[CLSA-2026:1790933091] gawk: Fix of CVE-2023-4156
Type:
security
Severity:
Important
Release date:
2026-10-02 09:25:19 UTC
Description:
- Rebase to 5.1.0-6.el9_8.1; vendor Patch005/006 carry the upstream fixes for CVE-2026-40468 and CVE-2026-40469 (our patches dropped) - CVE-2023-4156: fix heap out-of-bounds read in format_tree() in builtin.c
CVEs fixed:
Updated packages:
  • gawk-5.1.0-6.el9_8.1.tuxcare.els1.aarch64.rpm
    sha:1f137f618f4e0da4a219d33351dfe6ab929f8d928bee4a825d05ce1f01d22db0
  • gawk-5.1.0-6.el9_8.1.tuxcare.els1.i686.rpm
    sha:a4a7cb83d611771212b13a990376f18fcacdf9a9fc6aeabb5975f93a857bdb47
  • gawk-5.1.0-6.el9_8.1.tuxcare.els1.x86_64.rpm
    sha:91fcc9c3940feba9d323eaf15cd7a878ee73d29639809eb4d268bafa7da849df
  • gawk-all-langpacks-5.1.0-6.el9_8.1.tuxcare.els1.aarch64.rpm
    sha:abb9c5bf948e9173c6dc21ad462dd9b5952f1f3c2384aa27a82dc00ed623576c
  • gawk-all-langpacks-5.1.0-6.el9_8.1.tuxcare.els1.i686.rpm
    sha:9c0958ddae98c642b6e8c81c78a39dcb49b6a0e5227eaabfe083d41e650e01fc
  • gawk-all-langpacks-5.1.0-6.el9_8.1.tuxcare.els1.x86_64.rpm
    sha:edaf99fecfc44fd32c01b1186067b30686cf97b8679ede864693b49129a4a95b
  • gawk-devel-5.1.0-6.el9_8.1.tuxcare.els1.aarch64.rpm
    sha:d7c9999d86bb05ecbbd1eb9442d91238ea659f9578edb836ed5b9db27497596a
  • gawk-devel-5.1.0-6.el9_8.1.tuxcare.els1.i686.rpm
    sha:c1fc6936e2a2488254bf14ed40fd12182fa90a21bbfae87715f239ae26675876
  • gawk-devel-5.1.0-6.el9_8.1.tuxcare.els1.x86_64.rpm
    sha:e58e30d5305273538f7c056006d84049964277ea81888efac9af13980844c49b
  • gawk-doc-5.1.0-6.el9_8.1.tuxcare.els1.noarch.rpm
    sha:2e7ef48b9906144c3880c191cad7a87bd521202c0fe9a2a35c50265894428360
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.