[Apollo] Advisories Statistics light light Login

RLSA-2026:57600

Security Mirrored from RHSA-2026:57600
Issued at: 2026-08-21
Updated at: 2026-08-21

Advisory content derived from Red Hat RHSA-2026:57600, © Red Hat, Inc., used under CC BY 4.0, with modifications.

Synopsis

Important: mrtg security update



Description

The Multi Router Traffic Grapher (MRTG) monitors the traffic load on network connections. MRTG generates HTML pages containing PNG images which provide a live visual representation of this traffic.

Security Fix(es):

* mrtg: MRTG daemon symlink-following chown allows local privilege escalation via PID file path manipulation (CVE-2026-72694)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.



Affected products

Rocky Linux 9 aarch64 Rocky Linux 9 ppc64le Rocky Linux 9 s390x Rocky Linux 9 x86_64

Fixes

2460973

CVEs

CVE-2026-72694

Affected packages

Rocky Linux 9 aarch64 - AppStream

mrtg-0:2.17.7-12.el9_8.1.aarch64.rpm mrtg-0:2.17.7-12.el9_8.1.src.rpm mrtg-debuginfo-0:2.17.7-12.el9_8.1.aarch64.rpm mrtg-debugsource-0:2.17.7-12.el9_8.1.aarch64.rpm

Rocky Linux 9 ppc64le - AppStream

mrtg-0:2.17.7-12.el9_8.1.ppc64le.rpm mrtg-0:2.17.7-12.el9_8.1.src.rpm mrtg-debuginfo-0:2.17.7-12.el9_8.1.ppc64le.rpm mrtg-debugsource-0:2.17.7-12.el9_8.1.ppc64le.rpm

Rocky Linux 9 s390x - AppStream

mrtg-0:2.17.7-12.el9_8.1.s390x.rpm mrtg-0:2.17.7-12.el9_8.1.src.rpm mrtg-debuginfo-0:2.17.7-12.el9_8.1.s390x.rpm mrtg-debugsource-0:2.17.7-12.el9_8.1.s390x.rpm

Rocky Linux 9 x86_64 - AppStream

mrtg-0:2.17.7-12.el9_8.1.x86_64.rpm mrtg-debuginfo-0:2.17.7-12.el9_8.1.x86_64.rpm mrtg-debugsource-0:2.17.7-12.el9_8.1.x86_64.rpm