Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2026:3012 - Security Advisory
Issued:
2026-02-19
Updated:
2026-02-19

RHSA-2026:3012 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Important: munge security update

Type/Severity

Security Advisory: Important

Red Hat Lightspeed patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for munge is now available for Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions and Red Hat Enterprise Linux 8.8 Telecommunications Update Service.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

MUNGE (MUNGE Uid 'N' Gid Emporium) is an authentication service for creating and validating credentials. It is designed to be highly scalable for use in an HPC cluster environment. It allows a process to authenticate the UID and GID of another local or remote process within a group of hosts having common users and groups. These hosts form a security realm that is defined by a shared cryptographic key. Clients within this security realm can create and validate credentials without the use of root privileges, reserved ports, or platform-specific methods.

Security Fix(es):

  • MUNGE: MUNGE has a buffer overflow in message unpacking allows key leakage and credential forgery (CVE-2026-25506)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux for x86_64 - Extended Update Support Extension 8.8 x86_64
  • Red Hat Enterprise Linux Server - TUS 8.8 x86_64
  • Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 8.8 ppc64le
  • Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 8.8 x86_64

Fixes

  • BZ - 2438715 - CVE-2026-25506 MUNGE: MUNGE has a buffer overflow in message unpacking allows key leakage and credential forgery

CVEs

  • CVE-2026-25506

References

  • https://access.redhat.com/security/updates/classification/#important
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux for x86_64 - Extended Update Support Extension 8.8

SRPM
munge-0.5.13-2.el8_8.1.src.rpm SHA-256: 5522490a947098080126b1bd9c13d9b8cc2fab7c42cc603f2b9ba957212cd5e8
x86_64
munge-0.5.13-2.el8_8.1.x86_64.rpm SHA-256: 4be63d98c6dfaa19e39caa19c203054f15eae8ea06a83c24df7975d1df93f412
munge-debuginfo-0.5.13-2.el8_8.1.i686.rpm SHA-256: 46f84341b75c10945e2ba051d3714118033418e1f5245dc4dce1357d9f8e8cea
munge-debuginfo-0.5.13-2.el8_8.1.x86_64.rpm SHA-256: e93ebdfb4a1db2d61a6a1fd27afc8fe12a1ba3cb8f9a6c1da83d47fe804bbc22
munge-debugsource-0.5.13-2.el8_8.1.i686.rpm SHA-256: ac6283c84939ac104ce16f647d82a9bfba20ed76d8d404445d2af688f973def3
munge-debugsource-0.5.13-2.el8_8.1.x86_64.rpm SHA-256: bd9b86ef120411e46b30b76f0921a4bd31c3f6a01a43a82556ef5859dd785d2d
munge-libs-0.5.13-2.el8_8.1.i686.rpm SHA-256: d193ab87d95f6b4e7cf4fe3f4fc954b62be94a07134c33a4bd936c8adbbabd26
munge-libs-0.5.13-2.el8_8.1.x86_64.rpm SHA-256: 0e11560e4438e3f4e070a89f0c26f0d3ca5b22612c688970eafb5b63d1c40ac1
munge-libs-debuginfo-0.5.13-2.el8_8.1.i686.rpm SHA-256: 880f4aef67fb1da738dbdde51f18338194c17484bd583577b88dec012624170c
munge-libs-debuginfo-0.5.13-2.el8_8.1.x86_64.rpm SHA-256: f547c29c84e1640a7a11a75bb14c0df13b042d7a21a4bbb1b47c155383a90773

Red Hat Enterprise Linux Server - TUS 8.8

SRPM
munge-0.5.13-2.el8_8.1.src.rpm SHA-256: 5522490a947098080126b1bd9c13d9b8cc2fab7c42cc603f2b9ba957212cd5e8
x86_64
munge-0.5.13-2.el8_8.1.x86_64.rpm SHA-256: 4be63d98c6dfaa19e39caa19c203054f15eae8ea06a83c24df7975d1df93f412
munge-debuginfo-0.5.13-2.el8_8.1.i686.rpm SHA-256: 46f84341b75c10945e2ba051d3714118033418e1f5245dc4dce1357d9f8e8cea
munge-debuginfo-0.5.13-2.el8_8.1.x86_64.rpm SHA-256: e93ebdfb4a1db2d61a6a1fd27afc8fe12a1ba3cb8f9a6c1da83d47fe804bbc22
munge-debugsource-0.5.13-2.el8_8.1.i686.rpm SHA-256: ac6283c84939ac104ce16f647d82a9bfba20ed76d8d404445d2af688f973def3
munge-debugsource-0.5.13-2.el8_8.1.x86_64.rpm SHA-256: bd9b86ef120411e46b30b76f0921a4bd31c3f6a01a43a82556ef5859dd785d2d
munge-libs-0.5.13-2.el8_8.1.i686.rpm SHA-256: d193ab87d95f6b4e7cf4fe3f4fc954b62be94a07134c33a4bd936c8adbbabd26
munge-libs-0.5.13-2.el8_8.1.x86_64.rpm SHA-256: 0e11560e4438e3f4e070a89f0c26f0d3ca5b22612c688970eafb5b63d1c40ac1
munge-libs-debuginfo-0.5.13-2.el8_8.1.i686.rpm SHA-256: 880f4aef67fb1da738dbdde51f18338194c17484bd583577b88dec012624170c
munge-libs-debuginfo-0.5.13-2.el8_8.1.x86_64.rpm SHA-256: f547c29c84e1640a7a11a75bb14c0df13b042d7a21a4bbb1b47c155383a90773

Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 8.8

SRPM
munge-0.5.13-2.el8_8.1.src.rpm SHA-256: 5522490a947098080126b1bd9c13d9b8cc2fab7c42cc603f2b9ba957212cd5e8
ppc64le
munge-0.5.13-2.el8_8.1.ppc64le.rpm SHA-256: f37d06c30fb0841ef707640664a60db23fbc88c8df37fad5d64d287ba2ce3b47
munge-debuginfo-0.5.13-2.el8_8.1.ppc64le.rpm SHA-256: 6d7739bab702760c501da5e950636bfb89fa4f5a3d328d2b5cdc660afe87f89f
munge-debugsource-0.5.13-2.el8_8.1.ppc64le.rpm SHA-256: a97af470a6224495a0f929902258b9ccad8f41d1885296f1125be12b3fe96176
munge-libs-0.5.13-2.el8_8.1.ppc64le.rpm SHA-256: 64bd58945a93d848f0dfc2842b1fedf4d0d908c9cb344b264edc39e3698e8ff6
munge-libs-debuginfo-0.5.13-2.el8_8.1.ppc64le.rpm SHA-256: d25dd9ab86a50957bf5459ce98835a951db124872013651ad0761892731ed73f

Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 8.8

SRPM
munge-0.5.13-2.el8_8.1.src.rpm SHA-256: 5522490a947098080126b1bd9c13d9b8cc2fab7c42cc603f2b9ba957212cd5e8
x86_64
munge-0.5.13-2.el8_8.1.x86_64.rpm SHA-256: 4be63d98c6dfaa19e39caa19c203054f15eae8ea06a83c24df7975d1df93f412
munge-debuginfo-0.5.13-2.el8_8.1.i686.rpm SHA-256: 46f84341b75c10945e2ba051d3714118033418e1f5245dc4dce1357d9f8e8cea
munge-debuginfo-0.5.13-2.el8_8.1.x86_64.rpm SHA-256: e93ebdfb4a1db2d61a6a1fd27afc8fe12a1ba3cb8f9a6c1da83d47fe804bbc22
munge-debugsource-0.5.13-2.el8_8.1.i686.rpm SHA-256: ac6283c84939ac104ce16f647d82a9bfba20ed76d8d404445d2af688f973def3
munge-debugsource-0.5.13-2.el8_8.1.x86_64.rpm SHA-256: bd9b86ef120411e46b30b76f0921a4bd31c3f6a01a43a82556ef5859dd785d2d
munge-libs-0.5.13-2.el8_8.1.i686.rpm SHA-256: d193ab87d95f6b4e7cf4fe3f4fc954b62be94a07134c33a4bd936c8adbbabd26
munge-libs-0.5.13-2.el8_8.1.x86_64.rpm SHA-256: 0e11560e4438e3f4e070a89f0c26f0d3ca5b22612c688970eafb5b63d1c40ac1
munge-libs-debuginfo-0.5.13-2.el8_8.1.i686.rpm SHA-256: 880f4aef67fb1da738dbdde51f18338194c17484bd583577b88dec012624170c
munge-libs-debuginfo-0.5.13-2.el8_8.1.x86_64.rpm SHA-256: f547c29c84e1640a7a11a75bb14c0df13b042d7a21a4bbb1b47c155383a90773

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2026 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility