Red Hat Product Errata RHSA-2026:13870 - Security Advisory Issued: 2026-05-05 Updated: 2026-05-05 RHSA-2026:13870 - Security Advisory Overview Updated Packages Synopsis Important: LibRaw security update Type/Severity Security Advisory: Important Red Hat Lightspeed patch analysis Identify and remediate systems affected by this advisory. View affected systems Topic An update for LibRaw is now available for Red Hat Enterprise Linux 9.4 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. Description LibRaw is a library for reading RAW files obtained from digital photo cameras (CRW/CR2, NEF, RAF, DNG, and others). Security Fix(es): LibRaw: LibRaw: Arbitrary code execution via a specially crafted malicious file (CVE-2026-24450) LibRaw: LibRaw: Arbitrary code execution via heap-based buffer overflow in lossless JPEG loading (CVE-2026-21413) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Solution For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 Affected Products Red Hat Enterprise Linux for x86_64 - Extended Update Support 9.4 x86_64 Red Hat Enterprise Linux Server - AUS 9.4 x86_64 Red Hat Enterprise Linux for IBM z Systems - Extended Update Support 9.4 s390x Red Hat Enterprise Linux for Power, little endian - Extended Update Support 9.4 ppc64le Red Hat Enterprise Linux for ARM 64 - Extended Update Support 9.4 aarch64 Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.4 ppc64le Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.4 x86_64 Red Hat CodeReady Linux Builder for x86_64 - Extended Update Support 9.4 x86_64 Red Hat CodeReady Linux Builder for Power, little endian - Extended Update Support 9.4 ppc64le Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.4 aarch64 Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.4 s390x Red Hat Enterprise Linux for x86_64 - Extended Life Cycle 9.4 x86_64 Red Hat Enterprise Linux for ARM 64 - Extended Life Cycle 9.4 aarch64 Red Hat Enterprise Linux for Power, little endian - Extended Life Cycle 9.4 ppc64le Red Hat Enterprise Linux for IBM z Systems - Extended Life Cycle 9.4 s390x Fixes BZ - 2455925 - CVE-2026-24450 LibRaw: LibRaw: Arbitrary code execution via a specially crafted malicious file BZ - 2455929 - CVE-2026-21413 LibRaw: LibRaw: Arbitrary code execution via heap-based buffer overflow in lossless JPEG loading CVEs CVE-2026-21413 CVE-2026-24450 References https://access.redhat.com/security/updates/classification/#important Note: More recent versions of these packages may be available. Click a package name for more details. Red Hat Enterprise Linux for x86_64 - Extended Update Support 9.4 SRPM LibRaw-0.21.1-2.el9_4.src.rpm SHA-256: 1115873f423fed9bbabb8f619d504f0b98cf04356449138c1306ece3e8df0bef x86_64 LibRaw-0.21.1-2.el9_4.i686.rpm SHA-256: ee795f69ef0d092d24e3879afda564dac334b35866e90a1fdb4015137a7b821e LibRaw-0.21.1-2.el9_4.x86_64.rpm SHA-256: 39762ca75cad220c6f26309bf1e5f161294a06aa0eb2a14bbdb1409860fd4c57 LibRaw-debuginfo-0.21.1-2.el9_4.i686.rpm SHA-256: 34ddc32c360f0413c0d3950d14452cd3fd86a6ab759e887d01d7c85c7b9920bb LibRaw-debuginfo-0.21.1-2.el9_4.x86_64.rpm SHA-256: 2bf6e82389e37191d74eeda0850c1f9fb38763371fa48a4fec683df4c8ce3c3e