{
  "schema_version": "1.7.0",
  "id": "RHSA-2026:18480",
  "related": [],
  "upstream": [
    "CVE-2025-13465",
    "CVE-2025-15284",
    "CVE-2026-23745",
    "CVE-2026-23950",
    "CVE-2026-24842"
  ],
  "published": "2026-05-19T10:06:40Z",
  "modified": "2026-05-21T10:07:00Z",
  "summary": "Red Hat Security Advisory: linux-sgx security update",
  "severity": [
    {
      "type": "CVSS_V3",
      "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:H/A:L"
    }
  ],
  "affected": [
    {
      "package": {
        "name": "linux-sgx",
        "ecosystem": "Red Hat:enterprise_linux:10.2",
        "purl": "pkg:rpm/redhat/linux-sgx"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:2.26-7.el10"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "linux-sgx-debuginfo",
        "ecosystem": "Red Hat:enterprise_linux:10.2",
        "purl": "pkg:rpm/redhat/linux-sgx-debuginfo"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:2.26-7.el10"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "linux-sgx-debugsource",
        "ecosystem": "Red Hat:enterprise_linux:10.2",
        "purl": "pkg:rpm/redhat/linux-sgx-debugsource"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:2.26-7.el10"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "sgx-common",
        "ecosystem": "Red Hat:enterprise_linux:10.2",
        "purl": "pkg:rpm/redhat/sgx-common"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:2.26-7.el10"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "sgx-enclave-devel-debuginfo",
        "ecosystem": "Red Hat:enterprise_linux:10.2",
        "purl": "pkg:rpm/redhat/sgx-enclave-devel-debuginfo"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:2.26-7.el10"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "sgx-libs",
        "ecosystem": "Red Hat:enterprise_linux:10.2",
        "purl": "pkg:rpm/redhat/sgx-libs"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:2.26-7.el10"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "sgx-libs-debuginfo",
        "ecosystem": "Red Hat:enterprise_linux:10.2",
        "purl": "pkg:rpm/redhat/sgx-libs-debuginfo"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:2.26-7.el10"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "sgx-mpa",
        "ecosystem": "Red Hat:enterprise_linux:10.2",
        "purl": "pkg:rpm/redhat/sgx-mpa"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:2.26-7.el10"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "sgx-mpa-debuginfo",
        "ecosystem": "Red Hat:enterprise_linux:10.2",
        "purl": "pkg:rpm/redhat/sgx-mpa-debuginfo"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:2.26-7.el10"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "sgx-pccs",
        "ecosystem": "Red Hat:enterprise_linux:10.2",
        "purl": "pkg:rpm/redhat/sgx-pccs"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:2.26-7.el10"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "sgx-pccs-admin",
        "ecosystem": "Red Hat:enterprise_linux:10.2",
        "purl": "pkg:rpm/redhat/sgx-pccs-admin"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:2.26-7.el10"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "sgx-pccs-debuginfo",
        "ecosystem": "Red Hat:enterprise_linux:10.2",
        "purl": "pkg:rpm/redhat/sgx-pccs-debuginfo"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:2.26-7.el10"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "sgx-pckid-tool",
        "ecosystem": "Red Hat:enterprise_linux:10.2",
        "purl": "pkg:rpm/redhat/sgx-pckid-tool"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:2.26-7.el10"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "sgx-pckid-tool-debuginfo",
        "ecosystem": "Red Hat:enterprise_linux:10.2",
        "purl": "pkg:rpm/redhat/sgx-pckid-tool-debuginfo"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:2.26-7.el10"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "tdx-attest-libs-debuginfo",
        "ecosystem": "Red Hat:enterprise_linux:10.2",
        "purl": "pkg:rpm/redhat/tdx-attest-libs-debuginfo"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:2.26-7.el10"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "tdx-qgs",
        "ecosystem": "Red Hat:enterprise_linux:10.2",
