{
  "document": {
    "aggregate_severity": {
      "text": "Moderate"
    },
    "category": "csaf_security_advisory",
    "csaf_version": "2.0",
    "distribution": {
      "text": "TuxCare License Agreement",
      "tlp": {
        "label": "WHITE",
        "url": "https://www.first.org/tlp/"
      }
    },
    "lang": "en",
    "notes": [
      {
        "category": "legal_disclaimer",
        "text": "This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Cloud Linux Inc. and provide a link to the original.",
        "title": "Terms of Use"
      },
      {
        "category": "details",
        "text": "CVE-2026-56392: fix heap buffer overflow in unexpand caused by an integer\n  overflow when allocating the pending-blank buffer for large -t values\n  (backport of upstream b60a159f and follow-up 4ade9cf7)",
        "title": "Details"
      }
    ],
    "publisher": {
      "category": "vendor",
      "contact_details": "https://tuxcare.com/contact/",
      "name": "TuxCare",
      "namespace": "https://tuxcare.com/"
    },
    "references": [
      {
        "category": "self",
        "summary": "https://cve.tuxcare.com/els/releases/CLSA-2026:1788177078",
        "url": "https://cve.tuxcare.com/els/releases/CLSA-2026:1788177078"
      },
      {
        "category": "self",
        "summary": "Canonical URL",
        "url": "https://security.tuxcare.com/csaf/v2/els_os/tuxcare9.6esu/advisories/2026/clsa-2026_1788177078.json"
      }
    ],
    "tracking": {
      "current_release_date": "2026-08-31T11:52:04Z",
      "generator": {
        "date": "2026-08-31T11:52:04Z",
        "engine": {
          "name": "pyCSAF"
        }
      },
      "id": "CLSA-2026:1788177078",
      "initial_release_date": "2026-08-31T11:52:04Z",
      "revision_history": [
        {
          "date": "2026-08-31T11:52:04Z",
          "number": "1",
          "summary": "Initial version"
        }
      ],
      "status": "final",
      "version": "1"
    },
    "title": "coreutils: Fix of CVE-2026-56392"
  },
  "product_tree": {
    "branches": [
      {
        "branches": [
          {
            "branches": [
              {
                "category": "product_name",
                "name": "AlmaLinux 9.6",
                "product": {
                  "name": "AlmaLinux 9.6",
                  "product_id": "AlmaLinux-9.6",
                  "product_identification_helper": {
                    "cpe": "cpe:2.3:o:almalinux:almalinux:9.6:*:*:*:*:*:*:*"
                  }
                }
              }
            ],
            "category": "product_family",
            "name": "AlmaLinux"
          }
        ],
        "category": "vendor",
        "name": "AlmaLinux OS Foundation"
      },
      {
        "branches": [
          {
            "branches": [
              {
                "category": "product_name",
                "name": "Rocky Linux 9.6",
                "product": {
                  "name": "Rocky Linux 9.6",
                  "product_id": "Rocky Linux-9.6",
                  "product_identification_helper": {
                    "cpe": "cpe:2.3:o:resf:rocky_linux:9.6:*:*:*:*:*:*:*"
                  }
                }
              }
            ],
            "category": "product_family",
            "name": "Rocky Linux"
          }
        ],
        "category": "vendor",
        "name": "Rocky Linux"
      },
      {
        "branches": [
          {
            "branches": [
              {
                "category": "product_version",
                "name": "coreutils-single-0:8.32-39.el9.tuxcare.els2.x86_64",
                "product": {
                  "name": "coreutils-single-0:8.32-39.el9.tuxcare.els2.x86_64",
                  "product_id": "coreutils-single-0:8.32-39.el9.tuxcare.els2.x86_64",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/tuxcare/coreutils-single@8.32-39.el9.tuxcare.els2?arch=x86_64"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "coreutils-0:8.32-39.el9.tuxcare.els2.x86_64",
                "product": {
                  "name": "coreutils-0:8.32-39.el9.tuxcare.els2.x86_64",
