Security News

Cybersecurity news aggregator

🔄
HIGH Updates Red Hat Errata

RHSA-2026:19185: Important: grafana security update

This Important security update for Grafana addresses CVE-2026-25679 (CVSS 7.5 High), a vulnerability in the `net/url` library where incorrect parsing of IPv6 host literals could be exploited. The underlying flaw is in the Go language, affecting versions prior to Go 1.25.8 and Go 1.26.0. The fix is included in the updated Grafana packages for Red Hat Enterprise Linux 9, specifically version grafana-10.2.6-21.el9_8.
Read Full Article →

Red Hat Product Errata RHSA-2026:19185 - Security Advisory Issued: 2026-05-19 Updated: 2026-05-19 RHSA-2026:19185 - Security Advisory Overview Updated Packages Synopsis Important: grafana security update Type/Severity Security Advisory: Important Red Hat Lightspeed patch analysis Identify and remediate systems affected by this advisory. View affected systems Topic An update for grafana is now available for Red Hat Enterprise Linux 9. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. Description Grafana is an open source, feature rich metrics dashboard and graph editor for Graphite, InfluxDB & OpenTSDB. Security Fix(es): net/url: Incorrect parsing of IPv6 host literals in net/url (CVE-2026-25679) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Solution For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 Affected Products Red Hat Enterprise Linux for x86_64 9 x86_64 Red Hat Enterprise Linux for x86_64 - Extended Update Support 9.8 x86_64 Red Hat Enterprise Linux for IBM z Systems 9 s390x Red Hat Enterprise Linux for IBM z Systems - Extended Update Support 9.8 s390x Red Hat Enterprise Linux for Power, little endian 9 ppc64le Red Hat Enterprise Linux for Power, little endian - Extended Update Support 9.8 ppc64le Red Hat Enterprise Linux for ARM 64 9 aarch64 Red Hat Enterprise Linux for ARM 64 - Extended Update Support 9.8 aarch64 Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.8 ppc64le Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.8 x86_64 Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.8 aarch64 Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.8 s390x Red Hat Enterprise Linux for x86_64 - Extended Life Cycle 9.8 x86_64 Red Hat Enterprise Linux for ARM 64 - Extended Life Cycle 9.8 aarch64 Red Hat Enterprise Linux for Power, little endian - Extended Life Cycle 9.8 ppc64le Red Hat Enterprise Linux for IBM z Systems - Extended Life Cycle 9.8 s390x Fixes BZ - 2445356 - CVE-2026-25679 net/url: Incorrect parsing of IPv6 host literals in net/url CVEs CVE-2026-25679 References https://access.redhat.com/security/updates/classification/#important Note: More recent versions of these packages may be available. Click a package name for more details. Red Hat Enterprise Linux for x86_64 9 SRPM grafana-10.2.6-21.el9_8.src.rpm SHA-256: 3930630c4c5609766dbaba9dfb8272e0cdc09da91071efaf376a1ec92920a054 x86_64 grafana-10.2.6-21.el9_8.x86_64.rpm SHA-256: c760ed438477bc3703185bdf7d6cea7f1a3693916da7df117ef754bd7d146305 grafana-debuginfo-10.2.6-21.el9_8.x86_64.rpm SHA-256: 86342551e68293a6dd5a4737a4049d6fca192b0395730763e925308b68b88b66 grafana-debugsource-10.2.6-21.el9_8.x86_64.rpm SHA-256: 84bad5224d76881d489a5e8f391608630fe7d150d3f3e3a428e0eef3023672d9 grafana-selinux-10.2.6-21.el9_8.x86_64.rpm SHA-256: