span>    * golang.org/x/net/idna: golang: golang.org/x/net/idna: Privilege escalation via incorrect Punycode label     processing (CVE-2026-39821)<br /></span><span><br /></span><span>    * crypto/x509: golang: golang crypto/x509: Denial of Service via excessive processing of DNS SAN entries     (CVE-2026-27145)<br /></span><span><br /></span><span>    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and     other related information, refer to the CVE page(s) listed in the References section.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Red Hat Enterprise Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the RHEL rhc package based on the guidance in RHSA-2026:39005.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326505">https://www.tenable.com/plugins/nessus/326505</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RockyLinux 9 : maven:3.9 (RLSA-2026:38500)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326504</link>
            <guid>https://www.tenable.com/plugins/nessus/326504</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326504 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote RockyLinux host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote RockyLinux 9 host has packages installed that are affected by a vulnerability as referenced in the RLSA-2026:38500 advisory.<br /></span><span><br /></span><span>    * org.codehaus.plexus:plexus-utils: Plexus-utils: Directory Traversal in extractFile method     (CVE-2025-67030)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the RockyLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326504">https://www.tenable.com/plugins/nessus/326504</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RockyLinux 8 : container-tools:rhel8 (RLSA-2026:38504)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326503</link>
            <guid>https://www.tenable.com/plugins/nessus/326503</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326503 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote RockyLinux host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote RockyLinux 8 host has packages installed that are affected by multiple vulnerabilities as referenced in the RLSA-2026:38504 advisory.<br /></span><span><br /></span><span>    * net: golang: Go net package: Denial of Service via long CNAME response in LookupCNAME (CVE-2026-33811)<br /></span><span><br /></span><span>    * golang.org/x/crypto/ssh: golang: golang.org/x/crypto/ssh: Denial of Service via crafted SSH certificate     (CVE-2026-39835)<br /></span><span><br /></span><span>    * podman: Podman: Information disclosure via malicious container image environment variables     (CVE-2026-57231)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the RockyLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326503">https://www.tenable.com/plugins/nessus/326503</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RockyLinux 8 : compat-openssl10 (RLSA-2026:36215)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326502</link>
            <guid>https://www.tenable.com/plugins/nessus/326502</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326502 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote RockyLinux host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote RockyLinux 8 host has packages installed that are affected by a vulnerability as referenced in the RLSA-2026:36215 advisory.<br /></span><span><br /></span><span>    * openssl: Heap Use-After-Free in OpenSSL PKCS7_verify() (CVE-2026-45447)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the RockyLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected compat-openssl10, compat-openssl10-debuginfo and / or compat-openssl10-debugsource packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326502">https://www.tenable.com/plugins/nessus/326502</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RockyLinux 8 : nginx:1.24 (RLSA-2026:38847)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326501</link>
            <guid>https://www.tenable.com/plugins/nessus/326501</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326501 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote RockyLinux host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote RockyLinux 8 host has packages installed that are affected by a vulnerability as referenced in the RLSA-2026:38847 advisory.<br /></span><span><br /></span><span>    * nginx: NGINX: Arbitrary code execution or Denial of Service via heap-based buffer overflow with crafted     HTTP/2 headers (CVE-2026-42055)<br /></span><span><br /></span><span>    Bug Fix(es) and Enhancement(s):<br /></span><span><br /></span><span>    * HTTP/2 bomb nginx fix breaks module ABI causing crashes [rhel-8.10.z] (JIRA:Rocky Linux-191779)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the RockyLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326501">https://www.tenable.com/plugins/nessus/326501</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RockyLinux 10 : freeipmi (RLSA-2026:36211)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326500</link>
            <guid>https://www.tenable.com/plugins/nessus/326500</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326500 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote RockyLinux host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote RockyLinux 10 host has packages installed that are affected by a vulnerability as referenced in the RLSA-2026:36211 advisory.<br /></span><span><br /></span><span>    * freeipmi: FreeIPMI: Denial of service via buffer overflow in ipmi-oem client (CVE-2026-50031)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the RockyLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326500">https://www.tenable.com/plugins/nessus/326500</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RockyLinux 9 : freeipmi (RLSA-2026:36210)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326499</link>
            <guid>https://www.tenable.com/plugins/nessus/326499</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326499 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote RockyLinux host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote RockyLinux 9 host has packages installed that are affected by a vulnerability as referenced in the RLSA-2026:36210 advisory.<br /></span><span><br /></span><span>    * freeipmi: FreeIPMI: Denial of service via buffer overflow in ipmi-oem client (CVE-2026-50031)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the RockyLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326499">https://www.tenable.com/plugins/nessus/326499</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[MiracleLinux 8 : edk2-20220126gitbb1bba3d77-13.el8_10.10 (AXSA:2026-1248:03)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326498</link>
            <guid>https://www.tenable.com/plugins/nessus/326498</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326498 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote MiracleLinux host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote MiracleLinux 8 host has a package installed that is affected by a vulnerability as referenced in the AXSA:2026-1248:03 advisory.<br /></span><span><br /></span><span>    * openssl: Out-of-bounds read & write in RFC 3211 KEK Unwrap (CVE-2025-9230)     Bug Fix(es) and Enhancement(s):<br /></span><span>      * [FJ8.10 Bug] How to Update Secure Boot Certificates with Microsoft 2023 in KVM Guests     (JIRA:RHEL-151949)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the MiracleLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected edk2-ovmf package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326498">https://www.tenable.com/plugins/nessus/326498</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[MiracleLinux 8 : unbound-1.16.2-5.12.el8_10 (AXSA:2026-1249:07)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326497</link>
            <guid>https://www.tenable.com/plugins/nessus/326497</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326497 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote MiracleLinux host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote MiracleLinux 8 host has packages installed that are affected by multiple vulnerabilities as referenced in the AXSA:2026-1249:07 advisory.<br /></span><span><br /></span><span>    * unbound: Unbound: Denial of Service via excessive EDNS options (CVE-2026-41292)<br /></span><span>      * unbound: Unbound: Cache manipulation via 'ghost domain names' attack (CVE-2026-40622)<br /></span><span>      * unbound: Unbound: Denial of Service due to excessive resource consumption with large DNS Resource     Record Sets (CVE-2026-44390)<br /></span><span>      * unbound: Unbound: Denial of Service due to degraded resolution performance in jostle logic     (CVE-2026-42534)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the MiracleLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326497">https://www.tenable.com/plugins/nessus/326497</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Oracle Linux 9 : kernel (ELSA-2026-36957)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326496</link>
            <guid>https://www.tenable.com/plugins/nessus/326496</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326496 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Oracle Linux host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Oracle Linux 9 host has packages installed that are affected by multiple vulnerabilities as referenced in the ELSA-2026-36957 advisory.<br /></span><span><br /></span><span>    - KVM: x86: Fix shadow paging use-after-free due to unexpected role (Paolo Bonzini) [RHEL-192400]     {CVE-2026-53359}<br /></span><span>    - KVM: x86: Fix shadow paging use-after-free due to unexpected GFN (CKI Backport Bot) [RHEL-186702]     {CVE-2026-46113}<br /></span><span>    - net/sched: ets: Always remove class from active list before deleting in ets_qdisc_change (CKI Backport     Bot) [RHEL-183004] {CVE-2025-71066}<br /></span><span>    - eventpoll: fix ep_remove struct eventpoll / struct file UAF (Ian Kent) [RHEL-180773] {CVE-2026-46242}<br /></span><span>    - eventpoll: defer struct eventpoll free to RCU grace period (Ian Kent) [RHEL-173830] {CVE-2026-43074}<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Oracle Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326496">https://www.tenable.com/plugins/nessus/326496</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Ubuntu 22.04 LTS : Linux kernel (Xilinx ZynqMP) vulnerabilities (USN-8528-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326495</link>
            <guid>https://www.tenable.com/plugins/nessus/326495</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326495 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Ubuntu host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Ubuntu 22.04 LTS host has a package installed that is affected by multiple vulnerabilities as referenced in the USN-8528-1 advisory.<br /></span><span><br /></span><span>    It was discovered that the Linux kernel algif_aead module did not properly handle in-place cryptographic     operations. This flaw is known as Copy Fail. A local attacker could use this to escalate privileges, or     possibly escape a container. (CVE-2026-31431)<br /></span><span><br /></span><span>    It was discovered that the Linux kernel did not properly handle shared page fragments during socket buffer     operations, collectively known as Dirty Frag. A logic flaw existed in the XFRM ESP-in-TCP subsystem and in     the RxRPC networking subsystem when processing paged fragments. A local attacker could use this to     escalate privileges, or possibly escape a container. (CVE-2026-43284, CVE-2026-43500)<br /></span><span><br /></span><span>    It was discovered that a logic flaw existed in the XFRM ESP-in-TCP subsystem in the Linux kernel when     handling socket buffer fragments. This flaw is known as Fragnesia. A local attacker could use this to     escalate privileges, or possibly escape a container. (CVE-2026-43503, CVE-2026-46300)<br /></span><span><br /></span><span>    Qualys discovered that a race condition existed in the ptrace subsystem of the Linux kernel when     privileged processes are exiting. An unprivileged local attacker could use this issue to expose sensitive     information. (CVE-2026-46333)<br /></span><span><br /></span><span>    Several security issues were discovered in the Linux kernel. An attacker could possibly use these to     compromise the system. This update corrects flaws in the following subsystems:<br /></span><span><br /></span><span>    - RISC-V architecture;<br /></span><span><br /></span><span>    - Cryptographic API;<br /></span><span><br /></span><span>    - InfiniBand drivers;<br /></span><span><br /></span><span>    - IOMMU subsystem;<br /></span><span><br /></span><span>    - Ethernet bonding driver;<br /></span><span><br /></span><span>    - Network drivers;<br /></span><span><br /></span><span>    - STMicroelectronics network drivers;<br /></span><span><br /></span><span>    - NVME drivers;<br /></span><span><br /></span><span>    - x86 platform drivers;<br /></span><span><br /></span><span>    - SCSI subsystem;<br /></span><span><br /></span><span>    - SPI subsystem;<br /></span><span><br /></span><span>    - TCM subsystem;<br /></span><span><br /></span><span>    - USB over IP driver;<br /></span><span><br /></span><span>    - File systems infrastructure;<br /></span><span><br /></span><span>    - HFS+ file system;<br /></span><span><br /></span><span>    - Network file system (NFS) server daemon;<br /></span><span><br /></span><span>    - SMB network file system;<br /></span><span><br /></span><span>    - IPv6 networking;<br /></span><span><br /></span><span>    - Netfilter;<br /></span><span><br /></span><span>    - Tracing infrastructure;<br /></span><span><br /></span><span>    - io_uring subsystem;<br /></span><span><br /></span><span>    - Timer subsystem;<br /></span><span><br /></span><span>    - B.A.T.M.A.N. meshing protocol;<br /></span><span><br /></span><span>    - Bluetooth subsystem;<br /></span><span><br /></span><span>    - Ethernet bridge;<br /></span><span><br /></span><span>    - Ceph Core library;<br /></span><span><br /></span><span>    - IPv4 networking;<br /></span><span><br /></span><span>    - MAC80211 subsystem;<br /></span><span><br /></span><span>    - Multipath TCP;<br /></span><span><br /></span><span>    - Packet sockets;<br /></span><span><br /></span><span>    - RDS protocol;<br /></span><span><br /></span><span>    - RxRPC session sockets;<br /></span><span><br /></span><span>    - SMC sockets;<br /></span><span><br /></span><span>    - Sun RPC protocol;<br /></span><span><br /></span><span>    - TLS protocol;<br /></span><span><br /></span><span>    - X.25 network layer;<br /></span><span><br /></span><span>    - AMD SoC Alsa drivers;<br /></span><span><br /></span><span>    - KVM subsystem; (CVE-2022-48816, CVE-2023-53673, CVE-2024-35862, CVE-2024-50060, CVE-2025-37778,     CVE-2025-37822, CVE-2025-37924, CVE-2025-38201, CVE-2025-40082, CVE-2025-68214, CVE-2025-68263,     CVE-2025-71089, CVE-2025-71220, CVE-2025-71222, CVE-2025-71224, CVE-2026-23176, CVE-2026-23180,     CVE-2026-23182, CVE-2026-23190, CVE-2026-23193, CVE-2026-23198, CVE-2026-23202, CVE-2026-23206,     CVE-2026-23216, CVE-2026-23256, CVE-2026-23257, CVE-2026-23258, CVE-2026-23262, CVE-2026-23272,     CVE-2026-23274, CVE-2026-23278, CVE-2026-23351, CVE-2026-23428, CVE-2026-23450, CVE-2026-23455,     CVE-2026-31402, CVE-2026-31418, CVE-2026-31419, CVE-2026-31478, CVE-2026-31504, CVE-2026-31533,     CVE-2026-31607, CVE-2026-31637, CVE-2026-31649, CVE-2026-31657, CVE-2026-31659, CVE-2026-31668,     CVE-2026-31669, CVE-2026-31682, CVE-2026-31685, CVE-2026-43011, CVE-2026-43033, CVE-2026-43037,     CVE-2026-43038, CVE-2026-43071, CVE-2026-43077, CVE-2026-43078, CVE-2026-43114, CVE-2026-43117,     CVE-2026-43186, CVE-2026-43304, CVE-2026-43341, CVE-2026-43383, CVE-2026-43406, CVE-2026-43407,     CVE-2026-43414, CVE-2026-43493, CVE-2026-43494, CVE-2026-43501, CVE-2026-45988, CVE-2026-46028,     CVE-2026-46043, CVE-2026-46119, CVE-2026-46135, CVE-2026-46195, CVE-2026-46243)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Ubuntu security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected kernel package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326495">https://www.tenable.com/plugins/nessus/326495</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RHEL 9 : libreoffice (RHSA-2026:38507)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326494</link>
            <guid>https://www.tenable.com/plugins/nessus/326494</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326494 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Red Hat host is missing a security update for libreoffice.<br /></span>
      <h3>Description</h3>
      <span>The remote Redhat Enterprise Linux 9 host has packages installed that are affected by a vulnerability as referenced in the RHSA-2026:38507 advisory.<br /></span><span><br /></span><span>    LibreOffice is an open source, community-developed office productivity suite. It includes key desktop     applications, such as a word processor, a spreadsheet, a presentation manager, a formula editor, and a     drawing program. LibreOffice replaces OpenOffice and provides a similar but enhanced and extended office     suite.<br /></span><span><br /></span><span>    Security Fix(es):<br /></span><span><br /></span><span>    * LibreOffice: LibreOffice: Denial of Service via crafted OOXML documents (CVE-2026-4430)<br /></span><span><br /></span><span>    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and     other related information, refer to the CVE page(s) listed in the References section.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Red Hat Enterprise Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the RHEL libreoffice package based on the guidance in RHSA-2026:38507.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326494">https://www.tenable.com/plugins/nessus/326494</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RHEL 9 : xorg-x11-server (RHSA-2026:38486)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326493</link>
            <guid>https://www.tenable.com/plugins/nessus/326493</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326493 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Red Hat host is missing a security update for xorg-x11-server.<br /></span>
      <h3>Description</h3>
      <span>The remote Redhat Enterprise Linux 9 host has packages installed that are affected by a vulnerability as referenced in the RHSA-2026:38486 advisory.<br /></span><span><br /></span><span>    X.Org is an open-source implementation of the X Window System. It provides the basic low-level     functionality that full-fledged graphical user interfaces are designed upon.<br /></span><span><br /></span><span>    Security Fix(es):<br /></span><span><br /></span><span>    * xorg: X11: xserver: X.org: glamor Font Atlas Heap Buffer Overflow (CVE-2026-55999)<br /></span><span><br /></span><span>    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and     other related information, refer to the CVE page(s) listed in the References section.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Red Hat Enterprise Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the RHEL xorg-x11-server package based on the guidance in RHSA-2026:38486.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326493">https://www.tenable.com/plugins/nessus/326493</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RHEL 9 : perl-DBI (RHSA-2026:38512)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326492</link>
            <guid>https://www.tenable.com/plugins/nessus/326492</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326492 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Red Hat host is missing a security update for perl-DBI.<br /></span>
      <h3>Description</h3>
      <span>The remote Redhat Enterprise Linux 9 host has a package installed that is affected by a vulnerability as referenced in the RHSA-2026:38512 advisory.<br /></span><span><br /></span><span>    DBI is a database access Application Programming Interface (API) for the Perl Language. The DBI API     Specification defines a set of functions, variables and conventions that provide a consistent database     interface independent of the actual database being used.<br /></span><span><br /></span><span>    Security Fix(es):<br /></span><span><br /></span><span>    * DBI: DBI: Buffer overflow in error handling can lead to arbitrary code execution (CVE-2026-9698)<br /></span><span><br /></span><span>    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and     other related information, refer to the CVE page(s) listed in the References section.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Red Hat Enterprise Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the RHEL perl-DBI package based on the guidance in RHSA-2026:38512.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326492">https://www.tenable.com/plugins/nessus/326492</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RHEL 9 : gimp (RHSA-2026:38496)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326491</link>
            <guid>https://www.tenable.com/plugins/nessus/326491</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326491 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Red Hat host is missing a security update for gimp.<br /></span>
      <h3>Description</h3>
      <span>The remote Redhat Enterprise Linux 9 host has packages installed that are affected by a vulnerability as referenced in the RHSA-2026:38496 advisory.<br /></span><span><br /></span><span>    The GIMP (GNU Image Manipulation Program) is an image composition and editing program. GIMP provides a     large image manipulation toolbox, including channel operations and layers, effects, sub-pixel imaging and     anti-aliasing, and conversions, all with multi-level undo.<br /></span><span><br /></span><span>    Security Fix(es):<br /></span><span><br /></span><span>    * gimp: gimp: Heap buffer overflow in read_channel_data() (CVE-2026-58379)<br /></span><span><br /></span><span>    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and     other related information, refer to the CVE page(s) listed in the References section.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Red Hat Enterprise Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the RHEL gimp package based on the guidance in RHSA-2026:38496.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326491">https://www.tenable.com/plugins/nessus/326491</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RHEL 10 : podman (RHSA-2026:38495)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326490</link>
            <guid>https://www.tenable.com/plugins/nessus/326490</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326490 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Red Hat host is missing a security update for podman.<br /></span>
      <h3>Description</h3>
      <span>The remote Redhat Enterprise Linux 10 host has packages installed that are affected by a vulnerability as referenced in the RHSA-2026:38495 advisory.<br /></span><span><br /></span><span>    The podman tool manages pods, container images, and containers. It is part of the libpod library, which is     for applications that use container pods. Container pods is a concept in Kubernetes.<br /></span><span><br /></span><span>    Security Fix(es):<br /></span><span><br /></span><span>    * os: golang: Go os.Root: Symlink following vulnerability allows directory traversal (CVE-2026-39822)<br /></span><span><br /></span><span>    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and     other related information, refer to the CVE page(s) listed in the References section.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Red Hat Enterprise Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the RHEL podman package based on the guidance in RHSA-2026:38495.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326490">https://www.tenable.com/plugins/nessus/326490</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RHEL 9 : openexr (RHSA-2026:38498)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326489</link>
            <guid>https://www.tenable.com/plugins/nessus/326489</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326489 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Red Hat host is missing one or more security updates for openexr.<br /></span>
      <h3>Description</h3>
      <span>The remote Redhat Enterprise Linux 9 host has packages installed that are affected by multiple vulnerabilities as referenced in the RHSA-2026:38498 advisory.<br /></span><span><br /></span><span>    OpenEXR is an open-source high-dynamic-range floating-point image file format for high-quality image     processing and storage. This document presents a brief overview of OpenEXR and explains concepts that are     specific to this format.  This package containes the binaries for OpenEXR.<br /></span><span><br /></span><span>    Security Fix(es):<br /></span><span><br /></span><span>    * OpenEXR: OpenEXR: Arbitrary code execution via integer overflow in image resizing (CVE-2026-41142)<br /></span><span><br /></span><span>    * OpenEXR: OpenEXR: Information disclosure and denial of service via malformed EXR files (CVE-2026-42216)<br /></span><span><br /></span><span>    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and     other related information, refer to the CVE page(s) listed in the References section.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Red Hat Enterprise Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the RHEL openexr package based on the guidance in RHSA-2026:38498.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326489">https://www.tenable.com/plugins/nessus/326489</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RHEL 10 : perl-DBI (RHSA-2026:38513)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326488</link>
            <guid>https://www.tenable.com/plugins/nessus/326488</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326488 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Red Hat host is missing a security update for perl-DBI.<br /></span>
      <h3>Description</h3>
      <span>The remote Redhat Enterprise Linux 10 host has a package installed that is affected by a vulnerability as referenced in the RHSA-2026:38513 advisory.<br /></span><span><br /></span><span>    DBI is a database access Application Programming Interface (API) for the Perl Language. The DBI API     Specification defines a set of functions, variables and conventions that provide a consistent database     interface independent of the actual database being used.<br /></span><span><br /></span><span>    Security Fix(es):<br /></span><span><br /></span><span>    * DBI: DBI: Buffer overflow in error handling can lead to arbitrary code execution (CVE-2026-9698)<br /></span><span><br /></span><span>    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and     other related information, refer to the CVE page(s) listed in the References section.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Red Hat Enterprise Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the RHEL perl-DBI package based on the guidance in RHSA-2026:38513.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326488">https://www.tenable.com/plugins/nessus/326488</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RHEL 8 : openssl (RHSA-2026:38804)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326487</link>
            <guid>https://www.tenable.com/plugins/nessus/326487</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326487 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Red Hat host is missing a security update for openssl.<br /></span>
      <h3>Description</h3>
      <span>The remote Redhat Enterprise Linux 8 host has packages installed that are affected by a vulnerability as referenced in the RHSA-2026:38804 advisory.<br /></span><span><br /></span><span>    OpenSSL is a toolkit that implements the Secure Sockets Layer (SSL) and Transport Layer Security (TLS)     protocols, as well as a full-strength general-purpose cryptography library.<br /></span><span><br /></span><span>    Security Fix(es):<br /></span><span><br /></span><span>    * openssl: OpenSSL: Denial of Service due to NULL pointer dereference in CMS EnvelopedData processing     (CVE-2026-28390)<br /></span><span><br /></span><span>    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and     other related information, refer to the CVE page(s) listed in the References section.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Red Hat Enterprise Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the RHEL openssl package based on the guidance in RHSA-2026:38804.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326487">https://www.tenable.com/plugins/nessus/326487</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Fedora 43 : attr (2026-b85570f8e4)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326486</link>
            <guid>https://www.tenable.com/plugins/nessus/326486</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326486 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Fedora host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Fedora 43 host has a package installed that is affected by a vulnerability as referenced in the FEDORA-2026-b85570f8e4 advisory.<br /></span><span><br /></span><span>    rebase to v2.6.0 to fix CVE-2026-54371<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Fedora security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected attr package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326486">https://www.tenable.com/plugins/nessus/326486</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Debian dla-4679 : libd3dadapter9-mesa - security update]]></title>
            <link>https://www.tenable.com/plugins/nessus/326485</link>
            <guid>https://www.tenable.com/plugins/nessus/326485</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326485 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Debian host is missing a security-related update.<br /></span>
      <h3>Description</h3>
      <span>The remote Debian 11 host has packages installed that are affected by a vulnerability as referenced in the dla-4679 advisory.<br /></span><span><br /></span><span>    -------------------------------------------------------------------------     Debian LTS Advisory DLA-4679-1                debian-lts@lists.debian.org     https://www.debian.org/lts/security/                         Tobias Frost     July 13, 2026                                 https://wiki.debian.org/LTS<br /></span><span>    -------------------------------------------------------------------------<br /></span><span><br /></span><span>    Package        : mesa     Version        : 20.3.5-1+deb11u1 $bookworm_VERSION     CVE ID         : CVE-2026-40393     Debian Bug     :<br /></span><span><br /></span><span>    A vulnerability has been found in the mesa 3D graphics library, possibly     allowing out of bound memory access by craftet input.<br /></span><span><br /></span><span>    CVE-2026-40393<br /></span><span><br /></span><span>      An out-of-bounds memory access can occur in WebGPU because the amount       of to-be-allocated data depends on an untrusted party, and is then       used for alloca.<br /></span><span><br /></span><span>    For Debian 11 bullseye, this problem has been fixed in version     20.3.5-1+deb11u1.<br /></span><span><br /></span><span>    For Debian 12 bookworm, this problem has been fixed in version     $bookworm_VERSION.<br /></span><span><br /></span><span>    We recommend that you upgrade your mesa packages.<br /></span><span><br /></span><span>    For the detailed security status of mesa please refer to     its security tracker page at:<br /></span><span>    https://security-tracker.debian.org/tracker/mesa<br /></span><span><br /></span><span>    Further information about Debian LTS security advisories, how to apply     these updates to your system and frequently asked questions can be     found at: https://wiki.debian.org/LTS     Attachment:<br /></span><span>    signature.asc     Description: PGP signature<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Debian security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade the libd3dadapter9-mesa packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326485">https://www.tenable.com/plugins/nessus/326485</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Ubuntu 22.04 LTS : Linux kernel (Raspberry Pi) vulnerabilities (USN-8527-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326484</link>
            <guid>https://www.tenable.com/plugins/nessus/326484</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326484 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Ubuntu host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Ubuntu 22.04 LTS host has a package installed that is affected by multiple vulnerabilities as referenced in the USN-8527-1 advisory.<br /></span><span><br /></span><span>    Several security issues were discovered in the Linux kernel. An attacker could possibly use these to     compromise the system. This update corrects flaws in the following subsystems:<br /></span><span><br /></span><span>    - RISC-V architecture;<br /></span><span><br /></span><span>    - Cryptographic API;<br /></span><span><br /></span><span>    - InfiniBand drivers;<br /></span><span><br /></span><span>    - IOMMU subsystem;<br /></span><span><br /></span><span>    - Network drivers;<br /></span><span><br /></span><span>    - STMicroelectronics network drivers;<br /></span><span><br /></span><span>    - NVME drivers;<br /></span><span><br /></span><span>    - x86 platform drivers;<br /></span><span><br /></span><span>    - SCSI subsystem;<br /></span><span><br /></span><span>    - SPI subsystem;<br /></span><span><br /></span><span>    - TCM subsystem;<br /></span><span><br /></span><span>    - USB over IP driver;<br /></span><span><br /></span><span>    - File systems infrastructure;<br /></span><span><br /></span><span>    - HFS+ file system;<br /></span><span><br /></span><span>    - Network file system (NFS) server daemon;<br /></span><span><br /></span><span>    - SMB network file system;<br /></span><span><br /></span><span>    - IPv6 networking;<br /></span><span><br /></span><span>    - Tracing infrastructure;<br /></span><span><br /></span><span>    - Timer subsystem;<br /></span><span><br /></span><span>    - B.A.T.M.A.N. meshing protocol;<br /></span><span><br /></span><span>    - Bluetooth subsystem;<br /></span><span><br /></span><span>    - Ethernet bridge;<br /></span><span><br /></span><span>    - Ceph Core library;<br /></span><span><br /></span><span>    - IPv4 networking;<br /></span><span><br /></span><span>    - MAC80211 subsystem;<br /></span><span><br /></span><span>    - Multipath TCP;<br /></span><span><br /></span><span>    - Netfilter;<br /></span><span><br /></span><span>    - RxRPC session sockets;<br /></span><span><br /></span><span>    - SMC sockets;<br /></span><span><br /></span><span>    - Sun RPC protocol;<br /></span><span><br /></span><span>    - X.25 network layer;<br /></span><span><br /></span><span>    - AMD SoC Alsa drivers;<br /></span><span><br /></span><span>    - KVM subsystem; (CVE-2022-48816, CVE-2023-53673, CVE-2025-37778, CVE-2025-37822, CVE-2025-37924,     CVE-2025-38201, CVE-2025-40082, CVE-2025-68214, CVE-2025-68263, CVE-2025-71089, CVE-2025-71220,     CVE-2025-71222, CVE-2025-71224, CVE-2026-23176, CVE-2026-23180, CVE-2026-23182, CVE-2026-23190,     CVE-2026-23193, CVE-2026-23198, CVE-2026-23202, CVE-2026-23206, CVE-2026-23216, CVE-2026-23256,     CVE-2026-23257, CVE-2026-23258, CVE-2026-23262, CVE-2026-23272, CVE-2026-23278, CVE-2026-23428,     CVE-2026-23450, CVE-2026-23455, CVE-2026-31402, CVE-2026-31418, CVE-2026-31478, CVE-2026-31607,     CVE-2026-31637, CVE-2026-31649, CVE-2026-31657, CVE-2026-31659, CVE-2026-31668, CVE-2026-31669,     CVE-2026-31682, CVE-2026-31685, CVE-2026-43011, CVE-2026-43037, CVE-2026-43038, CVE-2026-43071,     CVE-2026-43114, CVE-2026-43117, CVE-2026-43186, CVE-2026-43304, CVE-2026-43341, CVE-2026-43383,     CVE-2026-43406, CVE-2026-43407, CVE-2026-43414, CVE-2026-43493, CVE-2026-43501, CVE-2026-45988,     CVE-2026-46043, CVE-2026-46119, CVE-2026-46135, CVE-2026-46195, CVE-2026-46243)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Ubuntu security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected kernel package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326484">https://www.tenable.com/plugins/nessus/326484</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Ubuntu 18.04 LTS : Linux kernel (AWS) vulnerabilities (USN-8530-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326483</link>
            <guid>https://www.tenable.com/plugins/nessus/326483</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326483 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Ubuntu host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Ubuntu 18.04 LTS host has a package installed that is affected by multiple vulnerabilities as referenced in the USN-8530-1 advisory.<br /></span><span><br /></span><span>    It was discovered that the Linux kernel did not properly handle shared page fragments during socket buffer     operations, collectively known as Dirty Frag. A logic flaw existed in the XFRM ESP-in-TCP subsystem and in     the RxRPC networking subsystem when processing paged fragments. A local attacker could use this to     escalate privileges, or possibly escape a container. (CVE-2026-43284)<br /></span><span><br /></span><span>    It was discovered that a logic flaw existed in the XFRM ESP-in-TCP subsystem in the Linux kernel when     handling socket buffer fragments. This flaw is known as Fragnesia. A local attacker could use this to     escalate privileges, or possibly escape a container. (CVE-2026-43503)<br /></span><span><br /></span><span>    Several security issues were discovered in the Linux kernel. An attacker could possibly use these to     compromise the system. This update corrects flaws in the following subsystems:<br /></span><span><br /></span><span>    - InfiniBand drivers;<br /></span><span><br /></span><span>    - SCSI subsystem;<br /></span><span><br /></span><span>    - Thermal drivers;<br /></span><span><br /></span><span>    - USB over IP driver;<br /></span><span><br /></span><span>    - Network file system (NFS) server daemon;<br /></span><span><br /></span><span>    - SMB network file system;<br /></span><span><br /></span><span>    - Tracing infrastructure;<br /></span><span><br /></span><span>    - B.A.T.M.A.N. meshing protocol;<br /></span><span><br /></span><span>    - Ethernet bridge;<br /></span><span><br /></span><span>    - Ceph Core library;<br /></span><span><br /></span><span>    - DCCP (Datagram Congestion Control Protocol);<br /></span><span><br /></span><span>    - IPv4 networking;<br /></span><span><br /></span><span>    - IPv6 networking;<br /></span><span><br /></span><span>    - Netfilter;<br /></span><span><br /></span><span>    - RxRPC session sockets;<br /></span><span><br /></span><span>    - X.25 network layer; (CVE-2021-47202, CVE-2024-56643, CVE-2026-23272, CVE-2026-23455, CVE-2026-31402,     CVE-2026-31607, CVE-2026-31637, CVE-2026-31659, CVE-2026-31682, CVE-2026-31685, CVE-2026-43011,     CVE-2026-43037, CVE-2026-43038, CVE-2026-43383, CVE-2026-43407, CVE-2026-43414, CVE-2026-45988,     CVE-2026-46043, CVE-2026-46119, CVE-2026-46243)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Ubuntu security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected kernel package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326483">https://www.tenable.com/plugins/nessus/326483</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Ubuntu 18.04 LTS : Linux kernel vulnerabilities (USN-8529-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326482</link>
            <guid>https://www.tenable.com/plugins/nessus/326482</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326482 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Ubuntu host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Ubuntu 18.04 LTS host has a package installed that is affected by multiple vulnerabilities as referenced in the USN-8529-1 advisory.<br /></span><span><br /></span><span>    It was discovered that a logic flaw existed in the XFRM ESP-in-TCP subsystem in the Linux kernel when     handling socket buffer fragments. This flaw is known as Fragnesia. A local attacker could use this to     escalate privileges, or possibly escape a container. (CVE-2026-43503)<br /></span><span><br /></span><span>    Several security issues were discovered in the Linux kernel. An attacker could possibly use these to     compromise the system. This update corrects flaws in the following subsystems:<br /></span><span><br /></span><span>    - InfiniBand drivers;<br /></span><span><br /></span><span>    - SCSI subsystem;<br /></span><span><br /></span><span>    - Thermal drivers;<br /></span><span><br /></span><span>    - USB over IP driver;<br /></span><span><br /></span><span>    - Network file system (NFS) server daemon;<br /></span><span><br /></span><span>    - SMB network file system;<br /></span><span><br /></span><span>    - Tracing infrastructure;<br /></span><span><br /></span><span>    - B.A.T.M.A.N. meshing protocol;<br /></span><span><br /></span><span>    - Ethernet bridge;<br /></span><span><br /></span><span>    - Ceph Core library;<br /></span><span><br /></span><span>    - DCCP (Datagram Congestion Control Protocol);<br /></span><span><br /></span><span>    - IPv4 networking;<br /></span><span><br /></span><span>    - IPv6 networking;<br /></span><span><br /></span><span>    - Netfilter;<br /></span><span><br /></span><span>    - RxRPC session sockets;<br /></span><span><br /></span><span>    - X.25 network layer; (CVE-2021-47202, CVE-2024-56643, CVE-2026-23272, CVE-2026-23455, CVE-2026-31402,     CVE-2026-31607, CVE-2026-31637, CVE-2026-31659, CVE-2026-31682, CVE-2026-31685, CVE-2026-43011,     CVE-2026-43037, CVE-2026-43038, CVE-2026-43383, CVE-2026-43407, CVE-2026-43414, CVE-2026-45988,     CVE-2026-46043, CVE-2026-46119, CVE-2026-46243)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Ubuntu security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected kernel package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326482">https://www.tenable.com/plugins/nessus/326482</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[MiracleLinux 8 : kernel-4.18.0-553.139.1.el8_10 (AXSA:2026-1250:48)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326481</link>
            <guid>https://www.tenable.com/plugins/nessus/326481</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326481 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote MiracleLinux host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote MiracleLinux 8 host has packages installed that are affected by multiple vulnerabilities as referenced in the AXSA:2026-1250:48 advisory.<br /></span><span><br /></span><span>    * kernel: scsi: target: iscsi: Fix use-after-free in iscsit_dec_conn_usage_count() (CVE-2026-23216)<br /></span><span>      * kernel: gfs2: Fix use-after-free in iomap inline data write path (CVE-2026-45984)<br /></span><span>      * kernel: RDMA/vmw_pvrdma: Fix double free on pvrdma_alloc_ucontext() error path (CVE-2026-46189)     Bug Fix(es) and Enhancement(s):<br /></span><span>      * [RHEL 8.10.z] Add an .sbat section to the x86 kernel (JIRA:RHEL-182788)<br /></span><span>      * Incorrect message NFS: Server wrote zero bytes is shown in the logs (JIRA:RHEL-147665)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the MiracleLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326481">https://www.tenable.com/plugins/nessus/326481</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Oracle Linux 8 : kernel (ELSA-2026-36366)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326480</link>
            <guid>https://www.tenable.com/plugins/nessus/326480</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326480 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Oracle Linux host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote Oracle Linux 8 host has packages installed that are affected by a vulnerability as referenced in the ELSA-2026-36366 advisory.<br /></span><span><br /></span><span>    - fs/smb/client: fix out-of-bounds read in cifs_sanitize_prepath (CKI Backport Bot) [RHEL-189506]     {CVE-2026-43112}<br /></span><span>    - Enable workaround for ARM64 ERRATUM 4118414 (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - arm64: errata: Mitigate TLBI errata on Microsoft Azure Cobalt 100 CPU (Mark Salter) [RHEL-183619]     {CVE-2025-10263}<br /></span><span>    - arm64: errata: Mitigate TLBI errata on NVIDIA Olympus CPU (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - arm64: errata: Mitigate TLBI errata on various Arm CPUs (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - arm64: Add part number for Arm Cortex-A78AE (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - arm64: Subscribe Microsoft Azure Cobalt 100 to ARM Neoverse N2 errata (Mark Salter) [RHEL-183619]     {CVE-2025-10263}<br /></span><span>    - arm64: cputype: Add NVIDIA Olympus definitions (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - arm64: cputype: Add C1-Premium definitions (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - arm64: cputype: Add C1-Ultra definitions (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - arm64: cputype: Add C1-Pro definitions (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - arm64: cputype: Add Cortex-A720AE definitions (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - arm64: cputype: Add Neoverse-N3 definitions (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - arm64: cputype: Add Cortex-A725 definitions (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - arm64: cputype: Add Cortex-A720 definitions (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - arm64: Add Cortex-715 CPU part definition (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - arm64: cputype: Add Neoverse-V3AE definitions (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - arm64: cputype: Add MIDR_CORTEX_A76AE (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - arm64: cputype: Add Cortex-X1C definitions (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - arm64: cputype: Add Cortex-X925 definitions (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - arm64: cputype: Add Cortex-X3 definitions (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - arm64: cputype: Add Neoverse-V3 definitions (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - arm64: cputype: Add Cortex-X4 definitions (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - arm64: Add Neoverse-V2 part (Mark Salter) [RHEL-183619] {CVE-2025-10263}<br /></span><span>    - tcp: fix potential race in tcp_v6_syn_recv_sock() (Antoine Tenart) [RHEL-174237] {CVE-2026-43198}<br /></span><span>    - procfs: fix missing RCU protection when reading real_parent in do_task_stat() (CKI Backport Bot)     [RHEL-181898] {CVE-2026-46259}<br /></span><span>    - drm/gem: Fix inconsistent plane dimension calculation in drm_gem_fb_init_with_funcs() (CKI Backport Bot)     [RHEL-179907] {CVE-2026-46209}<br /></span><span>    - sctp: revalidate list cursor after sctp_sendmsg_to_asoc() in SCTP_SENDALL (CKI Backport Bot)     [RHEL-179857] {CVE-2026-46227}<br /></span><span>    - netfilter: nfnetlink_cthelper: fix OOB read in nfnl_cthelper_dump_table() (CKI Backport Bot)     [RHEL-179736] {CVE-2026-43450}<br /></span><span>    - gfs2: Fix use-after-free in iomap inline data write path (Andrew Price) [RHEL-179596] {CVE-2026-45984}<br /></span><span>    - gfs2: Add metapath_dibh helper (Andrew Price) [RHEL-179596] {CVE-2026-45984}<br /></span><span>    - RDMA/vmw_pvrdma: Fix double free on pvrdma_alloc_ucontext() error path (CKI Backport Bot) [RHEL-179963]     {CVE-2026-46189}<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Oracle Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326480">https://www.tenable.com/plugins/nessus/326480</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RHEL 9 : thunderbird (RHSA-2026:38750)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326479</link>
            <guid>https://www.tenable.com/plugins/nessus/326479</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326479 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Red Hat host is missing one or more security updates for thunderbird.<br /></span>
      <h3>Description</h3>
      <span>The remote Redhat Enterprise Linux 9 host has a package installed that is affected by multiple vulnerabilities as referenced in the RHSA-2026:38750 advisory.<br /></span><span><br /></span><span>    Mozilla Thunderbird is a standalone mail and newsgroup client.<br /></span><span><br /></span><span>    Security Fix(es):<br /></span><span><br /></span><span>    * firefox: thunderbird: Sandbox escape in the DOM: Workers component (CVE-2026-12294)<br /></span><span><br /></span><span>    * firefox: thunderbird: Information disclosure, sandbox escape in the Security: Process Sandboxing     component (CVE-2026-12313)<br /></span><span><br /></span><span>    * firefox: thunderbird: Information disclosure, sandbox escape in the Security: Process Sandboxing     component (CVE-2026-12311)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12290)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bugs fixed in Firefox ESR 140.12, Thunderbird ESR 140.12, Firefox     152 and Thunderbird 152 (CVE-2026-12327)<br /></span><span><br /></span><span>    * firefox: thunderbird: JIT miscompilation in the DOM: Core & HTML component (CVE-2026-12299)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12329)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12312)<br /></span><span><br /></span><span>    * firefox: thunderbird: Mitigation bypass in the DOM: Security component (CVE-2026-12302)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bugs fixed in Firefox ESR 115.37, Firefox ESR 140.12, Thunderbird     ESR 140.12, Firefox 152 and Thunderbird 152 (CVE-2026-12328)<br /></span><span><br /></span><span>    * firefox: thunderbird: Incorrect boundary conditions in the Internationalization component     (CVE-2026-12330)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12314)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12309)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12310)<br /></span><span><br /></span><span>    * firefox: thunderbird: Denial-of-service in the Graphics: ImageLib component (CVE-2026-12325)<br /></span><span><br /></span><span>    * firefox: thunderbird: Sandbox escape in the DOM: Navigation component (CVE-2026-12295)<br /></span><span><br /></span><span>    * firefox: thunderbird: Privilege escalation in the Graphics: WebRender component (CVE-2026-12289)<br /></span><span><br /></span><span>    * firefox: thunderbird: Mitigation bypass in the DOM: Security component (CVE-2026-12315)<br /></span><span><br /></span><span>    * firefox: thunderbird: Sandbox escape in the Security: Process Sandboxing component (CVE-2026-12296)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12306)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12307)<br /></span><span><br /></span><span>    * firefox: thunderbird: Sandbox escape due to incorrect boundary conditions in the Networking component     (CVE-2026-12297)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12305)<br /></span><span><br /></span><span>    * firefox: thunderbird: Incorrect boundary conditions in the Web Audio component (CVE-2026-12292)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12308)<br /></span><span><br /></span><span>    * firefox: thunderbird: Incorrect boundary conditions in the Graphics: CanvasWebGL component     (CVE-2026-12324)<br /></span><span><br /></span><span>    * firefox: thunderbird: Same-origin policy bypass in the Networking: Cookies component (CVE-2026-12304)<br /></span><span><br /></span><span>    * firefox: thunderbird: Use-after-free in the Networking: HTTP component (CVE-2026-12291)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bug fixed in Firefox ESR 140.12 (CVE-2026-12298)<br /></span><span><br /></span><span>    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and     other related information, refer to the CVE page(s) listed in the References section.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Red Hat Enterprise Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the RHEL thunderbird package based on the guidance in RHSA-2026:38750.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326479">https://www.tenable.com/plugins/nessus/326479</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RHEL 8 : xorg-x11-server (RHSA-2026:38487)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326478</link>
            <guid>https://www.tenable.com/plugins/nessus/326478</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326478 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Red Hat host is missing a security update for xorg-x11-server.<br /></span>
      <h3>Description</h3>
      <span>The remote Redhat Enterprise Linux 8 host has packages installed that are affected by a vulnerability as referenced in the RHSA-2026:38487 advisory.<br /></span><span><br /></span><span>    X.Org is an open-source implementation of the X Window System. It provides the basic low-level     functionality that full-fledged graphical user interfaces are designed upon.<br /></span><span><br /></span><span>    Security Fix(es):<br /></span><span><br /></span><span>    * xorg: X11: xserver: X.org: glamor Font Atlas Heap Buffer Overflow (CVE-2026-55999)<br /></span><span><br /></span><span>    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and     other related information, refer to the CVE page(s) listed in the References section.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Red Hat Enterprise Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the RHEL xorg-x11-server package based on the guidance in RHSA-2026:38487.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326478">https://www.tenable.com/plugins/nessus/326478</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RHEL 9 : xorg-x11-server-Xwayland (RHSA-2026:38490)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326477</link>
            <guid>https://www.tenable.com/plugins/nessus/326477</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326477 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Red Hat host is missing one or more security updates for xorg-x11-server-Xwayland.<br /></span>
      <h3>Description</h3>
      <span>The remote Redhat Enterprise Linux 9 host has packages installed that are affected by multiple vulnerabilities as referenced in the RHSA-2026:38490 advisory.<br /></span><span><br /></span><span>    Xwayland is an X server for running X clients under Wayland.<br /></span><span><br /></span><span>    Security Fix(es):<br /></span><span><br /></span><span>    * xorg: X11: xserver: X.org: glamor Font Atlas Heap Buffer Overflow (CVE-2026-55999)<br /></span><span><br /></span><span>    * X.org: xorg-x11-server: GLX contextTags Use-After-Free in CommonMakeCurrent() (CVE-2026-56000)<br /></span><span><br /></span><span>    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and     other related information, refer to the CVE page(s) listed in the References section.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Red Hat Enterprise Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the RHEL xorg-x11-server-Xwayland packages based on the guidance in RHSA-2026:38490.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326477">https://www.tenable.com/plugins/nessus/326477</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RHEL 9 : plexus-utils (RHSA-2026:38796)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326476</link>
            <guid>https://www.tenable.com/plugins/nessus/326476</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326476 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Red Hat host is missing a security update for plexus-utils.<br /></span>
      <h3>Description</h3>
      <span>The remote Redhat Enterprise Linux 9 host has a package installed that is affected by a vulnerability as referenced in the RHSA-2026:38796 advisory.<br /></span><span><br /></span><span>    The Plexus project seeks to create end-to-end developer tools for writing applications. At the core is the     container, which can be embedded or for a full scale application server. There are many reusable     components for hibernate, form processing, jndi, i18n, velocity, etc. Plexus also includes an application     server which is like a J2EE application server, without all the baggage.<br /></span><span><br /></span><span>    Security Fix(es):<br /></span><span><br /></span><span>    * org.codehaus.plexus:plexus-utils: Plexus-utils: Directory Traversal in extractFile method     (CVE-2025-67030)<br /></span><span><br /></span><span>    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and     other related information, refer to the CVE page(s) listed in the References section.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Red Hat Enterprise Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the RHEL plexus-utils package based on the guidance in RHSA-2026:38796.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326476">https://www.tenable.com/plugins/nessus/326476</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RHEL 10 : thunderbird (RHSA-2026:38751)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326475</link>
            <guid>https://www.tenable.com/plugins/nessus/326475</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326475 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Red Hat host is missing one or more security updates for thunderbird.<br /></span>
      <h3>Description</h3>
      <span>The remote Redhat Enterprise Linux 10 host has a package installed that is affected by multiple vulnerabilities as referenced in the RHSA-2026:38751 advisory.<br /></span><span><br /></span><span>    Mozilla Thunderbird is a standalone mail and newsgroup client.<br /></span><span><br /></span><span>    Security Fix(es):<br /></span><span><br /></span><span>    * firefox: thunderbird: Sandbox escape in the DOM: Workers component (CVE-2026-12294)<br /></span><span><br /></span><span>    * firefox: thunderbird: Information disclosure, sandbox escape in the Security: Process Sandboxing     component (CVE-2026-12313)<br /></span><span><br /></span><span>    * firefox: thunderbird: Information disclosure, sandbox escape in the Security: Process Sandboxing     component (CVE-2026-12311)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12290)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bugs fixed in Firefox ESR 140.12, Thunderbird ESR 140.12, Firefox     152 and Thunderbird 152 (CVE-2026-12327)<br /></span><span><br /></span><span>    * firefox: thunderbird: JIT miscompilation in the DOM: Core & HTML component (CVE-2026-12299)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12329)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12312)<br /></span><span><br /></span><span>    * firefox: thunderbird: Mitigation bypass in the DOM: Security component (CVE-2026-12302)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bugs fixed in Firefox ESR 115.37, Firefox ESR 140.12, Thunderbird     ESR 140.12, Firefox 152 and Thunderbird 152 (CVE-2026-12328)<br /></span><span><br /></span><span>    * firefox: thunderbird: Incorrect boundary conditions in the Internationalization component     (CVE-2026-12330)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12314)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12309)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12310)<br /></span><span><br /></span><span>    * firefox: thunderbird: Denial-of-service in the Graphics: ImageLib component (CVE-2026-12325)<br /></span><span><br /></span><span>    * firefox: thunderbird: Sandbox escape in the DOM: Navigation component (CVE-2026-12295)<br /></span><span><br /></span><span>    * firefox: thunderbird: Privilege escalation in the Graphics: WebRender component (CVE-2026-12289)<br /></span><span><br /></span><span>    * firefox: thunderbird: Mitigation bypass in the DOM: Security component (CVE-2026-12315)<br /></span><span><br /></span><span>    * firefox: thunderbird: Sandbox escape in the Security: Process Sandboxing component (CVE-2026-12296)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12306)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12307)<br /></span><span><br /></span><span>    * firefox: thunderbird: Sandbox escape due to incorrect boundary conditions in the Networking component     (CVE-2026-12297)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12305)<br /></span><span><br /></span><span>    * firefox: thunderbird: Incorrect boundary conditions in the Web Audio component (CVE-2026-12292)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12308)<br /></span><span><br /></span><span>    * firefox: thunderbird: Incorrect boundary conditions in the Graphics: CanvasWebGL component     (CVE-2026-12324)<br /></span><span><br /></span><span>    * firefox: thunderbird: Same-origin policy bypass in the Networking: Cookies component (CVE-2026-12304)<br /></span><span><br /></span><span>    * firefox: thunderbird: Use-after-free in the Networking: HTTP component (CVE-2026-12291)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bug fixed in Firefox ESR 140.12 (CVE-2026-12298)<br /></span><span><br /></span><span>    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and     other related information, refer to the CVE page(s) listed in the References section.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Red Hat Enterprise Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the RHEL thunderbird package based on the guidance in RHSA-2026:38751.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326475">https://www.tenable.com/plugins/nessus/326475</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RHEL 8 : freerdp (RHSA-2026:38501)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326474</link>
            <guid>https://www.tenable.com/plugins/nessus/326474</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326474 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Red Hat host is missing a security update for freerdp.<br /></span>
      <h3>Description</h3>
      <span>The remote Redhat Enterprise Linux 8 host has packages installed that are affected by a vulnerability as referenced in the RHSA-2026:38501 advisory.<br /></span><span><br /></span><span>    FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license.<br /></span><span>    The xfreerdp client can connect to RDP servers such as Microsoft Windows machines, xrdp, and VirtualBox.<br /></span><span><br /></span><span>    Security Fix(es):<br /></span><span><br /></span><span>    * freerdp: FreeRDP: Out-of-bounds write in planar bitmap decoder allows arbitrary code execution     (CVE-2026-45700)<br /></span><span><br /></span><span>    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and     other related information, refer to the CVE page(s) listed in the References section.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Red Hat Enterprise Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the RHEL freerdp package based on the guidance in RHSA-2026:38501.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326474">https://www.tenable.com/plugins/nessus/326474</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RHEL 9 : gegl04 (RHSA-2026:38497)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326473</link>
            <guid>https://www.tenable.com/plugins/nessus/326473</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326473 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Red Hat host is missing a security update for gegl04.<br /></span>
      <h3>Description</h3>
      <span>The remote Redhat Enterprise Linux 9 host has packages installed that are affected by a vulnerability as referenced in the RHSA-2026:38497 advisory.<br /></span><span><br /></span><span>    GEGL (Generic Graphics Library) is a graph-based image processing framework.<br /></span><span><br /></span><span>    Security Fix(es):<br /></span><span><br /></span><span>    * gimp: GIMP: Arbitrary code execution via heap-based buffer overflow in HDR file parsing (CVE-2026-2050)<br /></span><span><br /></span><span>    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and     other related information, refer to the CVE page(s) listed in the References section.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Red Hat Enterprise Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the RHEL gegl04 package based on the guidance in RHSA-2026:38497.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326473">https://www.tenable.com/plugins/nessus/326473</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RHEL 10 : kernel (RHSA-2026:38492)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326472</link>
            <guid>https://www.tenable.com/plugins/nessus/326472</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326472 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Red Hat host is missing one or more security updates for kernel.<br /></span>
      <h3>Description</h3>
      <span>The remote Redhat Enterprise Linux 10 host has packages installed that are affected by multiple vulnerabilities as referenced in the RHSA-2026:38492 advisory.<br /></span><span><br /></span><span>    The kernel packages contain the Linux kernel, the core of any Linux operating system.<br /></span><span><br /></span><span>    Security Fix(es):<br /></span><span><br /></span><span>    * kernel: md/bitmap: fix GPF in write_page caused by resize race (CVE-2026-43163)<br /></span><span><br /></span><span>    * kernel: rtmutex: Use waiter::task instead of current in remove_waiter() (CVE-2026-43499)<br /></span><span><br /></span><span>    * kernel: futex/requeue: Prevent NULL pointer dereference in remove_waiter() on self-deadlock     (CVE-2026-53166)<br /></span><span><br /></span><span>    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and     other related information, refer to the CVE page(s) listed in the References section.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Red Hat Enterprise Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the RHEL kernel package based on the guidance in RHSA-2026:38492.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326472">https://www.tenable.com/plugins/nessus/326472</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RHEL 8 : nginx:1.24 (RHSA-2026:38847)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326471</link>
            <guid>https://www.tenable.com/plugins/nessus/326471</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326471 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Red Hat host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote Redhat Enterprise Linux 8 host has packages installed that are affected by a vulnerability as referenced in the RHSA-2026:38847 advisory.<br /></span><span><br /></span><span>    nginx is a web and proxy server supporting HTTP and other protocols, with a focus on high concurrency,     performance, and low memory usage.<br /></span><span><br /></span><span>    Security Fix(es):<br /></span><span><br /></span><span>    * nginx: NGINX: Arbitrary code execution or Denial of Service via heap-based buffer overflow with crafted     HTTP/2 headers (CVE-2026-42055)<br /></span><span><br /></span><span>    Bug Fix(es) and Enhancement(s):<br /></span><span><br /></span><span>    * HTTP/2 bomb nginx fix breaks module ABI causing crashes [rhel-8.10.z] (JIRA:RHEL-191779)<br /></span><span><br /></span><span>    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and     other related information, refer to the CVE page(s) listed in the References section.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Red Hat Enterprise Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326471">https://www.tenable.com/plugins/nessus/326471</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RHEL 8 : gegl (RHSA-2026:38485)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326470</link>
            <guid>https://www.tenable.com/plugins/nessus/326470</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326470 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Red Hat host is missing a security update for gegl.<br /></span>
      <h3>Description</h3>
      <span>The remote Redhat Enterprise Linux 8 host has a package installed that is affected by a vulnerability as referenced in the RHSA-2026:38485 advisory.<br /></span><span><br /></span><span>    GEGL (Generic Graphics Library) is a graph-based image processing framework.<br /></span><span><br /></span><span>    Security Fix(es):<br /></span><span><br /></span><span>    * gimp: GIMP: Arbitrary code execution via heap-based buffer overflow in HDR file parsing (CVE-2026-2050)<br /></span><span><br /></span><span>    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and     other related information, refer to the CVE page(s) listed in the References section.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Red Hat Enterprise Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the RHEL gegl package based on the guidance in RHSA-2026:38485.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326470">https://www.tenable.com/plugins/nessus/326470</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RHEL 8 : xorg-x11-server-Xwayland (RHSA-2026:38810)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326469</link>
            <guid>https://www.tenable.com/plugins/nessus/326469</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326469 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Red Hat host is missing one or more security updates for xorg-x11-server-Xwayland.<br /></span>
      <h3>Description</h3>
      <span>The remote Redhat Enterprise Linux 8 host has a package installed that is affected by multiple vulnerabilities as referenced in the RHSA-2026:38810 advisory.<br /></span><span><br /></span><span>    Xwayland is an X server for running X clients under Wayland.<br /></span><span><br /></span><span>    Security Fix(es):<br /></span><span><br /></span><span>    * xorg-x11-server: xorg-x11-server-Xwayland: xorg-x11-server: stack buffer overflow in font alias     resolution due to libXfont2 name length mismatch (CVE-2026-50256)<br /></span><span><br /></span><span>    * xorg-x11-server: xorg-x11-server-Xwayland: xorg-x11-server: use-after-free in miSyncDestroyFence()     (CVE-2026-50257)<br /></span><span><br /></span><span>    * xorg-x11-server: xorg-x11-server-Xwayland: xorg-x11-server: stack buffer overflow in XKB key types due     to unchecked shift levels (CVE-2026-50258)<br /></span><span><br /></span><span>    * xorg-x11-server: xorg-x11-server-Xwayland: xorg-x11-server: stack buffer overflow in XKB SetMap request     via mapWidths indexing (CVE-2026-50259)<br /></span><span><br /></span><span>    * xorg-x11-server: xorg-x11-server-Xwayland: xorg-x11-server: use-after-free in FreeCounter()     (CVE-2026-50260)<br /></span><span><br /></span><span>    * xorg-x11-server: xorg-x11-server-Xwayland: xorg-x11-server: use-after-free in SyncChangeCounter()     (CVE-2026-50261)<br /></span><span><br /></span><span>    * xorg-x11-server: xorg-x11-server-Xwayland: xorg-x11-server: out-of-bounds read/write in GLX     ChangeDrawableAttributes (CVE-2026-50262)<br /></span><span><br /></span><span>    * xorg-x11-server: xorg-x11-server-Xwayland: xorg-x11-server: use-after-free information disclosure in     CreateSaverWindow() (CVE-2026-50263)<br /></span><span><br /></span><span>    * xorg-x11-server: xorg-x11-server-Xwayland: xorg-x11-server: out-of-bounds heap write in DRI2     DRIGetBuffers/DRIGetBuffersWithFormat (CVE-2026-50264)<br /></span><span><br /></span><span>    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and     other related information, refer to the CVE page(s) listed in the References section.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Red Hat Enterprise Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the RHEL xorg-x11-server-Xwayland packages based on the guidance in RHSA-2026:38810.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326469">https://www.tenable.com/plugins/nessus/326469</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RHEL 10 : plexus-utils (RHSA-2026:38514)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326468</link>
            <guid>https://www.tenable.com/plugins/nessus/326468</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326468 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Red Hat host is missing a security update for plexus-utils.<br /></span>
      <h3>Description</h3>
