[ALSA-2025:7484] Important: gvisor-tap-vsock security update
Type:
security
Severity:
important
Release date:
2025-07-02
Description:
A replacement for libslirp and VPNKit, written in pure Go. It is based on the network stack of gVisor. Compared to libslirp, gvisor-tap-vsock brings a configurable DNS server and dynamic port forwarding. Security Fix(es): * golang.org/x/crypto/ssh: Denial of Service in the Key Exchange of golang.org/x/crypto/ssh (CVE-2025-22869) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Updated packages listed below:
Architecture Package Checksum
aarch64 gvisor-tap-vsock-gvforwarder-0.8.5-1.el10_0.aarch64.rpm 372f5a03e5c9ceeeb8c0ae7202b2d97a357ff5c7d7b6123ed59a20330222f518
aarch64 gvisor-tap-vsock-0.8.5-1.el10_0.aarch64.rpm 5439add34df84e54d42e65347496437ffeac316bb2f0ab10f52f06f8181a4b52
ppc64le gvisor-tap-vsock-gvforwarder-0.8.5-1.el10_0.ppc64le.rpm 47d8c3d2484667b9b91f17e68ed01744d0a3a208c092d5c1530f888876bd664c
ppc64le gvisor-tap-vsock-0.8.5-1.el10_0.ppc64le.rpm 91793e4c39a49f50b970eede570b0984a69624933d3f5c5e3283227e02f2c2b1
s390x gvisor-tap-vsock-gvforwarder-0.8.5-1.el10_0.s390x.rpm 590af979f480227bc0e1d9357a5a8fd7407d8dccd4be3844460965df31dee3ba
s390x gvisor-tap-vsock-0.8.5-1.el10_0.s390x.rpm d1a40f14e0e95d75ae355699e651512432ba8c944f044df33c42096a9bc7dbe9
x86_64 gvisor-tap-vsock-gvforwarder-0.8.5-1.el10_0.x86_64.rpm a0994dae67027b18038f61544db1a2aac4075df83f9a1bab6707272ed59f58d8
x86_64 gvisor-tap-vsock-0.8.5-1.el10_0.x86_64.rpm a8237d22a1c3585cd125ec86bc43a293802b36c4b870f4a73e2ff55c98dfb75e
x86_64_v2 gvisor-tap-vsock-0.8.5-1.el10_0.x86_64_v2.rpm d5866e90de3e2cfc98effe9367fecee5fc345c7bcbd602c0770bca570d202892
x86_64_v2 gvisor-tap-vsock-gvforwarder-0.8.5-1.el10_0.x86_64_v2.rpm fae2a43cccd19046793cedd926fd31e3bf0a892c31d4edb53443117b80088e99
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.