RLSA-2026:0752

Source
https://errata.rockylinux.org/RLSA-2026:0752
Import Source
https://storage.googleapis.com/resf-osv-data/RLSA-2026:0752.json
JSON Data
https://api.osv.dev/v1/vulns/RLSA-2026:0752
Upstream
Published
2026-01-21T09:04:37.263586Z
Modified
2026-01-21T09:30:00.992049Z
Severity
  • 7.5 (High) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N CVSS Calculator
Summary
Important: jmc security update
Details

JDK Mission Control is a powerful profiler for HotSpot JVMs and has an advanced set of tools that enables efficient and detailed analysis of the extensive data collected by JDK Flight Recorder. The tool chain enables developers and administrators to collect and analyze data from Java applications running locally or deployed in production environments.

Security Fix(es):

  • lz4-java: lz4-java: Information Disclosure via Insufficient Output Buffer Clearing (CVE-2025-66566)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

References
Credits
    • Rocky Enterprise Software Foundation
    • Red Hat

Affected packages

Rocky Linux:9 / jmc

Package

Name
jmc
Purl
pkg:rpm/rocky-linux/jmc?distro=rocky-linux-9&epoch=0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:8.2.0-18.el9_7.2
Database specific
{
    "yum_repository": "CRB"
}

Database specific

source

"https://storage.googleapis.com/resf-osv-data/RLSA-2026:0752.json"