Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Security Measurement
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Insights
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Insights
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2025:9124 - Security Advisory
Issued:
2025-06-16
Updated:
2025-06-16

RHSA-2025:9124 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Important: libvpx security update

Type/Severity

Security Advisory: Important

Red Hat Insights patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for libvpx is now available for Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

The libvpx packages provide the VP8 SDK, which allows the encoding and decoding of the VP8 video codec, commonly used with the WebM multimedia container file format.

Security Fix(es):

  • libvpx: Double-free in libvpx encoder (CVE-2025-5283)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.0 ppc64le
  • Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.0 x86_64
  • Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.0 aarch64
  • Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.0 s390x

Fixes

  • BZ - 2368749 - CVE-2025-5283 libvpx: Double-free in libvpx encoder

CVEs

  • CVE-2025-5283

References

  • https://access.redhat.com/security/updates/classification/#important
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.0

SRPM
libvpx-1.9.0-7.el9_0.1.src.rpm SHA-256: 370f2fef967a1a1881dde53a423261597fbdd573ff3cd06e7e586983822ba075
ppc64le
libvpx-1.9.0-7.el9_0.1.ppc64le.rpm SHA-256: 1118c01ac9077bde2a89ad8097a6a41b441b085950623e05f81a3c89505ff637
libvpx-debuginfo-1.9.0-7.el9_0.1.ppc64le.rpm SHA-256: b39d62c6ffbfddb0784e205ff901ee100f9df529d4595fa1725c336bb78a1817
libvpx-debugsource-1.9.0-7.el9_0.1.ppc64le.rpm SHA-256: 2d25a0217b767be431f912ea6a53fe71c8ecbbc895ea5444836bd671f2fc1b21
libvpx-utils-debuginfo-1.9.0-7.el9_0.1.ppc64le.rpm SHA-256: fe36507a317447d6fc02243e7eb6e99009e93c3ba5876d238904789a9f662108

Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.0

SRPM
libvpx-1.9.0-7.el9_0.1.src.rpm SHA-256: 370f2fef967a1a1881dde53a423261597fbdd573ff3cd06e7e586983822ba075
x86_64
libvpx-1.9.0-7.el9_0.1.i686.rpm SHA-256: 8324e2a33d8a707016bc86f68e0780790ef5a44c5160a3904bcc713660074774
libvpx-1.9.0-7.el9_0.1.x86_64.rpm SHA-256: 67ec78a4e1a7346a5419a35a6dec07f339c8be7e2434cc36aa022666c8e1b467
libvpx-debuginfo-1.9.0-7.el9_0.1.i686.rpm SHA-256: 7e7263e293ff7c9a8e3593b2668354fcec00f3b72f9525c6a4a20b5f3177fa15
libvpx-debuginfo-1.9.0-7.el9_0.1.x86_64.rpm SHA-256: df1157ab46b6d34bc52dd03db58ee29480059c4e4e0093503628e2e526f44d92
libvpx-debugsource-1.9.0-7.el9_0.1.i686.rpm SHA-256: dad1f594937e90b32dafeb1770d5844ddc236f66a4e77a2c2b9444bb6e3daab4
libvpx-debugsource-1.9.0-7.el9_0.1.x86_64.rpm SHA-256: 92e4e65e6fb1ff43a82b72ae422dc3f5ac98e4f762d35ab34a37eb2718a7cb62
libvpx-utils-debuginfo-1.9.0-7.el9_0.1.i686.rpm SHA-256: f7a417d8041f56376982532d8254610ad0ea61dab322fe20f6b6334869c046a7
libvpx-utils-debuginfo-1.9.0-7.el9_0.1.x86_64.rpm SHA-256: 7028ac03bdad95bb81ece929bde5ff06a7c043ea2061272bac355f380824521c

Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.0

SRPM
libvpx-1.9.0-7.el9_0.1.src.rpm SHA-256: 370f2fef967a1a1881dde53a423261597fbdd573ff3cd06e7e586983822ba075
aarch64
libvpx-1.9.0-7.el9_0.1.aarch64.rpm SHA-256: f38a7a705eb68942f8efd5603edf32b56ca7682303eb3447db1c9d3939e370fa
libvpx-debuginfo-1.9.0-7.el9_0.1.aarch64.rpm SHA-256: f40c87814ebf62e6c561385bc93bbbce532d612e3e6ff1df8e8925072c37190c
libvpx-debugsource-1.9.0-7.el9_0.1.aarch64.rpm SHA-256: 1a8d46366a6e3ee6c253c35ee1ea950474b8961e8e76e9baf9349080fc2a0170
libvpx-utils-debuginfo-1.9.0-7.el9_0.1.aarch64.rpm SHA-256: 41fca52b8a1fe7d9cee573136d6ced7238d7a018c148b0aba336226d26b020dc

Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.0

SRPM
libvpx-1.9.0-7.el9_0.1.src.rpm SHA-256: 370f2fef967a1a1881dde53a423261597fbdd573ff3cd06e7e586983822ba075
s390x
libvpx-1.9.0-7.el9_0.1.s390x.rpm SHA-256: c1927f73512f694d4a8c6af6e48be8667e2e8365912333b06c66be332ade8602
libvpx-debuginfo-1.9.0-7.el9_0.1.s390x.rpm SHA-256: aedbd304e1a4ac6bf486e1461694f72d90bc5ca9b8e4677f1e8a3f449a0e259e
libvpx-debugsource-1.9.0-7.el9_0.1.s390x.rpm SHA-256: 3a8a215a0535e36e9e1f3a8e62cdbe00eb84d39f3c308d01f4e255c86cbfef4b
libvpx-utils-debuginfo-1.9.0-7.el9_0.1.s390x.rpm SHA-256: 2cdfae9f949d3e7bc5a42ddd8894f93fb24bb5d6aa50285a244939c2ee902e37

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility