- What: Security update for grafana-pcp
- Impact: Systems running Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions and Telecommunications Update Service may be affected
Red Hat Product Errata RHSA-2026:8878 - Security Advisory Issued: 2026-04-20 Updated: 2026-04-20 RHSA-2026:8878 - Security Advisory Overview Updated Packages Synopsis Important: grafana-pcp security update Type/Severity Security Advisory: Important Red Hat Lightspeed patch analysis Identify and remediate systems affected by this advisory. View affected systems Topic An update for grafana-pcp is now available for Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions and Red Hat Enterprise Linux 8.8 Telecommunications Update Service. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. Description The Grafana plugin for Performance Co-Pilot includes datasources for scalable time series from pmseries and Redis, live PCP metrics and bpftrace scripts from pmdabpftrace, as well as several dashboards. Security Fix(es): net/url: Incorrect parsing of IPv6 host literals in net/url (CVE-2026-25679) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Solution For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 Affected Products Red Hat Enterprise Linux for x86_64 - Extended Update Support Extension 8.8 x86_64 Red Hat Enterprise Linux Server - TUS 8.8 x86_64 Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 8.8 ppc64le Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 8.8 x86_64 Fixes BZ - 2445356 - CVE-2026-25679 net/url: Incorrect parsing of IPv6 host literals in net/url CVEs CVE-2026-25679 References https://access.redhat.com/security/updates/classification/#important Note: More recent versions of these packages may be available. Click a package name for more details. Red Hat Enterprise Linux for x86_64 - Extended Update Support Extension 8.8 SRPM grafana-pcp-3.2.0-6.el8_8.src.rpm SHA-256: fd9c757366e0920953d1cf9922b61a1649a03f7ff3b7f9e80c32c16721129aeb x86_64 grafana-pcp-3.2.0-6.el8_8.x86_64.rpm SHA-256: 16e06c79e1ebb443a9bf0f369613394eb759ba4383249e504e1b8fcca4927b3a grafana-pcp-debuginfo-3.2.0-6.el8_8.x86_64.rpm SHA-256: be97e5ea3df32c9deea079409622b3bb928f72073087a4e8480cb04f88fbdd97 Red Hat Enterprise Linux Server - TUS 8.8 SRPM grafana-pcp-3.2.0-6.el8_8.src.rpm SHA-256: fd9c757366e0920953d1cf9922b61a1649a03f7ff3b7f9e80c32c16721129aeb x86_64 grafana-pcp-3.2.0-6.el8_8.x86_64.rpm SHA-256: 16e06c79e1ebb443a9bf0f369613394eb759ba4383249e504e1b8fcca4927b3a grafana-pcp-debuginfo-3.2.0-6.el8_8.x86_64.rpm SHA-256: be97e5ea3df32c9deea079409622b3bb928f72073087a4e8480cb04f88fbdd97 Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 8.8 SRPM grafana-pcp-3.2.0-6.el8_8.src.rpm SHA-256: fd9c757366e0920953d1cf9922b61a1649a03f7ff3b7f9e80c32c16721129aeb ppc64le grafana-pcp-3.2.0-6.el8_8.ppc64le.rpm SHA-256: 074a4bb66c40c4391297c18cf108668c32c74b652f101c2691e8e1b0bd3861fa grafana-pcp-debuginfo-3.2.0-6.el8_8.ppc64le.rpm SHA-256: 7bcbe909df1144c1407725b660bab27163bb5f697534f3014a846ea4085ac4cb Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 8.8 SRPM grafana-pcp-3.2.0-6.el8_8.src.rpm SHA-256: fd9c757366e0920953d1cf9922b61a1649a03f7ff3b7f9e80c32c16721129aeb x86_64 grafana-pcp-3.2.0-6.el8_8.x86_64.rpm SHA-256: 16e06c79e1ebb443a9bf0f369613394eb759ba4383249e504e1b8fcca4927b3a grafana-pcp-debuginfo-3.2.0-6.el8_8.x86_64.rpm SHA-256: be97e5ea3df32c9deea079409622b3bb928f72073087a4e8480cb04f88fbdd97 The Red Hat security contact is secalert@redhat.com . More contact details at https://access.redhat.com/security/team/contact/ .