[ALSA-2026:54243] Important: grafana security update
Type:
security
Severity:
important
Release date:
2026-09-29
Description:
Grafana is an open source, feature rich metrics dashboard and graph editor for Graphite, InfluxDB & OpenTSDB. Security Fix(es): * grafana: Grafana: Privilege escalation via dashboard overwrite (CVE-2026-33377) * grafana: Grafana: Denial of Service due to excessive memory allocation via large JSON payloads (CVE-2026-42127) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Updated packages listed below:
Architecture Package Checksum
aarch64 grafana-selinux-9.2.10-32.el8_10.1.aarch64.rpm 3a9b18f994526763037eecc13963d475893fb806f3da767eacea086ad57c4f35
aarch64 grafana-9.2.10-32.el8_10.1.aarch64.rpm a83bac06ec14a43f901bff13b43702d832d9c1dccba2f024c47c6a34b4f2e2e2
ppc64le grafana-9.2.10-32.el8_10.1.ppc64le.rpm 14557863a56539cef7292ab5aa288cb29338d51b7d0fd62402b2ff7b7a79c71a
ppc64le grafana-selinux-9.2.10-32.el8_10.1.ppc64le.rpm c450d6d157f1fd1141366be6757286e203ba16f10d02d96711e3eea6654aa896
s390x grafana-9.2.10-32.el8_10.1.s390x.rpm 2b4f860f43cabf145ccf3182fbe046ff60bd08f819924901f8914683e8ceea59
s390x grafana-selinux-9.2.10-32.el8_10.1.s390x.rpm e89a17f05b7fb74e5c852fe4269a5fba23f58b21bb8722258884696b4dd62427
x86_64 grafana-9.2.10-32.el8_10.1.x86_64.rpm a86b0851dc97016d3061099d82d42f78615e246a20e8cd4f5f95172612b829ff
x86_64 grafana-selinux-9.2.10-32.el8_10.1.x86_64.rpm ff716d16293029e9befe08a4a5e039dcf72164a3f2b9fe2959864372f2433c8c
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.