Updated patch package fixes security vulnerabilities
Publication date: 20 Sep 2026Modification date: 20 Sep 2026
Type: security
Affected Mageia releases : 10
CVE: CVE-2026-56288 , CVE-2026-56289
Description
NULL Pointer Dereference in GNU patch. (CVE-2026-56288)
Loop with Unreachable Exit Condition in GNU patch. (CVE-2026-56289)
References
- https://bugs.mageia.org/show_bug.cgi?id=35933
- https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/message/5MJXY435MLDAL5GXH6V5OY6MEMOGFEH5/
- https://cert.pl/en/posts/2026/07/CVE-2026-56288/
- https://www.cve.org/CVERecord?id=CVE-2026-56288
- https://www.cve.org/CVERecord?id=CVE-2026-56289
SRPMS
10/core
- patch-2.8-1.1.mga10