{"id":"RHSA-2026:49837","summary":"Red Hat Security Advisory: Red Hat Hardened Images RPMs bug fix and enhancement update","modified":"2026-09-09T10:42:29.366904228Z","published":"2026-08-13T10:16:38Z","upstream":["CVE-2026-41608","CVE-2026-43871","CVE-2026-45112","CVE-2026-49158","CVE-2026-55968","CVE-2026-55970","CVE-2026-55971","CVE-2026-58023","CVE-2026-66053"],"references":[{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHSA-2026:49837"},{"type":"ARTICLE","url":"https://images.redhat.com/"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-41608"},{"type":"ARTICLE","url":"https://access.redhat.com/security/updates/classification/"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-66053"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-58023"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-55970"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-55968"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-45112"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-49158"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-43871"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-55971"},{"type":"ADVISORY","url":"https://security.access.redhat.com/data/csaf/v2/advisories/2026/rhsa-2026_49837.json"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2507442"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-41608"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-41608"},{"type":"ARTICLE","url":"http://www.openwall.com/lists/oss-security/2026/07/24/32"},{"type":"ARTICLE","url":"https://lists.apache.org/thread/7v3jhgwfbmhx42424phydlnzb109g8b9"},{"type":"ARTICLE","url":"https://lists.apache.org/thread/vwsbcwqdpwdtp8qkjo11ol6rodbfm21f"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2507441"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-43871"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-43871"},{"type":"ARTICLE","url":"http://www.openwall.com/lists/oss-security/2026/07/24/33"},{"type":"ARTICLE","url":"https://lists.apache.org/thread/l4dwf14zbyqsmkc28c99ojj3t3gg9qby"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2507439"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-45112"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-45112"},{"type":"ARTICLE","url":"http://www.openwall.com/lists/oss-security/2026/07/24/34"},{"type":"ARTICLE","url":"https://lists.apache.org/thread/hl9kmf1z2o3lxvspoj3g9ykl8lj9mdxc"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2507435"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-49158"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-49158"},{"type":"ARTICLE","url":"http://www.openwall.com/lists/oss-security/2026/07/24/38"},{"type":"ARTICLE","url":"https://lists.apache.org/thread/fmjl8l415tj9zwlob8v2dr5hq1d0hts7"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2507437"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-55968"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-55968"},{"type":"ARTICLE","url":"http://www.openwall.com/lists/oss-security/2026/07/24/39"},{"type":"ARTICLE","url":"https://lists.apache.org/thread/gxhhfyr6flr5vzr4qnxm13p6fc41qstp"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2507438"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-55970"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-55970"},{"type":"ARTICLE","url":"https://lists.apache.org/thread/8pbnw4dyxxc9opp6qq725jhrzg25v8q7"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2507448"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-55971"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-55971"},{"type":"ARTICLE","url":"https://lists.apache.org/thread/xjs36m6kjxpmrmzwck636msg3nvoqnmx"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2507440"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-58023"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-58023"},{"type":"ARTICLE","url":"https://lists.apache.org/thread/z2myopbovxngfvchdz8hddots9p5ffbt"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2507445"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-66053"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-66053"},{"type":"ARTICLE","url":"https://lists.apache.org/thread/w4k5dnv1x58knwlhpo9x0or5xh220y65"}],"affected":[{"package":{"name":"python3-thrift","ecosystem":"Red Hat:hummingbird:1","purl":"pkg:rpm/redhat/python3-thrift"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:0.24.0-0.1.hum1"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:49837.json"}},{"package":{"name":"perl-thrift","ecosystem":"Red Hat:hummingbird:1","purl":"pkg:rpm/redhat/perl-thrift"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:0.24.0-0.1.hum1"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:49837.json"}},{"package":{"name":"thrift","ecosystem":"Red Hat:hummingbird:1","purl":"pkg:rpm/redhat/thrift"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:0.24.0-0.1.hum1"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:49837.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"}]}