        "purl": "pkg:rpm/redhat/tdx-qgs"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:2.26-7.el10"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "tdx-qgs-debuginfo",
        "ecosystem": "Red Hat:enterprise_linux:10.2",
        "purl": "pkg:rpm/redhat/tdx-qgs-debuginfo"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:2.26-7.el10"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    }
  ],
  "references": [
    {
      "type": "ADVISORY",
      "url": "https://access.redhat.com/errata/RHSA-2026:18480"
    },
    {
      "type": "ARTICLE",
      "url": "https://docs.redhat.com/en/documentation/red_hat_enterprise_linux/10/html/10.2_release_notes/index"
    },
    {
      "type": "ARTICLE",
      "url": "https://access.redhat.com/security/updates/classification/#important"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2425946"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2430538"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2431036"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2431740"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2433645"
    },
    {
      "type": "ARTICLE",
      "url": "https://issues.redhat.com/browse/RHEL-110112"
    },
    {
      "type": "ARTICLE",
      "url": "https://issues.redhat.com/browse/RHEL-121612"
    },
    {
      "type": "ARTICLE",
      "url": "https://issues.redhat.com/browse/RHEL-140108"
    },
    {
      "type": "ADVISORY",
      "url": "https://security.access.redhat.com/data/csaf/v2/advisories/2026/rhsa-2026_18480.json"
    },
    {
      "type": "REPORT",
      "url": "https://access.redhat.com/security/cve/CVE-2025-13465"
    },
    {
      "type": "ADVISORY",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-13465"
    },
    {
      "type": "ADVISORY",
      "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-13465"
    },
    {
      "type": "ARTICLE",
      "url": "https://github.com/lodash/lodash/security/advisories/GHSA-xxjr-mmjv-4gpg"
    },
    {
      "type": "REPORT",
      "url": "https://access.redhat.com/security/cve/CVE-2025-15284"
    },
    {
      "type": "ADVISORY",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-15284"
    },
    {
      "type": "ADVISORY",
      "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-15284"
    },
    {
      "type": "ARTICLE",
      "url": "https://github.com/ljharb/qs/commit/3086902ecf7f088d0d1803887643ac6c03d415b9"
    },
    {
      "type": "ARTICLE",
      "url": "https://github.com/ljharb/qs/security/advisories/GHSA-6rw7-vpxm-498p"
    },
    {
      "type": "REPORT",
      "url": "https://access.redhat.com/security/cve/CVE-2026-23745"
    },
    {
      "type": "ADVISORY",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-23745"
    },
    {
      "type": "ADVISORY",
      "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-23745"
    },
    {
      "type": "ARTICLE",
      "url": "https://github.com/isaacs/node-tar/commit/340eb285b6d986e91969a1170d7fe9b0face405e"
    },
    {
      "type": "ARTICLE",
      "url": "https://github.com/isaacs/node-tar/security/advisories/GHSA-8qq5-rm4j-mr97"
    },
    {
      "type": "REPORT",
      "url": "https://access.redhat.com/security/cve/CVE-2026-23950"
    },
    {
      "type": "ADVISORY",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-23950"
    },
    {
      "type": "ADVISORY",
      "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-23950"
    },
    {
      "type": "ARTICLE",
      "url": "https://github.com/isaacs/node-tar/commit/3b1abfae650056edfabcbe0a0df5954d390521e6"
    },
    {
      "type": "ARTICLE",
      "url": "https://github.com/isaacs/node-tar/security/advisories/GHSA-r6q2-hw4h-h46w"
    },
    {
      "type": "REPORT",
      "url": "https://access.redhat.com/security/cve/CVE-2026-24842"
    },
    {
      "type": "ADVISORY",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-24842"
    },
    {
      "type": "ADVISORY",
      "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-24842"
    },
    {
      "type": "ARTICLE",
      "url": "https://github.com/isaacs/node-tar/commit/f4a7aa9bc3d717c987fdf1480ff7a64e87ffdb46"
    },
    {
      "type": "ARTICLE",
      "url": "https://github.com/isaacs/node-tar/security/advisories/GHSA-34x7-hfp2-rc4v"
    }
  ]
}