[CLSA-2026:1777306907] runc: Fix of CVE-2026-25679
Type:
security
Severity:
Important
Release date:
2026-04-27 16:21:52 UTC
Description:
- Rebuild with Go 1.25.8 to fix Go standard library CVE - CVE-2026-25679: reject invalid IPv6 host literals in net/url.Parse to prevent URL validation bypass
Updated packages:
  • runc-1.2.5-3.el9_6.tuxcare.els2.x86_64.rpm
    sha:4e415708504e95928ca3fc61a648c6a8c0834545819fbcbea7223746d3ef2ba3
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.