Release date:
2026-09-29 17:59:09 UTC
Description:
- Rebased onto the vendor 3.3.29-9.0.3.el7_9 sources
- CVE-2026-5260: guard PKCS#11 RSA decryption against short-ciphertext heap overread (TuxCare fix retained)
- CVE-2026-42014 and CVE-2026-42015 are fixed by the vendor in this build
- CVE-2026-42011 is not applicable to this baseline per the vendor assessment
- CVE-2026-33845, CVE-2026-33846, CVE-2026-3833, CVE-2026-42009, CVE-2026-42012 and CVE-2026-42013 are now fixed by the vendor; the TuxCare duplicates are dropped
- CVE-2026-3833 follow-up: the vendor's email_matches() no longer matches a
bare-domain rfc822Name against a bare-domain constraint of the same length,
which 3.3.29 did; restore that comparison, case-insensitively, and add the
assertions to tests/name-constraints.c
Updated packages:
-
gnutls-3.3.29-9.0.3.el7_6.tuxcare.els1.i686.rpm
sha:d2104c8d0148707eb3ca47b0b597b06103018df4ea9c0e50393114ce0fbb42df
-
gnutls-3.3.29-9.0.3.el7_6.tuxcare.els1.x86_64.rpm
sha:e452bfeb7d9a26f18b70fb800d1f494f0bb82fd40a5e7844a08bf3684069717b
-
gnutls-c++-3.3.29-9.0.3.el7_6.tuxcare.els1.i686.rpm
sha:683d5dc525ba52c4cda9ac12959d62e9e2d3382b9eb6cf81156034ef7dca9bfe
-
gnutls-c++-3.3.29-9.0.3.el7_6.tuxcare.els1.x86_64.rpm
sha:eba27dd9bedbe42ac691fcadff6e5e526ed94d08d33e6741dc7b910154aa880a
-
gnutls-dane-3.3.29-9.0.3.el7_6.tuxcare.els1.i686.rpm
sha:f03006176e2e762fc2cd89a1b7bfe12b5a537694264aec60144c9f52ddffc3d1
-
gnutls-dane-3.3.29-9.0.3.el7_6.tuxcare.els1.x86_64.rpm
sha:1910f0015adae07f06430f80935ff96286b95c119c349cc878c5f6dab1443c14
-
gnutls-devel-3.3.29-9.0.3.el7_6.tuxcare.els1.i686.rpm
sha:9a0ffcd5a9a496395faa66232eaac87aa513e15e16598c6422b23f52698b8c2d
-
gnutls-devel-3.3.29-9.0.3.el7_6.tuxcare.els1.x86_64.rpm
sha:ac2d17e0f7e05d660625bde6486080209d8a88b2208229671deb358f74778cce
-
gnutls-utils-3.3.29-9.0.3.el7_6.tuxcare.els1.i686.rpm
sha:1598df52bfc697ccb937abc900d573716fa3e80874d941663919f437538ece9a
-
gnutls-utils-3.3.29-9.0.3.el7_6.tuxcare.els1.x86_64.rpm
sha:ff75565a6925a6ded77334f637d314517dab6aa6ecfc86fe1578e4e2cf056b67
Notes:
This page is generated automatically and has not been checked for errors. For clarification or
corrections please contact the
CloudLinux Packaging Team.