[CLSA-2026:1787310466] cpio: Fix of 2 CVEs
Type:
security
Severity:
Moderate
Release date:
2026-08-21 11:08:04 UTC
Description:
- CVE-2026-66485: avoid stack exhaustion from archive-controlled paths - CVE-2026-66486: quote file names in diagnostics and listings
Updated packages:
  • cpio-2.13-16.el9_6.tuxcare.els2.x86_64.rpm
    sha:0557226edc02578573d2a62b3e027be2829592cadc704bf1e96f4faea3063ae8
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.