[El-errata] ELSA-2026-70640 Important: Oracle Linux 9 buildah security update
Errata Announcements for Oracle Linux
el-errata at oss.oracle.com
Fri Sep 25 13:36:06 UTC 2026
Oracle Linux Security Advisory ELSA-2026-70640
http://linux.oracle.com/errata/ELSA-2026-70640.html
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:
x86_64:
buildah-1.43.3-2.0.1.el9_8.x86_64.rpm
buildah-tests-1.43.3-2.0.1.el9_8.x86_64.rpm
aarch64:
buildah-1.43.3-2.0.1.el9_8.aarch64.rpm
buildah-tests-1.43.3-2.0.1.el9_8.aarch64.rpm
SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/buildah-1.43.3-2.0.1.el9_8.src.rpm
Related CVEs:
CVE-2025-11395
CVE-2026-15789
CVE-2026-33818
CVE-2026-56853
CVE-2026-56855
CVE-2026-56858
CVE-2026-56860
CVE-2026-56862
Description of changes:
[1.43.3-2.0.1]
- Drop nmap-ncat requirement and skip ignore-socket test case [Orabug: 34117178]
[2:1.43.3-2]
- rebuild for CVE-2026-56853 CVE-2026-56858 CVE-2026-33818 CVE-2026-56860 CVE-2026-56862
- Resolves: RHEL-241114 RHEL-241310 RHEL-241620 RHEL-241779 RHEL-242275
[2:1.43.3-1]
- Update to buildah 1.43.3 (488c1c92)
- Resolves: RHEL-219426
[2:1.43.2-1]
- Update to release-1.43 branch HEAD (609eb9466)
- Ensures golang.org/x/crypto v0.53.0 for CVE-2026-46597 fix
- Resolves: RHEL-219426
More information about the El-errata
mailing list