Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2026:9291 - Security Advisory
Issued:
2026-04-21
Updated:
2026-04-21

RHSA-2026:9291 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Important: giflib security update

Type/Severity

Security Advisory: Important

Red Hat Lightspeed patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for giflib is now available for Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

giflib is a library for reading and writing gif images.

Security Fix(es):

  • giflib: Giflib: Double-free vulnerability leading to memory corruption (CVE-2026-23868)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.0 ppc64le
  • Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.0 x86_64
  • Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.0 aarch64
  • Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.0 s390x

Fixes

  • BZ - 2446207 - CVE-2026-23868 giflib: Giflib: Double-free vulnerability leading to memory corruption

CVEs

  • CVE-2026-23868

References

  • https://access.redhat.com/security/updates/classification/#important
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.0

SRPM
giflib-5.2.1-9.el9_0.1.src.rpm SHA-256: a03acdd8cc8ceb71e772d4f172058aaf9a78e7f3139af7028a38dee428648eb1
ppc64le
giflib-5.2.1-9.el9_0.1.ppc64le.rpm SHA-256: 950018335c8b745ebf17630ac13eed48e83ee70e8d34ffbb46edc6fab075f6cb
giflib-debuginfo-5.2.1-9.el9_0.1.ppc64le.rpm SHA-256: 15242d4cf0458e06a4e1a7c9367b9ad9f9307e06b3821ad5bbdba5966d18eaee
giflib-debugsource-5.2.1-9.el9_0.1.ppc64le.rpm SHA-256: 81c082cddf9d915ceb98480c37182bc57d00e765c8b7d96a3fc9d47145391f62
giflib-utils-debuginfo-5.2.1-9.el9_0.1.ppc64le.rpm SHA-256: 553c2caef8e29876631cd73c56c084cdca890a6925b6ed1ab1f91557fdc46308

Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.0

SRPM
giflib-5.2.1-9.el9_0.1.src.rpm SHA-256: a03acdd8cc8ceb71e772d4f172058aaf9a78e7f3139af7028a38dee428648eb1
x86_64
giflib-5.2.1-9.el9_0.1.i686.rpm SHA-256: c0680d486309034b45309b798dfc8be06877a2bebcae9960fcefe89410a758d0
giflib-5.2.1-9.el9_0.1.x86_64.rpm SHA-256: bf249ae350fc8d5b2c2bba6e684c9b2c14d3233a817df1b21c11b405b35ad215
giflib-debuginfo-5.2.1-9.el9_0.1.i686.rpm SHA-256: 24122104a7fe222b3aaa516498925ac71fecc5fde2604a333082b1bffca53fee
giflib-debuginfo-5.2.1-9.el9_0.1.x86_64.rpm SHA-256: aba65fc1574caf9352521d407139636dc2430f56862a31ee248daf71b713675c
giflib-debugsource-5.2.1-9.el9_0.1.i686.rpm SHA-256: 27e2091a16139f50ed7ad0c9e4f4db15765a1a58f308d0d963fb16cef5fb8ea5
giflib-debugsource-5.2.1-9.el9_0.1.x86_64.rpm SHA-256: a56220b79f5f5092eb8bc66322382417b0e260d8cd52a511d61a4ff34629a141
giflib-utils-debuginfo-5.2.1-9.el9_0.1.i686.rpm SHA-256: c2887e37aa3b62dbcc4bbdbef968319aceefc490616b0421eba59b3291fdc028
giflib-utils-debuginfo-5.2.1-9.el9_0.1.x86_64.rpm SHA-256: 31d8a756e0e01ccea8aa505afc6ed39be96b387bf3001f1ae30179eaaf29aa92

Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.0

SRPM
giflib-5.2.1-9.el9_0.1.src.rpm SHA-256: a03acdd8cc8ceb71e772d4f172058aaf9a78e7f3139af7028a38dee428648eb1
aarch64
giflib-5.2.1-9.el9_0.1.aarch64.rpm SHA-256: c82022662ff06c834098fa0e3dea3e074c850d64a6917c0fcf3cf1dc0c1917e6
giflib-debuginfo-5.2.1-9.el9_0.1.aarch64.rpm SHA-256: f91ac2bce21e4744bec1233d64a7334f5109e10c735af06499fcd61b1f36186d
giflib-debugsource-5.2.1-9.el9_0.1.aarch64.rpm SHA-256: 5503a5f8dbf08313fad55b81154c509b3e5902e7458cde63aa244c91902a8d1e
giflib-utils-debuginfo-5.2.1-9.el9_0.1.aarch64.rpm SHA-256: 5bde6a755926d445531cd94b1777bd45387c9290e6b76a21e6ec52e70081e929

Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.0

SRPM
giflib-5.2.1-9.el9_0.1.src.rpm SHA-256: a03acdd8cc8ceb71e772d4f172058aaf9a78e7f3139af7028a38dee428648eb1
s390x
giflib-5.2.1-9.el9_0.1.s390x.rpm SHA-256: 7a08dd47736e66db9b33fca1f79d5db1513c3d4c09ea652badb0d1f8bd1f4b10
giflib-debuginfo-5.2.1-9.el9_0.1.s390x.rpm SHA-256: 0780f58f3a59ac5fdb36601e5ee3b9aa199b55bc2e473365fdf113be49f44fba
giflib-debugsource-5.2.1-9.el9_0.1.s390x.rpm SHA-256: 7f7ef40647b6af0e6d122915f32497d3417a51a148fe3ac8e7cbc44ee8b287ac
giflib-utils-debuginfo-5.2.1-9.el9_0.1.s390x.rpm SHA-256: 7dbcf5c0a32878e4b56b93b4c7069983fc64c0320a4527606b21de9f131ff752

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2026 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility