{"id":"RHSA-2026:47171","summary":"Red Hat Security Advisory: Red Hat Hardened Images RPMs Security Update","modified":"2026-09-22T10:42:33.903136103Z","published":"2026-07-29T10:11:39Z","upstream":["CVE-2026-15003","CVE-2026-90801","CVE-2026-90802","CVE-2026-90803","CVE-2026-90804","CVE-2026-90828","CVE-2026-90829","CVE-2026-90830","CVE-2026-90831"],"references":[{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHSA-2026:47171"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-15003"},{"type":"ARTICLE","url":"https://access.redhat.com/security/updates/classification/"},{"type":"ARTICLE","url":"https://images.redhat.com/"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-90804"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-90802"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-90830"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-90828"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-90829"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-90803"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-90831"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-90801"},{"type":"ADVISORY","url":"https://security.access.redhat.com/data/csaf/v2/advisories/2026/rhsa-2026_47171.json"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2497805"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-15003"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-15003"},{"type":"ARTICLE","url":"https://sourceware.org/bugzilla/show_bug.cgi?id=34053"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2533176"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-90801"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-90801"},{"type":"ARTICLE","url":"https://github.com/r1ck9-2q/cve_summit/blob/main/Heap-buffer-overflow%20in%20%60cache_bwrite%60%20(bfdcache.c436)%20via%20malformed%20ELF%20with%20%60--gc-sections%20-w%60.md"},{"type":"ARTICLE","url":"https://sourceware.org/bugzilla/show_bug.cgi?id=34442"},{"type":"ARTICLE","url":"https://vuldb.com/cve/CVE-2026-90801"},{"type":"ARTICLE","url":"https://vuldb.com/submit/920276"},{"type":"ARTICLE","url":"https://vuldb.com/vuln/403303"},{"type":"ARTICLE","url":"https://vuldb.com/vuln/403303/cti"},{"type":"ARTICLE","url":"https://www.gnu.org/"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2533185"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-90802"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-90802"},{"type":"ARTICLE","url":"https://github.com/r1ck9-2q/cve_summit/blob/main/SEGV%20in%20%60bfd_putl64%60%20(bfdlibbfd.c989)%20during%20relocation%20output%20via%20malformed%20ELF.md"},{"type":"ARTICLE","url":"https://sourceware.org/bugzilla/show_bug.cgi?id=34443"},{"type":"ARTICLE","url":"https://vuldb.com/cve/CVE-2026-90802"},{"type":"ARTICLE","url":"https://vuldb.com/submit/920277"},{"type":"ARTICLE","url":"https://vuldb.com/vuln/403304"},{"type":"ARTICLE","url":"https://vuldb.com/vuln/403304/cti"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2533196"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-90803"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-90803"},{"type":"ARTICLE","url":"https://github.com/r1ck9-2q/cve_summit/blob/main/Heap%20OOB%20readwrite%20and%20SEGV%20in%20%60elf_x86_64_relocate_section%60%20(bfdelf64-x86-64.c4530%20%204835)%20via%20malformed%20relocation.md"},{"type":"ARTICLE","url":"https://sourceware.org/bugzilla/show_bug.cgi?id=34444"},{"type":"ARTICLE","url":"https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=471130b39c03623ec6d78ece377ff4da3f6bfe7b"},{"type":"ARTICLE","url":"https://vuldb.com/cve/CVE-2026-90803"},{"type":"ARTICLE","url":"https://vuldb.com/submit/920280"},{"type":"ARTICLE","url":"https://vuldb.com/vuln/403305"},{"type":"ARTICLE","url":"https://vuldb.com/vuln/403305/cti"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2533209"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-90804"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-90804"},{"type":"