ELSA-2026-50249

ELSA-2026-50249 - dtrace security update

Type:SECURITY
Impact:MODERATE
Release Date:2026-04-30

Description


[2.0.7-4]
- Prevent out-of-buonds memory access during object symbol table construction
(CVE-2026-35233). [Orabug: 39121881]
- Prevent divide-by-zero (FPE trap) if section header data is corrupted.
(CVE-2026-21996). [Orabug: 39121874]
- Ensure safety checks are performed on program header data from ELF objects.
- Ensure that the data of string table sections is proper terminated.
- Ensure that the symbol table references a valid string table.

Credit Statement:
The following people or organizations reported security vulnerabilities addressed by this ELSA to Oracle:
Vishal Panchani CVE-2026-35233 CVE-2026-21996


Related CVEs


CVE-2026-21996
CVE-2026-35233

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 10 (aarch64) dtrace-2.0.7-4.el10.src.rpm4a2d07fc7ecf81ff03db50bde21b04289aaa14405c3966a329c328c70cd7f047-ol10_aarch64_UEKR8
dtrace-2.0.7-4.el10.aarch64.rpmebf77daa6c937afb954424c14a2bdd491174976b5208bffcf0bc7d9f47049456-ol10_aarch64_UEKR8
dtrace-devel-2.0.7-4.el10.aarch64.rpm0b53f144e13ef25128f4b5f24c47c68be77b22991720bbf3d35562b65fe31269-ol10_aarch64_UEKR8
dtrace-testsuite-2.0.7-4.el10.aarch64.rpma032289d18d4ebeca63f8ef137121c9fcbd136de8d4719f62f76989c2448ef12-ol10_aarch64_UEKR8
Oracle Linux 10 (x86_64) dtrace-2.0.7-4.el10.src.rpm4a2d07fc7ecf81ff03db50bde21b04289aaa14405c3966a329c328c70cd7f047-ol10_x86_64_UEKR8
dtrace-2.0.7-4.el10.x86_64.rpm93d14e56b1ec9170b0c0ef463243c5b838c9fbd453131055a748362652ab8102-ol10_x86_64_UEKR8
dtrace-devel-2.0.7-4.el10.x86_64.rpm8dec6d1084a33035af75a27e46107a5944c5fba0be6f05359a993b6ebe78f90e-ol10_x86_64_UEKR8
dtrace-testsuite-2.0.7-4.el10.x86_64.rpmc1b47a2b3c79ecc9026e63fe172cb51dc836001309c28a40311685fee938776b-ol10_x86_64_UEKR8
Oracle Linux 9 (aarch64) dtrace-2.0.7-4.el9.src.rpm6eb75eda77cea3bd20a3954894e47b25d95c13032e21f8a4cbd85057b05563c0-ol9_aarch64_UEKR8
dtrace-2.0.7-4.el9.aarch64.rpm7e7e51a049d9fe59bc2920065eb08b1cbb86c725fe29212bd8bffb8bf0673bfb-ol9_aarch64_UEKR8
dtrace-devel-2.0.7-4.el9.aarch64.rpm9210171fb9692d2ca86137232e2ffffc93b84579f13439db69dbde1ae7b076ad-ol9_aarch64_UEKR8
dtrace-testsuite-2.0.7-4.el9.aarch64.rpm7763b6d17167cdce254f55f0237da5323370d884c665961b7aaed033f6d19573-ol9_aarch64_UEKR8
Oracle Linux 9 (x86_64) dtrace-2.0.7-4.el9.src.rpm6eb75eda77cea3bd20a3954894e47b25d95c13032e21f8a4cbd85057b05563c0-ol9_x86_64_UEKR8
dtrace-2.0.7-4.el9.x86_64.rpm02a601a9f87402d3cfc2477b3dc97b5ad51eda64e11d7d9ad4e815066697b785-ol9_x86_64_UEKR8
dtrace-devel-2.0.7-4.el9.x86_64.rpmd403dee5350bc9eafff7f48b946cb246d3e5a0d011723985f7e2bb01bc27d77a-ol9_x86_64_UEKR8
dtrace-testsuite-2.0.7-4.el9.x86_64.rpm1fa831df046cadd607d0c5b2079d58bc7675dbf0a8b550ec7af59914731a470e-ol9_x86_64_UEKR8



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete