Security News

Cybersecurity news aggregator

🔄
HIGH Updates Red Hat Errata

RHSA-2026:25227: Important: libsndfile security update

An integer overflow vulnerability (CVE-2026-37555, CVSS 7.5 HIGH) in the `ima_reader_init()` function of libsndfile could allow for arbitrary code execution or a denial of service. The NVD lists libsndfile version 1.2.2 as affected. Red Hat has issued a security update rated Important for RHEL 8.8 specialized variants, with patched packages available via the provided errata links.
Read Full Article →

Red Hat Product Errata RHSA-2026:25227 - Security Advisory Issued: 2026-06-11 Updated: 2026-06-11 RHSA-2026:25227 - Security Advisory Overview Updated Packages Synopsis Important: libsndfile security update Type/Severity Security Advisory: Important Red Hat Lightspeed patch analysis Identify and remediate systems affected by this advisory. View affected systems Topic An update for libsndfile is now available for Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions and Red Hat Enterprise Linux 8.8 Telecommunications Update Service. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. Description libsndfile is a C library for reading and writing files containing sampled sound, such as AIFF, AU, or WAV. Security Fix(es): libsndfile: integer overflow in ima_reader_init() (CVE-2026-37555) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Solution For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 Affected Products Red Hat Enterprise Linux for x86_64 - Extended Update Support Extension 8.8 x86_64 Red Hat Enterprise Linux Server - TUS 8.8 x86_64 Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 8.8 ppc64le Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 8.8 x86_64 Fixes BZ - 2463856 - CVE-2026-37555 libsndfile: integer overflow in ima_reader_init() CVEs CVE-2026-37555 References https://access.redhat.com/security/updates/classification/#important Note: More recent versions of these packages may be available. Click a package name for more details. Red Hat Enterprise Linux for x86_64 - Extended Update Support Extension 8.8 SRPM libsndfile-1.0.28-14.el8_8.src.rpm SHA-256: 3b4c3984b1ddc226d3f7f7ca6dd2e8820c1a92f6ebdd6c12c1147e5285e3008a x86_64 libsndfile-1.0.28-14.el8_8.i686.rpm SHA-256: 1f96e5c563b3d736aeba5cfb0d30f5ad942dbae66bfe3f1fcde33522b1fdbaee libsndfile-1.0.28-14.el8_8.x86_64.rpm SHA-256: c85ee6cb5e405cbd81d441c8ed70276709a299e17d301369307d981a2476e547 libsndfile-debuginfo-1.0.28-14.el8_8.i686.rpm SHA-256: ffe6c896f58b59067ef1b736d19ca93809914211a1b2698ed14579386e3faa78 libsndfile-debuginfo-1.0.28-14.el8_8.x86_64.rpm SHA-256: 56c9d95ed0a8711c114f19cace802f89fc78da55182a534afb2ea042f26a6929 libsndfile-debugsource-1.0.28-14.el8_8.i686.rpm SHA-256: 239c16cbc04de7ce3ebba013e28a7b5b36e33db566986a67d339bd312355d4e6 libsndfile-debugsource-1.0.28-14.el8_8.x86_64.rpm SHA-256: ed1b6b98f392a170b6b406d2510c418a5d0874d84de719eed26f0509465eee71 libsndfile-utils-1.0.28-14.el8_8.x86_64.rpm SHA-256: 7e112c015ab8c8e173338f486864398730d45133ca5618c1ea64df788826aa63 libsndfile-utils-debuginfo-1.0.28-14.el8_8.i686.rpm SHA-256: e7c0bb0c162a472852bd94a5961f1090cb14bcfc206bc66f938b449891fbff20 libsndfile-utils-debuginfo-1.0.28-14.el8_8.x86_64.rpm SHA-256: 600ad634ae83569a233e4c9d3939990bf314429b642f1a276a1c40c6c11f6627 Red Hat Enterprise Linux Server - TUS 8.8 SRPM libsndfile-1.0.28-14.el8_8.src.rpm