[ALSA-2026:76734] Important: rust-rpm-sequoia security, bug fix, and enhancement update
Type:
security
Severity:
important
Release date:
2026-10-06
Description:
An implementation of the RPM PGP interface using Sequoia. Security Fix(es): * sequoia-openpgp: sequoia-openpgp: Cryptographic integrity compromise via key flag confusion (CVE-2026-42784) Bug Fix(es) and Enhancement(s): * Uninformative error message on --import failure [almalinux-10.2.z] (JIRA:AlmaLinux-176906) * Return NotTrusted importing non-allowed keys [almalinux-10.2.z] (JIRA:AlmaLinux-176907) * [FTBFS] Update bindgen for LLVM 22 compatibility [almalinux-10.2.z] (JIRA:AlmaLinux-176908) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Updated packages listed below:
Architecture Package Checksum
aarch64 rpm-sequoia-1.10.2.1-1.el10_2.aarch64.rpm aa7ad81a0f4a78036fca5475aeda7667ec441f5acaa8ceaf0509de41b36fe994
aarch64 rpm-sequoia-devel-1.10.2.1-1.el10_2.aarch64.rpm ef3218a4849a867536a05a450b96bc035d3ede4d444d1622f532ac52efc5a687
ppc64le rpm-sequoia-1.10.2.1-1.el10_2.ppc64le.rpm 3d1788394eafc99c4b832a2d7defa9b435904ea8e76014f918c874c60a502875
ppc64le rpm-sequoia-devel-1.10.2.1-1.el10_2.ppc64le.rpm 78d6ab30682a444de69258121fcb28ce4f806ceabccc7ced2afdbc84622c2cf8
s390x rpm-sequoia-1.10.2.1-1.el10_2.s390x.rpm 9978bc892740720350b8d6d34b3016abf9111b5665e5fe2ec080aaf14bdb05fc
s390x rpm-sequoia-devel-1.10.2.1-1.el10_2.s390x.rpm e2aeccc15c6549b10b025cfcab1ed7ec3ce5d1225a173fe068ee802cca866fc9
x86_64 rpm-sequoia-1.10.2.1-1.el10_2.x86_64.rpm b11e6916082d09e5ae01d6a8e1afc147aa42d14ffff71e5e07d574bc0f1f5759
x86_64 rpm-sequoia-devel-1.10.2.1-1.el10_2.x86_64.rpm e63efabce55a56fbc28d05855c02e38f329e16e9fd50d43f85e41bb7fa87fece
x86_64_v2 rpm-sequoia-devel-1.10.2.1-1.el10_2.x86_64_v2.rpm a29334f11b3bc537f3d5bf2507155a37e7379ca61b1d59eb4aac6a91e8ae6f66
x86_64_v2 rpm-sequoia-1.10.2.1-1.el10_2.x86_64_v2.rpm b01bc5a960ce949d22db72067cf581b94aad1f88b57dcd0e522fe03ab6fc0bb1
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.