[CLSA-2026:1779124021] firewalld: Fix of CVE-2026-4948
Type:
security
Severity:
Moderate
Release date:
2026-05-18 17:07:11 UTC
Description:
- CVE-2026-4948: use PK_ACTION_CONFIG instead of PK_ACTION_CONFIG_INFO for setZoneSettings2 and setPolicySettings to require config-write authorization
Updated packages:
  • firewall-applet-1.3.4-15.el9_6.tuxcare.els1.noarch.rpm
    sha:e9059f87a8678b2ee86efae812a39965b249317c6486d1f9d746fd7f058b7348
  • firewall-config-1.3.4-15.el9_6.tuxcare.els1.noarch.rpm
    sha:5bf29946a0567fc23d3a7efa7b6e9abcf9e0e624f9564fa035b661d6576d4ce9
  • firewalld-1.3.4-15.el9_6.tuxcare.els1.noarch.rpm
    sha:a0803850ac4d901a1537b8af6d9e4a5a20863b066d458de0bf7437d3304d759a
  • firewalld-filesystem-1.3.4-15.el9_6.tuxcare.els1.noarch.rpm
    sha:b7e62b095ed047b1492958460763e36af6008ab86ef8c42f88458f3a7f8c4c69
  • python3-firewall-1.3.4-15.el9_6.tuxcare.els1.noarch.rpm
    sha:d0be88a0bf018617f7cd97d088c1e36425c34b1f07ed72c1b0b24ac2d61d4acf
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.