[ALSA-2026:6817] Important: capstone security update
Type:
security
Severity:
important
Release date:
2026-04-15
Description:
Capstone is a disassembly framework with the target of becoming the ultimate disasm engine for binary analysis and reversing in the security community. Security Fix(es): * capstone: Capstone: Memory corruption via unchecked vsnprintf return (CVE-2025-68114) * capstone: Capstone: Heap buffer overflow via skipdata callback allows denial of service or arbitrary code execution. (CVE-2025-67873) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Updated packages listed below:
Architecture Package Checksum
noarch capstone-java-5.0.1-7.el10_1.noarch.rpm 36251294e35a6e0b2ef616b0cf22e06128bc4128fe6a420826479315ae81cd62
noarch python3-capstone-5.0.1-7.el10_1.noarch.rpm daba3469816d9404c9f5c2942c47365e3484d67ef717e1142b0e4f14ab75451e
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.