[Apollo] Advisories Statistics light light Login

RLSA-2026:3033

Security Mirrored from RHSA-2026:3033
Issued at: 2026-02-24
Updated at: 2026-02-24

Synopsis

Important: munge security update



Description

MUNGE (MUNGE Uid 'N' Gid Emporium) is an authentication service for creating and validating credentials. It is designed to be highly scalable for use in an HPC cluster environment. It allows a process to authenticate the UID and GID of another local or remote process within a group of hosts having common users and groups. These hosts form a security realm that is defined by a shared cryptographic key. Clients within this security realm can create and validate credentials without the use of root privileges, reserved ports, or platform-specific methods.

Security Fix(es):

* MUNGE: MUNGE has a buffer overflow in message unpacking allows key leakage and credential forgery (CVE-2026-25506)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.



Affected products

Rocky Linux 10 aarch64 Rocky Linux 10 ppc64le Rocky Linux 10 s390x Rocky Linux 10 x86_64

Fixes

2438715

CVEs

CVE-2026-25506

Affected packages

Rocky Linux 10 aarch64 - AppStream

munge-libs-0:0.5.15-11.el10_1.aarch64.rpm munge-debuginfo-0:0.5.15-11.el10_1.aarch64.rpm munge-debugsource-0:0.5.15-11.el10_1.aarch64.rpm munge-0:0.5.15-11.el10_1.src.rpm munge-libs-debuginfo-0:0.5.15-11.el10_1.aarch64.rpm munge-0:0.5.15-11.el10_1.aarch64.rpm

Rocky Linux 10 s390x - AppStream

munge-debuginfo-0:0.5.15-11.el10_1.s390x.rpm munge-0:0.5.15-11.el10_1.s390x.rpm munge-0:0.5.15-11.el10_1.src.rpm munge-libs-0:0.5.15-11.el10_1.s390x.rpm munge-debugsource-0:0.5.15-11.el10_1.s390x.rpm munge-libs-debuginfo-0:0.5.15-11.el10_1.s390x.rpm

Rocky Linux 10 x86_64 - CRB

munge-devel-0:0.5.15-11.el10_1.x86_64.rpm

Rocky Linux 10 ppc64le - AppStream

munge-libs-0:0.5.15-11.el10_1.ppc64le.rpm munge-debugsource-0:0.5.15-11.el10_1.ppc64le.rpm munge-0:0.5.15-11.el10_1.src.rpm munge-0:0.5.15-11.el10_1.ppc64le.rpm munge-libs-debuginfo-0:0.5.15-11.el10_1.ppc64le.rpm munge-debuginfo-0:0.5.15-11.el10_1.ppc64le.rpm

Rocky Linux 10 s390x - CRB

munge-devel-0:0.5.15-11.el10_1.s390x.rpm

Rocky Linux 10 x86_64 - AppStream

munge-debugsource-0:0.5.15-11.el10_1.x86_64.rpm munge-libs-0:0.5.15-11.el10_1.x86_64.rpm munge-0:0.5.15-11.el10_1.src.rpm munge-0:0.5.15-11.el10_1.x86_64.rpm munge-libs-debuginfo-0:0.5.15-11.el10_1.x86_64.rpm munge-debuginfo-0:0.5.15-11.el10_1.x86_64.rpm

Rocky Linux 10 aarch64 - CRB

munge-devel-0:0.5.15-11.el10_1.aarch64.rpm

Rocky Linux 10 ppc64le - CRB

munge-devel-0:0.5.15-11.el10_1.ppc64le.rpm