                  "product_id": "coreutils-0:8.32-39.el9.tuxcare.els2.x86_64",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/tuxcare/coreutils@8.32-39.el9.tuxcare.els2?arch=x86_64"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "coreutils-common-0:8.32-39.el9.tuxcare.els2.x86_64",
                "product": {
                  "name": "coreutils-common-0:8.32-39.el9.tuxcare.els2.x86_64",
                  "product_id": "coreutils-common-0:8.32-39.el9.tuxcare.els2.x86_64",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/tuxcare/coreutils-common@8.32-39.el9.tuxcare.els2?arch=x86_64"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "coreutils-0:8.32-39.el9.tuxcare.els1.x86_64",
                "product": {
                  "name": "coreutils-0:8.32-39.el9.tuxcare.els1.x86_64",
                  "product_id": "coreutils-0:8.32-39.el9.tuxcare.els1.x86_64",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/tuxcare/coreutils@8.32-39.el9.tuxcare.els1?arch=x86_64"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "coreutils-common-0:8.32-39.el9.tuxcare.els1.x86_64",
                "product": {
                  "name": "coreutils-common-0:8.32-39.el9.tuxcare.els1.x86_64",
                  "product_id": "coreutils-common-0:8.32-39.el9.tuxcare.els1.x86_64",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/tuxcare/coreutils-common@8.32-39.el9.tuxcare.els1?arch=x86_64"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "coreutils-single-0:8.32-39.el9.tuxcare.els1.x86_64",
                "product": {
                  "name": "coreutils-single-0:8.32-39.el9.tuxcare.els1.x86_64",
                  "product_id": "coreutils-single-0:8.32-39.el9.tuxcare.els1.x86_64",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/tuxcare/coreutils-single@8.32-39.el9.tuxcare.els1?arch=x86_64"
                  }
                }
              }
            ],
            "category": "architecture",
            "name": "x86_64"
          }
        ],
        "category": "vendor",
        "name": "TuxCare"
      }
    ],
    "relationships": [
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "coreutils-single-0:8.32-39.el9.tuxcare.els2.x86_64 as a component of AlmaLinux 9.6",
          "product_id": "AlmaLinux-9.6:coreutils-single-0:8.32-39.el9.tuxcare.els2.x86_64"
        },
        "product_reference": "coreutils-single-0:8.32-39.el9.tuxcare.els2.x86_64",
        "relates_to_product_reference": "AlmaLinux-9.6"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "coreutils-0:8.32-39.el9.tuxcare.els2.x86_64 as a component of AlmaLinux 9.6",
          "product_id": "AlmaLinux-9.6:coreutils-0:8.32-39.el9.tuxcare.els2.x86_64"
        },
        "product_reference": "coreutils-0:8.32-39.el9.tuxcare.els2.x86_64",
        "relates_to_product_reference": "AlmaLinux-9.6"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "coreutils-common-0:8.32-39.el9.tuxcare.els2.x86_64 as a component of AlmaLinux 9.6",
          "product_id": "AlmaLinux-9.6:coreutils-common-0:8.32-39.el9.tuxcare.els2.x86_64"
        },
        "product_reference": "coreutils-common-0:8.32-39.el9.tuxcare.els2.x86_64",
        "relates_to_product_reference": "AlmaLinux-9.6"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "coreutils-single-0:8.32-39.el9.tuxcare.els2.x86_64 as a component of Rocky Linux 9.6",
          "product_id": "Rocky Linux-9.6:coreutils-single-0:8.32-39.el9.tuxcare.els2.x86_64"
        },
        "product_reference": "coreutils-single-0:8.32-39.el9.tuxcare.els2.x86_64",
        "relates_to_product_reference": "Rocky Linux-9.6"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "coreutils-0:8.32-39.el9.tuxcare.els2.x86_64 as a component of Rocky Linux 9.6",
          "product_id": "Rocky Linux-9.6:coreutils-0:8.32-39.el9.tuxcare.els2.x86_64"
        },
        "product_reference": "coreutils-0:8.32-39.el9.tuxcare.els2.x86_64",
        "relates_to_product_reference": "Rocky Linux-9.6"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "coreutils-common-0:8.32-39.el9.tuxcare.els2.x86_64 as a component of Rocky Linux 9.6",
          "product_id": "Rocky Linux-9.6:coreutils-common-0:8.32-39.el9.tuxcare.els2.x86_64"
