[CLSA-2026:1787337004] cpio: Fix of 2 CVEs
Type:
security
Severity:
Moderate
Release date:
2026-08-21 18:30:16 UTC
Description:
- CVE-2026-66485: avoid stack exhaustion from archive-controlled paths - CVE-2026-66486: quote file names in diagnostics and listings
Updated packages:
  • cpio-2.13-16.el9_2.tuxcare.els2.x86_64.rpm
    sha:728d799144089345597441e053cb10c8f330ac8bc823a28fc696c1d14749055a
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.