      <span>The remote Redhat Enterprise Linux 10 host has packages installed that are affected by a vulnerability as referenced in the RHSA-2026:38514 advisory.<br /></span><span><br /></span><span>    The Plexus project seeks to create end-to-end developer tools for writing applications. At the core is the     container, which can be embedded or for a full scale application server. There are many reusable     components for hibernate, form processing, jndi, i18n, velocity, etc. Plexus also includes an application     server which is like a J2EE application server, without all the baggage.<br /></span><span><br /></span><span>    Security Fix(es):<br /></span><span><br /></span><span>    * org.codehaus.plexus:plexus-utils: Plexus-utils: Directory Traversal in extractFile method     (CVE-2025-67030)<br /></span><span><br /></span><span>    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and     other related information, refer to the CVE page(s) listed in the References section.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Red Hat Enterprise Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the RHEL plexus-utils package based on the guidance in RHSA-2026:38514.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326468">https://www.tenable.com/plugins/nessus/326468</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RHEL 8 : container-tools:rhel8 (RHSA-2026:38504)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326467</link>
            <guid>https://www.tenable.com/plugins/nessus/326467</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326467 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Red Hat host is missing one or more security updates for container-tools:rhel8.<br /></span>
      <h3>Description</h3>
      <span>The remote Redhat Enterprise Linux 8 host has packages installed that are affected by multiple vulnerabilities as referenced in the RHSA-2026:38504 advisory.<br /></span><span><br /></span><span>    The container-tools module contains tools for working with containers, notably podman, buildah, skopeo,     and runc.<br /></span><span><br /></span><span>    Security Fix(es):<br /></span><span><br /></span><span>    * net: golang: Go net package: Denial of Service via long CNAME response in LookupCNAME (CVE-2026-33811)<br /></span><span><br /></span><span>    * golang.org/x/crypto/ssh: golang: golang.org/x/crypto/ssh: Denial of Service via crafted SSH certificate     (CVE-2026-39835)<br /></span><span><br /></span><span>    * podman: Podman: Information disclosure via malicious container image environment variables     (CVE-2026-57231)<br /></span><span><br /></span><span>    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and     other related information, refer to the CVE page(s) listed in the References section.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Red Hat Enterprise Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the RHEL container-tools:rhel8 package based on the guidance in RHSA-2026:38504.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326467">https://www.tenable.com/plugins/nessus/326467</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RHEL 8 : openssl (RHSA-2026:38805)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326466</link>
            <guid>https://www.tenable.com/plugins/nessus/326466</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326466 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Red Hat host is missing a security update for openssl.<br /></span>
      <h3>Description</h3>
      <span>The remote Redhat Enterprise Linux 8 host has packages installed that are affected by a vulnerability as referenced in the RHSA-2026:38805 advisory.<br /></span><span><br /></span><span>    OpenSSL is a toolkit that implements the Secure Sockets Layer (SSL) and Transport Layer Security (TLS)     protocols, as well as a full-strength general-purpose cryptography library.<br /></span><span><br /></span><span>    Security Fix(es):<br /></span><span><br /></span><span>    * openssl: OpenSSL: Denial of Service due to NULL pointer dereference in CMS EnvelopedData processing     (CVE-2026-28390)<br /></span><span><br /></span><span>    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and     other related information, refer to the CVE page(s) listed in the References section.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Red Hat Enterprise Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the RHEL openssl package based on the guidance in RHSA-2026:38805.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326466">https://www.tenable.com/plugins/nessus/326466</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RHEL 9 : thunderbird (RHSA-2026:38753)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326465</link>
            <guid>https://www.tenable.com/plugins/nessus/326465</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326465 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Red Hat host is missing one or more security updates for thunderbird.<br /></span>
      <h3>Description</h3>
      <span>The remote Redhat Enterprise Linux 9 host has a package installed that is affected by multiple vulnerabilities as referenced in the RHSA-2026:38753 advisory.<br /></span><span><br /></span><span>    Mozilla Thunderbird is a standalone mail and newsgroup client.<br /></span><span><br /></span><span>    Security Fix(es):<br /></span><span><br /></span><span>    * firefox: thunderbird: Sandbox escape in the DOM: Workers component (CVE-2026-12294)<br /></span><span><br /></span><span>    * firefox: thunderbird: Information disclosure, sandbox escape in the Security: Process Sandboxing     component (CVE-2026-12313)<br /></span><span><br /></span><span>    * firefox: thunderbird: Information disclosure, sandbox escape in the Security: Process Sandboxing     component (CVE-2026-12311)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12290)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bugs fixed in Firefox ESR 140.12, Thunderbird ESR 140.12, Firefox     152 and Thunderbird 152 (CVE-2026-12327)<br /></span><span><br /></span><span>    * firefox: thunderbird: JIT miscompilation in the DOM: Core & HTML component (CVE-2026-12299)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12329)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12312)<br /></span><span><br /></span><span>    * firefox: thunderbird: Mitigation bypass in the DOM: Security component (CVE-2026-12302)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bugs fixed in Firefox ESR 115.37, Firefox ESR 140.12, Thunderbird     ESR 140.12, Firefox 152 and Thunderbird 152 (CVE-2026-12328)<br /></span><span><br /></span><span>    * firefox: thunderbird: Incorrect boundary conditions in the Internationalization component     (CVE-2026-12330)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12314)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12309)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12310)<br /></span><span><br /></span><span>    * firefox: thunderbird: Denial-of-service in the Graphics: ImageLib component (CVE-2026-12325)<br /></span><span><br /></span><span>    * firefox: thunderbird: Sandbox escape in the DOM: Navigation component (CVE-2026-12295)<br /></span><span><br /></span><span>    * firefox: thunderbird: Privilege escalation in the Graphics: WebRender component (CVE-2026-12289)<br /></span><span><br /></span><span>    * firefox: thunderbird: Mitigation bypass in the DOM: Security component (CVE-2026-12315)<br /></span><span><br /></span><span>    * firefox: thunderbird: Sandbox escape in the Security: Process Sandboxing component (CVE-2026-12296)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12306)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12307)<br /></span><span><br /></span><span>    * firefox: thunderbird: Sandbox escape due to incorrect boundary conditions in the Networking component     (CVE-2026-12297)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12305)<br /></span><span><br /></span><span>    * firefox: thunderbird: Incorrect boundary conditions in the Web Audio component (CVE-2026-12292)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12308)<br /></span><span><br /></span><span>    * firefox: thunderbird: Incorrect boundary conditions in the Graphics: CanvasWebGL component     (CVE-2026-12324)<br /></span><span><br /></span><span>    * firefox: thunderbird: Same-origin policy bypass in the Networking: Cookies component (CVE-2026-12304)<br /></span><span><br /></span><span>    * firefox: thunderbird: Use-after-free in the Networking: HTTP component (CVE-2026-12291)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bug fixed in Firefox ESR 140.12 (CVE-2026-12298)<br /></span><span><br /></span><span>    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and     other related information, refer to the CVE page(s) listed in the References section.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Red Hat Enterprise Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the RHEL thunderbird package based on the guidance in RHSA-2026:38753.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326465">https://www.tenable.com/plugins/nessus/326465</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RHEL 9 : libreoffice (RHSA-2026:38508)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326464</link>
            <guid>https://www.tenable.com/plugins/nessus/326464</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326464 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Red Hat host is missing a security update for libreoffice.<br /></span>
      <h3>Description</h3>
      <span>The remote Redhat Enterprise Linux 9 host has packages installed that are affected by a vulnerability as referenced in the RHSA-2026:38508 advisory.<br /></span><span><br /></span><span>    LibreOffice is an open source, community-developed office productivity suite. It includes key desktop     applications, such as a word processor, a spreadsheet, a presentation manager, a formula editor, and a     drawing program. LibreOffice replaces OpenOffice and provides a similar but enhanced and extended office     suite.<br /></span><span><br /></span><span>    Security Fix(es):<br /></span><span><br /></span><span>    * LibreOffice: LibreOffice: Denial of Service via crafted OOXML documents (CVE-2026-4430)<br /></span><span><br /></span><span>    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and     other related information, refer to the CVE page(s) listed in the References section.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Red Hat Enterprise Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the RHEL libreoffice package based on the guidance in RHSA-2026:38508.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326464">https://www.tenable.com/plugins/nessus/326464</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RHEL 10 : xorg-x11-server-Xwayland (RHSA-2026:38489)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326463</link>
            <guid>https://www.tenable.com/plugins/nessus/326463</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326463 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Red Hat host is missing one or more security updates for xorg-x11-server-Xwayland.<br /></span>
      <h3>Description</h3>
      <span>The remote Redhat Enterprise Linux 10 host has packages installed that are affected by multiple vulnerabilities as referenced in the RHSA-2026:38489 advisory.<br /></span><span><br /></span><span>    Xwayland is an X server for running X clients under Wayland.<br /></span><span><br /></span><span>    Security Fix(es):<br /></span><span><br /></span><span>    * xorg: X11: xserver: X.org: glamor Font Atlas Heap Buffer Overflow (CVE-2026-55999)<br /></span><span><br /></span><span>    * X.org: xorg-x11-server: GLX contextTags Use-After-Free in CommonMakeCurrent() (CVE-2026-56000)<br /></span><span><br /></span><span>    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and     other related information, refer to the CVE page(s) listed in the References section.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Red Hat Enterprise Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the RHEL xorg-x11-server-Xwayland packages based on the guidance in RHSA-2026:38489.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326463">https://www.tenable.com/plugins/nessus/326463</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RHEL 10 : openexr (RHSA-2026:38499)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326462</link>
            <guid>https://www.tenable.com/plugins/nessus/326462</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326462 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Red Hat host is missing one or more security updates for openexr.<br /></span>
      <h3>Description</h3>
      <span>The remote Redhat Enterprise Linux 10 host has packages installed that are affected by multiple vulnerabilities as referenced in the RHSA-2026:38499 advisory.<br /></span><span><br /></span><span>    OpenEXR is an open-source high-dynamic-range floating-point image file format for high-quality image     processing and storage. This document presents a brief overview of OpenEXR and explains concepts that are     specific to this format.  This package containes the binaries for OpenEXR.<br /></span><span><br /></span><span>    Security Fix(es):<br /></span><span><br /></span><span>    * OpenEXR: OpenEXR: Arbitrary code execution via integer overflow in image resizing (CVE-2026-41142)<br /></span><span><br /></span><span>    * OpenEXR: OpenEXR: Information disclosure and denial of service via malformed EXR files (CVE-2026-42216)<br /></span><span><br /></span><span>    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and     other related information, refer to the CVE page(s) listed in the References section.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Red Hat Enterprise Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the RHEL openexr package based on the guidance in RHSA-2026:38499.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326462">https://www.tenable.com/plugins/nessus/326462</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2026-53448]]></title>
            <link>https://www.tenable.com/plugins/nessus/326461</link>
            <guid>https://www.tenable.com/plugins/nessus/326461</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326461 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - Coturn is a free open source implementation of TURN and STUN Server. Prior to 4.12.0, the coturn HTTPS     admin panel passes HTTP query parameters directly into SQL queries via snprintf string interpolation     without sanitization. The is_secure_string filter that protects the STUN protocol path is not applied to     the admin panel's delete-user, delete-secret, and delete-IP operations, so an authenticated admin can     inject arbitrary SQL through the du, ds, and dip parameters, gaining full database control and potentially     OS-level access via PostgreSQL COPY TO PROGRAM. This issue is fixed in version 4.12.0. (CVE-2026-53448)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326461">https://www.tenable.com/plugins/nessus/326461</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Progress MOVEit Transfer 2022.0.x < 2022.0.10 / 2022.1.x < 2022.1.11 / 2023.0.x < 2023.0.8 / 2023.1.x < 2023.1.3 Unverified Password Change (January 2026)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326460</link>
            <guid>https://www.tenable.com/plugins/nessus/326460</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326460 with High Severity</p>
      <h3>Synopsis</h3>
      <span>An application installed on the remote host is affected by an unverified password change vulnerability.<br /></span>
      <h3>Description</h3>
      <span>The version of Progress MOVEit Transfer, formerly Ipswitch MOVEit DMZ, installed on the remote host is affected by an unverified password change vulnerability.<br /></span><span><br /></span><span>- Unverified Password Change vulnerability in Progress MOVEit Transfer on Windows (REST API modules). This issue   affects MOVEit Transfer: from 2023.1.0 before 2023.1.3, from 2023.0.0 before 2023.0.8, from 2022.1.0 before   2022.1.11, from 2022.0.0 before 2022.0.10. (CVE-2025-11235)<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade to Progress MOVEit Transfer version 2022.0.10, 2022.1.11, 2023.0.8, 2023.1.3, or later.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326460">https://www.tenable.com/plugins/nessus/326460</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Progress MOVEit Transfer < 2024.1.8 / 2025.0.x < 2025.0.4 / 2025.1 Server-Side Request Forgery (November 2025)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326459</link>
            <guid>https://www.tenable.com/plugins/nessus/326459</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326459 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>An application installed on the remote host is affected by a server-side request forgery vulnerability.<br /></span>
      <h3>Description</h3>
      <span>The version of Progress MOVEit Transfer, formerly Ipswitch MOVEit DMZ, installed on the remote host is affected by a server-side request forgery vulnerability.<br /></span><span><br /></span><span>- Server-Side Request Forgery (SSRF) vulnerability in Progress MOVEit Transfer. This issue affects MOVEit   Transfer: before 2024.1.8, from 2025.0.0 before 2025.0.4. (CVE-2025-13147)<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade to Progress MOVEit Transfer version 2024.1.8, 2025.0.4, 2025.1, or later.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326459">https://www.tenable.com/plugins/nessus/326459</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Progress MOVEit Transfer 2023.0.x / 2023.1.x < 2023.1.16 / 2024.0.x / 2024.1.x < 2024.1.7 / 2025.0.x < 2025.0.3 Uncontrolled Resource Consumption (October 2025)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326458</link>
            <guid>https://www.tenable.com/plugins/nessus/326458</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326458 with High Severity</p>
      <h3>Synopsis</h3>
      <span>An application installed on the remote host is affected by an uncontrolled resource consumption vulnerability.<br /></span>
      <h3>Description</h3>
      <span>The version of Progress MOVEit Transfer, formerly Ipswitch MOVEit DMZ, installed on the remote host is affected by an uncontrolled resource consumption vulnerability as referenced in Progress Community article 000291424.<br /></span><span><br /></span><span>- Uncontrolled Resource Consumption vulnerability in Progress MOVEit Transfer (AS2 module). This issue affects   MOVEit Transfer: from 2025.0.0 before 2025.0.3, from 2024.1.0 before 2024.1.7, from 2023.1.0 before 2023.1.16.   Additionally, the 2023.0.x and 2024.0.x branches are affected but have no patched version available; users on   these versions should upgrade to an active branch or apply the vendor-provided workaround. (CVE-2025-10932)<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade to Progress MOVEit Transfer version 2023.1.16, 2024.1.7, or 2025.0.3 or later.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326458">https://www.tenable.com/plugins/nessus/326458</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Progress MOVEit Transfer 2022.1.x / 2023.0.x < 2023.0.17 / 2023.1.x < 2023.1.12 / 2024.0.x < 2024.0.8 / 2024.1.x < 2024.1.2 Privilege Escalation (March 2025)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326457</link>
            <guid>https://www.tenable.com/plugins/nessus/326457</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326457 with High Severity</p>
      <h3>Synopsis</h3>
      <span>An application installed on the remote host is affected by a privilege escalation vulnerability.<br /></span>
      <h3>Description</h3>
      <span>The version of Progress MOVEit Transfer, formerly Ipswitch MOVEit DMZ, installed on the remote host is affected by a privilege escalation vulnerability as referenced in Progress Community article 000256795.<br /></span><span><br /></span><span>- Improper Privilege Management vulnerability for users configured as Shared Accounts in Progress MOVEit   Transfer (SFTP module) allows Privilege Escalation. This issue affects MOVEit Transfer: from 2022.1.x,   2023.0.0 before 2023.0.17, 2023.1.0 before 2023.1.12, 2024.0.0 before 2024.0.8, and from 2024.1.0 before   2024.1.2. (CVE-2025-2324)<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade to Progress MOVEit Transfer version 2023.0.17, 2023.1.12, 2024.0.8, 2024.1.2, or later.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326457">https://www.tenable.com/plugins/nessus/326457</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Oracle Linux 7 : libexif (ELSA-2026-26567)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326456</link>
            <guid>https://www.tenable.com/plugins/nessus/326456</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326456 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Oracle Linux host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Oracle Linux 7 host has packages installed that are affected by multiple vulnerabilities as referenced in the ELSA-2026-26567 advisory.<br /></span><span><br /></span><span>    - Backport fix for CVE-2026-40386 [Orabug: 39574457]<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Oracle Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected libexif, libexif-devel and / or libexif-doc packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326456">https://www.tenable.com/plugins/nessus/326456</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RHEL 8 : xorg-x11-server-Xwayland (RHSA-2026:38502)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326455</link>
            <guid>https://www.tenable.com/plugins/nessus/326455</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326455 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Red Hat host is missing one or more security updates for xorg-x11-server-Xwayland.<br /></span>
      <h3>Description</h3>
      <span>The remote Redhat Enterprise Linux 8 host has a package installed that is affected by multiple vulnerabilities as referenced in the RHSA-2026:38502 advisory.<br /></span><span><br /></span><span>    Xwayland is an X server for running X clients under Wayland.<br /></span><span><br /></span><span>    Security Fix(es):<br /></span><span><br /></span><span>    * xorg-x11-server: xorg-x11-server-Xwayland: xorg-x11-server: stack buffer overflow in font alias     resolution due to libXfont2 name length mismatch (CVE-2026-50256)<br /></span><span><br /></span><span>    * xorg-x11-server: xorg-x11-server-Xwayland: xorg-x11-server: use-after-free in miSyncDestroyFence()     (CVE-2026-50257)<br /></span><span><br /></span><span>    * xorg-x11-server: xorg-x11-server-Xwayland: xorg-x11-server: stack buffer overflow in XKB key types due     to unchecked shift levels (CVE-2026-50258)<br /></span><span><br /></span><span>    * xorg-x11-server: xorg-x11-server-Xwayland: xorg-x11-server: stack buffer overflow in XKB SetMap request     via mapWidths indexing (CVE-2026-50259)<br /></span><span><br /></span><span>    * xorg-x11-server: xorg-x11-server-Xwayland: xorg-x11-server: use-after-free in FreeCounter()     (CVE-2026-50260)<br /></span><span><br /></span><span>    * xorg-x11-server: xorg-x11-server-Xwayland: xorg-x11-server: use-after-free in SyncChangeCounter()     (CVE-2026-50261)<br /></span><span><br /></span><span>    * xorg-x11-server: xorg-x11-server-Xwayland: xorg-x11-server: out-of-bounds read/write in GLX     ChangeDrawableAttributes (CVE-2026-50262)<br /></span><span><br /></span><span>    * xorg-x11-server: xorg-x11-server-Xwayland: xorg-x11-server: use-after-free information disclosure in     CreateSaverWindow() (CVE-2026-50263)<br /></span><span><br /></span><span>    * xorg-x11-server: xorg-x11-server-Xwayland: xorg-x11-server: out-of-bounds heap write in DRI2     DRIGetBuffers/DRIGetBuffersWithFormat (CVE-2026-50264)<br /></span><span><br /></span><span>    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and     other related information, refer to the CVE page(s) listed in the References section.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Red Hat Enterprise Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the RHEL xorg-x11-server-Xwayland packages based on the guidance in RHSA-2026:38502.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326455">https://www.tenable.com/plugins/nessus/326455</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RHEL 9 : buildah (RHSA-2026:38493)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326454</link>
            <guid>https://www.tenable.com/plugins/nessus/326454</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326454 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Red Hat host is missing a security update for buildah.<br /></span>
      <h3>Description</h3>
      <span>The remote Redhat Enterprise Linux 9 host has packages installed that are affected by a vulnerability as referenced in the RHSA-2026:38493 advisory.<br /></span><span><br /></span><span>    The buildah package provides a tool for facilitating building OCI container images. Among other things,     buildah enables you to: Create a working container, either from scratch or using an image as a starting     point; Create an image, either from a working container or using the instructions in a Dockerfile; Build     both Docker and OCI images.<br /></span><span><br /></span><span>    Security Fix(es):<br /></span><span><br /></span><span>    * os: golang: Go os.Root: Symlink following vulnerability allows directory traversal (CVE-2026-39822)<br /></span><span><br /></span><span>    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and     other related information, refer to the CVE page(s) listed in the References section.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Red Hat Enterprise Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the RHEL buildah package based on the guidance in RHSA-2026:38493.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326454">https://www.tenable.com/plugins/nessus/326454</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RHEL 7 : tomcat (RHSA-2026:38505)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326453</link>
            <guid>https://www.tenable.com/plugins/nessus/326453</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326453 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Red Hat host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Redhat Enterprise Linux 7 host has packages installed that are affected by multiple vulnerabilities as referenced in the RHSA-2026:38505 advisory.<br /></span><span><br /></span><span>    Apache Tomcat is a servlet container for the Java Servlet and JavaServer Pages (JSP) technologies.<br /></span><span><br /></span><span>    Security Fix(es):<br /></span><span><br /></span><span>    * Apache Tomcat: Apache Tomcat: Information disclosure via Padding Oracle vulnerability in     EncryptInterceptor (CVE-2026-29146)<br /></span><span><br /></span><span>    * Apache Tomcat: Apache Tomcat: Missing Encryption of Sensitive Data due to EncryptInterceptor bypass     (CVE-2026-34486)<br /></span><span><br /></span><span>    Bug Fix(es) and Enhancement(s):<br /></span><span><br /></span><span>    * Remove tomcat clustering JAR from RPM builds (JIRA:RHEL-183996)<br /></span><span><br /></span><span>    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and     other related information, refer to the CVE page(s) listed in the References section.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Red Hat Enterprise Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326453">https://www.tenable.com/plugins/nessus/326453</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RockyLinux 9 : golang (RLSA-2026:37435)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326452</link>
            <guid>https://www.tenable.com/plugins/nessus/326452</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326452 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote RockyLinux host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote RockyLinux 9 host has packages installed that are affected by multiple vulnerabilities as referenced in the RLSA-2026:37435 advisory.<br /></span><span><br /></span><span>    * golang.org/x/net/idna: golang: golang.org/x/net/idna: Privilege escalation via incorrect Punycode label     processing (CVE-2026-39821)<br /></span><span><br /></span><span>    * os: golang: Go os.Root: Symlink following vulnerability allows directory traversal (CVE-2026-39822)<br /></span><span><br /></span><span>    Bug Fix(es) and Enhancement(s):<br /></span><span><br /></span><span>    * Update Go to version 1.26.5+1 [rhel-9.8.z] (JIRA:Rocky Linux-193476)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the RockyLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326452">https://www.tenable.com/plugins/nessus/326452</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Windows Defender <= 1.1.26050.11 Elevation of Privilege (RoguePlanet) (CVE-2026-50656)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326451</link>
            <guid>https://www.tenable.com/plugins/nessus/326451</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326451 with High Severity</p>
      <h3>Synopsis</h3>
      <span>An antimalware application installed on the remote host is affected by an elevation of privilege vulnerability.<br /></span>
      <h3>Description</h3>
      <span>The Malware Protection Engine version of Microsoft Windows Defender installed on the remote Windows host is prior to or equal to 1.1.26050.11. It is, therefore, affected by an elevation of privilege vulnerability:<br /></span><span><br /></span><span>  - Improper link resolution before file access ('link following') in Microsoft Defender allows an authorized attacker     to elevate privileges locally. This vulnerability is publicly referred to as RoguePlanet. (CVE-2026-50656)<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Enable automatic updates to update the malware engine for the relevant antimalware applications. Refer to Knowledge Base Article 2510781 for information on how to verify that MMPE has been updated.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326451">https://www.tenable.com/plugins/nessus/326451</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RHEL 8 : xorg-x11-server-Xwayland (RHSA-2026:38488)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326450</link>
            <guid>https://www.tenable.com/plugins/nessus/326450</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326450 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Red Hat host is missing a security update for xorg-x11-server-Xwayland.<br /></span>
      <h3>Description</h3>
      <span>The remote Redhat Enterprise Linux 8 host has a package installed that is affected by a vulnerability as referenced in the RHSA-2026:38488 advisory.<br /></span><span><br /></span><span>    Xwayland is an X server for running X clients under Wayland.<br /></span><span><br /></span><span>    Security Fix(es):<br /></span><span><br /></span><span>    * xorg: X11: xserver: X.org: glamor Font Atlas Heap Buffer Overflow (CVE-2026-55999)<br /></span><span><br /></span><span>    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and     other related information, refer to the CVE page(s) listed in the References section.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Red Hat Enterprise Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the RHEL xorg-x11-server-Xwayland packages based on the guidance in RHSA-2026:38488.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326450">https://www.tenable.com/plugins/nessus/326450</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RHEL 10 : buildah (RHSA-2026:38494)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326449</link>
            <guid>https://www.tenable.com/plugins/nessus/326449</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326449 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Red Hat host is missing a security update for buildah.<br /></span>
      <h3>Description</h3>
      <span>The remote Redhat Enterprise Linux 10 host has packages installed that are affected by a vulnerability as referenced in the RHSA-2026:38494 advisory.<br /></span><span><br /></span><span>    The buildah package provides a tool for facilitating building OCI container images. Among other things,     buildah enables you to: Create a working container, either from scratch or using an image as a starting     point; Create an image, either from a working container or using the instructions in a Dockerfile; Build     both Docker and OCI images.<br /></span><span><br /></span><span>    Security Fix(es):<br /></span><span><br /></span><span>    * os: golang: Go os.Root: Symlink following vulnerability allows directory traversal (CVE-2026-39822)<br /></span><span><br /></span><span>    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and     other related information, refer to the CVE page(s) listed in the References section.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Red Hat Enterprise Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the RHEL buildah package based on the guidance in RHSA-2026:38494.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326449">https://www.tenable.com/plugins/nessus/326449</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RHEL 7 : firefox (RHSA-2026:38506)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326448</link>
            <guid>https://www.tenable.com/plugins/nessus/326448</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326448 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Red Hat host is missing one or more security updates for firefox.<br /></span>
      <h3>Description</h3>
      <span>The remote Redhat Enterprise Linux 7 host has a package installed that is affected by multiple vulnerabilities as referenced in the RHSA-2026:38506 advisory.<br /></span><span><br /></span><span>    Mozilla Firefox is an open-source web browser, designed for standards compliance, performance, and     portability.<br /></span><span><br /></span><span>    Security Fix(es):<br /></span><span><br /></span><span>    * firefox: thunderbird: Sandbox escape in the DOM: Workers component (CVE-2026-12294)<br /></span><span><br /></span><span>    * firefox: thunderbird: Information disclosure, sandbox escape in the Security: Process Sandboxing     component (CVE-2026-12313)<br /></span><span><br /></span><span>    * firefox: thunderbird: Information disclosure, sandbox escape in the Security: Process Sandboxing     component (CVE-2026-12311)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12290)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bugs fixed in Firefox ESR 140.12, Thunderbird ESR 140.12, Firefox     152 and Thunderbird 152 (CVE-2026-12327)<br /></span><span><br /></span><span>    * firefox: thunderbird: JIT miscompilation in the DOM: Core & HTML component (CVE-2026-12299)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12329)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12312)<br /></span><span><br /></span><span>    * firefox: thunderbird: Mitigation bypass in the DOM: Security component (CVE-2026-12302)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bugs fixed in Firefox ESR 115.37, Firefox ESR 140.12, Thunderbird     ESR 140.12, Firefox 152 and Thunderbird 152 (CVE-2026-12328)<br /></span><span><br /></span><span>    * firefox: thunderbird: Incorrect boundary conditions in the Internationalization component     (CVE-2026-12330)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12314)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12309)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12310)<br /></span><span><br /></span><span>    * firefox: thunderbird: Denial-of-service in the Graphics: ImageLib component (CVE-2026-12325)<br /></span><span><br /></span><span>    * firefox: thunderbird: Sandbox escape in the DOM: Navigation component (CVE-2026-12295)<br /></span><span><br /></span><span>    * firefox: thunderbird: Privilege escalation in the Graphics: WebRender component (CVE-2026-12289)<br /></span><span><br /></span><span>    * firefox: thunderbird: Mitigation bypass in the DOM: Security component (CVE-2026-12315)<br /></span><span><br /></span><span>    * firefox: thunderbird: Sandbox escape in the Security: Process Sandboxing component (CVE-2026-12296)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12306)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12307)<br /></span><span><br /></span><span>    * firefox: thunderbird: Sandbox escape due to incorrect boundary conditions in the Networking component     (CVE-2026-12297)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12305)<br /></span><span><br /></span><span>    * firefox: thunderbird: Incorrect boundary conditions in the Web Audio component (CVE-2026-12292)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bug fixed in Thunderbird ESR 140.12 (CVE-2026-12308)<br /></span><span><br /></span><span>    * firefox: thunderbird: Incorrect boundary conditions in the Graphics: CanvasWebGL component     (CVE-2026-12324)<br /></span><span><br /></span><span>    * firefox: thunderbird: Same-origin policy bypass in the Networking: Cookies component (CVE-2026-12304)<br /></span><span><br /></span><span>    * firefox: thunderbird: Use-after-free in the Networking: HTTP component (CVE-2026-12291)<br /></span><span><br /></span><span>    * firefox: thunderbird: Memory safety bug fixed in Firefox ESR 140.12 (CVE-2026-12298)<br /></span><span><br /></span><span>    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and     other related information, refer to the CVE page(s) listed in the References section.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Red Hat Enterprise Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the RHEL firefox package based on the guidance in RHSA-2026:38506.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326448">https://www.tenable.com/plugins/nessus/326448</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RHEL 8 : openssl (RHSA-2026:38503)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326447</link>
            <guid>https://www.tenable.com/plugins/nessus/326447</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326447 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Red Hat host is missing a security update for openssl.<br /></span>
      <h3>Description</h3>
      <span>The remote Redhat Enterprise Linux 8 host has packages installed that are affected by a vulnerability as referenced in the RHSA-2026:38503 advisory.<br /></span><span><br /></span><span>    OpenSSL is a toolkit that implements the Secure Sockets Layer (SSL) and Transport Layer Security (TLS)     protocols, as well as a full-strength general-purpose cryptography library.<br /></span><span><br /></span><span>    Security Fix(es):<br /></span><span><br /></span><span>    * openssl: OpenSSL: Denial of Service due to NULL pointer dereference in CMS EnvelopedData processing     (CVE-2026-28390)<br /></span><span><br /></span><span>    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and     other related information, refer to the CVE page(s) listed in the References section.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Red Hat Enterprise Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the RHEL openssl package based on the guidance in RHSA-2026:38503.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326447">https://www.tenable.com/plugins/nessus/326447</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RockyLinux 9 : kernel (RLSA-2026:36957)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326446</link>
            <guid>https://www.tenable.com/plugins/nessus/326446</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326446 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote RockyLinux host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote RockyLinux 9 host has packages installed that are affected by multiple vulnerabilities as referenced in the RLSA-2026:36957 advisory.<br /></span><span><br /></span><span>    * kernel: net/sched: ets: Always remove class from active list before deleting in ets_qdisc_change     (CVE-2025-71066)<br /></span><span><br /></span><span>    * kernel: KVM: x86: Fix shadow paging use-after-free due to unexpected GFN (CVE-2026-46113)<br /></span><span><br /></span><span>    * kernel: KVM: x86: Fix shadow paging use-after-free due to unexpected role (CVE-2026-53359)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the RockyLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326446">https://www.tenable.com/plugins/nessus/326446</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RockyLinux 10 : golang (RLSA-2026:37436)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326445</link>
            <guid>https://www.tenable.com/plugins/nessus/326445</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326445 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote RockyLinux host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote RockyLinux 10 host has packages installed that are affected by multiple vulnerabilities as referenced in the RLSA-2026:37436 advisory.<br /></span><span><br /></span><span>    * golang.org/x/net/idna: golang: golang.org/x/net/idna: Privilege escalation via incorrect Punycode label     processing (CVE-2026-39821)<br /></span><span><br /></span><span>    * os: golang: Go os.Root: Symlink following vulnerability allows directory traversal (CVE-2026-39822)<br /></span><span><br /></span><span>    Bug Fix(es) and Enhancement(s):<br /></span><span><br /></span><span>    * Update Go to version 1.26.5+1 [rhel-10.2.z] (JIRA:Rocky Linux-193473)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the RockyLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326445">https://www.tenable.com/plugins/nessus/326445</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[MiracleLinux 9 : pcs-0.11.11-2.el9_8.1.ML.1 (AXSA:2026-1247:07)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326444</link>
            <guid>https://www.tenable.com/plugins/nessus/326444</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326444 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote MiracleLinux host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote MiracleLinux 9 host has packages installed that are affected by a vulnerability as referenced in the AXSA:2026-1247:07 advisory.<br /></span><span><br /></span><span>    * lodash: lodash: Arbitrary code execution via untrusted input in template imports (CVE-2026-4800)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the MiracleLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected pcs and / or pcs-snmp packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326444">https://www.tenable.com/plugins/nessus/326444</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[SUSE SLED15 / SLES15 Security Update : libexif (SUSE-SU-2026:2837-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326443</link>
            <guid>https://www.tenable.com/plugins/nessus/326443</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326443 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote SUSE host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote SUSE Linux SLED15 / SLED_SAP15 / SLES15 / SLES_SAP15 host has packages installed that are affected by multiple vulnerabilities as referenced in the SUSE-SU-2026:2837-1 advisory.<br /></span><span><br /></span><span>    This update for libexif fixes the following issues<br /></span><span><br /></span><span>    - CVE-2026-40385: Fixed information disclosure and crashes via integer overflow in Nikon MakerNote       handling (bsc#1262000)<br /></span><span>    - CVE-2026-40386: Fixed denial of service and information disclosure via integer underflow in MakerNote       decoding (bsc#1262001)<br /></span><span>    - CVE-2026-32775: Fixed Buffer overwrite via integer underflow in MakerNotes decoding (bsc#1259755)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected libexif-devel, libexif12 and / or libexif12-32bit packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326443">https://www.tenable.com/plugins/nessus/326443</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[SUSE SLES15 Security Update : gstreamer-plugins-good (SUSE-SU-2026:2844-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326442</link>
            <guid>https://www.tenable.com/plugins/nessus/326442</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326442 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote SUSE host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote SUSE Linux SLES15 / SLES_SAP15 host has packages installed that are affected by a vulnerability as referenced in the SUSE-SU-2026:2844-1 advisory.<br /></span><span><br /></span><span>    This update for gstreamer-plugins-good fixes the following issue<br /></span><span><br /></span><span>    - CVE-2026-53705: Heap buffer overflow in WavPack decoder via integer overflow (bsc#1268449).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected gstreamer-plugins-good and / or gstreamer-plugins-good-lang packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326442">https://www.tenable.com/plugins/nessus/326442</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2026-42177]]></title>
            <link>https://www.tenable.com/plugins/nessus/326441</link>
            <guid>https://www.tenable.com/plugins/nessus/326441</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326441 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - linux-entra-sso is a browser plugin for Linux to SSO on Microsoft Entra ID. Prior to 1.8.1,     platform/chrome/js/platform-chrome.js:69-88 registers a single declarativeNetRequest rule whose urlFilter     is Platform.SSO_URL + /*, i.e. https://login.microsoftonline.com/*. Chrome's urlFilter without a | or     || anchor is substring-matched against the full request URL. The same applied rule action is modifyHeaders     that attaches the Entra ID Primary Refresh Token cookie. The Firefox adapter in     platform/firefox/js/platform-firefox.js:53 performs a belt-and-braces startsWith(Platform.SSO_URL) check     before injecting the header; the Chrome adapter does not. When the extension holds broad host permissions     through the optional_host_permissions: [https://*/*] declared in platform/chrome/manifest.json:34, a     main-frame navigation to a URL whose path embeds https://login.microsoftonline.com/ causes Chrome to     attach the PRT cookie to the request to the attacker-controlled host. This vulnerability is fixed in     1.8.1. (CVE-2026-42177)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326441">https://www.tenable.com/plugins/nessus/326441</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2026-53449]]></title>
            <link>https://www.tenable.com/plugins/nessus/326440</link>
            <guid>https://www.tenable.com/plugins/nessus/326440</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326440 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - Coturn is a free open source implementation of TURN and STUN Server. Prior to 4.13.0, the psd print     sessions dump CLI command in coturn takes a filename argument and directly passes it to fopen with no path     validation. An authenticated admin with CLI access can overwrite arbitrary files writable by the coturn     process because the command string is used as-is after stripping the psd prefix and leading spaces,     allowing truncation and overwrite with session dump data. This issue is fixed in version 4.13.0.<br /></span><span>    (CVE-2026-53449)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326440">https://www.tenable.com/plugins/nessus/326440</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[openSUSE 16: xorg-x11-server / xorg-x11-server-Xvfb / xorg-x11-server-extra / etc (openSUSE-SU-2026:21273-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326439</link>
            <guid>https://www.tenable.com/plugins/nessus/326439</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326439 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote openSUSE host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote openSUSE 16 host has packages installed that are affected by multiple vulnerabilities as referenced in the openSUSE-SU-2026:21273-1 advisory.<br /></span><span><br /></span><span>    This update for xorg-x11-server fixes the following issues<br /></span><span><br /></span><span>    - CVE-2026-55999: missing bounds check in `glamor_font_get` can lead to a heap buffer overflow when a font     loaded from       a malicious PCF file is processed (bsc#1268893).<br /></span><span>    - CVE-2026-56000: improper memory management in `CommonMakeCurrent` can lead to a heap use-after-free when     an       interaction with a malicious client creating GLX contexts happens (bsc#1268894).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326439">https://www.tenable.com/plugins/nessus/326439</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Debian dla-4678 : libxfont-dev - security update]]></title>
            <link>https://www.tenable.com/plugins/nessus/326438</link>
            <guid>https://www.tenable.com/plugins/nessus/326438</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326438 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Debian host is missing one or more security-related updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Debian 11 / 12 host has packages installed that are affected by multiple vulnerabilities as referenced in the dla-4678 advisory.<br /></span><span><br /></span><span>    - -------------------------------------------------------------------------     Debian LTS Advisory DLA-4678-1                debian-lts@lists.debian.org     https://www.debian.org/lts/security/                       Andrej Shadura     July 12, 2026                                 https://wiki.debian.org/LTS<br /></span><span>    - -------------------------------------------------------------------------<br /></span><span><br /></span><span>    Package        : libxfont     Version        : 1:2.0.4-1+deb11u1 1:2.0.6-1+deb12u1     CVE ID         : CVE-2026-56001 CVE-2026-56002 CVE-2026-56003<br /></span><span><br /></span><span>    A series of heap overflows in bitmap/PCF parser code could be used by     authenticated attackers to execute code in the X server context.<br /></span><span><br /></span><span>    CVE-2026-56001<br /></span><span><br /></span><span>        A heap buffer overflow in BitmapScaleBitmaps in due to an overflowing         32-bit size.<br /></span><span><br /></span><span>    CVE-2026-56002<br /></span><span><br /></span><span>        A heap bufferflow in pcfReadFont() due to missing glyph bounds         checking.<br /></span><span><br /></span><span>    CVE-2026-56003<br /></span><span><br /></span><span>        A heap buffer overflow due to missing size checking in the property         buffer when parsing PCF files in ComputeScaledProperties().<br /></span><span><br /></span><span>    For Debian 11 bullseye, these problems have been fixed in version     1:2.0.4-1+deb11u1.<br /></span><span><br /></span><span>    For Debian 12 bookworm, these problems have been fixed in version     1:2.0.6-1+deb12u1.<br /></span><span><br /></span><span>    We recommend that you upgrade your libxfont packages.<br /></span><span><br /></span><span>    For the detailed security status of libxfont please refer to     its security tracker page at:<br /></span><span>    https://security-tracker.debian.org/tracker/libxfont<br /></span><span><br /></span><span>    Further information about Debian LTS security advisories, how to apply     these updates to your system and frequently asked questions can be     found at: https://wiki.debian.org/LTS<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Debian security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade the libxfont-dev packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326438">https://www.tenable.com/plugins/nessus/326438</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2026-54919]]></title>
            <link>https://www.tenable.com/plugins/nessus/326437</link>
            <guid>https://www.tenable.com/plugins/nessus/326437</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326437 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - cpp-httplib is a C++11 single-file header-only cross platform HTTP/HTTPS library. In affected Mbed TLS     backend versions from 0.31.0 through 0.46.1 and wolfSSL backend versions from 0.33.0 through 0.46.1, when     cpp-httplib is built with CPPHTTPLIB_MBEDTLS_SUPPORT or CPPHTTPLIB_WOLFSSL_SUPPORT and a client connects     to an IP-literal host with server certificate verification enabled, SSLClient and Client in HTTPS mode     skip certificate chain validation and WebSocketClient on the Mbed TLS backend skips verification     altogether, allowing a man-in-the-middle attacker positioned to intercept traffic to present a crafted     certificate and read or modify the traffic. This issue is fixed in version 0.47.0. (CVE-2026-54919)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326437">https://www.tenable.com/plugins/nessus/326437</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2026-55213]]></title>
            <link>https://www.tenable.com/plugins/nessus/326436</link>
            <guid>https://www.tenable.com/plugins/nessus/326436</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326436 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - h2o is an HTTP server with support for HTTP/1.x, HTTP/2 and HTTP/3. Prior to commit     edd7a120bfc4af11ac0cbebce2a43cc1f93f9af1, when h2o processes a QPACK instruction sent from the peer over     HTTP/3, lib/http3/qpack.c might allocate an on-stack buffer as large as approximately 800 KB by calling     alloca, which exceeds the default pthread stack size used by musl libc and causes the h2o server to crash     with a segmentation fault while touching the guard page. This issue is fixed in commit     edd7a120bfc4af11ac0cbebce2a43cc1f93f9af1. (CVE-2026-55213)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326436">https://www.tenable.com/plugins/nessus/326436</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2026-49844]]></title>
            <link>https://www.tenable.com/plugins/nessus/326435</link>
            <guid>https://www.tenable.com/plugins/nessus/326435</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326435 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - Improper encoding of non-finite floating-point values during MapMessage JSON serialization in Apache Log4j     API produces output that is not valid JSON. This issue affects Apache Log4j API versions 2.13.1 through     2.25.4 and version 2.26.0. The fix for CVE-2026-34481 did not cover all code paths: when a MapMessage     contains a non-finite IEEE 754 value (NaN, Infinity, or -Infinity), MapMessage.asJson() emits the     corresponding bare token. RFC 8259 does not permit these tokens, so a conformant parser rejects the     resulting document. The defect is reachable only when both of the following conditions hold: * The     application uses the message resolver https://logging.apache.org/log4j/2.x/manual/json-template-     layout.html#event-template-resolver-message of JsonTemplateLayout or any other layout that relies on     MapMessage.asJson() or MapMessage.getFormattedMessage(new String[]{JSON}). * The application logs a     MapMessage that contains an attacker-controlled floating-point value. An attacker who can supply a non-     finite value can cause the affected layout to emit malformed JSON, which may corrupt the enclosing log     record or disrupt downstream log ingestion and parsing. Users are advised to upgrade to Apache Log4j API     2.25.5 or 2.26.1, both of which emit RFC 8259-compliant JSON for non-finite values. (CVE-2026-49844)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326435">https://www.tenable.com/plugins/nessus/326435</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2024-12393]]></title>
            <link>https://www.tenable.com/plugins/nessus/326434</link>
            <guid>https://www.tenable.com/plugins/nessus/326434</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326434 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability     in Drupal Core allows Cross-Site Scripting (XSS).This issue affects Drupal Core: from 8.8.0 before     10.2.11, from 10.3.0 before 10.3.9, from 11.0.0 before 11.0.8. (CVE-2024-12393)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326434">https://www.tenable.com/plugins/nessus/326434</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[MiracleLinux 8 : ruby:2.5 (AXSA:2026-1244:01)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326433</link>
            <guid>https://www.tenable.com/plugins/nessus/326433</guid>
            <pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326433 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote MiracleLinux host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote MiracleLinux 8 host has packages installed that are affected by multiple vulnerabilities as referenced in the AXSA:2026-1244:01 advisory.<br /></span><span><br /></span><span>    * ruby/net-imap: ruby: Net::IMAP: IMAP Command Injection via Symbol Arguments (CVE-2026-42258)<br /></span><span>      * net-imap: ruby: Net::IMAP: Information disclosure via man-in-the-middle attack bypassing TLS     (CVE-2026-42246)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the MiracleLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326433">https://www.tenable.com/plugins/nessus/326433</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2026-53450]]></title>
            <link>https://www.tenable.com/plugins/nessus/326432</link>
            <guid>https://www.tenable.com/plugins/nessus/326432</guid>
            <pubDate>Sun, 12 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326432 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - Coturn is a free open source implementation of TURN and STUN Server. Prior to 4.13.0, coturn rejects     loopback peers by default unless allow-loopback-peers is enabled, but the default loopback guard can be     bypassed by using the IPv4-mapped IPv6 peer address ::ffff:127.0.0.1 in a TURN XOR-PEER-ADDRESS attribute.<br /></span><span>    ioa_addr_is_loopback checks for the literal IPv6 loopback shape before IPv4-mapped IPv6 handling, so     good_peer_addr does not apply the default loopback rejection and an authenticated TURN client can expose     services bound only to localhost on the coturn host through TURN relay traffic. This issue is fixed in     version 4.13.0. (CVE-2026-53450)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326432">https://www.tenable.com/plugins/nessus/326432</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Fedora 43 : acl (2026-67504c329b)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326431</link>
            <guid>https://www.tenable.com/plugins/nessus/326431</guid>
            <pubDate>Sun, 12 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326431 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Fedora host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Fedora 43 host has a package installed that is affected by multiple vulnerabilities as referenced in the FEDORA-2026-67504c329b advisory.<br /></span><span><br /></span><span>    * rebase to v2.4.0 to fix CVE-2026-54369 and CVE-2026-54370<br /></span><span><br /></span><span>    Resolves: CVE-2026-54369     Resolves: CVE-2026-54370<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Fedora security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected acl package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326431">https://www.tenable.com/plugins/nessus/326431</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2026-26982]]></title>
            <link>https://www.tenable.com/plugins/nessus/326430</link>
            <guid>https://www.tenable.com/plugins/nessus/326430</guid>
            <pubDate>Sun, 12 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326430 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - Ghostty is a cross-platform terminal emulator. Ghostty allows control characters such as 0x03 (Ctrl+C) in     pasted and dropped text. These can be used to execute arbitrary commands in some shell environments. This     attack requires an attacker to convince the user to copy and paste or drag and drop malicious text. The     attack requires user interaction to be triggered, but the dangerous characters are invisible in most GUI     environments so it isn't trivially detected, especially if the string contents are complex. Fixed in     Ghostty v1.3.0. (CVE-2026-26982)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326430">https://www.tenable.com/plugins/nessus/326430</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Debian dla-4677 : chromium - security update]]></title>
            <link>https://www.tenable.com/plugins/nessus/326429</link>
            <guid>https://www.tenable.com/plugins/nessus/326429</guid>
            <pubDate>Sun, 12 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326429 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Debian host is missing one or more security-related updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Debian 12 host has packages installed that are affected by multiple vulnerabilities as referenced in the dla-4677 advisory.<br /></span><span><br /></span><span>    - -------------------------------------------------------------------------     Debian LTS Advisory DLA-4677-1                debian-lts@lists.debian.org     https://www.debian.org/lts/security/               Emilio Pozuelo Monfort     July 12, 2026                                 https://wiki.debian.org/LTS<br /></span><span>    - -------------------------------------------------------------------------<br /></span><span><br /></span><span>    Package        : chromium     Version        : 150.0.7871.114-1~deb12u1     CVE ID         : CVE-2026-15107 CVE-2026-15108 CVE-2026-15109 CVE-2026-15110                      CVE-2026-15111 CVE-2026-15112 CVE-2026-15113 CVE-2026-15114                      CVE-2026-15115 CVE-2026-15116 CVE-2026-15117 CVE-2026-15118                      CVE-2026-15119 CVE-2026-15120 CVE-2026-15121 CVE-2026-15122                      CVE-2026-15123 CVE-2026-15124 CVE-2026-15125 CVE-2026-15126                      CVE-2026-15127 CVE-2026-15128 CVE-2026-15129 CVE-2026-15130                      CVE-2026-15131 CVE-2026-15132 CVE-2026-15133<br /></span><span><br /></span><span>    Security issues were discovered in Chromium which could result     in the execution of arbitrary code, denial of service, or information     disclosure.<br /></span><span><br /></span><span>    For Debian 12 bookworm, these problems have been fixed in version     150.0.7871.114-1~deb12u1.<br /></span><span><br /></span><span>    We recommend that you upgrade your chromium packages.<br /></span><span><br /></span><span>    For the detailed security status of chromium please refer to     its security tracker page at:<br /></span><span>    https://security-tracker.debian.org/tracker/chromium<br /></span><span><br /></span><span>    Further information about Debian LTS security advisories, how to apply     these updates to your system and frequently asked questions can be     found at: https://wiki.debian.org/LTS<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Debian security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade the chromium packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326429">https://www.tenable.com/plugins/nessus/326429</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[SUSE SLED15 / SLES15 Security Update : dracut (SUSE-SU-2026:2851-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326428</link>
            <guid>https://www.tenable.com/plugins/nessus/326428</guid>
            <pubDate>Sun, 12 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326428 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote SUSE host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote SUSE Linux SLED15 / SLED_SAP15 / SLES15 / SLES_SAP15 host has packages installed that are affected by a vulnerability as referenced in the SUSE-SU-2026:2851-1 advisory.<br /></span><span><br /></span><span>    This update for dracut fixes the following issue<br /></span><span><br /></span><span>    - CVE-2026-6893: Root code execution via DHCP options command injection (bsc#1268322).<br /></span><span><br /></span><span>    Changes for dracut:<br /></span><span><br /></span><span>    - Update to version 059+suse.570.g2b84048d7:<br /></span><span>     * fix(network-legacy): sanitize DHCP values in dhclient-script.sh (bsc#1268322, CVE-2026-6893)<br /></span><span>     * fix(network-legacy): add input validation to RFC 3442 route parser<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected dracut, dracut-fips, dracut-ima and / or dracut-mkinitrd-deprecated packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326428">https://www.tenable.com/plugins/nessus/326428</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[SUSE SLED15 / SLES15 Security Update : perl-List-SomeUtils-XS (SUSE-SU-2026:2845-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326427</link>
            <guid>https://www.tenable.com/plugins/nessus/326427</guid>
            <pubDate>Sun, 12 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326427 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote SUSE host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote SUSE Linux SLED15 / SLED_SAP15 / SLES15 / SLES_SAP15 host has a package installed that is affected by a vulnerability as referenced in the SUSE-SU-2026:2845-1 advisory.<br /></span><span><br /></span><span>    This update for perl-List-SomeUtils-XS fixes the following issue<br /></span><span><br /></span><span>    - CVE-2026-12844: heap buffer overflow in the `pairwise` function (bsc#1269210).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected perl-List-SomeUtils-XS package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326427">https://www.tenable.com/plugins/nessus/326427</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[SUSE SLES11: kernel-default / kernel-default-base / kernel-ec2 / kernel-ec2-base / etc (SUSE-SU-2026:2839-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326426</link>
            <guid>https://www.tenable.com/plugins/nessus/326426</guid>
            <pubDate>Sun, 12 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326426 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote SUSE host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote SUSE Linux SLES11 host has packages installed that are affected by multiple vulnerabilities as referenced in the SUSE-SU-2026:2839-1 advisory.<br /></span><span><br /></span><span>    The SUSE Linux Enterprise 11 SP4 kernel was updated to fix various security issues<br /></span><span><br /></span><span>    The following security issues were fixed:<br /></span><span><br /></span><span>    - CVE-2025-68324: scsi: imm: Fix use-after-free bug caused by unfinished delayed work (bsc#1255416).<br /></span><span>    - CVE-2026-43198: tcp: fix potential race in tcp_v6_syn_recv_sock() (bsc#1264610).<br /></span><span>    - CVE-2026-45970: bonding: alb: fix UAF in rlb_arp_recv during bond up/down (bsc#1267205).<br /></span><span>    - CVE-2026-46090: ALSA: aloop: Fix peer runtime UAF during format-change stop (bsc#1267531).<br /></span><span>    - CVE-2026-46113: KVM: x86: Fix shadow paging use-after-free due to unexpected GFN (bsc#1266969).<br /></span><span>    - CVE-2026-46266: inet: RAW sockets using IPPROTO_RAW MUST drop incoming ICMP (bsc#1267684).<br /></span><span>    - CVE-2026-46331: net/sched: fix pedit partial COW leading to page cache (bsc#1265421).<br /></span><span>    - CVE-2026-52918: Bluetooth: serialize accept_q access (bsc#1269100).<br /></span><span>    - CVE-2026-53253: Bluetooth: bnep: reject short frames before parsing (bsc#1269574).<br /></span><span>    - CVE-2026-53359: KVM: x86: Fix shadow paging use-after-free due to unexpected role (bsc#1270059).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326426">https://www.tenable.com/plugins/nessus/326426</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[SUSE SLES15: terraform-provider-aws / terraform-provider-azurerm / etc (SUSE-SU-2026:2850-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326425</link>
            <guid>https://www.tenable.com/plugins/nessus/326425</guid>
            <pubDate>Sun, 12 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326425 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote SUSE host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote SUSE Linux SLES15 / SLES_SAP15 host has packages installed that are affected by a vulnerability as referenced in the SUSE-SU-2026:2850-1 advisory.<br /></span><span><br /></span><span>    This update for terraform-provider-aws, terraform-provider-azurerm, terraform-provider-external,     terraform-provider-google, terraform-provider-helm, terraform-provider-kubernetes, terraform-provider-     random, terraform-provider-susepubliccloud, terraform-provider-tls fixes the following issue<br /></span><span><br /></span><span>    - CVE-2026-33814: golang.org/x/net/http2: infinite loop in HTTP/2 transport when given bad     SETTINGS_MAX_FRAME_SIZE       (bsc#1265678, bsc#1265700).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326425">https://www.tenable.com/plugins/nessus/326425</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[SUSE SLED15: gstreamer-plugins-good / gstreamer-plugins-good-gtk / etc (SUSE-SU-2026:2843-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326424</link>
            <guid>https://www.tenable.com/plugins/nessus/326424</guid>
            <pubDate>Sun, 12 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326424 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote SUSE host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote SUSE Linux SLED15 / SLED_SAP15 / SLES15 / SLES_SAP15 host has packages installed that are affected by a vulnerability as referenced in the SUSE-SU-2026:2843-1 advisory.<br /></span><span><br /></span><span>    This update for gstreamer-plugins-good fixes the following issue<br /></span><span><br /></span><span>    - CVE-2026-53705: Heap buffer overflow in WavPack decoder via integer overflow (bsc#1268449).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected gstreamer-plugins-good, gstreamer-plugins-good-gtk and / or gstreamer-plugins-good-lang packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326424">https://www.tenable.com/plugins/nessus/326424</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[SUSE SLES12: krb5 / krb5-32bit / krb5-client / krb5-devel / krb5-doc / etc (SUSE-SU-2026:2849-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326423</link>
            <guid>https://www.tenable.com/plugins/nessus/326423</guid>
            <pubDate>Sun, 12 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326423 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote SUSE host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote SUSE Linux SLES12 host has packages installed that are affected by a vulnerability as referenced in the SUSE- SU-2026:2849-1 advisory.<br /></span><span><br /></span><span>    This update for krb5 fixes the following issue<br /></span><span><br /></span><span>    - CVE-2026-11850: integer underflow in berval2tl_data() leads to heap out-of-bounds read (bsc#1268131).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326423">https://www.tenable.com/plugins/nessus/326423</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[SUSE SLED15: krb5 / krb5-32bit / krb5-client / krb5-devel / krb5-plugin-kdb-ldap / etc (SUSE-SU-2026:2848-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326422</link>
            <guid>https://www.tenable.com/plugins/nessus/326422</guid>
            <pubDate>Sun, 12 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326422 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote SUSE host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote SUSE Linux SLED15 / SLED_SAP15 / SLES15 / SLES_SAP15 host has packages installed that are affected by multiple vulnerabilities as referenced in the SUSE-SU-2026:2848-1 advisory.<br /></span><span><br /></span><span>    This update for krb5, krb5-mini fixes the following issues<br /></span><span><br /></span><span>    - CVE-2026-11850: integer underflow in berval2tl_data() leads to heap out-of-bounds read (bsc#1268131).<br /></span><span>    - CVE-2026-40355: Denial of Service via NULL pointer dereference in NegoEx mechanism (bsc#1263366).<br /></span><span>    - CVE-2026-40356: Denial of Service via integer underflow and out-of-bounds read (bsc#1263367).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326422">https://www.tenable.com/plugins/nessus/326422</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[SUSE SLES15: krb5 / krb5-32bit / krb5-client / krb5-devel / krb5-plugin-kdb-ldap / etc (SUSE-SU-2026:2847-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326421</link>
            <guid>https://www.tenable.com/plugins/nessus/326421</guid>
            <pubDate>Sun, 12 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326421 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote SUSE host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote SUSE Linux SLES15 / SLES_SAP15 host has packages installed that are affected by a vulnerability as referenced in the SUSE-SU-2026:2847-1 advisory.<br /></span><span><br /></span><span>    This update for krb5 fixes the following issue<br /></span><span><br /></span><span>    - CVE-2026-11850: integer underflow in berval2tl_data() leads to heap out-of-bounds read (bsc#1268131).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326421">https://www.tenable.com/plugins/nessus/326421</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[SUSE SLES12 Security Update : libexif (SUSE-SU-2026:2838-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326420</link>
            <guid>https://www.tenable.com/plugins/nessus/326420</guid>