LibRaw-debugsource-0.21.1-2.el9_4.i686.rpm SHA-256: 953ae758fe625b38d63ac1e9f708538b0702ee64fd1fbc20c1c6ded6bdce63c1 LibRaw-debugsource-0.21.1-2.el9_4.x86_64.rpm SHA-256: 27b3206a4fe6c3f1d446ea526945f229c07c8d7e1e2716d882546a45b148cfc4 LibRaw-samples-debuginfo-0.21.1-2.el9_4.i686.rpm SHA-256: ff97545560fc3d4841ced538333c9e31dd39dcf53a0d1ecd0c0216d5bab7e25d LibRaw-samples-debuginfo-0.21.1-2.el9_4.x86_64.rpm SHA-256: 93f891933ed05858b2c2502062c65abf5f3bf7584778ddee03180c97cc1c5a99 Red Hat Enterprise Linux Server - AUS 9.4 SRPM LibRaw-0.21.1-2.el9_4.src.rpm SHA-256: 1115873f423fed9bbabb8f619d504f0b98cf04356449138c1306ece3e8df0bef x86_64 LibRaw-0.21.1-2.el9_4.i686.rpm SHA-256: ee795f69ef0d092d24e3879afda564dac334b35866e90a1fdb4015137a7b821e LibRaw-0.21.1-2.el9_4.x86_64.rpm SHA-256: 39762ca75cad220c6f26309bf1e5f161294a06aa0eb2a14bbdb1409860fd4c57 LibRaw-debuginfo-0.21.1-2.el9_4.i686.rpm SHA-256: 34ddc32c360f0413c0d3950d14452cd3fd86a6ab759e887d01d7c85c7b9920bb LibRaw-debuginfo-0.21.1-2.el9_4.x86_64.rpm SHA-256: 2bf6e82389e37191d74eeda0850c1f9fb38763371fa48a4fec683df4c8ce3c3e LibRaw-debugsource-0.21.1-2.el9_4.i686.rpm SHA-256: 953ae758fe625b38d63ac1e9f708538b0702ee64fd1fbc20c1c6ded6bdce63c1 LibRaw-debugsource-0.21.1-2.el9_4.x86_64.rpm SHA-256: 27b3206a4fe6c3f1d446ea526945f229c07c8d7e1e2716d882546a45b148cfc4 LibRaw-samples-debuginfo-0.21.1-2.el9_4.i686.rpm SHA-256: ff97545560fc3d4841ced538333c9e31dd39dcf53a0d1ecd0c0216d5bab7e25d LibRaw-samples-debuginfo-0.21.1-2.el9_4.x86_64.rpm SHA-256: 93f891933ed05858b2c2502062c65abf5f3bf7584778ddee03180c97cc1c5a99 Red Hat Enterprise Linux for IBM z Systems - Extended Update Support 9.4 SRPM LibRaw-0.21.1-2.el9_4.src.rpm SHA-256: 1115873f423fed9bbabb8f619d504f0b98cf04356449138c1306ece3e8df0bef s390x LibRaw-0.21.1-2.el9_4.s390x.rpm SHA-256: af051d672c8be6d9b8cc79e44d4a964c013490cfc9cd2e67ef855ea2db6d7335 LibRaw-debuginfo-0.21.1-2.el9_4.s390x.rpm SHA-256: 31048d7baafc8f85013b43df1bfb1e994721f24ab147d1a46c746daee640ea8a LibRaw-debugsource-0.21.1-2.el9_4.s390x.rpm SHA-256: 9e42e383d210699284b0ea8990e0b268a7d74744717432126c4f5be476add022 LibRaw-samples-debuginfo-0.21.1-2.el9_4.s390x.rpm SHA-256: bebd0ccc2a12cd9bb8aceacb32195c6cdaaab4357d544935a49947cbc4b08ef5 Red Hat Enterprise Linux for Power, little endian - Extended Update Support 9.4 SRPM LibRaw-0.21.1-2.el9_4.src.rpm SHA-256: 1115873f423fed9bbabb8f619d504f0b98cf04356449138c1306ece3e8df0bef ppc64le LibRaw-0.21.1-2.el9_4.ppc64le.rpm SHA-256: c70af1032f15abd16cc44fa233db11b24748051dcddd6ad19998ce11531885f6 LibRaw-debuginfo-0.21.1-2.el9_4.ppc64le.rpm SHA-256: 2832fdf2be2164e8440a97df2a7284d1a4085b18f1bf6bcad5bbc7959b66e117 LibRaw-debugsource-0.21.1-2.el9_4.ppc64le.rpm SHA-256: 076022e6918ff0bfb7b4f3b3f4420406608204464b9a31db78056fe7e84aac07 LibRaw-samples-debuginfo-0.21.1-2.el9_4.ppc64le.rpm SHA-256: e5488c56c6d36794751a340b04db3db576ae0072756b78887473eb38af7b6f38 Red Hat Enterprise Linux for ARM 64 - Extended Update Support 9.4 SRPM LibRaw-0.21.1-2.el9_4.src.rpm SHA-256: 1115873f423fed9bbabb8f619d504f0b98cf04356449138c1306ece3e8df0bef aarch64 LibRaw-0.21.1-2.el9_4.aarch64.rpm SHA-256: 