Oracle Linux dtrace Vulnerability Fixes Released for Multiple Versions

Oracle Linux dtrace Vulnerability Fixes Released for Multiple Versions

First seen 14 Mar 2026, 19:56 UTC Linuxsecurity 57.0

Article Content

Browse articles
ThreatCluster

On March 14, 2026, Oracle released security updates addressing a moderate risk vulnerability in the dtrace component across multiple versions of Oracle Linux. The vulnerability, identified as CVE-2026-21991, involves unsafe probe description handling in the dtprobed tool. Affected versions include Oracle Linux 8, 9, and the specific ELSA-2026-50153 advisory for Oracle Linux. The issue was reported by Dhiraj Mishra and has been assigned a moderate severity rating. The updates include patched RPM packages for both x86_64 and aarch64 architectures. Users are advised to apply these updates promptly to mitigate potential exploitation risks. No active exploitation has been reported at this time.

Key Points: • Oracle released patches for CVE-2026-21991 affecting multiple Oracle Linux versions. • The vulnerability involves unsafe probe description handling in dtprobed. • Users are encouraged to update their systems to prevent potential exploitation.

Timeline

2026-03-14
Oracle releases security updates for CVE-2026-21991
2026-03-14
CVE-2026-21991 reported by Dhiraj Mishra
Recent
No active exploitation reported