ARTICLE","url":"https://github.com/r1ck9-2q/cve_summit/blob/main/Heap%20OOB%20write%20%20negative-size%20%60memmove%60%20%20SEGV%20in%20%60_bfd_elf_write_section_eh_frame%60%20(bfdelf-eh-frame.c2064%20%202083%20%202193)%20via%20malformed%20%60.eh_frame%60.md"},{"type":"ARTICLE","url":"https://sourceware.org/bugzilla/show_bug.cgi?id=34445"},{"type":"ARTICLE","url":"https://vuldb.com/cve/CVE-2026-90804"},{"type":"ARTICLE","url":"https://vuldb.com/submit/920281"},{"type":"ARTICLE","url":"https://vuldb.com/vuln/403306"},{"type":"ARTICLE","url":"https://vuldb.com/vuln/403306/cti"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2533528"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-90828"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-90828"},{"type":"ARTICLE","url":"https://sourceware.org/bugzilla/attachment.cgi?id=16882"},{"type":"ARTICLE","url":"https://sourceware.org/bugzilla/show_bug.cgi?id=34450"},{"type":"ARTICLE","url":"https://vuldb.com/cve/CVE-2026-90828"},{"type":"ARTICLE","url":"https://vuldb.com/submit/925227"},{"type":"ARTICLE","url":"https://vuldb.com/vuln/403330"},{"type":"ARTICLE","url":"https://vuldb.com/vuln/403330/cti"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2533532"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-90829"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-90829"},{"type":"ARTICLE","url":"https://sourceware.org/bugzilla/attachment.cgi?id=16883"},{"type":"ARTICLE","url":"https://sourceware.org/bugzilla/show_bug.cgi?id=34451"},{"type":"ARTICLE","url":"https://vuldb.com/cve/CVE-2026-90829"},{"type":"ARTICLE","url":"https://vuldb.com/submit/925228"},{"type":"ARTICLE","url":"https://vuldb.com/vuln/403331"},{"type":"ARTICLE","url":"https://vuldb.com/vuln/403331/cti"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2533539"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-90830"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-90830"},{"type":"ARTICLE","url":"https://sourceware.org/bugzilla/attachment.cgi?id=16884"},{"type":"ARTICLE","url":"https://sourceware.org/bugzilla/show_bug.cgi?id=34452"},{"type":"ARTICLE","url":"https://vuldb.com/cve/CVE-2026-90830"},{"type":"ARTICLE","url":"https://vuldb.com/submit/925229"},{"type":"ARTICLE","url":"https://vuldb.com/vuln/403332"},{"type":"ARTICLE","url":"https://vuldb.com/vuln/403332/cti"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2533541"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-90831"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-90831"},{"type":"ARTICLE","url":"https://sourceware.org/bugzilla/attachment.cgi?id=16886"},{"type":"ARTICLE","url":"https://sourceware.org/bugzilla/show_bug.cgi?id=34454"},{"type":"ARTICLE","url":"https://vuldb.com/cve/CVE-2026-90831"},{"type":"ARTICLE","url":"https://vuldb.com/submit/925230"},{"type":"ARTICLE","url":"https://vuldb.com/vuln/403333"},{"type":"ARTICLE","url":"https://vuldb.com/vuln/403333/cti"}],"affected":[{"package":{"name":"binutils","ecosystem":"Red Hat:hummingbird:1","purl":"pkg:rpm/redhat/binutils"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:2.46.1-1.1.hum1"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:47171.json"}},{"package":{"name":"binutils-devel","ecosystem":"Red Hat:hummingbird:1","purl":"pkg:rpm/redhat/binutils-devel"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:2.46.1-1.1.hum1"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:47171.json"}},{"package":{"name":"binutils-gold","ecosystem":"Red Hat:hummingbird:1","purl":"pkg:rpm/redhat/binutils-gold"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:2.46.1-1.1.hum1"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:47171.json"}},{"package":{"name":"binutils-gprofng","ecosystem":"Red Hat:hummingbird:1","purl":"pkg:rpm/redhat/binutils-gprofng"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:2.46.1-1.1.hum1"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:47171.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:H"}]}