[CLSA-2026:1777881308] jq: Fix of 2 CVEs
Type:
security
Severity:
Important
Release date:
2026-05-04 07:55:12 UTC
Description:
- CVE-2026-32316: fix heap buffer overflow in jvp_string_append and jvp_string_copy_replace_bad - CVE-2026-39979: fix out-of-bounds read in jv_parse_sized
Updated packages:
  • jq-1.6-17.el9_6.2.tuxcare.els1.i686.rpm
    sha:f7e523e5258e55ef89a54660b13688230892baf610cb30fb8c63e4f08a364f1d
  • jq-1.6-17.el9_6.2.tuxcare.els1.x86_64.rpm
    sha:fc090f2c1b37759d7986d10977c4becd524bfe6a9f299a5beb4482aadd5249d5
  • jq-devel-1.6-17.el9_6.2.tuxcare.els1.i686.rpm
    sha:ae87cdd835a8ce4ab6b3d409687f02c8b1268e5862cd4484ad519a73f7870763
  • jq-devel-1.6-17.el9_6.2.tuxcare.els1.x86_64.rpm
    sha:585598c325e5ec5b28f112fb3f5c9f1f3c024407a360707f9dbfd72a13a188d5
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.