Release date:
2026-08-13 08:29:20 UTC
Description:
- CVE-2026-57062: require a minimum AES-GCM authentication tag length of
12 octets in gpgsm CMS decryption; a 4-octet aes-ICVlen was previously
accepted, weakening the integrity guarantee of the message
Updated packages:
-
gnupg2-2.3.3-4.el9_6.tuxcare.els5.x86_64.rpm
sha:0382e62b9181a224bb3825ffd6f6aff99987abd99549395810fddc72fc99934c
-
gnupg2-smime-2.3.3-4.el9_6.tuxcare.els5.x86_64.rpm
sha:0c92bef8fadd39a7f2f82ddd4ee2356c013cb37dba8289edbcefd0ea82817b52
Notes:
This page is generated automatically and has not been checked for errors. For clarification or
corrections please contact the
CloudLinux Packaging Team.