{
  "document": {
    "aggregate_severity": {
      "text": "Critical"
    },
    "category": "csaf_security_advisory",
    "csaf_version": "2.0",
    "distribution": {
      "text": "TuxCare License Agreement",
      "tlp": {
        "label": "WHITE",
        "url": "https://www.first.org/tlp/"
      }
    },
    "lang": "en",
    "notes": [
      {
        "category": "legal_disclaimer",
        "text": "This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Cloud Linux Inc. and provide a link to the original.",
        "title": "Terms of Use"
      },
      {
        "category": "details",
        "text": "CVE-2026-58459: prevent command injection in gpsprof gnuplot output",
        "title": "Details"
      }
    ],
    "publisher": {
      "category": "vendor",
      "contact_details": "https://tuxcare.com/contact/",
      "name": "TuxCare",
      "namespace": "https://tuxcare.com/"
    },
    "references": [
      {
        "category": "self",
        "summary": "https://cve.tuxcare.com/els/releases/CLSA-2026:1786447733",
        "url": "https://cve.tuxcare.com/els/releases/CLSA-2026:1786447733"
      },
      {
        "category": "self",
        "summary": "Canonical URL",
        "url": "https://security.tuxcare.com/csaf/v2/els_os/almalinux9.2esu/advisories/2026/clsa-2026_1786447733.json"
      }
    ],
    "tracking": {
      "current_release_date": "2026-08-11T11:29:31Z",
      "generator": {
        "date": "2026-08-11T11:29:31Z",
        "engine": {
          "name": "pyCSAF"
        }
      },
      "id": "CLSA-2026:1786447733",
      "initial_release_date": "2026-08-11T11:29:31Z",
      "revision_history": [
        {
          "date": "2026-08-11T11:29:31Z",
          "number": "1",
          "summary": "Initial version"
        }
      ],
      "status": "final",
      "version": "1"
    },
    "title": "gpsd-minimal: Fix of CVE-2026-58459"
  },
  "product_tree": {
    "branches": [
      {
        "branches": [
          {
            "branches": [
              {
                "category": "product_name",
                "name": "AlmaLinux 9.2",
                "product": {
                  "name": "AlmaLinux 9.2",
                  "product_id": "AlmaLinux-9.2",
                  "product_identification_helper": {
                    "cpe": "cpe:2.3:o:almalinux:almalinux:9.2:*:*:*:*:*:*:*"
                  }
                }
              }
            ],
            "category": "product_family",
            "name": "AlmaLinux"
          }
        ],
        "category": "vendor",
        "name": "AlmaLinux OS Foundation"
      },
      {
        "branches": [
          {
            "branches": [
              {
                "category": "product_version",
                "name": "gpsd-minimal-clients-1:3.25-1.el9.3.tuxcare.els2.x86_64",
                "product": {
                  "name": "gpsd-minimal-clients-1:3.25-1.el9.3.tuxcare.els2.x86_64",
                  "product_id": "gpsd-minimal-clients-1:3.25-1.el9.3.tuxcare.els2.x86_64",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/tuxcare/gpsd-minimal-clients@3.25-1.el9.3.tuxcare.els2?arch=x86_64&epoch=1"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "gpsd-minimal-1:3.25-1.el9.3.tuxcare.els2.x86_64",
                "product": {
                  "name": "gpsd-minimal-1:3.25-1.el9.3.tuxcare.els2.x86_64",
                  "product_id": "gpsd-minimal-1:3.25-1.el9.3.tuxcare.els2.x86_64",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/tuxcare/gpsd-minimal@3.25-1.el9.3.tuxcare.els2?arch=x86_64&epoch=1"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "gpsd-minimal-clients-1:3.25-1.el9.3.tuxcare.els1.x86_64",
                "product": {
