[CLSA-2026:1772448804] grafana-pcp: Fix of 3 CVEs
Type:
security
Severity:
Critical
Release date:
2026-03-02 10:53:28 UTC
Description:
- Rebuild against recent Go compiler - CVE-2025-61726: fix net/url excessive memory consumption when parsing large forms with many unique query parameters - CVE-2025-61729: fix crypto/x509 certificate verification allowing excessive resource consumption via HostnameError.Error() - CVE-2025-68121: fix crypto/tls session resumption succeeding when it should fail due to mutated ClientCAs or RootCAs between handshakes
Updated packages:
  • grafana-pcp-5.1.1-11.el9_6.tuxcare.els1.x86_64.rpm
    sha:c64f532b2d03247d2385415b3e4109bd7e66a120926f5507a7cfe8646c4ba4eb
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.