[ALSA-2026:67832] Important: tesseract security update
Type:
security
Severity:
important
Release date:
2026-09-16
Description:
A commercial quality OCR engine originally developed at HP between 1985 and 1995. In 1995, this engine was among the top 3 evaluated by UNLV. It was open-sourced by HP and UNLV in 2005. Security Fix(es): * tesseract: Tesseract: Heap out-of-bounds write via crafted .traineddata (CVE-2026-73066) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Updated packages listed below:
Architecture Package Checksum
aarch64 tesseract-4.1.1-3.el8_10.aarch64.rpm a232a209843dd538d4ad5aea94dc928c05e6e3a0c5199f6c8aee47493ea4ea7c
aarch64 tesseract-devel-4.1.1-3.el8_10.aarch64.rpm a857c0daab69c246688c86851b58bf6a0c91d0e93d1e3291313c46176fc45733
i686 tesseract-devel-4.1.1-3.el8_10.i686.rpm 0cb4d78c03d7d1b6804728ad39c56de7738ab3a3fe998a3e1af0a7da377aedf5
i686 tesseract-4.1.1-3.el8_10.i686.rpm 23f95dd7b3775948e498d0212cd1975009a4ada3e7962f10d708c2361617ec07
ppc64le tesseract-devel-4.1.1-3.el8_10.ppc64le.rpm 0dead6ee288d0467b91002bd216a2530d4152385690f9fde43cee042ea3e9a12
ppc64le tesseract-4.1.1-3.el8_10.ppc64le.rpm c887e1c556a9f0a5887e69d63556df3718d813579afa5dd0dcf52ac54fead01b
s390x tesseract-devel-4.1.1-3.el8_10.s390x.rpm cc4e1fdf921695586c08832e311b5a96ccffd003b3c88959a143ffdf93ac61b4
s390x tesseract-4.1.1-3.el8_10.s390x.rpm d8e73955af63065361f5442a8e1fe6cac3aec15a23976386ab91077e25df4374
x86_64 tesseract-4.1.1-3.el8_10.x86_64.rpm 134cf23196def5285b2061c90d209f20a0e98b9645a927564f3c9563e748072b
x86_64 tesseract-devel-4.1.1-3.el8_10.x86_64.rpm e34c52e2851f77b3bf4f8653419fcb05294c32b94b351c0ca84bd701eded20f5
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.