                  "name": "gpsd-minimal-clients-1:3.25-1.el9.3.tuxcare.els1.x86_64",
                  "product_id": "gpsd-minimal-clients-1:3.25-1.el9.3.tuxcare.els1.x86_64",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/tuxcare/gpsd-minimal-clients@3.25-1.el9.3.tuxcare.els1?arch=x86_64&epoch=1"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "gpsd-minimal-1:3.25-1.el9.3.tuxcare.els1.x86_64",
                "product": {
                  "name": "gpsd-minimal-1:3.25-1.el9.3.tuxcare.els1.x86_64",
                  "product_id": "gpsd-minimal-1:3.25-1.el9.3.tuxcare.els1.x86_64",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/tuxcare/gpsd-minimal@3.25-1.el9.3.tuxcare.els1?arch=x86_64&epoch=1"
                  }
                }
              }
            ],
            "category": "architecture",
            "name": "x86_64"
          }
        ],
        "category": "vendor",
        "name": "TuxCare"
      }
    ],
    "relationships": [
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "gpsd-minimal-clients-1:3.25-1.el9.3.tuxcare.els2.x86_64 as a component of AlmaLinux 9.2",
          "product_id": "AlmaLinux-9.2:gpsd-minimal-clients-1:3.25-1.el9.3.tuxcare.els2.x86_64"
        },
        "product_reference": "gpsd-minimal-clients-1:3.25-1.el9.3.tuxcare.els2.x86_64",
        "relates_to_product_reference": "AlmaLinux-9.2"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "gpsd-minimal-1:3.25-1.el9.3.tuxcare.els2.x86_64 as a component of AlmaLinux 9.2",
          "product_id": "AlmaLinux-9.2:gpsd-minimal-1:3.25-1.el9.3.tuxcare.els2.x86_64"
        },
        "product_reference": "gpsd-minimal-1:3.25-1.el9.3.tuxcare.els2.x86_64",
        "relates_to_product_reference": "AlmaLinux-9.2"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "gpsd-minimal-clients-1:3.25-1.el9.3.tuxcare.els1.x86_64 as a component of AlmaLinux 9.2",
          "product_id": "AlmaLinux-9.2:gpsd-minimal-clients-1:3.25-1.el9.3.tuxcare.els1.x86_64"
        },
        "product_reference": "gpsd-minimal-clients-1:3.25-1.el9.3.tuxcare.els1.x86_64",
        "relates_to_product_reference": "AlmaLinux-9.2"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "gpsd-minimal-1:3.25-1.el9.3.tuxcare.els1.x86_64 as a component of AlmaLinux 9.2",
          "product_id": "AlmaLinux-9.2:gpsd-minimal-1:3.25-1.el9.3.tuxcare.els1.x86_64"
        },
        "product_reference": "gpsd-minimal-1:3.25-1.el9.3.tuxcare.els1.x86_64",
        "relates_to_product_reference": "AlmaLinux-9.2"
      }
    ]
  },
  "vulnerabilities": [
    {
      "cve": "CVE-2026-58459",
      "cwe": {
        "id": "CWE-78",
        "name": "Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')"
      },
      "notes": [
        {
          "category": "description",
          "text": "gpsd through release-3.27.5, fixed at commit 4c06658, contains a command injection vulnerability in gpsprof that allows attackers who control the GPS device subtype value to execute arbitrary shell commands by embedding backtick payloads in the gnuplot plot title without proper escaping. The subtype field sourced from a DEVICES JSON log entry or NMEA PGRMT sentence is written into a generated gnuplot program via a set title statement with only double-quote characters escaped, enabling arbitrary shell command execution as the user running gnuplot when the victim renders the generated plot through the gpsprof and gnuplot workflow.",
          "title": "Vulnerability description"
        },
        {
          "category": "general",
          "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product's status, and are included for informational purposes to better understand the severity of this vulnerability.",
          "title": "CVSS score applicability"
        }
      ],
      "product_status": {
        "fixed": [
          "AlmaLinux-9.2:gpsd-minimal-1:3.25-1.el9.3.tuxcare.els2.x86_64",
          "AlmaLinux-9.2:gpsd-minimal-clients-1:3.25-1.el9.3.tuxcare.els2.x86_64"
        ],
        "known_affected": [
          "AlmaLinux-9.2:gpsd-minimal-1:3.25-1.el9.3.tuxcare.els1.x86_64",
          "AlmaLinux-9.2:gpsd-minimal-clients-1:3.25-1.el9.3.tuxcare.els1.x86_64"
        ]
      },
      "references": [
        {
          "category": "self",
          "summary": "Canonical URL",
          "url": "https://cve.tuxcare.com/els/cve/CVE-2026-58459"
        },
        {
          "category": "external",
          "summary": "https://github.com/ntpsec/gpsd/commit/1a6bb7bcbdf58aa940132e630870af061dc88537",
          "url": "https://github.com/ntpsec/gpsd/commit/1a6bb7bcbdf58aa940132e630870af061dc88537"
        },
        {
          "category": "external",
          "summary": "https://github.com/ntpsec/gpsd/commit/4c06658e988f4ced1a7a574ce082a22ef625df56",
          "url": "https://github.com/ntpsec/gpsd/commit/4c06658e988f4ced1a7a574ce082a22ef625df56"
        },
        {
          "category": "external",
          "summary": "https://github.com/ntpsec/gpsd/commit/5581ba196d826a984fbfaf792b7d58535f9911ce",
          "url": "https://github.com/ntpsec/gpsd/commit/5581ba196d826a984fbfaf792b7d58535f9911ce"
        },
        {
          "category": "external",
          "summary": "https://gitlab.com/gpsd/gpsd/-/work_items/404#note_3534119267",
          "url": "https://gitlab.com/gpsd/gpsd/-/work_items/404#note_3534119267"
        },
        {
          "category": "external",
          "summary": "https://www.vulncheck.com/advisories/gpsd-gpsprof-command-injection-via-gnuplot-plot-title-subtype-field",
          "url": "https://www.vulncheck.com/advisories/gpsd-gpsprof-command-injection-via-gnuplot-plot-title-subtype-field"
        }
      ],
      "release_date": "2026-07-09T17:17:00Z",
      "remediations": [
        {
          "category": "vendor_fix",
          "date": "2026-08-11T11:28:55.450289Z",
          "details": "Details on how to apply the fix are available at: https://cve.tuxcare.com/els/releases/CLSA-2026:1786447733",
          "product_ids": [
            "AlmaLinux-9.2:gpsd-minimal-1:3.25-1.el9.3.tuxcare.els2.x86_64",
            "AlmaLinux-9.2:gpsd-minimal-clients-1:3.25-1.el9.3.tuxcare.els2.x86_64"
          ],
          "url": "https://cve.tuxcare.com/els/releases/CLSA-2026:1786447733"
        },
        {
          "category": "none_available",
          "date": "2026-07-09T17:17:00Z",
          "details": "Affected",
          "product_ids": [
            "AlmaLinux-9.2:gpsd-minimal-1:3.25-1.el9.3.tuxcare.els1.x86_64",
            "AlmaLinux-9.2:gpsd-minimal-clients-1:3.25-1.el9.3.tuxcare.els1.x86_64"
          ]
        }
      ],
      "scores": [
        {
          "cvss_v3": {
            "attackComplexity": "LOW",
            "attackVector": "NETWORK",
            "availabilityImpact": "HIGH",
            "baseScore": 9.6,
            "baseSeverity": "CRITICAL",
            "confidentialityImpact": "HIGH",
            "integrityImpact": "HIGH",
            "privilegesRequired": "NONE",
            "scope": "CHANGED",
            "userInteraction": "REQUIRED",
            "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H",
            "version": "3.1"
          },
          "products": [
            "AlmaLinux-9.2:gpsd-minimal-1:3.25-1.el9.3.tuxcare.els2.x86_64",
            "AlmaLinux-9.2:gpsd-minimal-clients-1:3.25-1.el9.3.tuxcare.els2.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "details": "Critical"
        }
      ]
    }
  ]
}