[El-errata] ELSA-2026-70640 Important: Oracle Linux 9 buildah security update

Errata Announcements for Oracle Linux el-errata at oss.oracle.com
Fri Sep 25 13:36:06 UTC 2026


Oracle Linux Security Advisory ELSA-2026-70640

http://linux.oracle.com/errata/ELSA-2026-70640.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
buildah-1.43.3-2.0.1.el9_8.x86_64.rpm
buildah-tests-1.43.3-2.0.1.el9_8.x86_64.rpm

aarch64:
buildah-1.43.3-2.0.1.el9_8.aarch64.rpm
buildah-tests-1.43.3-2.0.1.el9_8.aarch64.rpm


SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/buildah-1.43.3-2.0.1.el9_8.src.rpm

Related CVEs:

CVE-2025-11395
CVE-2026-15789
CVE-2026-33818
CVE-2026-56853
CVE-2026-56855
CVE-2026-56858
CVE-2026-56860
CVE-2026-56862




Description of changes:

[1.43.3-2.0.1]
- Drop nmap-ncat requirement and skip ignore-socket test case [Orabug: 34117178]

[2:1.43.3-2]
- rebuild for CVE-2026-56853 CVE-2026-56858 CVE-2026-33818 CVE-2026-56860 CVE-2026-56862
- Resolves: RHEL-241114 RHEL-241310 RHEL-241620 RHEL-241779 RHEL-242275

[2:1.43.3-1]
- Update to buildah 1.43.3 (488c1c92)
- Resolves: RHEL-219426

[2:1.43.2-1]
- Update to release-1.43 branch HEAD (609eb9466)
- Ensures golang.org/x/crypto v0.53.0 for CVE-2026-46597 fix
- Resolves: RHEL-219426




More information about the El-errata mailing list