        },
        "product_reference": "coreutils-common-0:8.32-39.el9.tuxcare.els2.x86_64",
        "relates_to_product_reference": "Rocky Linux-9.6"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "coreutils-0:8.32-39.el9.tuxcare.els1.x86_64 as a component of AlmaLinux 9.6",
          "product_id": "AlmaLinux-9.6:coreutils-0:8.32-39.el9.tuxcare.els1.x86_64"
        },
        "product_reference": "coreutils-0:8.32-39.el9.tuxcare.els1.x86_64",
        "relates_to_product_reference": "AlmaLinux-9.6"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "coreutils-common-0:8.32-39.el9.tuxcare.els1.x86_64 as a component of AlmaLinux 9.6",
          "product_id": "AlmaLinux-9.6:coreutils-common-0:8.32-39.el9.tuxcare.els1.x86_64"
        },
        "product_reference": "coreutils-common-0:8.32-39.el9.tuxcare.els1.x86_64",
        "relates_to_product_reference": "AlmaLinux-9.6"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "coreutils-single-0:8.32-39.el9.tuxcare.els1.x86_64 as a component of AlmaLinux 9.6",
          "product_id": "AlmaLinux-9.6:coreutils-single-0:8.32-39.el9.tuxcare.els1.x86_64"
        },
        "product_reference": "coreutils-single-0:8.32-39.el9.tuxcare.els1.x86_64",
        "relates_to_product_reference": "AlmaLinux-9.6"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "coreutils-0:8.32-39.el9.tuxcare.els1.x86_64 as a component of Rocky Linux 9.6",
          "product_id": "Rocky Linux-9.6:coreutils-0:8.32-39.el9.tuxcare.els1.x86_64"
        },
        "product_reference": "coreutils-0:8.32-39.el9.tuxcare.els1.x86_64",
        "relates_to_product_reference": "Rocky Linux-9.6"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "coreutils-common-0:8.32-39.el9.tuxcare.els1.x86_64 as a component of Rocky Linux 9.6",
          "product_id": "Rocky Linux-9.6:coreutils-common-0:8.32-39.el9.tuxcare.els1.x86_64"
        },
        "product_reference": "coreutils-common-0:8.32-39.el9.tuxcare.els1.x86_64",
        "relates_to_product_reference": "Rocky Linux-9.6"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "coreutils-single-0:8.32-39.el9.tuxcare.els1.x86_64 as a component of Rocky Linux 9.6",
          "product_id": "Rocky Linux-9.6:coreutils-single-0:8.32-39.el9.tuxcare.els1.x86_64"
        },
        "product_reference": "coreutils-single-0:8.32-39.el9.tuxcare.els1.x86_64",
        "relates_to_product_reference": "Rocky Linux-9.6"
      }
    ]
  },
  "vulnerabilities": [
    {
      "cve": "CVE-2026-56392",
      "cwe": {
        "id": "CWE-122",
        "name": "Heap-based Buffer Overflow"
      },
      "notes": [
        {
          "category": "description",
          "text": "GNU coreutils unexpand is vulnerable to a heap-based buffer overflow due to an integer overflow during buffer allocation when processing large tab stop (-t) values. The multiplication used to calculate the allocation size can wrap around, resulting in an undersized buffer.\nWhen processing crafted input, subsequent writes exceed the allocated memory, leading to an out‑of‑bounds heap write.\n\nWhen running GNU coreutils unexpand with attacker-provided large tab stop (-t) arguments, this behavior leads to a crash and potentially achieve a heap write primitive depending on memory layout.\n\n\n\n\n\n\n\n\n\n\nThis issue has been fixed in the commit b60a159fdc5bfcf9988d3a4cb6f53abe8ad5d35d",
          "title": "Vulnerability description"
        },
        {
          "category": "general",
          "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product's status, and are included for informational purposes to better understand the severity of this vulnerability.",
          "title": "CVSS score applicability"
        }
      ],
      "product_status": {
        "fixed": [
          "AlmaLinux-9.6:coreutils-0:8.32-39.el9.tuxcare.els2.x86_64",
          "AlmaLinux-9.6:coreutils-common-0:8.32-39.el9.tuxcare.els2.x86_64",
          "AlmaLinux-9.6:coreutils-single-0:8.32-39.el9.tuxcare.els2.x86_64",
          "Rocky Linux-9.6:coreutils-0:8.32-39.el9.tuxcare.els2.x86_64",
          "Rocky Linux-9.6:coreutils-common-0:8.32-39.el9.tuxcare.els2.x86_64",
