Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
7.5

Red Hat's osbuild-composer software has a security update available

RHSA-2026:3898
Summary

This update fixes a security issue in osbuild-composer that could allow an attacker to execute arbitrary code on a system. Affected users should update to the latest version of osbuild-composer to ensure their systems are secure. The update is available for Red Hat Enterprise Linux.

What to do
  • Update redhat osbuild-composer to version 0:101.4-4.el8_10.
  • Update redhat osbuild-composer-core to version 0:101.4-4.el8_10.
  • Update redhat osbuild-composer-core-debuginfo to version 0:101.4-4.el8_10.
  • Update redhat osbuild-composer-debuginfo to version 0:101.4-4.el8_10.
  • Update redhat osbuild-composer-debugsource to version 0:101.4-4.el8_10.
  • Update redhat osbuild-composer-tests-debuginfo to version 0:101.4-4.el8_10.
  • Update redhat osbuild-composer-worker to version 0:101.4-4.el8_10.
  • Update redhat osbuild-composer-worker-debuginfo to version 0:101.4-4.el8_10.
Affected software
VendorProductAffected versionsFix available
redhat osbuild-composer <= 0:101.4-4.el8_10 0:101.4-4.el8_10
redhat osbuild-composer-core <= 0:101.4-4.el8_10 0:101.4-4.el8_10
redhat osbuild-composer-core-debuginfo <= 0:101.4-4.el8_10 0:101.4-4.el8_10
redhat osbuild-composer-debuginfo <= 0:101.4-4.el8_10 0:101.4-4.el8_10
redhat osbuild-composer-debugsource <= 0:101.4-4.el8_10 0:101.4-4.el8_10
redhat osbuild-composer-tests-debuginfo <= 0:101.4-4.el8_10 0:101.4-4.el8_10
redhat osbuild-composer-worker <= 0:101.4-4.el8_10 0:101.4-4.el8_10
redhat osbuild-composer-worker-debuginfo <= 0:101.4-4.el8_10 0:101.4-4.el8_10
Published: 6 Mar 2026 · Updated: 7 Mar 2026 · First seen: 6 Mar 2026