Back Linuxsecurity Oracle Linux 9 git-lfs Important Remote Access Advisory ELSA-2026
[3.7.1-4.1] - Fix CVE-2026-39821: vendored golang.org/x/net/idna ToUnicode incorrectly accepting all-ASCII xn-- labels - Resolves: RHEL-183797
[3.7.1-4.1] - Fix CVE-2026-39821: vendored golang.org/x/net/idna ToUnicode incorrectly accepting all-ASCII xn-- labels - Resolves: RHEL-183797
git-lfs-3.7.1-4.el9_8.1.x86_64.rpm
git-lfs-3.7.1-4.el9_8.1.x86_64.rpm
git-lfs-3.7.1-4.el9_8.1.aarch64.rpm
git-lfs-3.7.1-4.el9_8.1.aarch64.rpm
Related CVEs: CVE-2026-39821
Get the latest Linux and open source security news straight to your inbox.
The full story
This article is one source in a clustered incident — the cluster page carries the summary, timeline and every other outlet covering it.