          "Rocky Linux-9.6:coreutils-single-0:8.32-39.el9.tuxcare.els2.x86_64"
        ],
        "known_affected": [
          "AlmaLinux-9.6:coreutils-0:8.32-39.el9.tuxcare.els1.x86_64",
          "AlmaLinux-9.6:coreutils-common-0:8.32-39.el9.tuxcare.els1.x86_64",
          "AlmaLinux-9.6:coreutils-single-0:8.32-39.el9.tuxcare.els1.x86_64",
          "Rocky Linux-9.6:coreutils-0:8.32-39.el9.tuxcare.els1.x86_64",
          "Rocky Linux-9.6:coreutils-common-0:8.32-39.el9.tuxcare.els1.x86_64",
          "Rocky Linux-9.6:coreutils-single-0:8.32-39.el9.tuxcare.els1.x86_64"
        ]
      },
      "references": [
        {
          "category": "self",
          "summary": "Canonical URL",
          "url": "https://cve.tuxcare.com/els/cve/CVE-2026-56392"
        },
        {
          "category": "external",
          "summary": "https://cert.pl/en/posts/2026/07/CVE-2026-56391",
          "url": "https://cert.pl/en/posts/2026/07/CVE-2026-56391"
        },
        {
          "category": "external",
          "summary": "https://git.savannah.gnu.org/cgit/coreutils.git/",
          "url": "https://git.savannah.gnu.org/cgit/coreutils.git/"
        },
        {
          "category": "external",
          "summary": "https://git.savannah.gnu.org/cgit/coreutils.git/commit/?id=b60a159fdc5bfcf9988d3a4cb6f53abe8ad5d35d",
          "url": "https://git.savannah.gnu.org/cgit/coreutils.git/commit/?id=b60a159fdc5bfcf9988d3a4cb6f53abe8ad5d35d"
        }
      ],
      "release_date": "2026-07-24T09:16:00Z",
      "remediations": [
        {
          "category": "vendor_fix",
          "date": "2026-08-31T11:51:20.755984Z",
          "details": "Details on how to apply the fix are available at: https://cve.tuxcare.com/els/releases/CLSA-2026:1788177078",
          "product_ids": [
            "AlmaLinux-9.6:coreutils-0:8.32-39.el9.tuxcare.els2.x86_64",
            "AlmaLinux-9.6:coreutils-common-0:8.32-39.el9.tuxcare.els2.x86_64",
            "AlmaLinux-9.6:coreutils-single-0:8.32-39.el9.tuxcare.els2.x86_64",
            "Rocky Linux-9.6:coreutils-0:8.32-39.el9.tuxcare.els2.x86_64",
            "Rocky Linux-9.6:coreutils-common-0:8.32-39.el9.tuxcare.els2.x86_64",
            "Rocky Linux-9.6:coreutils-single-0:8.32-39.el9.tuxcare.els2.x86_64"
          ],
          "url": "https://cve.tuxcare.com/els/releases/CLSA-2026:1788177078"
        },
        {
          "category": "none_available",
          "date": "2026-07-24T09:16:00Z",
          "details": "Affected",
          "product_ids": [
            "AlmaLinux-9.6:coreutils-0:8.32-39.el9.tuxcare.els1.x86_64",
            "AlmaLinux-9.6:coreutils-common-0:8.32-39.el9.tuxcare.els1.x86_64",
            "AlmaLinux-9.6:coreutils-single-0:8.32-39.el9.tuxcare.els1.x86_64",
            "Rocky Linux-9.6:coreutils-0:8.32-39.el9.tuxcare.els1.x86_64",
            "Rocky Linux-9.6:coreutils-common-0:8.32-39.el9.tuxcare.els1.x86_64",
            "Rocky Linux-9.6:coreutils-single-0:8.32-39.el9.tuxcare.els1.x86_64"
          ]
        }
      ],
      "scores": [
        {
          "cvss_v3": {
            "attackComplexity": "LOW",
            "attackVector": "LOCAL",
            "availabilityImpact": "HIGH",
            "baseScore": 6.1,
            "baseSeverity": "MEDIUM",
            "confidentialityImpact": "NONE",
            "integrityImpact": "LOW",
            "privilegesRequired": "NONE",
            "scope": "UNCHANGED",
            "userInteraction": "REQUIRED",
            "vectorString": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:H",
            "version": "3.1"
          },
          "products": [
            "AlmaLinux-9.6:coreutils-0:8.32-39.el9.tuxcare.els1.x86_64",
            "AlmaLinux-9.6:coreutils-common-0:8.32-39.el9.tuxcare.els1.x86_64",
            "AlmaLinux-9.6:coreutils-single-0:8.32-39.el9.tuxcare.els1.x86_64",
            "Rocky Linux-9.6:coreutils-0:8.32-39.el9.tuxcare.els1.x86_64",
            "Rocky Linux-9.6:coreutils-common-0:8.32-39.el9.tuxcare.els1.x86_64",
            "Rocky Linux-9.6:coreutils-single-0:8.32-39.el9.tuxcare.els1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "details": "Moderate"
        }
      ]
    }
  ]
}