Release date:
2026-08-14 14:50:46 UTC
Description:
- CVE-2026-71225: stop resending ALG_SET_IV for every 64 KiB chunk of a
one-shot symmetric cipher operation, which reused the IV in CTR and CBC
- CVE-2026-71226: reap all submitted AIO requests before returning an error
so the kernel cannot write into output buffers the caller has released
- CVE-2026-71227: report a zero io_getevents() return as -ETIMEDOUT so
_kcapi_aio_read_all() cannot spin forever on a reused AIO handle
Updated packages:
-
libkcapi-1.3.1-3.el9.tuxcare.els1.i686.rpm
sha:1200afda5b3ac3f77fb64bb41fb4039f37e6ec8911d448febee4c74f40d036ba
-
libkcapi-1.3.1-3.el9.tuxcare.els1.x86_64.rpm
sha:6a01878c3bbce68b3b4938ec0c6a9b96963f9dd5f9b8bf2f97565de895ee7ba4
-
libkcapi-devel-1.3.1-3.el9.tuxcare.els1.x86_64.rpm
sha:2f6cf74eda5e16ba0e53bfafb9ac56d1582fec5b32bce52d35c7f297bfc515af
-
libkcapi-doc-1.3.1-3.el9.tuxcare.els1.noarch.rpm
sha:f6afa170ed18af97471842be361fb09694e6d2fda06717ee9cbe2842a00fa9c7
-
libkcapi-fipscheck-1.3.1-3.el9.tuxcare.els1.x86_64.rpm
sha:0462e9a30c22f57e2627806e8eac31e2d80e3f63cea86725aa12356074d6a4db
-
libkcapi-hmaccalc-1.3.1-3.el9.tuxcare.els1.x86_64.rpm
sha:4aef1c585c10930dd61af4ce46a35b2a85d0ed0f99de00097d38c1ce2d762a48
-
libkcapi-static-1.3.1-3.el9.tuxcare.els1.x86_64.rpm
sha:9caf7629cd4b1614d352c97686fd18ce15dd20f3afbd4a84d0f42217d6ecb651
-
libkcapi-tests-1.3.1-3.el9.tuxcare.els1.x86_64.rpm
sha:da47540c08fa06501fe20d3075c5aa35e7459a1dc21efbb0774940a5f754d1f0
-
libkcapi-tools-1.3.1-3.el9.tuxcare.els1.x86_64.rpm
sha:2c6f159c4a80e1d7f431adca2d2117e2cab3f1aaecd1cb1747dfa3b19bc3aa66
Notes:
This page is generated automatically and has not been checked for errors. For clarification or
corrections please contact the
CloudLinux Packaging Team.