Issued at: 2026-10-09
Updated at: 2026-10-09
Advisory content derived from Red Hat RHSA-2026:78952, © Red Hat, Inc., used under CC BY 4.0, with modifications.
Synopsis
Moderate: tftp security update
Description
The Trivial File Transfer Protocol (TFTP) is typically used only for booting diskless workstations. The tftp packages include the tftp and tftp-server subpackages. The tftp subpackage provides the user interface for TFTP and the tftp-server subpackage provides the server. This allows users to transfer files to and from a remote machine.
Security Fix(es):
* tftp: tftp-hpa: Denial of Service due to out-of-bounds read/write in remap engine (CVE-2026-85234)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.