95357fa6f50073a4eb8ccfb617f42d8c07997c91cc99a20a1841c50c199bbaa0 LibRaw-debuginfo-0.21.1-2.el9_4.aarch64.rpm SHA-256: a3c9730558a22a2475abc9fe8cc21c1745d81eb16118f3b80da14c5d0b904563 LibRaw-debugsource-0.21.1-2.el9_4.aarch64.rpm SHA-256: 7b2798272b8857d6239e9bc595261019e38fd04f8567b0cd39bb160635ba168d LibRaw-samples-debuginfo-0.21.1-2.el9_4.aarch64.rpm SHA-256: 463214d6dacc602f6874449e6b761e4f49ec9bc21a226a32a3fb26eadbc28ae2 Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.4 SRPM LibRaw-0.21.1-2.el9_4.src.rpm SHA-256: 1115873f423fed9bbabb8f619d504f0b98cf04356449138c1306ece3e8df0bef ppc64le LibRaw-0.21.1-2.el9_4.ppc64le.rpm SHA-256: c70af1032f15abd16cc44fa233db11b24748051dcddd6ad19998ce11531885f6 LibRaw-debuginfo-0.21.1-2.el9_4.ppc64le.rpm SHA-256: 2832fdf2be2164e8440a97df2a7284d1a4085b18f1bf6bcad5bbc7959b66e117 LibRaw-debugsource-0.21.1-2.el9_4.ppc64le.rpm SHA-256: 076022e6918ff0bfb7b4f3b3f4420406608204464b9a31db78056fe7e84aac07 LibRaw-samples-debuginfo-0.21.1-2.el9_4.ppc64le.rpm SHA-256: e5488c56c6d36794751a340b04db3db576ae0072756b78887473eb38af7b6f38 Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.4 SRPM LibRaw-0.21.1-2.el9_4.src.rpm SHA-256: 1115873f423fed9bbabb8f619d504f0b98cf04356449138c1306ece3e8df0bef x86_64 LibRaw-0.21.1-2.el9_4.i686.rpm SHA-256: ee795f69ef0d092d24e3879afda564dac334b35866e90a1fdb4015137a7b821e LibRaw-0.21.1-2.el9_4.x86_64.rpm SHA-256: 39762ca75cad220c6f26309bf1e5f161294a06aa0eb2a14bbdb1409860fd4c57 LibRaw-debuginfo-0.21.1-2.el9_4.i686.rpm SHA-256: 34ddc32c360f0413c0d3950d14452cd3fd86a6ab759e887d01d7c85c7b9920bb LibRaw-debuginfo-0.21.1-2.el9_4.x86_64.rpm SHA-256: 2bf6e82389e37191d74eeda0850c1f9fb38763371fa48a4fec683df4c8ce3c3e LibRaw-debugsource-0.21.1-2.el9_4.i686.rpm SHA-256: 953ae758fe625b38d63ac1e9f708538b0702ee64fd1fbc20c1c6ded6bdce63c1 LibRaw-debugsource-0.21.1-2.el9_4.x86_64.rpm SHA-256: 27b3206a4fe6c3f1d446ea526945f229c07c8d7e1e2716d882546a45b148cfc4 LibRaw-samples-debuginfo-0.21.1-2.el9_4.i686.rpm SHA-256: ff97545560fc3d4841ced538333c9e31dd39dcf53a0d1ecd0c0216d5bab7e25d LibRaw-samples-debuginfo-0.21.1-2.el9_4.x86_64.rpm SHA-256: 93f891933ed05858b2c2502062c65abf5f3bf7584778ddee03180c97cc1c5a99 Red Hat CodeReady Linux Builder for x86_64 - Extended Update Support 9.4 SRPM x86_64 LibRaw-debuginfo-0.21.1-2.el9_4.i686.rpm SHA-256: 34ddc32c360f0413c0d3950d14452cd3fd86a6ab759e887d01d7c85c7b9920bb LibRaw-debuginfo-0.21.1-2.el9_4.x86_64.rpm SHA-256: 2bf6e82389e37191d74eeda0850c1f9fb38763371fa48a4fec683df4c8ce3c3e LibRaw-debugsource-0.21.1-2.el9_4.i686.rpm SHA-256: 953ae758fe625b38d63ac1e9f708538b0702ee64fd1fbc20c1c6ded6bdce63c1 LibRaw-debugsource-0.21.1-2.el9_4.x86_64.rpm SHA-256: 27b3206a4fe6c3f1d446ea526945f229c07c8d7e1e2716d882546a45b148cfc4 LibRaw-devel-0.21.1-2.el9_4.i686.rpm SHA-256: 1688700530045c86e6511dc1deeb1a6d335ae3ebaf8b0262c525cc076e3b948a LibRaw-devel-0.21.1-2.el9_4.x86_64.rpm SHA-256: af3f9a6c8d0c98fb29d0517637cd8d5e6fe138d7967d7e0c4a82cc9f62bafff8 LibRaw-samples-debuginfo-0.21.1-2.el9_4.i686.rpm SHA-256: ff97545560fc3d4841ced538333c9e31dd39dcf53a0d1ecd0c0216d5bab7e25d LibRaw-samples-debuginfo-0.21.1-2.el9_4.x86_64.rpm SHA-256: 93f8919