            <pubDate>Sun, 12 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326420 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote SUSE host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote SUSE Linux SLES12 host has packages installed that are affected by multiple vulnerabilities as referenced in the SUSE-SU-2026:2838-1 advisory.<br /></span><span><br /></span><span>    This update for libexif fixes the following issues<br /></span><span><br /></span><span>    - CVE-2026-40385: Fixed information disclosure and crashes via integer overflow in Nikon MakerNote       handling (bsc#1262000)<br /></span><span>    - CVE-2026-40386: Fixed denial of service and information disclosure via integer underflow in MakerNote       decoding (bsc#1262001)<br /></span><span>    - CVE-2026-32775: Fixed Buffer overwrite via integer underflow in MakerNotes decoding (bsc#1259755)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected libexif-devel, libexif12 and / or libexif12-32bit packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326420">https://www.tenable.com/plugins/nessus/326420</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[SUSE SLES15 Security Update : gstreamer-plugins-good (SUSE-SU-2026:2842-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326419</link>
            <guid>https://www.tenable.com/plugins/nessus/326419</guid>
            <pubDate>Sun, 12 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326419 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote SUSE host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote SUSE Linux SLES15 / SLES_SAP15 host has packages installed that are affected by a vulnerability as referenced in the SUSE-SU-2026:2842-1 advisory.<br /></span><span><br /></span><span>    This update for gstreamer-plugins-good fixes the following issue<br /></span><span><br /></span><span>    - CVE-2026-53705: Heap buffer overflow in WavPack decoder via integer overflow (bsc#1268449).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected gstreamer-plugins-good and / or gstreamer-plugins-good-lang packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326419">https://www.tenable.com/plugins/nessus/326419</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[openSUSE 16: curl / curl-fish-completion / curl-zsh-completion / libcurl-devel / etc (openSUSE-SU-2026:21272-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326418</link>
            <guid>https://www.tenable.com/plugins/nessus/326418</guid>
            <pubDate>Sun, 12 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326418 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote openSUSE host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote openSUSE 16 host has packages installed that are affected by multiple vulnerabilities as referenced in the openSUSE-SU-2026:21272-1 advisory.<br /></span><span><br /></span><span>    This update for curl fixes the following issues<br /></span><span><br /></span><span>    - CVE-2026-8286: wrong STARTTLS connection reuse (bsc#1268402).<br /></span><span>    - CVE-2026-8458: wrong reuse for different services (bsc#1268407).<br /></span><span>    - CVE-2026-8924: traling dot domain super cookie (bsc#1268409).<br /></span><span>    - CVE-2026-8927: env-set cross-proxy Digest auth state leak (bsc#1268413).<br /></span><span>    - CVE-2026-9079: stale proxy password leak (bsc#1268415).<br /></span><span>    - CVE-2026-9080: UAF after pause in socket callback (bsc#1268416).<br /></span><span>    - CVE-2026-9545: exposing HTTP/3 early data (bsc#1268417).<br /></span><span>    - CVE-2026-9547: SSH improper host validation (bsc#1268420).<br /></span><span>    - CVE-2026-10536: HTTP/2 stream-dependency tree UAF (bsc#1268422).<br /></span><span>    - CVE-2026-12064: proto-default skips SSH verification (bsc#1268427).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326418">https://www.tenable.com/plugins/nessus/326418</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[openSUSE 16 Security Update : apptainer (openSUSE-SU-2026:21276-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326417</link>
            <guid>https://www.tenable.com/plugins/nessus/326417</guid>
            <pubDate>Sun, 12 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326417 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote openSUSE host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote openSUSE 16 host has packages installed that are affected by a vulnerability as referenced in the openSUSE- SU-2026:21276-1 advisory.<br /></span><span><br /></span><span>    Changes in apptainer:<br /></span><span><br /></span><span>    - Enable building of SUID starter for SLES 15 (jsc#PED-16347).<br /></span><span>      * Security fix for CVE-2026-2303 (bsc#1270529):<br /></span><span>        Heap Out-of-Bounds Read in GSSAPI Error Handling in         go.mongodb.org/mongo-driver. The dependency on mongo-driver         has been removed with this version of apptainer.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected apptainer and / or apptainer-leap packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326417">https://www.tenable.com/plugins/nessus/326417</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[openSUSE 16 Security Update : rust-keylime (openSUSE-SU-2026:21274-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326416</link>
            <guid>https://www.tenable.com/plugins/nessus/326416</guid>
            <pubDate>Sun, 12 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326416 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote openSUSE host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote openSUSE 16 host has packages installed that are affected by multiple vulnerabilities as referenced in the openSUSE-SU-2026:21274-1 advisory.<br /></span><span><br /></span><span>    Update to version 0.2.9+49.<br /></span><span><br /></span><span>    Security issues fixed:<br /></span><span><br /></span><span>    - CVE-2026-41676: openssl: `Deriver:derive` and `PkeyCtxRef:derive` can overflow short buffers on OpenSSL     1.1.1       (bsc#1270174).<br /></span><span>    - CVE-2026-41677: openssl: out-of-bounds read in PEM password callback when returning an oversized length       (bsc#1270614).<br /></span><span>    - CVE-2026-41678: openssl: out-of-bounds write due to incorrect bounds assertion in `aes::unwrap_key()`     (bsc#1270699).<br /></span><span>    - CVE-2026-41681: openssl: `MdCtxRef::digest_final()` writes past caller buffer with no length check     (bsc#1270792).<br /></span><span>    - CVE-2026-41898: openssl: unchecked callback-returned length in PSK and cookie generate trampolines can     leak adjacent       memory to the network (bsc#1270842).<br /></span><span>    - CVE-2026-42327: openssl: undefined behavior in `X509Ref::ocsp_responders` for certificates with non-     UTF-8 OCSP URLs       (bsc#1270523).<br /></span><span>    - CVE-2026-44662: openssl: heap buffer overflow when encrypting with AES key-wrap-with-padding due to     incorrectly sized       output buffers (bsc#1270903).<br /></span><span>    - CVE-2026-45784: openssl: out-of-bounds write in `CipherCtxRef::cipher_update_inplace` for AES-KW-PAD     ciphers due to       incorrectly sized output buffer (bsc#1270999).<br /></span><span><br /></span><span>    Other updates and bugfixes:<br /></span><span><br /></span><span>    - Update openssl to 0.10.81.<br /></span><span>    - Make tss-esai-sys depend on bindgen 72.1 to support llvm > 21.<br /></span><span>    - Build with Clang <= 21 (bsc#1260596).<br /></span><span>    - Version 0.2.9+49:<br /></span><span>      * build(deps): bump uuid from 1.23.3 to 1.23.4<br /></span><span>      * build(deps): bump syn from 2.0.117 to 2.0.118<br /></span><span>      * build(deps): bump openssl from 0.10.80 to 0.10.81<br /></span><span>      * build(deps): bump rand from 0.9.4 to 0.10.1<br /></span><span>      * Added new regression test into packit-ci.yaml<br /></span><span>      * build(deps): bump actions/checkout from 6 to 7<br /></span><span>      * build(deps): bump uuid from 1.23.1 to 1.23.3<br /></span><span>      * build(deps): bump log from 0.4.29 to 0.4.32<br /></span><span>      * build(deps): bump http from 1.4.0 to 1.4.2<br /></span><span>      * build(deps): bump codecov/codecov-action from 6 to 7<br /></span><span>      * build(deps): bump retry-policies from 0.5.1 to 0.5.2<br /></span><span>      * fix: Remove unused base64::Engine import in context_info tests<br /></span><span>      * build(deps): bump reqwest-middleware from 0.5.1 to 0.5.2<br /></span><span>      * build(deps): bump serde_json from 1.0.149 to 1.0.150<br /></span><span>      * build(deps): bump openssl from 0.10.79 to 0.10.80<br /></span><span>      * agent: Hash agent ID before TPM2_Certify qualifying data<br /></span><span>      * cargo: Bump tss-esapi, picky-asn1-x509, and picky-asn1-der<br /></span><span>      * build(deps): bump openssl from 0.10.78 to 0.10.79<br /></span><span>      * build(deps): bump once_cell from 1.21.3 to 1.21.4<br /></span><span>      * build(deps): bump tempfile from 3.23.0 to 3.27.0<br /></span><span>      * push-model: cache UEFI event log bytes at startup<br /></span><span>      * build(deps): bump quote from 1.0.40 to 1.0.45<br /></span><span>      * build(deps): bump chrono from 0.4.42 to 0.4.44<br /></span><span>      * build(deps): bump openssl from 0.10.73 to 0.10.78<br /></span><span>      * build(deps): bump serde_json from 1.0.143 to 1.0.149<br /></span><span>      * build(deps): bump syn from 2.0.106 to 2.0.117<br /></span><span>      * build(deps): bump libc from 0.2.175 to 0.2.184<br /></span><span>      * build(deps): bump rand from 0.9.2 to 0.9.4<br /></span><span>    - Version 0.2.9+21:<br /></span><span>      * tests: use Express-style named params in Mockoon endpoints<br /></span><span>      * build(deps): bump pest_derive from 2.8.1 to 2.8.6<br /></span><span>      * build(deps): bump trybuild from 1.0.110 to 1.0.115<br /></span><span>      * build(deps): bump log from 0.4.28 to 0.4.29<br /></span><span>      * build(deps): bump uuid from 1.19.0 to 1.20.0<br /></span><span>      * build(deps): bump codecov/codecov-action from 5 to 6<br /></span><span>      * build(deps): bump tracing-subscriber from 0.3.20 to 0.3.23<br /></span><span>      * build(deps): bump cfg-if from 1.0.3 to 1.0.4<br /></span><span>      * build(deps): bump tokio from 1.49.0 to 1.50.0<br /></span><span>      * build(deps): bump actix-web from 4.12.1 to 4.13.0<br /></span><span>      * build(deps): bump anyhow from 1.0.99 to 1.0.102<br /></span><span>      * build(deps): bump clap from 4.5.57 to 4.5.60<br /></span><span>      * build(deps): bump tracing from 0.1.36 to 0.1.44<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected keylime-ima-policy and / or rust-keylime packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326416">https://www.tenable.com/plugins/nessus/326416</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[openSUSE 16 Security Update : chromium (openSUSE-SU-2026:21279-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326415</link>
            <guid>https://www.tenable.com/plugins/nessus/326415</guid>
            <pubDate>Sun, 12 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326415 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote openSUSE host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote openSUSE 16 host has packages installed that are affected by multiple vulnerabilities as referenced in the openSUSE-SU-2026:21279-1 advisory.<br /></span><span><br /></span><span>    Changes in chromium:<br /></span><span><br /></span><span>    - Chromium 150.0.7871.100:<br /></span><span>      * stability improvements, no further information available<br /></span><span><br /></span><span>    - promote Chromium 150 (150.0.7871.46) to stable (boo#1270051)<br /></span><span>      * CVE-2026-13774: Use after free in Extensions<br /></span><span>      * CVE-2026-13775: Use after free in GPU<br /></span><span>      * CVE-2026-14398: Use after free in ANGLE<br /></span><span>      * CVE-2026-13776: Type Confusion in Dawn<br /></span><span>      * CVE-2026-13777: Insufficient validation of untrusted input in iOSWeb<br /></span><span>      * CVE-2026-13778: Use after free in WebUSB<br /></span><span>      * CVE-2026-13779: Use after free in Chromoting<br /></span><span>      * CVE-2026-13780: Insufficient validation of untrusted input in ANGLE<br /></span><span>      * CVE-2026-13781: Insufficient validation of untrusted input in Skia<br /></span><span>      * CVE-2026-14417: Use after free in Dawn<br /></span><span>      * CVE-2026-13782: Use after free in Browser<br /></span><span>      * CVE-2026-13783: Use after free in Views<br /></span><span>      * CVE-2026-13784: Use after free in Views<br /></span><span>      * CVE-2026-14419: Use after free in Skia<br /></span><span>      * CVE-2026-13785: Use after free in Bluetooth<br /></span><span>      * CVE-2026-14420: Out of bounds read and write in Dawn<br /></span><span>      * CVE-2026-13786: Use after free in Ozone<br /></span><span>      * CVE-2026-14427: Heap buffer overflow in Skia<br /></span><span>      * CVE-2026-13787: Use after free in Chromoting<br /></span><span>      * CVE-2026-13788: Use after free in Fullscreen<br /></span><span>      * CVE-2026-14382: Insufficient validation of untrusted input in ANGLE<br /></span><span>      * CVE-2026-13790: Side-channel information leakage in Scroll<br /></span><span>      * CVE-2026-14385: Heap buffer overflow in ANGLE<br /></span><span>      * CVE-2026-13791: Insufficient validation of untrusted input in Downloads<br /></span><span>      * CVE-2026-13792: Use after free in Touchbar<br /></span><span>      * CVE-2026-13793: Insufficient policy enforcement in SVG<br /></span><span>      * CVE-2026-14392: Out of bounds write in Tint<br /></span><span>      * CVE-2026-13794: Insufficient validation of untrusted input in WebAppInstalls<br /></span><span>      * CVE-2026-14422: Out of bounds read and write in Tint<br /></span><span>      * CVE-2026-13795: Insufficient policy enforcement in Chrome for iOS<br /></span><span>      * CVE-2026-14426: Use after free in V8<br /></span><span>      * CVE-2026-13796: Integer overflow in Chromecast<br /></span><span>      * CVE-2026-13797: Insufficient validation of untrusted input in Chromecast<br /></span><span>      * CVE-2026-14386: Out of bounds read in ANGLE<br /></span><span>      * CVE-2026-13798: Heap buffer overflow in Chromecast<br /></span><span>      * CVE-2026-13799: Use after free in QUIC<br /></span><span>      * CVE-2026-13800: Inappropriate implementation in Updater<br /></span><span>      * CVE-2026-13801: Integer overflow in Chromecast<br /></span><span>      * CVE-2026-13802: Use after free in Views<br /></span><span>      * CVE-2026-13803: Type Confusion in Chrome Tabs<br /></span><span>      * CVE-2026-13804: Use after free in Chromecast<br /></span><span>      * CVE-2026-13805: Use after free in GFX<br /></span><span>      * CVE-2026-14390: Use after free in ANGLE<br /></span><span>      * CVE-2026-13806: Insufficient validation of untrusted input in Accessibility<br /></span><span>      * CVE-2026-13807: Use after free in Import<br /></span><span>      * CVE-2026-13808: Insufficient data validation in Chrome for iOS<br /></span><span>      * CVE-2026-13809: Side-channel information leakage in Safe Browsing<br /></span><span>      * CVE-2026-13810: Inappropriate implementation in Input<br /></span><span>      * CVE-2026-13811: Use after free in IME<br /></span><span>      * CVE-2026-13812: Insufficient validation of untrusted input in Chrome for iOS<br /></span><span>      * CVE-2026-13813: Insufficient validation of untrusted input in Chrome for iOS<br /></span><span>      * CVE-2026-13814: Use after free in Views<br /></span><span>      * CVE-2026-13815: Use after free in Blink<br /></span><span>      * CVE-2026-13816: Insufficient validation of untrusted input in File Input<br /></span><span>      * CVE-2026-14396: Out of bounds read in ANGLE<br /></span><span>      * CVE-2026-13817: Insufficient validation of untrusted input in Glic<br /></span><span>      * CVE-2026-13818: Inappropriate implementation in Passwords<br /></span><span>      * CVE-2026-13819: Out of bounds read in ANGLE<br /></span><span>      * CVE-2026-13820: Out of bounds read in Skia<br /></span><span>      * CVE-2026-14400: Out of bounds write in ANGLE<br /></span><span>      * CVE-2026-14401: Insufficient validation of untrusted input in ANGLE<br /></span><span>      * CVE-2026-14402: Uninitialized Use in ANGLE<br /></span><span>      * CVE-2026-13821: Use after free in Canvas<br /></span><span>      * CVE-2026-13822: Inappropriate implementation in Extensions<br /></span><span>      * CVE-2026-13823: Use after free in Glic<br /></span><span>      * CVE-2026-13824: Insufficient validation of untrusted input in Extensions<br /></span><span>      * CVE-2026-13825: Uninitialized Use in Dawn<br /></span><span>      * CVE-2026-13826: Inappropriate implementation in Autofill<br /></span><span>      * CVE-2026-13827: Use after free in Updater<br /></span><span>      * CVE-2026-13828: Inappropriate implementation in Enterprise<br /></span><span>      * CVE-2026-13829: Insufficient validation of untrusted input in Settings<br /></span><span>      * CVE-2026-13830: Use after free in Chromoting<br /></span><span>      * CVE-2026-13831: Use after free in GPU<br /></span><span>      * CVE-2026-13832: Use after free in Headless<br /></span><span>      * CVE-2026-14411: Insufficient validation of untrusted input in ANGLE<br /></span><span>      * CVE-2026-13833: Uninitialized Use in ANGLE<br /></span><span>      * CVE-2026-14412: Insufficient validation of untrusted input in ANGLE<br /></span><span>      * CVE-2026-14413: Uninitialized Use in ANGLE<br /></span><span>      * CVE-2026-13834: Insufficient validation of untrusted input in ANGLE<br /></span><span>      * CVE-2026-13835: Inappropriate implementation in XML<br /></span><span>      * CVE-2026-13836: Inappropriate implementation in CSS<br /></span><span>      * CVE-2026-13837: Inappropriate implementation in CSS<br /></span><span>      * CVE-2026-13838: Inappropriate implementation in CSS<br /></span><span>      * CVE-2026-13839: Inappropriate implementation in CSS<br /></span><span>      * CVE-2026-13840: Insufficient policy enforcement in Canvas<br /></span><span>      * CVE-2026-13841: Integer overflow in Skia<br /></span><span>      * CVE-2026-13842: Incorrect security UI in Chrome for iOS<br /></span><span>      * CVE-2026-14418: Uninitialized Use in ANGLE<br /></span><span>      * CVE-2026-13843: Insufficient validation of untrusted input in Chrome for iOS<br /></span><span>      * CVE-2026-13844: Use after free in Updater<br /></span><span>      * CVE-2026-13845: Use after free in DOM<br /></span><span>      * CVE-2026-13846: Use after free in USB<br /></span><span>      * CVE-2026-13847: Insufficient validation of untrusted input in Chrome for iOS<br /></span><span>      * CVE-2026-13848: Use after free in Forms<br /></span><span>      * CVE-2026-13849: Insufficient validation of untrusted input in Chromoting<br /></span><span>      * CVE-2026-14423: Type Confusion in Tint<br /></span><span>      * CVE-2026-13850: Insufficient validation of untrusted input in Chrome for iOS<br /></span><span>      * CVE-2026-14424: Use after free in Dawn<br /></span><span>      * CVE-2026-14425: Use after free in ANGLE<br /></span><span>      * CVE-2026-13851: Insufficient validation of untrusted input in WebAppInstalls<br /></span><span>      * CVE-2026-14428: Insufficient validation of untrusted input in Dawn<br /></span><span>      * CVE-2026-14429: Insufficient validation of untrusted input in Skia<br /></span><span>      * CVE-2026-14430: Integer overflow in V8<br /></span><span>      * CVE-2026-13852: Insufficient validation of untrusted input in WebAppInstalls<br /></span><span>      * CVE-2026-13853: Use after free in Journeys<br /></span><span>      * CVE-2026-13854: Use after free in Ozone<br /></span><span>      * CVE-2026-14431: Type Confusion in V8<br /></span><span>      * CVE-2026-13855: Use after free in Ozone<br /></span><span>      * CVE-2026-13856: Insufficient validation of untrusted input in Speech<br /></span><span>      * CVE-2026-13857: Inappropriate implementation in Geometry<br /></span><span>      * CVE-2026-13858: Out of bounds read in FFmpeg<br /></span><span>      * CVE-2026-13859: Inappropriate implementation in ANGLE<br /></span><span>      * CVE-2026-14391: Integer overflow in ANGLE<br /></span><span>      * CVE-2026-13860: Incorrect security UI in Autofill<br /></span><span>      * CVE-2026-14408: Uninitialized Use in Dawn<br /></span><span>      * CVE-2026-14381: Incorrect security UI in WebAppInstalls<br /></span><span>      * CVE-2026-14383: Inappropriate implementation in V8<br /></span><span>      * CVE-2026-13861: Use after free in Core<br /></span><span>      * CVE-2026-13862: Insufficient policy enforcement in Web Authentication (Passkeys & Security Keys)<br /></span><span>      * CVE-2026-13863: Insufficient validation of untrusted input in CustomTabs<br /></span><span>      * CVE-2026-13864: Insufficient policy enforcement in WebHID<br /></span><span>      * CVE-2026-13865: Insufficient validation of untrusted input in Enterprise<br /></span><span>      * CVE-2026-13866: Insufficient validation of untrusted input in Input<br /></span><span>      * CVE-2026-13867: Inappropriate implementation in Geolocation<br /></span><span>      * CVE-2026-13868: Inappropriate implementation in Network<br /></span><span>      * CVE-2026-14384: Out of bounds read in ANGLE<br /></span><span>      * CVE-2026-13869: Use after free in Device<br /></span><span>      * CVE-2026-13870: Use after free in WebView<br /></span><span>      * CVE-2026-13871: Insufficient data validation in GuestView<br /></span><span>      * CVE-2026-13872: Insufficient validation of untrusted input in WebAppInstalls<br /></span><span>      * CVE-2026-13873: Out of bounds memory access in Layout<br /></span><span>      * CVE-2026-13874: Inappropriate implementation in DataTransfer<br /></span><span>      * CVE-2026-13875: Insufficient validation of untrusted input in GPU<br /></span><span>      * CVE-2026-13876: Inappropriate implementation in Network<br /></span><span>      * CVE-2026-13877: Insufficient validation of untrusted input in ANGLE<br /></span><span>      * CVE-2026-13878: Use after free in Bluetooth<br /></span><span>      * CVE-2026-13879: Use after free in Bluetooth<br /></span><span>      * CVE-2026-13880: Use after free in USB<br /></span><span>      * CVE-2026-13881: Insufficient data validation in WebAppInstalls<br /></span><span>      * CVE-2026-13882: Inappropriate implementation in USB<br /></span><span>      * CVE-2026-13883: Type Confusion in ANGLE<br /></span><span>      * CVE-2026-13884: Heap buffer overflow in Chromecast<br /></span><span>      * CVE-2026-14387: Integer overflow in Skia<br /></span><span>      * CVE-2026-13885: Use after free in Skia<br /></span><span>      * CVE-2026-13886: Policy bypass in Isolated Web Apps<br /></span><span>      * CVE-2026-14388: Out of bounds read in ANGLE<br /></span><span>      * CVE-2026-14389: Integer overflow in Skia<br /></span><span>      * CVE-2026-13887: Insufficient policy enforcement in NFC<br /></span><span>      * CVE-2026-13888: Use after free in Extensions<br /></span><span>      * CVE-2026-13889: Insufficient validation of untrusted input in WebAuthentication<br /></span><span>      * CVE-2026-13890: Out of bounds read in Chromecast<br /></span><span>      * CVE-2026-13891: Insufficient validation of untrusted input in Extensions<br /></span><span>      * CVE-2026-13892: Inappropriate implementation in Chrome for iOS<br /></span><span>      * CVE-2026-13893: Insufficient validation of untrusted input in WebUI<br /></span><span>      * CVE-2026-13894: Insufficient policy enforcement in Network<br /></span><span>      * CVE-2026-13895: Inappropriate implementation in Autofill<br /></span><span>      * CVE-2026-13896: Insufficient policy enforcement in Glic<br /></span><span>      * CVE-2026-13897: Insufficient policy enforcement in Chromecast<br /></span><span>      * CVE-2026-13898: Use after free in Cast Receiver<br /></span><span>      * CVE-2026-13899: Use after free in HTML<br /></span><span>      * CVE-2026-13900: Insufficient validation of untrusted input in Chromecast<br /></span><span>      * CVE-2026-13901: Insufficient validation of untrusted input in Serial<br /></span><span>      * CVE-2026-13902: Inappropriate implementation in Chrome for iOS<br /></span><span>      * CVE-2026-13903: Insufficient policy enforcement in Bluetooth<br /></span><span>      * CVE-2026-13904: Incorrect security UI in Safe Browsing<br /></span><span>      * CVE-2026-13905: Incorrect security UI in Chrome for iOS<br /></span><span>      * CVE-2026-13906: Out of bounds read in Codecs<br /></span><span>      * CVE-2026-13907: Inappropriate implementation in iOSWeb<br /></span><span>      * CVE-2026-13908: Insufficient validation of untrusted input in Omnibox<br /></span><span>      * CVE-2026-13909: Insufficient policy enforcement in DevTools<br /></span><span>      * CVE-2026-13910: Insufficient policy enforcement in WebXR<br /></span><span>      * CVE-2026-13911: Insufficient data validation in Spellcheck<br /></span><span>      * CVE-2026-13912: Incorrect security UI in Safe Browsing<br /></span><span>      * CVE-2026-13913: Insufficient policy enforcement in Autofill<br /></span><span>      * CVE-2026-13914: Inappropriate implementation in Passwords<br /></span><span>      * CVE-2026-13915: Use after free in Chrome for iOS<br /></span><span>      * CVE-2026-13916: Inappropriate implementation in Chrome for iOS<br /></span><span>      * CVE-2026-13917: Insufficient validation of untrusted input in Chrome for iOS<br /></span><span>      * CVE-2026-13918: Use after free in Chrome for iOS<br /></span><span>      * CVE-2026-13919: Insufficient data validation in Extensions<br /></span><span>      * CVE-2026-14393: Use after free in V8<br /></span><span>      * CVE-2026-13920: Insufficient validation of untrusted input in Media<br /></span><span>      * CVE-2026-13921: Insufficient validation of untrusted input in DeviceBoundSessionCredentials<br /></span><span>      * CVE-2026-13922: Side-channel information leakage in Paint<br /></span><span>      * CVE-2026-13923: Uninitialized Use in GPU<br /></span><span>      * CVE-2026-14397: Out of bounds write in ANGLE<br /></span><span>      * CVE-2026-13924: Insufficient validation of untrusted input in WebView<br /></span><span>      * CVE-2026-13925: Inappropriate implementation in Downloads<br /></span><span>      * CVE-2026-13926: Insufficient validation of untrusted input in Network<br /></span><span>      * CVE-2026-13927: Insufficient validation of untrusted input in UI<br /></span><span>      * CVE-2026-13928: Insufficient validation of untrusted input in Enterprise<br /></span><span>      * CVE-2026-13929: Insufficient validation of untrusted input in DevTools<br /></span><span>      * CVE-2026-13930: Insufficient policy enforcement in Actor<br /></span><span>      * CVE-2026-13931: Inappropriate implementation in Media<br /></span><span>      * CVE-2026-13932: Inappropriate implementation in Sharing<br /></span><span>      * CVE-2026-13933: Insufficient policy enforcement in Passwords<br /></span><span>      * CVE-2026-13934: Insufficient validation of untrusted input in Dawn<br /></span><span>      * CVE-2026-14399: Uninitialized Use in Dawn<br /></span><span>      * CVE-2026-13935: Side-channel information leakage in ComputePressure<br /></span><span>      * CVE-2026-13936: Inappropriate implementation in Passwords<br /></span><span>      * CVE-2026-13937: Insufficient policy enforcement in Passwords<br /></span><span>      * CVE-2026-13938: Integer overflow in Fonts<br /></span><span>      * CVE-2026-13939: Insufficient validation of untrusted input in WebShare<br /></span><span>      * CVE-2026-13940: Uninitialized Use in Cast<br /></span><span>      * CVE-2026-13941: Inappropriate implementation in SiteSettings<br /></span><span>      * CVE-2026-13942: Insufficient validation of untrusted input in Video Capture<br /></span><span>      * CVE-2026-13943: Uninitialized Use in CSS<br /></span><span>      * CVE-2026-13944: Inappropriate implementation in DataTransfer<br /></span><span>      * CVE-2026-13945: Insufficient policy enforcement in Extensions<br /></span><span>      * CVE-2026-13946: Inappropriate implementation in ScriptInjections<br /></span><span>      * CVE-2026-13947: Uninitialized Use in XR<br /></span><span>      * CVE-2026-13948: Insufficient policy enforcement in Extensions<br /></span><span>      * CVE-2026-13949: Insufficient policy enforcement in Payments<br /></span><span>      * CVE-2026-14404: Inappropriate implementation in PDFium<br /></span><span>      * CVE-2026-13950: Uninitialized Use in GPU<br /></span><span>      * CVE-2026-13951: Policy bypass in USB<br /></span><span>      * CVE-2026-13952: Inappropriate implementation in PerformanceAPIs<br /></span><span>      * CVE-2026-14406: Out of bounds read in V8<br /></span><span>      * CVE-2026-13953: Inappropriate implementation in SplitView<br /></span><span>      * CVE-2026-13954: Insufficient policy enforcement in XML<br /></span><span>      * CVE-2026-13955: Insufficient validation of untrusted input in CustomTabs<br /></span><span>      * CVE-2026-13956: Incorrect security UI in PageInfo<br /></span><span>      * CVE-2026-13957: Incorrect security UI in Extensions<br /></span><span>      * CVE-2026-13958: Uninitialized Use in Codecs<br /></span><span>      * CVE-2026-14407: Inappropriate implementation in V8<br /></span><span>      * CVE-2026-13959: Insufficient validation of untrusted input in Blink<br /></span><span>      * CVE-2026-13960: Inappropriate implementation in Passwords<br /></span><span>      * CVE-2026-13961: Insufficient validation of untrusted input in DevTools<br /></span><span>      * CVE-2026-13962: Insufficient data validation in PDF<br /></span><span>      * CVE-2026-13963: Inappropriate implementation in DevTools<br /></span><span>      * CVE-2026-13964: Insufficient policy enforcement in WebView<br /></span><span>      * CVE-2026-13965: Use after free in Oilpan<br /></span><span>      * CVE-2026-13966: Inappropriate implementation in History<br /></span><span>      * CVE-2026-13967: Type Confusion in V8<br /></span><span>      * CVE-2026-13968: Insufficient validation of untrusted input in DevTools<br /></span><span>      * CVE-2026-13969: Uninitialized Use in UI<br /></span><span>      * CVE-2026-13970: Uninitialized Use in Media<br /></span><span>      * CVE-2026-13971: Uninitialized Use in Skia<br /></span><span>      * CVE-2026-13972: Inappropriate implementation in Paint<br /></span><span>      * CVE-2026-13973: Inappropriate implementation in UI<br /></span><span>      * CVE-2026-13974: Integer overflow in Safe Browsing<br /></span><span>      * CVE-2026-13975: Out of bounds read in ANGLE<br /></span><span>      * CVE-2026-13976: Heap buffer overflow in Storage<br /></span><span>      * CVE-2026-13977: Inappropriate implementation in HTMLParser<br /></span><span>      * CVE-2026-13978: Insufficient policy enforcement in PageInfo<br /></span><span>      * CVE-2026-14414: Insufficient validation of untrusted input in Skia<br /></span><span>      * CVE-2026-13979: Inappropriate implementation in Paint<br /></span><span>      * CVE-2026-13980: Incorrect security UI in Chrome for iOS<br /></span><span>      * CVE-2026-13981: Inappropriate implementation in Chrome for iOS<br /></span><span>      * CVE-2026-13982: Incorrect security UI in Passwords<br /></span><span>      * CVE-2026-13983: Incorrect security UI in Chrome for iOS<br /></span><span>      * CVE-2026-13984: Incorrect security UI in TabStrip<br /></span><span>      * CVE-2026-13985: Inappropriate implementation in MediaCapture<br /></span><span>      * CVE-2026-13986: Inappropriate implementation in Media UI<br /></span><span>      * CVE-2026-13987: Incorrect security UI in Mobile<br /></span><span>      * CVE-2026-13988: Inappropriate implementation in Paint<br /></span><span>      * CVE-2026-13989: Insufficient policy enforcement in PageInfo<br /></span><span>      * CVE-2026-13990: Insufficient validation of untrusted input in DataTransfer<br /></span><span>      * CVE-2026-13991: Insufficient validation of untrusted input in Chrome for iOS<br /></span><span>      * CVE-2026-13992: Inappropriate implementation in UI<br /></span><span>      * CVE-2026-13993: Incorrect security UI in WebAppInstalls<br /></span><span>      * CVE-2026-13994: Inappropriate implementation in Credential Management<br /></span><span>      * CVE-2026-13995: Insufficient validation of untrusted input in Autofill<br /></span><span>      * CVE-2026-13996: Incorrect security UI in Permissions<br /></span><span>      * CVE-2026-13997: Incorrect security UI in Extensions<br /></span><span>      * CVE-2026-13998: Incorrect security UI in File Input<br /></span><span>      * CVE-2026-13999: Inappropriate implementation in Extensions<br /></span><span>      * CVE-2026-14000: Inappropriate implementation in XML<br /></span><span>      * CVE-2026-14001: Inappropriate implementation in Network<br /></span><span>      * CVE-2026-14002: Inappropriate implementation in Geolocation<br /></span><span>      * CVE-2026-14003: Insufficient policy enforcement in Extensions<br /></span><span>      * CVE-2026-14004: Inappropriate implementation in CSS<br /></span><span>      * CVE-2026-14005: Use after free in Omnibox<br /></span><span>      * CVE-2026-14006: Use after free in Navigation<br /></span><span>      * CVE-2026-14007: Insufficient policy enforcement in PermissionsPolicy<br /></span><span>      * CVE-2026-14008: Uninitialized Use in WebXR<br /></span><span>      * CVE-2026-14009: Insufficient data validation in Passwords<br /></span><span>      * CVE-2026-14010: Uninitialized Use in Codecs<br /></span><span>      * CVE-2026-14011: Out of bounds read in SurfaceCapture<br /></span><span>      * CVE-2026-14421: Uninitialized Use in Dawn<br /></span><span>      * CVE-2026-14012: Side-channel information leakage in CSS<br /></span><span>      * CVE-2026-14013: Inappropriate implementation in SVG<br /></span><span>      * CVE-2026-14014: Inappropriate implementation in Paint<br /></span><span>      * CVE-2026-14015: Inappropriate implementation in WebRTC<br /></span><span>      * CVE-2026-14016: Insufficient policy enforcement in SVG<br /></span><span>      * CVE-2026-14017: Inappropriate implementation in Navigation<br /></span><span>      * CVE-2026-14018: Use after free in Updater<br /></span><span>      * CVE-2026-14019: Inappropriate implementation in Passwords<br /></span><span>      * CVE-2026-14020: Insufficient validation of untrusted input in WebXR<br /></span><span>      * CVE-2026-14021: Insufficient validation of untrusted input in StorageAccessAPI<br /></span><span>      * CVE-2026-14022: Insufficient validation of untrusted input in Network<br /></span><span>      * CVE-2026-14023: Insufficient validation of untrusted input in SanitizerAPI<br /></span><span>      * CVE-2026-14024: Use after free in Ozone<br /></span><span>      * CVE-2026-14432: Use after free in V8<br /></span><span>      * CVE-2026-14025: Use after free in Views<br /></span><span>      * CVE-2026-14026: Incorrect security UI in SplitView<br /></span><span>      * CVE-2026-14027: Use after free in SignIn<br /></span><span>      * CVE-2026-14028: Incorrect security UI in Chrome for iOS<br /></span><span>      * CVE-2026-14030: Incorrect security UI in SplitView<br /></span><span>      * CVE-2026-14031: Incorrect security UI in File Input<br /></span><span>      * CVE-2026-14032: Use after free in Bluetooth<br /></span><span>      * CVE-2026-14033: Insufficient policy enforcement in Media<br /></span><span>      * CVE-2026-14034: Inappropriate implementation in WebXR<br /></span><span>      * CVE-2026-14035: Insufficient policy enforcement in Bluetooth<br /></span><span>      * CVE-2026-14036: Insufficient policy enforcement in Bluetooth<br /></span><span>      * CVE-2026-14037: Insufficient policy enforcement in GPU<br /></span><span>      * CVE-2026-14038: Insufficient validation of untrusted input in New Tab Page<br /></span><span>      * CVE-2026-14039: Insufficient policy enforcement in GetUserMedia<br /></span><span>      * CVE-2026-14040: Use after free in BrowserTag<br /></span><span>      * CVE-2026-14041: Insufficient policy enforcement in Serial<br /></span><span>      * CVE-2026-14042: Inappropriate implementation in Isolated Web Apps<br /></span><span>      * CVE-2026-14043: Use after free in GetUserMedia<br /></span><span>      * CVE-2026-14044: Use after free in ANGLE<br /></span><span>      * CVE-2026-14045: Insufficient validation of untrusted input in Network<br /></span><span>      * CVE-2026-14046: Inappropriate implementation in CustomTabs<br /></span><span>      * CVE-2026-14047: Insufficient policy enforcement in Extensions<br /></span><span>      * CVE-2026-14048: Use after free in Chromecast<br /></span><span>      * CVE-2026-14049: Inappropriate implementation in GPU<br /></span><span>      * CVE-2026-14050: Insufficient policy enforcement in Passwords<br /></span><span>      * CVE-2026-14051: Uninitialized Use in GamepadAPI<br /></span><span>      * CVE-2026-14052: Insufficient policy enforcement in FileSystem<br /></span><span>      * CVE-2026-14053: Insufficient policy enforcement in Extensions<br /></span><span>      * CVE-2026-14054: Insufficient policy enforcement in Network<br /></span><span>      * CVE-2026-14055: Insufficient validation of untrusted input in Device Trust<br /></span><span>      * CVE-2026-14056: Insufficient validation of untrusted input in Media<br /></span><span>      * CVE-2026-14057: Insufficient policy enforcement in FedCM<br /></span><span>      * CVE-2026-14058: Policy bypass in Parser<br /></span><span>      * CVE-2026-14059: Insufficient policy enforcement in Related-Website-Sets<br /></span><span>      * CVE-2026-14060: Insufficient validation of untrusted input in Chromoting<br /></span><span>      * CVE-2026-14061: Inappropriate implementation in Dawn<br /></span><span>      * CVE-2026-14062: Inappropriate implementation in Views<br /></span><span>      * CVE-2026-14063: Out of bounds memory access in Chromecast<br /></span><span>      * CVE-2026-14064: Use after free in PageInfo<br /></span><span>      * CVE-2026-14065: Insufficient validation of untrusted input in PageInfo<br /></span><span>      * CVE-2026-14066: Insufficient validation of untrusted input in Chrome for iOS<br /></span><span>      * CVE-2026-14067: Use after free in Chrome for iOS<br /></span><span>      * CVE-2026-14068: Inappropriate implementation in Omnibox<br /></span><span>      * CVE-2026-14069: Integer overflow in WebNN<br /></span><span>      * CVE-2026-14070: Uninitialized Use in WebNN<br /></span><span>      * CVE-2026-14071: Side-channel information leakage in WebAudio<br /></span><span>      * CVE-2026-14072: Incorrect security UI in SplitView<br /></span><span>      * CVE-2026-14073: Insufficient policy enforcement in WebXR<br /></span><span>      * CVE-2026-14394: Use after free in V8<br /></span><span>      * CVE-2026-14395: Out of bounds write in V8<br /></span><span>      * CVE-2026-14074: Side-channel information leakage in WebAuthentication<br /></span><span>      * CVE-2026-14075: Policy bypass in Chrome for iOS<br /></span><span>      * CVE-2026-14076: Policy bypass in Network<br /></span><span>      * CVE-2026-14077: Incorrect security UI in Select<br /></span><span>      * CVE-2026-14078: Policy bypass in WebRTC<br /></span><span>      * CVE-2026-14079: Policy bypass in Network<br /></span><span>      * CVE-2026-14080: Insufficient validation of untrusted input in TabSwitcher<br /></span><span>      * CVE-2026-14081: Insufficient policy enforcement in DevTools<br /></span><span>      * CVE-2026-14082: Race in Storage<br /></span><span>      * CVE-2026-14083: Insufficient validation of untrusted input in HTML<br /></span><span>      * CVE-2026-14084: Insufficient validation of untrusted input in Chromoting<br /></span><span>      * CVE-2026-14085: Side-channel information leakage in CSS<br /></span><span>      * CVE-2026-14086: Insufficient policy enforcement in HID<br /></span><span>      * CVE-2026-14087: Insufficient validation of untrusted input in WebNN<br /></span><span>      * CVE-2026-14088: Uninitialized Use in Canvas<br /></span><span>      * CVE-2026-14089: Insufficient validation of untrusted input in PopupBlocker<br /></span><span>      * CVE-2026-14090: Out of bounds read in CameraCapture<br /></span><span>      * CVE-2026-14091: Use after free in DevTools<br /></span><span>      * CVE-2026-14092: Insufficient policy enforcement in Privacy<br /></span><span>      * CVE-2026-14093: Use after free in Cast<br /></span><span>      * CVE-2026-14094: Use after free in Installer<br /></span><span>      * CVE-2026-14095: Insufficient validation of untrusted input in Browser<br /></span><span>      * CVE-2026-14403: Use after free in V8<br /></span><span>      * CVE-2026-14096: Object lifecycle issue in Input<br /></span><span>      * CVE-2026-14097: Inappropriate implementation in WebAppInstalls<br /></span><span>      * CVE-2026-14098: Inappropriate implementation in CSS<br /></span><span>      * CVE-2026-14405: Uninitialized Use in V8<br /></span><span>      * CVE-2026-14099: Use after free in Chrome for iOS<br /></span><span>      * CVE-2026-14100: Insufficient data validation in NetworkCache<br /></span><span>      * CVE-2026-14101: Insufficient policy enforcement in Sandbox<br /></span><span>      * CVE-2026-14102: Use after free in Passwords<br /></span><span>      * CVE-2026-14103: Use after free in SSL<br /></span><span>      * CVE-2026-14104: Insufficient validation of untrusted input in WebAppInstalls<br /></span><span>      * CVE-2026-14105: Insufficient policy enforcement in Speech<br /></span><span>      * CVE-2026-14106: Insufficient validation of untrusted input in Text<br /></span><span>      * CVE-2026-14107: Use after free in Scheduling<br /></span><span>      * CVE-2026-14108: Use after free in PDFium<br /></span><span>      * CVE-2026-14109: Insufficient policy enforcement in Mojo<br /></span><span>      * CVE-2026-14110: Inappropriate implementation in DarkMode<br /></span><span>      * CVE-2026-14111: Use after free in WebProtect<br /></span><span>      * CVE-2026-14112: Inappropriate implementation in Enterprise<br /></span><span>      * CVE-2026-14113: Use after free in Updater<br /></span><span>      * CVE-2026-14114: Inappropriate implementation in WebAppInstalls<br /></span><span>      * CVE-2026-14115: Insufficient validation of untrusted input in Cast<br /></span><span>      * CVE-2026-14116: Insufficient validation of untrusted input in DevTools<br /></span><span>      * CVE-2026-14117: Insufficient validation of untrusted input in DevTools<br /></span><span>      * CVE-2026-14118: Insufficient data validation in DevTools<br /></span><span>      * CVE-2026-14119: Type Confusion in Bluetooth<br /></span><span>      * CVE-2026-14120: Inappropriate implementation in DevTools<br /></span><span>      * CVE-2026-14121: Use after free in Chromoting<br /></span><span>      * CVE-2026-14409: Inappropriate implementation in V8<br /></span><span>      * CVE-2026-14122: Insufficient validation of untrusted input in WebAppInstalls<br /></span><span>      * CVE-2026-14410: Inappropriate implementation in Skia<br /></span><span>      * CVE-2026-14123: Incorrect security UI in Chrome for iOS<br /></span><span>      * CVE-2026-14124: Inappropriate implementation in CredentialProvider<br /></span><span>      * CVE-2026-14125: Uninitialized Use in ANGLE<br /></span><span>      * CVE-2026-14126: Incorrect security UI in UI<br /></span><span>      * CVE-2026-14127: Inappropriate implementation in Printing<br /></span><span>      * CVE-2026-14128: Insufficient data validation in Chrome for iOS<br /></span><span>      * CVE-2026-14129: Incorrect security UI in PreviewTab<br /></span><span>      * CVE-2026-14130: Incorrect security UI in Omnibox<br /></span><span>      * CVE-2026-14131: Insufficient validation of untrusted input in WebAppInstalls<br /></span><span>      * CVE-2026-14132: Inappropriate implementation in WebXR<br /></span><span>      * CVE-2026-14133: Race in History Embeddings<br /></span><span>      * CVE-2026-14134: Inappropriate implementation in Autofill<br /></span><span>      * CVE-2026-14135: Insufficient validation of untrusted input in Network<br /></span><span>      * CVE-2026-14136: Incorrect security UI in Chrome for iOS<br /></span><span>      * CVE-2026-14137: Insufficient validation of untrusted input in Chrome for iOS<br /></span><span>      * CVE-2026-14138: Inappropriate implementation in WebAppInstalls<br /></span><span>      * CVE-2026-14139: Inappropriate implementation in TabStrip<br /></span><span>      * CVE-2026-14140: Insufficient validation of untrusted input in Input<br /></span><span>      * CVE-2026-14141: Incorrect security UI in Document Picture-in-Picture<br /></span><span>      * CVE-2026-14142: Inappropriate implementation in Extensions<br /></span><span>      * CVE-2026-14143: Incorrect security UI in Passwords<br /></span><span>      * CVE-2026-14144: Incorrect security UI in Views<br /></span><span>      * CVE-2026-14145: Inappropriate implementation in CSS<br /></span><span>      * CVE-2026-14146: Inappropriate implementation in CSS<br /></span><span>      * CVE-2026-14147: Inappropriate implementation in CSS<br /></span><span>      * CVE-2026-14415: Inappropriate implementation in V8<br /></span><span>      * CVE-2026-14148: Type Confusion in CSS<br /></span><span>      * CVE-2026-14149: Use after free in Audio<br /></span><span>      * CVE-2026-14416: Out of bounds read in Dawn<br /></span><span>      * CVE-2026-14150: Insufficient validation of untrusted input in Speech<br /></span><span>      * CVE-2026-14151: Inappropriate implementation in AI<br /></span><span>      * CVE-2026-14152: Out of bounds write in ANGLE<br /></span><span>      * CVE-2026-14153: Inappropriate implementation in Glic<br /></span><span>      * CVE-2026-14154: Inappropriate implementation in DevTools<br /></span><span>      * CVE-2026-14155: Insufficient policy enforcement in StorageAccessAPI<br /></span><span>      * CVE-2026-14156: Policy bypass in StorageAccessAPI<br /></span><span><br /></span><span>    - Chromium 149.0.7827.200 (boo#1269061):<br /></span><span>      * CVE-2026-13281: Integer overflow in Mojo<br /></span><span>      * CVE-2026-13282: Use after free in Payments<br /></span><span>      * CVE-2026-13283: Use after free in AdFilter<br /></span><span><br /></span><span>    - Chromium 149.0.7827.196:<br /></span><span>      * stability and performance improvements<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected chromedriver and / or chromium packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326415">https://www.tenable.com/plugins/nessus/326415</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[openSUSE 16 Security Update : go-sendxmpp (openSUSE-SU-2026:21277-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326414</link>
            <guid>https://www.tenable.com/plugins/nessus/326414</guid>
            <pubDate>Sun, 12 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326414 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote openSUSE host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote openSUSE 16 host has a package installed that is affected by multiple vulnerabilities as referenced in the openSUSE-SU-2026:21277-1 advisory.<br /></span><span><br /></span><span>    Changes in go-sendxmpp:<br /></span><span><br /></span><span>    - Update to 0.16.0:<br /></span><span>      Added:<br /></span><span>      * Add Ox support to http-upload.<br /></span><span>      * Add Ox support for private group chats.<br /></span><span>      * Show error cause if joining MUCs failedi (requires go-xmpp >= v0.3.5).<br /></span><span>      Changed:<br /></span><span>      * Fix --ox-delete-nodes.<br /></span><span>      * Fix receiving of 1-1 messages while joined in a MUC.<br /></span><span>      * Use go-sendxmpp + a random ID as fallback MUC alias.<br /></span><span>      * Strip leading xmpp: from recipients.<br /></span><span>      * Strip trailing ?join from MUC JIDs.<br /></span><span>      * Add context for timeouts in stanza handling.<br /></span><span>      * Check ID for disco items reply (requires go-xmpp >= v0.3.6).<br /></span><span>      * Reduce channel buffer size to 1 where only one item will be returned.<br /></span><span>      * Deprecate legacy PGP.<br /></span><span>      * CVE-2026-1229: The CombinedMult function produces an incorrect value (bsc#1265538)         Bump circl to 1.6.3<br /></span><span>      * CVE-2026-39821: Failure to reject ASCII-only Punycode-encoded labels allows for validation bypass and     privilege escalation (bsc#1266617)         Bump net to 0.56.0<br /></span><span><br /></span><span>    - Update to 0.15.8:<br /></span><span>      * Fix windows build (windows doesn't support syscalls Setgid and Setuid).<br /></span><span><br /></span><span>    - Update to 0.15.7:<br /></span><span>      * Fix http-upload with legacy PGP encryption.<br /></span><span>      * Fix reading of environment variables.<br /></span><span>      * Fix a bug in looking up host meta 2.<br /></span><span>      * Try to drop root privileges before connecting to the server.<br /></span><span>      * Fix crash if a config key has no value.<br /></span><span>      * Use a salt for stored FAST token.<br /></span><span>      * Increase scrypt iterations for storing FAST token from 32768 to 65536.<br /></span><span>      * Log a warning when --no-tls-verify or -n is set.<br /></span><span><br /></span><span>    - Update to 0.15.6:<br /></span><span>      Added:<br /></span><span>      * New config option allow_plain.<br /></span><span>      Changed:<br /></span><span>      * Explain each configuration option in manpage go-sendxmpp(5).<br /></span><span>      * Improve config parsing robustness.<br /></span><span>      * Update link in manpage as Gitlab calls issues now work items.<br /></span><span>      * Recognize stanza size limit updates after authentication (via go-xmpp >= v0.3.3).<br /></span><span>      * Tell connection target in error message when failing to connect.<br /></span><span>    - Drop tar-scm service and use regular tarball and go_modules<br /></span><span><br /></span><span>    - Update to 0.15.5:<br /></span><span>      * Fix SASL SCRAM Downgrade Protection in case of server providing         different mechanisms for SASL and SASL2 (requires go-xmpp >0 v0.3.2).<br /></span><span><br /></span><span>    - Update to 0.15.4:<br /></span><span>      * http-upload: Manually set content length for HTTP request (fixes         issues with certain http modules/proxies).<br /></span><span><br /></span><span>    - Update to 0.15.3:<br /></span><span>      * Fix PLAIN authentication for SASL2 (requires go-xmpp >= v0.3.1).<br /></span><span><br /></span><span>    - Update to 0.15.2:<br /></span><span>      * Use UUIDv7 instead of UUIDv4 for stanza IDs (requires go-xmpp >= v0.2.19).<br /></span><span>      * Fix stanza syntax error for legacy PGP messages.<br /></span><span>      * Print error if legacy PGP and Ox are requested simultaneously.<br /></span><span>      * Reworked OOB file sending and http-upload to use new functions         from go-xmpp library (requires go-xmpp >= v0.3.0).<br /></span><span>      * Try password login if FAST login fails.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected go-sendxmpp package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326414">https://www.tenable.com/plugins/nessus/326414</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Fedora 44 : log4cxx (2026-43767b6007)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326413</link>
            <guid>https://www.tenable.com/plugins/nessus/326413</guid>
            <pubDate>Sun, 12 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326413 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Fedora host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Fedora 44 host has a package installed that is affected by a vulnerability as referenced in the FEDORA-2026-43767b6007 advisory.<br /></span><span><br /></span><span>    Update to log4cxx 1.7.0.<br /></span><span><br /></span><span>    New features: fallback-ref appender attribute, Qt CMake find_package     component, TelnetAppender NonBlocking option.<br /></span><span><br /></span><span>    Bug fixes: non-ASCII JSON encoding, invalid XML 1.0 characters in XML     output, crash on recursive XML config references, possible UB during     configuration changes, message loss during recursive logging,     ODBCAppender prepared-statement buffer lifetimes.<br /></span><span><br /></span><span>    No ABI-relevant changes; liblog4cxx SONAME (%{sover}) is unchanged.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Fedora security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected log4cxx package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326413">https://www.tenable.com/plugins/nessus/326413</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Fedora 43 : python-tornado (2026-23656e6d2f)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326412</link>
            <guid>https://www.tenable.com/plugins/nessus/326412</guid>
            <pubDate>Sun, 12 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326412 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Fedora host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Fedora 43 host has a package installed that is affected by multiple vulnerabilities as referenced in the FEDORA-2026-23656e6d2f advisory.<br /></span><span><br /></span><span>    Update to 6.5.7 - CVE-2026-35536 (rhbz#2457335), CVE-2026-31958 (rhbz#2451660)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Fedora security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected python-tornado package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326412">https://www.tenable.com/plugins/nessus/326412</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Fedora 44 : chromium (2026-7e82bf89f4)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326411</link>
            <guid>https://www.tenable.com/plugins/nessus/326411</guid>
            <pubDate>Sun, 12 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326411 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Fedora host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Fedora 44 host has a package installed that is affected by multiple vulnerabilities as referenced in the FEDORA-2026-7e82bf89f4 advisory.<br /></span><span><br /></span><span>    Update to 150.0.7871.114<br /></span><span><br /></span><span>          * CVE-2026-15112: Use after free in Ozone<br /></span><span>          * CVE-2026-15129: Use after free in Views<br /></span><span>          * CVE-2026-15132: Uninitialized Use in V8<br /></span><span>          * CVE-2026-15133: Use after free in InterestGroups<br /></span><span>          * CVE-2026-15108: Integer overflow in Extensions API<br /></span><span>          * CVE-2026-15109: Uninitialized Use in ANGLE<br /></span><span>          * CVE-2026-15110: Use after free in Extensions<br /></span><span>          * CVE-2026-15111: Use after free in Views<br /></span><span>          * CVE-2026-15113: Use after free in Autofill<br /></span><span>          * CVE-2026-15114: Out of bounds read and write in Codecs<br /></span><span>          * CVE-2026-15115: Insufficient validation of untrusted input in WebAppInstalls<br /></span><span>          * CVE-2026-15116: Use after free in Actor<br /></span><span>          * CVE-2026-15117: Use after free in Payments<br /></span><span>          * CVE-2026-15118: Use after free in Input<br /></span><span>          * CVE-2026-15119: Inappropriate implementation in GetUserMedia<br /></span><span>          * CVE-2026-15120: Use after free in Core<br /></span><span>          * CVE-2026-15121: Use after free in WebRTC<br /></span><span>          * CVE-2026-15122: Insufficient validation of untrusted input in Codecs<br /></span><span>          * CVE-2026-15123: Insufficient data validation in DOM<br /></span><span>          * CVE-2026-15124: Insufficient policy enforcement in Passwords<br /></span><span>          * CVE-2026-15125: Inappropriate implementation in Forms<br /></span><span>          * CVE-2026-15126: Use after free in Forms<br /></span><span>          * CVE-2026-15127: Inappropriate implementation in WebGL<br /></span><span>          * CVE-2026-15128: Inappropriate implementation in Forms<br /></span><span>          * CVE-2026-15130: Insufficient policy enforcement in Navigation<br /></span><span>          * CVE-2026-15107: Use after free in IndexedDB<br /></span><span>          * CVE-2026-15131: Insufficient data validation in Navigation<br /></span><span><br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Fedora security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected chromium package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326411">https://www.tenable.com/plugins/nessus/326411</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Fedora 43 : xorg-x11-server-Xwayland (2026-6a00d3109f)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326410</link>
            <guid>https://www.tenable.com/plugins/nessus/326410</guid>
            <pubDate>Sun, 12 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326410 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Fedora host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Fedora 43 host has a package installed that is affected by multiple vulnerabilities as referenced in the FEDORA-2026-6a00d3109f advisory.<br /></span><span><br /></span><span>    Update to xwayland 24.1.13, fixes for: CVE-2026-55999, CVE-2026-56000<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Fedora security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected xorg-x11-server-Xwayland package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326410">https://www.tenable.com/plugins/nessus/326410</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Fedora 44 : python-tornado (2026-0f40de2581)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326409</link>
            <guid>https://www.tenable.com/plugins/nessus/326409</guid>
            <pubDate>Sun, 12 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326409 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Fedora host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Fedora 44 host has a package installed that is affected by multiple vulnerabilities as referenced in the FEDORA-2026-0f40de2581 advisory.<br /></span><span><br /></span><span>    Update to 6.5.7 - CVE-2026-35536 (rhbz#2457335), CVE-2026-31958 (rhbz#2451660)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Fedora security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected python-tornado package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326409">https://www.tenable.com/plugins/nessus/326409</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Fedora 44 : python-idna (2026-822c07add4)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326408</link>
            <guid>https://www.tenable.com/plugins/nessus/326408</guid>
            <pubDate>Sun, 12 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326408 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Fedora host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Fedora 44 host has a package installed that is affected by multiple vulnerabilities as referenced in the FEDORA-2026-822c07add4 advisory.<br /></span><span><br /></span><span>    Update to the latest version to bring fixes for CVE-2026-45409 and CVE-2024-3651 into the stable releases.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Fedora security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected python-idna package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326408">https://www.tenable.com/plugins/nessus/326408</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Fedora 43 : tmux (2026-7fa12630d5)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326407</link>
            <guid>https://www.tenable.com/plugins/nessus/326407</guid>
            <pubDate>Sun, 12 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326407 with Low Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Fedora host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Fedora 43 host has a package installed that is affected by a vulnerability as referenced in the FEDORA-2026-7fa12630d5 advisory.<br /></span><span><br /></span><span><br /></span><span>    fdf6afc update to 3.7b fixes rhbz#2498485<br /></span><span><br /></span><span><br /></span><span>    CHANGES FROM 3.7a TO 3.7b<br /></span><span><br /></span><span>    * Fix so that the end of a synchronized update again triggers a redraw.<br /></span><span><br /></span><span>    CHANGES FROM 3.7 TO 3.7a<br /></span><span><br /></span><span>    * Fix crash in break-pane when no name is provided.<br /></span><span><br /></span><span>    * Scrollbar options are now cached rather than being looked up for every redraw       (issue 5298).<br /></span><span><br /></span><span>    * Only forbid #( in names, allow #[, empty names, : and .<br /></span><span><br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Fedora security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected tmux package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326407">https://www.tenable.com/plugins/nessus/326407</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Fedora 44 : perl-Crypt-DSA (2026-fcfc08d46c)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326406</link>
            <guid>https://www.tenable.com/plugins/nessus/326406</guid>
            <pubDate>Sun, 12 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326406 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Fedora host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Fedora 44 host has a package installed that is affected by a vulnerability as referenced in the FEDORA-2026-fcfc08d46c advisory.<br /></span><span><br /></span><span>    This update, to the current upstream release, addresses a cryptographic flaw (modulo bias) in key     generation that could lead to private key compromise (CVE-2026-14570) .<br /></span><span><br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Fedora security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected perl-Crypt-DSA package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326406">https://www.tenable.com/plugins/nessus/326406</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Fedora 43 : perl-Crypt-DSA (2026-b77b9c5f04)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326405</link>
            <guid>https://www.tenable.com/plugins/nessus/326405</guid>
            <pubDate>Sun, 12 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326405 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Fedora host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Fedora 43 host has a package installed that is affected by a vulnerability as referenced in the FEDORA-2026-b77b9c5f04 advisory.<br /></span><span><br /></span><span>    This update, to the current upstream release, addresses a cryptographic flaw (modulo bias) in key     generation that could lead to private key compromise (CVE-2026-14570) .<br /></span><span><br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Fedora security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected perl-Crypt-DSA package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326405">https://www.tenable.com/plugins/nessus/326405</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Fedora 43 : chromium (2026-9a7d180869)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326404</link>
            <guid>https://www.tenable.com/plugins/nessus/326404</guid>
            <pubDate>Sun, 12 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326404 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Fedora host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Fedora 43 host has a package installed that is affected by multiple vulnerabilities as referenced in the FEDORA-2026-9a7d180869 advisory.<br /></span><span><br /></span><span>    Update to 150.0.7871.114<br /></span><span><br /></span><span>          * CVE-2026-15112: Use after free in Ozone<br /></span><span>          * CVE-2026-15129: Use after free in Views<br /></span><span>          * CVE-2026-15132: Uninitialized Use in V8<br /></span><span>          * CVE-2026-15133: Use after free in InterestGroups<br /></span><span>          * CVE-2026-15108: Integer overflow in Extensions API<br /></span><span>          * CVE-2026-15109: Uninitialized Use in ANGLE<br /></span><span>          * CVE-2026-15110: Use after free in Extensions<br /></span><span>          * CVE-2026-15111: Use after free in Views<br /></span><span>          * CVE-2026-15113: Use after free in Autofill<br /></span><span>          * CVE-2026-15114: Out of bounds read and write in Codecs<br /></span><span>          * CVE-2026-15115: Insufficient validation of untrusted input in WebAppInstalls<br /></span><span>          * CVE-2026-15116: Use after free in Actor<br /></span><span>          * CVE-2026-15117: Use after free in Payments<br /></span><span>          * CVE-2026-15118: Use after free in Input<br /></span><span>          * CVE-2026-15119: Inappropriate implementation in GetUserMedia<br /></span><span>          * CVE-2026-15120: Use after free in Core<br /></span><span>          * CVE-2026-15121: Use after free in WebRTC<br /></span><span>          * CVE-2026-15122: Insufficient validation of untrusted input in Codecs<br /></span><span>          * CVE-2026-15123: Insufficient data validation in DOM<br /></span><span>          * CVE-2026-15124: Insufficient policy enforcement in Passwords<br /></span><span>          * CVE-2026-15125: Inappropriate implementation in Forms<br /></span><span>          * CVE-2026-15126: Use after free in Forms<br /></span><span>          * CVE-2026-15127: Inappropriate implementation in WebGL<br /></span><span>          * CVE-2026-15128: Inappropriate implementation in Forms<br /></span><span>          * CVE-2026-15130: Insufficient policy enforcement in Navigation<br /></span><span>          * CVE-2026-15107: Use after free in IndexedDB<br /></span><span>          * CVE-2026-15131: Insufficient data validation in Navigation<br /></span><span><br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Fedora security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected chromium package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326404">https://www.tenable.com/plugins/nessus/326404</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Fedora 43 : upower (2026-ce80ea7afe)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326403</link>
            <guid>https://www.tenable.com/plugins/nessus/326403</guid>
            <pubDate>Sun, 12 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326403 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Fedora host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Fedora 43 host has a package installed that is affected by a vulnerability as referenced in the FEDORA-2026-ce80ea7afe advisory.<br /></span><span><br /></span><span>    upower 1.91.3:<br /></span><span><br /></span><span>    * Feature: up-device-battery: Prefer Standard over Fast charging (!316 (merged), #344 (closed))<br /></span><span>    * Fix: Resolve potential leaks (!327 (merged))<br /></span><span>    * Fix: Potential out-of-bound access (!328 (merged))<br /></span><span>    * Fix: Improve access control (!326 (merged))<br /></span><span>    * Fix: Remove unused codes (!329 (merged))<br /></span><span>    * Fix: Fix for Asus Battery Charge Threshold Detection (!330 (merged), #347 (closed))<br /></span><span><br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Fedora security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected upower package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326403">https://www.tenable.com/plugins/nessus/326403</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Fedora 43 : libXfont2 (2026-18ea3f47f8)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326402</link>
            <guid>https://www.tenable.com/plugins/nessus/326402</guid>
            <pubDate>Sun, 12 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326402 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Fedora host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Fedora 43 host has a package installed that is affected by multiple vulnerabilities as referenced in the FEDORA-2026-18ea3f47f8 advisory.<br /></span><span><br /></span><span>    libXfont2 2.0.8 (CVE-2026-56001, CVE-2026-56002, CVE-2026-56003)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Fedora security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected libXfont2 package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326402">https://www.tenable.com/plugins/nessus/326402</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Fedora 43 : libssh2 (2026-eed9e67393)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326401</link>
            <guid>https://www.tenable.com/plugins/nessus/326401</guid>
            <pubDate>Sun, 12 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326401 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Fedora host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Fedora 43 host has a package installed that is affected by multiple vulnerabilities as referenced in the FEDORA-2026-eed9e67393 advisory.<br /></span><span><br /></span><span>    This update addresses a few security issues, one of which could plausibly result in remote code execution.<br /></span><span><br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Fedora security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected libssh2 package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326401">https://www.tenable.com/plugins/nessus/326401</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Fedora 44 : p11-kit (2026-695fd36daa)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326400</link>
            <guid>https://www.tenable.com/plugins/nessus/326400</guid>
            <pubDate>Sun, 12 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326400 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Fedora host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Fedora 44 host has a package installed that is affected by a vulnerability as referenced in the FEDORA-2026-695fd36daa advisory.<br /></span><span><br /></span><span>    - server: fixed stack exhaustion via unbounded recursion in RPC attribute parsing by enforcing a recursion     depth limit (CVE-2026-13757)<br /></span><span>    - fixed confusing error message when trying to store an existing cert with trust anchor<br /></span><span>    - fixed assert when parsing p11-kit files with value ()<br /></span><span>    - fixed numerous memory management issues<br /></span><span>    - Build and test fixes<br /></span><span>    - Updated translations<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Fedora security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected p11-kit package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326400">https://www.tenable.com/plugins/nessus/326400</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Fedora 44 : xorg-x11-server (2026-28b7854014)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326399</link>
            <guid>https://www.tenable.com/plugins/nessus/326399</guid>
            <pubDate>Sun, 12 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326399 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Fedora host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Fedora 44 host has a package installed that is affected by multiple vulnerabilities as referenced in the FEDORA-2026-28b7854014 advisory.<br /></span><span><br /></span><span>    Update to xserver 21.1.24, fixes for: CVE-2026-55999, CVE-2025-56000<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Fedora security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected xorg-x11-server package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326399">https://www.tenable.com/plugins/nessus/326399</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2026-61465]]></title>
            <link>https://www.tenable.com/plugins/nessus/326398</link>
            <guid>https://www.tenable.com/plugins/nessus/326398</guid>
            <pubDate>Sun, 12 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326398 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - ImageMagick before 7.1.2-26 and 6.9.13-51 is missing a check for the allowed memory allocation limit in     matrix-backed operations such as -canny. An attacker can supply a crafted image that causes ImageMagick to     allocate more memory than permitted by the configured policy, resulting in a denial of service.<br /></span><span>    (CVE-2026-61465)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326398">https://www.tenable.com/plugins/nessus/326398</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2026-61861]]></title>
            <link>https://www.tenable.com/plugins/nessus/326397</link>
            <guid>https://www.tenable.com/plugins/nessus/326397</guid>
            <pubDate>Sun, 12 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326397 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - ImageMagick before 7.1.2-26 contains a use-after-free vulnerability in the FormatMagickCaption method when     memory allocation fails. Attackers can trigger memory allocation failures to cause a dangling pointer to     reference freed memory, potentially enabling denial of service or code execution. (CVE-2026-61861)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326397">https://www.tenable.com/plugins/nessus/326397</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2026-61858]]></title>
            <link>https://www.tenable.com/plugins/nessus/326396</link>
            <guid>https://www.tenable.com/plugins/nessus/326396</guid>
            <pubDate>Sun, 12 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326396 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - ImageMagick before 7.1.2-26 contains a policy bypass vulnerability in the APNG encoder and external     delegates due to missing validation checks. Attackers can write files to disallowed paths by bypassing     configured policy restrictions through the APNG encoding process. (CVE-2026-61858)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326396">https://www.tenable.com/plugins/nessus/326396</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2026-61870]]></title>
            <link>https://www.tenable.com/plugins/nessus/326395</link>
            <guid>https://www.tenable.com/plugins/nessus/326395</guid>
            <pubDate>Sun, 12 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326395 with Low Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - ImageMagick before 7.1.2-26 contains a memory leak vulnerability in the VIFF encoder when memory     allocation fails. Attackers can trigger allocation failures by processing specially crafted VIFF images to     exhaust available memory and cause denial of service. (CVE-2026-61870)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326395">https://www.tenable.com/plugins/nessus/326395</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2024-56803]]></title>
            <link>https://www.tenable.com/plugins/nessus/326394</link>
            <guid>https://www.tenable.com/plugins/nessus/326394</guid>
            <pubDate>Sun, 12 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326394 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - Ghostty is a cross-platform terminal emulator. Ghostty, as allowed by default in 1.0.0, allows attackers     to modify the window title via a certain character escape sequence and then insert it back to the command     line in the user's terminal, e.g. when the user views a file containing the malicious sequence, which     could allow the attacker to execute arbitrary commands. This attack requires an attacker to send malicious     escape sequences followed by convincing the user to physically press the enter key. Fixed in Ghostty     v1.0.1. (CVE-2024-56803)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326394">https://www.tenable.com/plugins/nessus/326394</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2026-56372]]></title>
            <link>https://www.tenable.com/plugins/nessus/326393</link>
            <guid>https://www.tenable.com/plugins/nessus/326393</guid>
            <pubDate>Sun, 12 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326393 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - ImageMagick before 7.1.2-19 contains a heap buffer overflow vulnerability in the magnify operation that     allows attackers to read out of bounds memory. An unrecognized magnify:method value triggers an out of     bounds read, potentially exposing sensitive information or causing denial of service. (CVE-2026-56372)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326393">https://www.tenable.com/plugins/nessus/326393</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2026-61857]]></title>
            <link>https://www.tenable.com/plugins/nessus/326392</link>
            <guid>https://www.tenable.com/plugins/nessus/326392</guid>
            <pubDate>Sun, 12 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326392 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - ImageMagick before 7.1.2-26 contains a heap use-after-free vulnerability caused by missing null check when     parsing XMP profiles. Attackers can craft malicious image files with specially crafted XMP data to trigger     the vulnerability and cause application crashes. (CVE-2026-61857)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326392">https://www.tenable.com/plugins/nessus/326392</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Fedora 44 : python-dulwich (2026-fbd55e52fb)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326391</link>
            <guid>https://www.tenable.com/plugins/nessus/326391</guid>
            <pubDate>Sun, 12 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326391 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Fedora host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Fedora 44 host has a package installed that is affected by multiple vulnerabilities as referenced in the FEDORA-2026-fbd55e52fb advisory.<br /></span><span><br /></span><span>    1.2.9, CVE fixes<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Fedora security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected python-dulwich package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326391">https://www.tenable.com/plugins/nessus/326391</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Fedora 44 : webkitgtk (2026-3bc4b3ccb3)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326390</link>
            <guid>https://www.tenable.com/plugins/nessus/326390</guid>
            <pubDate>Sun, 12 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326390 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Fedora host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Fedora 44 host has a package installed that is affected by multiple vulnerabilities as referenced in the FEDORA-2026-3bc4b3ccb3 advisory.<br /></span><span><br /></span><span>     * Fire scrollend event for instant programmatic scrolls.<br /></span><span>     * Increase network idle connection timeout to 115 seconds.<br /></span><span>     * Fix several crashes and rendering issues.<br /></span><span>     * Fix CVE-2024-4367, CVE-2026-39872, CVE-2026-43663, CVE-2026-43676, CVE-2026-43699, CVE-2026-43701,     CVE-2026-43705, CVE-2026-43707, CVE-2026-43712, CVE-2026-43713, CVE-2026-43715, CVE-2026-43716,     CVE-2026-43720, CVE-2026-43721, CVE-2026-43725, CVE-2026-43726, CVE-2026-43727, CVE-2026-43731,     CVE-2026-43732, CVE-2026-43734, CVE-2026-43740, CVE-2026-43742, CVE-2026-43745<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Fedora security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected webkitgtk package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326390">https://www.tenable.com/plugins/nessus/326390</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2024-37305]]></title>
            <link>https://www.tenable.com/plugins/nessus/326389</link>
            <guid>https://www.tenable.com/plugins/nessus/326389</guid>
            <pubDate>Sun, 12 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326389 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - oqs-provider is a provider for the OpenSSL 3 cryptography library that adds support for post-quantum     cryptography in TLS, X.509, and S/MIME using post-quantum algorithms from liboqs. Flaws have been     identified in the way oqs-provider handles lengths decoded with DECODE_UINT32 at the start of serialized     hybrid (traditional + post-quantum) keys and signatures. Unchecked length values are later used for memory     reads and writes; malformed input can lead to crashes or information leakage. Handling of plain/non-hybrid     PQ key operation is not affected. This issue has been patched in in v0.6.1. All users are advised to     upgrade. There are no workarounds for this issue. (CVE-2024-37305)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326389">https://www.tenable.com/plugins/nessus/326389</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2020-10941]]></title>
            <link>https://www.tenable.com/plugins/nessus/326388</link>
            <guid>https://www.tenable.com/plugins/nessus/326388</guid>
            <pubDate>Sun, 12 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326388 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - Arm Mbed TLS before 2.16.5 allows attackers to obtain sensitive information (an RSA private key) by     measuring cache usage during an import. (CVE-2020-10941)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326388">https://www.tenable.com/plugins/nessus/326388</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2018-1337]]></title>
            <link>https://www.tenable.com/plugins/nessus/326387</link>
            <guid>https://www.tenable.com/plugins/nessus/326387</guid>
            <pubDate>Sun, 12 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326387 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - In Apache Directory LDAP API before 1.0.2, a bug in the way the SSL Filter was setup made it possible for     another thread to use the connection before the TLS layer has been established, if the connection has     already been used and put back in a pool of connections, leading to leaking any information contained in     this request (including the credentials when sending a BIND request). (CVE-2018-1337)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326387">https://www.tenable.com/plugins/nessus/326387</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Debian dsa-6387 : chromium - security update]]></title>
            <link>https://www.tenable.com/plugins/nessus/326386</link>
            <guid>https://www.tenable.com/plugins/nessus/326386</guid>
            <pubDate>Sun, 12 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326386 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Debian host is missing one or more security-related updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Debian 13 host has packages installed that are affected by multiple vulnerabilities as referenced in the dsa-6387 advisory.<br /></span><span><br /></span><span>    - -------------------------------------------------------------------------     Debian Security Advisory DSA-6387-1                   security@debian.org     https://www.debian.org/security/                           Andres Salomon     July 11, 2026                         https://www.debian.org/security/faq<br /></span><span>    - -------------------------------------------------------------------------<br /></span><span><br /></span><span>    Package        : chromium     CVE ID         : CVE-2026-15107 CVE-2026-15108 CVE-2026-15109 CVE-2026-15110                      CVE-2026-15111 CVE-2026-15112 CVE-2026-15113 CVE-2026-15114                      CVE-2026-15115 CVE-2026-15116 CVE-2026-15117 CVE-2026-15118                      CVE-2026-15119 CVE-2026-15120 CVE-2026-15121 CVE-2026-15122                      CVE-2026-15123 CVE-2026-15124 CVE-2026-15125 CVE-2026-15126                      CVE-2026-15127 CVE-2026-15128 CVE-2026-15129 CVE-2026-15130                      CVE-2026-15131 CVE-2026-15132 CVE-2026-15133<br /></span><span><br /></span><span>    Security issues were discovered in Chromium which could result     in the execution of arbitrary code, denial of service, or information     disclosure.<br /></span><span><br /></span><span>    For the stable distribution (trixie), these problems have been fixed in     version 150.0.7871.114-1~deb13u1.<br /></span><span><br /></span><span>    We recommend that you upgrade your chromium packages.<br /></span><span><br /></span><span>    For the detailed security status of chromium please refer to     its security tracker page at:<br /></span><span>    https://security-tracker.debian.org/tracker/chromium<br /></span><span><br /></span><span>    Further information about Debian Security Advisories, how to apply     these updates to your system and frequently asked questions can be     found at: https://www.debian.org/security/<br /></span><span><br /></span><span>    Mailing list: debian-security-announce@lists.debian.org<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Debian security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade the chromium packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326386">https://www.tenable.com/plugins/nessus/326386</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Debian dla-4676 : wireless-regdb - security update]]></title>
            <link>https://www.tenable.com/plugins/nessus/326385</link>
            <guid>https://www.tenable.com/plugins/nessus/326385</guid>
            <pubDate>Sat, 11 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326385 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Debian host is missing a security-related update.<br /></span>
      <h3>Description</h3>
      <span>The remote Debian 11 host has packages installed that are affected by a vulnerability as referenced in the dla-4676 advisory.<br /></span><span><br /></span><span>    -------------------------------------------------------------------------     Debian LTS Advisory DLA-4676-1                debian-lts@lists.debian.org     https://www.debian.org/lts/security/                        Ben Hutchings     July 11, 2026                                 https://wiki.debian.org/LTS<br /></span><span>    -------------------------------------------------------------------------<br /></span><span><br /></span><span>    Package        : wireless-regdb     Version        : 2026.05.30-1~deb11u1 2026.05.30-1~deb12u1<br /></span><span><br /></span><span>    This update includes the changes in wireless-regdb 2026.05.30,     reflecting changes to radio regulations in several countries.<br /></span><span><br /></span><span>    For Debian 11 bullseye, this update is available as version     2026.05.30-1~deb11u1.<br /></span><span><br /></span><span>    For Debian 12 bookworm, this update is available as version     2026.05.30-1~deb12u1 and included in point release 12.15.<br /></span><span><br /></span><span>    We recommend that you upgrade your wireless-regdb packages.<br /></span><span><br /></span><span>    Further information about Debian LTS security advisories, how to apply     these updates to your system and frequently asked questions can be     found at: https://wiki.debian.org/LTS     Attachment:<br /></span><span>    signature.asc     Description: PGP signature<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Debian security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade the wireless-regdb packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326385">https://www.tenable.com/plugins/nessus/326385</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RockyLinux 10 : kernel (RLSA-2026:36956)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326384</link>
            <guid>https://www.tenable.com/plugins/nessus/326384</guid>
            <pubDate>Sat, 11 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326384 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote RockyLinux host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote RockyLinux 10 host has packages installed that are affected by multiple vulnerabilities as referenced in the RLSA-2026:36956 advisory.<br /></span><span><br /></span><span>    * kernel: net/sched: ets: Always remove class from active list before deleting in ets_qdisc_change     (CVE-2025-71066)<br /></span><span><br /></span><span>    * kernel: sctp: revalidate list cursor after sctp_sendmsg_to_asoc() in SCTP_SENDALL (CVE-2026-46227)<br /></span><span><br /></span><span>    * kernel: KVM: x86: Fix shadow paging use-after-free due to unexpected GFN (CVE-2026-46113)<br /></span><span><br /></span><span>    * kernel: KVM: x86: Fix shadow paging use-after-free due to unexpected role (CVE-2026-53359)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the RockyLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326384">https://www.tenable.com/plugins/nessus/326384</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RockyLinux 9 : kernel (RLSA-2026:36018)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326383</link>
            <guid>https://www.tenable.com/plugins/nessus/326383</guid>
            <pubDate>Sat, 11 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326383 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote RockyLinux host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote RockyLinux 9 host has packages installed that are affected by multiple vulnerabilities as referenced in the RLSA-2026:36018 advisory.<br /></span><span><br /></span><span>    * kernel: fs/smb/client: fix out-of-bounds read in cifs_sanitize_prepath (CVE-2026-43112)<br /></span><span><br /></span><span>    * kernel: net: mana: Fix double destroy_workqueue on service rescan PCI path (CVE-2026-43276)<br /></span><span><br /></span><span>    * kernel: Linux kernel: Use-After-Free in net/gro due to improper handling of zerocopy skbs     (CVE-2026-46323)<br /></span><span><br /></span><span>    * kernel: xfrm: defensively unhash xfrm_state lists in __xfrm_state_delete (CVE-2026-46116)<br /></span><span><br /></span><span>    * kernel: sctp: revalidate list cursor after sctp_sendmsg_to_asoc() in SCTP_SENDALL (CVE-2026-46227)<br /></span><span><br /></span><span>    * kernel: drm/gem: Fix inconsistent plane dimension calculation in drm_gem_fb_init_with_funcs()     (CVE-2026-46209)<br /></span><span><br /></span><span>    * kernel: smb/client: fix out-of-bounds read in smb2_compound_op() (CVE-2026-46155)<br /></span><span><br /></span><span>    * kernel: netfilter: nft_inner: Fix IPv6 inner_thoff desync (CVE-2026-46244)<br /></span><span><br /></span><span>    * kernel: procfs: fix missing RCU protection when reading real_parent in do_task_stat() (CVE-2026-46259)<br /></span><span><br /></span><span>    * kernel: Arm Processors: Privilege escalation or information disclosure via writes to higher exception     level resources (CVE-2025-10263)<br /></span><span><br /></span><span>    * kernel: KVM: arm64: vgic-its: Drop the translation cache reference only for the erased entry     (CVE-2026-46316)<br /></span><span><br /></span><span>    Bug Fix(es) and Enhancement(s):<br /></span><span><br /></span><span>    * WARNING at drivers/gpu/drm/nouveau/nvkm/subdev/gsp/r535.c:1585 r535_gsp_fini+0x2fb/0x310 [nouveau]     [rhel-9.8.z] (JIRA:Rocky Linux-160966)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the RockyLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326383">https://www.tenable.com/plugins/nessus/326383</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Oracle Linux 9 : nodejs:24 (ELSA-2026-35891)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326382</link>
            <guid>https://www.tenable.com/plugins/nessus/326382</guid>
            <pubDate>Sat, 11 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326382 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Oracle Linux host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Oracle Linux 9 host has packages installed that are affected by multiple vulnerabilities as referenced in the ELSA-2026-35891 advisory.<br /></span><span><br /></span><span>    nodejs     [1:24.18.0-1]<br /></span><span>    - Update to version 24.18.0<br /></span><span><br /></span><span>    nodejs-nodemon     [3.0.3-3]<br /></span><span>    - Keep BR on just npm<br /></span><span><br /></span><span>    [3.0.3-2]<br /></span><span>    - Fix BR for nodejs-npm<br /></span><span><br /></span><span>    nodejs-packaging     [2021.06-6]<br /></span><span>    - Properly handle @group/package deps in nodejs-symlink-deps       Resolves: RHEL-121569<br /></span><span><br /></span><span>    [2021.06-5]<br /></span><span>    - nodejs.req to properly detect bundled deps<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Oracle Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326382">https://www.tenable.com/plugins/nessus/326382</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Oracle Linux 9 : golang (ELSA-2026-37435)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326381</link>
            <guid>https://www.tenable.com/plugins/nessus/326381</guid>
            <pubDate>Sat, 11 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326381 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Oracle Linux host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Oracle Linux 9 host has packages installed that are affected by multiple vulnerabilities as referenced in the ELSA-2026-37435 advisory.<br /></span><span><br /></span><span>    [1.26.5-1.0.1]<br /></span><span>    - EXPERIMENTAL: Introduce fipsnoenforceems GODEBUG var<br /></span><span><br /></span><span>    [1.26.5-1]<br /></span><span>    - Update to Go 1.26.5 (fips-1)<br /></span><span>    - Resolves: RHEL-193476<br /></span><span><br /></span><span>    [1.25.7-1]<br /></span><span>    - Update to Go 1.25.7 (fips-1)<br /></span><span>    - Resolves: RHEL-146452<br /></span><span><br /></span><span>    [1.25.5-1]<br /></span><span>    - Update to Go 1.25.5 (fips-1)<br /></span><span>    - Resolves: RHEL-139364<br /></span><span><br /></span><span>    [1.25.3-2]<br /></span><span>    - Cleanup lib/ ownership<br /></span><span><br /></span><span>    [1.25.3-1]<br /></span><span>    - Update to Go 1.25.3<br /></span><span>    - Resolves: RHEL-121220<br /></span><span><br /></span><span>    [1.25.1-1]<br /></span><span>    - Update to Go 1.25.1<br /></span><span>    - Resolves: RHEL-116850<br /></span><span><br /></span><span>    [1.25.0-2]<br /></span><span>    - Revert DWARF5 defaults<br /></span><span>    - Add elf5 to rpminspect.yaml<br /></span><span>    - Related: RHEL-109557<br /></span><span><br /></span><span>    [1.25.0-1]<br /></span><span>    - Update to Go 1.25.0<br /></span><span>    - Set GOAMD64 to v2 to align with new architecture baselines<br /></span><span>    - Modify the modify_go.env.patch to reflect GOAMD64 baseline version change to v2<br /></span><span>    - Resolves: RHEL-109557<br /></span><span><br /></span><span>    [1.24.6-1]<br /></span><span>    - Update to Go 1.24.6 (fips-1)<br /></span><span>    - Resolves: RHEL-106461<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Oracle Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326381">https://www.tenable.com/plugins/nessus/326381</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Photon OS 3.0: Krb5 PHSA-2023-3.0-0624]]></title>
            <link>https://www.tenable.com/plugins/nessus/326380</link>
            <guid>https://www.tenable.com/plugins/nessus/326380</guid>
            <pubDate>Sat, 11 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326380 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote PhotonOS host is missing multiple security updates.<br /></span>
      <h3>Description</h3>
      <span>An update of the krb5 package has been released.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected Linux packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326380">https://www.tenable.com/plugins/nessus/326380</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Photon OS 3.0: Nss PHSA-2024-3.0-0739]]></title>
            <link>https://www.tenable.com/plugins/nessus/326379</link>
            <guid>https://www.tenable.com/plugins/nessus/326379</guid>
            <pubDate>Sat, 11 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326379 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote PhotonOS host is missing multiple security updates.<br /></span>
      <h3>Description</h3>
      <span>An update of the nss package has been released.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected Linux packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326379">https://www.tenable.com/plugins/nessus/326379</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Photon OS 3.0: Wget PHSA-2022-3.0-0505]]></title>
            <link>https://www.tenable.com/plugins/nessus/326378</link>
            <guid>https://www.tenable.com/plugins/nessus/326378</guid>
            <pubDate>Sat, 11 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326378 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote PhotonOS host is missing multiple security updates.<br /></span>
      <h3>Description</h3>
      <span>An update of the wget package has been released.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected Linux packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326378">https://www.tenable.com/plugins/nessus/326378</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2026-52761]]></title>
            <link>https://www.tenable.com/plugins/nessus/326377</link>
            <guid>https://www.tenable.com/plugins/nessus/326377</guid>
            <pubDate>Sat, 11 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326377 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - ModSecurity is an open source, cross platform web application firewall (WAF) engine for Apache, IIS and     Nginx. From 3.0.0 through 3.0.15, the t:utf8toUnicode transformation in     src/actions/transformations/utf8_to_unicode.cc produces wrong output on i386 architecture because snprintf     uses sizeof on a char pointer rather than the length of the unicode buffer, allowing rules that use this     transformation to be bypassed on i386 architecture. This issue is fixed in version 3.0.16.<br /></span><span>    (CVE-2026-52761)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326377">https://www.tenable.com/plugins/nessus/326377</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2026-52747]]></title>
            <link>https://www.tenable.com/plugins/nessus/326376</link>
            <guid>https://www.tenable.com/plugins/nessus/326376</guid>
            <pubDate>Sat, 11 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326376 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - ModSecurity is an open source, cross platform web application firewall (WAF) engine for Apache, IIS and     Nginx. Prior to 3.0.16, the multipart/form-data request body parser in libmodsecurity silently removes     embedded line breaks from non-file form-field values before exporting them to ARGS and ARGS_POST because     src/request_body_processor/multipart.cc overwrites reserved bytes in m_reserve instead of appending the     current buffer. This creates a parser differential between ModSecurity and backend applications that     preserve line breaks in form fields, allowing rules that inspect ARGS or ARGS_POST to miss payloads whose     dangerous syntax depends on a line break. This issue is fixed in version 3.0.16. (CVE-2026-52747)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326376">https://www.tenable.com/plugins/nessus/326376</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RockyLinux 8 : kernel-rt (RLSA-2026:36365)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326375</link>
            <guid>https://www.tenable.com/plugins/nessus/326375</guid>
            <pubDate>Sat, 11 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326375 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote RockyLinux host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote RockyLinux 8 host has packages installed that are affected by a vulnerability as referenced in the RLSA-2026:36365 advisory.<br /></span><span><br /></span><span>    * kernel: fs/smb/client: fix out-of-bounds read in cifs_sanitize_prepath (CVE-2026-43112)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the RockyLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326375">https://www.tenable.com/plugins/nessus/326375</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RockyLinux 8 : kernel (RLSA-2026:36366)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326374</link>
            <guid>https://www.tenable.com/plugins/nessus/326374</guid>
            <pubDate>Sat, 11 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326374 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote RockyLinux host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote RockyLinux 8 host has packages installed that are affected by a vulnerability as referenced in the RLSA-2026:36366 advisory.<br /></span><span><br /></span><span>    * kernel: fs/smb/client: fix out-of-bounds read in cifs_sanitize_prepath (CVE-2026-43112)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the RockyLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326374">https://www.tenable.com/plugins/nessus/326374</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2026-53363]]></title>
            <link>https://www.tenable.com/plugins/nessus/326373</link>
            <guid>https://www.tenable.com/plugins/nessus/326373</guid>
            <pubDate>Sat, 11 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326373 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - xfrm: iptfs: preserve shared-frag marker in iptfs_consume_frags() iptfs_consume_frags() transfers paged     fragments from one socket buffer to another but fails to propagate the SKBFL_SHARED_FRAG flag. This is the     same class of bug that was fixed in skb_try_coalesce() for CVE-2026-46300: when fragments backed by read-     only page-cache pages are merged, the marker indicating their shared nature must be preserved so that ESP     can decide correctly whether in-place encryption is safe. Apply the same two-line fix used in     skb_try_coalesce() to iptfs_consume_frags(). (CVE-2026-53363)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326373">https://www.tenable.com/plugins/nessus/326373</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2026-15276]]></title>
            <link>https://www.tenable.com/plugins/nessus/326372</link>
            <guid>https://www.tenable.com/plugins/nessus/326372</guid>
            <pubDate>Sat, 11 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326372 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - A flaw has been found in pdeljanov Symphonia up to 0.6.0. This vulnerability affects unknown code of the     component Metadata Handler. This manipulation causes denial of service. The attack needs to be launched     locally. The exploit has been published and may be used. The pull request to fix this issue awaits     acceptance. (CVE-2026-15276)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326372">https://www.tenable.com/plugins/nessus/326372</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Fedora 43 : composer (2026-3017b1bec1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326371</link>
            <guid>https://www.tenable.com/plugins/nessus/326371</guid>
            <pubDate>Sat, 11 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326371 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Fedora host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Fedora 43 host has a package installed that is affected by a vulnerability as referenced in the FEDORA-2026-3017b1bec1 advisory.<br /></span><span><br /></span><span>    ### Version 2.10.2 - 2026-07-01<br /></span><span><br /></span><span>      * Security: Validate package names (GHSA-499r-g7pc-vmp9)<br /></span><span>      * Security: Validate package bin paths against path traversal (GHSA-gjfg-22fp-rrxx)<br /></span><span>      * Security: Sanitize URL-embedded usernames/token in verbose output (GHSA-g6xq-892h-64w3)<br /></span><span>      * Security: Only follow HTTP redirects from HTTP responses (#12948)<br /></span><span>      * Security: Prevent phar metadata unserialization on unsafe PHP versions (#12946)<br /></span><span>      * Security: Sanitize JSON parse errors in http responses to avoid leaking response body data (#12959)<br /></span><span>      * Added warning output in self-update command when using a soon-to-be EOL version (#12920)<br /></span><span>      * Added download retry when a GitHub codeload URL returns a 400 (#12962)<br /></span><span>      * Fixed `audit` command to output the audit result to stdout (#12904)<br /></span><span>      * Fixed backspace characters being output to non-decorated output (#12925)<br /></span><span>      * Fixed security advisory blocking causing issues with xdebug enabled (#12935)<br /></span><span>      * Fixed provider packages hiding suggestions for the package they provide themselves (#12933)<br /></span><span>      * Fixed security advisory blocking causing issues with xdebug enabled (#12935)<br /></span><span><br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Fedora security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected composer package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326371">https://www.tenable.com/plugins/nessus/326371</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Fedora 44 : librabbitmq (2026-fc2f661416)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326370</link>
            <guid>https://www.tenable.com/plugins/nessus/326370</guid>
            <pubDate>Sat, 11 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326370 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Fedora host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Fedora 44 host has a package installed that is affected by a vulnerability as referenced in the FEDORA-2026-fc2f661416 advisory.<br /></span><span><br /></span><span>    ## Version 0.17.0 - 2026-07-01<br /></span><span><br /></span><span>    ### Security<br /></span><span><br /></span><span>    - Fix size_t overflow in `amqp_decode_bytes` bounds check leading to out-of-bounds read (GHSA-     jgjf-7fwf-f3c7, #888)<br /></span><span>    - Fix heap buffer overflow in `amqp_frame_to_bytes` for oversized body frames (GHSA-hfjv-vcp3-39wh, #892)<br /></span><span><br /></span><span>    ### Added<br /></span><span><br /></span><span>    - `librabbitmq-tools` fall back to the `AMQP_URL` environment variable when no connection options are     given on the command line (#887)<br /></span><span><br /></span><span>    ### Fixed<br /></span><span><br /></span><span>    - Fix undefined behavior in `amqp_decode_properties` when decoding content-header property flags (#883,     #885)<br /></span><span>    - Fix `ioctlsocket` type mismatch on Windows (#890)<br /></span><span>    - Document buffer lifetime requirement of `amqp_decode_table`'s encoded buffer to prevent use-after-free     misuse (#895)<br /></span><span><br /></span><span>    ### Changed<br /></span><span><br /></span><span>    - `librabbitmq-tools` now enable default SSL certificate verification paths unless `--no-default-cert-     paths` is passed (fixes #868, #893)<br /></span><span>    - Building the tools now requires POPT v1.14 or newer (#889)<br /></span><span><br /></span><span><br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Fedora security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected librabbitmq package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326370">https://www.tenable.com/plugins/nessus/326370</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Fedora 44 : tmux (2026-f5dd9fb83f)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326369</link>
            <guid>https://www.tenable.com/plugins/nessus/326369</guid>
            <pubDate>Sat, 11 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326369 with Low Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Fedora host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Fedora 44 host has a package installed that is affected by a vulnerability as referenced in the FEDORA-2026-f5dd9fb83f advisory.<br /></span><span><br /></span><span><br /></span><span>    fdf6afc update to 3.7b fixes rhbz#2498485<br /></span><span><br /></span><span><br /></span><span>    CHANGES FROM 3.7a TO 3.7b<br /></span><span><br /></span><span>    * Fix so that the end of a synchronized update again triggers a redraw.<br /></span><span><br /></span><span>    CHANGES FROM 3.7 TO 3.7a<br /></span><span><br /></span><span>    * Fix crash in break-pane when no name is provided.<br /></span><span><br /></span><span>    * Scrollbar options are now cached rather than being looked up for every redraw       (issue 5298).<br /></span><span><br /></span><span>    * Only forbid #( in names, allow #[, empty names, : and .<br /></span><span><br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Fedora security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected tmux package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326369">https://www.tenable.com/plugins/nessus/326369</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Fedora 43 : docker-compose (2026-8e7eb40534)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326368</link>
            <guid>https://www.tenable.com/plugins/nessus/326368</guid>
            <pubDate>Sat, 11 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326368 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Fedora host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Fedora 43 host has a package installed that is affected by a vulnerability as referenced in the FEDORA-2026-8e7eb40534 advisory.<br /></span><span><br /></span><span>    Update to release v5.3.0<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Fedora security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected docker-compose package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326368">https://www.tenable.com/plugins/nessus/326368</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Fedora 44 : python-pillow (2026-46c4892063)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326367</link>
            <guid>https://www.tenable.com/plugins/nessus/326367</guid>
            <pubDate>Sat, 11 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326367 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Fedora host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Fedora 44 host has a package installed that is affected by multiple vulnerabilities as referenced in the FEDORA-2026-46c4892063 advisory.<br /></span><span><br /></span><span>    Fix CVE-2026-55380, CVE-2026-54060, CVE-2026-54059, CVE-2026-55379, CVE-2026-55798<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Fedora security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected python-pillow package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326367">https://www.tenable.com/plugins/nessus/326367</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Fedora 43 : prometheus (2026-4179e03375)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326366</link>
            <guid>https://www.tenable.com/plugins/nessus/326366</guid>
            <pubDate>Sat, 11 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326366 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Fedora host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Fedora 43 host has a package installed that is affected by multiple vulnerabilities as referenced in the FEDORA-2026-4179e03375 advisory.<br /></span><span><br /></span><span>    Update to 3.13.0<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Fedora security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected prometheus package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326366">https://www.tenable.com/plugins/nessus/326366</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Fedora 44 : composer (2026-22ba02bee3)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326365</link>
            <guid>https://www.tenable.com/plugins/nessus/326365</guid>
            <pubDate>Sat, 11 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326365 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Fedora host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Fedora 44 host has a package installed that is affected by a vulnerability as referenced in the FEDORA-2026-22ba02bee3 advisory.<br /></span><span><br /></span><span>    ### Version 2.10.2 - 2026-07-01<br /></span><span><br /></span><span>      * Security: Validate package names (GHSA-499r-g7pc-vmp9)<br /></span><span>      * Security: Validate package bin paths against path traversal (GHSA-gjfg-22fp-rrxx)<br /></span><span>      * Security: Sanitize URL-embedded usernames/token in verbose output (GHSA-g6xq-892h-64w3)<br /></span><span>      * Security: Only follow HTTP redirects from HTTP responses (#12948)<br /></span><span>      * Security: Prevent phar metadata unserialization on unsafe PHP versions (#12946)<br /></span><span>      * Security: Sanitize JSON parse errors in http responses to avoid leaking response body data (#12959)<br /></span><span>      * Added warning output in self-update command when using a soon-to-be EOL version (#12920)<br /></span><span>      * Added download retry when a GitHub codeload URL returns a 400 (#12962)<br /></span><span>      * Fixed `audit` command to output the audit result to stdout (#12904)<br /></span><span>      * Fixed backspace characters being output to non-decorated output (#12925)<br /></span><span>      * Fixed security advisory blocking causing issues with xdebug enabled (#12935)<br /></span><span>      * Fixed provider packages hiding suggestions for the package they provide themselves (#12933)<br /></span><span>      * Fixed security advisory blocking causing issues with xdebug enabled (#12935)<br /></span><span><br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Fedora security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected composer package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326365">https://www.tenable.com/plugins/nessus/326365</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Fedora 44 : acl (2026-6b9a652463)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326364</link>
            <guid>https://www.tenable.com/plugins/nessus/326364</guid>
            <pubDate>Sat, 11 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326364 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Fedora host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Fedora 44 host has a package installed that is affected by multiple vulnerabilities as referenced in the FEDORA-2026-6b9a652463 advisory.<br /></span><span><br /></span><span>    * rebase to v2.4.0 to fix CVE-2026-54369 and CVE-2026-54370<br /></span><span><br /></span><span>    Resolves: CVE-2026-54369     Resolves: CVE-2026-54370<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Fedora security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected acl package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326364">https://www.tenable.com/plugins/nessus/326364</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Fedora 44 : attr (2026-daa458d11d)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326363</link>
            <guid>https://www.tenable.com/plugins/nessus/326363</guid>
            <pubDate>Sat, 11 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326363 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Fedora host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Fedora 44 host has a package installed that is affected by a vulnerability as referenced in the FEDORA-2026-daa458d11d advisory.<br /></span><span><br /></span><span>    rebase to v2.6.0 to fix CVE-2026-54371<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Fedora security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected attr package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326363">https://www.tenable.com/plugins/nessus/326363</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Fedora 44 : jfrog-cli (2026-a5e27945f7)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326362</link>
            <guid>https://www.tenable.com/plugins/nessus/326362</guid>
            <pubDate>Sat, 11 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326362 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Fedora host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Fedora 44 host has a package installed that is affected by multiple vulnerabilities as referenced in the FEDORA-2026-a5e27945f7 advisory.<br /></span><span><br /></span><span>    Update to 2.112.0.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Fedora security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected jfrog-cli package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326362">https://www.tenable.com/plugins/nessus/326362</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Fedora 43 : perl-HTML-Gumbo (2026-a457bf78b4)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326361</link>
            <guid>https://www.tenable.com/plugins/nessus/326361</guid>
            <pubDate>Sat, 11 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326361 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Fedora host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Fedora 43 host has a package installed that is affected by a vulnerability as referenced in the FEDORA-2026-a457bf78b4 advisory.<br /></span><span><br /></span><span>    This package provides the Perl module HTML::Gumbo. Versions before 0.19 disclose heap memory via type     confusion.<br /></span><span><br /></span><span>    Support for the <template> element was added to libgumbo 0.10.0 in 2015, but the walk_tree function in     lib/HTML/Gumbo.xs was not updated to support it. The element was treated as a text-node, where strlen()     over-reads the heap block that the pointer addresses.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Fedora security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected perl-HTML-Gumbo package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326361">https://www.tenable.com/plugins/nessus/326361</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Fedora 43 : openssh (2026-95b955a09b)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326360</link>
            <guid>https://www.tenable.com/plugins/nessus/326360</guid>
            <pubDate>Sat, 11 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326360 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Fedora host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Fedora 43 host has a package installed that is affected by multiple vulnerabilities as referenced in the FEDORA-2026-95b955a09b advisory.<br /></span><span><br /></span><span>    - CVE-2026-55653: Fix double free in openssh DH-GEX client path during FIPS known-group validation that     leads to client-side denial of service<br /></span><span>    - CVE-2026-55654: Fix heap out-of-bounds read during GSSAPI indicator cleanup due to missing NULL     terminator<br /></span><span>    - CVE-2026-55655: Fix MITM of X11 forwarding via abstract UNIX socket pre-binding<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Fedora security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected openssh package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326360">https://www.tenable.com/plugins/nessus/326360</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Fedora 44 : sssd (2026-5acfb0243b)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326359</link>
            <guid>https://www.tenable.com/plugins/nessus/326359</guid>
            <pubDate>Sat, 11 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326359 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Fedora host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Fedora 44 host has a package installed that is affected by multiple vulnerabilities as referenced in the FEDORA-2026-5acfb0243b advisory.<br /></span><span><br /></span><span>    CVE fixes: CVE-2026-12610 CVE-2026-14474 CVE-2026-14476<br /></span><span>    - rhbz#2494777: CVE-2026-12610 sssd: Use-after-free crash in SSSD' 'sssd_pam' process<br /></span><span>    - rhbz#2497650: CVE-2026-14476 sssd: sssd: GPO cache path traversal via unsanitized     gPCFileSysPath allows Kerberos authentication bypass<br /></span><span>    - rhbz#2497651: CVE-2026-14474 sssd: sssd: sudo LDAP provider searches entire directory     tree for sudoRole objects by default, enabling privilege escalation<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Fedora security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected sssd package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326359">https://www.tenable.com/plugins/nessus/326359</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Fedora 44 : OpenImageIO (2026-25954ebccf)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326358</link>
            <guid>https://www.tenable.com/plugins/nessus/326358</guid>
            <pubDate>Sat, 11 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326358 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Fedora host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Fedora 44 host has a package installed that is affected by multiple vulnerabilities as referenced in the FEDORA-2026-25954ebccf advisory.<br /></span><span><br /></span><span>    https://github.com/AcademySoftwareFoundation/OpenImageIO/releases/tag/v3.1.15.0<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Fedora security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected 1:OpenImageIO package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326358">https://www.tenable.com/plugins/nessus/326358</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Fedora 44 : cjson (2026-0c3f6c7c67)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326357</link>
            <guid>https://www.tenable.com/plugins/nessus/326357</guid>
            <pubDate>Sat, 11 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326357 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Fedora host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Fedora 44 host has a package installed that is affected by multiple vulnerabilities as referenced in the FEDORA-2026-0c3f6c7c67 advisory.<br /></span><span><br /></span><span>    Update to version 1.7.19.<br /></span><span><br /></span><span>    https://github.com/DaveGamble/cJSON/blob/v1.7.19/CHANGELOG.md<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Fedora security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected cjson package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326357">https://www.tenable.com/plugins/nessus/326357</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Fedora 44 : prometheus (2026-01a1840582)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326356</link>
            <guid>https://www.tenable.com/plugins/nessus/326356</guid>
            <pubDate>Sat, 11 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326356 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Fedora host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Fedora 44 host has a package installed that is affected by multiple vulnerabilities as referenced in the FEDORA-2026-01a1840582 advisory.<br /></span><span><br /></span><span>    Update to 3.13.0<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Fedora security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected prometheus package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326356">https://www.tenable.com/plugins/nessus/326356</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Fedora 44 : perl-HTML-Gumbo (2026-75010c7f44)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326355</link>
            <guid>https://www.tenable.com/plugins/nessus/326355</guid>
            <pubDate>Sat, 11 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326355 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Fedora host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Fedora 44 host has a package installed that is affected by a vulnerability as referenced in the FEDORA-2026-75010c7f44 advisory.<br /></span><span><br /></span><span>    This package provides the Perl module HTML::Gumbo. Versions before 0.19 disclose heap memory via type     confusion.<br /></span><span><br /></span><span>    Support for the <template> element was added to libgumbo 0.10.0 in 2015, but the walk_tree function in     lib/HTML/Gumbo.xs was not updated to support it. The element was treated as a text-node, where strlen()     over-reads the heap block that the pointer addresses.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Fedora security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected perl-HTML-Gumbo package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326355">https://www.tenable.com/plugins/nessus/326355</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Oracle Linux 9 : freerdp (ELSA-2026-37207)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326354</link>
            <guid>https://www.tenable.com/plugins/nessus/326354</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326354 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Oracle Linux host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote Oracle Linux 9 host has packages installed that are affected by a vulnerability as referenced in the ELSA-2026-37207 advisory.<br /></span><span><br /></span><span>    [2:2.11.7-7.4]<br /></span><span>    - Fix incorrect bounds checks in planar codec (CVE-2026-45700)       Resolves: RHEL-186991<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Oracle Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326354">https://www.tenable.com/plugins/nessus/326354</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Oracle Linux 7 / 8 : Unbreakable Enterprise kernel (ELSA-2026-50388)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326353</link>
            <guid>https://www.tenable.com/plugins/nessus/326353</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326353 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Oracle Linux host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote Oracle Linux 7 / 8 host has packages installed that are affected by a vulnerability as referenced in the ELSA-2026-50388 advisory.<br /></span><span><br /></span><span>    - rtmutex: Use waiter::task instead of current in remove_waiter() (Keenan Dong)  [Orabug: 39706958]     {CVE-2026-43499}<br /></span><span>    - net/sched: fix pedit partial COW leading to page cache corruption (Rajat Gupta)  [Orabug: 39680880]     {CVE-2026-46331}<br /></span><span>    - net: skbuff: fix missing zerocopy reference in pskb_carve helpers (Minh Nguyen)  [Orabug: 39619389]     {CVE-2026-52943}<br /></span><span>    - net: fix fanout UAF in packet_release() via NETDEV_UP race (Yochai Eisenrich)  [Orabug: 39250953]     {CVE-2026-31504}<br /></span><span>    - net: tap: NULL pointer derefence in dev_parse_header_protocol when skb->dev is null (Cezar Bulinaru)     [Orabug: 39526882]  {CVE-2022-50073}<br /></span><span>    - arm64: errata: Mitigate TLBI errata on various Arm CPUs (Mark Rutland)  [Orabug: 39548666]     {CVE-2025-10263}<br /></span><span>    - ip6_tunnel: clear skb2->cb[] in ip4ip6_err() (Eric Dumazet)  [Orabug: 39300926]  {CVE-2026-43037}<br /></span><span>    - batman-adv: hold claim backbone gateways by reference (Haoze Xie)  [Orabug: 39262375]  {CVE-2026-31657}<br /></span><span>    - smb: client: reject userspace cifs.spnego descriptions (Asim Viladi Oglu Manizada)  [Orabug: 39463669]     {CVE-2026-46243}<br /></span><span>    - ptrace: slightly saner 'get_dumpable()' logic (Linus Torvalds) [Orabug: 39384275,39391459]     {CVE-2026-46333}<br /></span><span>    - net: skbuff: propagate shared-frag marker through frag-transfer helpers (Hyunwoo Kim) [Orabug:<br /></span><span>    39368828,39441326] {CVE-2026-43503,CVE-2026-46300}<br /></span><span>    - net: skbuff: preserve shared-frag marker during coalescing (William Bowling) [Orabug: 39368828]     {CVE-2026-46300}<br /></span><span>    - nfsd: fix heap overflow in NFSv4.0 LOCK replay cache (Jeff Layton) [Orabug: 39167617,39368718]     {CVE-2026-31402}<br /></span><span>    - scsi: target: iscsi: Fix use-after-free in iscsit_dec_conn_usage_count() (Maurizio Lombardi) [Orabug:<br /></span><span>    38985173,39368732] {CVE-2026-23216}<br /></span><span>    - scsi: target: iscsi: Fix use-after-free in iscsit_dec_session_usage_count() (Maurizio Lombardi) [Orabug:<br /></span><span>    38970455,39368774] {CVE-2026-23193}<br /></span><span>    - xfrm: esp: avoid in-place decrypt on shared skb frags (Kuan-Ting Chen) [Orabug: 39334580,39367147]     {CVE-2026-43284}<br /></span><span>    - x86/CPU/AMD: Add a fix for AMD-SB-7052 (Prathyushi Nangia) [Orabug: 39218897] {CVE-2025-54518}<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Oracle Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326353">https://www.tenable.com/plugins/nessus/326353</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Oracle Linux 8 / 9 : Unbreakable Enterprise kernel (ELSA-2026-50387)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326352</link>
            <guid>https://www.tenable.com/plugins/nessus/326352</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326352 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Oracle Linux host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote Oracle Linux 8 / 9 host has packages installed that are affected by a vulnerability as referenced in the ELSA-2026-50387 advisory.<br /></span><span><br /></span><span>    - rtmutex: Use waiter::task instead of current in remove_waiter() (Keenan Dong)  [Orabug: 39706512]     {CVE-2026-43499}<br /></span><span>    - net/sched: fix pedit partial COW leading to page cache corruption (Rajat Gupta)  [Orabug: 39668793]     {CVE-2026-46331}<br /></span><span>    - net: skbuff: fix missing zerocopy reference in pskb_carve helpers (Minh Nguyen)  [Orabug: 39648952]     {CVE-2026-52943}<br /></span><span>    - arm64: errata: Mitigate TLBI errata on various Arm CPUs (Mark Rutland)  [Orabug: 39548689]     {CVE-2025-10263}<br /></span><span>    - net: tap: NULL pointer derefence in dev_parse_header_protocol when skb->dev is null (Cezar Bulinaru)     [Orabug: 39526881]  {CVE-2022-50073}<br /></span><span>    - batman-adv: hold claim backbone gateways by reference (Haoze Xie)  [Orabug: 39262374]  {CVE-2026-31657}<br /></span><span>    - net: skbuff: propagate shared-frag marker through frag-transfer helpers (Hyunwoo Kim)  [Orabug:<br /></span><span>    39368827]  {CVE-2026-46300}<br /></span><span>    - ptrace: slightly saner 'get_dumpable()' logic (Linus Torvalds)  [Orabug: 39384274]  {CVE-2026-46333}<br /></span><span>    - Revert 'mm/hugetlb: add option to allows disabling CVE-2025-38085 mitigation' (Samasth Norway Ananda)     [Orabug: 38474901]<br /></span><span>    - x86/CPU/AMD: Add a fix for AMD-SB-7052 (Prathyushi Nangia)  [Orabug: 39327141]  {CVE-2025-54518}<br /></span><span>    - xfrm: esp: ipv4: fix up flags setting (Greg Kroah-Hartman)  [Orabug: 39342679]  {CVE-2026-43284}<br /></span><span>    - xfrm: esp: avoid in-place decrypt on shared skb frags (Kuan-Ting Chen)  [Orabug: 39342679]     {CVE-2026-43284}<br /></span><span>    - nfsd: fix heap overflow in NFSv4.0 LOCK replay cache (Jeff Layton)  [Orabug: 39167616]  {CVE-2026-31402}<br /></span><span>    - net/sched: Only allow act_ct to bind to clsact/ingress qdiscs and shared blocks (Victor Nogueira)     [Orabug: 39103230]  {CVE-2026-23270}<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Oracle Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326352">https://www.tenable.com/plugins/nessus/326352</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Oracle Linux 8 : grafana (ELSA-2026-35830)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326351</link>
            <guid>https://www.tenable.com/plugins/nessus/326351</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326351 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Oracle Linux host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote Oracle Linux 8 host has packages installed that are affected by a vulnerability as referenced in the ELSA-2026-35830 advisory.<br /></span><span><br /></span><span>    - Fixes CVE-2024-1442 Add email verification when updating user email [Orabug: 38550520]<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Oracle Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected grafana and / or grafana-selinux packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326351">https://www.tenable.com/plugins/nessus/326351</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2026-59180]]></title>
            <link>https://www.tenable.com/plugins/nessus/326350</link>
            <guid>https://www.tenable.com/plugins/nessus/326350</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326350 with Low Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - Apprise is an open source library which allows you to send a notification to almost all of the most     popular notification services available. Prior to 1.11.0, Apprise HTTP-based notification plugins and HTTP     attachment and config loaders in apprise/attachment/http.py and apprise/config/http.py follow HTTP     redirects by default and resend user-configured auth headers and query parameters on the redirected     request, allowing a compromised trusted destination or on-path attacker to receive secrets such as     Authorization headers, bearer tokens, custom headers, and service keys. This issue is fixed in version     1.11.0. (CVE-2026-59180)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326350">https://www.tenable.com/plugins/nessus/326350</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2026-38076]]></title>
            <link>https://www.tenable.com/plugins/nessus/326349</link>
            <guid>https://www.tenable.com/plugins/nessus/326349</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326349 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - An integer overflow in the jbig2_arith_iaid_ctx_new() function of Artifex commit cc37d0 allows attackers     to cause a Denial of Service (DoS) via a crafted input. (CVE-2026-38076)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326349">https://www.tenable.com/plugins/nessus/326349</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2026-56366]]></title>
            <link>https://www.tenable.com/plugins/nessus/326348</link>
            <guid>https://www.tenable.com/plugins/nessus/326348</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326348 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - ImageMagick before 7.1.2-18 contains a memory leak vulnerability in the META reader when processing     APP1JPEG input paths. Attackers can trigger this memory leak by providing specially crafted APP1JPEG image     files, causing denial of service through resource exhaustion. (CVE-2026-56366)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326348">https://www.tenable.com/plugins/nessus/326348</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2026-56373]]></title>
            <link>https://www.tenable.com/plugins/nessus/326347</link>
            <guid>https://www.tenable.com/plugins/nessus/326347</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326347 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - ImageMagick before 7.1.2-15 contains a use-after-free vulnerability in the PDB decoder that uses a stale     pointer when memory allocation fails. Attackers can trigger this vulnerability by processing malicious PDB     files to cause crashes or write a single zero byte to freed memory. (CVE-2026-56373)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326347">https://www.tenable.com/plugins/nessus/326347</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Slackware Linux 15.0 / current p11-kit  Vulnerability (SSA:2026-191-01)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326346</link>
            <guid>https://www.tenable.com/plugins/nessus/326346</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326346 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Slackware Linux host is missing a security update to p11-kit.<br /></span>
      <h3>Description</h3>
      <span>The version of p11-kit installed on the remote host is prior to 0.26.4. It is, therefore, affected by a vulnerability as referenced in the SSA:2026-191-01 advisory.<br /></span><span><br /></span><span>    New p11-kit packages are available for Slackware 15.0 and -current to fix a security issue.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the p11-kit security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade the affected p11-kit package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326346">https://www.tenable.com/plugins/nessus/326346</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Debian dsa-6386 : opam - security update]]></title>
            <link>https://www.tenable.com/plugins/nessus/326345</link>
            <guid>https://www.tenable.com/plugins/nessus/326345</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326345 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Debian host is missing a security-related update.<br /></span>
      <h3>Description</h3>
      <span>The remote Debian 13 host has packages installed that are affected by a vulnerability as referenced in the dsa-6386 advisory.<br /></span><span><br /></span><span>    - -------------------------------------------------------------------------     Debian Security Advisory DSA-6386-1                   security@debian.org     https://www.debian.org/security/                     Salvatore Bonaccorso     July 10, 2026                         https://www.debian.org/security/faq<br /></span><span>    - -------------------------------------------------------------------------<br /></span><span><br /></span><span>    Package        : opam     CVE ID         : CVE-2026-57825<br /></span><span><br /></span><span>    Kate Deplaix reported that .install file directives were insufficiently     restricted in OPAM, a package manager for OCaml. Installing files     through .install files did not check symlinks resolution on the target     path, which could result in directory traversal out of the package area.<br /></span><span><br /></span><span>    For the stable distribution (trixie), this problem has been fixed in     version 2.3.0-1+deb13u2.<br /></span><span><br /></span><span>    We recommend that you upgrade your opam packages.<br /></span><span><br /></span><span>    For the detailed security status of opam please refer to its security     tracker page at:<br /></span><span>    https://security-tracker.debian.org/tracker/opam<br /></span><span><br /></span><span>    Further information about Debian Security Advisories, how to apply     these updates to your system and frequently asked questions can be     found at: https://www.debian.org/security/<br /></span><span><br /></span><span>    Mailing list: debian-security-announce@lists.debian.org<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Debian security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade the opam packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326345">https://www.tenable.com/plugins/nessus/326345</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Amazon Linux 2 : kernel, --advisory ALAS2-2026-3801 (ALAS-2026-3801)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326344</link>
            <guid>https://www.tenable.com/plugins/nessus/326344</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326344 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Amazon Linux 2 host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The version of kernel installed on the remote host is prior to 4.14.355-284.740. It is, therefore, affected by a vulnerability as referenced in the ALAS2-2026-3801 advisory.<br /></span><span><br /></span><span>    In the Linux kernel, the following vulnerability has been resolved:<br /></span><span><br /></span><span>    rtmutex: Use waiter::task instead of current in remove_waiter() (CVE-2026-43499)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the tested product security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Run 'yum update kernel' or   or 'yum update --advisory ALAS2-2026-3801' to update your system.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326344">https://www.tenable.com/plugins/nessus/326344</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Amazon Linux 2 : kernel, --advisory ALAS2KERNEL-5.10-2026-125 (ALASKERNEL-5.10-2026-125)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326343</link>
            <guid>https://www.tenable.com/plugins/nessus/326343</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326343 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Amazon Linux 2 host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The version of kernel installed on the remote host is prior to 5.10.259-258.1046. It is, therefore, affected by a vulnerability as referenced in the ALAS2KERNEL-5.10-2026-125 advisory.<br /></span><span><br /></span><span>    In the Linux kernel, the following vulnerability has been resolved:<br /></span><span><br /></span><span>    rtmutex: Use waiter::task instead of current in remove_waiter() (CVE-2026-43499)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the tested product security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Run 'yum update kernel' or   or 'yum update --advisory ALAS2KERNEL-5.10-2026-125' to update your system.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326343">https://www.tenable.com/plugins/nessus/326343</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Amazon Linux 2 : kernel, --advisory ALAS2KERNEL-5.15-2026-109 (ALASKERNEL-5.15-2026-109)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326342</link>
            <guid>https://www.tenable.com/plugins/nessus/326342</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326342 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Amazon Linux 2 host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The version of kernel installed on the remote host is prior to 5.15.210-148.247. It is, therefore, affected by a vulnerability as referenced in the ALAS2KERNEL-5.15-2026-109 advisory.<br /></span><span><br /></span><span>    In the Linux kernel, the following vulnerability has been resolved:<br /></span><span><br /></span><span>    rtmutex: Use waiter::task instead of current in remove_waiter() (CVE-2026-43499)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the tested product security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Run 'yum update kernel' or   or 'yum update --advisory ALAS2KERNEL-5.15-2026-109' to update your system.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326342">https://www.tenable.com/plugins/nessus/326342</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Amazon Linux 2 : virtuoso-opensource, --advisory ALAS2-2026-3799 (ALAS-2026-3799)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326341</link>
