[CLSA-2026:1784720743] patch: Fix of 2 CVEs
Type:
security
Severity:
Moderate
Release date:
2026-07-22 11:46:11 UTC
Description:
- CVE-2026-56288: NULL pointer dereference via crafted unified-diff hunk (another_hunk) - CVE-2026-56289: Denial of service via infinite loop on null-range hunk offsets (locate_hunk)
Updated packages:
  • patch-2.7.6-16.el9_2.tuxcare.els1.x86_64.rpm
    sha:fa6bde399a1c036dae6473c0096eb0be401a3f3d600861166ef9d522c4b4ae1f
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.