[ALSA-2026:42096] Important: c-ares security update
Type:
security
Severity:
important
Release date:
2026-07-21
Description:
The c-ares C library defines asynchronous DNS (Domain Name System) requests and provides name resolving API. Security Fix(es): * c-ares: c-ares: Use-after-free / double-free in query-completion handling (CVE-2026-33630) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Updated packages listed below:
Architecture Package Checksum
aarch64 c-ares-1.34.6-2.el10_2.aarch64.rpm c2f06ac6602d6c9c28824afbde8ef43a83c5ec21815f71efccf75670292c39aa
aarch64 c-ares-devel-1.34.6-2.el10_2.aarch64.rpm fcb05cde723a1b040ed0a5b85c80e96419757927d07452b27c9553c4c4ce3753
ppc64le c-ares-1.34.6-2.el10_2.ppc64le.rpm 1f33a6b6a8e85a125840a9f9aa0108f144608a5ba7be45f8d78546e57a00eac5
ppc64le c-ares-devel-1.34.6-2.el10_2.ppc64le.rpm e4754dd3be7a92f2538ec93f3563bae3977f1f6cd8514d734afe923e7358f95f
s390x c-ares-1.34.6-2.el10_2.s390x.rpm 1c6dcbd5b5df63a57925de4d9a866d35c5579f65720ecc382dfa43d3e44607bc
s390x c-ares-devel-1.34.6-2.el10_2.s390x.rpm 5f458156a23bfa2a416bea72989e9b9467769d0e3d89a8a72d01ab2b524fed08
x86_64 c-ares-1.34.6-2.el10_2.x86_64.rpm 86570eee2993597d947f32797c91c41a23069ec54fc2bde448908a68ec81cac5
x86_64 c-ares-devel-1.34.6-2.el10_2.x86_64.rpm 9b11ce8ce36443ef4783cece3692f698e38b303045c84dd215f83153948c4576
x86_64_v2 c-ares-1.34.6-2.el10_2.x86_64_v2.rpm 0474f7475623cee2adb7d8fa1dfb84c9bbea57977cacedd959ad1c5cf066b3c6
x86_64_v2 c-ares-devel-1.34.6-2.el10_2.x86_64_v2.rpm 4a0537e5ef8f2fce625c7d31ab3b43eb26fba4ebe768697f33a8544393624313
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.