            <guid>https://www.tenable.com/plugins/nessus/326341</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326341 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Amazon Linux 2 host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The version of virtuoso-opensource installed on the remote host is prior to 7.2.14-2. It is, therefore, affected by multiple vulnerabilities as referenced in the ALAS2-2026-3799 advisory.<br /></span><span><br /></span><span>    An issue in the chash_array component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a     Denial of Service (DoS) via crafted SQL statements. (CVE-2024-57635)<br /></span><span><br /></span><span>    An issue in the itc_sample_row_check component of openlink virtuoso-opensource v7.2.11 allows attackers to     cause a Denial of Service (DoS) via crafted SQL statements. (CVE-2024-57636)<br /></span><span><br /></span><span>    An issue in the dfe_unit_gb_dependant component of openlink virtuoso-opensource v7.2.11 allows attackers     to cause a Denial of Service (DoS) via crafted SQL statements. (CVE-2024-57637)<br /></span><span><br /></span><span>    An issue in the dfe_body_copy component of openlink virtuoso-opensource v7.2.11 allows attackers to cause     a Denial of Service (DoS) via crafted SQL statements. (CVE-2024-57638)<br /></span><span><br /></span><span>    An issue in the dc_elt_size component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a     Denial of Service (DoS) via crafted SQL statements. (CVE-2024-57639)<br /></span><span><br /></span><span>    An issue in the dc_add_int component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a     Denial of Service (DoS) via crafted SQL statements. (CVE-2024-57640)<br /></span><span><br /></span><span>    An issue in the sqlexp component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a     Denial of Service (DoS) via crafted SQL statements. (CVE-2024-57641)<br /></span><span><br /></span><span>    An issue in the dfe_inx_op_col_def_table component of openlink virtuoso-opensource v7.2.11 allows     attackers to cause a Denial of Service (DoS) via crafted SQL statements. (CVE-2024-57642)<br /></span><span><br /></span><span>    An issue in the box_deserialize_string component of openlink virtuoso-opensource v7.2.11 allows attackers     to cause a Denial of Service (DoS) via crafted SQL statements. (CVE-2024-57643)<br /></span><span><br /></span><span>    An issue in the itc_hash_compare component of openlink virtuoso-opensource v7.2.11 allows attackers to     cause a Denial of Service (DoS) via crafted SQL statements. (CVE-2024-57644)<br /></span><span><br /></span><span>    An issue in the qi_inst_state_free component of openlink virtuoso-opensource v7.2.11 allows attackers to     cause a Denial of Service (DoS) via crafted SQL statements. (CVE-2024-57645)<br /></span><span><br /></span><span>    An issue in the psiginfo component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a     Denial of Service (DoS) via crafted SQL statements. (CVE-2024-57646)<br /></span><span><br /></span><span>    An issue in the row_insert_cast component of openlink virtuoso-opensource v7.2.11 allows attackers to     cause a Denial of Service (DoS) via crafted SQL statements. (CVE-2024-57647)<br /></span><span><br /></span><span>    An issue in the itc_set_param_row component of openlink virtuoso-opensource v7.2.11 allows attackers to     cause a Denial of Service (DoS) via crafted SQL statements. (CVE-2024-57648)<br /></span><span><br /></span><span>    An issue in the qst_vec_set component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a     Denial of Service (DoS) via crafted SQL statements. (CVE-2024-57649)<br /></span><span><br /></span><span>    An issue in the qi_inst_state_free component of openlink virtuoso-opensource v7.2.11 allows attackers to     cause a Denial of Service (DoS) via crafted SQL statements. (CVE-2024-57650)<br /></span><span><br /></span><span>    An issue in the jp_add component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a     Denial of Service (DoS) via crafted SQL statements. (CVE-2024-57651)<br /></span><span><br /></span><span>    An issue in the numeric_to_dv component of openlink virtuoso-opensource v7.2.11 allows attackers to cause     a Denial of Service (DoS) via crafted SQL statements. (CVE-2024-57652)<br /></span><span><br /></span><span>    An issue in the qst_vec_set_copy component of openlink virtuoso-opensource v7.2.11 allows attackers to     cause a Denial of Service (DoS) via crafted SQL statements. (CVE-2024-57653)<br /></span><span><br /></span><span>    An issue in the qst_vec_get_int64 component of openlink virtuoso-opensource v7.2.11 allows attackers to     cause a Denial of Service (DoS) via crafted SQL statements. (CVE-2024-57654)<br /></span><span><br /></span><span>    An issue in the dfe_n_in_order component of openlink virtuoso-opensource v7.2.11 allows attackers to cause     a Denial of Service (DoS) via crafted SQL statements. (CVE-2024-57655)<br /></span><span><br /></span><span>    An issue in the sqlc_add_distinct_node component of openlink virtuoso-opensource v7.2.11 allows attackers     to cause a Denial of Service (DoS) via crafted SQL statements. (CVE-2024-57656)<br /></span><span><br /></span><span>    An issue in the sqlg_vec_upd component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a     Denial of Service (DoS) via crafted SQL statements. (CVE-2024-57657)<br /></span><span><br /></span><span>    An issue in the sql_tree_hash_1 component of openlink virtuoso-opensource v7.2.11 allows attackers to     cause a Denial of Service (DoS) via crafted SQL statements. (CVE-2024-57658)<br /></span><span><br /></span><span>    An issue in the sqlg_parallel_ts_seq component of openlink virtuoso-opensource v7.2.11 allows attackers to     cause a Denial of Service (DoS) via crafted SQL statements. (CVE-2024-57659)<br /></span><span><br /></span><span>    An issue in the sqlo_expand_jts component of openlink virtuoso-opensource v7.2.11 allows attackers to     cause a Denial of Service (DoS) via crafted SQL statements. (CVE-2024-57660)<br /></span><span><br /></span><span>    An issue in the sqlo_df component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a     Denial of Service (DoS) via crafted SQL statements. (CVE-2024-57661)<br /></span><span><br /></span><span>    An issue in the sqlg_hash_source component of openlink virtuoso-opensource v7.2.11 allows attackers to     cause a Denial of Service (DoS) via crafted SQL statements. (CVE-2024-57662)<br /></span><span><br /></span><span>    An issue in the sqlg_place_dpipes component of openlink virtuoso-opensource v7.2.11 allows attackers to     cause a Denial of Service (DoS) via crafted SQL statements. (CVE-2024-57663)<br /></span><span><br /></span><span>    An issue in the sqlg_group_node component of openlink virtuoso-opensource v7.2.11 allows attackers to     cause a Denial of Service (DoS) via crafted SQL statements. (CVE-2024-57664)<br /></span><span><br /></span><span>    An issue in the sqlo_place_dt_set component of openlink virtuoso-opensource v7.2.11 allows attackers to     cause a Denial of Service (DoS) via crafted SQL statements. (CVE-2025-61018)<br /></span><span><br /></span><span>    An issue in the sqlo_key_part_best component of openlink virtuoso-opensource v7.2.11 allows attackers to     cause a Denial of Service (DoS) via crafted SQL statements. (CVE-2025-61019)<br /></span><span><br /></span><span>    An issue in the sqlo_strip_in_join component of openlink virtuoso-opensource v7.2.11 allows attackers to     cause a Denial of Service (DoS) via crafted SQL statements. (CVE-2025-61020)<br /></span><span><br /></span><span>    An issue in the sqlo_natural_join_cond component of openlink virtuoso-opensource v7.2.11 allows attackers     to cause a Denial of Service (DoS) via crafted SQL statements. (CVE-2025-61021)<br /></span><span><br /></span><span>    An issue in the sqlo_tb_col_preds component of openlink virtuoso-opensource v7.2.11 allows attackers to     cause a Denial of Service (DoS) via crafted SQL statements. (CVE-2025-61022)<br /></span><span><br /></span><span>    An issue in the st_compare component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a     Denial of Service (DoS) via crafted SQL statements. (CVE-2025-61023)<br /></span><span><br /></span><span>    An issue in the sqlo_try_in_loop component of openlink virtuoso-opensource v7.2.11 allows attackers to     cause a Denial of Service (DoS) via crafted SQL statements. (CVE-2025-61024)<br /></span><span><br /></span><span>    An issue in the sslr_qst_get component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a     Denial of Service (DoS) via crafted SQL statements. (CVE-2025-61025)<br /></span><span><br /></span><span>    An issue in the t_set_push component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a     Denial of Service (DoS) via crafted SQL statements. (CVE-2025-61027)<br /></span><span><br /></span><span>    An issue in the time_t_to_dt component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a     Denial of Service (DoS) via crafted SQL statements. (CVE-2025-61028)<br /></span><span><br /></span><span>    An issue in the sqlo_untry component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a     Denial of Service (DoS) via crafted SQL statements. (CVE-2025-61029)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the tested product security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Run 'yum update virtuoso-opensource' or   or 'yum update --advisory ALAS2-2026-3799' to update your system.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326341">https://www.tenable.com/plugins/nessus/326341</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Amazon Linux 2 : kernel, --advisory ALAS2KERNEL-5.4-2026-126 (ALASKERNEL-5.4-2026-126)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326340</link>
            <guid>https://www.tenable.com/plugins/nessus/326340</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326340 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Amazon Linux 2 host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The version of kernel installed on the remote host is prior to 5.4.302-226.484. It is, therefore, affected by a vulnerability as referenced in the ALAS2KERNEL-5.4-2026-126 advisory.<br /></span><span><br /></span><span>    In the Linux kernel, the following vulnerability has been resolved:<br /></span><span><br /></span><span>    rtmutex: Use waiter::task instead of current in remove_waiter() (CVE-2026-43499)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the tested product security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Run 'yum update kernel' or   or 'yum update --advisory ALAS2KERNEL-5.4-2026-126' to update your system.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326340">https://www.tenable.com/plugins/nessus/326340</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RHEL 9 : kernel (RHSA-2026:37729)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326339</link>
            <guid>https://www.tenable.com/plugins/nessus/326339</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326339 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Red Hat host is missing one or more security updates for kernel.<br /></span>
      <h3>Description</h3>
      <span>The remote Redhat Enterprise Linux 9 host has packages installed that are affected by multiple vulnerabilities as referenced in the RHSA-2026:37729 advisory.<br /></span><span><br /></span><span>    The kernel packages contain the Linux kernel, the core of any Linux operating system.<br /></span><span><br /></span><span>    Security Fix(es):<br /></span><span><br /></span><span>    * kernel: eventpoll: defer struct eventpoll free to RCU grace period (CVE-2026-43074)<br /></span><span><br /></span><span>    * kernel: eventpoll: fix ep_remove struct eventpoll / struct file UAF (CVE-2026-46242)<br /></span><span><br /></span><span>    * kernel: KVM: x86: Fix shadow paging use-after-free due to unexpected role (CVE-2026-53359)<br /></span><span><br /></span><span>    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and     other related information, refer to the CVE page(s) listed in the References section.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Red Hat Enterprise Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the RHEL kernel package based on the guidance in RHSA-2026:37729.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326339">https://www.tenable.com/plugins/nessus/326339</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RHEL 10 : kernel (RHSA-2026:37728)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326338</link>
            <guid>https://www.tenable.com/plugins/nessus/326338</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326338 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Red Hat host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Redhat Enterprise Linux 10 host has packages installed that are affected by multiple vulnerabilities as referenced in the RHSA-2026:37728 advisory.<br /></span><span><br /></span><span>    The kernel packages contain the Linux kernel, the core of any Linux operating system.<br /></span><span><br /></span><span>    Security Fix(es):<br /></span><span><br /></span><span>    * kernel: rtmutex: Use waiter::task instead of current in remove_waiter() (CVE-2026-43499)<br /></span><span><br /></span><span>    * kernel: futex/requeue: Prevent NULL pointer dereference in remove_waiter() on self-deadlock     (CVE-2026-53166)<br /></span><span><br /></span><span>    Bug Fix(es) and Enhancement(s):<br /></span><span><br /></span><span>    * [Exploits (KEV)] CVE-2026-43499 kernel: rtmutex: Use waiter::task instead of current in remove_waiter()     [voyager-26.02] (JIRA:VOYAGER-1244)<br /></span><span><br /></span><span>    * [Exploits (KEV)] CVE-2026-53166 kernel: futex/requeue: Prevent NULL pointer dereference in     remove_waiter() on self-deadlock [voyager-26.02] (JIRA:VOYAGER-1250)<br /></span><span><br /></span><span>    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and     other related information, refer to the CVE page(s) listed in the References section.<br /></span><span><br /></span><span>    Additional Changes:<br /></span><span><br /></span><span>    For detailed information on changes in this release, see the NVIDIA for RHEL 10 Release Notes linked from     the References section.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Red Hat Enterprise Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326338">https://www.tenable.com/plugins/nessus/326338</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RHEL 10 : golang (RHSA-2026:37436)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326337</link>
            <guid>https://www.tenable.com/plugins/nessus/326337</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326337 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Red Hat host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Redhat Enterprise Linux 10 host has packages installed that are affected by multiple vulnerabilities as referenced in the RHSA-2026:37436 advisory.<br /></span><span><br /></span><span>    The golang packages provide the Go programming language compiler.<br /></span><span><br /></span><span>    Security Fix(es):<br /></span><span><br /></span><span>    * golang.org/x/net/idna: golang: golang.org/x/net/idna: Privilege escalation via incorrect Punycode label     processing (CVE-2026-39821)<br /></span><span><br /></span><span>    * os: golang: Go os.Root: Symlink following vulnerability allows directory traversal (CVE-2026-39822)<br /></span><span><br /></span><span>    Bug Fix(es) and Enhancement(s):<br /></span><span><br /></span><span>    * Update Go to version 1.26.5+1 [rhel-10.2.z] (JIRA:RHEL-193473)<br /></span><span><br /></span><span>    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and     other related information, refer to the CVE page(s) listed in the References section.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Red Hat Enterprise Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326337">https://www.tenable.com/plugins/nessus/326337</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RHEL 9 : golang (RHSA-2026:37435)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326336</link>
            <guid>https://www.tenable.com/plugins/nessus/326336</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326336 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Red Hat host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Redhat Enterprise Linux 9 host has packages installed that are affected by multiple vulnerabilities as referenced in the RHSA-2026:37435 advisory.<br /></span><span><br /></span><span>    The golang packages provide the Go programming language compiler.<br /></span><span><br /></span><span>    Security Fix(es):<br /></span><span><br /></span><span>    * golang.org/x/net/idna: golang: golang.org/x/net/idna: Privilege escalation via incorrect Punycode label     processing (CVE-2026-39821)<br /></span><span><br /></span><span>    * os: golang: Go os.Root: Symlink following vulnerability allows directory traversal (CVE-2026-39822)<br /></span><span><br /></span><span>    Bug Fix(es) and Enhancement(s):<br /></span><span><br /></span><span>    * Update Go to version 1.26.5+1 [rhel-9.8.z] (JIRA:RHEL-193476)<br /></span><span><br /></span><span>    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and     other related information, refer to the CVE page(s) listed in the References section.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Red Hat Enterprise Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326336">https://www.tenable.com/plugins/nessus/326336</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[SUSE SLED15 / SLES15 Security Update : cosign (SUSE-SU-2026:2827-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326335</link>
            <guid>https://www.tenable.com/plugins/nessus/326335</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326335 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote SUSE host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote SUSE Linux SLED15 / SLED_SAP15 / SLES15 / SLES_SAP15 host has packages installed that are affected by multiple vulnerabilities as referenced in the SUSE-SU-2026:2827-1 advisory.<br /></span><span><br /></span><span>    This update for cosign fixes the following issues<br /></span><span><br /></span><span>    - CVE-2026-25680,CVE-2026-25681,CVE-2026-27136,CVE-2026-42502,CVE-2026-42506: multiple issues when parsing     HTML files (bsc#1267044).<br /></span><span>    - CVE-2026-33815: memory-safety vulnerability (bsc#1261811).<br /></span><span>    - CVE-2026-39827,CVE-2026-39828,CVE-2026-39829,CVE-2026-39830,CVE-2026-39831,CVE-2026-39832,CVE-2026-     39833,CVE-2026-39834,CVE-2026-39835,CVE-2026-42508,CVE-2026-46595,CVE-2026-46597,CVE-2026-46598: Fixed     multiple issues in golang.org/x/crypto/ssh (bsc#1266049).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected cosign, cosign-bash-completion and / or cosign-zsh-completion packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326335">https://www.tenable.com/plugins/nessus/326335</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[SUSE SLES15 Security Update : python-sqlparse (SUSE-SU-2026:2821-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326334</link>
            <guid>https://www.tenable.com/plugins/nessus/326334</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326334 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote SUSE host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote SUSE Linux SLES15 host has a package installed that is affected by a vulnerability as referenced in the SUSE- SU-2026:2821-1 advisory.<br /></span><span><br /></span><span>    This update for python-sqlparse fixes the following issue<br /></span><span><br /></span><span>    - Fixed an issue where formatting list of tuples leads to denial of service (bsc#1268597).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected python2-sqlparse package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326334">https://www.tenable.com/plugins/nessus/326334</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[SUSE SLES15 Security Update : rustup (SUSE-SU-2026:2831-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326333</link>
            <guid>https://www.tenable.com/plugins/nessus/326333</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326333 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote SUSE host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote SUSE Linux SLES15 / SLES_SAP15 host has a package installed that is affected by multiple vulnerabilities as referenced in the SUSE-SU-2026:2831-1 advisory.<br /></span><span><br /></span><span>    This update for rustup fixes the following issues<br /></span><span><br /></span><span>    Security issues:<br /></span><span><br /></span><span>    - CVE-2024-12224: idna: idna accepts Punycode labels that do not produce any non-ASCII when decoded     (bsc#1243862).<br /></span><span>    - CVE-2025-58160: tracing-subscriber: Tracing log pollution (bsc#1249008).<br /></span><span>    - CVE-2026-25727: time: parsing of user-provided input by the RFC 2822 date parser can lead to stack     exhaustion       (bsc#1257902).<br /></span><span>    - CVE-2026-41676: openssl: `Deriver:derive` and `PkeyCtxRef:derive` can overflow short buffers on OpenSSL     1.1.1       (bsc#1270186).<br /></span><span>    - CVE-2026-41677: openssl: out-of-bounds read in PEM password callback when returning an oversized length     in rust-       openssl crate (bsc#1270619).<br /></span><span>    - CVE-2026-41678: openssl: incorrect bounds assertion in aes key wrap in rust-openssl crate (bsc#1270644).<br /></span><span>    - CVE-2026-41681: openssl: MdCtxRef::digest_final() writes past caller buffer with no length check in     rust-openssl crate       (bsc#1270795).<br /></span><span>    - CVE-2026-41898: openssl: unchecked callback-returned length in PSK and cookie generate trampolines can     leak adjacent       memory in rust-openssl crate (bsc#1270870).<br /></span><span>    - CVE-2026-42327: openssl: arbitrary code execution via specially crafted certificate in rust-openssl     crate       (bsc#1270521).<br /></span><span>    - CVE-2026-44662: openssl: heap buffer overflow when encrypting with AES key-wrap-with-padding in rust-     openssl crate       (bsc#1270874).<br /></span><span>    - CVE-2026-45784: openssl: out-of-bounds write in `CipherCtxRef::cipher_update_inplace` for AES-KW-PAD     ciphers in rust-       openssl crate (bsc#1270989).<br /></span><span>    - rust-shlex: Multiple issues involving quote API ( RUSTSEC-2024-0006, GHSA-r7qv-8r2h-pg27) (bsc#1230032).<br /></span><span><br /></span><span>    Non security issue:<br /></span><span><br /></span><span>    - devel:languages:rust/rustup: Missing symlink for rust-analyzer (bsc#1203257).<br /></span><span><br /></span><span>    Changes for rustup:<br /></span><span><br /></span><span>    - Completely drop openssl to prevent future security issues<br /></span><span><br /></span><span>    Update to version 1.28.2~0:<br /></span><span><br /></span><span>     * Deprecate native-tls as well<br /></span><span>     * Enable HTTP/2 support for reqwest download backend<br /></span><span>     * Emit tracing events from log facade calls<br /></span><span>     * download: show Debug representation for errors<br /></span><span>     * Avoid repeated globals in tracing events<br /></span><span>     * Log original download errors immediately<br /></span><span>     * feat(cli/rustup-mode): add aliases to `rustup component remove`<br /></span><span>     * Switch flate2 to use the zlib-rs backend<br /></span><span>     * Hardlink proxies if symlinks aren't reachable<br /></span><span>     * Add powerpc64le-unknown-linux-musl support<br /></span><span>     * Add toolchain_name to not installed bail msg<br /></span><span>     * Warn about using curl<br /></span><span>     * Drop workspace indirection<br /></span><span>     * Fold download crate back into rustup<br /></span><span>     * download: merge integration test files<br /></span><span>     * chore(deps): lock file maintenance<br /></span><span>     * Test CARGO environment replacement<br /></span><span>     * Update CARGO env var if it is a rustup proxy<br /></span><span>     * Tweak toolchain subcommand help text<br /></span><span>     * Move toolchain and default commands first<br /></span><span>     * show toolchain paths in rustup show -v output<br /></span><span>     * refactor(cli/self-update): save allocations in `Nu::rcfiles()`<br /></span><span>     * fix(cli/self-update)!: stop appending to `env.nu` due to deprecation<br /></span><span>     * fix(cli/self-update): consider Windows paths in Nushell suggestions<br /></span><span>     * refactor(cli/self-update): use `path add` in `env.nu` template<br /></span><span>     * fix(cli/self-update): use interpolated string in `env.nu` template<br /></span><span>     * Upgrade dependencies<br /></span><span>     * docs(user-guide/environment-variables): document `RUSTUP_VERSION`<br /></span><span>     * feat(rustup-init/sh): allow setting `RUSTUP_VERSION` during installation<br /></span><span>     * feat(cli/self-update): allow setting `RUSTUP_VERSION` for arbitrary      downgrades<br /></span><span>     * feat(test/clitools): add `Config::expect_ok_ex_env()`<br /></span><span>     * fix(errors)!: improve error messages for `RustupError::ToolchainNotInstalled`<br /></span><span>     * Add set auto-install disable<br /></span><span>     * Use `cursor: pointer` for copy button on website<br /></span><span>     * fix(dist): refine suggestions about missing targets<br /></span><span>     * Append Windows bin directory to PATH by default<br /></span><span>     * Remove validation for custom toolchains when reading rust-toolchain.toml<br /></span><span>     * document RUSTUP_AUTO_INSTALL<br /></span><span>     * Fix build script `cargo` instructions<br /></span><span><br /></span><span>    Update to version 1.28.1~0:<br /></span><span><br /></span><span>     * dist(rustup-init/sh): update commit shasum<br /></span><span>     * Update changelog for 1.28.1<br /></span><span>     * fix!(config): re-enable implicit toolchain installation in `Cfg::local_toolchain()` with optional opt-     out<br /></span><span>     * refactor(test/clitools): extract `Config::expect_err_env()`<br /></span><span>     * Use relative symlinks when possible<br /></span><span>     * docs: update CHANGELOG for v1.28.1 release<br /></span><span>     * fix!(config): re-enable active toolchain installation in `Cfg::find_active_toolchain()` with optional     opt-out<br /></span><span>     * config: make Config::find_active_toolchain() async<br /></span><span>     * Use terse output for rustup show active-toolchain<br /></span><span>     * Use read_timeout for reqwest instead of timeout<br /></span><span>     * test: turn set_current_dist_date() into a Config method<br /></span><span>     * test: privatize clitools module<br /></span><span>     * test: remove function wrappers for cmd() and env()<br /></span><span>     * test: privatize mock module<br /></span><span>     * test: move create_mock_dist_server() to Scenario::write_to()<br /></span><span>     * test: move Release into dist<br /></span><span>     * test: turn channel builders into constructors<br /></span><span>     * test: move mock channel builders into dist<br /></span><span>     * test: move arch consts into top-level module<br /></span><span>     * test: turn build_*_installer() functions into constructors<br /></span><span>     * test: move installer builders into mock module<br /></span><span>     * test: privatize items in clitools<br /></span><span>     * test: keep Config impl close to type definition<br /></span><span>     * test: privatize dist module<br /></span><span>     * test: privatize items in test::dist<br /></span><span>     * test: inline short module topical_doc_data<br /></span><span>     * Remove level of nesting in test module<br /></span><span>     * Tweak SanitizedOutput style<br /></span><span>     * docs: update `CHANGELOG` for v1.28.0 release<br /></span><span>     * Have mocked cargo better adhere to cargo conventions<br /></span><span>     * Do not append `EXE_SUFFIX` in `Config::cmd`<br /></span><span>     * Add `TryFrom<Output>` for `SanitizedOutput`<br /></span><span>     * refactor(test): replace `(before|after)_test_async()` with `TestProcess::_telemetry_guard`<br /></span><span>     * style(rustup-init): reorganize imports<br /></span><span>     * refactor(log): introduce `GlobalTelemetryGuard`<br /></span><span>     * refactor(process): rename `TestProcess::_guard` to `_tracing_guard`<br /></span><span>     * chore(deps): update opentelemetry<br /></span><span>     * fix(deps): update rust crate windows-registry to 0.5.0<br /></span><span>     * refactor: improve binary suffix stripping<br /></span><span>     * build: bump the codebase Language Edition to 2024<br /></span><span>     * style(cli/job): fix `unsafe-op-in-unsafe-fn`<br /></span><span>     * style(cli/log): use precise capturing when necessary<br /></span><span>     * chore: use unsafe versions of `(add|remove)_var()`<br /></span><span>     * style: remove redundant `ref` keywords<br /></span><span>     * style: partially migrate away from `if-let`<br /></span><span>     * style: format sources with the 2024 Style Edition<br /></span><span>     * chore: fix new `clippy` warnings<br /></span><span>     * fix(deps): update rust crate pulldown-cmark to 0.13<br /></span><span>     * feat(rustup-init/sh): add env var to print arch detection result<br /></span><span>     * refactor(component): reduce allocations in `ComponentPart::encode()`<br /></span><span>     * refactor(component)!: extract `ComponentPartKind`<br /></span><span>     * style(component): reduce right drift in `ComponentPart::decode()`<br /></span><span>     * refactor(component)!: turn `ComponentPart`'s fields into named ones<br /></span><span>     * fix(dist/prefix): normalize path separators in `REL_MANIFEST_DIR`<br /></span><span>     * fix(component): normalize path separators during `ComponentPart::(en|de)code()`<br /></span><span>     * Upgrade to rand 0.9<br /></span><span>     * fix(ci/doc): fix typo in renovate `datasource`<br /></span><span>     * ci(doc): make `renovatebot` bump locked `mdbook`<br /></span><span>     * ci(doc): pin `mdbook` to `0.4.43`<br /></span><span>     * ci(schedule): run cron tasks more times per week<br /></span><span>     * ci(schedule): promote to use the `stable` job list<br /></span><span>     * ci(doc): fix stable build of `user-guide`<br /></span><span>     * ci(linux): enable the full test suite for `aarch64-unknown-linux-gnu`<br /></span><span>     * ci(linux): use public ARM64 Linux runners<br /></span><span>     * ci(deploy-docs): merge with `test-docs`<br /></span><span>     * ci(deploy-docs): enable on PR without uploads<br /></span><span>     * ci(deploy-docs): build one book per workflow step<br /></span><span>     * ci(deploy-docs): install `mdbook` with `install-action`<br /></span><span>     * Change installation of dependencies for Aarch64 Dockerfile<br /></span><span>     * Run Aarch64 jobs on PRs<br /></span><span>     * Use ARM based runners for ARM CI targets<br /></span><span>     * style: fix `clippy` warnings<br /></span><span>     * docs(user-guide/components): add deprecation notice for `wasm32-wasi`<br /></span><span>     * Update Windows dependencies<br /></span><span>     * feat(cli/rustup-mode)!: simplify error message for `rustup show active-toolchain`<br /></span><span>     * fix(cli/rustup-mode): make `rustup show active-toolchain` exit with `1` when none is active<br /></span><span>     * fix(cli/rustup-mode): make `rustup default` exit with `1` when there's no default<br /></span><span>     * fix(cli/rustup-mode)!: change `rustup doc --error_codes` to `--error-codes`<br /></span><span>     * fix(deps): update rust crate itertools to 0.14<br /></span><span>     * fix(cli): align `rustup show`'s `--verbose` behavior with `rustup show active-toolchain`<br /></span><span>     * feat(cli): show the toolchain path with `rustup show active-toolchain --verbose`<br /></span><span>     * feat(test): accept more than one args in `for_host*!()`<br /></span><span>     * fix(ci): fix installation of `cargo-all-features`<br /></span><span>     * docs(user-guide/installation): update 'General tips'<br /></span><span>     * move deps around<br /></span><span>     * fix(deps): update rust crate rustls-platform-verifier to 0.5<br /></span><span>     * fix(rustup-init/sh): don't emit 'unknown macOS major version' for macOS v11+<br /></span><span>     * refactor(rustup-init/sh): extract `$_os_major`<br /></span><span>     * refactor(rustup-init/sh): extract `$_os_version`<br /></span><span>     * ci(linux): move `bindgen-cli` installation into `run.bash`<br /></span><span>     * ci(stable): enable `loongarch64-unknown-linux-musl` builds<br /></span><span>     * ci(linux): disable `reqwest-rustls-tls` for unsupported platforms<br /></span><span>     * ci(linux): configure `gcc-multilib` and `libclang` for some *nix builds<br /></span><span>     * chore(deps): bump `aws-lc-rs` and `aws-lc-sys`<br /></span><span>     * download: clean up TLS feature guards<br /></span><span>     * download: simplify feature guards<br /></span><span>     * download: attach download functions to Backend type<br /></span><span>     * download: remove intermediate reqwest-backend feature<br /></span><span>     * Implement more complete backend selection<br /></span><span>     * Simplify logic for download backend notification<br /></span><span>     * docs(dev-guide/tracing): make 'Adding instrumentation' a level-2 title<br /></span><span>     * ci(windows): don't install `awscli` via `choco`<br /></span><span>     * test(mock/topical-doc-data): add test cases with both a flag and a topic<br /></span><span>     * refactor(test/mock): use tuples for `topical_doc_data::TEST_CASES`<br /></span><span>     * feat(cli/rustup-mode): allow `rustup doc` with both a flag and a topic<br /></span><span>     * refactor(toolchain): allow passing a fragment in `Toolchain::doc_path()`<br /></span><span>     * refactor(toolchain): allow absolute paths in `Toolchain::doc_path()`<br /></span><span>     * refactor(toolchain): simplify `Toolchain::doc_path()`<br /></span><span>     * refactor(cli/rustup-mode): rename `doc_url` to `doc_path`<br /></span><span>     * refactor(cli/rustup-mode): make `DocPage::path()` return `Option<&Path>`<br /></span><span>     * refactor(cli/rustup-mode): move `DocPage::name()` to a separate `impl` block<br /></span><span>     * refactor(cli/topical-doc): clean up some funtions<br /></span><span>     * refactor(cli/rustup-mode): use early return in `doc()`<br /></span><span>     * Update semver-compatible dependencies<br /></span><span>     * fix: make sure no overflow on small screens<br /></span><span>     * feat: make the box white<br /></span><span>     * feat: use the color form the rust website for tags, hr and copy button<br /></span><span>     * Add the main element and header to setup new layout<br /></span><span>     * chore: remove the old pitch first<br /></span><span>     * Apply clippy suggestions<br /></span><span>     * Append to 1.28.0 changelog<br /></span><span>     * Bump version, commit and date in rustup-init.sh<br /></span><span>     * Clean up trailing whitespace in rustup-init.sh<br /></span><span>     * Add changelog for 1.28.0<br /></span><span>     * Bump version to 1.28.0<br /></span><span>     * chore(deps): update remove-dir-all to 1.0<br /></span><span>     * Add aliases for remove/uninstall/unset commands<br /></span><span>     * feat: add nushell support<br /></span><span>     * Upgrade to opentelemetry 0.27<br /></span><span>     * fix: add missing close body tag<br /></span><span>     * Upgrade thiserror to 2<br /></span><span>     * Upgrade to rustls-platform-verifier 0.4<br /></span><span>     * fix(cli/rustup-mode): remove `.num_args()` when `.value_delimiter(',')` is present<br /></span><span>     * refactor(cli/rustup-mode): remove deprecated `.use_value_delimiter()`<br /></span><span>     * chore(config): migrate config .github/renovate.json<br /></span><span>     * docs: update channel toolchain syntax<br /></span><span>     * feat(cli/rustup-mode): support more books in `rustup doc`<br /></span><span>     * style(cli/rustup-mode): reorder items in `docs_data![]`<br /></span><span>     * fix: add powerpc64 and s390x to known target_arch values for tests<br /></span><span>     * style(utils): put the `mod` declarations below the imports<br /></span><span>     * style: regroup some imports<br /></span><span>     * refactor(utils): hoist `utils::utils` into `utils`<br /></span><span>     * feat(rustup-init): detect and warn about existing `settings.toml`<br /></span><span>     * fix: fix typo in `check_existence_of_rustc_or_cargo_in_path()`<br /></span><span>     * style: allow using `dbg!()` across `rustup::test`<br /></span><span>     * refactor(diskio): replace `eprintln!()` with `debug!()`<br /></span><span>     * style: enable `clippy::(dbg_macro|todo)` across the workspace<br /></span><span>     * style: enable `clippy::print_std(err|out)` when applicable<br /></span><span>     * style: introduce workspace-wide lint tables<br /></span><span>     * build: use `workspace.package` properties in `Cargo.toml`<br /></span><span>     * fix(config): improve error when overridden active custom toolchain isn't installed<br /></span><span>     * fix(config): print special error for invalid toolchain name in override file<br /></span><span>     * Update semver-compatible dependencies, except openssl-src<br /></span><span>     * style(rustup-init/sh): ignore `shellcheck` SC2086 false positives<br /></span><span>     * fix(rustup-init/sh): fix incorrect TLS warning with curl v8.10<br /></span><span>     * tests: rust-toolchain + profile in settings<br /></span><span>     * Remove unnecessary methods<br /></span><span>     * replace `winreg` dependency<br /></span><span>     * Update remove_dir_all<br /></span><span>     * refactor(cli/common)!: deny installing a host-incompatible toolchain w/o `--force-non-host`<br /></span><span>     * refactor(cli/common)!: take in `toolchain: String` in `warn_if_host_is_incompatible()`<br /></span><span>     * feat(cli/rustup-mode): add `--force-non-host` to `rustup default`<br /></span><span>     * refactor(config)!: pass the `force_non_host` flag to `Cfg::ensure_installed()`<br /></span><span>     * refactor(cli/rustup-mode): rename `forced` to `force_non_host`<br /></span><span>     * docs(README): Point out where to find nightly/master docs.<br /></span><span>     * Note that selecting VS lang packs is optional<br /></span><span>     * Make symlink_or_hardlink_file remove dest<br /></span><span>     * Try symlinking proxies first<br /></span><span>     * Apply clippy suggestions from 1.81<br /></span><span>     * feat(cli/rustup-mode)!: set log level to `INFO`/`DEBUG` on `--quiet`/`--verbose` if `RUSTUP_LOG` is     unset<br /></span><span>     * refactor(cli/setup-mode): extract `update_console_logger()`<br /></span><span>     * fix(cli/setup-mode): simplify description for `--quiet`<br /></span><span>     * feat(cli/setup-mode)!: set log level to `DEBUG` on `--verbose` if `RUSTUP_LOG` is unset<br /></span><span>     * refactor(common)!: remove `verbose` flag in several places<br /></span><span>     * refactor(config): simplify `find_or_install_active_toolchain()`<br /></span><span>     * refactor(config)!: return `LocalToolchainName` from `find_or_install_active_toolchain()`<br /></span><span>     * refactor(config): simplify `resolve_toolchain()`<br /></span><span>     * refactor(config): simplify `toolchain_from_partial()`<br /></span><span>     * chore(triage): allow transferring issues to other org repos<br /></span><span>     * Allow `rustup doc` to search for unions<br /></span><span>     * docs(user-guide): add a link to the latest 'Previous components' section<br /></span><span>     * test(cli_v2): introduce `update_removed_component_toolchain()`<br /></span><span>     * feat(dist): add notes for `stable` and `beta` in `components_missing_msg()`<br /></span><span>     * refactor(dist): inline some const strings in `components_missing_msg()`<br /></span><span>     * refactor(dist): extract 'nightly tips' out of the match block in `components_missing_msg()`<br /></span><span>     * fix: fix typo in several places<br /></span><span>     * Upgrade pulldown-cmark to 0.12<br /></span><span>     * fix(manifest): consider possible renames in `Component::try_new()`<br /></span><span>     * ci(macos): install `awscli` from `brew`<br /></span><span>     * refactor(config)!: make `toolchain_from_partial()` sync<br /></span><span>     * feat(config)!: remove implicit installation from `toolchain_from_partial()`<br /></span><span>     * refactor(config)!: make `resolve_toolchain()` sync<br /></span><span>     * feat(config)!: remove implicit installation from `resolve_toolchain()`<br /></span><span>     * test(cli-rustup): remove `heal_damaged_toolchain()`<br /></span><span>     * refactor(config): extract `local_toolchain()` from `resolve_local_toolchain()`<br /></span><span>     * refactor(config): extract `toolchain` variable from `resolve_local_toolchain()`<br /></span><span>     * refactor(config)!: make `resolve_local_toolchain()` sync<br /></span><span>     * feat(config)!: remove implicit installation from `resolve_local_toolchain()`<br /></span><span>     * refactor(config)!: rename `local_toolchain()` to `resolve_local_toolchain()`<br /></span><span>     * feat(rustup-mode): install the active toolchain by default on `rustup toolchain install`<br /></span><span>     * fix(rustup-mode): adjust descriptions for `rustup toolchain uninstall`<br /></span><span>     * feat(rustup-mode)!: add `ensure_active_toolchain` flag to `update()`<br /></span><span>     * feat(config)!: add `verbose` flag to `find_or_install_active_toolchain()`<br /></span><span>     * style(config): replace `dist::Profile` with `Profile`<br /></span><span>     * style(config): replace `dist::TargetTriple` with `TargetTriple`<br /></span><span>     * fix(config): call `warn_if_host_is_incompatible()` in `ensure_installed()`<br /></span><span>     * refactor(common): use early return in `warn_if_host_is_incompatible()`<br /></span><span>     * refactor(rustup-mode): extract `warn_if_host_is_incompatible()`<br /></span><span>     * style(common): merge imports<br /></span><span>     * refactor(distributable)!: avoid unnecessary clones<br /></span><span>     * refactor(distributable)!: replace `install_if_not_installed()` with `ensure_installed()`<br /></span><span>     * feat(config)!: add `verbose` flag to `ensure_installed()`<br /></span><span>     * feat(config)!: return `UpdateStatus` from `ensure_installed()`<br /></span><span>     * feat(config)!: use `Cfg::get_profile()` for unspecified profile in `ensure_installed()`<br /></span><span>     * chore(config): add `#[tracing::instrument]` to `ensure_installed()`<br /></span><span>     * ci(freebsd): fix build failure related to `aws-lc`<br /></span><span>     * ci(windows): don't install OpenSSL via `choco`<br /></span><span>     * ci(run): remove redundant `if` predicate<br /></span><span>     * ci(run): use the detected number of test threads<br /></span><span>     * feat(download/rustls): use `aws-lc` instead of `ring`<br /></span><span>     * style(taplo): enable `reorder_keys` for `*dependencies` in `Cargo.toml`<br /></span><span>     * Upgrade windows-sys to 0.59<br /></span><span>     * fix: fix unreachable code lints on Android<br /></span><span>     * docs(dev-guide): remove descriptions of `rustup_macros`<br /></span><span>     * docs(dev-guide): update description of `rustup::process`<br /></span><span>     * Remove `once_cell` dependency<br /></span><span>     * docs(dev-guide): add guideline for atomic commits to the developer guide<br /></span><span>     * fix: fix `clippy` lints<br /></span><span>     * docs(user-guide): use `brew install rustup` instead of `rustup-init`<br /></span><span>     * Bump fs_at to 0.2.1<br /></span><span>     * chore(deps/renovate): disable `automerge`<br /></span><span>     * Upgrade to opentelemetry 0.24<br /></span><span>     * build(windows): don't link against `powrprof`<br /></span><span>     * build(windows): fix typo in `build.rs`<br /></span><span>     * fix(utils): make `ExitCode` `#[must_use]`<br /></span><span>     * refactor(rustup-mode): introduce `ExitCode::bitand*()`<br /></span><span>     * fix(rustup-mode): return `ExitCode(1)` when `update()` fails<br /></span><span>     * refactor(rustup-mode)!: remove redundant `ExitCode` in `self_update()`'s callback<br /></span><span>     * test(cli-misc): simplify `version_mentions_rustc_version_confusion()`<br /></span><span>     * fix(rustup-mode): refine output for `rustup --version`<br /></span><span>     * fix(rustup-mode)!: don't install toolchain on `rustup --version`<br /></span><span>     * chore(deps/renovate): update `automerge` schedule for `lockFileMaintenance`<br /></span><span>     * ci(check): add `taplo fmt` test for TOMLs<br /></span><span>     * style: reformat all TOMLs with `taplo`<br /></span><span>     * ci(gen-workflows): remove `--quiet` from `git diff`<br /></span><span>     * refactor: use `#[cfg()]` instead of `cfg!()` when possible<br /></span><span>     * refactor(self-update): remove outdated `do_pre_install_sanity_checks`<br /></span><span>     * Add help message for missing toolchain<br /></span><span>     * Rename OSProcess to OsProcess<br /></span><span>     * Rename currentprocess to process<br /></span><span>     * Forward to Process::var_os() directly<br /></span><span>     * Fix home_dir() and current_dir() regression<br /></span><span>     * feat(log): set level of `#[tracing::instrument(err)]` to `TRACE`<br /></span><span>     * feat(log): unhide `tracing::instrument` from behind `feature = 'otel'`<br /></span><span>     * ci(windows): increase stack size to 16MiB<br /></span><span>     * Upload Windows artifacts into correct subdirectory<br /></span><span>     * Fix uploading of Windows build artifacts<br /></span><span>     * Prepare deployment on master branch<br /></span><span>     * Grant GitHub Actions workflows access to OIDC token<br /></span><span>     * chore(deps): update aws-actions/configure-aws-credentials action to v4<br /></span><span>     * Authenticate CI uploads with OIDC<br /></span><span>     * Upload release artifacts to new S3 bucket<br /></span><span>     * chore(deps/renovate): set `prCreation` to `immediate`<br /></span><span>     * feat(dist): refine suggestions regarding manifest checksum mismatches<br /></span><span>     * refactor(config): extract `dist_root_server()`<br /></span><span>     * refactor(dist): use `let-else` in `dl_v2_manifest()`<br /></span><span>     * refactor(dist/notifications)!: inline usages of `Notification::ManifestChecksumFailedHack`<br /></span><span>     * refactor(install): avoid extra clone in `InstallMethod::install`<br /></span><span>     * Reorder operations in order to simplify<br /></span><span>     * Deduplicate handling of environnment variables<br /></span><span>     * Move if_not_empty() to calling module<br /></span><span>     * feat(cli): warn when removing the default/active toolchain<br /></span><span>     * feat(cli): improve warning when removing the last/host target for a toolchain<br /></span><span>     * docs(ci): simplify the target policy in the README<br /></span><span>     * Add loongarch64-unknown-linux-musl support<br /></span><span>     * fix(download): fix build error with `--no-default-features --features=curl-backend`<br /></span><span>     * feat(rustup-init): set log level to `WARN` on `-q` if `RUSTUP_LOG` is unset<br /></span><span>     * implements quiet flag in `rustup-init.sh`<br /></span><span>     * test(manifestation): introduce and migrate tests to `TestContext`<br /></span><span>     * chore(manifestation): organize imports<br /></span><span>     * add regression tests for smart guess<br /></span><span>     * apply smart guess to `rustup update/uninstall self`<br /></span><span>     * Disable automatic self updates in CI environments<br /></span><span>     * feat(download/rustls): use `rustls-platform-verifier`<br /></span><span>     * ci(windows): run `cargo all-features`<br /></span><span>     * fix(self-update/windows): address some `unused_imports` warnings<br /></span><span>     * fix(rustup-mode): improve `clap` error format<br /></span><span>     * Add period in warning while checking existing rust installations<br /></span><span>     * Move Windows-only test code into windows module<br /></span><span>     * Asyncify CLI tests<br /></span><span>     * Use guard type to replace with_saved_path()<br /></span><span>     * Refactor test registry state to be more type safe<br /></span><span>     * Inline single-use with_saved_global_state() function<br /></span><span>     * Privatize with_saved_global_state()<br /></span><span>     * Move change_dir() into CliTestContext<br /></span><span>     * Move with_update_server() into CliTestContext<br /></span><span>     * Remove Config::with_scenario()<br /></span><span>     * Port cli_v2 to CliTestContext<br /></span><span>     * Port cli_v1 to CliTestContext<br /></span><span>     * Port cli_self_upd to CliTestContext<br /></span><span>     * Port cli_rustup to CliTestContext<br /></span><span>     * Port cli_paths to CliTestContext<br /></span><span>     * Port cli_misc to CliTestContext<br /></span><span>     * Port cli_inst_interactive to CliTestContext<br /></span><span>     * Port cli_exact to CliTestContext<br /></span><span>     * Use CliTestContext directly in self_update_setup()<br /></span><span>     * Start CliTestContext type wrapper<br /></span><span>     * docs(dev-guide/tracing): mention `RUSTUP_LOG` and console-based tracing<br /></span><span>     * docs(dev-guide/linting): improve wording<br /></span><span>     * test(dist): add simple tests for `PartialVersion`<br /></span><span>     * chore(dist): add some doc comments<br /></span><span>     * fix(dist): throw an error when a `PartialVersion` string doesn't start with an ASCII digit<br /></span><span>     * ci(all-features): add `-D warnings` to `cargo check-all-features`<br /></span><span>     * fix(currentprocess/filesource): address some `unused_imports` warnings<br /></span><span>     * fix(currentprocess): address some `unused_imports` warnings<br /></span><span>     * fix(regex): replace `\d` to `[0-9]` to avoid matching non-ASCII digits<br /></span><span>     * refactor(toolchain/names): replace `toolchain_sort` with `ToolchainName`'s `Ord` instance<br /></span><span>     * refactor(dist)!: make `ToolchainDesc.channel` more strongly typed<br /></span><span>     * Remove unnecessary lint suppressions<br /></span><span>     * Use local suppression for clippy::too_many_arguments<br /></span><span>     * Rename desc fields to toolchain<br /></span><span>     * Remove intermediate state from error handling<br /></span><span>     * Remove indirection in update error handling<br /></span><span>     * Inline wrapper function<br /></span><span>     * Reduce rightward drift<br /></span><span>     * Propagate use of DistOptions<br /></span><span>     * Avoid unnecessary unwrapping<br /></span><span>     * Extract struct from InstallMethods::Dist variant<br /></span><span>     * refactor(log): replace the `TELEMETRY_DEFAULT_TARCER` singleton with a function<br /></span><span>     * test(clitools): revive `run_inprocess()`<br /></span><span>     * fix(dist/arm): don't assume `armv7` if `/proc/cpuinfo` is unavailable<br /></span><span>     * fix(dist): add fallbacks to `/proc/self/exe` in `rustup-init.sh`<br /></span><span>     * Rename default-tls to native-tls<br /></span><span>     * Inline small errors module<br /></span><span>     * Inline addition/removal to programs<br /></span><span>     * Move windows-only self_update code into windows module<br /></span><span>     * Reorganize platform-dependent imports in self_update<br /></span><span>     * refactor(log): replace `[Ww]arning:` log line prefix with `warn:`<br /></span><span>     * refactor(log): rename `NotificationLevel::Debug` to `Trace` and `Verbose` to `Debug`<br /></span><span>     * Remove unused code<br /></span><span>     * Hoist Toolchain up into top-level toolchain module<br /></span><span>     * Remove unused derived sorting implementations<br /></span><span>     * Privatize internal organization of toolchain module<br /></span><span>     * Inline argument<br /></span><span>     * Inline trivial wrapper<br /></span><span>     * Move toolchain resolution into Cfg method<br /></span><span>     * Check settings version on Cfg construction<br /></span><span>     * Move proxy toolchain resolution logic into Cfg method<br /></span><span>     * Move rustc_version() function into Cfg<br /></span><span>     * Expose higher-level interface in Toolchain<br /></span><span>     * Move DistributableToolchain::installed_paths() into Cfg<br /></span><span>     * No need to store cfg in DistributableToolchain<br /></span><span>     * Reduce indirection in Cfg::from_partial()<br /></span><span>     * Move Toolchain::from_partial() to Cfg<br /></span><span>     * Take owned LocalToolchainName in Toolchain::from_local()<br /></span><span>     * Simplify Toolchain::from_local()<br /></span><span>     * refactor(dist): hoist `dist::dist` into `dist`<br /></span><span>     * refactor(dist): privatize imports from `dist::dist`<br /></span><span>     * Fix the `TODO` in `src\toolchain\toolchain.rs`<br /></span><span>     * Use tracing macros directly<br /></span><span>     * Inline single-caller maybe_trace_rustup()<br /></span><span>     * Remove rustup test wrapper macros<br /></span><span>     * Use tokio::main attribute<br /></span><span>     * Attach Process-dependent utils to Process<br /></span><span>     * Remove with_runtime()<br /></span><span>     * fix(config): fix typo in `ActiveReason`<br /></span><span>     * fix(log): use `RUSTUP_LOG` for internal `tracing` instead of `RUST_LOG`<br /></span><span>     * refactor(currentprocess): make use of `Arc::default()`<br /></span><span>     * refactor(currentprocess): rename `TestProcess.guard` to `_guard`<br /></span><span>     * Remove currentprocess::with()<br /></span><span>     * Privatize most TestProcess fields<br /></span><span>     * Remove unused TestProcess::id<br /></span><span>     * Pass Process around explicitly<br /></span><span>     * Let argument parser handle SelfUpdateMode conversion<br /></span><span>     * Let argument parser handle Profile conversion<br /></span><span>     * Use simpler form for string concatenation<br /></span><span>     * Reduce rightward drift by duplicating some Ok-wrapping<br /></span><span>     * Rename _install_selection() to IInstallOpts::install()<br /></span><span>     * Inline async closure<br /></span><span>     * Move error mapping out of validation function<br /></span><span>     * Rename do_pre_install_options_sanity_checks() to InstallOpts::validate()<br /></span><span>     * Rename customize_install() to InstallOpts::customize()<br /></span><span>     * Pass InstallOpts around directly<br /></span><span>     * refactor(terminalsource): use `.eq_ignore_ascii_case()` in `ColorableTerminal::new`<br /></span><span>     * chore(notify): sort logging macros and `NotificationLevel` on verbosity<br /></span><span>     * chore(env): retire `RUSTUP_DEBUG` in favor of `RUST_LOG`<br /></span><span>     * feat(log): make `console_logger()` accept `RUSTUP_TERM_COLOR` and `NO_COLOR`<br /></span><span>     * refactor(log): reimplement `log` using `tracing`<br /></span><span>     * refactor(test): clean up `before_test_async()`<br /></span><span>     * chore(deps): make `tracing-subscriber` a hard requirement<br /></span><span>     * refactor(test): setup `tracing` subscriber in `before_test_async()`<br /></span><span>     * test(clitools): disable `run_inprocess()`<br /></span><span>     * refactor(test): execute all `#[rustup_macros::unit_test]`s within a `tokio` context<br /></span><span>     * refactor(log): extract `telemetry()`<br /></span><span>     * Remove noop functions in favor of conditional compilation<br /></span><span>     * Avoid trivial wrapper functions<br /></span><span>     * Store process name in error variant directly<br /></span><span>     * Inline trivial wrapper function<br /></span><span>     * Fix misleading 'uninstalled toolchain' notification<br /></span><span>     * refactor(ci/run): use more `target_cargo()` in `run.bash`<br /></span><span>     * Remove trivial new() implementation<br /></span><span>     * Use serde to encode/decode mock manifests<br /></span><span>     * Use serde to encode/decode rustup manifests<br /></span><span>     * Use serde to encode/decode config<br /></span><span>     * Represent config version as an enum<br /></span><span>     *  ...<br /></span><span><br /></span><span>  Please note that the description has been truncated due to length. Please refer to vendor advisory for the full description.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected rustup package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326333">https://www.tenable.com/plugins/nessus/326333</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[SUSE SLES15: helm / helm-bash-completion / helm-fish-completion / etc (SUSE-SU-2026:2823-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326332</link>
            <guid>https://www.tenable.com/plugins/nessus/326332</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326332 with Low Severity</p>
      <h3>Synopsis</h3>
      <span>The remote SUSE host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote SUSE Linux SLES15 / SLES_SAP15 host has packages installed that are affected by multiple vulnerabilities as referenced in the SUSE-SU-2026:2823-1 advisory.<br /></span><span><br /></span><span>    This update for helm fixes the following issues<br /></span><span><br /></span><span>    - Update to version 3.21.2<br /></span><span>    - CVE-2026-39821: golang.org/x/net/idna: failure to reject ASCII-only Punycode-encoded labels allows for     validation bypass and privilege escalation (bsc#1266598).<br /></span><span>    - CVE-2026-48978: oras.land/oras-go/v2/registry/remote/auth: Malicious registry can hijack Bearer token     realm to exfiltrate credentials and refresh tokens (bsc#1270127).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected helm, helm-bash-completion, helm-fish-completion and / or helm-zsh-completion packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326332">https://www.tenable.com/plugins/nessus/326332</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[SUSE SLED15 / SLES15 Security Update : python-idna (SUSE-SU-2026:2828-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326331</link>
            <guid>https://www.tenable.com/plugins/nessus/326331</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326331 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote SUSE host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote SUSE Linux SLED15 / SLED_SAP15 / SLES15 / SLES_SAP15 host has a package installed that is affected by a vulnerability as referenced in the SUSE-SU-2026:2828-1 advisory.<br /></span><span><br /></span><span>    This update for python-idna fixes the following issue<br /></span><span><br /></span><span>    - CVE-2026-45409: specially crafted inputs to idna.encode() can bypass earlier security fix (bsc#1265413).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected python311-idna package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326331">https://www.tenable.com/plugins/nessus/326331</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[SUSE SLES15 Security Update : libaom (SUSE-SU-2026:2829-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326330</link>
            <guid>https://www.tenable.com/plugins/nessus/326330</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326330 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote SUSE host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote SUSE Linux SLES15 / SLES_SAP15 host has packages installed that are affected by multiple vulnerabilities as referenced in the SUSE-SU-2026:2829-1 advisory.<br /></span><span><br /></span><span>    - CVE-2026-56208: untrusted encoder configuration inputs can lead to a heap-based buffer overflow and a     process crash (bsc#1268650).<br /></span><span>    - CVE-2026-56209: crafted video frames with specific Y-plane pixel values can lead to an arbitrary memory     write (bsc#1268651).<br /></span><span>    - CVE-2026-56210: missing bounds check on layer_id inputs can lead to an out-of-bounds heap read     (bsc#1268653).<br /></span><span>    - CVE-2026-56211: out-of-range spatial/temporal layer selection can lead to remote code execution     (bsc#1268655).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected aom-tools, libaom-devel, libaom-devel-doc and / or libaom3 packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326330">https://www.tenable.com/plugins/nessus/326330</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[SUSE SLED15 / SLES15 Security Update : alloy (SUSE-SU-2026:2824-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326329</link>
            <guid>https://www.tenable.com/plugins/nessus/326329</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326329 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote SUSE host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote SUSE Linux SLED15 / SLED_SAP15 / SLES15 / SLES_SAP15 host has a package installed that is affected by multiple vulnerabilities as referenced in the SUSE-SU-2026:2824-1 advisory.<br /></span><span><br /></span><span>    This update for alloy fixes the following issues<br /></span><span><br /></span><span>    - CVE-2026-10722: github.com/cilium/ebpf: BTF string offset boundary check can lead to crash when parsing     malformed ELF/BTF input (bsc#1267811).<br /></span><span>    - CVE-2026-25680,CVE-2026-25681,CVE-2026-27136,CVE-2026-42502,CVE-2026-42506: golang.org/x/net/html:<br /></span><span>    multiple issues when parsing HTML files (bsc#1267185).<br /></span><span>    - CVE-2026-33532: Denial of Service via deeply nested YAML document parsing (bsc#1260981).<br /></span><span>    - CVE-2026-39821: golang.org/x/net/idna: failure to reject ASCII-only Punycode-encoded labels allows for     validation bypass and privilege escalation (bsc#1266654).<br /></span><span>    - CVE-2026-39827,CVE-2026-39828,CVE-2026-39829,CVE-2026-39830,CVE-2026-39831,CVE-2026-39832,CVE-2026-     39833,CVE-2026-39834,CVE-2026-39835,CVE-2026-42508,CVE-2026-46595,CVE-2026-46597,CVE-2026-46598:<br /></span><span>    golang.org/x/crypto/ssh: multiple issues (bsc#1266196).<br /></span><span>    - CVE-2026-41889: github.com/jackc/pgx/v5/internal/sanitize: SQL injection when placeholders in dollar-     quoted string literals are used in the SQL query (bsc#1265440).<br /></span><span>    - CVE-2026-44740: github.com/go-git/go-billy/v5: improper input handling in many components can lead to     DoS via infinite loops, panics or resource consumption (bsc#1267333).<br /></span><span>    - CVE-2026-45678: go.opentelemetry.io/obi: Postgres BIND parsing can lead to a panic when malformed     payloads are processed (bsc#1267481).<br /></span><span>    - CVE-2026-45682: go.opentelemetry.io/obi: keys not deleted by `CappedConcurrentHashMap` after removals     allows repeated connection churn to grow the queue without bound and exhaust heap memory (bsc#1267485).<br /></span><span>    - CVE-2026-45685: go.opentelemetry.io/obi: MongoDB TCP parser panics on malformed wire messages and causes     a DoS (bsc#1267488).<br /></span><span>    - CVE-2026-45686: go.opentelemetry.io/obi: integer overflow in memcached text protocol parser can crash     the OBI process and cause denial of service (bsc#1267489).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected alloy package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326329">https://www.tenable.com/plugins/nessus/326329</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[SUSE SLED15 / SLES15 Security Update : go1.26 (SUSE-SU-2026:2818-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326328</link>
            <guid>https://www.tenable.com/plugins/nessus/326328</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326328 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote SUSE host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote SUSE Linux SLED15 / SLED_SAP15 / SLES15 / SLES_SAP15 host has packages installed that are affected by multiple vulnerabilities as referenced in the SUSE-SU-2026:2818-1 advisory.<br /></span><span><br /></span><span>    This update for go1.26 fixes the following issues<br /></span><span><br /></span><span>    - Update to version go1.26.5 (bsc#1255111)<br /></span><span>    - CVE-2026-39822: os: Root escape via symlink plus trailing slash (bsc#1271014).<br /></span><span>    - CVE-2026-42505: crypto/tls: omit PSK in ECH outer client hello (bsc#1271015).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected go1.26, go1.26-doc and / or go1.26-race packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326328">https://www.tenable.com/plugins/nessus/326328</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[SUSE SLES15: warewulf4 / warewulf4-dracut / warewulf4-man / warewulf4-overlay / etc (SUSE-SU-2026:2830-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326327</link>
            <guid>https://www.tenable.com/plugins/nessus/326327</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326327 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote SUSE host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote SUSE Linux SLES15 host has packages installed that are affected by multiple vulnerabilities as referenced in the SUSE-SU-2026:2830-1 advisory.<br /></span><span><br /></span><span>    Update to v4.7.0.<br /></span><span><br /></span><span>    Security issues fixed:<br /></span><span><br /></span><span>    - CVE-2025-69725: incorrect input validation in the `RedirectSlashes` function can lead to an open     redirect       (bsc#1258511).<br /></span><span>    - CVE-2026-33814: golang.org/x/net/http2: infinite loop in HTTP/2 transport when given bad     `SETTINGS_MAX_FRAME_SIZE`       can lead to a denial of service (bsc#1265653).<br /></span><span>    - CVE-2026-34986: github.com/go-jose/go-jose/v4: crafted JWE input with a missing encrypted key can lead     to a denial of       service (bsc#1262810).<br /></span><span>    - CVE-2026-39821: golang.org/x/net/idna: failure to reject ASCII-only Punycode-encoded labels allows for     validation       bypass and privilege escalation (bsc#1266483).<br /></span><span><br /></span><span>    Other updates and bugfixes:<br /></span><span><br /></span><span>    - Add correct flag `--update-overlays` fix (bsc#1268790).<br /></span><span>    - v4.7.0:<br /></span><span>      * New `wwctl` unset command<br /></span><span>      * Refactored server routes (URLs)<br /></span><span>      * New `/files/` route for serving individual files and templates<br /></span><span>      * Server TLS support<br /></span><span>      * Removed support for fetching individual overlays and individual files from overlays<br /></span><span>      * Fixed whitespace handling around template functions<br /></span><span>      * Security fixes, including updated Go and library versions<br /></span><span>    - v4.6.5:<br /></span><span>      * New wwctl overlay info command<br /></span><span>      * Fixed `wwctl` image import `--update` option<br /></span><span>      * Cross-arch support for `wwclient`<br /></span><span>      * Improved IPv6 support<br /></span><span>      * Improved support for bonded interfaces<br /></span><span>      * Renamed `debian.interfaces` overlay to `ifupdown`<br /></span><span>      * New `systemd-networkd` overlay<br /></span><span>      * `warewulf-dracut` fixes, including `provision-to-disk` fixes<br /></span><span>    - Remove `slurm-overlay` package.<br /></span><span>    - Fix `wwctl` image import `--update` option (bsc#1254470).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326327">https://www.tenable.com/plugins/nessus/326327</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[SUSE SLES12: clamav / clamav-devel / clamav-docs-html / clamav-milter / etc (SUSE-SU-2026:2833-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326326</link>
            <guid>https://www.tenable.com/plugins/nessus/326326</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326326 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote SUSE host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote SUSE Linux SLES12 host has packages installed that are affected by multiple vulnerabilities as referenced in the SUSE-SU-2026:2833-1 advisory.<br /></span><span><br /></span><span>    This update for clamav fixes the following issues<br /></span><span><br /></span><span>    - CVE-2026-20213: PE file format parser could allow an unauthenticated, remote attacker to cause a denial     of service       (bsc#1270107).<br /></span><span>    - CVE-2026-20214: FSG file format parser could allow an unauthenticated, remote attacker to cause a denial     of service       (bsc#1270085).<br /></span><span>    - CVE-2026-20215: 7z file format parser could allow an unauthenticated, remote attacker to cause a denial     of service       (bsc#1270088).<br /></span><span>    - CVE-2026-20216: InstallShield file format parser could allow an unauthenticated, remote attacker to     cause a denial of       service (bsc#1270089).<br /></span><span>    - CVE-2026-20217: PESpin file format parser could allow an unauthenticated, remote attacker to cause a     denial of service       (bsc#1270091).<br /></span><span>    - CVE-2026-20243: ALZ file format parser could allow an unauthenticated, remote attacker to cause a denial     of service       (bsc#1270092).<br /></span><span>    - CVE-2026-20244: DMG file format parser could allow an unauthenticated, remote attacker to cause a denial     of service       on 32-bit platforms only (bsc#1270106).<br /></span><span>    - CVE-2026-41676: rust-openssl: `Deriver:derive` and `PkeyCtxRef:derive` can overflow short buffers on     OpenSSL 1.1.1       (bsc#1270138).<br /></span><span><br /></span><span>    Changes for clamav:<br /></span><span><br /></span><span>    - Update to 1.5.3:<br /></span><span><br /></span><span>      * Hardened clamscan, clamdscan, and clamonacc quarantine actions against         time-of-check/time-of-use races that could redirect copied, moved, or removed         files under unsafe quarantine directory configurations.<br /></span><span>      * Raised the minimum required CMake version to 3.17 to fix Linux builds with         libcurl v8.21.0 when linking static library dependencies.<br /></span><span>      * Metadata preclass scans now run before the final scan verdict.<br /></span><span>      * ClamOnAcc: Fixed errors when recursively excluded paths are children of an         included path.<br /></span><span>      * ClamOnAcc: Fixed hash bucket list corruption when two watched paths collide      in the same bucket.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326326">https://www.tenable.com/plugins/nessus/326326</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[SUSE SLED15 / SLES15 Security Update : go1.25 (SUSE-SU-2026:2817-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326325</link>
            <guid>https://www.tenable.com/plugins/nessus/326325</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326325 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote SUSE host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote SUSE Linux SLED15 / SLED_SAP15 / SLES15 / SLES_SAP15 host has packages installed that are affected by multiple vulnerabilities as referenced in the SUSE-SU-2026:2817-1 advisory.<br /></span><span><br /></span><span>    This update for go1.25 fixes the following issues<br /></span><span><br /></span><span>    - Update to version go1.25.12 (bsc#1244485).<br /></span><span>    - CVE-2026-25679: net/url: reject IPv6 literal not at start of host (bsc#1259264).<br /></span><span>    - CVE-2026-27139: os: FileInfo can escape from a Root (bsc#1259268).<br /></span><span>    - CVE-2026-27142: html/template: URLs in meta content attribute actions are not escaped (bsc#1259265).<br /></span><span>    - CVE-2026-39822: os: Root escape via symlink plus trailing slash (bsc#1271014).<br /></span><span>    - CVE-2026-42505: crypto/tls: omit PSK in ECH outer client hello (bsc#1271015).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected go1.25, go1.25-doc and / or go1.25-race packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326325">https://www.tenable.com/plugins/nessus/326325</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[SUSE SLED15: clamav / clamav-devel / clamav-docs-html / clamav-milter / etc (SUSE-SU-2026:2835-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326324</link>
            <guid>https://www.tenable.com/plugins/nessus/326324</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326324 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote SUSE host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote SUSE Linux SLED15 / SLED_SAP15 / SLES15 / SLES_SAP15 host has packages installed that are affected by multiple vulnerabilities as referenced in the SUSE-SU-2026:2835-1 advisory.<br /></span><span><br /></span><span>    This update for clamav fixes the following issues<br /></span><span><br /></span><span>    - CVE-2026-20213: PE file format parser could allow an unauthenticated, remote attacker to cause a denial     of service       (bsc#1270107).<br /></span><span>    - CVE-2026-20214: FSG file format parser could allow an unauthenticated, remote attacker to cause a denial     of service       (bsc#1270085).<br /></span><span>    - CVE-2026-20215: 7z file format parser could allow an unauthenticated, remote attacker to cause a denial     of service       (bsc#1270088).<br /></span><span>    - CVE-2026-20216: InstallShield file format parser could allow an unauthenticated, remote attacker to     cause a denial of       service (bsc#1270089).<br /></span><span>    - CVE-2026-20217: PESpin file format parser could allow an unauthenticated, remote attacker to cause a     denial of service       (bsc#1270091).<br /></span><span>    - CVE-2026-20243: ALZ file format parser could allow an unauthenticated, remote attacker to cause a denial     of service       (bsc#1270092).<br /></span><span>    - CVE-2026-20244: DMG file format parser could allow an unauthenticated, remote attacker to cause a denial     of service       on 32-bit platforms only (bsc#1270106).<br /></span><span>    - CVE-2026-41676: rust-openssl: `Deriver:derive` and `PkeyCtxRef:derive` can overflow short buffers on     OpenSSL 1.1.1       (bsc#1270138).<br /></span><span><br /></span><span>    Changes for clamav:<br /></span><span><br /></span><span>    - update to 1.5.3:<br /></span><span><br /></span><span>     * Hardened clamscan, clamdscan, and clamonacc quarantine actions against      time-of-check/time-of-use races that could redirect copied, moved, or removed      files under unsafe quarantine directory configurations.<br /></span><span>     * Raised the minimum required CMake version to 3.17 to fix Linux builds with      libcurl v8.21.0 when linking static library dependencies.<br /></span><span>     * Metadata preclass scans now run before the final scan verdict.<br /></span><span>     * ClamOnAcc: Fixed errors when recursively excluded paths are children of an      included path.<br /></span><span>     * ClamOnAcc: Fixed hash bucket list corruption when two watched paths collide      in the same bucket.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326324">https://www.tenable.com/plugins/nessus/326324</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[SUSE SLES15: Multiple Vulnerabilities (SUSE-RU-2026:2815-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326323</link>
            <guid>https://www.tenable.com/plugins/nessus/326323</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326323 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote SUSE host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote SUSE Linux SLES15 host has packages installed that are affected by a vulnerability as referenced in the SUSE- RU-2026:2815-1 advisory.<br /></span><span><br /></span><span>    Security fixes included on this update:<br /></span><span><br /></span><span>    - CVE-2026-2303: go.mongodb.org/mongo-driver: Heap Out-of-Bounds Read in GSSAPI Error Handling     (bsc#1270529).<br /></span><span><br /></span><span>    Other fixes:<br /></span><span><br /></span><span>    - Enable building of SUID starter for SLES 15 (jsc#PED-16347).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326323">https://www.tenable.com/plugins/nessus/326323</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[SUSE SLES15: GraphicsMagick / GraphicsMagick-devel / libGraphicsMagick++-Q16-12 / etc (SUSE-SU-2026:2820-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326322</link>
