ELSA-2026-70640

ELSA-2026-70640 - buildah security update

Type:SECURITY
Impact:IMPORTANT
Release Date:2026-09-24

Description


[1.43.3-2.0.1]
- Drop nmap-ncat requirement and skip ignore-socket test case [Orabug: 34117178]

[2:1.43.3-2]
- rebuild for CVE-2026-56853 CVE-2026-56858 CVE-2026-33818 CVE-2026-56860 CVE-2026-56862
- Resolves: RHEL-241114 RHEL-241310 RHEL-241620 RHEL-241779 RHEL-242275

[2:1.43.3-1]
- Update to buildah 1.43.3 (488c1c92)
- Resolves: RHEL-219426

[2:1.43.2-1]
- Update to release-1.43 branch HEAD (609eb9466)
- Ensures golang.org/x/crypto v0.53.0 for CVE-2026-46597 fix
- Resolves: RHEL-219426


Related CVEs


CVE-2025-11395
CVE-2026-15789
CVE-2026-33818
CVE-2026-56853
CVE-2026-56855
CVE-2026-56858
CVE-2026-56860
CVE-2026-56862

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 9 (aarch64) buildah-1.43.3-2.0.1.el9_8.src.rpm397a344a5ac05a9c3592b7fc30b45810acc2c3c5dc666186ac6f55d702f3da06-ol9_aarch64_appstream
buildah-1.43.3-2.0.1.el9_8.aarch64.rpm7ab9dac18fdc6d86b14782b938153a707a3da93fad54769d3d57647d8915caf1-ol9_aarch64_appstream
buildah-tests-1.43.3-2.0.1.el9_8.aarch64.rpmd49fa01217be527d7a3e01d41d7c08183932033f78bfd48337115f56e46a2fbb-ol9_aarch64_appstream
Oracle Linux 9 (x86_64) buildah-1.43.3-2.0.1.el9_8.src.rpm397a344a5ac05a9c3592b7fc30b45810acc2c3c5dc666186ac6f55d702f3da06-ol9_x86_64_appstream
buildah-1.43.3-2.0.1.el9_8.x86_64.rpme3e4f2c4cb2bc6bd4ac15ad483c8cb49e921782a84b2679c7c181ee2ad44ec61-ol9_x86_64_appstream
buildah-tests-1.43.3-2.0.1.el9_8.x86_64.rpmedf04cc129483cee954bee448159a8766e1463e4a763edc3773979331ddc252b-ol9_x86_64_appstream



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete