Linuxsecurity Oracle Linux 9 Security Updates Address Multiple Vulnerabilities
Article Content
- •Oracle Linux 9 updates address critical vulnerabilities in Go and Podman.
- •CVE-2026-33811 and CVE-2026-39820 are among the vulnerabilities resolved in the updates.
- •Administrators are urged to apply the updates to mitigate security risks.
Oracle Linux 9 has released significant security updates addressing vulnerabilities in Go and Podman. The updates include a new version of Go (1.26.3) that resolves several CVEs, including CVE-2026-33811 and CVE-2026-39820, which were published on May 7, 2026. Additionally, Podman has been rebuilt to support the experimental GODEBUG fipsnoenforceems variable and to address CVE-2026-32283, published on April 8, 2026. The updates affect various packages across x86_64 and aarch64 architectures. Administrators are advised to apply these updates promptly to mitigate potential risks associated with the vulnerabilities. The updates were released on June 25 and June 26, 2026, respectively, indicating a proactive approach to security by Oracle.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (3)
Following this threat?
Track Oracle and CVE-2026-25679 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
CVE-2015-3306 Exploited in ProFTPD FTP Servers CVE-2015-3306, a vulnerability in ProFTPD 1.3.5, allows remote attackers to read and write arbitrary files using the SITE CPFR and SITE CPTO commands. This exploit can lead to unauthorized access and potential remote code execution, as the commands are executed with the privileges of the ProFTPD service. Active…
CISA Mandates Urgent Patching of Five Critical Flaws Exploited by Flax Typhoon The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has ordered federal agencies to patch five critical vulnerabilities by October 11, 2026, following exploitation by the China-linked hacking group Flax Typhoon. The vulnerabilities, added to CISA's Known Exploited Vulnerabilities (KEV) catalog, include…