SHA-256: 3b4c3984b1ddc226d3f7f7ca6dd2e8820c1a92f6ebdd6c12c1147e5285e3008a x86_64 libsndfile-1.0.28-14.el8_8.i686.rpm SHA-256: 1f96e5c563b3d736aeba5cfb0d30f5ad942dbae66bfe3f1fcde33522b1fdbaee libsndfile-1.0.28-14.el8_8.x86_64.rpm SHA-256: c85ee6cb5e405cbd81d441c8ed70276709a299e17d301369307d981a2476e547 libsndfile-debuginfo-1.0.28-14.el8_8.i686.rpm SHA-256: ffe6c896f58b59067ef1b736d19ca93809914211a1b2698ed14579386e3faa78 libsndfile-debuginfo-1.0.28-14.el8_8.x86_64.rpm SHA-256: 56c9d95ed0a8711c114f19cace802f89fc78da55182a534afb2ea042f26a6929 libsndfile-debugsource-1.0.28-14.el8_8.i686.rpm SHA-256: 239c16cbc04de7ce3ebba013e28a7b5b36e33db566986a67d339bd312355d4e6 libsndfile-debugsource-1.0.28-14.el8_8.x86_64.rpm SHA-256: ed1b6b98f392a170b6b406d2510c418a5d0874d84de719eed26f0509465eee71 libsndfile-utils-1.0.28-14.el8_8.x86_64.rpm SHA-256: 7e112c015ab8c8e173338f486864398730d45133ca5618c1ea64df788826aa63 libsndfile-utils-debuginfo-1.0.28-14.el8_8.i686.rpm SHA-256: e7c0bb0c162a472852bd94a5961f1090cb14bcfc206bc66f938b449891fbff20 libsndfile-utils-debuginfo-1.0.28-14.el8_8.x86_64.rpm SHA-256: 600ad634ae83569a233e4c9d3939990bf314429b642f1a276a1c40c6c11f6627 Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 8.8 SRPM libsndfile-1.0.28-14.el8_8.src.rpm SHA-256: 3b4c3984b1ddc226d3f7f7ca6dd2e8820c1a92f6ebdd6c12c1147e5285e3008a ppc64le libsndfile-1.0.28-14.el8_8.ppc64le.rpm SHA-256: 811e39f601b38823603c56e60d9b1f064dfbfcdc2ec9a790f30f04d26b4d5c6a libsndfile-debuginfo-1.0.28-14.el8_8.ppc64le.rpm SHA-256: e0104d236afe34d84d5e102b6dfea8ab300fddb48c0f1ea60b89a725daefe4f0 libsndfile-debugsource-1.0.28-14.el8_8.ppc64le.rpm SHA-256: 2b09205f5903b41f99885e004633dbee2245c5eac0d396fe038cc4191c92d433 libsndfile-utils-1.0.28-14.el8_8.ppc64le.rpm SHA-256: f2b593c920f70834464c69b931d0b326e03310daf01d2d8c6d6020634d6d05a1 libsndfile-utils-debuginfo-1.0.28-14.el8_8.ppc64le.rpm SHA-256: adef36b4e017b16b0c7c8e07a3321408c217768c2a2e719bb14a5748a23e2934 Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 8.8 SRPM libsndfile-1.0.28-14.el8_8.src.rpm SHA-256: 3b4c3984b1ddc226d3f7f7ca6dd2e8820c1a92f6ebdd6c12c1147e5285e3008a x86_64 libsndfile-1.0.28-14.el8_8.i686.rpm SHA-256: 1f96e5c563b3d736aeba5cfb0d30f5ad942dbae66bfe3f1fcde33522b1fdbaee libsndfile-1.0.28-14.el8_8.x86_64.rpm SHA-256: c85ee6cb5e405cbd81d441c8ed70276709a299e17d301369307d981a2476e547 libsndfile-debuginfo-1.0.28-14.el8_8.i686.rpm SHA-256: ffe6c896f58b59067ef1b736d19ca93809914211a1b2698ed14579386e3faa78 libsndfile-debuginfo-1.0.28-14.el8_8.x86_64.rpm SHA-256: 56c9d95ed0a8711c114f19cace802f89fc78da55182a534afb2ea042f26a6929 libsndfile-debugsource-1.0.28-14.el8_8.i686.rpm SHA-256: 239c16cbc04de7ce3ebba013e28a7b5b36e33db566986a67d339bd312355d4e6 libsndfile-debugsource-1.0.28-14.el8_8.x86_64.rpm SHA-256: ed1b6b98f392a170b6b406d2510c418a5d0874d84de719eed26f0509465eee71 libsndfile-utils-1.0.28-14.el8_8.x86_64.rpm SHA-256: 7e112c015ab8c8e173338f486864398730d45133ca5618c1ea64df788826aa63 libsndfile-utils-debuginfo-1.0.28-14.el8_8.i686.rpm SHA-256: e7c0bb0c162a472852bd94a5961f1090cb14bcfc206bc66f938b449891fbff20 libsndfile-utils-debuginfo-1.0.28-14.el8_8.x86_64.rpm SHA-256: 600ad634ae83569a233e4c9d3939990bf314429b642f1a276a1c40c6c11f6627 The Red Hat security contact is secalert@redhat.com . More contact details at https://access.redhat.com/security/team/contact/ .

Share this article