[Apollo] Advisories Statistics light light Login

RLSA-2026:73511

Security Mirrored from RHSA-2026:73511
Issued at: 2026-10-02
Updated at: 2026-10-02

Advisory content derived from Red Hat RHSA-2026:73511, © Red Hat, Inc., used under CC BY 4.0, with modifications.

Synopsis

Moderate: gawk security update



Description

The gawk packages contain the GNU version of awk, a text processing utility. Awk interprets a special-purpose programming language to do quick and easy text pattern matching and reformatting jobs.

Security Fix(es):

* gawk: gawk: Memory corruption via integer overflow (CVE-2026-40468)

* gawk: gawk: Denial of Service due to Use After Free vulnerability in io.c (CVE-2026-40467)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.



Affected products

Rocky Linux 8 aarch64 Rocky Linux 8 x86_64

Fixes

2499655 2499658

CVEs

CVE-2026-40467 CVE-2026-40468

Affected packages

Rocky Linux 8 aarch64 - BaseOS

gawk-0:4.2.1-5.el8_10.aarch64.rpm gawk-0:4.2.1-5.el8_10.src.rpm gawk-debuginfo-0:4.2.1-5.el8_10.aarch64.rpm gawk-debugsource-0:4.2.1-5.el8_10.aarch64.rpm

Rocky Linux 8 x86_64 - BaseOS

gawk-0:4.2.1-5.el8_10.src.rpm gawk-0:4.2.1-5.el8_10.x86_64.rpm gawk-debuginfo-0:4.2.1-5.el8_10.x86_64.rpm gawk-debugsource-0:4.2.1-5.el8_10.x86_64.rpm