            <guid>https://www.tenable.com/plugins/nessus/326322</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326322 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote SUSE host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote SUSE Linux SLES15 host has packages installed that are affected by a vulnerability as referenced in the SUSE- SU-2026:2820-1 advisory.<br /></span><span><br /></span><span>    This update for GraphicsMagick fixes the following issue<br /></span><span><br /></span><span>    - CVE-2026-13606: crafted Photo CD (PCD) file can cause memory corruption (bsc#1269891).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326322">https://www.tenable.com/plugins/nessus/326322</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[SUSE SLED15: Multiple Vulnerabilities (SUSE-RU-2026:2816-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326321</link>
            <guid>https://www.tenable.com/plugins/nessus/326321</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326321 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote SUSE host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote SUSE Linux SLED15 / SLED_SAP15 / SLES15 / SLES_SAP15 host has packages installed that are affected by a vulnerability as referenced in the SUSE-RU-2026:2816-1 advisory.<br /></span><span><br /></span><span>    Changes in python-aioresponses:<br /></span><span><br /></span><span>    - Switch to pyproject macros.<br /></span><span><br /></span><span>    - Update to 0.7.8<br /></span><span>      * feat: integer repeat<br /></span><span>      * fix: case repeat=1<br /></span><span>      * docs: elaborate on meaning in documentation of repeat argument<br /></span><span>      * use ClientSession base_url and headers<br /></span><span>      * Refactor usage of session base_url and headers<br /></span><span>      * Add tests for base_url and headers from session<br /></span><span>      * Add __repr__ to RequestMatch<br /></span><span>      * Upgrade yarl to be compatible with Python 3.12<br /></span><span>      * fix: review suggestion<br /></span><span>      * fix: fix test<br /></span><span>      * fix: added condition on py3.8 while supporting ClientSession.base_url<br /></span><span>      * fix: flake8<br /></span><span>    - from version 0.7.7<br /></span><span>      * added passthrough_unmatched flag for aioresponses class<br /></span><span>      * test for passing unmatched requests<br /></span><span>      * add a readme description about passthrough_unmatched flag<br /></span><span>      * feat: support raise_for_status as callable<br /></span><span>      * Add packaging to requirements.txt<br /></span><span>      * Update ``__version__`` to latest released version<br /></span><span>      * Fix compat with aiohttp 3.11.0+<br /></span><span>      * fix: invalid rst code<br /></span><span>    - Add test_pass_through_unmatched_requests to skipped tests<br /></span><span>    - Update Requires from requirements.txt<br /></span><span><br /></span><span>    - Add %{?sle15_python_module_pythons}<br /></span><span><br /></span><span>    - update to 0.7.6:<br /></span><span>      * refactor: Make mock for writer compatible with 3.9.0b1 and         older<br /></span><span>      * fix: aiohttp 3.9 \_writer can't await<br /></span><span><br /></span><span>    - update to 0.7.5:<br /></span><span>      * replaced pkg\_resources with packaging module<br /></span><span>      * Add Python 3.11 support<br /></span><span><br /></span><span>    - update to 0.7.4:<br /></span><span>      * bump py36 to ubuntu 20.04<br /></span><span>      * restore 3.6<br /></span><span>      * Adjust github actions test workflow<br /></span><span>      * Fix python versions in env list<br /></span><span>      * Add documentation for repeat argument<br /></span><span>      * Add compat module<br /></span><span>      * fix long line by adding line breaks<br /></span><span>      * shorten comment to obey line length limit<br /></span><span>      * split typing and assignment to avoid long line<br /></span><span>      * Avoid type confusion by explicitly typing as \`ClientResponse\`<br /></span><span>      * ignore false positive mypy warning when \`url\_or\_pattern\` is a         \`Pattern\`<br /></span><span>      * add \`py.typed\` to MANIFEST.in<br /></span><span>      * add \`py.typed\` file to package data in setup.py<br /></span><span>      * fix version after release was tagged/released<br /></span><span>      * Extend  for arguments<br /></span><span>      * Init assert\_called<br /></span><span>      * Fix type annotations<br /></span><span><br /></span><span>    - update to 0.7.3:<br /></span><span>      * Support binary bodies in responses<br /></span><span>      * fix flake8<br /></span><span>      * move RequestInfo to compat<br /></span><span>      * drop \`.travis.yml\`<br /></span><span>      * basic CI using github actions<br /></span><span>      * (feat) add unit tests<br /></span><span>      * (feat) allow for callbacks to be called before raising of exception<br /></span><span>      * add \`py.typed\` (PEP 561)<br /></span><span>      * Fix setuptools warnings by replacing dashes in keys with underscores<br /></span><span>      * fix version parsing<br /></span><span>      * version 0.7.2<br /></span><span>      * Update aioresponses/core.py<br /></span><span>      * adding catch to ignore ValueError when deepcopy is unsuccessful<br /></span><span><br /></span><span>    - Remove unused patch.<br /></span><span><br /></span><span>    - Update to v0.7.1<br /></span><span>      * Fix compatibility with aiohttp 3.7<br /></span><span>      * remove asynctest from compat.py<br /></span><span>      * Python 3.9 compatibility<br /></span><span>    - drop patch merged upstream<br /></span><span>    - fix python version requirement, require asynctest for python36       again<br /></span><span><br /></span><span>    - Remove no longer necessary aioresponses replace asynctest patch<br /></span><span>    - Add patch to add compatibility with aiohttp 3.7.0<br /></span><span>    - Update to v0.7.0<br /></span><span>      * fixes race condition while removing matchers<br /></span><span>      * drop support for py3.5 and aiohttp2.x<br /></span><span>      * replace asynctest with native Python 3.8 unittest<br /></span><span><br /></span><span>    - replace asynctest with native python 3.8 unittest async test class<br /></span><span>    - drop disable-online-test patch and deselect by pytest call<br /></span><span><br /></span><span>    - update to 0.6.4<br /></span><span>     * Load response cookies from headers<br /></span><span>     * BaseException handling(in Pyhton 3.8 asyncio.CancelError,          asyncio.TimeoutError are subclass of BaseException)<br /></span><span>     * exception can be as class or as object of exception(Exception or Exception())<br /></span><span>     * Change method to GET for redirect after POST request.<br /></span><span>     * set request_info on response rather than a mock<br /></span><span>     * Avoid failure in case one of the request arguments cannot be deep copied<br /></span><span><br /></span><span>    - update to 0.6.2<br /></span><span>      * Save every received request. Even when no response is subscribed.<br /></span><span>      * Ensure that a copy of kwargs is stored in request<br /></span><span>      * remove overly verbose Exception<br /></span><span>      * assert the correct ClientConnectionError<br /></span><span><br /></span><span>    - Update to 0.6.1:<br /></span><span>      * no upstream changelog<br /></span><span><br /></span><span>    - Lower the ddt requirement as it is not really needed<br /></span><span><br /></span><span>    - cleanup deps<br /></span><span><br /></span><span>    - Remove unnecessary build dependencies<br /></span><span>    - Update to v0.6.0<br /></span><span>      * Move internal stuff and CallbackResult class to the core module<br /></span><span>      * Add CallbackResult class for returning responses from callbacks<br /></span><span>      * Expose build_response method<br /></span><span>      * Add Python 3.7 for tox<br /></span><span>      * Add callbacks to provide dynamic responses<br /></span><span><br /></span><span>    - Use noun phrase / full sentences in summary / description.<br /></span><span><br /></span><span>    - Format with spec-cleaner<br /></span><span><br /></span><span>    - Initial build<br /></span><span>      - Version 0.5.0<br /></span><span>    - Include patch to disable online test<br /></span><span><br /></span><span>    Changes in python-google-api-core:<br /></span><span>    - Update to 2.26.0<br /></span><span>      * Add trove classifier for Python 3.14 (#842)<br /></span><span>    - from version 2.25.2<br /></span><span>      * Deprecate credentials_file argument (#841)<br /></span><span>      * Fix async tests and round-off error in test expectations (#837)<br /></span><span><br /></span><span>    - Update to 2.25.1<br /></span><span>      * Allow BackgroundConsumer To Inform Caller of Fatal Exceptions         with Optional Callback (3206c01)<br /></span><span><br /></span><span>    - Update to 2.25.0<br /></span><span>      * Add protobuf runtime version to `x-goog-api-client` header (#812)<br /></span><span>      * Support dynamic retry backoff values (#793)<br /></span><span><br /></span><span>    - Update to 2.24.2<br /></span><span>      * **deps:** Allow protobuf 6.x (#804)<br /></span><span>    - Update Requires from pyproject.toml<br /></span><span><br /></span><span>    - Update to 2.24.1<br /></span><span>      * Memory leak in bidi classes (#770)<br /></span><span>      * Resolve the issue where rpc timeout of 0 is used when timeout expires (#776)<br /></span><span>      * Add warnings regarding consuming externally sourced credentials (#783)<br /></span><span><br /></span><span>    - Update to 2.24.0<br /></span><span>      * Add automatic logging config to support debug logging (#754)<br /></span><span>      * Update recognized logging fields (#766)<br /></span><span><br /></span><span>    - Update to 2.23.0<br /></span><span>      * Migrate to pyproject.toml (#736)<br /></span><span>    - from version 2.22.0<br /></span><span>      * Add support for python 3.13 (#696)<br /></span><span>      * Add type hints to ClientOptions (#735)<br /></span><span>      * Improve `Any` decode error (#712)<br /></span><span>      * Require proto-plus >= 1.25.0 for Python 3.13 (#740)<br /></span><span>      * Switch to unittest.mock from mock (#713)       Drop python google api core no mock patch, merged upstream<br /></span><span><br /></span><span>    - Update to 2.21.0<br /></span><span>      * Add support for asynchronous long running operations (#724)       Drop python google api core no mock patch, merged upstream<br /></span><span><br /></span><span>    - fix requirements<br /></span><span>      * Accepts new protobuf version 5.28 now.<br /></span><span><br /></span><span>    - Remove unneeded BuildRequires.<br /></span><span>    - Refreshed patches:<br /></span><span>      * python google api core no mock patch<br /></span><span><br /></span><span>    - Update to 2.20.0<br /></span><span>      * Add async unsupported paramater exception (#694)<br /></span><span>      * Add support for asynchronous rest streaming (#686)<br /></span><span>      * Add support for creating exceptions from an asynchronous response (#688)<br /></span><span><br /></span><span>    - Update to 2.19.2<br /></span><span>      * Fail gracefully if could not import `rpc_status` module (#680)<br /></span><span>    - Adjust upstream source name in spec file<br /></span><span><br /></span><span>    - update to 2.19.1:<br /></span><span>      * Add support for protobuf 5.x<br /></span><span>      * Ignore unknown fields in rest streaming.<br /></span><span><br /></span><span>    - Update to version 2.19.0<br /></span><span>      * Add google.api_core.version_header (#638)<br /></span><span>    - from version 2.18.0<br /></span><span>      * Add common logic for supporting universe domain (#621)<br /></span><span>      * Add _registered_method to grpc ChannelStub (#614)<br /></span><span>      * **deps:** Require proto-plus >= 1.22.3 (#626)<br /></span><span>    - from version 2.17.1<br /></span><span>      * Resolve issue handling protobuf responses in rest streaming (#604)<br /></span><span>    - from version 2.17.0<br /></span><span>      * Add attempt_direct_path argument to create_channel (#583)<br /></span><span>      * Retry constructors methods support None (#592)<br /></span><span>    - from version 2.16.2<br /></span><span>      * Spelling error `a,out` -> `amount` (#596)<br /></span><span>    - from version 2.16.1<br /></span><span>      * Fix broken import for google.api_core.retry_async.AsyncRetry (#587)<br /></span><span>    - from version 2.16.0<br /></span><span>      * Retry and retry_async support streaming rpcs (#495)<br /></span><span>    - Refresh patches for new version<br /></span><span>    - Update BuildRequires and Requires from setup.py<br /></span><span><br /></span><span><br /></span><span>    Changes in python-google-api-python-client:<br /></span><span>    - Update to version 1.185.0<br /></span><span>      * **accesscontextmanager:** Update the api<br /></span><span>      * Add support for 3.14 (#2668)<br /></span><span>      * **alloydb:** Update the api<br /></span><span>      * **alloydb:** Update the api<br /></span><span>      * **apigateway:** Update the api<br /></span><span>      * **apigee:** Update the api<br /></span><span>      * **apim:** Update the api<br /></span><span>      * **appengine:** Update the api<br /></span><span>      * **appengine:** Update the api<br /></span><span>      * **apphub:** Update the api<br /></span><span>      * **assuredworkloads:** Update the api<br /></span><span>      * **backupdr:** Update the api<br /></span><span>      * **batch:** Update the api<br /></span><span>      * **beyondcorp:** Update the api<br /></span><span>      * **bigquery:** Update the api<br /></span><span>      * **bigtableadmin:** Update the api<br /></span><span>      * **certificatemanager:** Update the api<br /></span><span>      * **chromemanagement:** Update the api<br /></span><span>      * **cloudchannel:** Update the api<br /></span><span>      * **clouddeploy:** Update the api<br /></span><span>      * **cloudfunctions:** Update the api<br /></span><span>      * **cloudscheduler:** Update the api<br /></span><span>      * **cloudshell:** Update the api<br /></span><span>      * **composer:** Update the api<br /></span><span>      * **compute:** Update the api<br /></span><span>      * **config:** Update the api<br /></span><span>      * **connectors:** Update the api<br /></span><span>      * **contactcenteraiplatform:** Update the api<br /></span><span>      * **contactcenterinsights:** Update the api<br /></span><span>      * **containeranalysis:** Update the api<br /></span><span>      * **container:** Update the api<br /></span><span>      * **datacatalog:** Update the api<br /></span><span>      * **dataform:** Update the api<br /></span><span>      * **datalineage:** Update the api<br /></span><span>      * **dataplex:** Update the api<br /></span><span>      * **dataproc:** Update the api<br /></span><span>      * **datastore:** Update the api<br /></span><span>      * **developerconnect:** Update the api<br /></span><span>      * **dialogflow:** Update the api<br /></span><span>      * **dialogflow:** Update the api<br /></span><span>      * **discoveryengine:** Update the api<br /></span><span>      * **discoveryengine:** Update the api<br /></span><span>      * **dlp:** Update the api<br /></span><span>      * **docs:** Update the api<br /></span><span>      * **documentai:** Update the api<br /></span><span>      * **documentai:** Update the api<br /></span><span>      * **eventarc:** Update the api<br /></span><span>      * **file:** Update the api<br /></span><span>      * **firebasehosting:** Update the api<br /></span><span>      * **firebaseml:** Update the api<br /></span><span>      * **firebaseml:** Update the api<br /></span><span>      * **firestore:** Update the api<br /></span><span>      * **gamesConfiguration:** Update the api<br /></span><span>      * **gamesManagement:** Update the api<br /></span><span>      * **games:** Update the api<br /></span><span>      * **gkebackup:** Update the api<br /></span><span>      * **gkehub:** Update the api<br /></span><span>      * **gkehub:** Update the api<br /></span><span>      * **healthcare:** Update the api<br /></span><span>      * **iam:** Update the api<br /></span><span>      * **iam:** Update the api<br /></span><span>      * **looker:** Update the api<br /></span><span>      * **memcache:** Update the api<br /></span><span>      * **merchantapi:** Update the api<br /></span><span>      * **metastore:** Update the api<br /></span><span>      * **migrationcenter:** Update the api<br /></span><span>      * **monitoring:** Update the api<br /></span><span>      * **netapp:** Update the api<br /></span><span>      * **networkconnectivity:** Update the api<br /></span><span>      * **networkmanagement:** Update the api<br /></span><span>      * **networksecurity:** Update the api<br /></span><span>      * **networksecurity:** Update the api<br /></span><span>      * **observability:** Update the api<br /></span><span>      * **ondemandscanning:** Update the api<br /></span><span>      * **osconfig:** Update the api<br /></span><span>      * **parallelstore:** Update the api<br /></span><span>      * **paymentsresellersubscription:** Update the api<br /></span><span>      * **policysimulator:** Update the api<br /></span><span>      * **privateca:** Update the api<br /></span><span>      * **pubsublite:** Update the api<br /></span><span>      * **redis:** Update the api<br /></span><span>      * **redis:** Update the api<br /></span><span>      * **retail:** Update the api<br /></span><span>      * **run:** Update the api<br /></span><span>      * **securitycenter:** Update the api<br /></span><span>      * **servicemanagement:** Update the api<br /></span><span>      * **servicenetworking:** Update the api<br /></span><span>      * **spanner:** Update the api<br /></span><span>      * **speech:** Update the api<br /></span><span>      * **sqladmin:** Update the api<br /></span><span>      * **storagebatchoperations:** Update the api<br /></span><span>      * **texttospeech:** Update the api<br /></span><span>      * **tpu:** Update the api<br /></span><span>      * **travelimpactmodel:** Update the api<br /></span><span>      * **vision:** Update the api<br /></span><span>      * **vmmigration:** Update the api<br /></span><span>      * **webrisk:** Update the api<br /></span><span>      * **workloadmanager:** Update the api<br /></span><span>      * **workloadmanager:** Update the api<br /></span><span>      * **workstations:** Update the api<br /></span><span>      * **chat:** Update the api<br /></span><span>      * **secretmanager:** Update the api<br /></span><span>      * **secretmanager:** Update the api<br /></span><span>      * **workspaceevents:** Update the api<br /></span><span><br /></span><span>    - Update to version 1.184.0<br /></span><span>      * **aiplatform:** Update the api<br /></span><span>      * **alloydb:** Update the api<br /></span><span>      * **androidmanagement:** Update the api<br /></span><span>      * **backupdr:** Update the api<br /></span><span>      * **beyondcorp:** Update the api<br /></span><span>      * **bigquery:** Update the api<br /></span><span>      * **certificatemanager:** Update the api<br /></span><span>      * **checks:** Update the api<br /></span><span>      * **cloudidentity:** Update the api<br /></span><span>      * **cloudscheduler:** Update the api<br /></span><span>      * **compute:** Update the api<br /></span><span>      * **contactcenterinsights:** Update the api<br /></span><span>      * **container:** Update the api<br /></span><span>      * **dialogflow:** Update the api<br /></span><span>      * **discoveryengine:** Update the api<br /></span><span>      * **dlp:** Update the api<br /></span><span>      * **docs:** Update the api<br /></span><span>      * **documentai:** Update the api<br /></span><span>      * **firebaseappdistribution:** Update the api<br /></span><span>      * **firebaseapphosting:** Update the api<br /></span><span>      * **firestore:** Update the api<br /></span><span>      * **integrations:** Update the api<br /></span><span>      * **migrationcenter:** Update the api<br /></span><span>      * **oracledatabase:** Update the api<br /></span><span>      * **oslogin:** Update the api<br /></span><span>      * **places:** Update the api<br /></span><span>      * **recaptchaenterprise:** Update the api<br /></span><span>      * **saasservicemgmt:** Update the api<br /></span><span>      * **serviceconsumermanagement:** Update the api<br /></span><span>      * **servicemanagement:** Update the api<br /></span><span>      * **serviceusage:** Update the api<br /></span><span>      * **sqladmin:** Update the api<br /></span><span>      * **storage:** Update the api<br /></span><span>      * **texttospeech:** Update the api<br /></span><span>      * **tpu:** Update the api<br /></span><span>      * **webfonts:** Update the api<br /></span><span>      * **dataflow:** Update the api<br /></span><span>      * **datastore:** Update the api<br /></span><span>      * **iamcredentials:** Update the api<br /></span><span>      * **logging:** Update the api<br /></span><span>      * **parametermanager:** Update the api<br /></span><span><br /></span><span>    - Update to version 1.183.0<br /></span><span>      * **aiplatform:** Update the api<br /></span><span>      * **androidmanagement:** Update the api<br /></span><span>      * **bigquery:** Update the api<br /></span><span>      * **bigtableadmin:** Update the api<br /></span><span>      * **chat:** Update the api<br /></span><span>      * **cloudcommerceprocurement:** Update the api<br /></span><span>      * **cloudidentity:** Update the api<br /></span><span>      * **cloudkms:** Update the api<br /></span><span>      * **compute:** Update the api<br /></span><span>      * **connectors:** Update the api<br /></span><span>      * **dataform:** Update the api<br /></span><span>      * **discoveryengine:** Update the api<br /></span><span>      * **dlp:** Update the api<br /></span><span>      * **documentai:** Update the api<br /></span><span>      * **domains:** Update the api<br /></span><span>      * **eventarc:** Update the api<br /></span><span>      * **firebaseappdistribution:** Update the api<br /></span><span>      * **migrationcenter:** Update the api<br /></span><span>      * **netapp:** Update the api<br /></span><span>      * **networkconnectivity:** Update the api<br /></span><span>      * **networksecurity:** Update the api<br /></span><span>      * **oracledatabase:** Update the api<br /></span><span>      * **retail:** Update the api<br /></span><span>      * **sqladmin:** Update the api<br /></span><span>      * **workloadmanager:** Update the api<br /></span><span><br /></span><span>    - Update to version 1.182.0<br /></span><span>      * **aiplatform:** Update the api<br /></span><span>      * **alloydb:** Update the api<br /></span><span>      * **analyticshub:** Update the api<br /></span><span>      * **androidpublisher:** Update the api<br /></span><span>      * **apigee:** Update the api<br /></span><span>      * **apihub:** Update the api<br /></span><span>      * **backupdr:** Update the api<br /></span><span>      * **cloudcommerceprocurement:** Update the api<br /></span><span>      * **compute:** Update the api<br /></span><span>      * **connectors:** Update the api<br /></span><span>      * **containeranalysis:** Update the api<br /></span><span>      * **datamigration:** Update the api<br /></span><span>      * **datastream:** Update the api<br /></span><span>      * **dfareporting:** Update the api<br /></span><span>      * **discoveryengine:** Update the api<br /></span><span>      * **discoveryengine:** Update the api<br /></span><span>      * **drive:** Update the api<br /></span><span>      * **file:** Update the api<br /></span><span>      * **firebaseappcheck:** Update the api<br /></span><span>      * **firebaseappdistribution:** Update the api<br /></span><span>      * **firebaseapphosting:** Update the api<br /></span><span>      * **firebasedataconnect:** Update the api<br /></span><span>      * **firebaseml:** Update the api<br /></span><span>      * **gkehub:** Update the api<br /></span><span>      * **gkeonprem:** Update the api<br /></span><span>      * **healthcare:** Update the api<br /></span><span>      * **managedkafka:** Update the api<br /></span><span>      * **merchantapi:** Update the api<br /></span><span>      * **migrationcenter:** Update the api<br /></span><span>      * **netapp:** Update the api<br /></span><span>      * **netapp:** Update the api<br /></span><span>      * **networkmanagement:** Update the api<br /></span><span>      * **networkmanagement:** Update the api<br /></span><span>      * **oracledatabase:** Update the api<br /></span><span>      * **oracledatabase:** Update the api<br /></span><span>      * **privateca:** Update the api<br /></span><span>      * **redis:** Update the api<br /></span><span>      * **redis:** Update the api<br /></span><span>      * **securitycenter:** Update the api<br /></span><span>      * **servicecontrol:** Update the api<br /></span><span>      * **texttospeech:** Update the api<br /></span><span>      * **tpu:** Update the api<br /></span><span>      * **vmmigration:** Update the api<br /></span><span>      * **walletobjects:** Update the api<br /></span><span>      * **datastore:** Update the api<br /></span><span>      * **firestore:** Update the api<br /></span><span>      * **logging:** Update the api<br /></span><span>      * **run:** Update the api<br /></span><span>    - from version 2.181.0<br /></span><span>      * **aiplatform:** Update the api<br /></span><span>      * **androidmanagement:** Update the api<br /></span><span>      * **backupdr:** Update the api<br /></span><span>      * **bigquery:** Update the api<br /></span><span>      * **contactcenteraiplatform:** Update the api<br /></span><span>      * **contactcenterinsights:** Update the api<br /></span><span>      * **container:** Update the api<br /></span><span>      * **dataplex:** Update the api<br /></span><span>      * **deploymentmanager:** Update the api<br /></span><span>      * **dfareporting:** Update the api<br /></span><span>      * **discoveryengine:** Update the api<br /></span><span>      * **file:** Update the api<br /></span><span>      * **firebaseappdistribution:** Update the api<br /></span><span>      * **logging:** Update the api<br /></span><span>      * **looker:** Update the api<br /></span><span>      * **memcache:** Update the api<br /></span><span>      * **merchantapi:** Update the api<br /></span><span>      * **networkconnectivity:** Update the api<br /></span><span>      * **networksecurity:** Update the api<br /></span><span>      * **observability:** Update the api<br /></span><span>      * **playintegrity:** Update the api<br /></span><span>      * **redis:** Update the api<br /></span><span>      * **sqladmin:** Update the api<br /></span><span>      * **vmmigration:** Update the api<br /></span><span>      * **workloadmanager:** Update the api<br /></span><span>      * **dlp:** Update the api<br /></span><span>    - from version 2.180.0<br /></span><span>      * **aiplatform:** Update the api<br /></span><span>      * **alloydb:** Update the api<br /></span><span>      * **apigee:** Update the api<br /></span><span>      * **backupdr:** Update the api<br /></span><span>      * **bigquerydatatransfer:** Update the api<br /></span><span>      * **bigtableadmin:** Update the api<br /></span><span>      * **chat:** Update the api<br /></span><span>      * **chromemanagement:** Update the api<br /></span><span>      * **cloudchannel:** Update the api<br /></span><span>      * **compute:** Update the api<br /></span><span>      * **compute:** Update the api<br /></span><span>      * **config:** Update the api<br /></span><span>      * **connectors:** Update the api<br /></span><span>      * **contactcenterinsights:** Update the api<br /></span><span>      * **contactcenterinsights:** Update the api<br /></span><span>      * **containeranalysis:** Update the api<br /></span><span>      * **container:** Update the api<br /></span><span>      * **container:** Update the api<br /></span><span>      * **dataform:** Update the api<br /></span><span>      * **datamigration:** Update the api<br /></span><span>      * **dataplex:** Update the api<br /></span><span>      * **dataproc:** Update the api<br /></span><span>      * **datastore:** Update the api<br /></span><span>      * **dialogflow:** Update the api<br /></span><span>      * **discoveryengine:** Update the api<br /></span><span>      * **discoveryengine:** Update the api<br /></span><span>      * **displayvideo:** Update the api<br /></span><span>      * **dlp:** Update the api<br /></span><span>      * **dlp:** Update the api<br /></span><span>      * **documentai:** Update the api<br /></span><span>      * **documentai:** Update the api<br /></span><span>      * **file:** Update the api<br /></span><span>      * **firebaseappdistribution:** Update the api<br /></span><span>      * **firebaseappdistribution:** Update the api<br /></span><span>      * **firebaseml:** Update the api<br /></span><span>      * **firestore:** Update the api<br /></span><span>      * **healthcare:** Update the api<br /></span><span>      * **iam:** Update the api<br /></span><span>      * **manufacturers:** Update the api<br /></span><span>      * **netapp:** Update the api<br /></span><span>      * **netapp:** Update the api<br /></span><span>      * **networkconnectivity:** Update the api<br /></span><span>      * **networkmanagement:** Update the api<br /></span><span>      * **ondemandscanning:** Update the api<br /></span><span>      * **playintegrity:** Update the api<br /></span><span>      * **redis:** Update the api<br /></span><span>      * **redis:** Update the api<br /></span><span>      * **retail:** Update the api<br /></span><span>      * **run:** Update the api<br /></span><span>      * **run:** Update the api<br /></span><span>      * **securitycenter:** Update the api<br /></span><span>      * **sqladmin:** Update the api<br /></span><span>      * **storage:** Update the api<br /></span><span>      * **versionhistory:** Update the api<br /></span><span>      * **vmwareengine:** Update the api<br /></span><span>      * **workloadmanager:** Update the api<br /></span><span>      * **admin:** Update the api<br /></span><span>      * **admin:** Update the api<br /></span><span>      * **pubsub:** Update the api<br /></span><span><br /></span><span>    - Update to version 2.179.0<br /></span><span>      * **admin:** Update the api<br /></span><span>      * **aiplatform:** Update the api<br /></span><span>      * **alloydb:** Update the api<br /></span><span>      * **analyticshub:** Update the api<br /></span><span>      * **androidpublisher:** Update the api<br /></span><span>      * **apigee:** Update the api<br /></span><span>      * **backupdr:** Update the api<br /></span><span>      * **bigtableadmin:** Update the api<br /></span><span>      * **cloudbuild:** Update the api<br /></span><span>      * **cloudidentity:** Update the api<br /></span><span>      * **cloudkms:** Update the api<br /></span><span>      * **cloudsupport:** Update the api<br /></span><span>      * **compute:** Update the api<br /></span><span>      * **contactcenterinsights:** Update the api<br /></span><span>      * **dialogflow:** Update the api<br /></span><span>      * **discoveryengine:** Update the api<br /></span><span>      * **displayvideo:** Update the api<br /></span><span>      * **file:** Update the api<br /></span><span>      * **firebaseappdistribution:** Update the api<br /></span><span>      * **firebasedataconnect:** Update the api<br /></span><span>      * **firebaseml:** Update the api<br /></span><span>      * **managedkafka:** Update the api<br /></span><span>      * **merchantapi:** Update the api<br /></span><span>      * **mybusinessverifications:** Update the api<br /></span><span>      * **networkservices:** Update the api<br /></span><span>      * **paymentsresellersubscription:** Update the api<br /></span><span>      * **redis:** Update the api<br /></span><span>      * **run:** Update the api<br /></span><span>      * **texttospeech:** Update the api<br /></span><span>      * **walletobjects:** Update the api<br /></span><span>    - from version 2.178.0<br /></span><span>      * **aiplatform:** Update the api<br /></span><span>      * **aiplatform:** Update the api<br /></span><span>      * **alloydb:** Update the api<br /></span><span>      * **analyticsadmin:** Update the api<br /></span><span>      * **androidenterprise:** Update the api<br /></span><span>      * **androidpublisher:** Update the api<br /></span><span>      * **apihub:** Update the api<br /></span><span>      * **backupdr:** Update the api<br /></span><span>      * **bigquery:** Update the api<br /></span><span>      * **bigquery:** Update the api<br /></span><span>      * **bigtableadmin:** Update the api<br /></span><span>      * **chat:** Update the api<br /></span><span>      * **chat:** Update the api<br /></span><span>      * **chromemanagement:** Update the api<br /></span><span>      * **cloudbuild:** Update the api<br /></span><span>      * **compute:** Update the api<br /></span><span>      * **connectors:** Update the api<br /></span><span>      * **contactcenterinsights:** Update the api<br /></span><span>      * **container:** Update the api<br /></span><span>      * **dataplex:** Update the api<br /></span><span>      * **datastream:** Update the api<br /></span><span>      * **dfareporting:** Update the api<br /></span><span>      * **discoveryengine:** Update the api<br /></span><span>      * **discoveryengine:** Update the api<br /></span><span>      * **displayvideo:** Update the api<br /></span><span>      * **drive:** Update the api<br /></span><span>      * **file:** Update the api<br /></span><span>      * **firebaseml:** Update the api<br /></span><span>      * **firebaseml:** Update the api<br /></span><span>      * **gkebackup:** Update the api<br /></span><span>      * **iam:** Update the api<br /></span><span>      * **integrations:** Update the api<br /></span><span>      * **looker:** Update the api<br /></span><span>      * **merchantapi:** Update the api<br /></span><span>      * **merchantapi:** Update the api<br /></span><span>      * **mybusinessbusinessinformation:** Update the api<br /></span><span>      * **mybusinessverifications:** Update the api<br /></span><span>      * **networkmanagement:** Update the api<br /></span><span>      * **networkmanagement:** Update the api<br /></span><span>      * **networksecurity:** Update the api<br /></span><span>      * **osconfig:** Update the api<br /></span><span>      * **redis:** Update the api<br /></span><span>      * **redis:** Update the api<br /></span><span>      * **retail:** Update the api<br /></span><span>      * **retail:** Update the api<br /></span><span>      * **searchads360:** Update the api<br /></span><span>      * **securitycenter:** Update the api<br /></span><span>      * **serviceconsumermanagement:** Update the api<br /></span><span>      * **servicenetworking:** Update the api<br /></span><span>      * **serviceusage:** Update the api<br /></span><span>      * **storage:** Update the api<br /></span><span>      * **transcoder:** Update the api<br /></span><span>      * **videointelligence:** Update the api<br /></span><span>      * **workloadmanager:** Update the api<br /></span><span>      * **workloadmanager:** Update the api<br /></span><span>      * **workstations:** Update the api<br /></span><span>      * **iamcredentials:** Update the api<br /></span><span>      * **migrationcenter:** Update the api<br /></span><span><br /></span><span>    - Update to version 1.177.0<br /></span><span>      * **admin:** Update the api<br /></span><span>      * **adsenseplatform:** Update the api<br /></span><span>      * **aiplatform:** Update the api<br /></span><span>      * **analyticsadmin:** Update the api<br /></span><span>      * **androidpublisher:** Update the api<br /></span><span>      * **apphub:** Update the api<br /></span><span>      * **backupdr:** Update the api<br /></span><span>      * **beyondcorp:** Update the api<br /></span><span>      * **chat:** Update the api<br /></span><span>      * **chromemanagement:** Update the api<br /></span><span>      * **civicinfo:** Update the api<br /></span><span>      * **cloudasset:** Update the api<br /></span><span>      * **cloudbilling:** Update the api<br /></span><span>      * **compute:** Update the api<br /></span><span>      * **compute:** Update the api<br /></span><span>      * **connectors:** Update the api<br /></span><span>      * **contactcenteraiplatform:** Update the api<br /></span><span>      * **contactcenterinsights:** Update the api<br /></span><span>      * **container:** Update the api<br /></span><span>      * **dataflow:** Update the api<br /></span><span>      * **dataform:** Update the api<br /></span><span>      * **dataplex:** Update the api<br /></span><span>      * **datastream:** Update the api<br /></span><span>      * **dialogflow:** Update the api<br /></span><span>      * **discoveryengine:** Update the api<br /></span><span>      * **discoveryengine:** Update the api<br /></span><span>      * **displayvideo:** Update the api<br /></span><span>      * **dlp:** Update the api<br /></span><span>      * **documentai:** Update the api<br /></span><span>      * **firebaseapphosting:** Update the api<br /></span><span>      * **firebasedataconnect:** Update the api<br /></span><span>      * **firebaseml:** Update the api<br /></span><span>      * **gkehub:** Update the api<br /></span><span>      * **healthcare:** Update the api<br /></span><span>      * **managedkafka:** Update the api<br /></span><span>      * **merchantapi:** Update the api<br /></span><span>      * **merchantapi:** Update the api<br /></span><span>      * **migrationcenter:** Update the api<br /></span><span>      * **netapp:** Update the api<br /></span><span>      * **networkmanagement:** Update the api<br /></span><span>      * **networksecurity:** Update the api<br /></span><span>      * **notebooks:** Update the api<br /></span><span>      * **oracledatabase:** Update the api<br /></span><span>      * **recaptchaenterprise:** Update the api<br /></span><span>      * **redis:** Update the api<br /></span><span>      * **retail:** Update the api<br /></span><span>      * **run:** Update the api<br /></span><span>      * **searchconsole:** Update the api<br /></span><span>      * **servicenetworking:** Update the api<br /></span><span>      * **transcoder:** Update the api<br /></span><span>      * **videointelligence:** Update the api<br /></span><span>      * **vmmigration:** Update the api<br /></span><span>      * **workloadmanager:** Update the api<br /></span><span>      * **youtube:** Update the api<br /></span><span>      * **artifactregistry:** Update the api<br /></span><span>      * **datalineage:** Update the api<br /></span><span>      * **datalineage:** Update the api<br /></span><span>      * **dataplex:** Update the api<br /></span><span>      * **dataportability:** Update the api<br /></span><span>      * **logging:** Update the api<br /></span><span>      * **parametermanager:** Update the api<br /></span><span>      * **secretmanager:** Update the api<br /></span><span>    - from version 1.176.0<br /></span><span>      * **adsenseplatform:** Update the api<br /></span><span>      * **aiplatform:** Update the api<br /></span><span>      * **androidpublisher:** Update the api<br /></span><span>      * **apihub:** Update the api<br /></span><span>      * **backupdr:** Update the api<br /></span><span>      * **datamigration:** Update the api<br /></span><span>      * **dataproc:** Update the api<br /></span><span>      * **datastream:** Update the api<br /></span><span>      * **dialogflow:** Update the api<br /></span><span>      * **discoveryengine:** Update the api<br /></span><span>      * **dlp:** Update the api<br /></span><span>      * **drive:** Update the api<br /></span><span>      * **iam:** Update the api<br /></span><span>      * **merchantapi:** Update the api<br /></span><span>      * **policysimulator:** Update the api<br /></span><span>      * **redis:** Update the api<br /></span><span>      * **retail:** Update the api<br /></span><span>      * **securitycenter:** Update the api<br /></span><span>      * **spanner:** Update the api<br /></span><span>      * **storage:** Update the api<br /></span><span>      * **workstations:** Update the api<br /></span><span>      * **apigee:** Update the api<br /></span><span>      * **composer:** Update the api<br /></span><span>      * **secretmanager:** Update the api<br /></span><span>    - from version 1.175.0<br /></span><span>      * **analyticsadmin:** Update the api<br /></span><span>      * **androidmanagement:** Update the api<br /></span><span>      * **apigee:** Update the api<br /></span><span>      * **beyondcorp:** Update the api<br /></span><span>      * **bigqueryreservation:** Update the api<br /></span><span>      * **bigquery:** Update the api<br /></span><span>      * **bigtableadmin:** Update the api<br /></span><span>      * **compute:** Update the api<br /></span><span>      * **contactcenterinsights:** Update the api<br /></span><span>      * **container:** Update the api<br /></span><span>      * **datalineage:** Update the api<br /></span><span>      * **dialogflow ...<br /></span><span><br /></span><span>  Please note that the description has been truncated due to length. Please refer to vendor advisory for the full description.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326321">https://www.tenable.com/plugins/nessus/326321</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[SUSE SLED15 / SLES15 Security Update : rustup (SUSE-SU-2026:2832-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326320</link>
            <guid>https://www.tenable.com/plugins/nessus/326320</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326320 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote SUSE host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote SUSE Linux SLED15 / SLED_SAP15 / SLES15 / SLES_SAP15 host has a package installed that is affected by multiple vulnerabilities as referenced in the SUSE-SU-2026:2832-1 advisory.<br /></span><span><br /></span><span>    This update for rustup fixes the following issues<br /></span><span><br /></span><span>    Security issues:<br /></span><span><br /></span><span>    - CVE-2024-12224: idna: idna accepts Punycode labels that do not produce any non-ASCII when decoded     (bsc#1243862).<br /></span><span>    - CVE-2025-58160: tracing-subscriber: Tracing log pollution (bsc#1249008).<br /></span><span>    - CVE-2026-41676: openssl: `Deriver:derive` and `PkeyCtxRef:derive` can overflow short buffers on OpenSSL     1.1.1       (bsc#1270186).<br /></span><span>    - CVE-2026-41677: openssl: out-of-bounds read in PEM password callback when returning an oversized length     in rust-       openssl crate (bsc#1270619).<br /></span><span>    - CVE-2026-41678: openssl: incorrect bounds assertion in aes key wrap in rust-openssl crate (bsc#1270644).<br /></span><span>    - CVE-2026-41681: openssl: MdCtxRef::digest_final() writes past caller buffer with no length check in     rust-openssl crate       (bsc#1270795).<br /></span><span>    - CVE-2026-41898: openssl: unchecked callback-returned length in PSK and cookie generate trampolines can     leak adjacent       memory in rust-openssl crate (bsc#1270870).<br /></span><span>    - CVE-2026-42327: openssl: arbitrary code execution via specially crafted certificate in rust-openssl     crate       (bsc#1270521).<br /></span><span>    - CVE-2026-44662: openssl: heap buffer overflow when encrypting with AES key-wrap-with-padding in rust-     openssl crate       (bsc#1270874).<br /></span><span>    - CVE-2026-45784: openssl: out-of-bounds write in `CipherCtxRef::cipher_update_inplace` for AES-KW-PAD     ciphers in rust-       openssl crate (bsc#1270989).<br /></span><span>    - rust-shlex: Multiple issues involving quote API ( RUSTSEC-2024-0006, GHSA-r7qv-8r2h-pg27) (bsc#1230032).<br /></span><span><br /></span><span>    Non security issue:<br /></span><span><br /></span><span>    - devel:languages:rust/rustup: Missing symlink for rust-analyzer (bsc#1203257).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected rustup package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326320">https://www.tenable.com/plugins/nessus/326320</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[SUSE SLED15: MozillaFirefox / MozillaFirefox-devel / etc (SUSE-SU-2026:2814-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326319</link>
            <guid>https://www.tenable.com/plugins/nessus/326319</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326319 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote SUSE host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote SUSE Linux SLED15 / SLED_SAP15 / SLES15 / SLES_SAP15 host has packages installed that are affected by multiple vulnerabilities as referenced in the SUSE-SU-2026:2814-1 advisory.<br /></span><span><br /></span><span>    - Removed obsolete mozilla-nss-certs and recommends p11-kit-nss-trust (bsc#1269226)<br /></span><span><br /></span><span>    Update to Firefox 140.12.0 ESR (MFSA 2026-58, bsc#1268071):<br /></span><span><br /></span><span>    - CVE-2026-12289: Privilege escalation in the Graphics: WebRender component.<br /></span><span>    - CVE-2026-12290: Memory safety bug fixed in Firefox ESR 140.12.<br /></span><span>    - CVE-2026-12291: Use-after-free in the Networking: HTTP component.<br /></span><span>    - CVE-2026-12292: Incorrect boundary conditions in the Web Audio component.<br /></span><span>    - CVE-2026-12294: Sandbox escape in the DOM: Workers component.<br /></span><span>    - CVE-2026-12295: Sandbox escape in the DOM: Navigation component.<br /></span><span>    - CVE-2026-12296: Sandbox escape in the Security: Process Sandboxing component.<br /></span><span>    - CVE-2026-12297: Sandbox escape due to incorrect boundary conditions in the Networking component.<br /></span><span>    - CVE-2026-12298: Memory safety bug fixed in Firefox ESR 140.12.<br /></span><span>    - CVE-2026-12299: JIT miscompilation in the DOM: Core & HTML component.<br /></span><span>    - CVE-2026-12302: Mitigation bypass in the DOM: Security component.<br /></span><span>    - CVE-2026-12304: Same-origin policy bypass in the Networking: Cookies component.<br /></span><span>    - CVE-2026-12305: Memory safety bug fixed in Firefox ESR 140.12.<br /></span><span>    - CVE-2026-12306: Memory safety bug fixed in Firefox ESR 140.12.<br /></span><span>    - CVE-2026-12307: Memory safety bug fixed in Firefox ESR 140.12.<br /></span><span>    - CVE-2026-12308: Memory safety bug fixed in Firefox ESR 140.12.<br /></span><span>    - CVE-2026-12309: Memory safety bug fixed in Firefox ESR 140.12.<br /></span><span>    - CVE-2026-12310: Memory safety bug fixed in Firefox ESR 140.12.<br /></span><span>    - CVE-2026-12311: Information disclosure, sandbox escape in the Security: Process Sandboxing component.<br /></span><span>    - CVE-2026-12312: Memory safety bug fixed in Firefox ESR 140.12.<br /></span><span>    - CVE-2026-12313: Information disclosure, sandbox escape in the Security: Process Sandboxing component.<br /></span><span>    - CVE-2026-12314: Memory safety bug fixed in Firefox ESR 140.12.<br /></span><span>    - CVE-2026-12315: Mitigation bypass in the DOM: Security component.<br /></span><span>    - CVE-2026-12324: Incorrect boundary conditions in the Graphics: CanvasWebGL component.<br /></span><span>    - CVE-2026-12325: Denial-of-service in the Graphics: ImageLib component.<br /></span><span>    - CVE-2026-12327: Memory safety bugs fixed in Firefox ESR 140.12, Thunderbird ESR 140.12, Firefox 152 and     Thunderbird       152.<br /></span><span>    - CVE-2026-12328: Memory safety bugs fixed in Firefox ESR 115.37, Firefox ESR 140.12, Thunderbird ESR     140.12, Firefox       152 and Thunderbird 152.<br /></span><span>    - CVE-2026-12329: Memory safety bug fixed in Firefox ESR 140.12.<br /></span><span>    - CVE-2026-12330: Incorrect boundary conditions in the Internationalization component.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected MozillaFirefox, MozillaFirefox-devel, MozillaFirefox-translations-common and / or MozillaFirefox- translations-other packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326319">https://www.tenable.com/plugins/nessus/326319</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[SUSE SLES15 Security Update : python-Django (SUSE-SU-2026:2819-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326318</link>
            <guid>https://www.tenable.com/plugins/nessus/326318</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326318 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote SUSE host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote SUSE Linux SLES15 host has a package installed that is affected by multiple vulnerabilities as referenced in the SUSE-SU-2026:2819-1 advisory.<br /></span><span><br /></span><span>    This update for python-Django fixes the following issues<br /></span><span><br /></span><span>    - CVE-2026-48588: potential exposure of private data via cached `Set-Cookie` response (bsc#1271029).<br /></span><span>    - CVE-2026-53877: information disclosure via 32-byte heap buffer overread in `GDALRaster` (bsc#1271030).<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected python311-Django package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326318">https://www.tenable.com/plugins/nessus/326318</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[SUSE SLES15: clamav / clamav-devel / clamav-docs-html / clamav-milter / etc (SUSE-SU-2026:2834-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326317</link>
            <guid>https://www.tenable.com/plugins/nessus/326317</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326317 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote SUSE host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote SUSE Linux SLES15 / SLES_SAP15 host has packages installed that are affected by multiple vulnerabilities as referenced in the SUSE-SU-2026:2834-1 advisory.<br /></span><span><br /></span><span>    This update for clamav fixes the following issues<br /></span><span><br /></span><span>    - CVE-2026-20213: PE file format parser could allow an unauthenticated, remote attacker to cause a denial     of service       (bsc#1270107).<br /></span><span>    - CVE-2026-20214: FSG file format parser could allow an unauthenticated, remote attacker to cause a denial     of service       (bsc#1270085).<br /></span><span>    - CVE-2026-20215: 7z file format parser could allow an unauthenticated, remote attacker to cause a denial     of service       (bsc#1270088).<br /></span><span>    - CVE-2026-20216: InstallShield file format parser could allow an unauthenticated, remote attacker to     cause a denial of       service (bsc#1270089).<br /></span><span>    - CVE-2026-20217: PESpin file format parser could allow an unauthenticated, remote attacker to cause a     denial of service       (bsc#1270091).<br /></span><span>    - CVE-2026-20243: ALZ file format parser could allow an unauthenticated, remote attacker to cause a denial     of service       (bsc#1270092).<br /></span><span>    - CVE-2026-20244: DMG file format parser could allow an unauthenticated, remote attacker to cause a denial     of service       on 32-bit platforms only (bsc#1270106).<br /></span><span>    - CVE-2026-41676: rust-openssl: `Deriver:derive` and `PkeyCtxRef:derive` can overflow short buffers on     OpenSSL 1.1.1       (bsc#1270138).<br /></span><span><br /></span><span>    Changes for clamav:<br /></span><span><br /></span><span>    - Update to 1.5.3:<br /></span><span><br /></span><span>      * Hardened clamscan, clamdscan, and clamonacc quarantine actions against         time-of-check/time-of-use races that could redirect copied, moved, or removed         files under unsafe quarantine directory configurations.<br /></span><span>      * Raised the minimum required CMake version to 3.17 to fix Linux builds with         libcurl v8.21.0 when linking static library dependencies.<br /></span><span>      * Metadata preclass scans now run before the final scan verdict.<br /></span><span>      * ClamOnAcc: Fixed errors when recursively excluded paths are children of an         included path.<br /></span><span>      * ClamOnAcc: Fixed hash bucket list corruption when two watched paths collide         in the same bucket.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the SUSE security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326317">https://www.tenable.com/plugins/nessus/326317</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2026-55170]]></title>
            <link>https://www.tenable.com/plugins/nessus/326316</link>
            <guid>https://www.tenable.com/plugins/nessus/326316</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326316 with Low Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - OpenFGA is an authorization/permission engine built for developers. Prior to 1.18.0, when MySQL is being     used as the datastore and authorization decisions rely on case-sensitive user strings, the tuple,     changelog, and authorization_model identifier columns can compare case-distinct values such as user:Alice     and user:alice as equivalent, causing two distinct check requests to return the same response. This issue     is fixed in 1.18.0. (CVE-2026-55170)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326316">https://www.tenable.com/plugins/nessus/326316</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2026-45309]]></title>
            <link>https://www.tenable.com/plugins/nessus/326315</link>
            <guid>https://www.tenable.com/plugins/nessus/326315</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326315 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - Debian Linux - python-asyncssh - None  Ubuntu Linux - [Unknown description] (CVE-2026-45309)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326315">https://www.tenable.com/plugins/nessus/326315</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[AlmaLinux 9 : gstreamer1-plugins-good (ALSA-2026:37129)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326314</link>
            <guid>https://www.tenable.com/plugins/nessus/326314</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326314 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote AlmaLinux host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote AlmaLinux 9 host has packages installed that are affected by a vulnerability as referenced in the ALSA-2026:37129 advisory.<br /></span><span><br /></span><span>    * gstreamer1-plugins-good: GStreamer: Heap buffer overflow in WavPack decoder via integer overflow     (CVE-2026-53705)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the AlmaLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected gstreamer1-plugins-good and / or gstreamer1-plugins-good-gtk packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326314">https://www.tenable.com/plugins/nessus/326314</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[AlmaLinux 9 : gstreamer1-plugins-bad-free (ALSA-2026:36834)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326313</link>
            <guid>https://www.tenable.com/plugins/nessus/326313</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326313 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote AlmaLinux host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote AlmaLinux 9 host has packages installed that are affected by multiple vulnerabilities as referenced in the ALSA-2026:36834 advisory.<br /></span><span><br /></span><span>    * gstreamer1-plugins-bad-free: GStreamer: Denial of service via AV1 tile_list_obu parser byte/bit     confusion (CVE-2026-52718)<br /></span><span>      * gstreamer1-plugins-bad-free: GStreamer: Out-of-bounds read via JPEG segment length validation in VA     decoder (CVE-2026-52719)<br /></span><span>      * gstreamer1-plugins-bad-free: GStreamer: Heap buffer overflow via crafted VNC server rectangle in     librfb (CVE-2026-52720)<br /></span><span>      * gstreamer1-plugins-bad-free: GStreamer: Signed integer overflow in VMnc decoder cursor payload     handling (CVE-2026-52722)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the AlmaLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected gstreamer1-plugins-bad-free, gstreamer1-plugins-bad-free-devel and / or gstreamer1-plugins-bad-free- libs packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326313">https://www.tenable.com/plugins/nessus/326313</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[AlmaLinux 9 : kernel (ALSA-2026:36957)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326312</link>
            <guid>https://www.tenable.com/plugins/nessus/326312</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326312 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote AlmaLinux host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote AlmaLinux 9 host has packages installed that are affected by multiple vulnerabilities as referenced in the ALSA-2026:36957 advisory.<br /></span><span><br /></span><span>    * kernel: net/sched: ets: Always remove class from active list before deleting in ets_qdisc_change     (CVE-2025-71066)<br /></span><span>      * kernel: KVM: x86: Fix shadow paging use-after-free due to unexpected GFN (CVE-2026-46113)<br /></span><span>      * kernel: KVM: x86: Fix shadow paging use-after-free due to unexpected role (CVE-2026-53359)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the AlmaLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326312">https://www.tenable.com/plugins/nessus/326312</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[AlmaLinux 10 : kernel (ALSA-2026:36956)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326311</link>
            <guid>https://www.tenable.com/plugins/nessus/326311</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326311 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote AlmaLinux host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote AlmaLinux 10 host has packages installed that are affected by multiple vulnerabilities as referenced in the ALSA-2026:36956 advisory.<br /></span><span><br /></span><span>    * kernel: net/sched: ets: Always remove class from active list before deleting in ets_qdisc_change     (CVE-2025-71066)<br /></span><span>      * kernel: sctp: revalidate list cursor after sctp_sendmsg_to_asoc() in SCTP_SENDALL (CVE-2026-46227)<br /></span><span>      * kernel: KVM: x86: Fix shadow paging use-after-free due to unexpected GFN (CVE-2026-46113)<br /></span><span>      * kernel: KVM: x86: Fix shadow paging use-after-free due to unexpected role (CVE-2026-53359)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the AlmaLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326311">https://www.tenable.com/plugins/nessus/326311</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[FreeBSD : httpclient -- Improper Certificate Validation (de3f0385-7c37-11f1-8dc2-dca632daf43b)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326310</link>
            <guid>https://www.tenable.com/plugins/nessus/326310</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326310 with Low Severity</p>
      <h3>Synopsis</h3>
      <span>The remote FreeBSD host is missing one or more security-related updates.<br /></span>
      <h3>Description</h3>
      <span>The version of FreeBSD installed on the remote host is prior to tested version. It is, therefore, affected by a vulnerability as referenced in the de3f0385-7c37-11f1-8dc2-dca632daf43b advisory.<br /></span><span><br /></span><span>    MITRE reports:<br /></span><span>    Apache Commons HttpClient 3.x, as used in ..., does not verify that the server hostname matches a domain     name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-     in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the FreeBSD security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326310">https://www.tenable.com/plugins/nessus/326310</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[FreeBSD : Apache HttpClient -- misinterpret malformed authority component (fa0c03dd-7c3a-11f1-8dc2-dca632daf43b)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326309</link>
            <guid>https://www.tenable.com/plugins/nessus/326309</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326309 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote FreeBSD host is missing one or more security-related updates.<br /></span>
      <h3>Description</h3>
      <span>The version of FreeBSD installed on the remote host is prior to tested version. It is, therefore, affected by a vulnerability as referenced in the fa0c03dd-7c3a-11f1-8dc2-dca632daf43b advisory.<br /></span><span><br /></span><span>    Apache Software Foundation reports:<br /></span><span>    Apache HttpClient versions prior to version 4.5.13 and 5.0.3 can misinterpret malformed authority     component in request URIs passed to the library as java.net.URI object and pick the wrong target host for     request execution.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the FreeBSD security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326309">https://www.tenable.com/plugins/nessus/326309</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Ubuntu 16.04 LTS : Expat vulnerability (USN-8520-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326308</link>
            <guid>https://www.tenable.com/plugins/nessus/326308</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326308 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Ubuntu host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote Ubuntu 16.04 LTS host has packages installed that are affected by a vulnerability as referenced in the USN-8520-1 advisory.<br /></span><span><br /></span><span>    It was discovered that Expat used insufficient entropy when generating hash salt values for its internal     hash table. An attacker could use this to craft an XML document that triggers hash flooding, leading to a     denial of service.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Ubuntu security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326308">https://www.tenable.com/plugins/nessus/326308</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Ubuntu 16.04 LTS : Python vulnerability (USN-8524-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326307</link>
            <guid>https://www.tenable.com/plugins/nessus/326307</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326307 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Ubuntu host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote Ubuntu 16.04 LTS host has packages installed that are affected by a vulnerability as referenced in the USN-8524-1 advisory.<br /></span><span><br /></span><span>    It was discovered that Python did not use sufficient entropy for Expat hash-flooding protection in the     xml.parsers.expat and xml.etree.ElementTree modules. An attacker could use this to cause a denial of     service via a crafted XML document.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Ubuntu security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326307">https://www.tenable.com/plugins/nessus/326307</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Photon OS 4.0: Linux PHSA-2026-4.0-1054]]></title>
            <link>https://www.tenable.com/plugins/nessus/326306</link>
            <guid>https://www.tenable.com/plugins/nessus/326306</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326306 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote PhotonOS host is missing multiple security updates.<br /></span>
      <h3>Description</h3>
      <span>An update of the linux package has been released.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected Linux packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326306">https://www.tenable.com/plugins/nessus/326306</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Debian dla-4675 : librlottie-dev - security update]]></title>
            <link>https://www.tenable.com/plugins/nessus/326305</link>
            <guid>https://www.tenable.com/plugins/nessus/326305</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326305 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Debian host is missing one or more security-related updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Debian 11 host has packages installed that are affected by multiple vulnerabilities as referenced in the dla-4675 advisory.<br /></span><span><br /></span><span>    -------------------------------------------------------------------------     Debian LTS Advisory DLA-4675-1                debian-lts@lists.debian.org     https://www.debian.org/lts/security/                      Nicholas Guriev     July 10, 2026                                 https://wiki.debian.org/LTS<br /></span><span>    -------------------------------------------------------------------------<br /></span><span><br /></span><span>    Package        : rlottie     Version        : 0.1+dfsg-2+deb11u2     CVE ID         : CVE-2026-8916 CVE-2026-10305 CVE-2026-47306 CVE-2026-47318                      CVE-2026-47319 CVE-2026-47320     Debian Bug     : 994614 1138916 1138917 1138918 1138919 1138920 1139179<br /></span><span><br /></span><span>    rLottie is a platform independent C++ library for rendering vector-based     animations and art. Its format is used by Telegram Desktop, fast and secure     messaging application, which is the only reverse dependency in Debian.<br /></span><span><br /></span><span>    Several flaws caused by C++ undefined behavior in this library were recently     reported as CVE issues. The new update addresses six of them as well as     backports other crash fixes.<br /></span><span><br /></span><span>    For Debian 11 bullseye, these problems have been fixed in version     0.1+dfsg-2+deb11u2.<br /></span><span><br /></span><span>    We recommend that you upgrade your rlottie packages.<br /></span><span><br /></span><span>    For the detailed security status of rlottie please refer to     its security tracker page at:<br /></span><span>    https://security-tracker.debian.org/tracker/rlottie<br /></span><span><br /></span><span>    Further information about Debian LTS security advisories, how to apply     these updates to your system and frequently asked questions can be     found at: https://wiki.debian.org/LTS     Attachment:<br /></span><span>    signature.asc     Description: This is a digitally signed message part.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Debian security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade the librlottie-dev packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326305">https://www.tenable.com/plugins/nessus/326305</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[MiracleLinux 8 : python-urllib3-1.24.2-10.el8_10 (AXSA:2026-1235:03)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326304</link>
            <guid>https://www.tenable.com/plugins/nessus/326304</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326304 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote MiracleLinux host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote MiracleLinux 8 host has a package installed that is affected by a vulnerability as referenced in the AXSA:2026-1235:03 advisory.<br /></span><span><br /></span><span>    * urllib3: urllib3: Information disclosure via cross-origin redirects forwarding sensitive headers     (CVE-2026-44431)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the MiracleLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected python3-urllib3 package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326304">https://www.tenable.com/plugins/nessus/326304</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[MiracleLinux 9 : kernel-5.14.0-687.10.1.el9_8 (AXSA:2026-1231:47)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326303</link>
            <guid>https://www.tenable.com/plugins/nessus/326303</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326303 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote MiracleLinux host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote MiracleLinux 9 host has packages installed that are affected by multiple vulnerabilities as referenced in the AXSA:2026-1231:47 advisory.<br /></span><span><br /></span><span>    * kernel: net/sched: Make cake_enqueue return NET_XMIT_CN when past buffer_limit (CVE-2025-39766)<br /></span><span>      * kernel: scsi: qla2xxx: Fix improper freeing of purex item (CVE-2025-68741)<br /></span><span>      * kernel: libceph: make decode_pool() more resilient against corrupted osdmaps (CVE-2025-71116)<br /></span><span>      * kernel: libceph: prevent potential out-of-bounds reads in handle_auth_done() (CVE-2026-22984)<br /></span><span>      * kernel: libceph: replace overzealous BUG_ON in osdmap_apply_incremental() (CVE-2026-22990)<br /></span><span>      * kernel: Linux kernel: Denial of Service in libceph OSD client due to unreset sparse-read state     (CVE-2026-23136)<br /></span><span>      * kernel: net/sched: cls_u32: use skb_header_pointer_careful() (CVE-2026-23204)<br /></span><span>      * kernel: Linux kernel: Use-after-free in traffic control (act_ct) may lead to denial of service or     privilege escalation (CVE-2026-23270)<br /></span><span>      * kernel: Linux kernel KVM: Privilege escalation or denial of service due to improper shadow page table     entry handling (CVE-2026-23401)<br /></span><span>      * kernel: nfsd: fix heap overflow in NFSv4.0 LOCK replay cache (CVE-2026-31402)<br /></span><span>      * kernel: can: raw: fix ro->uniq use-after-free in raw_rcv() (CVE-2026-31532)<br /></span><span>      * kernel: usbip: validate number_of_packets in usbip_pack_ret_submit() (CVE-2026-31607)<br /></span><span>      * kernel: md/bitmap: fix GPF in write_page caused by resize race (CVE-2026-43163)<br /></span><span>      * kernel: RDMA/umem: Fix double dma_buf_unpin in failure path (CVE-2026-43128)<br /></span><span>      * kernel: Dirty Frag is a new universal Local Privilege Escalation (LPE) vulnerability in the Linux     kernel (CVE-2026-43284)<br /></span><span>      * kernel: Fragnesia is a variant of Dirty Frag vulnerability in the ESP/XFRM leading to Local     Privilege Escalation (LPE) vulnerability in the Linux kernel (CVE-2026-46300)<br /></span><span>      * kernel: Read root-owned files as an unprivileged user (CVE-2026-46333)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the MiracleLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326303">https://www.tenable.com/plugins/nessus/326303</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[MiracleLinux 8 : gstreamer1-plugins-bad-free-1.16.1-8.el8_10 (AXSA:2026-1243:01)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326302</link>
            <guid>https://www.tenable.com/plugins/nessus/326302</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326302 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote MiracleLinux host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote MiracleLinux 8 host has packages installed that are affected by multiple vulnerabilities as referenced in the AXSA:2026-1243:01 advisory.<br /></span><span><br /></span><span>    * gstreamer1-plugins-bad-free: GStreamer: Heap buffer overflow via crafted VNC server rectangle in librfb     (CVE-2026-52720)<br /></span><span>      * gstreamer1-plugins-bad-free: GStreamer: Signed integer overflow in VMnc decoder cursor payload     handling (CVE-2026-52722)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the MiracleLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected gstreamer1-plugins-bad-free and / or gstreamer1-plugins-bad-free-devel packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326302">https://www.tenable.com/plugins/nessus/326302</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[MiracleLinux 8 : libsolv-0.7.20-7.el8_10 (AXSA:2026-1241:02)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326301</link>
            <guid>https://www.tenable.com/plugins/nessus/326301</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326301 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote MiracleLinux host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote MiracleLinux 8 host has packages installed that are affected by a vulnerability as referenced in the AXSA:2026-1241:02 advisory.<br /></span><span><br /></span><span>    * libsolv: Heap buffer overflow in libsolv repopagestore via unchecked decompression of malicious .solv     page data (CVE-2026-48864)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the MiracleLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326301">https://www.tenable.com/plugins/nessus/326301</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[MiracleLinux 8 : container-tools:rhel8 (AXSA:2026-1242:01)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326300</link>
