The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:
[1:9.0.120-1] - Resolves: RHEL-192649 Tomcat9: Improper Input Validation vulnerability due to incomplete fix (CVE-2026-32990) - Resolves: RHEL-192818 Tomcat9: HTTP/2 request headers not validated (CVE-2026-41293) - Resolves: RHEL-219582 Tomcat9: Insufficient documentation for EncryptInterceptor may lead to insecure configurations (CVE-2026-59084) - Resolves: RHEL-219556 Tomcat9: Security constraint bypass via improper URL encoding in rewrite valve (CVE-2026-59083) - Resolves: RHEL-238296 tomcat9: Authentication bypass via digest authentication (CVE-2026-43512) - Resolves: RHEL-238255 tomcat9: Improper Authorization allows security bypass (CVE-2026-43515) - Resolves: RHEL-238232 tomcat9: Improper Handling of Case Sensitivity in LockOutRealm (CVE-2026-43513) - Resolves: RHEL-238193 tomcat9: Information disclosure due to HTTP Authentication Header exposure during WebSocket authentication (CVE-2026-42498)
![]()
http://oss.oracle.com/ol10/SRPMS-updates/tomcat9-9.0.120-1.el10_2.src.rpm
tomcat9-9.0.120-1.el10_2.noarch.rpm tomcat9-admin-webapps-9.0.120-1.el10_2.noarch.rpm tomcat9-docs-webapp-9.0.120-1.el10_2.noarch.rpm tomcat9-el-3.0-api-9.0.120-1.el10_2.noarch.rpm tomcat9-jsp-2.3-api-9.0.120-1.el10_2.noarch.rpm tomcat9-lib-9.0.120-1.el10_2.noarch.rpm tomcat9-servlet-4.0-api-9.0.120-1.el10_2.noarch.rpm tomcat9-webapps-9.0.120-1.el10_2.noarch.rpm
tomcat9-9.0.120-1.el10_2.noarch.rpm tomcat9-admin-webapps-9.0.120-1.el10_2.noarch.rpm tomcat9-docs-webapp-9.0.120-1.el10_2.noarch.rpm tomcat9-el-3.0-api-9.0.120-1.el10_2.noarch.rpm tomcat9-jsp-2.3-api-9.0.120-1.el10_2.noarch.rpm tomcat9-lib-9.0.120-1.el10_2.noarch.rpm tomcat9-servlet-4.0-api-9.0.120-1.el10_2.noarch.rpm tomcat9-webapps-9.0.120-1.el10_2.noarch.rpm
| # | Наименование новости | Тональность | Информативность | Дата публикации |
|---|---|---|---|---|
| 1 | Oracle Linux 10 Sudo Important Execveat Bug Fix ELSA-2026-68692 | 0 | 12.8 | 21-09-2026 |
| 2 | Oracle Linux 10 ELSA-2026-68507 Kernel Important Bug Fixes | 0 | 12.86 | 21-09-2026 |
| 3 | Oracle Linux 10 image-builder Important Fixes ELSA-2026-67139-0 | 0 | 16.33 | 21-09-2026 |
| 4 | Oracle Linux 8 Tomcat Important Security Advisory ELSA-2026-68677 | 0 | 12.86 | 21-09-2026 |
| 5 | Oracle Linux 9 Tomcat Moderate Fix Advisory ELSA-2026-68660 CVE-2026-32990 | 0 | 12.8 | 21-09-2026 |
| 6 | Oracle ELSA-2026-68676 - Important Bug Fix in .NET 10.0 Version | 0 | 14.63 | 21-09-2026 |
| 7 | Oracle Linux 8 Kernel Important Security Update ELSA-2026-68531 | 0 | 12.86 | 21-09-2026 |
| 8 | Oracle 8 Perl-Net-DNS Important Unbounded Recursion Threat ELSA-2026-68787 | 0 | 17.36 | 21-09-2026 |
| 9 | Oracle Linux 9 Kernel Important Bug Fix Advisory ELSA-2026-68570 | 0 | 12.8 | 21-09-2026 |
| 10 | Oracle Linux 9 perl-Net-DNS Important TSIG Issue Advisory ELSA-2026-68786 | 0 | 16 | 21-09-2026 |