[CLSA-2026:1772448200] grafana: Fix of 3 CVEs
Type:
security
Severity:
Important
Release date:
2026-03-02 10:43:24 UTC
Description:
- rebuild with golang 1.25.7 which fixes the following CVEs - - CVE-2025-61726: fix DoS due to memory exhaustion flaw in net/url parameter parsing - CVE-2025-61728: fix DoS due to CPU exhaustion flaw in archive/zip indexing - CVE-2025-61729: fix DoS due to CPU exhaustion flaw in crypto/x509 certificate validation
Updated packages:
  • grafana-10.2.6-15.el9_6.tuxcare.els2.x86_64.rpm
    sha:75acbe68aec26ee8d1d9bfc37d2f30756c921d062654c1f074f6b82e2e7e23c9
  • grafana-selinux-10.2.6-15.el9_6.tuxcare.els2.x86_64.rpm
    sha:5abb50ebb921fb47165d6b52452e183c302eb2208823ef6ffa7db9388f99865e
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.