            <guid>https://www.tenable.com/plugins/nessus/326300</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326300 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote MiracleLinux host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote MiracleLinux 8 host has packages installed that are affected by multiple vulnerabilities as referenced in the AXSA:2026-1242:01 advisory.<br /></span><span><br /></span><span>    * net/url: Incorrect parsing of IPv6 host literals in net/url (CVE-2026-25679)<br /></span><span>      * github.com/go-jose/go-jose/v3: github.com/go-jose/go-jose/v4: Go JOSE: Denial of Service via crafted     JSON Web Encryption (JWE) object (CVE-2026-34986)<br /></span><span>      * crypto/x509: golang: Go crypto/x509: Denial of Service via inefficient certificate chain validation     (CVE-2026-32281)<br /></span><span>      * crypto/tls: golang: Go crypto/tls: Denial of Service via multiple TLS 1.3 key update messages     (CVE-2026-32283)<br /></span><span>      * crypto/x509: crypto/tls: golang: Go: Denial of Service vulnerability in certificate chain building     (CVE-2026-32280)     Bug Fix(es) and Enhancement(s):<br /></span><span>      * user_u SELinux user can't run podman containers as rootless (JIRA:RHEL-135342)<br /></span><span>      * podman does not clean up all files and leaves orphaned files consuming disk space [rhel-8.10.z]     (JIRA:RHEL-173978)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the MiracleLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326300">https://www.tenable.com/plugins/nessus/326300</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[MiracleLinux 8 : libtasn1-4.13-6.el8_10 (AXSA:2026-1237:02)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326299</link>
            <guid>https://www.tenable.com/plugins/nessus/326299</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326299 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote MiracleLinux host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote MiracleLinux 8 host has packages installed that are affected by a vulnerability as referenced in the AXSA:2026-1237:02 advisory.<br /></span><span><br /></span><span>    * libtasn1: libtasn1: Denial of Service via stack-based buffer overflow in asn1_expend_octet_string     (CVE-2025-13151)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the MiracleLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected libtasn1, libtasn1-devel and / or libtasn1-tools packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326299">https://www.tenable.com/plugins/nessus/326299</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[MiracleLinux 8 : cups-2.2.6-68.el8_10 (AXSA:2026-1240:09)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326298</link>
            <guid>https://www.tenable.com/plugins/nessus/326298</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326298 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote MiracleLinux host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote MiracleLinux 8 host has packages installed that are affected by a vulnerability as referenced in the AXSA:2026-1240:09 advisory.<br /></span><span><br /></span><span>    * cups: OpenPrinting CUPS: Shared PostScript queue lets anonymous Print-Job requests reach `lp` code     execution over the network (CVE-2026-34980)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the MiracleLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326298">https://www.tenable.com/plugins/nessus/326298</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[MiracleLinux 8 : compat-openssl10-1.0.2o-4.el8_10.3 (AXSA:2026-1238:02)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326297</link>
            <guid>https://www.tenable.com/plugins/nessus/326297</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326297 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote MiracleLinux host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote MiracleLinux 8 host has a package installed that is affected by a vulnerability as referenced in the AXSA:2026-1238:02 advisory.<br /></span><span><br /></span><span>    * openssl: Heap Use-After-Free in OpenSSL PKCS7_verify() (CVE-2026-45447)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the MiracleLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected compat-openssl10 package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326297">https://www.tenable.com/plugins/nessus/326297</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[MiracleLinux 8 : libxml2-2.9.7-21.el8_10.6 (AXSA:2026-1234:04)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326296</link>
            <guid>https://www.tenable.com/plugins/nessus/326296</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326296 with Low Severity</p>
      <h3>Synopsis</h3>
      <span>The remote MiracleLinux host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote MiracleLinux 8 host has packages installed that are affected by a vulnerability as referenced in the AXSA:2026-1234:04 advisory.<br /></span><span><br /></span><span>    * libxml2: Stack Buffer Overflow in xmllint Interactive Shell Command Handling (CVE-2025-6170)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the MiracleLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected libxml2, libxml2-devel and / or python3-libxml2 packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326296">https://www.tenable.com/plugins/nessus/326296</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[MiracleLinux 9 : nginx-1.20.1-28.el9_8.2.ML.1 (AXSA:2026-1233:04)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326295</link>
            <guid>https://www.tenable.com/plugins/nessus/326295</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326295 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote MiracleLinux host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote MiracleLinux 9 host has packages installed that are affected by a vulnerability as referenced in the AXSA:2026-1233:04 advisory.<br /></span><span><br /></span><span>    * nginx: NGINX: Arbitrary Code Execution Vulnerability (CVE-2026-42945)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the MiracleLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326295">https://www.tenable.com/plugins/nessus/326295</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[MiracleLinux 9 : thunderbird-140.10.1-1.el9_8.ML.1 (AXSA:2026-1236:15)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326294</link>
            <guid>https://www.tenable.com/plugins/nessus/326294</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326294 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote MiracleLinux host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote MiracleLinux 9 host has a package installed that is affected by multiple vulnerabilities as referenced in the AXSA:2026-1236:15 advisory.<br /></span><span><br /></span><span>    * firefox: thunderbird: Incorrect boundary conditions in the Libraries component in NSS (CVE-2026-6772)<br /></span><span>      * firefox: thunderbird: Use-after-free in the JavaScript Engine component (CVE-2026-6754)<br /></span><span>      * firefox: thunderbird: Spoofing issue in the DOM: Core & HTML component (CVE-2026-6762)<br /></span><span>      * firefox: thunderbird: Incorrect boundary conditions in the WebRTC component (CVE-2026-6752)<br /></span><span>      * firefox: thunderbird: Other issue in the Storage: IndexedDB component (CVE-2026-6770)<br /></span><span>      * firefox: thunderbird: Invalid pointer in the JavaScript: WebAssembly component (CVE-2026-6757)<br /></span><span>      * firefox: thunderbird: Other issue in the Libraries component in NSS (CVE-2026-6767)<br /></span><span>      * firefox: thunderbird: Memory safety bugs fixed in Firefox ESR 140.10, Thunderbird ESR 140.10, Firefox     150 and Thunderbird 150 (CVE-2026-6786)<br /></span><span>      * firefox: thunderbird: Incorrect boundary conditions in the WebRTC component (CVE-2026-6753)<br /></span><span>      * firefox: thunderbird: Use-after-free in the Widget: Cocoa component (CVE-2026-6759)<br /></span><span>      * firefox: thunderbird: Use-after-free in the WebRTC component (CVE-2026-6747)<br /></span><span>      * firefox: thunderbird: Information disclosure due to uninitialized memory in the Graphics: Canvas2D     component (CVE-2026-6749)<br /></span><span>      * firefox: thunderbird: Incorrect boundary conditions in the Libraries component in NSS (CVE-2026-6766)<br /></span><span>      * firefox: thunderbird: Privilege escalation in the Networking component (CVE-2026-6761)<br /></span><span>      * firefox: thunderbird: Mitigation bypass in the File Handling component (CVE-2026-6763)<br /></span><span>      * firefox: thunderbird: Privilege escalation in the Graphics: WebRender component (CVE-2026-6750)<br /></span><span>      * firefox: thunderbird: Uninitialized memory in the Audio/Video: Web Codecs component (CVE-2026-6748)<br /></span><span>      * firefox: thunderbird: Memory safety bugs fixed in Firefox ESR 115.35, Firefox ESR 140.10, Thunderbird     ESR 140.10, Firefox 150 and Thunderbird 150 (CVE-2026-6785)<br /></span><span>      * firefox: thunderbird: Mitigation bypass in the DOM: Security component (CVE-2026-6771)<br /></span><span>      * firefox: thunderbird: Incorrect boundary conditions in the DOM: Device Interfaces component     (CVE-2026-6764)<br /></span><span>      * firefox: thunderbird: Information disclosure in the Form Autofill component (CVE-2026-6765)<br /></span><span>      * firefox: thunderbird: Privilege escalation in the Debugger component (CVE-2026-6769)<br /></span><span>      * firefox: thunderbird: Uninitialized memory in the Audio/Video: Web Codecs component (CVE-2026-6751)<br /></span><span>      * firefox: thunderbird: Incorrect boundary conditions in the WebRTC: Networking component     (CVE-2026-6776)<br /></span><span>      * firefox: thunderbird: Use-after-free in the DOM: Core & HTML component (CVE-2026-6746)<br /></span><span>      * firefox: thunderbird: Memory safety bugs fixed in Firefox ESR 140.10.1 and Firefox 150.0.1     (CVE-2026-7323)<br /></span><span>      * firefox: thunderbird: Information disclosure due to incorrect boundary conditions in the Audio/Video     component (CVE-2026-7320)<br /></span><span>      * firefox: thunderbird: Memory safety bugs fixed in Thunderbird ESR 140.10.1 and Thunderbird 150.0.1     (CVE-2026-7322)<br /></span><span>      * firefox: thunderbird: webrtc: Sandbox escape due to incorrect boundary conditions in the WebRTC:<br /></span><span>    Networking component (CVE-2026-7321)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the MiracleLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected thunderbird package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326294">https://www.tenable.com/plugins/nessus/326294</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2026-55689]]></title>
            <link>https://www.tenable.com/plugins/nessus/326293</link>
            <guid>https://www.tenable.com/plugins/nessus/326293</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326293 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - OpenFGA is an authorization/permission engine built for developers. Prior to 1.18.0, OpenFGA's OIDC     authenticator skipped JWT audience validation when authn.method was set to oidc, authn.oidc.issuer was     configured, and authn.oidc.audience was not set, allowing a token minted for an unrelated service by the     same identity provider to authenticate to OpenFGA. This issue is fixed in 1.18.0. (CVE-2026-55689)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326293">https://www.tenable.com/plugins/nessus/326293</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2026-59858]]></title>
            <link>https://www.tenable.com/plugins/nessus/326292</link>
            <guid>https://www.tenable.com/plugins/nessus/326292</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326292 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - Vim is an open source, command line text editor. Prior to 9.2.0735, the C omni-completion script in     runtime/autoload/ccomplete.vim interpolates the typeref: or typename: extension field of a tags entry,     without escaping, into a :vimgrep pattern that is run through :execute. Because :vimgrep honors the bar as     a command separator, a crafted tag field can close the search pattern and append an arbitrary Ex command;<br /></span><span>    opening a hostile .c file whose project tags file contains such an entry and invoking C omni-completion     runs that command as the editing user. This issue is fixed in version 9.2.0735. (CVE-2026-59858)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326292">https://www.tenable.com/plugins/nessus/326292</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2026-15028]]></title>
            <link>https://www.tenable.com/plugins/nessus/326291</link>
            <guid>https://www.tenable.com/plugins/nessus/326291</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326291 with Low Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - A flaw was found in libarchive. This vulnerability allows a remote attacker to trigger a heap overflow by     providing a specially crafted tar archive. The issue occurs during the parsing of a PAX extended header     containing a malformed SUN.holesdata sparse-file attribute. Successful exploitation could lead to a denial     of service, making the system unavailable, or potentially allow for arbitrary code execution, giving the     attacker control over the affected system. (CVE-2026-15028)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326291">https://www.tenable.com/plugins/nessus/326291</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2026-58459]]></title>
            <link>https://www.tenable.com/plugins/nessus/326290</link>
            <guid>https://www.tenable.com/plugins/nessus/326290</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326290 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - gpsd through release-3.27.5, fixed at commit 4c06658, contains a command injection vulnerability in     gpsprof that allows attackers who control the GPS device subtype value to execute arbitrary shell commands     by embedding backtick payloads in the gnuplot plot title without proper escaping. The subtype field     sourced from a DEVICES JSON log entry or NMEA PGRMT sentence is written into a generated gnuplot program     via a set title statement with only double-quote characters escaped, enabling arbitrary shell command     execution as the user running gnuplot when the victim renders the generated plot through the gpsprof and     gnuplot workflow. (CVE-2026-58459)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326290">https://www.tenable.com/plugins/nessus/326290</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2026-59831]]></title>
            <link>https://www.tenable.com/plugins/nessus/326289</link>
            <guid>https://www.tenable.com/plugins/nessus/326289</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326289 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - GitHub CLI (gh) is GitHub's official command line tool. From 2.10.0 through 2.95.0, connecting to a     malicious Codespace with gh codespace jupyter can allow command execution because the command opens a     JupyterLab URL supplied by a process inside the Codespace without validating that it is a loopback HTTP or     HTTPS address, allowing a crafted vscode:// or vscode-insiders:// URL to be handed to VS Code. This issue     is fixed in version 2.96.0. (CVE-2026-59831)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326289">https://www.tenable.com/plugins/nessus/326289</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2026-59856]]></title>
            <link>https://www.tenable.com/plugins/nessus/326288</link>
            <guid>https://www.tenable.com/plugins/nessus/326288</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326288 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - Vim is an open source, command line text editor. Prior to 9.2.0736, the PHP omni-completion script in     runtime/autoload/phpcomplete.vim interpolates a class or trait name, taken from the contents of the edited     buffer, into a search() pattern that is run via win_execute() without escaping. A name containing a single     quote can terminate the search() string argument early, and because the bar is honored as an Ex command     separator, the remainder of the name is run as Ex commands; via the :! command this allows arbitrary     operating-system command execution when a victim opens a crafted PHP file and invokes omni-completion.<br /></span><span>    This issue is fixed in version 9.2.0736. (CVE-2026-59856)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326288">https://www.tenable.com/plugins/nessus/326288</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Linux Distros Unpatched Vulnerability : CVE-2026-59857]]></title>
            <link>https://www.tenable.com/plugins/nessus/326287</link>
            <guid>https://www.tenable.com/plugins/nessus/326287</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326287 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The Linux/Unix host has one or more packages installed with a vulnerability that the vendor indicates will not be patched.<br /></span>
      <h3>Description</h3>
      <span>The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available.<br /></span><span><br /></span><span>  - Vim is an open source, command line text editor. Prior to 9.2.0725, the single-byte branch of     spell_soundfold_sal() in src/spell.c translates a word through a spell file's SAL sound-folding rules into     a caller-owned result buffer, but its result writes are guarded with reslen < MAXWLEN, allowing reslen to     reach MAXWLEN before res[reslen] = NUL writes one byte past the end of the MAXWLEN-element stack buffer. A     boundary-length word passed to soundfold(), or reached via sound-based spell suggestion while a SAL-based     spell language is active under a non-multibyte 8-bit encoding, can corrupt the eval_soundfold() stack     frame and crash the editor. This issue is fixed in version 9.2.0725. (CVE-2026-59857)<br /></span><span><br /></span><span>Note that Nessus relies on the presence of the package as reported by the vendor.<br /></span>
      <h3>Solution</h3>
      <span>There is no known solution at this time.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326287">https://www.tenable.com/plugins/nessus/326287</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Fedora 45 : sssd (2026-8fad0036a5)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326286</link>
            <guid>https://www.tenable.com/plugins/nessus/326286</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326286 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Fedora host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Fedora 45 host has a package installed that is affected by multiple vulnerabilities as referenced in the FEDORA-2026-8fad0036a5 advisory.<br /></span><span><br /></span><span>    Automatic update for sssd-2.13.1-3.fc45.<br /></span><span><br /></span><span>    ##### **Changelog**<br /></span><span><br /></span><span>    ```<br /></span><span>    * Wed Jul  8 2026 Sumit Bose <sbose@redhat.com> - 2.13.1-3<br /></span><span>    - CVE fixes: CVE-2026-12610 CVE-2026-14474 CVE-2026-14476<br /></span><span>    - rhbz#2494777: CVE-2026-12610 sssd: Use-after-free crash in SSSD'       'sssd_pam' process<br /></span><span>    - rhbz#2497650: CVE-2026-14476 sssd: sssd: GPO cache path traversal via       unsanitized gPCFileSysPath allows Kerberos authentication bypass<br /></span><span>    - rhbz#2497651: CVE-2026-14474 sssd: sssd: sudo LDAP provider searches       entire directory tree for sudoRole objects by default, enabling privilege       escalation<br /></span><span><br /></span><span>    ```<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Fedora security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected sssd package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326286">https://www.tenable.com/plugins/nessus/326286</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Kibana 8.x < 8.19.17 / 9.x < 9.3.6 / 9.4.x < 9.4.3 DoS (ESA-2026-45)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326285</link>
            <guid>https://www.tenable.com/plugins/nessus/326285</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326285 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote host is affected by a denial of service vulnerability.<br /></span>
      <h3>Description</h3>
      <span>The version of Kibana installed on the remote host is 8.x prior to 8.19.17, 9.x prior to 9.3.6, or 9.4.x prior to 9.4.3. It is, therefore, affected by a denial of service vulnerability:<br /></span><span><br /></span><span>  - Improper Input Validation (CWE-20) in Kibana can lead to a denial of service. An authenticated user can submit a     specially crafted Fleet policy input that is not correctly validated, which can render Fleet agent, server, and     policy management functionality unavailable. (CVE-2026-56151)<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update to Kibana version 8.19.17, 9.3.6, 9.4.3, or later.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326285">https://www.tenable.com/plugins/nessus/326285</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Kibana 7.x < 7.17.15 / 8.x < 8.11.1 Log Injection (ESA-2026-53)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326284</link>
            <guid>https://www.tenable.com/plugins/nessus/326284</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326284 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote host is affected by a log injection vulnerability.<br /></span>
      <h3>Description</h3>
      <span>The version of Kibana installed on the remote host is 7.x prior to 7.17.15 or 8.x prior to 8.11.1. It is, therefore, affected by a log injection vulnerability:<br /></span><span><br /></span><span>  - Improper Output Neutralization for Logs (CWE-117) in Kibana can lead to log injection. An attacker can supply     specially crafted input that is written to log files without proper neutralization. When the log files are     subsequently viewed in a terminal that interprets control sequences, the injected content may alter the displayed     log data. (CVE-2026-49091)<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update to Kibana version 7.17.15, 8.11.1, or later.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326284">https://www.tenable.com/plugins/nessus/326284</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Kibana 8.x < 8.16.3 / 8.17.x < 8.17.2 Authorization Bypass (ESA-2026-51)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326283</link>
            <guid>https://www.tenable.com/plugins/nessus/326283</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326283 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote host is affected by an authorization bypass vulnerability.<br /></span>
      <h3>Description</h3>
      <span>The version of Kibana installed on the remote host is 8.x prior to 8.16.3 or 8.17.x prior to 8.17.2. It is, therefore, affected by an authorization bypass vulnerability:<br /></span><span><br /></span><span>  - Authorization Bypass Through User-Controlled Key (CWE-639) in Kibana can lead to unauthorized data modification.<br /></span><span>    Under certain conditions, an authenticated user could reference another user's AI Assistant conversation identifier     to access or modify a conversation they do not own. Successful exploitation requires knowledge of a hard-to-guess     identifier. (CVE-2026-49089)<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update to Kibana version 8.16.3, 8.17.2, or later.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326283">https://www.tenable.com/plugins/nessus/326283</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Kibana 8.x < 8.19.15 / 9.x < 9.3.4 DoS (ESA-2026-49)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326282</link>
            <guid>https://www.tenable.com/plugins/nessus/326282</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326282 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote host is affected by a denial of service vulnerability.<br /></span>
      <h3>Description</h3>
      <span>The version of Kibana installed on the remote host is 8.x prior to 8.19.15 or 9.x prior to 9.3.4. It is, therefore, affected by a denial of service vulnerability:<br /></span><span><br /></span><span>  - Allocation of Resources Without Limits or Throttling (CWE-770) in Kibana can lead to a denial of service. An     authenticated user can submit a specially crafted bulk deletion request that causes excessive resource consumption,     which may render Kibana unavailable. (CVE-2026-49087)<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update to Kibana version 8.19.15, 9.3.4, or later.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326282">https://www.tenable.com/plugins/nessus/326282</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Kibana 8.x < 8.18.9 / 8.19.x < 8.19.6 / 9.0.x < 9.0.8 / 9.1.x < 9.1.6 Information Disclosure (ESA-2026-50)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326281</link>
            <guid>https://www.tenable.com/plugins/nessus/326281</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326281 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote host is affected by an information disclosure vulnerability.<br /></span>
      <h3>Description</h3>
      <span>The version of Kibana installed on the remote host is 8.x prior to 8.18.9, 8.19.x prior to 8.19.6, 9.0.x prior to 9.0.8, or 9.1.x prior to 9.1.6. It is, therefore, affected by an information disclosure vulnerability:<br /></span><span><br /></span><span>  - Insertion of Sensitive Information into Log File (CWE-532) in Kibana can lead to information disclosure. When the     optional application performance monitoring (APM) instrumentation is enabled, sensitive request header values could     be recorded in application logs, where they may be accessible to operators with log access. (CVE-2026-49088)<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update to Kibana version 8.18.9, 8.19.6, 9.0.8, 9.1.6, or later.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326281">https://www.tenable.com/plugins/nessus/326281</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Coder < 2.29.17 / 2.30.x < 2.32.7 / 2.33.x < 2.33.8 / 2.34.x < 2.34.2 Multiple Vulnerabilities]]></title>
            <link>https://www.tenable.com/plugins/nessus/326280</link>
            <guid>https://www.tenable.com/plugins/nessus/326280</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326280 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote host has an application installed that is affected by multiple vulnerabilities.<br /></span>
      <h3>Description</h3>
      <span>The version of Coder installed on the remote host is prior to 2.29.17, 2.32.7, 2.33.8, or 2.34.2. It is, therefore, affected by multiple vulnerabilities:<br /></span><span><br /></span><span>  - A user-admin role can reset the owner account password, resulting in privilege escalation from     user-admin to owner. (CVE-2026-55077)<br /></span><span><br /></span><span>  - A workspace app upsert allows cross-workspace agent rebinding via user-controlled app ID,     enabling traffic interception. (CVE-2026-55429)<br /></span><span><br /></span><span>  - The coder config-ssh command wrote server-supplied SSH settings into the user's SSH config without     sanitizing embedded newlines, allowing arbitrary SSH configuration injection. (CVE-2026-55427)<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update Coder to version 2.29.17, 2.32.7, 2.33.8, or 2.34.2 or later.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326280">https://www.tenable.com/plugins/nessus/326280</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Coder < 2.29.7 / 2.30.x < 2.30.2 Workspace Auto-Creation Without Consent (CVE-2026-44454)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326279</link>
            <guid>https://www.tenable.com/plugins/nessus/326279</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326279 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote host has an application installed that is affected by a command injection vulnerability.<br /></span>
      <h3>Description</h3>
      <span>The version of Coder installed on the remote host is prior to 2.29.7 or 2.30.x prior to 2.30.2. It is, therefore, affected by a command injection vulnerability.<br /></span><span><br /></span><span>The dotfiles registry module passed unsanitized user input to shell commands, enabling arbitrary code execution inside provisioned workspaces. A crafted dotfiles_uri value containing shell command substitution could achieve command execution. The mode=auto deep links amplified this into a one-click attack by prefilling param.dotfiles_uri and silently provisioning a workspace with no user confirmation.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update Coder to version 2.29.7 or 2.30.2 or later.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326279">https://www.tenable.com/plugins/nessus/326279</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Coder 2.30.x < 2.32.7 / 2.33.x < 2.33.8 / 2.34.x < 2.34.2 AI Bridge Proxy TLS Verification Bypass]]></title>
            <link>https://www.tenable.com/plugins/nessus/326278</link>
            <guid>https://www.tenable.com/plugins/nessus/326278</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326278 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote host has an application installed that is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>The version of Coder installed on the remote host is 2.30.x prior to 2.32.7, 2.33.x prior to 2.33.8, or 2.34.x prior to 2.34.2. It is, therefore, affected by a vulnerability.<br /></span><span><br /></span><span>The AI Bridge Proxy skips TLS certificate verification in the default configuration. The proxy created a goproxy server whose default transport set InsecureSkipVerify and only assigned a secure transport when an upstream proxy was configured. In the default configuration (no upstream proxy), outbound HTTPS to the Coder access URL accepted any TLS certificate, enabling potential interception of session tokens and API keys by an on-path attacker.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update Coder to version 2.32.7, 2.33.8, or 2.34.2 or later.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326278">https://www.tenable.com/plugins/nessus/326278</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[MiracleLinux 8 : gstreamer1-plugins-good-1.16.1-7.el8_10 (AXSA:2026-1245:01)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326277</link>
            <guid>https://www.tenable.com/plugins/nessus/326277</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326277 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote MiracleLinux host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote MiracleLinux 8 host has packages installed that are affected by a vulnerability as referenced in the AXSA:2026-1245:01 advisory.<br /></span><span><br /></span><span>    * gstreamer1-plugins-good: GStreamer: Heap buffer overflow in WavPack decoder via integer overflow     (CVE-2026-53705)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the MiracleLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected gstreamer1-plugins-good and / or gstreamer1-plugins-good-gtk packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326277">https://www.tenable.com/plugins/nessus/326277</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[MiracleLinux 8 : ruby:3.3 (AXSA:2026-1246:01)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326276</link>
            <guid>https://www.tenable.com/plugins/nessus/326276</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326276 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote MiracleLinux host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote MiracleLinux 8 host has packages installed that are affected by multiple vulnerabilities as referenced in the AXSA:2026-1246:01 advisory.<br /></span><span><br /></span><span>    * ruby: net-imap: Net::IMAP: Denial of Service via crafted IMAP responses (CVE-2026-42245)<br /></span><span>      * ruby/net-imap: ruby: Net::IMAP: IMAP Command Injection via Symbol Arguments (CVE-2026-42258)<br /></span><span>      * net-imap: ruby: Net::IMAP: Information disclosure via man-in-the-middle attack bypassing TLS     (CVE-2026-42246)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the MiracleLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326276">https://www.tenable.com/plugins/nessus/326276</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Oracle Linux 7 : tigervnc (ELSA-2026-22456)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326275</link>
            <guid>https://www.tenable.com/plugins/nessus/326275</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326275 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Oracle Linux host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Oracle Linux 7 host has packages installed that are affected by multiple vulnerabilities as referenced in the ELSA-2026-22456 advisory.<br /></span><span><br /></span><span>    - Fix CVE-2026-33999, CVE-2026-34000, CVE-2026-34001, CVE-2026-34002,       CVE-2026-34003 and CVE-2026-34352 [Orabug: 39478221]<br /></span><span>    - Fix CVE-2025-62229: xorg-x11-server: Use-after-free in XPresentNotify structures creation [Orabug:<br /></span><span>    38694278]<br /></span><span>    - Fix CVE-2025-62230: xorg-x11-server: Use-after-free in Xkb client resource removal<br /></span><span>    - Fix CVE-2025-62231: xorg-x11-server: Value overflow in Xkb extension XkbSetCompatMap()<br /></span><span>    - Fix CVE-2025-49175, CVE-2025-49176, CVE-2025-49178, CVE-2025-49179, CVE-2025-49180 [Orabug: 38157695]<br /></span><span>    - Fix CVE-2025-26594 xorg-x11-server Use-after-free of the root cursor [Orabug: 37712725]<br /></span><span>    - Fix CVE-2025-26595 xorg-x11-server Buffer overflow in XkbVModMaskText()<br /></span><span>    - Fix CVE-2025-26596 xorg-x11-server Heap overflow in XkbWriteKeySyms()<br /></span><span>    - Fix CVE-2025-26597 xorg-x11-server Buffer overflow in XkbChangeTypesOfKey()<br /></span><span>    - Fix CVE-2025-26598 xorg-x11-server Out-of-bounds write in CreatePointerBarrierClient()<br /></span><span>    - Fix CVE-2025-26599 xorg-x11-server Use of uninitialized pointer in compRedirectWindow()<br /></span><span>    - Fix CVE-2025-26600 xorg-x11-server Use-after-free in PlayReleasedEvents()<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Oracle Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326275">https://www.tenable.com/plugins/nessus/326275</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Oracle Linux 9 : buildah (ELSA-2026-37410)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326274</link>
            <guid>https://www.tenable.com/plugins/nessus/326274</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326274 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Oracle Linux host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Oracle Linux 9 host has packages installed that are affected by multiple vulnerabilities as referenced in the ELSA-2026-37410 advisory.<br /></span><span><br /></span><span>    - bump golang.org/x/crypto to v0.53.0 to fix CVE-2026-39832 and CVE-2026-39835<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Oracle Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected buildah and / or buildah-tests packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326274">https://www.tenable.com/plugins/nessus/326274</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Oracle Linux 9 : podman (ELSA-2026-37123)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326273</link>
            <guid>https://www.tenable.com/plugins/nessus/326273</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326273 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Oracle Linux host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Oracle Linux 9 host has packages installed that are affected by multiple vulnerabilities as referenced in the ELSA-2026-37123 advisory.<br /></span><span><br /></span><span>    [5.8.2-4.0.1]<br /></span><span>    - Rework CNI/Netavark detection logic [JIRA: EVG-3769]<br /></span><span>    - Rebuild on new golang to support experimental GODEBUG fipsnoenforceems<br /></span><span>    - Drop nmap-ncat requirement and skip ignore-socket test case [Orabug: 34117404]<br /></span><span><br /></span><span>    [6:5.8.2-4]<br /></span><span>    - bump to upstream commit a476c2b2 fixing CVE-2026-39835 CVE-2026-39829       CVE-2026-39832 CVE-2026-42508 CVE-2026-27136 CVE-2026-25681 CVE-2026-57231 and       podman-remote save regression<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Oracle Linux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326273">https://www.tenable.com/plugins/nessus/326273</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Jinja2 < 3.1.6 Sandbox Bypass (CVE-2025-27516)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326272</link>
            <guid>https://www.tenable.com/plugins/nessus/326272</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326272 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>A Python library installed on the remote host is affected by a sandbox bypass vulnerability.<br /></span>
      <h3>Description</h3>
      <span>The version of Jinja2 installed on the remote host is prior to 3.1.6. It is, therefore, affected by a sandbox bypass vulnerability:<br /></span><span><br /></span><span>  - An oversight in how the Jinja sandboxed environment interacts with the |attr filter allows     an attacker that controls the content of a template to execute arbitrary Python code. Jinja's     sandbox does catch calls to str.format and ensures they don't escape the sandbox. However,     it's possible to use the |attr filter to get a reference to a string's plain format method,     bypassing the sandbox. After the fix, the |attr filter no longer bypasses the environment's     attribute lookup. (CVE-2025-27516)<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade to Jinja2 version 3.1.6 or later.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326272">https://www.tenable.com/plugins/nessus/326272</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[AlmaLinux 8 : tomcat (ALSA-2026:37137)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326271</link>
            <guid>https://www.tenable.com/plugins/nessus/326271</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326271 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote AlmaLinux host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote AlmaLinux 8 host has packages installed that are affected by multiple vulnerabilities as referenced in the ALSA-2026:37137 advisory.<br /></span><span><br /></span><span>    * Apache Tomcat: Apache Tomcat: Information disclosure via Padding Oracle vulnerability in     EncryptInterceptor (CVE-2026-29146)<br /></span><span>      * Apache Tomcat: Apache Tomcat: Missing Encryption of Sensitive Data due to EncryptInterceptor bypass     (CVE-2026-34486)<br /></span><span><br /></span><span><br /></span><span>    Bug Fix(es) and Enhancement(s):<br /></span><span><br /></span><span>      * Remove tomcat clustering JAR from RPM builds (JIRA:AlmaLinux-183993)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the AlmaLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326271">https://www.tenable.com/plugins/nessus/326271</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RockyLinux 9 : gstreamer1-plugins-good (RLSA-2026:37129)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326270</link>
            <guid>https://www.tenable.com/plugins/nessus/326270</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326270 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote RockyLinux host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote RockyLinux 9 host has packages installed that are affected by a vulnerability as referenced in the RLSA-2026:37129 advisory.<br /></span><span><br /></span><span>    * gstreamer1-plugins-good: GStreamer: Heap buffer overflow in WavPack decoder via integer overflow     (CVE-2026-53705)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the RockyLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326270">https://www.tenable.com/plugins/nessus/326270</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RockyLinux 10 : tomcat (RLSA-2026:36788)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326269</link>
            <guid>https://www.tenable.com/plugins/nessus/326269</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326269 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote RockyLinux host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote RockyLinux 10 host has packages installed that are affected by multiple vulnerabilities as referenced in the RLSA-2026:36788 advisory.<br /></span><span><br /></span><span>    * Apache Tomcat: Apache Tomcat: Information disclosure via Padding Oracle vulnerability in     EncryptInterceptor (CVE-2026-29146)<br /></span><span><br /></span><span>    * Apache Tomcat: Apache Tomcat: Missing Encryption of Sensitive Data due to EncryptInterceptor bypass     (CVE-2026-34486)<br /></span><span><br /></span><span>    Bug Fix(es) and Enhancement(s):<br /></span><span><br /></span><span>    * Remove tomcat clustering JAR from RPM builds (JIRA:Rocky Linux-168577)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the RockyLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326269">https://www.tenable.com/plugins/nessus/326269</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RockyLinux 9 : gstreamer1-plugins-bad-free (RLSA-2026:36834)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326268</link>
            <guid>https://www.tenable.com/plugins/nessus/326268</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326268 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote RockyLinux host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote RockyLinux 9 host has packages installed that are affected by multiple vulnerabilities as referenced in the RLSA-2026:36834 advisory.<br /></span><span><br /></span><span>    * gstreamer1-plugins-bad-free: GStreamer: Denial of service via AV1 tile_list_obu parser byte/bit     confusion (CVE-2026-52718)<br /></span><span><br /></span><span>    * gstreamer1-plugins-bad-free: GStreamer: Out-of-bounds read via JPEG segment length validation in VA     decoder (CVE-2026-52719)<br /></span><span><br /></span><span>    * gstreamer1-plugins-bad-free: GStreamer: Heap buffer overflow via crafted VNC server rectangle in librfb     (CVE-2026-52720)<br /></span><span><br /></span><span>    * gstreamer1-plugins-bad-free: GStreamer: Signed integer overflow in VMnc decoder cursor payload handling     (CVE-2026-52722)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the RockyLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326268">https://www.tenable.com/plugins/nessus/326268</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RockyLinux 10 : tomcat9 (RLSA-2026:36790)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326267</link>
            <guid>https://www.tenable.com/plugins/nessus/326267</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326267 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote RockyLinux host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote RockyLinux 10 host has packages installed that are affected by multiple vulnerabilities as referenced in the RLSA-2026:36790 advisory.<br /></span><span><br /></span><span>    * Apache Tomcat: Apache Tomcat: Information disclosure via Padding Oracle vulnerability in     EncryptInterceptor (CVE-2026-29146)<br /></span><span><br /></span><span>    * Apache Tomcat: Apache Tomcat: Missing Encryption of Sensitive Data due to EncryptInterceptor bypass     (CVE-2026-34486)<br /></span><span><br /></span><span>    Bug Fix(es) and Enhancement(s):<br /></span><span><br /></span><span>    * Remove tomcat clustering JAR from RPM builds (JIRA:Rocky Linux-185571)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the RockyLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326267">https://www.tenable.com/plugins/nessus/326267</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RockyLinux 10 : gstreamer1-plugins-bad-free (RLSA-2026:36749)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326266</link>
            <guid>https://www.tenable.com/plugins/nessus/326266</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326266 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote RockyLinux host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote RockyLinux 10 host has packages installed that are affected by multiple vulnerabilities as referenced in the RLSA-2026:36749 advisory.<br /></span><span><br /></span><span>    * gstreamer1-plugins-bad-free: GStreamer: Denial of service via AV1 tile_list_obu parser byte/bit     confusion (CVE-2026-52718)<br /></span><span><br /></span><span>    * gstreamer1-plugins-bad-free: GStreamer: Out-of-bounds read via JPEG segment length validation in VA     decoder (CVE-2026-52719)<br /></span><span><br /></span><span>    * gstreamer1-plugins-bad-free: GStreamer: Heap buffer overflow via crafted VNC server rectangle in librfb     (CVE-2026-52720)<br /></span><span><br /></span><span>    * gstreamer1-plugins-bad-free: GStreamer: Signed integer overflow in VMnc decoder cursor payload handling     (CVE-2026-52722)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the RockyLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326266">https://www.tenable.com/plugins/nessus/326266</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RockyLinux 9 : freerdp (RLSA-2026:37207)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326265</link>
            <guid>https://www.tenable.com/plugins/nessus/326265</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326265 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote RockyLinux host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote RockyLinux 9 host has packages installed that are affected by a vulnerability as referenced in the RLSA-2026:37207 advisory.<br /></span><span><br /></span><span>    * freerdp: FreeRDP: Out-of-bounds write in planar bitmap decoder allows arbitrary code execution     (CVE-2026-45700)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the RockyLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326265">https://www.tenable.com/plugins/nessus/326265</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RockyLinux 10 : gstreamer1-plugins-good (RLSA-2026:36675)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326264</link>
            <guid>https://www.tenable.com/plugins/nessus/326264</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326264 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote RockyLinux host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote RockyLinux 10 host has packages installed that are affected by a vulnerability as referenced in the RLSA-2026:36675 advisory.<br /></span><span><br /></span><span>    * gstreamer1-plugins-good: GStreamer: Heap buffer overflow in WavPack decoder via integer overflow     (CVE-2026-53705)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the RockyLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326264">https://www.tenable.com/plugins/nessus/326264</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RockyLinux 9 : libreoffice (RLSA-2026:36832)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326263</link>
            <guid>https://www.tenable.com/plugins/nessus/326263</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326263 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote RockyLinux host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote RockyLinux 9 host has packages installed that are affected by a vulnerability as referenced in the RLSA-2026:36832 advisory.<br /></span><span><br /></span><span>    * libreoffice: LibreOffice Calc: Arbitrary code execution via heap buffer overflow in formula compilation     (CVE-2026-8357)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the RockyLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326263">https://www.tenable.com/plugins/nessus/326263</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RockyLinux 9 : gstreamer1-plugins-ugly-free (RLSA-2026:36674)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326262</link>
            <guid>https://www.tenable.com/plugins/nessus/326262</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326262 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote RockyLinux host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote RockyLinux 9 host has packages installed that are affected by multiple vulnerabilities as referenced in the RLSA-2026:36674 advisory.<br /></span><span><br /></span><span>    * gstreamer1-plugins-ugly-free: GStreamer: Out-of-bounds read in RealMedia demuxer audio stream header     parser (CVE-2026-53703)<br /></span><span><br /></span><span>    * gstreamer1-plugins-ugly-free: GStreamer: Out-of-bounds read in RealMedia demuxer FILEINFO metadata     parser (CVE-2026-53704)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the RockyLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected gstreamer1-plugins-ugly-free, gstreamer1-plugins-ugly-free-debuginfo and / or gstreamer1-plugins- ugly-free-debugsource packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326262">https://www.tenable.com/plugins/nessus/326262</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RockyLinux 10 : podman (RLSA-2026:37072)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326261</link>
            <guid>https://www.tenable.com/plugins/nessus/326261</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326261 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote RockyLinux host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote RockyLinux 10 host has packages installed that are affected by multiple vulnerabilities as referenced in the RLSA-2026:37072 advisory.<br /></span><span><br /></span><span>    * golang.org/x/crypto/ssh: golang: golang.org/x/crypto/ssh: Denial of Service via crafted SSH certificate     (CVE-2026-39835)<br /></span><span><br /></span><span>    * golang.org/x/crypto/ssh: golang.org/x/crypto/ssh: Denial of Service via crafted public key with     excessive parameters (CVE-2026-39829)<br /></span><span><br /></span><span>    * golang.org/x/crypto/ssh: golang.org/x/crypto/ssh: Denial of Service via resource leak from unsolicited     SSH responses (CVE-2026-39830)<br /></span><span><br /></span><span>    * golang.org/x/crypto/ssh/agent: golang.org/x/crypto/ssh/agent: Security bypass due to improper handling     of key restrictions (CVE-2026-39832)<br /></span><span><br /></span><span>    * golang.org/x/crypto/ssh/knownhosts: golang: golang.org/x/crypto/ssh/knownhosts: Revocation bypass via     unchecked SignatureKey (CVE-2026-42508)<br /></span><span><br /></span><span>    * golang.org/x/net/html: golang: golang.org/x/net/html: Cross-Site Scripting via HTML parsing bypass     (CVE-2026-27136)<br /></span><span><br /></span><span>    * golang.org/x/net/html: golang.org/x/net/html: Arbitrary code execution via Cross-Site Scripting     (CVE-2026-25681)<br /></span><span><br /></span><span>    * podman: Podman: Information disclosure via malicious container image environment variables     (CVE-2026-57231)<br /></span><span><br /></span><span>    Bug Fix(es) and Enhancement(s):<br /></span><span><br /></span><span>    * podman does not clean up all files and leaves orphaned files consuming disk space [rhel-10.2.z]     (JIRA:Rocky Linux-173842)<br /></span><span><br /></span><span>    * [FJ10.2 Bug]: [REG]The podman-remote save command fails for rootless users. [rhel-10.2.z] (JIRA:Rocky     Linux-192440)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the RockyLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326261">https://www.tenable.com/plugins/nessus/326261</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RockyLinux 10 : nodejs24 (RLSA-2026:35841)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326260</link>
            <guid>https://www.tenable.com/plugins/nessus/326260</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326260 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote RockyLinux host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote RockyLinux 10 host has packages installed that are affected by multiple vulnerabilities as referenced in the RLSA-2026:35841 advisory.<br /></span><span><br /></span><span>    * ip-address: ip-address: Cross-site scripting via improper HTML escaping of untrusted input     (CVE-2026-42338)<br /></span><span><br /></span><span>    * undici: undici: Denial of Service due to unbounded memory growth via WebSocket frames (CVE-2026-12151)<br /></span><span><br /></span><span>    * undici: Undici: Information disclosure due to improper cache-control header parsing (CVE-2026-9678)<br /></span><span><br /></span><span>    * undici: Undici: Response queue poisoning on reused keep-alive sockets can lead to incorrect response     delivery. (CVE-2026-6733)<br /></span><span><br /></span><span>    * undici: undici: Weakening of cookie SameSite policy due to incorrect parsing of Set-Cookie header     (CVE-2026-11525)<br /></span><span><br /></span><span>    * undici: undici: Man-in-the-Middle attack via ignored TLS options with SOCKS5 proxy (CVE-2026-9697)<br /></span><span><br /></span><span>    * undici: undici: Information disclosure and data integrity issues due to incorrect Socks5ProxyAgent     connection routing (CVE-2026-6734)<br /></span><span><br /></span><span>    * nodejs: Node.js: Denial of Service via unlimited HTTP/2 ORIGIN frames (CVE-2026-48619)<br /></span><span><br /></span><span>    * nodejs: Node.js: Silent authority rebinding due to embedded-nul hostnames in TLS handling     (CVE-2026-48930)<br /></span><span><br /></span><span>    * nodejs: Node.js: Unauthorized file metadata modification (CVE-2026-48935)<br /></span><span><br /></span><span>    * nodejs: Node.js WebCrypto: Denial of Service via large input to subtle.encrypt() (CVE-2026-48933)<br /></span><span><br /></span><span>    * nodejs: Node.js: Certification validation bypass in TLS host verification (CVE-2026-48934)<br /></span><span><br /></span><span>    * Node.js: Node.js: Trust-policy bypass due to hostname matching inconsistency (CVE-2026-48928)<br /></span><span><br /></span><span>    * nodejs: Node.js: Information disclosure of proxy credentials via proxy tunnel error handling     (CVE-2026-48615)<br /></span><span><br /></span><span>    * nodejs: Node.js: Authentication bypass due to TLS hostname handling and unicode dot separator mismatch     (CVE-2026-48618)<br /></span><span><br /></span><span>    Bug Fix(es) and Enhancement(s):<br /></span><span><br /></span><span>    * nodejs24: Rebase to the latest Node.js 24 release [rhel-10.2.z] (JIRA:Rocky Linux-186582)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the RockyLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326260">https://www.tenable.com/plugins/nessus/326260</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RockyLinux 9 : buildah (RLSA-2026:37410)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326259</link>
            <guid>https://www.tenable.com/plugins/nessus/326259</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326259 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote RockyLinux host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote RockyLinux 9 host has packages installed that are affected by multiple vulnerabilities as referenced in the RLSA-2026:37410 advisory.<br /></span><span><br /></span><span>    * golang.org/x/crypto/ssh: golang: golang.org/x/crypto/ssh: Denial of Service via crafted SSH certificate     (CVE-2026-39835)<br /></span><span><br /></span><span>    * golang.org/x/crypto/ssh/agent: golang.org/x/crypto/ssh/agent: Security bypass due to improper handling     of key restrictions (CVE-2026-39832)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the RockyLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326259">https://www.tenable.com/plugins/nessus/326259</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RockyLinux 10 : aardvark-dns (RLSA-2026:36782)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326258</link>
            <guid>https://www.tenable.com/plugins/nessus/326258</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326258 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote RockyLinux host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote RockyLinux 10 host has packages installed that are affected by a vulnerability as referenced in the RLSA-2026:36782 advisory.<br /></span><span><br /></span><span>    * aardvark-dns: Aardvark-dns: Denial of Service via truncated TCP DNS query and connection reset     (CVE-2026-35406)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the RockyLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected aardvark-dns, aardvark-dns-debuginfo and / or aardvark-dns-debugsource packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326258">https://www.tenable.com/plugins/nessus/326258</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RockyLinux 9 : tomcat (RLSA-2026:36879)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326257</link>
            <guid>https://www.tenable.com/plugins/nessus/326257</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326257 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote RockyLinux host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote RockyLinux 9 host has packages installed that are affected by multiple vulnerabilities as referenced in the RLSA-2026:36879 advisory.<br /></span><span><br /></span><span>    * Apache Tomcat: Apache Tomcat: Information disclosure via Padding Oracle vulnerability in     EncryptInterceptor (CVE-2026-29146)<br /></span><span><br /></span><span>    * Apache Tomcat: Apache Tomcat: Missing Encryption of Sensitive Data due to EncryptInterceptor bypass     (CVE-2026-34486)<br /></span><span><br /></span><span>    Bug Fix(es) and Enhancement(s):<br /></span><span><br /></span><span>    * Remove tomcat clustering JAR from RPM builds (JIRA:Rocky Linux-183992)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the RockyLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326257">https://www.tenable.com/plugins/nessus/326257</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RockyLinux 10 : gstreamer1-plugins-ugly-free (RLSA-2026:36673)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326256</link>
            <guid>https://www.tenable.com/plugins/nessus/326256</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326256 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote RockyLinux host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote RockyLinux 10 host has packages installed that are affected by a vulnerability as referenced in the RLSA-2026:36673 advisory.<br /></span><span><br /></span><span>    * gstreamer1-plugins-ugly-free: GStreamer: Out-of-bounds read in RealMedia demuxer audio stream header     parser (CVE-2026-53703)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the RockyLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected gstreamer1-plugins-ugly-free, gstreamer1-plugins-ugly-free-debuginfo and / or gstreamer1-plugins- ugly-free-debugsource packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326256">https://www.tenable.com/plugins/nessus/326256</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RockyLinux 9 : oci-seccomp-bpf-hook (RLSA-2026:36617)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326255</link>
            <guid>https://www.tenable.com/plugins/nessus/326255</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326255 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote RockyLinux host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote RockyLinux 9 host has packages installed that are affected by a vulnerability as referenced in the RLSA-2026:36617 advisory.<br /></span><span><br /></span><span>    * net: golang: Go net package: Denial of Service via long CNAME response in LookupCNAME (CVE-2026-33811)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the RockyLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected oci-seccomp-bpf-hook, oci-seccomp-bpf-hook-debuginfo and / or oci-seccomp-bpf-hook-debugsource packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326255">https://www.tenable.com/plugins/nessus/326255</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RockyLinux 9 : podman (RLSA-2026:37123)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326254</link>
            <guid>https://www.tenable.com/plugins/nessus/326254</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326254 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote RockyLinux host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote RockyLinux 9 host has packages installed that are affected by multiple vulnerabilities as referenced in the RLSA-2026:37123 advisory.<br /></span><span><br /></span><span>    * golang.org/x/crypto/ssh: golang: golang.org/x/crypto/ssh: Denial of Service via crafted SSH certificate     (CVE-2026-39835)<br /></span><span><br /></span><span>    * golang.org/x/crypto/ssh: golang.org/x/crypto/ssh: Denial of Service via crafted public key with     excessive parameters (CVE-2026-39829)<br /></span><span><br /></span><span>    * golang.org/x/crypto/ssh/agent: golang.org/x/crypto/ssh/agent: Security bypass due to improper handling     of key restrictions (CVE-2026-39832)<br /></span><span><br /></span><span>    * golang.org/x/crypto/ssh/knownhosts: golang: golang.org/x/crypto/ssh/knownhosts: Revocation bypass via     unchecked SignatureKey (CVE-2026-42508)<br /></span><span><br /></span><span>    * golang.org/x/net/html: golang: golang.org/x/net/html: Cross-Site Scripting via HTML parsing bypass     (CVE-2026-27136)<br /></span><span><br /></span><span>    * golang.org/x/net/html: golang.org/x/net/html: Arbitrary code execution via Cross-Site Scripting     (CVE-2026-25681)<br /></span><span><br /></span><span>    * podman: Podman: Information disclosure via malicious container image environment variables     (CVE-2026-57231)<br /></span><span><br /></span><span>    Bug Fix(es) and Enhancement(s):<br /></span><span><br /></span><span>    * podman does not clean up all files and leaves orphaned files consuming disk space [rhel-9.8.z]     (JIRA:Rocky Linux-173988)<br /></span><span><br /></span><span>    * [FJ9.8 Bug]: [REG]The podman-remote save command fails for rootless users. [rhel-9.8.z] (JIRA:Rocky     Linux-192439)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the RockyLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326254">https://www.tenable.com/plugins/nessus/326254</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Ubuntu 14.04 LTS / 16.04 LTS / 18.04 LTS / 20.04 LTS / 24.04 LTS / 26.04 LTS : curl vulnerabilities (USN-8525-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326253</link>
            <guid>https://www.tenable.com/plugins/nessus/326253</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326253 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Ubuntu host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Ubuntu 14.04 LTS / 16.04 LTS / 18.04 LTS / 20.04 LTS / 24.04 LTS / 26.04 LTS host has packages installed that are affected by multiple vulnerabilities as referenced in the USN-8525-1 advisory.<br /></span><span><br /></span><span>    Harry Sintonen discovered that curl incorrectly handled credentials when following HTTP redirects in     conjunction with .netrc files. An attacker could possibly use this issue to obtain sensitive information.<br /></span><span>    This issue only affected Ubuntu 14.04 LTS, Ubuntu 16.04 LTS, and Ubuntu 18.04 LTS. (CVE-2024-11053)<br /></span><span><br /></span><span>    Hiroki Kurosawa discovered that curl incorrectly handled OCSP stapling responses. A remote attacker could     possibly use this issue to obtain sensitive information. This issue only affected Ubuntu 16.04 LTS and     Ubuntu 18.04 LTS. (CVE-2024-8096)<br /></span><span><br /></span><span>    Joshua Rogers discovered that curl had a use-after-free vulnerability when resetting and cleaning up     HTTP/2 stream handles. An attacker could possibly use this issue to cause a denial of service or execute     arbitrary code. This issue only affected Ubuntu 24.04 LTS, Ubuntu 25.04, and Ubuntu 25.10.<br /></span><span>    (CVE-2026-10536)<br /></span><span><br /></span><span>    Quac Tran and Ngoc Hieu discovered that curl incorrectly reused connections when switching authentication     methods to the same host. An attacker could possibly use this issue to obtain sensitive information or     perform unauthorized actions. This issue only affected Ubuntu 20.04 LTS. (CVE-2026-5545)<br /></span><span><br /></span><span>    Osama Hamad discovered that curl incorrectly reused SMB connections when the target share differed between     transfers. An attacker could possibly use this issue to obtain sensitive information. This issue only     affected Ubuntu 16.04 LTS, Ubuntu 18.04 LTS, and Ubuntu 20.04 LTS. (CVE-2026-5773)<br /></span><span><br /></span><span>    Muhamad Arga Reksapati discovered that curl incorrectly forwarded Digest proxy authentication credentials     to a different proxy host. An attacker could possibly use this issue to obtain sensitive information. This     issue only affected Ubuntu 18.04 LTS and Ubuntu 20.04 LTS. (CVE-2026-7168)<br /></span><span><br /></span><span>    It was discovered that curl incorrectly skipped SSH host verification options when using schemeless URLs     with --proto-default. An attacker could possibly use this issue to perform machine-in-the-middle attacks.<br /></span><span>    This issue only affected Ubuntu 25.04 and Ubuntu 25.10. (CVE-2026-12064)<br /></span><span><br /></span><span>    It was discovered that curl did not enforce an upper bound on memory allocated for unacknowledged     WebSocket PING frames. A remote attacker could possibly use this issue to cause a denial of service. This     issue only affected Ubuntu 25.10. (CVE-2026-11586)<br /></span><span><br /></span><span>    It was discovered that curl could stall indefinitely when a malicious HTTP/3 server sent a continuous     stream of empty UDP datagrams. A remote attacker could possibly use this issue to cause a denial of     service. This issue only affected Ubuntu 25.10. (CVE-2026-11352)<br /></span><span><br /></span><span>    It was discovered that curl could incorrectly continue trusting a native platform CA store after an     application switched the handle to use custom CA material. An attacker could possibly use this issue to     obtain sensitive information. This issue only affected Ubuntu 25.10. (CVE-2026-11564)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Ubuntu security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326253">https://www.tenable.com/plugins/nessus/326253</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Ubuntu 16.04 LTS / 18.04 LTS / 20.04 LTS / 22.04 LTS / 24.04 LTS / 26.04 LTS : libsoup vulnerabilities (USN-8523-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326252</link>
            <guid>https://www.tenable.com/plugins/nessus/326252</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326252 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Ubuntu host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Ubuntu 16.04 LTS / 18.04 LTS / 20.04 LTS / 22.04 LTS / 24.04 LTS / 26.04 LTS host has packages installed that are affected by multiple vulnerabilities as referenced in the USN-8523-1 advisory.<br /></span><span><br /></span><span>    Eric Su and Samuel Dainard discovered that libsoup incorrectly handled content with zero-length resources.<br /></span><span>    An attacker could possibly use this issue to trigger a buffer over-read, resulting in information     disclosure or a denial of service. This issue only affected Ubuntu 18.04 LTS, Ubuntu 20.04 LTS, Ubuntu     22.04 LTS, Ubuntu 24.04 LTS, Ubuntu 25.10, and Ubuntu 26.04 LTS. (CVE-2026-2369)<br /></span><span><br /></span><span>    Kona Arctic discovered that libsoup did not properly protect sensitive cookies when establishing HTTPS     tunnels through an HTTP proxy. An attacker could possibly use this issue to intercept session cookies,     resulting in session hijacking or user impersonation. (CVE-2026-5119)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Ubuntu security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326252">https://www.tenable.com/plugins/nessus/326252</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Ubuntu 16.04 LTS / 18.04 LTS / 20.04 LTS / 22.04 LTS / 24.04 LTS : Go Cryptography vulnerabilities (USN-8519-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326251</link>
            <guid>https://www.tenable.com/plugins/nessus/326251</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326251 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Ubuntu host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Ubuntu 16.04 LTS / 18.04 LTS / 20.04 LTS / 22.04 LTS / 24.04 LTS host has packages installed that are affected by multiple vulnerabilities as referenced in the USN-8519-1 advisory.<br /></span><span><br /></span><span>    Jakub Ciolek and Nicola Murino discovered that Go Cryptography incorrectly handled SSH agent responses. An     attacker could use this to cause a denial of service. (CVE-2025-47913)<br /></span><span><br /></span><span>    Yuichi Watanabe discovered that Go Cryptography incorrectly handled SSH key exchanges. An attacker could     use this to cause a denial of service. (CVE-2025-22869)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Ubuntu security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected golang-go.crypto-dev and / or golang-golang-x-crypto-dev packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326251">https://www.tenable.com/plugins/nessus/326251</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Ubuntu 26.04 LTS : libheif vulnerabilities (USN-8526-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326250</link>
            <guid>https://www.tenable.com/plugins/nessus/326250</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326250 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Ubuntu host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Ubuntu 26.04 LTS host has packages installed that are affected by multiple vulnerabilities as referenced in the USN-8526-1 advisory.<br /></span><span><br /></span><span>    Xianrui Dong discovered that libheif had an out-of-bounds read in its HEIF sequence track parser. An     attacker could possibly use this issue to cause a denial of service or obtain sensitive information. This     issue only affected Ubuntu 26.04 LTS. (CVE-2026-47254)<br /></span><span><br /></span><span>    Junyi Liu discovered that libheif had a null pointer dereference in its image tiling interface. An     attacker could possibly use this issue to cause a denial of service. (CVE-2026-47709)<br /></span><span><br /></span><span>    Calvin Young and Enoch Chow discovered that libheif had an integer overflow in its inline mask size     calculation. An attacker could possibly use this issue to cause a denial of service or obtain sensitive     information. (CVE-2026-47714)<br /></span><span><br /></span><span>    Ariel Koren discovered that libheif had an integer underflow in its grid image tile coordinate transform.<br /></span><span>    An attacker could possibly use this issue to cause a denial of service or obtain sensitive information.<br /></span><span>    (CVE-2026-48029)<br /></span><span><br /></span><span>    It was discovered that libheif had a missing bound check in its HEIF sequence parser, allowing unbounded     heap allocation. An attacker could possibly use this issue to cause a denial of service. (CVE-2026-50142)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Ubuntu security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326250">https://www.tenable.com/plugins/nessus/326250</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Ubuntu 22.04 LTS / 24.04 LTS / 26.04 LTS : Libidn vulnerability (USN-8521-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326249</link>
            <guid>https://www.tenable.com/plugins/nessus/326249</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326249 with Low Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Ubuntu host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>The remote Ubuntu 22.04 LTS / 24.04 LTS / 26.04 LTS host has packages installed that are affected by a vulnerability as referenced in the USN-8521-1 advisory.<br /></span><span><br /></span><span>    It was discovered that Libidn incorrectly handled certain internationalized domain name strings. An     attacker could possibly use this issue to obtain sensitive information or cause a denial of service.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Ubuntu security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326249">https://www.tenable.com/plugins/nessus/326249</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Ubuntu 22.04 LTS / 24.04 LTS / 26.04 LTS : LibRaw vulnerabilities (USN-8522-1)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326248</link>