b59cdacf6255c16269c53b03386daa2347054888840b87802b930e93ad4a15af Red Hat Enterprise Linux for x86_64 - Extended Update Support 9.8 SRPM grafana-10.2.6-21.el9_8.src.rpm SHA-256: 3930630c4c5609766dbaba9dfb8272e0cdc09da91071efaf376a1ec92920a054 x86_64 grafana-10.2.6-21.el9_8.x86_64.rpm SHA-256: c760ed438477bc3703185bdf7d6cea7f1a3693916da7df117ef754bd7d146305 grafana-debuginfo-10.2.6-21.el9_8.x86_64.rpm SHA-256: 86342551e68293a6dd5a4737a4049d6fca192b0395730763e925308b68b88b66 grafana-debugsource-10.2.6-21.el9_8.x86_64.rpm SHA-256: 84bad5224d76881d489a5e8f391608630fe7d150d3f3e3a428e0eef3023672d9 grafana-selinux-10.2.6-21.el9_8.x86_64.rpm SHA-256: b59cdacf6255c16269c53b03386daa2347054888840b87802b930e93ad4a15af Red Hat Enterprise Linux for IBM z Systems 9 SRPM grafana-10.2.6-21.el9_8.src.rpm SHA-256: 3930630c4c5609766dbaba9dfb8272e0cdc09da91071efaf376a1ec92920a054 s390x grafana-10.2.6-21.el9_8.s390x.rpm SHA-256: 1502990889760f8ff09e5b2272e4b27e702a218f501963c09abc36b7e6995606 grafana-debuginfo-10.2.6-21.el9_8.s390x.rpm SHA-256: e33639d56f0c6c7ca9a37dd6e6ce5ab9070dd5276fcece3b647ec9caae6b17e8 grafana-debugsource-10.2.6-21.el9_8.s390x.rpm SHA-256: 417f830df10aa330792938dd86a2043d2cd459a45c5cbeb62081977616e27aff grafana-selinux-10.2.6-21.el9_8.s390x.rpm SHA-256: 8d51d4639ab57e78fd24eac19c781206cea626f31e6b1a9c72ee5a16fccbb0d7 Red Hat Enterprise Linux for IBM z Systems - Extended Update Support 9.8 SRPM grafana-10.2.6-21.el9_8.src.rpm SHA-256: 3930630c4c5609766dbaba9dfb8272e0cdc09da91071efaf376a1ec92920a054 s390x grafana-10.2.6-21.el9_8.s390x.rpm SHA-256: 1502990889760f8ff09e5b2272e4b27e702a218f501963c09abc36b7e6995606 grafana-debuginfo-10.2.6-21.el9_8.s390x.rpm SHA-256: e33639d56f0c6c7ca9a37dd6e6ce5ab9070dd5276fcece3b647ec9caae6b17e8 grafana-debugsource-10.2.6-21.el9_8.s390x.rpm SHA-256: 417f830df10aa330792938dd86a2043d2cd459a45c5cbeb62081977616e27aff grafana-selinux-10.2.6-21.el9_8.s390x.rpm SHA-256: 8d51d4639ab57e78fd24eac19c781206cea626f31e6b1a9c72ee5a16fccbb0d7 Red Hat Enterprise Linux for Power, little endian 9 SRPM grafana-10.2.6-21.el9_8.src.rpm SHA-256: 3930630c4c5609766dbaba9dfb8272e0cdc09da91071efaf376a1ec92920a054 ppc64le grafana-10.2.6-21.el9_8.ppc64le.rpm SHA-256: e94ac0007653a0e219032bb303c95b0272b333bd495ea0f1d2ba6f04ad1d2923 grafana-debuginfo-10.2.6-21.el9_8.ppc64le.rpm SHA-256: a3000790644643995cdea3d51d550bed30fa39e1edfdc45b72939c8fe9f431f2 grafana-debugsource-10.2.6-21.el9_8.ppc64le.rpm SHA-256: 89e34147f2fc4969c9727bddcc28f3777d47a4e60b957838f98a4fd14514dfcd grafana-selinux-10.2.6-21.el9_8.ppc64le.rpm SHA-256: 75b69e0c80b3c12a3d2673b6ff17684b175589a6bdbb7856d71420d0b0b1b667 Red Hat Enterprise Linux for Power, little endian - Extended Update Support 9.8 SRPM grafana-10.2.6-21.el9_8.src.rpm SHA-256: 3930630c4c5609766dbaba9dfb8272e0cdc09da91071efaf376a1ec92920a054 ppc64le grafana-10.2.6-21.el9_8.ppc64le.rpm SHA-256: e94ac0007653a0e219032bb303c95b0272b333bd495ea0f1d2ba6f04ad1d2923 grafana-debuginfo-10.2.6-21.el9_8.ppc64le.rpm SHA-256: a3000790644643995cdea3d51d550bed30fa39e1edfdc45b72939c8fe9f431f2 grafana-debugsource-10.2.6-21.el9_8.ppc64le.rpm SHA-256: 89e34147f2fc4969c9727bddcc28f3777d47a4e60b957838f98a4fd14514dfcd grafana-selinux-10.2.6-21.el9_8.ppc64le.rpm SHA-256: 75b69e0c80b3c12a3d2673b6ff17684b175589a6bdbb7856d71420d0b0b1b667 Red Hat Enterprise Linux for ARM 64 9 SRPM grafana-10.2.6-21.el9_8.src.rpm SHA-256: 3930630c4c5609766dbaba9dfb8272e0cdc09da91071efaf376a1ec92920a054 aarch64 grafana-10.2.6-21.el9_8.aarch64.rpm SHA-256: 3fcb9b17b09e7e30398459c574775042d7cd3a2d22468e4f3181d24b00ccb34c grafana-debuginfo-10.2.6-21.el9_8.aarch64.rpm SHA-256: 1dea84031788ef54b04de0300bcbb7a1eb866abb5d18aa4a86e67f0bc0df17d4 grafana-debugsource-10.2.6-21.el9_8.aarch64.rpm SHA-256: cd89135a06edb1b1089f9d4158a2b664569d6080e90135f5571020ef0c87ddd1 grafana-selinux-10.2.6-21.el9_8.aarch64.rpm SHA-256: fdbb66cfd10204099d84589276fab749628cbaa419b3eba1be310dcadafd4c1f Red Hat Enterprise Linux for ARM 64 - Extended Update Support 9.8 SRPM grafana-10.2.6-21.el9_8.src.rpm SHA-256: 3930630c4c5609766dbaba9dfb8272e0cdc09da91071efaf376a1ec92920a054 aarch64 grafana-10.2.6-21.el9_8.aarch64.rpm SHA-256: 3fcb9b17b09e7e30398459c574775042d7cd3a2d22468e4f3181d24b00ccb34c grafana-debuginfo-10.2.6-21.el9_8.aarch64.rpm SHA-256: 1dea84031788ef54b04de0300bcbb7a1eb866abb5d18aa4a86e67f0bc0df17d4 grafana-debugsource-10.2.6-21.el9_8.aarch64.rpm SHA-256: cd89135a06edb1b1089f9d4158a2b664569d6080e90135f5571020ef0c87ddd1 grafana-selinux-10.2.6-21.el9_8.aarch64.rpm SHA-256: fdbb66cfd10204099d84589276fab749628cbaa419b3eba1be310dcadafd4c1f Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.8 SRPM grafana-10.2.6-21.el9_8.src.rpm SHA-256: 3930630c4c5609766dbaba9dfb8272e0cdc09da91071efaf376a1ec92920a054 ppc64le grafana-10.2.6-21.el9_8.ppc64le.rpm SHA-256: e94ac0007653a0e219032bb303c95b0272b333bd495ea0f1d2ba6f04ad1d2923 grafana-debuginfo-10.2.6-21.el9_8.ppc64le.rpm SHA-256: a3000790644643995cdea3d51d550bed30fa39e1edfdc45b72939c8fe9f431f2 grafana-debugsource-10.2.6-21.el9_8.ppc64le.rpm SHA-256: 89e34147f2fc4969c9727bddcc28f3777d47a4e60b957838f98a4fd14514dfcd grafana-selinux-10.2.6-21.el9_8.ppc64le.rpm SHA-256: 75b69e0c80b3c12a3d2673b6ff17684b175589a6bdbb7856d71420d0b0b1b667 Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.8 SRPM grafana-10.2.6-21.el9_8.src.rpm SHA-256: 3930630c4c5609766dbaba9dfb8272e0cdc09da91071efaf376a1ec92920a054 x86_64 grafana-10.2.6-21.el9_8.x86_64.rpm SHA-256: c760ed438477bc3703185bdf7d6cea7f1a3693916da7df117ef754bd7d146305 grafana-debuginfo-10.2.6-21.el9_8.x86_64.rpm SHA-256: 86342551e68293a6dd5a4737a4049d6fca192b0395730763e925308b68b88b66 grafana-debugsource-10.2.6-21.el9_8.x86_64.rpm SHA-256: 84bad5224d76881d489a5e8f391608630fe7d150d3f3e3a428e0eef3023672d9 grafana-selinux-10.2.6-21.el9_8.x86_64.rpm SHA-256: b59cdacf6255c16269c53b03386daa2347054888840b87802b930e93ad4a15af Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.8 SRPM grafana-10.2.6-21.el9_8.src.rpm SHA-256: 3930630c4c5609766dbaba9dfb8272e0cdc09da91071efaf376a1ec92920a054 aarch64 grafana-10.2.6-21.el9_8.aarch64.rpm SHA-256: 3fcb9b17b09e7e30398459c574775042d7cd3a2d22468e4f3181d24b00ccb34c grafana-debuginfo-10.2.6-21.el9_8.aarch64.rpm SHA-256: 1dea84031788ef54b04de0300bcbb7a1eb866abb5d18aa4a86e67f0bc0df17d4 grafana-debugsource-10.2.6-21.el9_8.aarch64.rpm SHA-256: cd89135a06edb1b1089f9d4158a2b664569d6080e90135f5571020ef0c87ddd1 grafana-selinux-10.2.6-21.el9_8.aarch64.rpm SHA-256: fdbb66cfd10204099d84589276fab749628cbaa419b3eba1be310dcadafd4c1f Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.8 SRPM grafana-10.2.6-21.el9_8.src.rpm SHA-256: 3930630c4c5609766dbaba9dfb8272e0cdc09da9107

Share this article