            <guid>https://www.tenable.com/plugins/nessus/326248</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326248 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Ubuntu host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Ubuntu 22.04 LTS / 24.04 LTS / 26.04 LTS host has packages installed that are affected by multiple vulnerabilities as referenced in the USN-8522-1 advisory.<br /></span><span><br /></span><span>    It was discovered that LibRaw incorrectly handled certain Nikon RAW image files. An attacker could     possibly use this issue to cause LibRaw to crash, resulting in a denial of service. (CVE-2026-5342)<br /></span><span><br /></span><span>    It was discovered that LibRaw had an integer overflow in its DNG image loader. An attacker could possibly     use this issue to cause LibRaw to crash, resulting in a denial of service, or execute arbitrary code.<br /></span><span>    (CVE-2026-20884)<br /></span><span><br /></span><span>    It was discovered that LibRaw incorrectly handled certain X3F thumbnail data. An attacker could possibly     use this issue to cause LibRaw to crash, resulting in a denial of service, or execute arbitrary code.<br /></span><span>    (CVE-2026-20889)<br /></span><span><br /></span><span>    It was discovered that LibRaw had a heap-based buffer overflow in its lossless JPEG image loader. An     attacker could possibly use this issue to cause LibRaw to crash, resulting in a denial of service, or     execute arbitrary code. (CVE-2026-21413)<br /></span><span><br /></span><span>    It was discovered that LibRaw had an integer overflow in its uncompressed floating-point DNG image loader.<br /></span><span>    An attacker could possibly use this issue to cause LibRaw to crash, resulting in a denial of service, or     execute arbitrary code. This issue only affected Ubuntu 24.04 LTS and Ubuntu 25.04. (CVE-2026-24450)<br /></span><span><br /></span><span>    It was discovered that LibRaw had a heap-based buffer overflow in its X3F Huffman decoder. An attacker     could possibly use this issue to cause LibRaw to crash, resulting in a denial of service, or execute     arbitrary code. (CVE-2026-24660)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Ubuntu security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326248">https://www.tenable.com/plugins/nessus/326248</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Devolutions Server 2026.2.4.0 <= 2026.2.9.0 MFA Bypass (DEVO-2026-0023)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326247</link>
            <guid>https://www.tenable.com/plugins/nessus/326247</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326247 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The Devolutions Server instance installed on the remote host is affected by an authentication bypass vulnerability.<br /></span>
      <h3>Description</h3>
      <span>The version of Devolutions Server installed on the remote host is 2026.2.4.0 prior or equal to 2026.2.9.0 and is, therefore, affected by an authentication bypass vulnerability:<br /></span><span><br /></span><span>  - Improper enforcement of a mandatory multi-factor authentication policy in Devolutions Server 2026.2.9.0 allows an     attacker with valid user credentials to bypass the MFA Required policy and authenticate without completing     multi-factor authentication. The problem occurs when DVLS encounters an invalid default MFA value.<br /></span><span>    (CVE-2026-14536)<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade to Devolutions Server version 2026.2.11.0 or later.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326247">https://www.tenable.com/plugins/nessus/326247</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[GStreamer < 1.28.5 Multiple Vulnerabilities]]></title>
            <link>https://www.tenable.com/plugins/nessus/326246</link>
            <guid>https://www.tenable.com/plugins/nessus/326246</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326246 with High Severity</p>
      <h3>Synopsis</h3>
      <span>An application installed on the remote host is affected by multiple vulnerabilities.<br /></span>
      <h3>Description</h3>
      <span>The version of GStreamer installed on the remote host is prior to 1.28.5. It is, therefore, affected by multiple vulnerabilities:<br /></span><span><br /></span><span>  - A signed integer overflow vulnerability was found in GStreamer's VMnc decoder. A crafted VMnc stream     with large cursor dimensions can overflow signed integer payload-size arithmetic, bypassing a length     check and leading to out-of-bounds reads. A remote attacker could trick a user into opening a specially     crafted VMnc file, potentially causing a crash or information disclosure. (CVE-2026-52722)<br /></span><span><br /></span><span>  - Multiple out-of-bounds read vulnerabilities were found in GStreamer's pcapparse element. Malformed PCAP     records can trigger reads beyond buffer boundaries during IPv4/TCP header parsing. This element is     primarily used in debugging pipelines, limiting real-world exposure. A local attacker could trick a user     into processing a specially crafted PCAP file, potentially leading to a crash or information disclosure.<br /></span><span>    (CVE-2026-52721)<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade to GStreamer version 1.28.5, or later.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326246">https://www.tenable.com/plugins/nessus/326246</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[GStreamer < 1.28.4 Multiple Vulnerabilities]]></title>
            <link>https://www.tenable.com/plugins/nessus/326245</link>
            <guid>https://www.tenable.com/plugins/nessus/326245</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326245 with High Severity</p>
      <h3>Synopsis</h3>
      <span>An application installed on the remote host is affected by multiple vulnerabilities.<br /></span>
      <h3>Description</h3>
      <span>The version of GStreamer installed on the remote host is prior to 1.28.4. It is, therefore, affected by multiple vulnerabilities:<br /></span><span><br /></span><span>  - Multiple vulnerabilities were found in the RealMedia demuxer (rmdemux) and RealAudio demuxer (rademux)     elements in gst-plugins-ugly. The demuxers lacked proper bounds validation when parsing file headers,     stream properties, and audio packets, allowing out-of-bounds reads beyond the boundaries of the provided     data buffers. Additionally, the use of signed integer types for size and length parameters could lead to     integer overflows during size calculations and index operations. A malicious third party could trigger     out-of-bounds reads or integer overflows by providing a crafted RealMedia file, potentially resulting in     a crash, denial of service, or information disclosure. (CVE-2026-53703, CVE-2026-53704)<br /></span><span><br /></span><span>  - A flaw was found in GStreamer's WavPack audio decoder in gst-plugins-good. When processing a specially     crafted WavPack file, an integer overflow in the buffer size calculation (4 * block_samples * channels)     in gst_wavpack_dec_handle_frame() causes a very small heap allocation. The WavPack library then writes     decoded audio samples far beyond the allocated buffer, resulting in heap memory corruption. This affects     both 32-bit and 64-bit systems since the arithmetic is performed in 32-bit integers before promotion to     the allocation size type. A remote attacker could use this flaw to crash an application or potentially     execute arbitrary code by convincing a user to open a malicious WavPack audio file. (CVE-2026-53705)<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade to GStreamer version 1.28.4, or later.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326245">https://www.tenable.com/plugins/nessus/326245</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[OpenSSH < 10.4 Multiple Vulnerabilities]]></title>
            <link>https://www.tenable.com/plugins/nessus/326244</link>
            <guid>https://www.tenable.com/plugins/nessus/326244</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326244 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The SSH server running on the remote host is affected by multiple vulnerabilities.<br /></span>
      <h3>Description</h3>
      <span>The version of OpenSSH installed on the remote host is prior to 10.4. It is, therefore, affected by multiple vulnerabilities, including:<br /></span><span><br /></span><span>  - ssh in OpenSSH before 10.4 can have a use-after-free when a server changes its host key during a key     re-exchange. This outcome occurs only on the client side. (CVE-2026-60002)<br /></span><span><br /></span><span>  - sshd in OpenSSH before 10.4 does not always honor the minimum authentication delay. (CVE-2026-60001)<br /></span><span><br /></span><span>  - In sshd in OpenSSH before 10.4, DisableForwarding=yes was supposed to take precedence over     PermitTunnel=yes, but did not. (CVE-2026-59999)<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade to OpenSSH version 10.4 or later.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326244">https://www.tenable.com/plugins/nessus/326244</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Langflow < 1.9.2 Multiple Vulnerabilities]]></title>
            <link>https://www.tenable.com/plugins/nessus/326243</link>
            <guid>https://www.tenable.com/plugins/nessus/326243</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326243 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote host is affected by multiple vulnerabilities.<br /></span>
      <h3>Description</h3>
      <span>The version of Langflow installed on the remote host is prior to 1.9.2. It is, therefore, affected by multiple vulnerabilities:<br /></span><span><br /></span><span>  - The Shareable Playground feature enables execution of workflows by unauthenticated users.<br /></span><span>    When the route /api/v1/build_public_tmp executes a flow, it allows providing arbitrary     custom Python code as the nodes code inside the JSON payload, resulting in remote code     execution. (CVE-2026-48519)<br /></span><span><br /></span><span>  - By controlling files that are digested into the RAG, an attacker can direct components     based on BaseFileComponent to read any file on the filesystem by absolute path. Affected     components include Docling, Read File, NVIDIA Retriever Extraction, Video File, and     Unstructured API. (CVE-2026-55447)<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade to Langflow version 1.9.2 or later.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326243">https://www.tenable.com/plugins/nessus/326243</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Langflow < 1.9.0 Missing Authorization (CVE-2026-33760)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326242</link>
            <guid>https://www.tenable.com/plugins/nessus/326242</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326242 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote host is affected by a missing authorization vulnerability.<br /></span>
      <h3>Description</h3>
      <span>The version of Langflow installed on the remote host is prior to 1.9.0. It is, therefore, affected by a missing authorization vulnerability:<br /></span><span><br /></span><span>  - The /api/v1/monitor router exposes 7 endpoints that perform read, write, and delete     operations on user-owned resources without verifying that the authenticated requester owns     the targeted resource. Any authenticated user can read, modify, rename, or permanently     delete another user's messages, sessions, build artifacts, and LLM transaction logs by     supplying the target's resource ID or flow_id. (CVE-2026-33760)<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade to Langflow version 1.9.0 or later.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326242">https://www.tenable.com/plugins/nessus/326242</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Langflow < 1.9.1 Multiple Vulnerabilities]]></title>
            <link>https://www.tenable.com/plugins/nessus/326241</link>
            <guid>https://www.tenable.com/plugins/nessus/326241</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326241 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote host is affected by multiple vulnerabilities.<br /></span>
      <h3>Description</h3>
      <span>The version of Langflow installed on the remote host is prior to 1.9.1. It is, therefore, affected by multiple vulnerabilities:<br /></span><span><br /></span><span>  - An Insecure Direct Object Reference (IDOR) vulnerability in the /api/v1/responses     endpoint allows an authenticated attacker to execute any flow belonging to another user     by specifying the victim's flow ID in the request. (CVE-2026-55255)<br /></span><span><br /></span><span>  - Unauthenticated users can upload any amount of data to the server without any limitations,     requiring only network access to Langflow. This can lead to space exhaustion on the server.<br /></span><span>    In addition, the absolute path of the uploaded file is reported in the response, which is     an information leak that can assist in chaining other attack primitives. (CVE-2026-55450)<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade to Langflow version 1.9.1 or later.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326241">https://www.tenable.com/plugins/nessus/326241</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Langflow < 1.0.19 DoS (CVE-2026-55446)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326240</link>
            <guid>https://www.tenable.com/plugins/nessus/326240</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326240 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote host is affected by a denial of service vulnerability.<br /></span>
      <h3>Description</h3>
      <span>The version of Langflow installed on the remote host is prior to 1.0.19. It is, therefore, affected by a denial of service vulnerability:<br /></span><span><br /></span><span>  - An attacker can send a /api/v1/files/upload/ request without any authentication and abuse     a very long multipart form boundary to make the Langflow application unusable for all users     for an indefinite amount of time. (CVE-2026-55446)<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade to Langflow version 1.0.19 or later.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326240">https://www.tenable.com/plugins/nessus/326240</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[libcurl 8.16.0 < 8.21.0 WebSocket Auto-PONG Memory Exhaustion (CVE-2026-11586)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326239</link>
            <guid>https://www.tenable.com/plugins/nessus/326239</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326239 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote host has a library that is affected by a denial of service vulnerability.<br /></span>
      <h3>Description</h3>
      <span>The version of libcurl installed on the remote host is 8.16.0 prior to 8.21.0. It is, therefore, affected by a denial of service vulnerability:<br /></span><span><br /></span><span>  - By default, curl automatically responds to WebSocket PING frames. Because curl lacks an upper bound on     memory allocation for unacknowledged frames, a malicious server can exhaust all available memory by     flooding curl with rapid, sequential PING messages. (CVE-2026-11586)<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade libcurl to version 8.21.0 or later.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326239">https://www.tenable.com/plugins/nessus/326239</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[libcurl 8.18.0 < 8.21.0 QUIC UDP Denial of Service (CVE-2026-11352)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326238</link>
            <guid>https://www.tenable.com/plugins/nessus/326238</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326238 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote host has a library that is affected by a denial of service vulnerability.<br /></span>
      <h3>Description</h3>
      <span>The version of libcurl installed on the remote host is 8.18.0 prior to 8.21.0. It is, therefore, affected by a denial of service vulnerability:<br /></span><span><br /></span><span>  - An issue in curl's QUIC UDP receive function allows a malicious HTTP/3 server to trigger a remote denial     of service against a curl or libcurl client. Because the helper function discards zero-length UDP     datagrams before counting them toward the per-call packet budget, a connected QUIC peer can continuously     stream empty datagrams to indefinitely stall the client. (CVE-2026-11352)<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade libcurl to version 8.21.0 or later.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326238">https://www.tenable.com/plugins/nessus/326238</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[libcurl 8.11.0 < 8.21.0 HTTP/3 Early Data Information Disclosure (CVE-2026-9545)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326237</link>
            <guid>https://www.tenable.com/plugins/nessus/326237</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326237 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote host has a library that is affected by an information disclosure vulnerability.<br /></span>
      <h3>Description</h3>
      <span>The version of libcurl installed on the remote host is 8.11.0 prior to 8.21.0. It is, therefore, affected by an information disclosure vulnerability:<br /></span><span><br /></span><span>  - When libcurl returns to a hostname with a cached SSL session and early data enabled, libcurl might send     the request bytes before enforcing the certificate verification failure, potentially leaking sensitive     information. (CVE-2026-9545)<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade libcurl to version 8.21.0 or later.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326237">https://www.tenable.com/plugins/nessus/326237</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[libcurl 7.46.0 < 8.21.0 Super Cookie PSL Bypass (CVE-2026-8924)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326236</link>
            <guid>https://www.tenable.com/plugins/nessus/326236</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326236 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote host has a library that is affected by a cookie injection vulnerability.<br /></span>
      <h3>Description</h3>
      <span>The version of libcurl installed on the remote host is 7.46.0 prior to 8.21.0. It is, therefore, affected by a cookie injection vulnerability:<br /></span><span><br /></span><span>  - A flaw in curl's cookie parsing logic allows a malicious HTTP server to set 'super cookies' that bypass     the Public Suffix List check. This enables an attacker-controlled origin to inject cookies that curl     subsequently scopes and transmits to unrelated third-party domains. (CVE-2026-8924)<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade libcurl to version 8.21.0 or later.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326236">https://www.tenable.com/plugins/nessus/326236</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[libcurl 8.11.1 < 8.21.0 Netrc Wrong User Password Leak (CVE-2026-8926)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326235</link>
            <guid>https://www.tenable.com/plugins/nessus/326235</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326235 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote host has a library that is affected by a credential leak vulnerability.<br /></span>
      <h3>Description</h3>
      <span>The version of libcurl installed on the remote host is 8.11.1 prior to 8.21.0. It is, therefore, affected by a credential leak vulnerability:<br /></span><span><br /></span><span>  - When asking curl to use a .netrc file to find credentials and at the same time specifying a URL with a     username (without a password), curl could wrongly get and use the password for another user set in the     .netrc file for that host if such a one exists and there is no match for the specified user.<br /></span><span>    (CVE-2026-8926)<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade libcurl to version 8.21.0 or later.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326235">https://www.tenable.com/plugins/nessus/326235</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[libcurl 8.15.0 < 8.21.0 SASL Double-Free (CVE-2026-8925)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326234</link>
            <guid>https://www.tenable.com/plugins/nessus/326234</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326234 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote host has a library that is affected by a double-free vulnerability.<br /></span>
      <h3>Description</h3>
      <span>The version of libcurl installed on the remote host is 8.15.0 prior to 8.21.0. It is, therefore, affected by a double-free vulnerability:<br /></span><span><br /></span><span>  - The curl logic that works with SASL authentication could end up cleaning up the GSASL context twice     without clearing the pointer in between, making it free() the same pointer twice. (CVE-2026-8925)<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade libcurl to version 8.21.0 or later.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326234">https://www.tenable.com/plugins/nessus/326234</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[libcurl 7.30.0 < 8.21.0 Wrong STARTTLS Connection Reuse (CVE-2026-8286)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326233</link>
            <guid>https://www.tenable.com/plugins/nessus/326233</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326233 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote host has a library that is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>The version of libcurl installed on the remote host is 7.30.0 prior to 8.21.0. It is, therefore, affected by a vulnerability:<br /></span><span><br /></span><span>  - A vulnerability exists where a new transfer that uses STARTTLS to upgrade the connection might reuse an     existing live connection even though the TLS configuration mismatches so it should not. (CVE-2026-8286)<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade libcurl to version 8.21.0 or later.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326233">https://www.tenable.com/plugins/nessus/326233</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Fedora 43 : php (2026-f4272d87ef)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326232</link>
            <guid>https://www.tenable.com/plugins/nessus/326232</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326232 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Fedora host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Fedora 43 host has a package installed that is affected by a vulnerability as referenced in the FEDORA-2026-f4272d87ef advisory.<br /></span><span><br /></span><span>    **PHP version 8.4.23** (03 Jul 2026)<br /></span><span><br /></span><span>    **Core:**<br /></span><span><br /></span><span>    * Fixed bug [GH-22280](https://github.com/php/php-src/issues/22280) (Incorrect compile error for goto to     label preceding try/finally block). (Pratik Bhujel)<br /></span><span><br /></span><span>    **BCMath:**<br /></span><span><br /></span><span>    * Fixed issues with oversized allocations and signed overflow in bcround() and BcMath\Number::round().<br /></span><span>    (edorian)<br /></span><span><br /></span><span>    **Date:**<br /></span><span><br /></span><span>    * Fix incorrect recurrence check of DatePeriod::createFromISO8601String(). (ndossche)<br /></span><span><br /></span><span>    **DOM:**<br /></span><span><br /></span><span>    * Fix [GH-22219](https://github.com/php/php-src/issues/22219) (Dom\XMLDocument::schemaValidate fails to     resolve xs:QName with prefix from imported schema). (David Carlier)<br /></span><span><br /></span><span>    **Exif:**<br /></span><span><br /></span><span>    * Read correct value for single and double tags. (ndossche)<br /></span><span><br /></span><span>    **GD:**<br /></span><span><br /></span><span>    * Fixed bug [GH-22121](https://github.com/php/php-src/issues/22121) (Double free in gdImageSetStyle()     after overflow-triggered early return). (iliaal)<br /></span><span>    * Fixed bug [GH-19666](https://github.com/php/php-src/issues/19666) (imageconvolution() unexpected nan     filter value). (David Carlier)<br /></span><span>    * Fixed bug [GH-19739](https://github.com/php/php-src/issues/19739) (imageellipse/imagefilledellipse     overflow). (David Carlier)<br /></span><span>    * Fixed bug [GH-19730](https://github.com/php/php-src/issues/19730) (imageaffine overflow). (David     Carlier)<br /></span><span><br /></span><span>    **Intl:**<br /></span><span><br /></span><span>    * Fix incorrect argument positions for uninitialized calendar arguments in IntlCalendar::equals(),     ::before(), ::after(), and ::isEquivalentTo(), and for invalid start/end arguments in     transliterator_transliterate(). (Weilin Du)<br /></span><span>    * Fixed IntlTimeZone::getDisplayName() to synchronize object error state for invalid display types.<br /></span><span>    (Weilin Du)<br /></span><span>    * Fixed Spoofchecker restriction-level APIs to only be exposed with ICU 53 and later. (Graham Campbell)<br /></span><span><br /></span><span>    **mysqli:**<br /></span><span><br /></span><span>    * Fix stmt->query leak in mysqli_execute_query() validation errors. (David Carlier)<br /></span><span><br /></span><span>    **Opcache:**<br /></span><span><br /></span><span>    * Fixed bug [GH-20469](https://github.com/php/php-src/issues/20469) (Unsafe inheritance cache replay with     reentrant autoloading). (Levi Morrison)<br /></span><span><br /></span><span>    **OpenSSL:**<br /></span><span><br /></span><span>    * Fixed bug [GH-22187](https://github.com/php/php-src/issues/22187) (Memory corruption (zend_mm_heap     corrupted) in openssl_encrypt with AES-WRAP-PAD). (David Carlier)<br /></span><span><br /></span><span>    **Phar:**<br /></span><span><br /></span><span>    * Fixed a bypass of the magic .phar directory protection in Phar::addEmptyDir() for paths starting with     /.phar, while allowing non-magic directory names that merely share the .phar prefix. (Weilin Du)<br /></span><span><br /></span><span>    **Reflection:**<br /></span><span><br /></span><span>    * Preserve class-name case in ReflectionClass::getProperty() error messages and autoloading. (jorgsowa)<br /></span><span><br /></span><span>    **Sqlite:**<br /></span><span><br /></span><span>    * Fix error checks for column retrieval. (ndossche)<br /></span><span><br /></span><span>    **Zlib:**<br /></span><span><br /></span><span>    * Fixed memory leak if deflate initialization fails and there is a dict. (ndossche)<br /></span><span>    * Fixed memory leak in inflate_add(). (ndossche)<br /></span><span><br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Fedora security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected php package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326232">https://www.tenable.com/plugins/nessus/326232</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Fedora 43 : python-pendulum (2026-e55bcd0c54)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326231</link>
            <guid>https://www.tenable.com/plugins/nessus/326231</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326231 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Fedora host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Fedora 43 host has a package installed that is affected by a vulnerability as referenced in the FEDORA-2026-e55bcd0c54 advisory.<br /></span><span><br /></span><span>    Update to 3.2.0 (final). Update PyO3 to 0.29, fixing RUSTSEC-2026-0176 and RUSTSEC-2026-0177.<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Fedora security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected python-pendulum package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326231">https://www.tenable.com/plugins/nessus/326231</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Fedora 43 : nmap (2026-602d919dbc)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326230</link>
            <guid>https://www.tenable.com/plugins/nessus/326230</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326230 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Fedora host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Fedora 43 host has a package installed that is affected by a vulnerability as referenced in the FEDORA-2026-602d919dbc advisory.<br /></span><span><br /></span><span>    - Fix CVE-2026-58058 (rhbz#2494410)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Fedora security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected 4:nmap package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326230">https://www.tenable.com/plugins/nessus/326230</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Fedora 43 : tmux (2026-5060f8da27)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326229</link>
            <guid>https://www.tenable.com/plugins/nessus/326229</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326229 with Low Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Fedora host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Fedora 43 host has a package installed that is affected by a vulnerability as referenced in the FEDORA-2026-5060f8da27 advisory.<br /></span><span><br /></span><span>    update to 3.7, remove upstreamed patch<br /></span><span><br /></span><span>    Upstream ChangeLog: https://raw.githubusercontent.com/tmux/tmux/3.7/CHANGES<br /></span><span><br /></span><span>    CHANGES FROM 3.6b TO 3.7<br /></span><span><br /></span><span>    Add floating panes. These are panes which sit above the layout (tiled panes) like popups but unlike     popups are not modal and behave like panes (so the same escape sequence support). Floating panes are     created with the new-pane command, bound to * by default.<br /></span><span>    This is an early release of this feature and they are relatively limited. Currently floating panes can     only be moved and resized using the mouse. The default second status line (if status-format is set to 2)     has changed to show a list of panes. Many obvious features are not yet available for floating panes     (notably the ability to swap floating panes, resize them using resize-pane, change them between floating     and tiles, and restore custom layouts with floating panes).<br /></span><span><br /></span><span>    Mostly written by Michael Grant with help from Dane Jensen; testing and fixes from others.<br /></span><span><br /></span><span>    Allow run-shell arguments after a shell command to be expanded as #{1}, #{2} and so on (from Rasmus     Thystrup Karstensen in issue 5121).<br /></span><span><br /></span><span>    Add -g to kill-session to kill all sessions in a session group (issue 5157 from github at jiku dot jp).<br /></span><span><br /></span><span>    Tighten up read-only checks on attach-session, detach-client and switch-client so that a user should be     able to only detach their own client (reported by John Walker).<br /></span><span><br /></span><span>    Increase escape delay if the buffer contains a partial paste end, fixes issues with at least Windows     Terminal (from jing dot empty at gmail.com issue 5088).<br /></span><span><br /></span><span>    When mode-keys is set to vi, do not allow the cursor to go into the invisible extra cell to the right of     the visible text; this is closer to what vi(1) does (from Max Vim in issue 5070).<br /></span><span><br /></span><span>    Add a five second limit on pasting for terminals which mysteriously lose the end sequence if the paste is     too big (that is, Terminal.app) (reported by Garri Djavadyan in issue 4527).<br /></span><span><br /></span><span>    Show file open errors more sensibly (reported by Meriel Luna Mittelbach in issue 5081).<br /></span><span><br /></span><span>    Update supported features list for Foot terminal (from Meriel Luna Mittelbach in issue 5079).<br /></span><span><br /></span><span>    Turn off the is this a paste guessing if the terminal supports bracket pasting instead (issue 5031).<br /></span><span><br /></span><span>    Check FIONREAD for all panes not just piped panes.<br /></span><span><br /></span><span>    Add emacs-style recentre-top-bottom command to copy mode (issue 5053 from sinyax75 at gmail dot com).<br /></span><span><br /></span><span>    Allow the indicator in tree mode to be customized by two new options: tree-mode-preview-format and tree-     mode-preview-style.<br /></span><span><br /></span><span>    Fix control client hang on exit after toggling no-output (issue 5049 from Aaron Campbell). Also various     other control mode fixes.<br /></span><span><br /></span><span>    Add support for line numbers in copy mode. There is a new copy-mode-line-numbers option which may be set     to off, default (tmux's normal line numbering where 0 is the top visible line), absolute (first line in     history is 1), relative (relative to the cursor) and hybrid (current line is absolute, others relative).<br /></span><span>    Also adds copy-mode-line-number-style and copy-mode-current-line-number-style to set the style of the line     numbers. When copy mode is entered with the mouse, line numbers stay off. From Leo Henon in issue 5025.<br /></span><span><br /></span><span>    Make C-[ have the same bindings as Escape for terminals with extended keys where they are different (issue     5035 from Eric Nicolas).<br /></span><span><br /></span><span>    Sanitize paste buffer names in paste_set and paste_rename (issue 5032 from Barrett Ruth).<br /></span><span><br /></span><span>    Do not hang in run-shell when job_run fails (from Barrett Ruth in issue 5037).<br /></span><span><br /></span><span>    Add ability to forward progress bar to outside terminal (issue 4972 from Eric Dorland).<br /></span><span><br /></span><span>    Translate keypad keys to text in prompt input (from Barrett Ruth in issue 4996).<br /></span><span><br /></span><span>    Sanitize pane titles and window and session names more consistently and strictly, prevents C0 characters     and other invisible characters causing problems (reported by Chris Monardo in issue 4999).<br /></span><span><br /></span><span>    Make clock visible on terminals without colours (from Manuel Einfalt in issue 5001).<br /></span><span><br /></span><span>    Add detach to default session menu (suggested by Przemyslaw Sztoch).<br /></span><span><br /></span><span>    Include window format variables for pane notifications (issue 5007 from Saul Nogueras).<br /></span><span><br /></span><span>    Limit precision to 100 for formats to stop silly formats from running out of memory, reported by     z1281552865 at gmail dot com. Also various other similar changes, mostly found by OSS-Fuzz.<br /></span><span><br /></span><span>    Add WAYLAND_DISPLAY to default update-environment (issue 4965). Also some additional XDG_* variables     (issue 5169).<br /></span><span><br /></span><span>    Add -C flag to command-prompt to match display-message -C (do not freeze panes) (from Barrett Ruth in     issue 4978).<br /></span><span><br /></span><span>    Cache user from getpwuid because it can be very expensive on some platforms (from Ben Maurer in issue     4973).<br /></span><span><br /></span><span>    Add remain-on-exit key to keep pane around until a key is pressed (from Michael Grant).<br /></span><span><br /></span><span>    Add some new mouse ranges called control0 to control9 and use to add some mouse controls to the pane     state line (from Dane Jensen with some bits from Michael Grant).<br /></span><span><br /></span><span>    Handle OSC 9;4 progress bar sequence and store in format variables (from Eric Dorland in issue 4954).<br /></span><span><br /></span><span>    Correctly size buffer used for parsing clipboard sequences (from Michal Majchrowicz).<br /></span><span><br /></span><span>    Limit MSG_COMMAND argument to between 0 and 1000 to prevent a misbehaving client from crashing the server     (from Michal Majchrowicz).<br /></span><span><br /></span><span>    Reorganize host keys are represented internally so they can be built more easily (from Dane Jensen in     issue 4953).<br /></span><span><br /></span><span>    Add new fuzzers for command parsing, formats and styles (from David Korczynski in issue 4957). Also fix     various issues shown from these.<br /></span><span><br /></span><span>    Add bracket_paste_flag format flag (from George Nachman in issue 4951).<br /></span><span><br /></span><span>    Use - for hyphens in tmux.1 to cause newer groff versions to render them correctly (from Keith Thompson in     issue 4948).<br /></span><span><br /></span><span>    Various minor code improvements and fixes from Pavel Lavrukhin (issue 4936 and others).<br /></span><span><br /></span><span>    Use window options for cursor-style to avoid crash when no pane (from Arden Packeer in issue 4942).<br /></span><span><br /></span><span>    Fix issue where popup window gets overwritten by background updates (from Conor Taylor in issue 4920).<br /></span><span><br /></span><span>    Protect against overflow when scrollbar is off screen (from san65384 at gmail dot com in issue 4933).<br /></span><span><br /></span><span>    Copy hyperlinks when redrawing popup so they do not vanish (from Antoine Gaudreau Simard in issue 4925).<br /></span><span><br /></span><span>    Work around systemd killing panes early during system shutdown by creating dependencies from the panes to     the service which started tmux (issue 4926 from Dmitry Torokhov).<br /></span><span><br /></span><span>    Allow codepoint-widths to accept ranges (from san65384 at gmail dot com in issue 4930).<br /></span><span><br /></span><span>    Add a short builtin help text for each mode accessible with C-h (based on code from Patrick Motard in     issue 4751).<br /></span><span><br /></span><span>    Draw message as one format, allowing prompts and messages to occupy only a portion of the status bar,     overlaying the normal status content rather than replacing the entire line. A new message-format option     now controls the entire message (like status-format). The message-style option now need to include fill     in order to cover the whole width (the default has fill=yellow). From Conor Taylor in issue 4861.<br /></span><span><br /></span><span>    Add next/previous variables for windows in W: loop (from Conor Taylor in issue 4856).<br /></span><span><br /></span><span>    Various bug and memory leak fixes from Renaud Allard (issue 4916).<br /></span><span><br /></span><span>    Add pane_pipe_pid with pipe file descriptor.<br /></span><span><br /></span><span>    Make -c work with new-session -A (from Jody Frankowski in issue 4906).<br /></span><span><br /></span><span>    Allow copy mode to work for readonly clients, except for copy commands (from Dane Jensen).<br /></span><span><br /></span><span>    Pass paste buffer through vis(3) when pasting to prevent buffers containing for example the bracket end     sequence causing issues, a new -S flag disables (reported by Mason Davis).<br /></span><span><br /></span><span>    Add sorting (-O flag) and a custom format (-F) to list-keys (from Dane Jensen in issue 4845).<br /></span><span><br /></span><span>    Add scroll-exit-on, scroll-exit-off, scroll-exit-toggle commands to copy mode (from xcdnlgd at hotmail dot     com in issue 4884).<br /></span><span><br /></span><span>    Respond to DECRQM 2026 (from David Turnbull in issue 4887) and various others (from Ayman Bagabas in issue     5118).<br /></span><span><br /></span><span>    Fix various memory leaks reported by Huihui Huang (issue 4872).<br /></span><span><br /></span><span>    Pass which clipboard is set through to the terminal (from Axel Lindskog in issue 4858).<br /></span><span><br /></span><span>    Reuse extended entry when clearing RGB cell, to prevent memory growth when cells are repeatedly cleared     (from Michael K Darling in issue 4862).<br /></span><span><br /></span><span>    Do not write before buffer when parsing empty clipboard or palette replies, or try to allocate zero bytes     with an empty clipboard sequence (reported by DongHan Kim).<br /></span><span><br /></span><span>    Various bug fixes and code improvements from Conor Taylor (issue 4848).<br /></span><span><br /></span><span>    Clear search counts when clearing marks in case of repeated search (reported by Daniel Pereira in issue     4817).<br /></span><span><br /></span><span>    Make OSC 52 work in popups (from gogongxt at 163 dot com in issue 4797).<br /></span><span><br /></span><span>    Refresh copy mode when style changes (from Josh Cooper in issue 4830).<br /></span><span><br /></span><span>    Make sorting code common and add -O for sorting to the list commands (from Dane Jensen in issue 4813).<br /></span><span><br /></span><span>    Do not treat cells as empty unless the background colour stays the same, fixes invisible clock in clock     mode (reported by Theo Buehler).<br /></span><span><br /></span><span>    When history-limit is changed, apply to existing panes, not just new ones (issue 4705).<br /></span><span><br /></span><span>    Reevaluate menu and popup styles on each draw to allow them to change when options change (from Josh     Cooper in issues 4828 and 4829).<br /></span><span><br /></span><span>    Handle theme keys earlier so they are processed even if a popup is open (from Josh Cooper in issue 4827).<br /></span><span><br /></span><span>    Fix window-size=latest not resizing on switch-client in session groups (from Ilya Grigoriev in issue     4818).<br /></span><span><br /></span><span>    Add -e flag to command-prompt to close if empty (from Dane Jensen in issue 4812).<br /></span><span><br /></span><span>    Correctly draw indicators when pane-border-indicators is set to both (reported by Ilya Grigoriev in issue     4780).<br /></span><span><br /></span><span>    Remember last pane or type of location for double and triple clicks and correctly handle it changes     between first and second or second and third (issue 47<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Fedora security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected tmux package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326229">https://www.tenable.com/plugins/nessus/326229</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Fedora 43 : kind (2026-e48c1b5f93)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326228</link>
            <guid>https://www.tenable.com/plugins/nessus/326228</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326228 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Fedora host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Fedora 43 host has a package installed that is affected by a vulnerability as referenced in the FEDORA-2026-e48c1b5f93 advisory.<br /></span><span><br /></span><span>    Rebuild with newer golang toolchain<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Fedora security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected kind package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326228">https://www.tenable.com/plugins/nessus/326228</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Fedora 43 : k9s (2026-d6f3a0fa5a)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326227</link>
            <guid>https://www.tenable.com/plugins/nessus/326227</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326227 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote Fedora host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote Fedora 43 host has a package installed that is affected by a vulnerability as referenced in the FEDORA-2026-d6f3a0fa5a advisory.<br /></span><span><br /></span><span>    Bump golang.org/x/crypto to v0.52.0 and golang.org/x/net to v0.55.0<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the Fedora security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected k9s package.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326227">https://www.tenable.com/plugins/nessus/326227</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RockyLinux 8 : tomcat (RLSA-2026:37137)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326226</link>
            <guid>https://www.tenable.com/plugins/nessus/326226</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326226 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote RockyLinux host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote RockyLinux 8 host has packages installed that are affected by multiple vulnerabilities as referenced in the RLSA-2026:37137 advisory.<br /></span><span><br /></span><span>    * Apache Tomcat: Apache Tomcat: Information disclosure via Padding Oracle vulnerability in     EncryptInterceptor (CVE-2026-29146)<br /></span><span><br /></span><span>    * Apache Tomcat: Apache Tomcat: Missing Encryption of Sensitive Data due to EncryptInterceptor bypass     (CVE-2026-34486)<br /></span><span><br /></span><span>    Bug Fix(es) and Enhancement(s):<br /></span><span><br /></span><span>    * Remove tomcat clustering JAR from RPM builds (JIRA:Rocky Linux-183993)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the RockyLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326226">https://www.tenable.com/plugins/nessus/326226</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[RockyLinux 8 : gstreamer1-plugins-bad-free (RLSA-2026:37130)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326225</link>
            <guid>https://www.tenable.com/plugins/nessus/326225</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326225 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote RockyLinux host is missing one or more security updates.<br /></span>
      <h3>Description</h3>
      <span>The remote RockyLinux 8 host has packages installed that are affected by multiple vulnerabilities as referenced in the RLSA-2026:37130 advisory.<br /></span><span><br /></span><span>    * gstreamer1-plugins-bad-free: GStreamer: Heap buffer overflow via crafted VNC server rectangle in librfb     (CVE-2026-52720)<br /></span><span><br /></span><span>    * gstreamer1-plugins-bad-free: GStreamer: Signed integer overflow in VMnc decoder cursor payload handling     (CVE-2026-52722)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the RockyLinux security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326225">https://www.tenable.com/plugins/nessus/326225</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP12 : avahi (EulerOS-SA-2026-2519)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326224</link>
            <guid>https://www.tenable.com/plugins/nessus/326224</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326224 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing a security update.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the avahi packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    Avahi is a system which facilitates service discovery on a local network via the mDNS/DNS-SD protocol     suite. Prior to version 0.9-rc4, any unprivileged local user can crash avahi-daemon by sending a single     D-Bus method call with conflicting publish flags. This issue has been patched in version     0.9-rc4.(CVE-2026-34933)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS avahi security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected avahi packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326224">https://www.tenable.com/plugins/nessus/326224</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP12 : httpd (EulerOS-SA-2026-2533)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326223</link>
            <guid>https://www.tenable.com/plugins/nessus/326223</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326223 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing multiple security updates.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the httpd packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    Buffer Over-read vulnerability in Apache HTTP Server.<br /></span><span><br /></span><span>    This issue affects Apache HTTP Server: through 2.4.66.<br /></span><span><br /></span><span>    Users are recommended to upgrade to version 2.4.67, which fixes the issue.(CVE-2026-34059)<br /></span><span><br /></span><span>    A NULL pointer dereference in mod_dav_lock in Apache HTTP Server 2.4.66 and earlier may allow an attacker     to crash the server with a malicious request.mod_dav_lock is not used internally by mod_dav or mod_dav_fs.<br /></span><span><br /></span><span>    The only known use-case for mod_dav_lock was mod_dav_svn from Apache Subversion earlier than version     1.2.0.<br /></span><span><br /></span><span>    Users are recommended to upgrade to version 2.4.66, which fixes this issue, or remove     mod_dav_lock.(CVE-2026-29169)<br /></span><span><br /></span><span>    Heap-based Buffer Overflow vulnerability in mod_proxy_ajp of Apache HTTP Server.<br /></span><span>    If mod_proxy_ajp connects to a malicious AJP server this AJP server can send a malicious AJP message back     to mod_proxy_ajp and cause it to write 4 attacker controlled bytes after the end of a heap based buffer.<br /></span><span><br /></span><span>    This issue affects Apache HTTP Server: through 2.4.66.<br /></span><span><br /></span><span>    Users are recommended to upgrade to version 2.4.67, which fixes the issue.(CVE-2026-28780)<br /></span><span><br /></span><span>    A timing attack against mod_auth_digest in Apache HTTP Server 2.4.66 allows a bypass of Digest     authentication by a remote attacker.<br /></span><span><br /></span><span>    Users are recommended to upgrade to version 2.4.67, which fixes this issue.(CVE-2026-33006)<br /></span><span><br /></span><span>    An escalation of privilege bug in various modules in Apache HTTP 2.4.66 and earlier allows local .htaccess     authors to read files with the privileges of the httpd user.<br /></span><span><br /></span><span>    Users are recommended to upgrade to version 2.4.67, which fixes this issue.(CVE-2026-24072)<br /></span><span><br /></span><span>    Allocation of Resources Without Limits or Throttling vulnerability in Apache HTTP Server's   mod_md via     OCSP response data.<br /></span><span><br /></span><span>    This issue affects Apache HTTP Server: from 2.4.30 through 2.4.66.<br /></span><span><br /></span><span>    Users are recommended to upgrade to version 2.4.67, which fixes the issue.(CVE-2026-29168)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS httpd security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected httpd packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326223">https://www.tenable.com/plugins/nessus/326223</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP12 : kernel (EulerOS-SA-2026-2535)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326222</link>
            <guid>https://www.tenable.com/plugins/nessus/326222</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326222 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing multiple security updates.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the kernel packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    Input: alps - fix use-after-free bugs caused by dev3_register_work(CVE-2025-68822)<br /></span><span><br /></span><span>    ext4: reject mount if bigalloc with s_first_data_block != 0(CVE-2026-31447)<br /></span><span><br /></span><span>    tls: Fix race condition in tls_sw_cancel_work_tx()(CVE-2026-23240)<br /></span><span><br /></span><span>    apparmor: replace recursive profile removal with iterative approach(CVE-2026-23404)<br /></span><span><br /></span><span>    ethtool: Avoid overflowing userspace buffer on stats query(CVE-2025-68795)<br /></span><span><br /></span><span>    ipv6: avoid overflows in ip6_datagram_send_ctl()(CVE-2026-31415)<br /></span><span><br /></span><span>    ceph: add a bunch of missing ceph_path_info initializers(CVE-2026-43408)<br /></span><span><br /></span><span>    netfilter: nf_conntrack_helper: pass helper to expect cleanup(CVE-2026-43027)<br /></span><span><br /></span><span>    netfilter: nf_conntrack_sip: fix Content-Length u32 truncation in sip_help_tcp()(CVE-2026-23457)<br /></span><span><br /></span><span>    PM: runtime: Fix a race condition related to device removal(CVE-2026-23452)<br /></span><span><br /></span><span>    net/sched: sch_hfsc: fix divide-by-zero in rtsc_min()(CVE-2026-31423)<br /></span><span><br /></span><span>    mm: blk-cgroup: fix use-after-free in cgwb_release_workfn()(CVE-2026-31586)<br /></span><span><br /></span><span>    drm/ioc32: stop speculation on the drm_compat_ioctl path(CVE-2026-31781)<br /></span><span><br /></span><span>    module: Fix kernel panic when a symbol st_shndx is out of bounds(CVE-2026-31521)<br /></span><span><br /></span><span>    serial: core: fix infinite loop in handle_tx() for PORT_UNKNOWN(CVE-2026-23472)<br /></span><span><br /></span><span>    net/tcp-md5: Fix MAC comparison to be constant-time(CVE-2026-43383)<br /></span><span><br /></span><span>    ext4: avoid infinite loops caused by residual data(CVE-2026-31448)<br /></span><span><br /></span><span>    smb: client: Don#39;t log plaintext credentials in cifs_set_cifscreds(CVE-2026-23303)<br /></span><span><br /></span><span>    dmaengine: idxd: Fix memory leak when a wq is reset(CVE-2026-31441)<br /></span><span><br /></span><span>    bridge: br_nd_send: linearize skb before parsing ND options(CVE-2026-31682)<br /></span><span><br /></span><span>    net/sched: teql: fix NULL pointer dereference in iptunnel_xmit on TEQL slave xmit(CVE-2026-23277)<br /></span><span><br /></span><span>    crypto: af_alg - limit RX SG extraction by receive buffer budget(CVE-2026-31677)<br /></span><span><br /></span><span>    netfilter: xt_CT: drop pending enqueued packets on template removal(CVE-2026-23391)<br /></span><span><br /></span><span>    apparmor: validate DFA start states are in bounds in unpack_pdb(CVE-2026-23269)<br /></span><span><br /></span><span>    net: bonding: fix use-after-free in bond_xmit_broadcast()(CVE-2026-31419)<br /></span><span><br /></span><span>    NFSD: Hold net reference for the lifetime of /proc/fs/nfs/exports fd(CVE-2026-31403)<br /></span><span><br /></span><span>    ipv4: nexthop: allocate skb dynamically in rtm_get_nexthop()(CVE-2026-31531)<br /></span><span><br /></span><span>    netfilter: ipset: drop logically empty buckets in mtype_del(CVE-2026-31418)<br /></span><span><br /></span><span>    dcache: Limit the minimal number of bucket to two(CVE-2026-43071)<br /></span><span><br /></span><span>    HID: multitouch: Check to ensure report responses match the request(CVE-2026-43047)<br /></span><span><br /></span><span>    smb: client: fix krb5 mount with username option(CVE-2026-31392)<br /></span><span><br /></span><span>    net: usb: kaweth: validate USB endpoints(CVE-2026-23312)<br /></span><span><br /></span><span>    net: usb: cdc_ncm: add ndpoffset to NDP16 nframes bounds check(CVE-2026-23448)<br /></span><span><br /></span><span>    nvmet: move async event work off nvmet-wq(CVE-2026-31557)<br /></span><span><br /></span><span>    NFSD: Defer sub-object cleanup in export put callbacks(CVE-2026-31404)<br /></span><span><br /></span><span>    apparmor: fix side-effect bug in match_char() macro usage(CVE-2026-23406)<br /></span><span><br /></span><span>    nfnetlink_osf: validate individual option lengths in fingerprints(CVE-2026-23397)<br /></span><span><br /></span><span>    Squashfs: check metadata block offset is within range(CVE-2026-23388)<br /></span><span><br /></span><span>    net: add xmit recursion limit to tunnel xmit functions(CVE-2026-23276)<br /></span><span><br /></span><span>    libceph: Fix potential out-of-bounds access in ceph_handle_auth_reply()(CVE-2026-43407)<br /></span><span><br /></span><span>    xfs: fix undersized l_iclog_roundoff values(CVE-2026-43365)<br /></span><span><br /></span><span>    ixgbevf: add missing negotiate_features op to Hyper-V ops table(CVE-2026-43094)<br /></span><span><br /></span><span>    drm/vmwgfx: Return the correct value in vmw_translate_ptr functions(CVE-2026-23317)<br /></span><span><br /></span><span>    af_unix: read UNIX_DIAG_VFS data under unix_state_lock(CVE-2026-31673)<br /></span><span><br /></span><span>    af_key: validate families in pfkey_send_migrate()(CVE-2026-31515)<br /></span><span><br /></span><span>    smb: client: fix OOB read in smb2_ioctl_query_info QUERY_INFO path(CVE-2026-31708)<br /></span><span><br /></span><span>    usb: cdns3: gadget: fix NULL pointer dereference in ep_queue(CVE-2026-31755)<br /></span><span><br /></span><span>    netfilter: nfnetlink_log: account for netlink header size(CVE-2026-31416)<br /></span><span><br /></span><span>    sunrpc: fix cache_request leak in cache_release(CVE-2026-31400)<br /></span><span><br /></span><span>    dmaengine: idxd: fix possible wrong descriptor completion in llist_abort_desc()(CVE-2026-31436)<br /></span><span><br /></span><span>    net: usb: kalmia: validate USB endpoints(CVE-2026-23365)<br /></span><span><br /></span><span>    ptrace: slightly saner #39;get_dumpable()#39; logic(CVE-2026-46333)<br /></span><span><br /></span><span>    net: usb: pegasus: validate USB endpoints(CVE-2026-23290)<br /></span><span><br /></span><span>    bonding: provide a net pointer to __skb_flow_dissect()(CVE-2026-23119)<br /></span><span><br /></span><span>    KVM: SEV: Drop WARN on large size for KVM_MEMORY_ENCRYPT_REG_REGION(CVE-2026-31590)<br /></span><span><br /></span><span>    nvme-fc: release admin tagset if init fails(CVE-2026-23261)<br /></span><span><br /></span><span>    icmp: fix NULL pointer dereference in icmp_tag_validation()(CVE-2026-23398)<br /></span><span><br /></span><span>    netfilter: nft_ct: fix use-after-free in timeout object destroy(CVE-2026-31665)<br /></span><span><br /></span><span>    net: correctly handle tunneled traffic on IPV6_CSUM GSO fallback(CVE-2026-43057)<br /></span><span><br /></span><span>    netfilter: nf_conntrack_expect: skip expectations in other netns via proc(CVE-2026-31496)<br /></span><span><br /></span><span>    HID: alps: fix NULL pointer dereference in alps_raw_event()(CVE-2026-31625)<br /></span><span><br /></span><span>    net: usb: pegasus: enable basic endpoint checking(CVE-2026-43156)<br /></span><span><br /></span><span>    udp: Fix wildcard bind conflict check when using hash2(CVE-2026-31503)<br /></span><span><br /></span><span>    net/sched: sch_netem: fix out-of-bounds access in packet corruption(CVE-2026-31675)<br /></span><span><br /></span><span>    net: usb: cdc_ncm: add ndpoffset to NDP32 nframes bounds check(CVE-2026-23447)<br /></span><span><br /></span><span>    netfilter: ip6t_eui64: reject invalid MAC header for all packets(CVE-2026-31685)<br /></span><span><br /></span><span>    net: openvswitch: Avoid releasing netdev before teardown completes(CVE-2026-31508)<br /></span><span><br /></span><span>    net: vxlan: fix nd_tbl NULL dereference when IPv6 is disabled(CVE-2026-23293)<br /></span><span><br /></span><span>    netfilter: xt_IDLETIMER: reject rev0 reuse of ALARM timer labels(CVE-2026-23274)<br /></span><span><br /></span><span>    HID: core: Mitigate potential OOB by removing bogus memset()(CVE-2026-43048)<br /></span><span><br /></span><span>    x86/CPU/AMD: Add RDSEED fix for Zen5(CVE-2025-68313)<br /></span><span><br /></span><span>    net: ipv6: flowlabel: defer exclusive option free until RCU teardown(CVE-2026-31680)<br /></span><span><br /></span><span>    mmc: vub300: fix NULL-deref on disconnect(CVE-2026-31651)<br /></span><span><br /></span><span>    ipv6: add NULL checks for idev in SRv6 paths(CVE-2026-23442)<br /></span><span><br /></span><span>    openvswitch: defer tunnel netdev_put to RCU release(CVE-2026-31678)<br /></span><span><br /></span><span>    x86/apic: Disable x2apic on resume if the kernel expects so(CVE-2026-43363)<br /></span><span><br /></span><span>    netfilter: nf_conntrack_h323: check for zero length in DecodeQ931()(CVE-2026-23455)<br /></span><span><br /></span><span>    virtio_net: Fix UAF on dst_ops when IFF_XMIT_DST_RELEASE is cleared and napi_tx is false(CVE-2026-31469)<br /></span><span><br /></span><span>    netfilter: ctnetlink: fix use-after-free in ctnetlink_dump_exp_ct()(CVE-2026-23458)<br /></span><span><br /></span><span>    net: consume xmit errors of GSO frames(CVE-2026-43194)<br /></span><span><br /></span><span>    dmaengine: idxd: Fix not releasing workqueue on .release()(CVE-2026-43064)<br /></span><span><br /></span><span>    nvdimm/bus: Fix potential use after free in asynchronous initialization(CVE-2026-31399)<br /></span><span><br /></span><span>    nfsd: fix heap overflow in NFSv4.0 LOCK replay cache(CVE-2026-31402)<br /></span><span><br /></span><span>    ext4: publish jinode after initialization(CVE-2026-31450)<br /></span><span><br /></span><span>    net/sched: teql: Fix double-free in teql_master_xmit(CVE-2026-23449)<br /></span><span><br /></span><span>    media: mc, v4l2: serialize REINIT and REQBUFS with req_queue_mutex(CVE-2026-31473)<br /></span><span><br /></span><span>    ACPI: EC: clean up handlers on probe failure in acpi_ec_setup()(CVE-2026-31426)<br /></span><span><br /></span><span>    crypto: af-alg - fix NULL pointer dereference in scatterwalk(CVE-2026-43043)<br /></span><span><br /></span><span>    netfilter: ip6t_rt: reject oversized addrnr in rt_mt6_check()(CVE-2026-31674)<br /></span><span><br /></span><span>    sched/deadline: Fix missing ENQUEUE_REPLENISH during PI de-boosting(CVE-2026-23371)<br /></span><span><br /></span><span>    apparmor: fix race on rawdata dereference(CVE-2026-23410)<br /></span><span><br /></span><span>    apparmor: Fix double free of ns_name in aa_replace_profiles()(CVE-2026-23408)<br /></span><span><br /></span><span>    e1000/e1000e: Fix leak in DMA error cleanup(CVE-2026-43445)<br /></span><span><br /></span><span>    futex: Clear stale exiting pointer in futex_lock_pi() retry path(CVE-2026-31555)<br /></span><span><br /></span><span>    apparmor: fix race between freeing data and fs accessing it(CVE-2026-23411)<br /></span><span><br /></span><span>    netfilter: nf_conntrack_h323: fix OOB read in decode_int() CONS case(CVE-2026-23456)<br /></span><span><br /></span><span>    driver core: platform: use generic driver_override infrastructure(CVE-2026-31527)<br /></span><span><br /></span><span>    xfs: stop reclaim before pushing AIL during unmount(CVE-2026-31455)<br /></span><span><br /></span><span>    netfilter: nf_tables: unconditionally bump set-gt;nelems before insertion(CVE-2026-23272)<br /></span><span><br /></span><span>    ceph: supply snapshot context in ceph_zero_partial_object()(CVE-2026-43273)<br /></span><span><br /></span><span>    ext4: convert inline data to extents when truncate exceeds inline size(CVE-2026-31452)<br /></span><span><br /></span><span>    apparmor: fix differential encoding verification(CVE-2026-23409)<br /></span><span><br /></span><span>    HID: core: clamp report_size in s32ton() to avoid undefined shift(CVE-2026-31624)<br /></span><span><br /></span><span>    EFI/CPER: don#39;t dump the entire memory region(CVE-2026-43171)<br /></span><span><br /></span><span>    pstore: ram_core: fix incorrect success return when vmap() fails(CVE-2026-43124)<br /></span><span><br /></span><span>    USB: usbtmc: Use usb_bulk_msg_killable() with user-specified timeouts(CVE-2026-43429)<br /></span><span><br /></span><span>    net: sched: avoid qdisc_reset_all_tx_gt() vs dequeue race for lockless qdiscs(CVE-2026-23340)<br /></span><span><br /></span><span>    scsi: target: Fix recursive locking in __configfs_open_file()(CVE-2026-23292)<br /></span><span><br /></span><span>    netfilter: ctnetlink: use netlink policy range checks(CVE-2026-31495)<br /></span><span><br /></span><span>    netfilter: nft_set_pipapo: split gc into unlink and reclaim phase(CVE-2026-23351)<br /></span><span><br /></span><span>    kprobes: avoid crash when rmmod/insmod after ftrace killed(CVE-2026-43409)<br /></span><span><br /></span><span>    xfs: avoid dereferencing log items after push callbacks(CVE-2026-31453)<br /></span><span><br /></span><span>    net: ipv6: fix panic when IPv4 route references loopback IPv6 nexthop(CVE-2026-23300)<br /></span><span><br /></span><span>    netfilter: x_tables: ensure names are nul-terminated(CVE-2026-43028)<br /></span><span><br /></span><span>    apparmor: fix: limit the number of levels of policy namespaces(CVE-2026-23405)<br /></span><span><br /></span><span>    net/sched: cls_fw: fix NULL pointer dereference on shared blocks(CVE-2026-31421)<br /></span><span><br /></span><span>    openvswitch: validate MPLS set/set_masked payload length(CVE-2026-31679)<br /></span><span><br /></span><span>    perf: Fix __perf_event_overflow() vs perf_remove_from_context() race(CVE-2026-23271)<br /></span><span><br /></span><span>    bpf: Fix regsafe() for pointers to packet(CVE-2026-43030)<br /></span><span><br /></span><span>    tipc: fix bc_ackers underflow on duplicate GRP_ACK_MSG(CVE-2026-31662)<br /></span><span><br /></span><span>    net/sched: cls_flow: fix NULL pointer dereference on shared blocks(CVE-2026-31422)<br /></span><span><br /></span><span>    KVM: x86: Use scratch field in MMIO fragment to hold small write values(CVE-2026-31588)<br /></span><span><br /></span><span>    PCI: Fix pci_slot_trylock() error handling(CVE-2026-43211)<br /></span><span><br /></span><span>    net: rfkill: prevent unlimited numbers of rfkill events from being created(CVE-2026-31670)<br /></span><span><br /></span><span>    apparmor: fix unprivileged local user can do privileged policy management(CVE-2026-23268)<br /></span><span><br /></span><span>    comedi: dt2815: add hardware detection to prevent crash(CVE-2026-31751)<br /></span><span><br /></span><span>    netfilter: nf_conntrack_sip: fix use of uninitialized rtp_addr in process_sdp(CVE-2026-31427)<br /></span><span><br /></span><span>    ipv6: fix NULL pointer deref in ip6_rt_get_dev_rcu()(CVE-2026-23304)<br /></span><span><br /></span><span>    apparmor: fix missing bounds check on DEFAULT table in verify_dfa()(CVE-2026-23407)<br /></span><span><br /></span><span>    xfs: save ailp before dropping the AIL lock in push callbacks(CVE-2026-31454)<br /></span><span><br /></span><span>    ext4: avoid allocate block from corrupted group in ext4_mb_find_by_goal()(CVE-2026-43068)<br /></span><span><br /></span><span>    media: dvb-core: fix wrong reinitialization of ringbuffer on reopen(CVE-2026-23253)<br /></span><span><br /></span><span>    ext4: validate p_idx bounds in ext4_ext_correct_indexes(CVE-2026-31449)<br /></span><span><br /></span><span>    netfilter: nfnetlink_log: fix uninitialized padding leak in NFULA_PAYLOAD(CVE-2026-31428)<br /></span><span><br /></span><span>    xfrm: prevent policy_hthresh.work from racing with netns teardown(CVE-2026-31516)<br /></span><span><br /></span><span>    media: dvb-net: fix OOB access in ULE extension header tables(CVE-2026-31405)<br /></span><span><br /></span><span>    perf/x86/intel/uncore: Fix die ID init and look up bugs(CVE-2026-43344)<br /></span><span><br /></span><span>    crypto: authencesn - Do not place hiseq at end of dst for out-of-place decryption(CVE-2026-43033)<br /></span><span><br /></span><span>    powerpc, perf: Check that current-gt;mm is alive before getting user callchain(CVE-2026-43416)<br /></span><span><br /></span><span>    net: phy: register phy led_triggers during probe to avoid AB-BA deadlock(CVE-2026-23368)<br /></span><span><br /></span><span>    net: bridge: fix nd_tbl NULL dereference when IPv6 is disabled(CVE-2026-23381)<br /></span><span><br /></span><span>    perf/x86/intel/uncore: Skip discovery table for offline dies(CVE-2026-43079)<br /></span><span><br /></span><span>    apparmor: fix memory leak in verify_header(CVE-2026-23403)<br /></span><span><br /></span><span>    nvme-pci: ensure we#39;re polling a polled queue(CVE-2026-31523)<br /></span><span><br /></span><span>    xfrm: clear trailing padding in build_polexpire()(CVE-2026-31664)<br /></span><span><br /></span><span>    x86/efi: defer freeing of boot services memory(CVE-2026-23352)<br /></span><span><br /></span><span>    netfilter: nf_conntrack_expect: use expect-gt;helper(CVE-2026-31414)<br /></span><span><br /></span><span>    net: add proper RCU protection to /proc/net/ptype(CVE-2026-23255)<br /></span><span><br /></span><span>    ice: Fix memory leak in ice_set_ringparam()(CVE-2026-23389)<br /></span><span><br /></span><span>    usb: typec: ucsi: validate connector number in ucsi_notify_common()(CVE-2026-31729)<br /></span><span><br /></span><span>    ipv6: icmp: clear skb2-gt;cb[] in ip6_err_gen_icmpv6_unreach()(CVE-2026-43038)<br /></span><span><br /></span><span>    netfilter: nf_conntrack_h323: fix OOB read in decode_choice()(CVE-2026-43233)<br /></span><span><br /></span><span>    net: skbuff: propagate shared-frag marker through frag-transfer helpers(CVE-2026-43503)<br /></span><span><br /></span><span>    mailbox: Prevent out-of-bounds access in fw_mbox_index_xlate()(CVE-2026-43281)<br /></span><span><br /></span><span>    netfilter: nft_set_pipapo: fix stack out-of-bounds read in pipapo_drop()(CVE-2026-43453)<br /></span><span><br /></span><span>    xfs: fix freemap adjustments when adding xattrs to leaf blocks(CVE-2026-43158)<br /></span><span><br /></span><span>    xfs: delete attr leaf freemap entries when empty(CVE-2026-43187)<br /></span><span><br /></span><span>    netfilter: x_tables: guard option walkers against 1-byte tail reads(CVE-2026-43452)<br /></span><span><br /></span><span>    crypto: pcrypt - Fix handling of MAY_BACKLOG requests(CVE-2026-43493)<br /></span><span><br /></span><span>    netfilter: nfnetlink_cthelper: fix OOB read in nfnl_cthelper_dump_table()(CVE-2026-43450)<br /></span><span><br /></span><span>    usb: ulpi: fix double free in ulpi_register_interface() error path(CVE-2026-31759)<br /></span><span><br /></span><span>    net: ipv6: ndisc: fix ndisc_ra_useropt to initialize nduseropt_padX fields to zero to prevent an info-     leak(CVE-2026-43040)<br /></span><span><br /></span><span>    ip6_tunnel: clear skb2-gt;cb[] in ip4ip6_err()(CVE-2026-43037)<br /></span><span><br /></span><span>    net: usb: kaweth: remove TX queue manipulation in kaweth_set_rx_mode(CVE-2026-43180)<br /></span><span><br /></span><span>    usb: usbtmc: Flush anchored URBs in usbtmc_release(CVE-2026-31758)<br /></span><span><br /></span><span>    netfilter: nft_ct: drop pending enqueued packets on removal(CVE-2026-43060)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS kernel security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected kernel packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326222">https://www.tenable.com/plugins/nessus/326222</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[EulerOS 2.0 SP12 : glibc (EulerOS-SA-2026-2529)]]></title>
            <link>https://www.tenable.com/plugins/nessus/326221</link>
            <guid>https://www.tenable.com/plugins/nessus/326221</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Nessus Plugin ID 326221 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote EulerOS host is missing multiple security updates.<br /></span>
      <h3>Description</h3>
      <span>According to the versions of the glibc packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :<br /></span><span><br /></span><span>    Calling the ungetwc function on a FILE stream with wide characters encoded in a character set that has     overlaps between its single byte and multi-byte character encodings, in the GNU C Library version 2.43 or     earlier, may result in an attempt to read bytes before an allocated buffer, potentially resulting in     unintentional disclosure of neighboring data in the heap, or a program crash.<br /></span><span><br /></span><span>    A bug in the wide character pushback implementation (_IO_wdefault_pbackfail in libio/wgenops.c) causes     ungetwc() to operate on the regular character buffer (fp-_IO_read_ptr) instead of the actual wide-     stream read pointer (fp-_wide_data-_IO_read_ptr). The program crash may happen in cases where fp-<br /></span><span>    _IO_read_ptr is not initialized and hence points to NULL. The buffer under-read requires a special     situation where the input character encoding is such that there are overlaps between single byte     representations and multibyte representations in that encoding, resulting in spurious matches. The     spurious match case is not possible in the standard Unicode character sets.(CVE-2026-5928)<br /></span><span><br /></span><span>    The iconv() function in the GNU C Library versions 2.43 and earlier may crash due to an assertion failure     when converting inputs from the IBM1390 or IBM1399 character sets, which may be used to remotely crash an     application.<br /></span><span><br /></span><span><br /></span><span><br /></span><span>    This vulnerability can be trivially mitigated by removing the IBM1390 and IBM1399 character sets from     systems that do not need them.(CVE-2026-4046)<br /></span><span><br /></span><span>    Calling the scanf family of functions with a %mc (malloc'd character match) in the GNU C Library version     2.7 to version 2.43 with a format width specifier with an explicit width greater than 1024 could result in     a one byte heap buffer overflow.(CVE-2026-5450)<br /></span><span><br /></span><span>Tenable has extracted the preceding description block directly from the EulerOS glibc security advisory.<br /></span><span><br /></span><span>Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.<br /></span>
      <h3>Solution</h3>
      <span>Update the affected glibc packages.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/nessus/326221">https://www.tenable.com/plugins/nessus/326221</a></p>
    ]]></description>
        </item>
    </channel>
</rss>